CVE-2026-16172: Netskope Endpoint DLP Service Out-of-Bounds Read Leading to Process Crash

Published Sep 10, 2026
·
Updated

Netskope was notified of an out-of-bounds heap read affecting the Endpoint DLP (EPDLP) service of the Netskope Client. A local standard user could potentially send a specially crafted message that is not properly validated with a bounds check, likely crashing the kernel driver handler. Successful exploitation could potentially crash the EPDLP service, temporarily interrupting DLP enforcement. A successful exploit could potentially also reveal per-boot memory layout information to unauthorized users.

Affected Software

1 affected component
Netskope Netskope Client - Endpoint DLP (EPDLP) Service

Event History

Sep 10, 2026
CVE Published
via MITRE·10:45 PM
Data Sourced
via MITRE·10:45 PM
DescriptionWeakness

Frequently Asked Questions

1

Who can exploit this issue?

A local standard user on a system running the affected Endpoint DLP service could potentially exploit it. The issue is not described as remotely exploitable.

2

What does an attacker need to do?

The attacker would need to send a specially crafted message to the Endpoint DLP service that bypasses proper bounds validation. Successful exploitation may crash the kernel driver handler.

3

What is the likely operational impact?

Exploitation could crash the EPDLP service and temporarily interrupt DLP enforcement. It could also potentially disclose per-boot memory layout information to an unauthorized local user.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203