There is no 'signature' in the part of 'tbsCertificate'
Description of problem:
In the parsed certificate, there is no 'signature' in the part of tbsCertificate. 'signature' is a field of tbsCertificate in RFC 5280.
4.1.2.3. Signature
This field contains the algorithm identifier for the algorithm used
by the CA to sign the certificate.
This field MUST contain the same algorithm identifier as the
signatureAlgorithm field in the sequence Certificate (Section
Cooper, et al. Standards Track [Page 19]
RFC 5280 PKIX Certificate and CRL Profile May 2008
4.1.1.2). The contents of the optional parameters field will vary
according to the algorithm identified. [RFC3279], [RFC4055], and
[RFC4491] list supported signature algorithms, but other signature
algorithms MAY also be supported.
Version of gnutls used:
3.5.5
Distributor of gnutls (e.g., Ubuntu, Fedora, RHEL)
Ubuntu 18.04 x64
How reproducible:
Steps to Reproduce:
- certtool -i -infile path/to/cert_file
Actual results:
Expected results:
As RFC 5280, 'signature' in 'tbsCertificate' is parsed.