Certificate import ignoring SPI and SKI

During a certificate import into a CAPI store on a windows 2016 server we noticed that the import is ignoring the SPI and SKI values that are in the imported certificate, This means that the certificate in the CAPI store is bound to the incorrect Intermediate and/or CA. 

Has anyone seen this and how can we report this bug/issue?

