A vulnerability, which was classified as critical, has been found in cURL up to 8.17.0. Affected by this issue is some unknown functionality of the component Threaded LDAPS. Performing a manipulation results in improper certificate validation.

This vulnerability is cataloged as CVE-2025-14017. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.