Security readout for executives and security teams
This is an older Linux kernel flaw in the aacraid storage driver. A local user could trigger a kernel crash through a driver control request. The provided sources do not show remote exposure or confirmed active exploitation. Likely exposure is Linux systems running kernel through 3.12.1 where the aacraid driver is present or reachable. Risk depends on local user access and hardware or driver configuration. The bundle does not identify a network attack path or precise downstream package versions beyond vendor advisories. Handle during legacy Linux risk reduction unless affected storage servers allow untrusted local access. Escalate if critical infrastructure still runs old kernels with aacraid enabled and cannot be patched quickly. Mitigation focus: Apply vendor kernel updates referencing CVE-2013-6380.; Prioritize systems using the aacraid driver or Adaptec AAC RAID hardware.; Restrict untrusted local shell access on exposed legacy systems..
Generated from the cited source records. This long-tail analysis has not been individually reviewed by a named human.
Conservative CVE-to-ATT&CK context
These mappings and lookup hints may be relevant to the vulnerability behavior, CWE, affected product, or exposure path. Glexia-inferred context is not an official MITRE, ATT&CK, CWE, or CVE Program mapping.
ATT&CK lookup starting points
Use these exact CWE pages and searches to review the Glexia ATT&CK library from this CVE's weakness and description context.
CVE-2013-6380 mapping review
Open the CVE-to-ATT&CK bridge for reviewed, inferred, or future official mappings tied to this CVE.
Open ATT&CK lookup- Severity
- Unknown
- CVSS
- Not scored
- Known Exploited
- No
- Published
CNA and ADP enrichment extracted from CVE v5
These fields come from the CVE record and ADP containers, not from Glexia's Take. They preserve time-varying source decisions such as CISA SSVC, KEV status, CVSS metrics, and provider references.
CVSS and timeline data
No CVSS vectors or timeline events were available in the normalized CVE source material.
Source materials
- CVE List V5 sourceCVE List V5
- https://bugzilla.redhat.com/show_bug.cgi?id=1033593CVE reference · x_refsource_CONFIRM
- https://github.com/torvalds/linux/commit/b4789b8e6be3151a955ade74872822f30e8cd914CVE reference · x_refsource_CONFIRM
Products and packages named in the record
CWE details
CWE links open Glexia weakness intelligence pages with official CWE context, developer remediation guidance, and related CVE mappings.
