mod_session-2.4.6-98.el7.centos.7>t  DH`pd-$ƨpI/}'7 cYc;P[e}|3\wav3H I*a$I( 8‡3I`.HTQ!ZF#nrȼPKWrSj0f6[Ar TT56''5W0:QG9Շ+^I51ˋ6s-Lw6ʥgs`/7b:+dmQ ˥o+am屇aAzɳ6slkT< W}mf?5_tN5dCkAE^5"'{Jܢ҉WQ mV=oyODE8db$iV(]!coȡŢ ߼= '4_uokЫ)l#zMg˝k\Rc@X<~~GSH3&>ylll^a6SBF/n-  &xbqA;TAE9iȨZ1 qEbBºYmbXF 4qx|TM LH}}@DE'T9U^h+X#}~ܲ  ݑΓn|;8L'کTN"8 4㙋汪/.Y%PQgZOchy۾}0!n}7@.PYqQQrO|GÌtl>>2{x?{hd $ Q +F_el    : @Xv(Z(89:*GyHyIyXyYy\y]z^zsbzd{?e{Df{Gl{I{dCmod_session2.4.698.el7.centos.7Session interface for the Apache HTTP ServerThe mod_session module and associated backends provide an abstract interface for storing and accessing per-user session data.d-x86-01.bsys.centos.orgCentOSASL 2.0CentOS BuildSystem System Environment/Daemonshttp://httpd.apache.org/linuxx86_64m\x+\Laed-d-d-d-d-51df0ceeb7dae9922817f4af0554f83fe01d6268025ee08260aeed69be3953d106aea9e1ea0d1ec9b57ed0591f98ee2dbb686f584e779aa91596e2d2b1b845915a3a69b2d0237f71ce2b627d2d50957ba8ff36b45f87f912e7c88d2e26f570784553b35ce1e59582e87d2ace11599ab68724297a15f92940b41c7b9727784b48ba21f7b9865a4f0f9b9c09c9c06079d9f1d2e72db8a74b1605396e7597c7eed2e0c8537d6dab5a782b12786cc92cd9b970fb7181f97989ddc429f52f0026f6ffrootrootrootrootrootrootrootrootrootrootrootroothttpd-2.4.6-98.el7.centos.7.src.rpmmod_sessionmod_session(x86-64)   @@@@@@@ httpdhttpd-mmnapr-util-opensslrpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(CompressedFileNames)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.4)(64bit)libpthread.so.0()(64bit)rtld(GNU_HASH)rpmlib(PayloadIsXz)0:2.4.6-98.el7.centos.720120211x86644.6.0-14.0-13.0.4-15.2-14.11.3d-bd@c@b9@aaav@a^@_}^@^|@]z@]^]A\@\[+@[+@[+@[*A['[d@[d@ZZS]@Y@YeY@YY@YY@YdYp@Y{Y{Y*@YYw2Y@Y@Y@XXg@X,X,X@XƉX•@XCX@X@XXXXO@XO@XO@XO@XXWWW{@Wc@V͛@U@Uݪ@UoUȒ@UU@Un@UY@U.RT}Tto@TXTG@T2@T @TTS@SS@S@SuSǺS*@SSRUR@RRΏ@R@RkR1@RsRrF@Ri RM\@RC@Q@QQޞ@QQo@Q@QQ@Qo@Qm=@QQQ,Q,Q']QP @P6@P6@P{@PPl(PiPiPiPiPiPYPQPIP3x@P3x@PPO@OO@O@OЗOЗOF@OF@OF@O]@O"O"O@O@O@O@O@O@O@OOOOOOleOleO_6O_6O_6OU@O8@O8@O5OKO@ONNS@N{#@NoENdNBrN)f@N&@N@N MM>MMn1@MdMRMF@M(QM$]@M$]@M# L@L@LLMxL7@K@Johnny Hughes Luboš Uhliarik - 2.4.6-97.7Luboš Uhliarik - 2.4.6-97.6Luboš Uhliarik - 2.4.6-97.5Luboš Uhliarik - 2.4.6-97.4Luboš Uhliarik - 2.4.6-97.3Luboš Uhliarik - 2.4.6-97.2Luboš Uhliarik - 2.4.6-97.1Lubos Uhliarik - 2.4.6-97Lubos Uhliarik - 2.4.6-95Lubos Uhliarik - 2.4.6-94Lubos Uhliarik - 2.4.6-93Joe Orton - 2.4.6-92Lubos Uhliarik - 2.4.6-91Lubos Uhliarik - 2.4.6-90Joe Orton - 2.4.6-89Luboš Uhliarik - 2.4.6-88Luboš Uhliarik - 2.4.6-87Luboš Uhliarik - 2.4.6-86Luboš Uhliarik - 2.4.6-85Luboš Uhliarik - 2.4.6-84Luboš Uhliarik - 2.4.6-83Luboš Uhliarik - 2.4.6-82Joe Orton - 2.4.6-81Luboš Uhliarik - 2.4.6-80Luboš Uhliarik - 2.4.6-79Luboš Uhliarik - 2.4.6-78Luboš Uhliarik - 2.4.6-77Luboš Uhliarik - 2.4.6-76Luboš Uhliarik - 2.4.6-75Luboš Uhliarik - 2.4.6-74Luboš Uhliarik - 2.4.6-73Luboš Uhliarik - 2.4.6-72Luboš Uhliarik - 2.4.6-71Luboš Uhliarik - 2.4.6-70Luboš Uhliarik - 2.4.6-69Luboš Uhliarik - 2.4.6-68Luboš Uhliarik - 2.4.6-67Luboš Uhliarik - 2.4.6-66Luboš Uhliarik - 2.4.6-65Luboš Uhliarik - 2.4.6-64Luboš Uhliarik - 2.4.6-63Luboš Uhliarik - 2.4.6-62Luboš Uhliarik - 2.4.6-61Luboš Uhliarik - 2.4.6-60Luboš Uhliarik - 2.4.6-59Luboš Uhliarik - 2.4.6-58Luboš Uhliarik - 2.4.6-57Luboš Uhliarik - 2.4.6-56Luboš Uhliarik - 2.4.6-55Luboš Uhliarik - 2.4.6-54Luboš Uhliarik - 2.4.6-53Luboš Uhliarik - 2.4.6-52Luboš Uhliarik - 2.4.6-51Luboš Uhliarik - 2.4.6-50Luboš Uhliarik - 2.4.6-49Luboš Uhliarik - 2.4.6-48Joe Orton - 2.4.6-47Luboš Uhliarik - 2.4.6-46Luboš Uhliarik - 2.4.6-45Joe Orton - 2.4.6-44Joe Orton - 2.4.6-43Joe Orton - 2.4.6-42Jan Kaluza - 2.4.6-41Jan Kaluza - 2.4.6-40Jan Kaluza - 2.4.6-39Jan Kaluza - 2.4.6-38Jan Kaluza - 2.4.6-37Jan Kaluza - 2.4.6-36Jan Kaluza - 2.4.6-35Jan Kaluza - 2.4.6-34Jan Kaluza - 2.4.6-33Jan Kaluza - 2.4.6-32Jan Kaluza - 2.4.6-31Jan Kaluza - 2.4.6-30Jan Kaluza - 2.4.6-29Jan Kaluza - 2.4.6-28Jan Kaluza - 2.4.6-27Jan Kaluza - 2.4.6-26Jan Kaluza - 2.4.6-25Jan Kaluza - 2.4.6-24Jan Kaluza - 2.4.6-23Jan Kaluza - 2.4.6-22Jan Kaluza - 2.4.6-21Jan Kaluza - 2.4.6-20Jan Kaluza - 2.4.6-19Jan Kaluza - 2.4.6-18Jan Kaluza - 2.4.6-17Joe Orton - 2.4.6-16Joe Orton - 2.4.6-15Daniel Mach - 2.4.6-14Joe Orton - 2.4.6-13Joe Orton - 2.4.6-12Joe Orton - 2.4.6-11Joe Orton - 2.4.6-10Daniel Mach - 2.4.6-9Joe Orton - 2.4.6-8Jan Kaluza - 2.4.6-7Jan Kaluza - 2.4.6-6Jan Kaluza - 2.4.6-5Jan Kaluza - 2.4.6-4Jan Kaluza - 2.4.6-3Jan Kaluza - 2.4.6-2Joe Orton - 2.4.6-1Jan Kaluza - 2.4.4-12Joe Orton - 2.4.4-11Joe Orton - 2.4.4-10Joe Orton - 2.4.4-9Jan Kaluza - 2.4.4-8Jan Kaluza - 2.4.4-6Jan Kaluza - 2.4.4-5Jan Kaluza - 2.4.4-4Jan Kaluza - 2.4.4-3Joe Orton - 2.4.4-2Joe Orton - 2.4.4-1Joe Orton - 2.4.3-17Fedora Release Engineering - 2.4.3-16Joe Orton - 2.4.3-15Joe Orton - 2.4.3-14Joe Orton - 2.4.3-13Joe Orton - 2.4.3-12Joe Orton - 2.4.3-11Joe Orton - 2.4.3-10Joe Orton - 2.4.3-9.1Joe Orton - 2.4.3-9Joe Orton - 2.4.3-8Joe Orton - 2.4.3-7Jan Kaluza - 2.4.3-6Joe Orton - 2.4.3-5Joe Orton - 2.4.3-4Jan Kaluza - 2.4.3-3Joe Orton - 2.4.3-2Joe Orton - 2.4.3-1Joe Orton - 2.4.2-23Fedora Release Engineering - 2.4.2-22Joe Orton - 2.4.2-21Joe Orton - 2.4.2-20Joe Orton - 2.4.2-19Joe Orton - 2.4.2-18Joe Orton - 2.4.2-17Joe Orton - 2.4.2-16Joe Orton - 2.4.2-15Joe Orton - 2.4.2-14Joe Orton - 2.4.2-13Joe Orton - 2.4.2-12Joe Orton - 2.4.2-11Joe Orton - 2.4.2-10Joe Orton - 2.4.2-9Joe Orton - 2.4.2-8Joe Orton - 2.4.2-7Joe Orton - 2.4.2-6Joe Orton - 2.4.2-5Joe Orton - 2.4.2-4Joe Orton - 2.4.2-3.2Joe Orton - 2.4.2-3Joe Orton - 2.4.2-2Jan Kaluza - 2.4.2-1Joe Orton - 2.4.1-6Joe Orton - 2.4.1-5Joe Orton - 2.4.1-4Joe Orton - 2.4.1-3Joe Orton - 2.4.1-2Joe Orton - 2.4.1-1Joe Orton - 2.2.22-2Joe Orton - 2.2.22-1Petr Pisar - 2.2.21-8Jan Kaluza - 2.2.21-7Joe Orton - 2.2.21-6Fedora Release Engineering - 2.2.21-5Jan Kaluza - 2.2.21-4Jan Kaluza - 2.2.21-3Ville Skyttä - 2.2.21-2Joe Orton - 2.2.21-1Joe Orton - 2.2.20-1Jan Kaluza - 2.2.19-5Iain Arnell 1:2.2.19-4Jan Kaluza - 2.2.19-3Jan Kaluza - 2.2.19-2Joe Orton - 2.2.19-1Joe Orton - 2.2.17-13Joe Orton - 2.2.17-12Joe Orton - 2.2.17-11Joe Orton - 2.2.17-10Joe Orton - 2.2.17-9Fedora Release Engineering - 2.2.17-8Joe Orton - 2.2.17-7Joe Orton - 2.2.17-6Joe Orton - 2.2.17-5Joe Orton - 2.2.17-4Joe Orton - 2.2.17-3Joe Orton - 2.2.17-2Joe Orton - 2.2.17-1Joe Orton - 2.2.16-2Joe Orton - 2.2.16-1Joe Orton - 2.2.15-3Robert Scheck - 2.2.15-1- Manual CentOS Debranding- Resolves: #2177742 - CVE-2023-25690 httpd: HTTP request splitting with mod_rewrite and mod_proxy- Resolves: #2101997 - HEAD request with a 404 and custom ErrorPage causes corrupt and mixed-up responses- Resolves: #2065243 - CVE-2022-22720 httpd: HTTP request smuggling vulnerability in Apache HTTP Server 2.4.52 and earlier- Resolves: #2031072 - CVE-2021-34798 httpd: NULL pointer dereference via malformed requests - Resolves: #2031074 - CVE-2021-39275 httpd: out-of-bounds write in ap_escape_quotes() via malicious input - Resolves: #1969226 - CVE-2021-26691 httpd: Heap overflow in mod_session- Resolves: #2035058 - CVE-2021-44790 httpd: mod_lua: possible buffer overflow when parsing multipart content- Resolves: #2015694 - proxy rewrite to unix socket fails with CVE-2021-40438 fix- Resolves: #2011729 - CVE-2021-40438 httpd: mod_proxy: SSRF via a crafted request uri-path containing "unix:"- Resolves: #1852350 - httpd/mod_proxy_http/mod_ssl aborted when sending a client cert to backend server - Resolves: #1785100 - mod_cgid takes CGIDScriptTimeout x 2 seconds for timeout - Resolves: #1862499 - Intermittent Segfault in Apache httpd due to pool concurrency issues- Resolves: #1823262 - CVE-2020-1934 httpd: mod_proxy_ftp use of uninitialized value- Resolves: #1565491 - CVE-2017-15715 httpd: bypass with a trailing newline in the file name - Resolves: #1747283 - CVE-2019-10098 httpd: mod_rewrite potential open redirect - Resolves: #1724879 - httpd terminates all SSL connections using an abortive shutdown - Resolves: #1715981 - Backport of SessionExpiryUpdateInterval directive - Resolves: #1565457 - CVE-2018-1303 httpd: Out of bounds read in mod_cache_socache can allow a remote attacker to cause a denial of service - Resolves: #1566531 - CVE-2018-1283 httpd: Improper handling of headers in mod_session can allow a remote user to modify session data for CGI applications- Resolves: #1677496 - CVE-2018-17199 httpd: mod_session_cookie does not respect expiry time- htpasswd: add SHA-2 crypt() support (#1486889)- Resolves: #1630886 - scriptlet can fail if hostname is not installed - Resolves: #1565465 - CVE-2017-15710 httpd: Out of bound write in mod_authnz_ldap when using too small Accept-Language values - Resolves: #1568298 - CVE-2018-1301 httpd: Out of bounds access after failure in reading the HTTP request - Resolves: #1673457 - Apache child process crashes because ScriptAliasMatch directive - Resolves: #1633152 - mod_session missing apr-util-openssl - Resolves: #1649470 - httpd response contains garbage in Content-Type header - Resolves: #1724034 - Unexpected OCSP in proxy SSL connection- Resolves: #1566317 - CVE-2018-1312 httpd: Weak Digest auth nonce generation in mod_auth_digest - Resolves: #1696141 - CVE-2019-0217 httpd: mod_auth_digest: access control bypass due to race condition - Resolves: #1696096 - CVE-2019-0220 httpd: URL normalization inconsistency- fix per-request leak of bucket brigade structure (#1583218)- Resolves: #1527295 - httpd with worker/event mpm segfaults after multiple SIGUSR1- Resolves: #1458364 - RMM list corruption in ldap module results in server hang- Resolves: #1493181 - RFE: mod_ssl: allow sending multiple CA names which differ only in case- Resolves: #1556761 - mod_proxy_wstunned config needs the default port number- Resolves: #1548501 - Make OCSP more configurable (like CRL)- Resolves: #1523536 - Backport Apache BZ#59230 mod_proxy_express uses db after close- Resolves: #1533793 - Use Variable with mod_authnz_ldap- don't terminate connections during graceful stop/restart (#1557785)- Related: #1288395 - httpd segfault when logrotate invoked- Resolves: #1274890 - mod_ssl config: tighten defaults- Resolves: #1506392 - Backport: SSLSessionTickets directive support- Resolves: #1440590 - Need an option to disable UTF8-conversion of certificate DN- Resolves: #1464406 - Apache consumes too much memory for CGI output- Resolves: #1448892 - Cannot override LD_LIBARY_PATH in Apache HTTPD using SetEnv or PassEnv. Needs documentation.- Resolves: #1430640 - "ProxyAddHeaders Off" does not become effective when it's defined outside setting- Resolves: #1499253 - ProxyRemote with HTTPS backend sends requests with absoluteURI instead of abs_path- Resolves: #1288395 - httpd segfault when logrotate invoked- Resolves: #1368491 - mod_authz_dbd segfaults when AuthzDBDQuery missing- Resolves: #1467402 - rotatelogs: creation of zombie processes when -p is used- Resolves: #1493065 - CVE-2017-9798 httpd: Use-after-free by limiting unregistered HTTP method- Resolves: #1463194 - CVE-2017-3167 httpd: ap_get_basic_auth_pw() authentication bypass - Resolves: #1463197 - CVE-2017-3169 httpd: mod_ssl NULL pointer dereference - Resolves: #1463207 - CVE-2017-7679 httpd: mod_mime buffer overread - Resolves: #1463205 - CVE-2017-7668 httpd: ap_find_token() buffer overread - Resolves: #1470748 - CVE-2017-9788 httpd: Uninitialized memory reflection in mod_auth_digest- Related: #1332242 - Explicitly disallow the '#' character in allow,deny directives- Related: #1332242 - Explicitly disallow the '#' character in allow,deny directives- Resolves: #1445885 - define _RH_HAS_HTTPPROTOCOLOPTIONS- Resolves: #1442872 - apache user is not created during httpd installation when apache group already exist with GID other than 48- Related: #1412976 - CVE-2016-0736 CVE-2016-2161 CVE-2016-8743 httpd: various flaws- Resolves: #1397241 - Backport Apache Bug 53098 - mod_proxy_ajp: patch to set worker secret passed to tomcat- Related: #1414258 - Crash during restart or at startup in mod_ssl, in certinfo_free() function registered by ssl_stapling_ex_init()- Resolves: #1414258 - Crash during restart or at startup in mod_ssl, in certinfo_free() function registered by ssl_stapling_ex_init()- Resolves: #1378946 - Backport of apache bug 55910: Continuation lines are broken during buffer resize- Resolves: #1364604 - Upstream Bug 56925 - ErrorDocument directive misbehaves with mod_proxy_http and mod_proxy_ajp- Resolves: #1324416 - Error 404 when switching language in HTML manual more than once- Resolves: #1353740 - Backport Apache PR58118 to fix mod_proxy_fcgi spamming non-errors: AH01075: Error dispatching request to : (passing brigade to output filters)- Resolves: #1371876 - Apache httpd returns "200 OK" for a request exceeding LimitRequestBody when enabling mod_ext_filter- Resolves: #1372692 - Apache httpd does not log status code "413" in access_log when exceeding LimitRequestBody- Resolves: #1376835 - httpd with worker/event mpm segfaults after multiple successive graceful reloads- Resolves: #1332242 - Explicitly disallow the '#' character in allow,deny directives- Resolves: #1396197 - Backport: mod_proxy_wstunnel - AH02447: err/hup on backconn- Resolves: #1348019 - mod_proxy: Fix a race condition that caused a failed worker to be retried before the retry period is over- Resolves: #1389535 - Segmentation fault in SSL_renegotiate- Resolves: #1406184 - stapling_renew_response: abort early (before apr_uri_parse) if ocspuri is empty- prefork: fix delay completing graceful restart (#1327624) - mod_ldap: fix authz regression, failing to rebind (#1415257)- Resolves: #1412976 - CVE-2016-0736 CVE-2016-2161 CVE-2016-8743 httpd: various flaws- RFE: run mod_rewrite external mapping program as non-root (#1316900)- add security fix for CVE-2016-5387- add 451 (Unavailable For Legal Reasons) response status-code (#1343582)- mod_cache: treat cache as valid with changed Expires in 304 (#1331341)- mod_cache: merge r->err_headers_out into r->headers when the response is cached for the first time (#1264989) - mod_ssl: Do not send SSL warning when SNI hostname is not found as per RFC 6066 (#1298148) - mod_proxy_fcgi: Ignore body data from backend for 304 responses (#1263038) - fix apache user creation when apache group already exists (#1299889) - fix apache user creation when USERGROUPS_ENAB is set to 'no' (#1288757) - mod_proxy: fix slow response time for reponses with error status code when using ProxyErrorOverride (#1283653) - mod_ldap: Respect LDAPConnectionPoolTTL for authn connections (#1300149) - mod_ssl: use "localhost" in the dummy SSL cert for long FQDNs (#1240495) - rotatelogs: improve support for localtime (#1244545) - ab: fix read failure when targeting SSL server (#1255331) - mod_log_debug: fix LogMessage example in documentation (#1279465) - mod_authz_dbd, mod_authn_dbd, mod_session_dbd, mod_rewrite: Fix lifetime of DB lookup entries independently of the selected DB engine (#1287844) - mod_ssl: fix hardware crypto support with custom DH parms (#1291865) - mod_proxy_fcgi: fix SCRIPT_FILENAME when a balancer is used (#1302797)- mod_dav: follow up fix for previous commit (#1263975)- mod_dav: treat dav_resource uri as escaped (#1255480)- mod_ssl: add support for User Principal Name in SSLUserName (#1242503)- core: fix chunk header parsing defect (CVE-2015-3183) - core: replace of ap_some_auth_required with ap_some_authn_required and ap_force_authn hook (CVE-2015-3185)- Revert fix for #1162152, it is not needed in RHEL7 - mod_proxy_ajp: fix settings ProxyPass parameters for AJP backends (#1242416)- mod_remoteip: correct the trusted proxy match test (#1179306) - mod_dav: send complete response when resource is created (#1235383) - apachectl: correct the apachectl status man page (#1231924)- mod_proxy_fcgi: honor Timeout / ProxyTimeout (#1222328) - do not show all vhosts twice in httpd -D DUMP_VHOSTS output (#1225820) - fix -D[efined] or [d] variables lifetime accross restarts (#1227219) - mod_ssl: do not send NPN extension with not configured (#1226015)- mod_authz_dbm: fix crash when using "Require dbm-file-group" (#1221575)- mod_authn_dbd: fix use-after-free bug with postgresql (#1188779) - mod_remoteip: correct the trusted proxy match test (#1179306) - mod_status: honor remote_ip as documented (#1169081) - mod_deflate: fix decompression of files larger than 4GB (#1170214) - core: improve error message for inaccessible DocumentRoot (#1170220) - ab: try all addresses instead of failing on first one when not available (#1125276) - mod_proxy_wstunnel: add support for SSL (#1180745) - mod_proxy_wstunnel: load this module by default (#1180745) - mod_rewrite: add support for WebSockets (#1180745) - mod_rewrite: do not search for directory if a URL will be rewritten (#1210091) - mod_ssl: Fix SSL_CLIENT_VERIFY value when optional_no_ca and SSLSessionCache are used and SSL session is resumed (#1170206) - mod_ssl: fix memory leak on httpd reloads (#1181690) - mod_ssl: use SSLCipherSuite HIGH:MEDIUM:!aNULL:!MD5:!SEED:!IDEA (#1118476) - mod_cgi: return error code 408 on timeout (#1162152) - mod_dav_fs: set default value of DAVLockDB (#1176449) - add Documentation= to the httpd.service and htcacheclean.service (#1184118) - do not display "bomb" icon for files ending with "core" (#1170215) - add missing Reason-Phrase in HTTP response headers (#1162159) - fix BuildRequires to require openssl-devel >= 1:1.0.1e-37 (#1160625) - apachectl: ignore HTTPD variable from sysconfig (#1214401) - apachectl: fix "graceful" documentation (#1214398) - apachectl: fix "graceful" behaviour when httpd is not running (#1214430)- mod_proxy_fcgi: determine if FCGI_CONN_CLOSE should be enabled instead of hardcoding it (#1168050) - mod_proxy: support Unix Domain Sockets (#1168081)- core: fix bypassing of mod_headers rules via chunked requests (CVE-2013-5704) - mod_cache: fix NULL pointer dereference on empty Content-Type (CVE-2014-3581)- rebuild against proper version of OpenSSL (#1080125)- set vstring based on /etc/os-release (#1114123)- fix the dependency on openssl-libs to match the fix for #1080125- allow 'es to be seen under virtual hosts (#1131847)- do not use hardcoded curve for ECDHE suites (#1080125)- allow reverse-proxy to be set via SetHandler (#1136290)- fix possible crash in SIGINT handling (#1131006)- ab: fix integer overflow when printing stats with lot of requests (#1092420)- add pre_htaccess so mpm-itk can be build as separate module (#1059143)- mod_ssl: prefer larger keys and support up to 8192-bit keys (#1073078)- fix build on ppc64le by using configure macro (#1125545) - compile httpd with -O3 on ppc64le (#1123490) - mod_rewrite: expose CONN_REMOTE_ADDR (#1060536)- mod_cgid: add security fix for CVE-2014-0231 (#1120608) - mod_proxy: add security fix for CVE-2014-0117 (#1120608) - mod_deflate: add security fix for CVE-2014-0118 (#1120608) - mod_status: add security fix for CVE-2014-0226 (#1120608) - mod_cache: add secutiry fix for CVE-2013-4352 (#1120608)- mod_dav: add security fix for CVE-2013-6438 (#1077907) - mod_log_config: add security fix for CVE-2014-0098 (#1077907)- mod_ssl: improve DH temp key handling (#1057687)- mod_ssl: use 2048-bit RSA key with SHA-256 signature in dummy certificate (#1071276)- Mass rebuild 2014-01-24- mod_ssl: sanity-check use of "SSLCompression" (#1036666) - mod_proxy_http: fix brigade memory usage (#1040447)- rebuild- build with -O3 on ppc64 (#1051066)- mod_dav: fix locktoken handling (#1004046)- Mass rebuild 2013-12-27- use unambiguous httpd-mmn (#1029360)- mod_ssl: allow SSLEngine to override Listen-based default (#1023168)- systemd: Use {MAINPID} notation in service file (#969972)- systemd: send SIGWINCH signal without httpd -k in ExecStop (#969972)- expand macros in macros.httpd (#1011393)- fix "LDAPReferrals off" to really disable LDAP Referrals- revert fix for dumping vhosts twice- update to 2.4.6 - mod_ssl: use revised NPN API (r1487772)- mod_unique_id: replace use of hostname + pid with PRNG output (#976666) - apxs: mention -p option in manpage- add patch for aarch64 (Dennis Gilmore, #925558)- remove duplicate apxs man page from httpd-tools- remove zombie dbmmanage script- return 400 Bad Request on malformed Host header- htpasswd/htdbm: fix hash generation bug (#956344) - do not dump vhosts twice in httpd -S output (#928761) - mod_cache: fix potential crash caused by uninitialized variable (#954109)- execute systemctl reload as result of apachectl graceful - mod_ssl: ignore SNI hints unless required by config - mod_cache: forward-port CacheMaxExpire "hard" option - mod_ssl: fall back on another module's proxy hook if mod_ssl proxy is not configured.- fix service file to not send SIGTERM after ExecStop (#906321, #912288)- protect MIMEMagicFile with IfModule (#893949)- really package mod_auth_form in mod_session (#915438)- update to 2.4.4 - fix duplicate ownership of mod_session config (#914901)- add mod_session subpackage, move mod_auth_form there (#894500)- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild- add systemd service for htcacheclean- drop patch for r1344712- filter mod_*.so auto-provides (thanks to rcollet) - pull in syslog logging fix from upstream (r1344712)- rebuild to pick up new apr-util-ldap- rebuild- pull upstream patch r1392850 in addition to r1387633- restore "ServerTokens Full-Release" support (#811714)- define PLATFORM in os.h using vendor string- use systemd script unconditionally (#850149)- use systemd scriptlets if available (#850149) - don't run posttrans restart if /etc/sysconfig/httpd-disable-posttrans exists- use systemctl from apachectl (#842736)- fix some error log spam with graceful-stop (r1387633) - minor mod_systemd tweaks- use IncludeOptional for conf.d/*.conf inclusion- adding mod_systemd to integrate with systemd better- mod_ssl: add check for proxy keypair match (upstream r1374214)- update to 2.4.3 (#849883) - own the docroot (#848121)- add mod_proxy fixes from upstream (r1366693, r1365604)- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- drop explicit version requirement on initscripts- mod_ext_filter: fix error_log warnings- support "configtest" and "graceful" as initscripts "legacy actions"- avoid use of "core" GIF for a "core" directory (#168776) - drop use of "syslog.target" in systemd unit file- use _unitdir for systemd unit file - use /run in unit file, ssl.conf- mod_ssl: fix NPN patch merge- move tmpfiles.d fragment into /usr/lib per new guidelines - package /run/httpd not /var/run/httpd - set runtimedir to /run/httpd likewise- fix htdbm/htpasswd crash on crypt() failure (#818684)- pull fix for NPN patch from upstream (r1345599)- update suexec patch to use LOG_AUTHPRIV facility- really fix autoindex.conf (thanks to remi@)- fix autoindex.conf to allow symlink to poweredby.png- suexec: use upstream version of patch for capability bit support- suexec: use syslog rather than suexec.log, drop dac_override capability- mod_ssl: add TLS NPN support (r1332643, #809599)- add BR on APR >= 1.4.0- use systemctl from logrotate (#221073)- pull from upstream: * use TLS close_notify alert for dummy_connection (r1326980+) * cleanup symbol exports (r1327036+)- rebuild- really fix restart- tweak default ssl.conf - fix restart handling (#814645) - use graceful restart by default- update to 2.4.2- fix macros- add _httpd_moddir to macros- fix symlink for poweredby.png - fix manual.conf- add mod_proxy_html subpackage (w/mod_proxy_html + mod_xml2enc) - move mod_ldap, mod_authnz_ldap to mod_ldap subpackage- clean docroot better - ship proxy, ssl directories within /var/cache/httpd - default config: * unrestricted access to (only) /var/www * remove (commented) Mutex, MaxRanges, ScriptSock * split autoindex config to conf.d/autoindex.conf - ship additional example configs in docdir- update to 2.4.1 - adopt upstream default httpd.conf (almost verbatim) - split all LoadModules to conf.modules.d/*.conf - include conf.d/*.conf at end of httpd.conf - trim %changelog- fix build against PCRE 8.30- update to 2.2.22- Rebuild against PCRE 8.30- fix #783629 - start httpd after named- complete conversion to systemd, drop init script (#770311) - fix comments in /etc/sysconfig/httpd (#771024) - enable PrivateTmp in service file (#781440) - set LANG=C in /etc/sysconfig/httpd- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- fix #751591 - start httpd after remote-fs- allow change state of BalancerMember in mod_proxy_balancer web interface- Make mmn available as %{_httpd_mmn}. - Add .svgz to AddEncoding x-gzip example in httpd.conf.- update to 2.2.21- update to 2.2.20 - fix MPM stub man page generation- fix #707917 - add httpd-ssl-pass-dialog to ask for SSL password using systemd- rebuild while rpm-4.9.1 is untagged to remove trailing slash in provided directory names- fix #716621 - suexec now works without setuid bit- fix #689091 - backported patch from 2.3 branch to support IPv6 in logresolve- update to 2.2.19 - enable dbd, authn_dbd in default config- fix path expansion in service files- add systemd service files (#684175, thanks to Jóhann B. Guðmundsson)- minor updates to httpd.conf - drop old patches- rebuild- use arch-specific mmn- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- generate dummy mod_ssl cert with CA:FALSE constraint (#667841) - add man page stubs for httpd.event, httpd.worker - drop distcache support - add STOP_TIMEOUT support to init script- update default SSLCipherSuite per upstream trunk- fix requires (#667397)- de-ghost /var/run/httpd- add tmpfiles.d configuration, ghost /var/run/httpd (#656600)- drop setuid bit, use capabilities for suexec binary- update to 2.2.17- link everything using -z relro and -z now- update to 2.2.16- default config tweaks: * harden httpd.conf w.r.t. .htaccess restriction (#591293) * load mod_substitute, mod_version by default * drop proxy_ajp.conf, load mod_proxy_ajp in httpd.conf * add commented list of shipped-but-unloaded modules * bump up worker defaults a little * drop KeepAliveTimeout to 5 secs per upstream - fix LSB compliance in init script (#522074) - bundle NOTICE in -tools - use init script in logrotate postrotate to pick up PIDFILE - drop some old Obsoletes/Conflicts- update to 2.2.15 (#572404, #579311)2.4.6-98.el7.centos.72.4.6-98.el7.centos.701-session.confmod_auth_form.somod_session.somod_session_cookie.somod_session_crypto.somod_session_dbd.so/etc/httpd/conf.modules.d//usr/lib64/httpd/modules/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m64 -mtune=genericcpioxz2x86_64-redhat-linux-gnu?7zXZ !#,ᢧ}P] b2u Q{LR|ES*+оdBȾ@s -:_X w-+IAx_N`¬Y3v[.y +@C#~^[\BwI'u]U[+P^Ŋ0US]pz|q4KlY;QQ9u  o2Q3q&i012ƪ֨ccq4,Q1Z[Qwff"DbMi0\wN(N$]i}"jp%nnfYӌ+InbH'DǙECzYCiMp\ډ9kjIѴZ^a@KbՅ-Tn #s҉HhbrkZNݸY͙",PD>w 1>-OR6vjզmUEѝHe)qf®&Q{fh~#W0aR!@20ъVR jXb#^J@Rkb.1blŋIf :o07bcMqBO?<|MWs^!NOQ|x'Kɾ~KI;4J֝W0ۗ kT::Ⲝad='tdvk%XF)m42o%Zdo@S`]4{UxDe,,PA6){bH@15Rw|CVһo Vf(?6:b3Y&Xxd2{`Hɛ>-4t}C.I6觯N} ́)&= "G L~~N=V4wB'M2ORG4C uw}{CBږ\ ݎ+ ę5|O7!*?51ϙJS5x u.=XesmDIB̿HlrN @4$Yxl`ՅQH9v0\h1 ;@#T_=+*{,gxVKl𹀗+GpYf%`\z#G7N@# 7 "Veg"QL8hK ?:5dG?[B7HN߬gl[ߟRJX5vRzyiL@ ~):lF}33f_@2oJq@;:{JՁ!t\sNd]ks+k+ޣaQu75|wAKrs ָ'd?M*%鼵dѽ6uN}Űj8P(>r~R @!VO3O$MB] '8$2ĵUo8rYN ̽ Q0"Si#D銼HXD')9 ԣCn1q9k>DX86xA ;DqG/բ*o(!,?fEa.(0^MyF(Ji7PIp^I\OcN*䩯)&yP^ [sy@*e:ٔWds*?U;^n4 ؑFSmPnG2zq|뼅J_vvlm!/iV[qKkMZ@K\A=\.Oui֓1rPgRUl7h +(ߖbC?G9"vgs6i MWix(b)J7*QHuԊiz+$c<{-삊y2BK-GOb)X}(<魯fIixAkz@X/#h@Q2:oɵaeļ!Ñ?yr/{ފ|"#˂b]z^V &0T^FE@~h;vҕtE~L,v]RkegG)J*^kݞyFGY |ս dlKOU|d }ݻJ4KloLPfrۮ$ !FzF%n9u0 tZ8Y ޖ/ ƊD FIl 9nk~^CQ|֡)b!4N+ 7bcz1 4cSec͋[>?ZI~I֞JG Ld,0Y^#_8!C~ѵoOc?hNN^ɿ^T95y tm&3;ǫ H5Z߲X@p dZQq@#0ToMLK;_8a j@%8X?zA+}\_JPg ݃u潣'w]§WŇZ%5LEv홸_d}\y!yECKWe:MgREw]^g x_X+xh ~O cEd dM&泶Tʮi>{_:[\)?j˺˜&Ye[uz1e\?r_m)y0u~lb[tգc.eEG-œ}@FOZuT[7@AmAhlm[U҉`pMnˇ1˂6DMNjNx\'EJAef*O-}Mm?ZXuz1iMR./Fe_KRv/T4L6zW?=RM&> RN75lϊR ¦(X/hpKL$59M2 [%@ Ă /}ȸ9-CS)<6ĥ.HIsɣzU[p #`G֝ɀY2;$I9 F]wwx#.3)7@C k/m2;hٯa/e(Jv@@nBgw-^FhǣC.}52lߗ)T4pC"4tiTFm¿pxLMWc^r-K+tu/S@RvgE23M";ΨOj$A*%epnQV91|2[ڠTqrP ?@AX-BӪh sRk:S;%Ȣ&SƁ=7|%)bztc<< L"ΐ'U_p/Q> gчLSĺ*}°M1;(Wo)tO(u)Mun95J H)grݶ[x\KC 0}8]SZ(l_Nb̭#ՔlC]npU6HP$='k}zÇө !&.U {7~AQޮ/")A<6`7lRfo#=z 0i^+P4_sg㥧J ]D y.z@i!_w3z9*bRX(r=(c 58l_0!pqKf J" P7(os ]TԢR#p`UP8:jo~G.M0ox~qY%Js%oa/fHn "$94 iԯTdЯ1PX+Oͬ`D(D^%4t_a5Z57@gpvh!.0= `coiZCML_:k8hyĸ$=7kABk0岪-y+4y`+$?fwWc.Z0TݖX7P<u:@d~o2HY6ݣ ((4"ss\NF2Ƞ55coQ]1o<-c 1\ An#MU)сܲ08gl[(4G\ qyհ}{/]Hy !=/ӓy+i]2FuD^&MN#$PƜ4^y_m]Utb߂V&D Ib:4*&I2Y(fAGSȚ^<;^!_a},u.NwI}Fᓔߴ;'7rn;ɛv*0Oi`ԋO @e;'ps'Ud\qYF5O7[UtQGryE"% byӠNmoe1qo/|߬-k&ߓ/Y]2 mi̱ 15}TGnmKYQuV^l^*b$e[dAEގƊz& #wǑc,㡽Z$d,]#j?4=Deo,ͬ9T,H8E_ tgѱ1Ug?iQcwʅKnylRr0¦|_z6 %c$o-:ӄ~rqYay@#UIһ9,Б; aIPARn6ZMiyF,uƅxk/M_uM|Pzig#m`>z֧B6s}DLA0[ x##JIC|M;fz\zκb:2vڔgM;EzwQ@(0̙;AyΫ?.0s< ˒fXIv52P!ѧ$˪V b.ɢC,'B]ms)ɦkA_(kq=X&xI_mCqN/@$S^ZLa-u('v!ܨЩM3˚|zA~^N:iIi>_^j$w'ro_d{Ktmf2`|L}!;,TwxX ¨|yJd\fW! }Ke1 K촯cS<ӁU u`ʖ]ʘ{resmVO 60l֡ ,!B6g@ce0Pb{Qy<Ϛ9^َ/m}IYWΉ0%F>![e2S5…Op"Ty_X{TT!Rov'kRSvHɐb8o! 4x +;ۥd,CCd؎‘':Φ^Y[Q/a8O>h nuhBoĪ48r USRXK: epYxncN3ij'b13himo C V7'u": {Y"^~+0>$;o6 _?Y F qL]4j5CCE=o(}b@$cDqL5ءOadg4Qҩ+cQSNIFgaD#8V7m=4s;TH ZǜNf1_BdWؖbW-dDwn"8e h3,Ы1~0F_,DRL$~Jײw%g ҧXS0 q~Q)ER=ѣG\8APIZ#fCUV sc^"RYЧJ,^ĐoX(d X BF8R6{|(8ʆ~Ƴ"{V&3IRd+4"fwqxzJ%!fpGM4e"=68mK96Z ~It+rJ- x. 92$@ą&Zoi* gĜeVqnvK+>^; ̼ȪV!tyV̓B|21;&X/l>70xj 7>ȖY2/SelqNFB͞sԏ7 ȄIš`}d}Ҽ@҆1Ck]ФݎŲaޅUMNr$Uw͜2gy0AZ>Nb Z<*P1Z9y3 /' 䃰ȣ{zg^F^7+R{4djhL@ES3_̻~(T,i?$ŵg%"+=jwsܪ*(#vlrBoc־Pұ=anbc>^_Ay ɿ=Vɓy&MWyAoQvX[g I俛f1^22ocF?Lr2pzct_̓~|n':ٞ[: iYV`{6WWiOGI֗IK'Xu _!Vob"ԖƟ :6j‘""첏)"i$oޢiGǗ[yԴs7wjfR ~vÃfh$tU@Lh]MYB7 s_ֵT@-f%9f-' D,Acb)p,x3:Fys4aT%gg$:.žMzI{_j`L e/(Ip#R֞V4vĮlV>dm j-)tQ>K$4BE'7::*䏅?Zu $̓ם%t~nrHy \Xpۿ'MU^^ZN N).]MҖQI8jfuݶbm BW$Vu.160 Mr9ԡ=KH$z% &s[8$wwj$">[hz 6n?peIR\6sO}n+2ph~QOJb؄]& @-唸i"B1i~1{}}ٱ~1H1{i Ibc2$T1.D'2 Jjl̟Mpٌ;N'0 wLv޹s:=V\.Z{PDҀVr-?~Krfl2!=K^V=oϔC?cE'82 efBx/\_TtoZO=^%08tmܽeiuUJ2N8Vg߉rJjeȕ\4af@ts[-h+eP xk,,G@w`lӍ\uИkz-mJE@t ˤ~wB+4R}0~Mi.n囫;?C.BR;kT \t|hx)~ .i@H wQCLCཎ-?& y^!?}ƛ43ρ7= l^p )Aݔl4Uz@7icAۓd|6NSfnMg/yL.zBaЮFh\# %>K4&O? ᖜs%r̯4a뫯[%/ G/窛 i/Z}FEkpvjLK}&-I:5@k^#g@B~#2op LPٻ `61ՕSm_PXUPoiAggZl7Ǯ)WfuE -23mkkݖ4r;DPY_Q<YP~Jr݁?mzo]t}<.w lնbas3\@R'f'8~rNu[?GHܣ'E.1uun@m 0/ő)MS5)ŷPXɨ"^mZ'{mCQ9چoZʦ"H$*aa5k#_)}OT0Mc 4nF~>"ӻC\SC8{=qJOΞ;co#7KE@}Êqzd4Lan~RG86/br@8 }U!,\~\~!PEAXr oX11gn382:(-qۇ|D*M#lBcoT"mg5Cۋ~ Xha*+¶Dk`e)aMH;և'%()^  ϟ6I[]B ~LԋMGf)^nr+yx`e*%",\ hZæ/6g\Оۃ_ 7*hN1DB9S|{ ^M20#.K0@| +AKS,yfM묫#8/dMհwRB6`\.c!t{U`$ _&ľ C/Ow.J>Kak+ fض6cʆt' tC¹U瓜KYn`Udz[3[H\ЭyFgݧq5ŏsoo !ƄL c N8cPLN|<] d6b4:r`aqB{ Uj6C-C7M؃cƵ?G)֪-,^dg3]LC\xP/Gyn33+8ąpk6mOaBtۊi+FߌDQjvNJ~2\ojZ1p=@{]TtUTlWQ-0y8cqV7q)dD#PzP^NԷc0Z/:mKrW,qhX?y5Gv"\hk3OD @fnp}gL@/b~'+F}& ,zsP0"^vIm &ب2R])>D]/n!yZczͧ^"ϐv/d!yn[}r[c&ʀdbLr%yemO=%_oGDOG~lRKQW<{ iTo4R{ fzLgnT< \UǗf wnltT V~C;9js~ X.y#+@-qaa<¹0ʸBG"4=%6I% ?aIbnC  3FV1/]? H0Hőx:<4v: moV@ppᱝQ&:r8?[ՂgN:Q7}H$ Qc%HOcψTz:JnF21 zZaɉ\HL5n=VȠ"uy?Ν[j4Hi~M?'JsISy[G/(!Ҕ3g0oY?yRJޡtuj_AT7:te~Ӯ3.fa\AXR?PrٟNRr 6w6ԫKJRgYS$zڒ8TIb۽d|J'MT g `pÞbh2&Cxmu[ ?09R>3d3% D&qVuӇfp:g4@qu:\/g iwlVO k=U&(KV<"t+ lhF(Or(, Uȟo:Oԧv.AmUC }XȆ.phe]fw,WB`Pc=; .^ P#Vӎ+&#PW}>:9G_)n6ce1Sg?G1^;oB˕K yXW, r< Xz7 o QJ<-!%Um^3D" !ѕ#E=Eٖ2p|:&)6UIvjxB0[ͶYe퇱Oݺ8QOe@ fp]xܵ?QIg Rxh;v lQ{m+.9W3M_rjfF:V'6Ͳ_ vc_Q7y4xщ@g42ה2酸CCӴu/l,5<啗C~6֛Ă@@Lz'y,G^ja}  H'qa^-Tda 4 }TlnkI\EwCWǔ-K4oE&n *R9 5Q/BiR[/0r`΅`FXCh.f&x%ɸq{8%6 &/hk|Z vp}s@TŌc5iRh׆D(g߲be@|}C37?et"1H>q_HK3їYlޚtUv+k@w$ÞgVѩ-0x/eWQK _4:2gq&J6c_]7`AY1-E"e =ADU,ou # SWNA@Ś}o_L@j4s+:=$`˙ EcT "K8d~.Orq\e,)toU,/kyQH!sk֩fUŻۿ-C0׭,?\)eoeĐg 0³щXѿuĵ٨'a#!ETR Z7l MjΆ-WFPc gHlF{q0%*NKeͅ^3C U# E1" ڙܶ^}##sȌj}S'g~<+Md[s\ YN%ZIhqE`{ wopƏ؎Ki_܈ 25b$uk[/iصcBnz=eElU(;D`3֍zI OaLh"i/N7P~-O]Ċ]a{R1˱'\ELOkmJ: fֆHU%$5VQFvu϶SS)/RU3 zԗ\N\ Z%_?[2eWCr `BV'k|.` ^3oh&슧5-3 -^@Ns!G)#$2O_Sdvk5i{`3Z͙Whj*!էbAQy(çUA -!8coar[ j؏{J?%Caoɠͺp%w HU2' --:OSI:/ am.bc6է "$}v o1] KbDϚ0 u "DWL1~J0_bSb*@6#g9GՓ3G`+j6(ĸ‡Hg(MʹDr4KbH70?%jhEO yқ?9ai=e FMM0glב9w Fl[dX>Nl1_4cԲ{ \o{Nd﹋ I`sի{tЈQbC)VMVf-!X<Q9CZo1Я;.4R>4yME P@rdvq?R#MɔdPաȨp 6[3I{ ]%[0KCQKl3ji0W0D.d/iK>K2YGAFkWipl|!ZڪaD,](}ujfAg%=ЅcZJJDHE~Vd'v`YT y6i/cJrYҩT2tၡ D-V=S?B#y((kαYdX%$Z3C6ANwNؗl䫋L,jTxXM꿩%51IFhU?#\4~OMqnGlQΨPy/-H5v9nE7"gi9cNk>* ."Ni#A;aRv?pwyO"M#"taN.KS:G8|. V#J4{.$n[vֳ-۷ @-PXB 2c&!YWc&tM{sn:nr0bl1bl:v*VPIZ)>.c#iwEQSb"`5QY\IxD86i_v!:h1u! AE$.;?Kz|.o)VFrtl|$+^ S++Sa9,0FC]l")pE]1`&("C',nR0n& 鷞;U+&hj [NMoGEaeJC^~ǰMiR<6Vs(d B'Ģ^-EpNIƒXýd| Pc!jvEW(=b~8h`=B Q Ԏ3CxD -]ܐqOHs:!<)g*6U3IFdLw@I -kwwIg&D aޕ響;ɩi@hvF j}x؝45sv9|C)rLz:y@l6jo(BCn-qz{W5YtUaUضR+Tu]^L<=*0 u-r@ u c.ߤt?d+F UZ4_U}8y/PJ7)|KvOUom~s]昮\WefPIWzk/VE5*aE^jbN ;X *eD7?ke_4l_OC?l4<;(5Wi jU9hK!>NTk <`f*ǔET,|g6\[dpLufdeFՇ]KŏFհa '{Te P#rRvCL}n!7OXPt.''rݣR.uےk/9سI&{R[;6UL^Jo^҈Z)i{Z(-Mw)]3;+CGjgӯvc7!iM.~cp cOLxLۯMN=VqpMNi@lr?&ǁ %D^gTCGh@{F L5;Vb9#}~Qz_7ﻨNk#e|-4O!绍M˲HE 2(>Wh'=Q%P=l(ܘ9wyE9>^MPK3ar5tqǡi+^R׻ayTDqҒ"pIB`B֒v2ʩZ~۴ĩ? 6뫹1jE=A/wy̞W j*q+-$1 Je b"|o"oF9^T|3)Ӫ7ůL_{caF:jN64u]߰PkTpl%G;8a Ip:hotSl߄INY+x/%Dvl7+lkZ,XIw5JjSN%8M7n~l\ՁqfiY|w-VJ7[)z ejGArwXt\[Wx7fTpKl q0DF/[ 0^ǛNnqj_' 0 LZcmg5w4#Ŧŧ*KoT!u[t%lDގ0h+M cݑ{2.ag$ #HH![/tZk#7L\Qq>CV7K hht:Il -O&YNk{ AZU+]աSk>1*uI=ٚ)$6ڳG^e &t}N>%ت1c'y@2tb1BHR&|Ωd3$Qd-# U$@ոKn]L0Zð,!95!.TCVcj A &pFĠ!~3K!+|hs:)fDsƻ/ G"\ԥ˨PfΡk"uh@Z&9ZF:b:+>&B 5|AˡEC,t'bp]T)*oU0'mbG $wb`|3S+.TCwؙ^(__fr@CʇFeN3[I0zua~W 8XI\Nj?9 xUl}*D[<>I/ TMdZ ljג=T{ɫeG , 㑿 8e^_ZKNV\CZl|dwTZ>)-N hzyo(򺼕zD%q/bTpA$&%HƼt:MсȎ R*j6v4Nܰtʬ?p#*K*i9aCy(f?/Cy>&CC Pie::J ;$rJ- '67A#jvU+9QVsS:V|}DH&}+]?Ɩyv/N3ߢ@5e9rRqR[~vP׽n]ۇqR:_@ߝ1>9Q+8FWDfG UHtFX`aО8x<1!<)B|0W(rdºIJvݥ/41W=_i #CzHC.%Dp|0HѠI_8iRU\1$K$Z쭋,ף9%vɧ yTPly _g͹CG+c*yUY9HG3S}EjKS[D!S} ٺ' ˜Wk;.:Ւg. Hiwt uYwjWoea,Axk> ޒzD2nVgdZx{]c VԼ:YzG۫!T\Rᧀ ֏"f&DJ]%øghSK}"wk.Q5C_S&[J%5BCEJqL-cd*t]ϯ-yF-ݨU$US^Z-m"?-^salݲV]Rt>ƪth -礩(Z7T)cfڂq_aW4Г"@k"BB .{&3vB2\%W0E7z N+RxݪRiT ?kD|0bZDgnkPcAݴF^ MR<*A#R$ of[0?ܻ<@P}CŸ|dxc' id:9i#(vGom8c R3Lzy yҴ*R{3P {5i.& {YUmnhLG΁ ԁCе$ m;VA],dΌ,pb86.o{2b$W^QAdt2e!?0i՘:@RAԫ)X( _~5Ar鿶l <|>b[tIa;ihs|n؁銌8=aAͩ==_8K8[[3ӗ~є{`_c"yt )ny=:H* GIp?<:ق4FV0Ld_(PoF#(`w}CXM匍$!G+E0㩲-HBc_AywHR(.73?D>9jcaж<óp2QƚphԵۭepQvԃ]B т6 .?@ΑU9uMJ=ເɦyĤ0G7/l^MCXzwH)^ zp܀A[H[}z#\;QZx<Y/ީrOfR 4X> W)[{%mq8՘n @h,?@rǔ`ύHbݗ0ه\EeV:S%l+?t4=>JOB*G/ٝpT.!/}0n{W-.]ɗ޽Mk:۫T.>̿-ꅌn/2pf6{ӏ0 [P4'GpgAR?GtE 6ػ%4+  #9qm<6f EտucGJ1aSTf}l̮L.?| B"0p) f$-SwiWTk {-H92 -YNӚ6@mr^,J⬭nûLW5Vdԝ>iMVvv)XȟcP["3gQ[Wb`HqTj@hbL"O;r;Pq=Vi@zaR`$>9ƖO%in;MAO S2``9ݴCH9* ōIsy14r)kƳMn9zgp8ԧwǼ1o2=&BSڦlC 2(vL4BY@ڙ͋`8ӱA`uHt7N(.(7NN;0.q~ 7DG2ǞMЕvd@5 !oaqsۦ.t(n!kDEH7v=={/%RoGũXe\E\o|ϯGcYVaŵPΡYiUuxP3l G:2NbLazj6~7*ז.8:_͐曹\ tJTR|DJ.0crKU-Q~~'芨}ŧ M^AP:n% R8Cjh+wKCpqNbwzh:qJcz}ak9G7\+O.ICŭEh"zٜr83Ǧ :K/Z?RQ لZY #$5gGrth !TdZ3¬$GFF4,1d%ɐʊn"Od 1m$UT?,q9hdܫO*9FP~YA z3XԴyiRxqM}LJ>S H4BLM*hUS CAP;;];M2˫<>߁_r >$5ăS_=o9Y\t1%[؀TW{ȅίk<_𐯿l)9fn{^}NI#I^qRf M#DF#p5GNK쏀1[GQ;1a'NOqRL͗/H /[ =Oؘjk⹺j3x(lR-,34,PV:% vI&c_z2L^e`?: 60: +㞮4P7rg)SؙMjVi)bc#0\8OSP""Tus[t2A'劵 r?jF# 3!' `a 1#/ˡow(kBH TSV# h^ܳRCG?ψqg%c?@=)|v^̴ΞݔIl~ gd[[[L!l47TO8ơ'M@'fWvTqP, k}U]f,u|\,Mm\66UrgV#ZyAo碂Y Ady ܸ(5Ȓ1/)0~e_b">bBBVEy"v[\}N2$ fnvL{gO,{+!eѰ\X^YrmcZM7S?&ddu(x[{j<l >ɳ%o?-͑pɾjtG!!9L)ms&Oyz^ Q8J\k)TgwɠXXeݗvQv]+d+Y* }w~1y1<IJ + (J<;A׳8{0:>,ſ&[\h;$H5ӨqiuIsvu޿an :"[E؁jԤbf{d1L{YIj55 em:˴1H=MCAEQ \Gk7}J3yWbCKڥ&f)3"y~s­9;QU}e"a-x9]HZԻ'U!npy'WQ Z>=S=%n6Vd>A#cE7?S5#+>".*n:Q7I[c/S<߼ff_&2jgNEH~:op6Bj] {W \)*7SۣaNJ _Ą2_ |-T%߮E6{Sh36-2$xV&ǜCAI`wC*hXBMߊt:fѾ$v]!eec^C"p@-vrggk* w}*=%,RҾ^Hܙ MLD[.l8 +lʤWLbh\kV#.9@ " ?Sb%?.3%!{BE;vC%3ߣKm#hOr@QƬGz st:4|j_Zui& tY<~Km nQr\pGƨe9{46[/pJ8LŽcU7Wwz$n/|5&"𩺑[!uSMҌsH#:BwXК Ӽr4jDi59Z;n+!뭞p%R%EbϮhrɼAEqgکR/Hl"SY_8퐨 ?dՙggUsͶvP '@;&N=/&}ji{ł 頙^.piNKhe%xP\ ?nY4Bx λ^]QTg=#ȗ"|:$t}hA=`>gҧK9QS=GZ?s42Zjܤ 6-/ke1ZWiUѵ-Dg74`7|liL-(cvԻ(jiU6S53"kXTB3!/X+\MP8W# G 7Dn /fiRDA.eJ] w,zb0vq G}#WOj5XFUGZɦNh6]s 4Oj}I YZ