Google Issues Warning for 2B Chrome Users
forbes.com
forbes.com
The title should be something like "use after free vulnerability in Google Chrome, with possible remote code execution"
In any event, any insight into whether this is exploitable without allowing the permission? Seems like the auditing effort should be focused heavily on code that runs without any particular permission.