ssl_error_bad_cert_domain when subjectAltName extension is missing and Subject CN is encoded as TeletexString
Categories
(Core :: Security: PSM, defect)
Tracking
()
People
(Reporter: FastColorsfashion, Unassigned)
Details
STR:
- Open http://www.fastcolors.in/, signup.
- After logging in, open this page https://account.fastcolors.in/orders or simply navigate to the orders page by clicking on the option available under your name on top right.
What happens:
There is no styling on this page. The page appears styled normally on stable Firefox and Chrome. The CSS for the page is hosted at https://img1a.flixcart.com//www/prod/basic-2130d90d-nogz.css which when I opened in another tab in Nightly gave me the Untrusted Connection notice, when I added the exception and then reloaded the URL (https://www.flipkart.com/account/orders?link=home_orders) in question, it appeared styled normally. When I open this CSS URL in stable Firefox, it opens without any Untrusted Connection notice. Same in Chrome.
![]() |
||
Comment 1•3 months ago
|
||
When you opened https://img1a.flixcart.com//www/prod/basic-2130d90d-nogz.css
, what error did it give you? (if you remove the exception, reload, and click Advanced
in the error page, it should tell you)
Comment 2•1 month ago
|
||
Redirect a needinfo that is pending on an inactive user to the triage owner.
:keeler, since the bug has recent activity, could you please find another way to get the information or close the bug as INCOMPLETE
if it is not actionable?
For more information, please visit BugBot documentation.
![]() |
||
Updated•1 month ago
|
Description
•