CVE-2025-15584
MEDIUMEndpoint DLP Driver Filter Communication Port Integer Overflow
Title source: cnaDescription
Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap can potentially allow an unprivileged user to trigger an integer overflow within the filter communication port, leading to a Blue-Screen-of-Death (BSOD). Successful exploitation would require the Endpoint DLP module to be enabled in the client configuration. A successful exploit can potentially result in a denial-of-service for the local machine.
Scores
CVSS v4
6.8
EPSS
0.0002
EPSS Percentile
4.9%
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-190
Status
published
Products (1)
Netskope/Endpoint DLP Module for Netskope Client
< 135.0.0
Published
Mar 17, 2026
Tracked Since
Mar 18, 2026