Unrated severityNVD Advisory· Published Aug 26, 2014· Updated May 6, 2026
CVE-2014-5307
CVE-2014-5307
Description
Heap-based buffer overflow in the PavTPK.sys kernel mode driver of Panda Security 2014 products before hft131306s24_r1 allows local users to gain privileges via a crafted argument to a 0x222008 IOCTL call.
Affected products
3- cpe:2.3:a:pandasecurity:panda_av_pro_2014:13.01.01:*:*:*:*:*:*:*
- cpe:2.3:a:pandasecurity:panda_global_protection_2014:7.01.01:*:*:*:*:*:*:*
- cpe:2.3:a:pandasecurity:panda_internet_security_2014:19.01.01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- packetstormsecurity.com/files/127948/Panda-Security-2014-Privilege-Escalation.htmlnvd
- seclists.org/fulldisclosure/2014/Aug/53nvd
- www.securityfocus.com/archive/1/533182/100/0/threadednvd
- www.securityfocus.com/bid/69293nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/95382nvd
- www.portcullis-security.com/security-research-and-downloads/security-advisories/cve-2014-5307/nvd
News mentions
0No linked articles in our index yet.