Gentoo's Bugzilla –
Attachment 365946 Details for
Bug 442292<dev-java/commons-httpclient-3.1-r1: Does not verify that the server hostname matches a domain name in the subject's CN or subjectAltName field of the x.509 certificate (CVE-2012-{5783,6153})