Provisioning Manager MS08-070 Vulnerability in msflxgrd.ocx
search cancel

Provisioning Manager MS08-070 Vulnerability in msflxgrd.ocx

book

Article ID: 243091

calendar_today

Updated On:

Products

CA Identity Manager

Issue/Introduction

Security scans (e.g., Nessus) identify the Provisioning Server and Identity Manager servers as vulnerable to MS08-070: Vulnerabilities in Visual Basic 6.0 ActiveX Controls Could Allow Remote Code Execution (KB 932349). The scan specifically flags the following file:

C:\Windows\SysWOW64\msflxgrd.ocx

Environment

  • Product: CA Identity Manager
  • Component: Provisioning Manager
  • Release: 14.x (Tested on 14.3 CP3)
  • OS: Windows Server 2019

Cause

The vulnerability report refers specifically to msflxgrd.ocx.

c:\windows\syswow64\msflxgrd.ocx 

Resolution

To mitigate this vulnerability, consider one of the following options based on your operational requirements. Note that removing or altering files may impact the functionality of the Provisioning Manager interface.

Option 1: Remove the Vulnerable File

If you must keep the component installed but need to address the scan result, you may remove the msflxgrd.ocx file.

Warning: While the core functions of Provisioning Manager have been observed to work without this file, Broadcom cannot guarantee that every feature or sub-function of the application will remain fully functional.

  1. Locate the file: C:\Windows\SysWOW64\msflxgrd.ocx.
  2. Rename or remove the file.
  3. Verify Provisioning Manager functionality for your specific use cases.

Option 2: Isolate Provisioning Manager

If Provisioning Manager is not required for daily operations, install the component on a dedicated, isolated server or virtual machine that is shut down and accessed only when troubleshooting or management tasks are necessary.

Option 3: Uninstall Provisioning Manager

If you do not utilize the Provisioning Manager interface, uninstall the component completely from the production server to remove the vulnerable file.