CVE-2026-2810: Endpoint DLP Driver Out-of-Bounds Read
Netskope was notified about a potential gap in the Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap can potentially allow an unprivileged user to trigger an out-of-bounds read within a driver, leading to a Blue-Screen-of-Death (BSOD). Successful exploitation would require the Endpoint DLP module to be enabled in the client configuration. A successful exploit can potentially result in a denial-of-service for the local machine.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2810?
CVE-2026-2810 is considered a moderate severity vulnerability due to its potential to allow unprivileged users to trigger an out-of-bounds read.
How do I fix CVE-2026-2810?
To remediate CVE-2026-2810, update your Netskope Client to the latest version as recommended in the security advisory.
Which versions of Netskope Client are affected by CVE-2026-2810?
CVE-2026-2810 affects vulnerable versions of the Netskope Client on Windows systems.
What is the impact of exploiting CVE-2026-2810?
Exploiting CVE-2026-2810 can lead to a Blue Screen of Death (BSOD) due to an out-of-bounds read in the driver.
Who should be concerned about CVE-2026-2810?
Organizations using Netskope Client on Windows systems should prioritize addressing CVE-2026-2810 to protect against potential exploitation.