Fix wasn't posted in the bug notes. You need to create a SDWAN policy ACL then apply it to the interface that is terminating the GRE tunnel.
Example:
sdwan
interface $GRE-TERMINATION-INTERFACE
access-list GRE in
policy
access-list GRE
sequence 10
match
protocol 47
!
action accept
!
default-action drop