Skip to content
NetskopeCVE-2026-16174

Netskope Endpoint DLP: integer overflow

High8.7CVE-2026-16174 · Published Sep 10, 2026 · updated Sep 18, 2026

Netskope was notified about a potential gap in Netskope Endpoint DLP (EPDLP) running on Windows systems. Successful exploitation of the gap could potentially allow a privileged user to send a crafted message to the EPDLP process port to trigger an integer overflow, leading to memory corruption. Successful exploitation would require the EPDLP module to be enabled in the client configuration, and that Memory Integrity is disabled. A successful exploit could potentially result in a denial-of-service, arbitrary code execution, or privilege escalation on the local machine.

Netskope advisory

Affected versions

PackageAffectedFixed in
Endpoint DLP
Product
< 141.0141.0
Details and references
CVSS 4.0
CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-190

More Netskope advisories

All Netskope
Advisory
Netskope Endpoint DLP: uninitialized resource
Medium6.8Sep 11
Netskope Endpoint DLP: out-of-bounds read
Medium6.0Sep 10

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.