CVE-2026-2810 PUBLISHED

Endpoint DLP Driver Out-of-Bounds Read

Assigner: Netskope
Reserved: 19.02.2026 Published: 29.04.2026 Updated: 29.04.2026

Netskope was notified about a potential gap in the Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap can potentially allow an unprivileged user to trigger an out-of-bounds read within a driver, leading to a Blue-Screen-of-Death (BSOD). Successful exploitation would require the Endpoint DLP module to be enabled in the client configuration. A successful exploit can potentially result in a denial-of-service for the local machine.

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H
CVSS Score: 6.8

Product Status

Vendor Netskope
Product Client
Versions Default: unaffected
  • affected from 0 to 129.1.8,132.0.23,135.1.0,136.1 (excl.)

Affected Configurations

The Endpoint DLP module must be enabled in the client configuration.

Workarounds

There are no direct workarounds. Some AV and EDR solutions may be able to detect behaviors associated with exploiting this vulnerability.

Credits

  • Tom Brice reporter

References

Problem Types

  • CWE-125 Out-of-bounds read CWE

Impacts

  • CAPEC-540 Overread Buffers