As mentioned it's addressed. But also there's an easy defence of just updating the certificate key if under such attack. With Let's encrypt around, getting a new certificate is not a huge deal anymore. And rekeying is possible with some other services as well.