### [CVE-2014-5307](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5307) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Heap-based buffer overflow in the PavTPK.sys kernel mode driver of Panda Security 2014 products before hft131306s24_r1 allows local users to gain privileges via a crafted argument to a 0x222008 IOCTL call. ### POC #### Reference - http://packetstormsecurity.com/files/127948/Panda-Security-2014-Privilege-Escalation.html #### Github No PoCs found on GitHub currently.