Mandriva Linux Security Advisory – FIXME Konqueror 3.5.5 does not properly parse HTML comments in title tags, which allows remote attackers to conduct cross-site scripting (XSS) attacks and bypass some XSS protection schemes by embedding certain HTML tags within a comment, a related issue to CVE-2007-0478.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/54183/MDKSA-2007-031.txt
Source: https://packetstormsecurity.com/files/54183/Mandriva-Linux-Security-Advisory-2007.031.html

