Well, not really. Upstream listed it, so I copied that, but looking at it, it's much more complicated than the fix upstream. See: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-1238 for discussion. Basically changing this behavior in perl would break things, but perl itself (and now spamassassin) don't rely on this behavior. I also didn't mark it fixed here because its already marked WONTFIX in the above bug. Anyhow, hope that helps.
mzink: python2-firewalld was deprecated and is no longer shipped, so you need to switch that remote to using python3. See: http://docs.ansible.com/ansible/latest/reference_appendices/python_3_support.html#testing-python-3-module-support basically set ansible_python_interpreter=/usr/bin/python3 for that remote.
kparal: Thats fixed in 2.5.4, but it has some issues with tests, will try and get it out soon.
till: Could you file a bug on this and/or see if its already filed upstream ?