Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
This seems to be fixed ages ago by bug #1602477. At least cannot be reproduced by linked exploit script.