Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime TVSDK functionality related to hosting playback surface. Successful exploitation could lead to arbitrary code execution.
http://rhn.redhat.com/errata/RHSA-2017-0526.html
http://www.securityfocus.com/bid/96866
http://www.securitytracker.com/id/1037994
https://helpx.adobe.com/security/products/flash-player/apsb17-07.html
Source: MITRE
Published: 2017-03-14
Updated: 2018-01-05
Type: CWE-119
Base Score: 10
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
Impact Score: 10
Exploitability Score: 10
Severity: HIGH
Base Score: 9.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Impact Score: 5.9
Exploitability Score: 3.9
Severity: CRITICAL