Looks like 2.7.7 will come soon.
http://www.openwall.com/lists/oss-security/2014/02/12/16 https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-1912
*** This bug has been marked as a duplicate of bug 500518 ***