CVE-2025-15584

MEDIUM

Endpoint DLP Driver Filter Communication Port Integer Overflow

Title source: cna
STIX 2.1

Description

Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap can potentially allow an unprivileged user to trigger an integer overflow within the filter communication port, leading to a Blue-Screen-of-Death (BSOD). Successful exploitation would require the Endpoint DLP module to be enabled in the client configuration. A successful exploit can potentially result in a denial-of-service for the local machine.

Scores

CVSS v4 6.8
EPSS 0.0002
EPSS Percentile 4.9%
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-190
Status published
Products (1)
Netskope/Endpoint DLP Module for Netskope Client < 135.0.0
Published Mar 17, 2026
Tracked Since Mar 18, 2026