Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime TVSDK API functionality related to timeline interactions. Successful exploitation could lead to arbitrary code execution.
http://rhn.redhat.com/errata/RHSA-2017-0526.html
http://www.securityfocus.com/bid/96866
http://www.securitytracker.com/id/1037994
https://helpx.adobe.com/security/products/flash-player/apsb17-07.html
Source: MITRE
Published: 2017-03-14
Updated: 2018-01-05
Type: CWE-119
Base Score: 10
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
Impact Score: 10
Exploitability Score: 10
Severity: HIGH
Base Score: 9.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Impact Score: 5.9
Exploitability Score: 3.9
Severity: CRITICAL