CVE-2025-15584 MEDIUM

CVE-2025-15584: Endpoint DLP Driver Filter Communication Port Integer Overflow

Vendor Netskope
Product Endpoint DLP Module for Netskope Client
Weakness CWE-190
Published March 17, 2026
Last update March 18, 2026

CVSS base score

6.8/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

What the vulnerability does

01Description

Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap can potentially allow an unprivileged user to trigger an integer overflow within the filter communication port, leading to a Blue-Screen-of-Death (BSOD). Successful exploitation would require the Endpoint DLP module to be enabled in the client configuration. A successful exploit can potentially result in a denial-of-service for the local machine.

Key dates

02Disclosure timeline

March 17, 2026 CVE published
March 18, 2026 Record updated