Medium severity4.6NVD Advisory· Published Jul 9, 2020· Updated Jun 17, 2026
CVE-2020-13132
CVE-2020-13132
Description
An issue was discovered in Yubico libykpiv before 2.1.0. An attacker can trigger an incorrect free() in the ykpiv_util_generate_key() function in lib/util.c through incorrect error handling code. This could be used to cause a denial of service attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:a:yubico:yubikey_smart_card_minidriver:*:*:*:*:*:*:*:*Range: <=4.1.0.172
- Yubico/libykpivdescription
Patches
Vulnerability mechanics
References
2- blog.inhq.net/posts/yubico-libykpiv-vuln/nvdExploitThird Party Advisory
- www.yubico.com/support/security-advisories/ysa-2020-02/nvdVendor Advisory
News mentions
0No linked articles in our index yet.