nss-util-3.67.0-4.el8_4 >  A `AU]ys({9MK}q*eayk^6Gq̻ndUxXCZTc u,E7!4C*[`:.)F3܃XT`PՊ#X=JWT4\"=޺. FV~]5@+ɵ}ef&ѽMfH;7pifҀ!"On;7w8-ڑ\"M(7 gG,ñ8vX^2S ?JM̙KXIJx^1M"B-Iuo7{;Z@LşQ,gV!"pб+Nª>ޠZT}`q"OzZJaL_8^*2{b'lgf%8p4 D󰅡|w396d10bafe3c3a5fda325f4b0e73fe328bbf45e30c70769f66bc14f870d2585dc00b4488626206db24bed8690c89d242634dd46c)`AU]fpUʿPKB>t3g3bb+,4Yh@ >L>6M/}Ñ*o.O) 7W7>jaTKG4lC#68yTuTUH.Ԝ%LfgS#5&Ɠ8B ]}EÔ>tc%9LYDY|CV2S$U@4 .c2cF$Lgͮ'ϩ;+^F¯MaMmD;01oQ2# Y]jMJ:QH^V|:]D㩹L =5Tyzi(kY> ԐPҲ}-v#@-wAu?NVnYd̼+N]WvB*[Q4Aa=R]+=[F&Y@⨉pl-HC"}0h_: cEٞvCOIO^6e,bbLKa(>p<|?ld   F "(0H T ` x  (@^|,d(89 d:ZGHIXY$\T]l^b4dsexf{l}tuvwxy &hCnss-util3.67.04.el8_4Network Security Services Utilities LibraryUtilities for Network Security Services and the Softoken module`3+ppc64le-01.mbox.centos.org]$CentOSCentOSMPLv2.0CentOS Buildsys Unspecifiedhttp://www.mozilla.org/projects/security/pki/nss/linuxppc64le$pFAAA큤`3(`3(`3(``3(`bf0c3b6429002f12ee7c53f0618069036f5c3f7a438dfdabb73539734a24fc39a20c1a32d1f8102432360b42e932869f7c11c7cdbacf9cac554c422132af47f4../../../../usr/lib64/libnssutil3.sorootrootrootrootrootrootrootrootrootrootrootrootnss-3.67.0-4.el8_4.src.rpmlibnssutil3.so()(64bit)libnssutil3.so(NSSUTIL_3.12)(64bit)libnssutil3.so(NSSUTIL_3.12.3)(64bit)libnssutil3.so(NSSUTIL_3.12.5)(64bit)libnssutil3.so(NSSUTIL_3.12.7)(64bit)libnssutil3.so(NSSUTIL_3.13)(64bit)libnssutil3.so(NSSUTIL_3.14)(64bit)libnssutil3.so(NSSUTIL_3.15)(64bit)libnssutil3.so(NSSUTIL_3.17.1)(64bit)libnssutil3.so(NSSUTIL_3.21)(64bit)libnssutil3.so(NSSUTIL_3.24)(64bit)libnssutil3.so(NSSUTIL_3.25)(64bit)libnssutil3.so(NSSUTIL_3.31)(64bit)libnssutil3.so(NSSUTIL_3.33)(64bit)libnssutil3.so(NSSUTIL_3.38)(64bit)libnssutil3.so(NSSUTIL_3.39)(64bit)libnssutil3.so(NSSUTIL_3.59)(64bit)nss-utilnss-util(ppc-64)@@@@@@@@     @libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libdl.so.2()(64bit)libnspr4.so()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.17)(64bit)nsprrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)4.25.03.0.4-14.6.0-14.0-15.2-14.14.3` @`ٹ`̊`9@`Ȗ@`D`r_@_^@___@__"@_"@_"@_!d_@_ L_ _@^^@@^@^ۅ@^4]N@]]߶]e@]M@]µ]L]]^@\F@\Q\\\\\\@\I\I\U@\ `\l@[[[u[#@[[W[O+[M@[ZZw@Z|;Zo Zo Zg#Z ZZZ@Y+@Y{YY@Yn@YV@Y@YyYm@Yg`YJ_Y1S@XX@XX @XXYX@X@XX~@Xx@XoX>@X*X@WW@Wt@W~Wv[@WrfWoWm WbWQq@WPWJWDB@W4p@W@Wo@W@VV޾V޾V@VяVIVɦV@V@V=@V@V@VO @VHsVEV3[V UYU@UU@U@U>Ua@Ug@U[%UUU @T@Ts@TTء@T@TÉ@TT@T@T?@T:m@T"@S@S<@S@S@S @SSSSpShS(5@S@SRy@RJ@R@RR@RSRR@Rm@Rg@RD!R@RRR|Q@Q*@QQ@QKQ@QQW@Qw@Q]k@QNQ9Q7/Q#@QQ @P!@PՠP @PqP@P@PAPXPd@Pd@PPP@PP5@PPnP;a@P(@P H@O;O;O@OiO@O@O}O~OiOYOX@OOdO&@O!@@OO@O@N>@N>@NNܲ@N`NؽNN@NuN;@Np@Nf @NA!@N*NpM@MWMc@MM@M@MMfH@M^_@MZjMS@MQ0@MQ0@MQ0@MQ0@MK@MGMF@M6@M-MM@Ls@LOLLZ@L6LdL@L*@L@LA@LL@L4Lx@Lx@Li(@Lf@L_L_LT@L0L0L K @KsKsKKCKCKCK]KMKLd@KD{@K<@K5K4@K,@K+nK*@K K@K@K@KJݦ@J - 3.67.0-4Bob Relyea - 3.67.0-3Bob Relyea - 3.67.0-2Bob Relyea - 3.67.0-1Bob Relyea - 3.66.0-2Bob Relyea - 3.66.0-1.1Bob Relyea - 3.66.0-1Bob Relyea - 3.53.1-17Bob Relyea - 3.53.1-16Bob Relyea - 3.53.1-15Bob Relyea - 3.53.1-14Bob Relyea - 3.53.1-13Bob Relyea - 3.53.1-12Bob Relyea - 3.53.1-11Bob Relyea - 3.53.1-10Daiki Ueno - 3.53.1-9Daiki Ueno - 3.53.1-8Bob Relyea - 3.53.1-7Daiki Ueno - 3.53.1-6Bob Relyea - 3.53.1-5Bob Relyea - 3.53.1-4Daiki Ueno - 3.53.1-3Daiki Ueno - 3.53.1-2Daiki Ueno - 3.53.1-1Daiki Ueno - 3.53.0-1Bob Relyea - 3.44.0-15Bob Relyea - 3.44.0-14Bob Relyea - 3.44.0-13Daiki Ueno - 3.44.0-12Bob Relyea - 3.44.0-11Daiki Ueno - 3.44.0-10Bob Relyea - 3.44.0-9Bob Relyea - 3.44.0-8Daiki Ueno - 3.44.0-7Daiki Ueno - 3.44.0-6Daiki Ueno - 3.44.0-5Bob Relyea - 3.44.0-4.1Bob Relyea - 3.44.0-4Daiki Ueno - 3.44.0-3Bob Relyea - 3.44.0-2Daiki Ueno - 3.44.0-1Daiki Ueno - 3.41.0-5Bob Relyea - 3.41.0-4Daiki Ueno - 3.41.0-3Daiki Ueno - 3.41.0-2Daiki Ueno - 3.41.0-1Daiki Ueno - 3.39.0-1.5Bob Relyea - 3.39.0-1.4Daiki Ueno - 3.39.0-1.3Daiki Ueno - 3.39.0-1.2Daiki Ueno - 3.39.0-1.1Daiki Ueno - 3.39.0-1.0Daiki Ueno - 3.38.0-1.2Daiki Ueno - 3.38.0-1.1Daiki Ueno - 3.38.0-1.0Kai Engert - 3.36.1-1.2Daiki Ueno - 3.36.1-1.1Daiki Ueno - 3.36.1-1.0Daiki Ueno - 3.36.0-1.0Fedora Release Engineering - 3.35.0-5Kai Engert - 3.35.0-4Kai Engert - 3.35.0-3Daiki Ueno - 3.35.0-2Daiki Ueno - 3.34.0-2Daiki Ueno - 3.33.0-6Kai Engert - 3.33.0-5Kai Engert - 3.33.0-4Kai Engert - 3.33.0-3Daiki Ueno - 3.33.0-2Daiki Ueno - 3.32.1-2Daiki Ueno - 3.32.0-4Kai Engert - 3.32.0-3Daiki Ueno - 3.32.0-2Fedora Release Engineering - 3.31.0-6Fedora Release Engineering - 3.31.0-5Daiki Ueno - 3.31.0-4Daiki Ueno - 3.31.0-3Daiki Ueno - 3.31.0-2Daiki Ueno - 3.30.2-3Daiki Ueno - 3.30.2-2Kai Engert - 3.30.0-3Daiki Ueno - 3.30.0-2Kai Engert - 3.29.1-3Daiki Ueno - 3.29.1-2Daiki Ueno - 3.29.0-3Daiki Ueno - 3.29.0-2Daiki Ueno - 3.28.1-6Daiki Ueno - 3.28.1-5Daiki Ueno - 3.28.1-4Daiki Ueno - 3.28.1-3Daiki Ueno - 3.28.1-2Daiki Ueno - 3.27.2-2Daiki Ueno - 3.27.0-5Kai Engert - 3.27.0-4Daiki Ueno - 3.27.0-3Daiki Ueno - 3.27.0-2Daiki Ueno - 3.26.0-2Elio Maldonado - 3.25.0-6Elio Maldonado - 3.25.0-5Elio Maldonado - 3.25.0-4Elio Maldonado - 3.25.0-3Elio Maldonado - 3.25.0-2Kamil Dudka - 3.24.0-3Elio Maldonado - 3.24.0-2.3Elio Maldonado - 3.24.0-2.2Elio Maldonado - 3.24.0-2.1Elio Maldonado - 3.24.0-2.0Elio Maldonado - 3.23.0-9Elio Maldonado - 3.23.0-8Elio Maldonado - 3.23.0-7Elio Maldonado - 3.23.0-6Elio Maldonado - 3.23.0-5Elio Maldonado - 3.23.0-4Elio Maldonado - 3.23.0-3Elio Maldonado - 3.23.0-2Elio Maldonado - 3.22.2-2Elio Maldonado - 3.22.1-3Elio Maldonado - 3.22.1-1Elio Maldonado - 3.22.0-3Elio Maldonado - 3.22.0-2Fedora Release Engineering - 3.21.0-7Elio Maldonado - 3.21.0-6Michal Toman - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado Batiz - 3.21.1-2Elio Maldonado - 3.20.1-2Elio Maldonado - 3.20.0-6Elio Maldonado - 3.20.0-5Elio Maldonado - 3.20.0-4Elio Maldonado - 3.20.0-3Elio Maldonado - 3.20.0-2Elio Maldonado - 3.19.3-2Elio Maldonado - 3.19.2-3Kai Engert - 3.19.2-2Kai Engert - 3.19.1-2Kai Engert - 3.19.0-2Kai Engert - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.17.4-5Till Maas - 3.17.4-4Elio Maldonado - 3.17.4-3Elio Maldonado - 3.17.4-2Elio Maldonado - 3.17.4-1Ville Skyttä - 3.17.3-4Elio Maldonado - 3.17.3-3Elio Maldonado - 3.17.3-2Elio Maldonado - 3.17.3-1Elio Maldonado - 3.17.2-2Elio Maldonado - 3.17.2-1Kai Engert - 3.17.1-1Kevin Fenzi - 3.17.0-2Elio Maldonado - 3.17.0-1Fedora Release Engineering - 3.16.2-4Elio Maldonado - 3.16.2-3Tom Callaway - 3.16.2-2Elio Maldonado - 3.16.2-1Elio Maldonado - 3.16.1-4Fedora Release Engineering - 3.16.1-3Jaromir Capik - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.16.0-1Elio Maldonado - 3.15.5-2Elio Maldonado - 3.15.5-1Elio Maldonado - 3.15.4-5Elio Maldonado - 3.15.4-4Elio Maldonado - 3.15.4-3Peter Robinson 3.15.4-2Elio Maldonado - 3.15.4-1Elio Maldonado - 3.15.3.1-1Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.2-3Elio Maldonado - 3.15.2-2Elio Maldonado - 3.15.2-1Elio Maldonado - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.15-5emaldona - 3.15-4emaldona - 3.15-3Elio Maldonado - 3.15-2Elio Maldonado - 3.15-1Elio Maldonado - 3.15-0.1.beta1.2Elio Maldonado - 3.15-0.1.beta1.1Kai Engert - 3.14.3-12Kai Engert - 3.14.3-10Kai Engert - 3.14.3-9Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.2-2Elio Maldonado - 3.14.2-1Kai Engert - 3.14.1-3Elio Maldonado - 3.14.1-2Elio Maldonado - 3.14.1-1Elio Maldonado - 3.14-12Elio Maldonado - 3.14-11Elio Maldonado - 3.14-10Elio Maldonado - 3.14-9Elio Maldonado - 3.14-8Elio Maldonado - 3.14-7Elio Maldonado - 3.14-6Elio Maldonado - 3.14-5Elio Maldonado - 3.14-4Elio Maldonado - 3.14-3Elio Maldonado - 3.14-2Elio Maldonado - 3.14-1Elio Maldonado - 3.14-0.1.rc.1Kai Engert - 3.13.6-1Elio Maldonado - 3.13.5-8Elio Maldonado - 3.13.5-7Fedora Release Engineering - 3.13.5-6Elio Maldonado - 3.13.5-5Elio Maldonado - 3.13.5-4Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.4-3Elio Maldonado - 3.13.4-2Elio Maldonado - 3.13.4-1Elio Maldonado - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Tom Callaway - 3.13.1-13Elio Maldonado - 3.13.1-12Fedora Release Engineering - 3.13.1-11Elio Maldonado - 3.13.1-11Elio Maldonado - 3.13.1-10elio maldonado - 3.13.1-9Elio Maldonado - 3.13.1-8Elio Maldonado - 3.13.1-7Elio Maldonado - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado Batiz - 3.13.1-4Elio Maldonado - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.13-1Elio Maldonado - 3.13-0.1.rc0.1Elio Maldonado - 3.12.11-3Kai Engert - 3.12.11-2Elio Maldonado - 3.12.11-1Elio Maldonado - 3.12.10-6Michael Schwendt - 3.12.10-5Elio Maldonado - 3.12.10-4Dennis Gilmore - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.10-0.1.beta1Elio Maldonado - 3.12.9-15Elio Maldonado - 3.12.9-14Elio Maldonado - 3.12.9-13Elio Maldonado - 3.12.9-12Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado - 3.12.9-9Fedora Release Engineering - 3.12.9-8Elio Maldonado - 3.12.9-7Christopher Aillon - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.9-0.1.beta2Elio Maldonado - 3.12.8.99.2-1Elio Maldonado - 3.12.8.99.1-1Elio Maldonado - 3.12.8-9Elio Maldonado - 3.12.8-8Elio Maldonado - 3.12.8-7Elio Maldonado - 3.12.8-6Elio Maldonado - 3.12.8-5Elio Maldonado - 3.12.8-4Elio Maldonado - 3.12.8-3Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Elio Maldonado - 3.12.7.99.4-1Elio Maldonado - 3.12.7.99.3-2Elio Maldonado - 3.12.7.99.3-1Elio Maldonado - 3.12.7-3Elio Maldonado - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-12Elio Maldonado - 3.12.6-11Elio Maldonado - 3.12.6-10Elio Maldonado - 3.12.6-9Dennis Gilmore - 3.12.6-8Elio Maldonado - 3.12.6-7Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.13.2Elio Maldonado - 3.12.5-1.13.1Elio Maldonado - 3.12.5-1.13Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.9Elio Maldonado - 3.12.5-2.7Elio Maldonado - 3.12.5-1.6Elio Maldonado - 3.12.5-1.5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1Elio Maldonado - 3.12.4-14.1Elio Maldonado - 3.12.4-13.1Elio Maldonado - 3.12.4-13Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Better fix for the sdb timeout. The issue wasn't a race, it was the sqlite timeout waiting to begin a transaction under heavy thread usage.- Fix sdb race condition- Fix coverity issues- Rebase to NSS 3.67- Restore old pkcs12 defaults.- build nss for older nspr so we can pass gating with the new nspr in the build root- Rebase to NSS 3.66- Fix various corner cases with ike v1 app b support.- Fix the following CVE - CVE-2020-12403 chacha-poly issues - CVE-2020-12400 constant time ECC. - CVE-2020-6829 constant time ECC.- Revert some policy changes the generate ABI runtime issues.- Add support for enable/disable in policy. Now if your policy file has disallow=x enable=y it will act just like our other libraries.- Add OAEP interface so applications can wrap keys with RSA-OAEP rather than RSA-PKCS-1.- fips need to reject small primes even if they are approved - code to autodetect whether or not to use the cache needs to do so in a way that doesn't mess with filesystem negative file caching. - add kdf selftests- Fix issue with upgradedb where upgradedb expects standard to generate dbm databases, not sql databases (default in RHEL8)- Disable dh timing test because it's unreliable on s390- Explicitly enable upgradedb/sharedb test cycles- Disable Delegated Credentials for TLS- Fix attribute decryption issue where the private key components integrity check on private attributes where not being checked.- Update nss-rsa-pkcs1-sigalgs.patch to the upstream version- Include required checks for dh and ecdh key generation in FIPS mode.- Add better checks for dh derive operations in FIPS mode.- Disable NSS_HASH_ALG_SUPPORT as well for MD5 (#1849938) - Adjust for update-crypto-policies packaging change (#1848649) - Fix compilation with -Werror=strict-prototypes (#1843417)- Fix regression in MD5 disablement (#1849938) - Include rsa_pkcs1_* in signature_algorithms extension (#1847945)- Update to NSS 3.53.1- Update to NSS 3.53- Fix swapped CMAC PKCS #11 values. - Fix data alignment crash in CMAC.- Fix coverify scan issue- Fix endian problem in SP-800 108 code.- Install cmac.h required by blapi.h (#1764513) - Fix out-of-bounds write in NSC_EncryptUpdate (#1775913)- Add SP-800 108 Generalized kdf- Check policy against hash algorithms used for ServerKeyExchange (#1730039)- Add CMAC- CKM_NSS_IKE1_APP_B_PRF_DERIVE was missing from the mechanism list, preventing PK11_Derive*() from using it. Add gtests for the PK11_Derive interface for all the CKM_NSS_IKE*_DERIVE mechanism.- Backport fixes from 3.44.1- Add continuous RNG test required by FIPS - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism- Rebuild with the correct build target- rebuild to try to retrigger CI tests- Fix certutil man page - Fix extracting a public key from a private key for dh, ec, and dsa- Disable TLS 1.3 under FIPS mode - Disable RSASSA-PKCS1-v1_5 in TLS 1.3 - Fix post-handshake auth transcript calculation if SSL_ENABLE_SESSION_TICKETS is set - Revert the change to use XDG basedirs (mozilla#818686)- Add ike mechanisms in softokn - Add FIPS checks in softoken- Update to NSS 3.44 - Define NSS_SEED_ONLY_DEV_URANDOM=1 to exclusively use getentropy - Use %autosetup - Clean up manual pages generation - Clean up %check - Remove prelink dependency, which is not available in RHEL-8 - Remove upstreamed patches- Update manual pages to reflect recent changes in commands- Make sure corresponding public keys are created when importing private keys.- Fix the last change - Add --no-reload option to update-crypto-policies to avoid unnecessary restart of daemons- Restore LDFLAGS injection when linking DSO- Update to NSS 3.41 - Consolidate nss-util, nss-softokn, and nss into a single source package- Fix the last commit- Support for IKE/IPsec typical PKIX usage so libreswan can use nss without rejecting certs based on EKU- Backport upstream fixes for rhbz#1649026, rhbz#1608895, rhbz#1644854 - Document PKCS #11 URI - Add warning when adding module with modutil while p11-kit is enabled- Update nss-dsa.patch to not advertise DSA signature algorithm - Update PayPal test certs for testing- Backport "DSA" keyword in crypto-policies- Update to NSS 3.39- Fix LDFLAGS injection when linking DSO- Install crypto-policies configuration file for https://fedoraproject.org/wiki/Changes/NSSLoadP11KitModules - Port enable-fips-when-system-is-in-fips-mode.patch from RHEL-7 - Use %ldconfig_scriptlets - Remove needless use of %defattr, by Jason Tibbitts- Update to NSS 3.38- Backport upstream addition of nss-policy-check utility, rhbz#1428746, includes required fixes for mozbz#1296263 and mozbz#1474875- Switch the default DB type to SQL - Enable SSLKEYLOGFILE- Update to NSS 3.36.1 - Remove nss-3.14.0.0-disble-ocsp-test.patch - Fix partial injection of LDFLAGS - Remove NSS_NO_PKCS11_BYPASS, which is no-op in upstream- Update to NSS 3.36.0 - Add gcc-c++ to BuildRequires (C++ is needed for gtests) - Make test failure detection robuster- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Fix a compiler error with gcc 8, mozbz#1434070 - Set NSS_FORCE_FIPS=1 at %build time, and remove from %check.- Stop pulling in nss-pem automatically, packages that need it should depend on it, rhbz#1539401- Update to NSS 3.35.0- Update to NSS 3.34.0- Make sure 32bit nss-pem always be installed with 32bit nss in multlib environment, patch by Kamil Dudka- Fix test script- Update tests to be compatible with default NSS DB changed to sql (the default was changed in the nss-util package).- rhbz#1505487, backport upstream fixes required for rhbz#1496560- Update to NSS 3.33.0- Update to NSS 3.32.1- Update iquote.patch to really prefer in-tree headers over system headers- NSS libnssckbi.so has already been obsoleted by p11-kit-trust, rhbz#1484449- Update to NSS 3.32.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Backport mozbz#1381784 to avoid deadlock in dnf- Move signtool to %_libdir/nss/unsupported-tools, for: https://fedoraproject.org/wiki/Changes/NSSSigntoolDeprecation- Rebase to NSS 3.31.0- Enable gtests- Rebase to NSS 3.30.2 - Enable TLS 1.3- Backport upstream mozbz#1328318 to support crypto policy FUTURE.- Rebase to NSS 3.30.0 - Remove upstreamed patches- Backport mozbz#1334976 and mozbz#1336487.- Rebase to NSS 3.29.1- Disable TLS 1.3, following the upstream change- Rebase to NSS 3.29.0 - Suppress -Werror=int-in-bool-context warnings with GCC7- Work around pkgconfig -> pkgconf transition issue (releng#6597)- Disable TLS 1.3 - Add "Conflicts" with packages using older Mozilla codebase, which is not compatible with NSS 3.28.1 - Remove NSS_ECC_MORE_THAN_SUITE_B setting, as it was removed in upstream- Add "Conflicts" with older firefox packages which don't have support for smaller curves added in NSS 3.28.1- Fix incorrect version specification in %nss_{util,softokn}_version, pointed by Elio Maldonado- Rebase to NSS 3.28.1 - Remove upstreamed patch for disabling RSA-PSS - Re-enable TLS 1.3- Rebase to NSS 3.27.2- Revert the previous fix for RSA-PSS and use the upstream fix instead- Disable the use of RSA-PSS with SSL/TLS. #1383809- Disable TLS 1.3 for now, to avoid reported regression with TLS to version intolerant servers- Rebase to NSS 3.27.0 - Remove upstreamed ectest patch- Rebase to NSS 3.26.0 - Update check policy file patch to better match what was upstreamed - Remove conditionally ignore system policy patch as it has been upstreamed - Skip ectest as well as ecperf, which are built as part of nss-softokn - Fix rpmlint error regarding %define usage- Incorporate some changes requested in upstream review and commited upstream (#1157720)- Add support for conditionally ignoring the system policy (#1157720) - Remove unneeded test scripts patches in order to run more tests - Remove unneeded test data modifications from the spec file- Remove obsolete patch and spurious lines from the spec file (#1347336)- Cleanup spec file and patches and add references to bugs filed upstream- Rebase to nss 3.25- decouple nss-pem from the nss package (#1347336)- Apply the patch that was last introduced - Renumber and reorder some of the patches - Resolves: Bug 1342158- Allow application requests to disable SSL v2 to succeed - Resolves: Bug 1342158 - nss-3.24 does no longer support ssl V2, installation of IPA fails because nss init fails- Rebase to NSS 3.24.0 - Restore setting the policy file location - Make ssl tests scripts aware of policy - Ajust tests data expected result for policy- Bootstrap build to rebase to NSS 3.24.0 - Temporarily not setting the policy file location- Change POLICY_FILE to "nss.config"- Change POLICY_FILE to "nss.cfg"- Change the POLICY_PATH to "/etc/crypto-policies/back-ends" - Regenerate the check policy patch with hg to provide more context- Fix typo in the last %changelog entry- Load policy file if /etc/pki/nssdb/policy.cfg exists - Resolves: Bug 1157720 - NSS should enforce the system-wide crypto policy- Remove unused patch rendered obsolete by pem update- Update pem sources to latest from nss-pem upstream - Resolves: Bug 1300652 - [PEM] insufficient input validity checking while loading a private key- Rebase to NSS 3.23- Rebase to NSS 3.22.2- Fix ssl2/exp test disabling to run all the required tests- Rebase to NSS 3.22.1- Update .gitignore as part of updating to nss 3.22- Update to NSS 3.22- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Resolves: Bug 1299040 - Enable ssl_gtests upstream test suite - Remove 'export NSS_DISABLE_GTESTS=1' go ssl_gtests are built - Use %define when specifying the nss_tests to run- Add 64-bit MIPS to multilib arches- Update %{nss_util_version} and %{nss_softokn_version} to 3.21.0 - Resolves: Bug 1284095 - all https fails with sec_error_no_token- Add references to bugs filed upstream- Update to NSS 3.21 - Package listsuites as part of the unsupported tools set - Resolves: Bug 1279912 - nss-3.21 is available - Resolves: Bug 1258425 - Use __isa_bits macro instead of list of 64-bit - Resolves: Bug 1280032 - Package listsuites as part of the nss unsupported tools set- Update to NSS 3.20.1- Enable ECC cipher-suites by default [hrbz#1185708] - Split the enabling patch in two for easier maintenance - Remove unused patches rendered obsolete by prior rebase- Enable ECC cipher-suites by default [hrbz#1185708] - Implement corrections requested in code review- Enable ECC cipher-suites by default [hrbz#1185708]- Fix patches that disable ssl2 and export cipher suites support - Fix libssl patch that disable ssl2 & export cipher suites to not disable RSA_WITH_NULL ciphers - Fix syntax errors in patch to skip ssl2 and export cipher suite tests - Turn ssl2 off by default in the tstclnt tool - Disable ssl stress tests containing TLS RC4 128 with MD5- Update to NSS 3.20- Update to NSS 3.19.3- Create on the fly versions of sslcov.txt and sslstress.txt that disable tests for SSL2 and EXPORT ciphers- Update to NSS 3.19.2- Update to NSS 3.19.1- Update to NSS 3.19- Replace expired test certificates, upstream bug 1151037- Update to nss-3.18.0 - Resolves: Bug 1203689 - nss-3.18 is available- Disable export suites and SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Rebuilt for Fedora 23 Change https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code- Commented out the export NSS_NO_SSL2=1 line to not disable ssl2 - Backing out from disabling ssl2 until the patches are fixed- Disable SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Update to nss-3.17.4- Own the %{_datadir}/doc/nss-tools dir- Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic- Install pp man page in alternative location - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer- Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available- Resolves: Bug 994599 - Enable TLS 1.2 by default- Update to nss-3.17.2- Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work- Rebuild for rpm bug 1131960- Update to nss-3.17.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Replace expired PayPal test cert with current one to prevent build failure- fix license handling- Update to nss-3.16.2- Remove unwanted source directories at end of %prep so it truly does it - Skip the cipher suite already run as part of the nss-softokn build- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Replacing ppc64 and ppc64le with the power64 macro - Related: Bug 1052545 - Trivial change for ppc64le in nss spec- Update to nss-3.16.1 - Update the iquote patch on account of the rebase - Improve error detection in the %section - Resolves: Bug 1094702 - nss-3.16.1 is available- Update to nss-3.16.0 - Cleanup the copying of the tools man pages - Update the iquote.patch on account of the rebase- Restore requiring nss_softokn_version >= 3.15.5- Update to nss-3.15.5 - Temporarily requiring only nss_softokn_version >= 3.15.4 - Fix location of sharedb files and their manpages - Move cert9.db, key4.db, and pkcs11.txt to the main package - Move nss-sysinit manpages tar archives to the main package - Resolves: Bug 1066877 - nss-3.15.5 is available - Resolves: Bug 1067091 - Move sharedb files to the %files section- Revert previous change that moved some sysinit manpages - Restore nss-sysinit manpages tar archives to %files sysinit - Removing spurious wildcard entry was the only change needed- Add explanatory comments for iquote.patch as was done on f20- Update pem sources to latest from nss-pem upstream - Pick up pem fixes verified on RHEL and applied upstream - Fix a problem where same files in two rpms created rpm conflict - Move some nss-sysinit manpages tar archives to the %files the - All man pages are listed by name so there shouldn't be wildcard inclusion - Add support for ppc64le, Resolves: Bug 1052545- ARM tests pass so remove ARM conditional- Update to nss-3.15.4 (hg tag NSS_3_15_4_RTM) - Resolves: Bug 1049229 - nss-3.15.4 is available - Update pem sources to latest from the interim upstream for pem - Remove no longer needed patches - Update pem/rsawrapr.c patch on account of upstream changes to freebl/softoken - Update iquote.patch on account of upstream changes- Update to nss-3.15.3.1 (hg tag NSS_3_15_3_1_RTM) - Resolves: Bug 1040282 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) - Resolves: Bug 1040192 - nss-3.15.3.1 is available- Bump the release tag- Update to NSS_3_15_3_RTM - Resolves: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws - Fix option descriptions for setup-nsssysinit manpage - Fix man page of nss-sysinit wrong path and other flaws - Document email option for certutil manpage - Remove unused patches- Revert one change from last commit to preserve full nss pluggable ecc supprt [1019245]- Use the full sources from upstream - Bug 1019245 - ECDHE in openssl available -> NSS needs too for Firefox/Thunderbird- Update to NSS_3_15_2_RTM - Update iquote.patch on account of modified prototype on cert.h installed by nss-devel- Update pem sources to pick up a patch applied upstream which a faulty merge had missed - The pem module should not require unique file basenames- Update pem sources to the latest from interim upstream- Resolves: rhbz#996639 - Minor bugs in nss man pages - Fix some typos and improve description and see also sections- Cleanup spec file to address most rpmlint errors and warnings - Using double percent symbols to fix macro-in-comment warnings - Ignore unversioned-explicit-provides nss-system-init per spec comments - Ignore invalid-url Source0 as it comes from the git lookaside cache - Ignore invalid-url Source12 as it comes from the git lookaside cache- Add man page for pkcs11.txt configuration file and cert and key databases - Resolves: rhbz#985114 - Provide man pages for the nss configuration files- Fix errors in the man pages - Resolves: rhbz#984106 - Add missing option descriptions to man pages for {cert|cms|crl}util - Resolves: rhbz#982856 - Fix path to script in man page for nss-sysinit- Update to NSS_3_15_1_RTM - Enable the iquote.patch to access newly introduced types- Install man pages for nss-tools and the nss-config and setup-nsssysinit scripts - Resolves: rhbz#606020 - nss security tools lack man pages- Build nss without softoken or util sources in the tree - Resolves: rhbz#689918- Update ssl-cbc-random-iv-by-default.patch- Fix generation of NSS_VMAJOR, NSS_VMINOR, and NSS_VPATCH for nss-config- Update to NSS_3_15_RTM- Fix incorrect path that hid failed test from view - Add ocsp to the test suites to run but ... - Temporarily disable the ocsp stapling tests - Do not treat failed attempts at ssl pkcs11 bypass as fatal errors- Update to NSS_3_15_BETA1 - Update spec file, patches, and helper scripts on account of a shallower source tree- Update expired test certificates (fixed in upstream bug 852781)- Fix incorrect post/postun scripts. Fix broken links in posttrans.- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement.- Update to NSS_3_14_3_RTM - sync up pem rsawrapr.c with softoken upstream changes for nss-3.14.3 - Resolves: rhbz#908257 - CVE-2013-1620 nss: TLS CBC padding timing attack - Resolves: rhbz#896651 - PEM module trashes private keys if login fails - Resolves: rhbz#909775 - specfile support for AArch64 - Resolves: rhbz#910584 - certutil -a does not produce ASCII output- Allow building nss against older system sqlite- Update to NSS_3_14_2_RTM- Update to NSS_3_14_1_WITH_CKBI_1_93_RTM- Require nspr >= 4.9.4 - Fix changelog invalid dates- Update to NSS_3_14_1_RTM- Bug 879978 - Install the nssck.api header template where mod_revocator can access it - Install nssck.api in /usr/includes/nss3/templates- Bug 879978 - Install the nssck.api header template in a place where mod_revocator can access it - Install nssck.api in /usr/includes/nss3- Bug 870864 - Add support in NSS for Secure Boot- Disable bypass code at build time and return failure on attempts to enable at runtime - Bug 806588 - Disable SSL PKCS #11 bypass at build time- Fix pk11wrap locking which fixes 'fedpkg new-sources' and 'fedpkg update' hangs - Bug 872124 - nss-3.14 breaks fedpkg new-sources - Fix should be considered preliminary since the patch may change upon upstream approval- Add a dummy source file for testing /preventing fedpkg breakage - Helps test the fedpkg new-sources and upload commands for breakage by nss updates - Related to Bug 872124 - nss 3.14 breaks fedpkg new-sources- Fix a previous unwanted merge from f18 - Update the SS_SSL_CBC_RANDOM_IV patch to match new sources while - Keeping the patch disabled while we are still in rawhide and - State in comment that patch is needed for both stable and beta branches - Update .gitignore to download only the new sources- Fix the spec file so sechash.h gets installed - Resolves: rhbz#871882 - missing header: sechash.h in nss 3.14- Update the license to MPLv2.0- Use only -f when removing unwanted headers- Add secmodt.h to the headers installed by nss-devel - nss-devel must install secmodt.h which moved from softoken to pk11wrap with nss-3.14- Update to NSS_3_14_RTM- Update to NSS_3_14_RC1 - update nss-589636.patch to apply to httpdserv - turn off ocsp tests for now - remove no longer needed patches - remove headers shipped by nss-util- Update to NSS_3_13_6_RTM- Rebase pem sources to fedora-hosted upstream to pick up two fixes from rhel-6.3 - Resolves: rhbz#847460 - Fix invalid read and free on invalid cert load - Resolves: rhbz#847462 - PEM module may attempt to free uninitialized pointer - Remove unneeded fix gcc 4.7 c++ issue in secmodt.h that actually undoes the upstream fix- Fix pluggable ecc support- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Fix checkin comment to prevent unwanted expansions of percents- Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1- Resolves: rhbz#833529 - revert unwanted change to nss.pc.in- Resolves: rhbz#833529 - Remove unwanted space from the Libs: line on nss.pc.in- Update to NSS_3_13_5_RTM- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3- Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2- Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name- Resolves: Bug 805723 - Library needs partial RELRO support added- Cleanup of the spec file - Add references to the upstream bugs - Fix typo in Summary for sysinit- Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections- Update to NSS_3_13_3_RTM- fix issue with gcc 4.7 in secmodt.h and C++11 user-defined literals- Resolves: Bug 784672 - nss should protect against being called before nss_Init- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Deactivate a patch currently meant for stable branches only- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request- Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl- Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible- Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support- Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi- Fix broken dependencies by updating the nss-util and nss-softokn versions- Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM- Update to NSS_3_13_RTM- Update to NSS_3_13_RC0- Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)- Update builtins certs to those from NSSCKBI_1_87_RTM- Update to NSS_3_12_11_RTM- Indicate the provenance of stripped source tarball (#688015)- Provide virtual -static package to meet guidelines (#609612).- Enable pluggable ecc support (#712556) - Disable the nssdb write-access-on-read-only-dir tests when user is root (#646045)- make the testsuite non fatal on arm arches- Fix crmf hard-coded maximum size for wrapped private keys (#703656)- Update to NSS_3_12_10_RTM- Update to NSS_3_12_10_BETA1- Implement PEM logging using NSPR's own (#695011)- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Short-term fix for ssl test suites hangs on ipv6 type connections (#539183)- Add a missing requires for pkcs11-devel (#675196)- Run the test suites in the check section (#677809)- Fix cms headers to not use c++ reserved words (#676036) - Reenabling Bug 499444 patches - Fix to swap internal key slot on fips mode switches- Revert patches for 499444 until all c++ reserved words are found and extirpated- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix cms header to not use c++ reserved word (#676036) - Reenable patches for bug 499444- Revert patches for 499444 as they use a C++ reserved word and cause compilation of Firefox to fail- Fix the earlier infinite recursion patch (#499444) - Remove a header that now nss-softokn-freebl-devel ships- Fix infinite recursion when encoding NSS enveloped/digested data (#499444)- Update the cacert trust patch per upstream review requests (#633043)- Fix to honor the user's cert trust preferences (#633043) - Remove obsoleted patch- Update to 3.12.9- Rebuilt according to fedora pre-release package naming guidelines- Update to NSS_3_12_9_BETA2 - Fix libpnsspem crash when cacert dir contains other directories (#642433)- Update to NSS_3_12_9_BETA1- Update pem source tar with fixes for 614532 and 596674 - Remove no longer needed patches- Update PayPalEE.cert test certificate which had expired- Tell rpm not to verify md5, size, and modtime of configurations file- Fix certificates trust order (#643134) - Apply nss-sysinit-userdb-first.patch last- Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248)- Fix invalid %postun scriptlet (#639248)- Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801)- Add posttrans scriptlet (#636787)- Update to 3.12.8 - Prevent disabling of nss-sysinit on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Added provides pkcs11-devel-static to comply with packaging guidelines (#609612)- NSS 3.12.8 RC0- Fix nss-util_version and nss_softokn_version required to be 3.12.7.99.3- NSS 3.12.8 Beta3 - Fix unclosed comment in renegotiate-transitional.patch- Change BuildRequries to available version of nss-util-devel- Define NSS_USE_SYSTEM_SQLITE and remove unneeded patch - Add comments regarding an unversioned provides which triggers rpmlint warning - Build requires nss-softokn-devel >= 3.12.7- Update to 3.12.7- Apply the patches to fix rhbz#614532- Removed pem sourecs as they are in the cache- Add support for PKCS#8 encoded PEM RSA private key files (#614532)- Fix nsssysinit to return userdb ahead of systemdb (#603313)- Require and BuildRequire >= the listed version not =- Require nss-softoken 3.12.6- Fix SIGSEGV within CreateObject (#596674)- Update pem source tar to pick up the following bug fixes: - PEM - Allow collect objects to search through all objects - PEM - Make CopyObject return a new shallow copy - PEM - Fix memory leak in pem_mdCryptoOperationRSAPriv- Update the test cert in the setup phase- Add sed to sysinit requires as setup-nsssysinit.sh requires it (#576071) - Update PayPalEE test cert with unexpired one (#580207)- Fix ns.spec to not require nss-softokn (#575001)- rebuilt with all tests enabled- Using SSL_RENEGOTIATE_TRANSITIONAL as default while on transition period - Disabling ssl tests suites until bug 539183 is resolved- Update to 3.12.6 - Reactivate all tests - Patch tools to validate command line options arguments- Fix curl related regression and general patch code clean up- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- New version of patch to allow root to modify ystem database (#547860)- Temporarily disabling the ssl tests- Fix nsssysinit to allow root to modify the nss system database (#547860)- Fix an error introduced when adapting the patch for rhbz #546211- Remove left over trace statements from nsssysinit patching- Fix a misconstructed patch- Fix nsssysinit to enable apps to use system cert store, patch contributed by David Woodhouse (#546221) - Fix spec so sysinit requires coreutils for post install scriplet (#547067) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387)- Fix nsssysinit to set the default flags on the crypto module (#545779) - Remove redundant header from the pem module- Remove unneeded patch- Retagging to include missing patch- Update to 3.12.5 - Patch to allow ssl/tls clients to interoperate with servers that require renogiation- Retagging- Require nss-softoken of same architecture as nss (#527867) - Merge setup-nsssysinit.sh improvements from F-12 (#527051)- User no longer prompted for a password when listing keys an empty system db (#527048) - Fix setup-nsssysinit to handle more general formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build3.67.0-4.el8_43.67.0-4.el8_4.build-id887c298b2a6cdad04ab674d3b29d707a85ceea8flibnssutil3.sonss-utilCOPYING/usr/lib//usr/lib/.build-id//usr/lib/.build-id/88//usr/lib64//usr/share/licenses//usr/share/licenses/nss-util/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnudirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=887c298b2a6cdad04ab674d3b29d707a85ceea8f, strippedASCII textPPPPPPPPP P P P P PPPPRRRRRRRRR utf-822c67e6b6043d7e2658d5c1ced7ace64150e78c8dbe091c1b43a8e6dc43e7276?@7zXZ !#,] b2u jӫ`(y,x?\b,ߥhwwSU6olH&ə6՛ <_wj jx!ˮ3ئ/9+[qdr~;^D]oThm?nQT *>( |ؚƙ ӺwPa$hvmb/H}XS!9Ei6Ǚx0 :_Pg)J ISJ ʲY d%z)m;l2ZbZbtV&)_{E@,tn {VVئId*[E(i[~>?lmW(Jќ'%/h!W]?%q۰ eH~*\嗖7WB{A?bgxDNH486WP%e/Vcx<^kZx`Zz!cܴ̏ 9*1`mN|D W%#>qa:b@Z1W0f#v+dNTQ_gN8ͪ ZWp5TrMx% ߩ .|no,3IY Wt<o\cG2j>v<ͯlN:leC2~5! [ҫpHcW5η8F?._n3ƀ +NһR`;‘.#10fawp2=b&h )d[\f#I[@>:IJj ~.RE{ttL?9M?]Ti#fuΧM 7 H)zt!  0uw6Uħ`P~eK6`;&@V&Bk÷W􂖂 OF>R^9ji+óQrULI{$ߒKzw%ZĈ%5,-$;Ì $) PPJ' YNQ]/ b t6K;5欐y$?׈lͼ [EQ~R6 R1mI/L _\<<*"3cbS :ug`/X7yA]!va4⻓ KJD9E 2hj#f[n?u>@:\T?$PB)!xcw֡n9(LvB\^~FD~Im3/ w!Q\ &}I֫b  Q8xsD|#hEyD{jCߗK(G/QrKJ_dSM%KRMX/#TH|ATy7CX7KgogSFN(i{5)ʽ}]g4~tbUMGXҔ\mP'WeGoT@RhtHukxag4(DN_?wҢJ/NX+{ٹǏHVZ1[bIӆc6Ĝ}30OA RG_ۭ]]Cf/Kt SShM"kC4lwEr`v[5+7y]7^+עb(#۽x_pm#3X{,?zW&>!%̑O3vNJ|gGb;4 UǨ ѾXjk<v*;QU$^tZV hm"X﷽@=:"APx:+JTœ8ˀ_jR=vJLmPo1 &J6 Op8RL$Fr7cYzaTǪd1D"}C[1y]qeH˕z@^ qa|}ȵOi=i1cW,a,52zelfHbfcLV~g~ѿF[=Bjk2=a n󡰛V?qWpV 7'qcy^ಋYķRIrT$9(.=S۔ %7$AT,;cK+.x]_[SKkOT\PeBr!*iOB167zGOQvdgîsl"Ǣ Y48)x ^xc_AML,2IgFa=:Gλs VPW`7 3vwR=Cj{NY~kWFv Ί۱OW^{e}ȓkU*;v|4@%plVq?ap|HyrCU#muR[%X tG EmJw5./^-M C;7P tI`ݡ*M)2y%diuUDž+YK)߱r[R59fj0v/=w{R27t{ix PzFFBk5F~J(& #48<ŖL3+o#ѽ5!Z7ңWMvgl^fWZSkDt۔GhaÃ0\!mFl$ V, ֟"3􌄙s xS} k(D@*FR?#'Z\zPǂ:)ǖR3 GIC'\ղL"ۇABytŘ.-)ެ&ГS xGuo»{N1/ ZGMc#BQ3!q=[CNp RܒHRC :ٵ~xY(Lguq|y/G !A[#4_lf }0`؆<1 |yDŽ X~;\!tː (6$N>xpk%ïJf7Drb(cNnSQ-XpjF6I(nۜY} TX®'J&P/%iwdwBaYcn.y`h7gm_.8aɝ՞ c%B <_7)3/?xw@noˑG:IͿ;TԚ-uM {k8i 1IwaUzcKfME_NIAuKՀ9ieP:@'ɏQhjnd,VlJ髯;txO,| 돧RNOu;ceC@AFiC]FT]#+@k{_'!?`0GM㽖Z)#ធZIQ'٣"ET>ɰOG X= dEnAZ)o9NNQ9-~$N٧QoEgk㦕Ol[\\]ɡPCN;IJx0>087Sk T_PtyڪgV0l%F?{czS0V.F;|qDߒ{뮗{ɲ+/^Y*[+ywfkp<$5q60p~,T+Ƣ֮%('M&"9sk/}/]И{ Ӕ& %6N )]&Nj(pc;JiWp:3R[JvsPY.қ @ӖoYq;Cef3/(pUm/8*I<8<*^k`rsJb}CZ_Gd1/ջ/g}û+Eť(j8t5_F\E(.ùY)J>.0>+vR@Y&ְ]͙iBjxhbN[ X?f UN#*4' zjP:ima.FbAqϷ+8 )7J /4/{/{uj.oo&A;ҪY+Ֆ +Q?uUw!Mv;>DFE;zPVBk|J3'ۃƋj/aMYw!Ο1vyi#hir'DBiƃT ^ye?ZoUDak9"azn6qfſPaIN[ǩR82ğ+w&4n]|bRhvl^:8 }~hgܿ yQM4B_ D$'լ,pah+hlƒLiӜLi ރe0L'*4IrY^ `D(>:y`ߖ+sQ&}X,3fٴ RH&B1 K; LBms" FyG~ pXxܷH+TeHGQ;fCEYT bݗ!׸ӂ2+DnYw6C5^ݡ\=9@gF誘2{4qҦD$_tr%Di\.0,W|YCi ϹQʧSN.~h0&B2ٞLt=Qyk$_ (Nd5" DQLju p}n)t}Ϳ+^ggUrڊ1Rye.o95^MË^א +sIlCwƍ;*Ơٜ4k4}qΊGv3B+тIC=6HqT@H-63?I% UzZ.6}.cT8}vݽdo;U_zq(2]{tHɳrc+5[@ ?=n}&۫ cn|;xb3 7&nvؖt:qEF0rct?8lǃ 2IBt+ouȄ;ŃLeG%JemnˌI؉&$m \xNXb ʫZb6A俢ݢ 4)do pY` ٯX]* 'bM[ >y@hX=6ꬆϠ -eI!@̯`ȷ] %܇חrlZr&81?d:&?5\J"Ue<17+ (>8R]U"O ~/U4ӆŒ*/LN}{Zc)0̬ Kw[ж{P%9IU+aZ_hIlWa{df 7 w ytKJ5au +ht0Eʤ[`- bSu{98<̋Иtر8:G*B[()aCBTǫF k]L;TZ8M}Ɯ'Gf\SdwL2,rWc+V;~?Ȃlm==q9q<;G&oF{;>+bU+Ty5Uq\uorW>P%=?!.gfQ8(8KCA'fa%\D?^հF=EʙlC*O:6Km " }~n 88ѾEx6y71%aW$)ХE ]:BϾSII7Hxy[}aaydoxȠ%qd7M$,H); ֢S$dOחVCnvyIEB/Iˋ|OlS 2a6rJ[D y\xx㾙W8* ݥOz 8;v͜>b,Rć%?,kqd XS%[yW(5O!`bI.>jTbHiuDJTŗro/s ǧ0˲;NU9 jޙDW6%ȝefJDttظ#)#Z=؃5mbRm)"y!td1_%W<iyk;v?Ry]%dL8z[TB4ob:jg}UC C-*.X"w7%O|0o\Ǣ42c6wC=eP/&=Z,↷;*>\.!Pu򡐥ڻlE% <9v:Q sܳ%r@Ls=IhK|"9Q=e}vsBnf G &UN䢛|l$Jw< {.׼g!AqPr>F?0T p7 a- Z˾DD6ԏx2#sJXf|XY#ڌ]&+雈!op8-<_3ƫ0.?FC ,!N(A:*1gļ>2hgRl275*<_iXì(Sp| H5X\L3NyvxRTw$ӂ*q]dԭ?}0I(ʂ_˄v?MW\(Ofy *I^Zt਌DŽFs{V.Leۆ8GF^1:CK ~t?u`?@m 1ei*L]H#eiDFu V<Ÿ'`])Oq'x;E~9g`k 89r Ae;HA[OL^ѻW>C[D$I +WAl5dUօ5K>NO n nX%xhg-XkPJ+q}4=8h;VF8>#Ma:sv2qJj8iP s"$qYna% ʯ5EJw56uu[ҥƱJ-ŢVWU]JlWqlF<{v 2ҟÉv@f譐l2]X=!R ҲMʞܺ(CqmX%\hd=nyVGH)dQ0~1Ҁ8ȄÒhL;ű{úk9a]gp Shٛ=ӲSfIߌhƻ)/@DrvTdE{eԏ N^9;>0;[@ `Wm}2'-pDg~x Fݒ"0SAGcKP\Aۅ g[hkQj FjH\KZTݫ$qbG@zyu}žqiŦ 6yx3~bΚ/|?7?|o]sVH]Jn[E \5_BJQ#CFԖɴ*zMX:f.vz/jcI.H0I;9t {Ҹ&kڜ5*g+91!ݶ\ֽbAn#oΘn w}9ዣh.Y> a6m-fb֧2_*m7+ ˛7Ai f]gQ_&Y#w, hԽs$t!ޯ&05 L?7&3Vq cvҭg}%OO90yW/bWC'a(ok~uMwb1&೤`Ւ8Þ:K]%:")*N4D4225]S'tyUw;GElYtlOx^I1~dwEr9R ]UoG"?.aM7Hmpc`5{, lx^p2dNȼ )rđ^XLo5s1vKz},shGDݮK@eJk~#I$s \%)o .5Χ<-b%KF6JS^bl՞cX"dփ[/erx\k BaE{-T(JU:Z.гqnn W$dYA}~% X]'䙄(%q|&6oΊ%D3 d @4k,1w`s\M sZT_vAzJBcBJd2tnƭ p%lv6Q17k逛UXdEVAvL ^? B#oN+_?=o,Nt2{k<s&L!S [RheXLޛCG5O~evLK͖D8M pco 9E%[WHZOقVP!8i"b'-8EئiYV޳P4X- {$ƸrfSED5:& g.0&W#DXv2Lع2rh:f@P4 yXr+s7A-hidĤp*b^@:?Ɨl9fOڍsO(@+12V pʴxro/s"Ie1d_{"%1#v}9c)&J~ԶFE!Ms, /N0rȿy-N_3\O4bi[~6l& xA;CYUt#qSp Rv1<#@Lsh#9* ZIK.1痺Bu@PZ@#Y?Vp0<=lG#KJ~ڒLyHw0Mmخm v۫PQakg 1c_stE)+;G@'|Ca0]SԎhofs \V=|;ZM'YÑei'o$aVsDnǹ\ɔhT%Xy! ̌71WWO?^yݥ|il2;[a Lg!inn z 2ʧҫ(N_hx?hQEݶ%Jp.ZnR"eȔͲwJjOlS2L:98<5p ϽHW=^kvd9 mzBfҗweHbRӑ\:>R_݈rOp)DYlSJ#P46}T<#.-$^ڞdyb7ll.}.i)b\&RiEm$5GLzl4[뜤0<nBQ"@y cU嫄C=-"(gI_C %Y8G콒y^\􏰻u/\JO9'D=Z/xWÏT9tFtuXGcRZWRՇ҃gjC0V胱{s}qHf R77O}RI+or:e&3XW ۢZL8n/xAS)(u6ph'掋%?2 #{e#I,+ -, d #,GՕ;RAyݮ:m:M}WqNJhzirqo٣q )C鴄ъWƑa]E  xse&2ʋlNnEË64t=G"о]1ƅd#ڄ } *γ'!nŜi%0'kc'a*!r#ү779k+oos壠|vɋF苳 =9*T 8;XFF.0m9-ri5rhٝw#+qW5 :Q5_YE.p\d[ל*N~[WЋ^0 tD=Ub6h'D+83jH~HܒK9HgnK!/)D$>_7?tR >t3G7է5*c>'rIt-wÇ?u&JlKCjAiZgZx|tҍ(QiW*5+YֺcC`^K6jٜ u%0E¼3㙤=I\g!:#;Gp)ܣt\ <>@/kR'},}^=f>fJf{zy]yjQO%_ -vd쉵B%qU4{]RۤFXeķ>Ěx_oMsD2b67Jubw]E־G&;m)Qpú&_Smxj< \"O,QV1vj9\D~!T,^.̷TˢɺugP*KM0kw 0  f࠮`!i9hq̷0Ut:Ąaѓ~)pӳGM+<eaͲ9u,EX(8l(s*iʡb3LG:l1J""TX ;Ntl v/LAײ5FJ@yAQ󸁹NX)A7~Bqg4f ~Ի!l#@uF M&psY$@RkW1;Dq OYtd>SU'?>,+NT=WPUcHqSyU}6ר=pj=#wX`TQwރ)AiROr $[}?^fH;Lij mQxvW/9[K*Nr$8hzQtH^}]ة^l]-^emlR(é+peSgj64SUS :; 19x{E($S:u4W^,Z`-DE>z'+R>.Z2[^D ЍqHyU6A;M4U"G >b̔SM(Sem@_Mđ:Cc9K좘٘XW֒!2 ?N(y)8)vi3Tn7',L7|as1 dF˩? BHPhr/"qI <}D Fmj%2@%7&j/ّr[腳zH Ivώ5̡^Ou %M: B $2ZBN/nn-IFn hRLm\qY?lK (_ITv,.)˳;[5ِHA J%`U' T{$ /Ѡ.{Y l_5Σ 3 -}~@Pd!E~!uo` nN"f| 'm wBVW QxYq LɃIu͠kjjlJk5,{:SL;|hsBN203S77p2XndDBB*P + 8?@RlsqHHnO֢Q"g:8b2+ "9 H߈t>-%l.5Uyێk&!I11o8u's!B@p !4 uNy|"¨V4פCxSy m_ЮS8Ͳܭ(4Ȉ,S8(@)c̲R z %t+~4'$x{(^)V.7:P1Zbq1HP0,%Kc#Fk;t{}}9$ȺVS%1sr^9|kGb}]Me4ͺО]3~f eQ ϋzJx'ikyѠ%2|UR(:nd~@43O-_50Wx]rS0$CrUG&gG <:$Z⻸|tS3@0ySp 0USDr΢ŕAB~v}J/)EuO憨\W8rpsFuL,xfڈ(4iYNkxmXF1ptɦ9mU~lzWF'ulܠ xrgW«(YN<#l엦5Y Cņ05R)"fshzZM)Z8q6J(po=i-4DzcchpXt"%ӗyFnY:L͖έˀ:Q 3F@Ac!&i~͹w.$x40|^;@ej]2 OI?  W (L๰SrPӓKepZoiD@fCvVn)˄n58-R"u-8ۧQ29K-9:E?7\,UY@#"ZN[u]fD%n/\#0q٘OC#tW6obY@!Tq'lKH`oLcTRke C=cV%{42ųDEC;z>ʒTq g=8fQsmgFy7!c')݃&2t@i=$ַGӘ*\Ђ\aEY++ qDZ$JvR{v}vpk+^8oUʥs-nM7^8(:2*u.lWIR59P0M؉=1AlGo1Y= \֋W?>UY yaZJ}Ð^*uPn Ѝ0sH$*%@[1yY_̘tX]egd$5\Cc⹘ wKȷH@#5Ȝ=wUPHk ,6˥]U -̓A*#"iION8F=y876!YHOH-@`_q{h* {ir/]-4Pa,w P1:hEfsEOcyw5%>]TVO#ۉL9REh?)sfh!:b[d!llA$ % `+!(0q|%AUK7k??|dZJ&@6cʱmX{LsgBPҜ$@8M 63 Lvgm8 RIo?G2"K`p4^&6\L͎ڜLe2  H4s BΊz ]ˢk@ԍ;4$<< ;R|fPT& yh fa ۹˝9e3n/U(J f:ERTdq 8MCD&U5C>m5jj UɦY`Wի4T(xj!:ZC -l7@d6#D}\0]빱2Q% YuMKo2DGOY v~DYCύ0#l>R|)dw7U]n^x?fne"a5K_jdK%ݷvC 2D&+xe&|[Fݛc^J~lh7D6oZXs yyS w[|/GwSƢ!}^̓+b;JTe  \ze(vXtAĶt ?g%WS!=gSÚ*ZwGIDEvЇD1]H{y S( zD&Sn(n:%:p *o2A 4!Ģ NN7e)sCTYnHJ}A~9'ܟ(wK}xré}m(63ݪ$=Ny1uy3/ff %%I5Ɣ}:AM@Tc4DDL>DZ1.嗠Vֽ^lEU<1\ݛ.`&\':@0=RM{A`\m]ڳLBQ@z*U ;Bo6{W[p%R5=9Q{#mi)X, 7S5Bו͢!E6xþ. gֽ9Enn߅$(_3DCa5pjt\hTMB5!)#8@PfbR": d"jCQcNVrA~p(crUGѸ4M2{J|oόL%;]v" Ϫ2-C}87^T~ QAUuN!}.<6/hJ1C?NϘW\GBA1>Ӛ4꼮.boY=j EdY3K;@b$JmYE$.hL\E84$,s;dfO7ժN4`7}W/Bd x29xӄ;*&/e]"wDʸЃm~2C 'ʽV2:(P@]2Oe|^tI%^˛rו|l-i}x0>0BQ~؛3 %8g|x` ojI e"ӑ~])G;qT^ ҅ӖC%C^<8Oi.Ua$EVԪL00܍XeP@{S>%iDhXWglaʲ\!㛨A 2.UO^=v+@Fc5+ nngZrUy\{Xz"TJ}LJPFbET 7mE;r#$PjܹpyѪGgd73USn2 ͨm;J+ĈEY{R ]}ޕh{;͑d:iS.(fV}9~lH!_H{K({s/| zsVѨNpR@/EӦ1f7ꭌ a!ɵ3uu}w,z蘲A,Gj)G# ˏ=yXT(y'QhNĀy%U.>"yˑgy,1M41Zn]8b(Ɔ,L^Q!>*TAEbLXEϷmd'b8ۆj $p M SeNhZhVg?"[;_1Y`_>wsY0_r ]; "_^W[ßgvBMΣѶ0s9fr ԗ+[8~ šK3J<S9+B*DY[&-v}~D\-!K>u$kl|*F"N+fοawcl]說|z@)=p޺(܎,/GVS6V%eILhq#GwN`wϭ/._%<%Q)ڊ1E?zMӵ<7@] SP[3mݜ7hrrرH/ݬq]7}``T5 ҧ*)mXLs8iL*T!`HghXPfe5ȩ*SWp$gP/gC| 8SMfjйAz}.Sẚ+:)":>!rJ=}K?2m5y}ޡ1옌AL z(Jϛ@hW]:EhJy(Z 4!j!qMPӈ+cS |u#_ mrilv1nVj\6haN;e6 l#P[Z; ^n0~*˛ \& rO%|M`-b5B110.|g#Ah>q,ؑső͆ztgh͇T .o=ef$ yXefN\jJqt'FçBކ 90|mMgxUm:[Me\ 3pLɂq}wZ])Hg8?c skMc'h$Sv7b ;Lv Xs:͚;fhcbZvt YcZ9AFD-X\}yt2-KKTFw]F@ś5`GhD*jc7=* 4`TS^0BK_`gחX{MRQ11AVXOXci`X`Ԟn-CAC۾pP v xP@Vս '(89 Ϧ # U\ ]pP<(9lVxQJ;[* K7#KKʒ1A<)795oPyjSă|Co kwwQ2e|4V9Ta51N-r! R 8H |Wz~ }**#tuㄻ cbu*c ܌Z1^>f)WMW>>M+Ylt@DzVQm%%6CkeV/y6 ip{+ww#%#QR[_P r3I.{A@屾b b`C% tIh=%$A\*CЙ=.}g=wؗ =DM  s3u{u,kb9e*tـ#2rv1 t7o|)d^oe+;p܃0 3-FMRj[ᣠƀz!1ǬG8@v46LLg5vޓ2t.Vt#129O% Y^*dD0 B&gvŸqZOyeo^%Ab9`U;rZy=pZM}bI?bE_Ug LD ESaח~*s .׳yQH8K"CЅޥ /C5B7sCE(ֲ!d(Rg."`j$pDs_6ânȲ 1h I exSdz;[ݛJCb[ 캜e_rr_zZ7K_4n1VaoϬz9r\;R`MLggUz ?4I6C$^D>H[MMB%A,d!ڻɲ‹ҜbdV>ԛ xڛ0eG - [ gՊ4ˉRcrH|.ʼn{"S||#lnٷL+=@y{_VaӰ&v8'crj 9/; 괎g3@/߶ ,, 3Q7DeeD;-A7G.5O8RK`rtGd˜{> FS6+= ȥw_$KIGr5~DˢβCQ$fzXl@fx}ω$`^0>#s0f hl^僁u0A,6 5|bs>×.qbxm[,)ΰp]V8z nW)qk9O~/(ߔaK>Wd1=Fegպ q7vuMّf{UB"p0F{u@v9S3SlꕸQ̯DZ.bvE~jouwi&:_BM4zFK *cv%ϵxBbi4QnU<[_7p%n`C|Rpz:ecL'!2%reW~IiFUp{20uפ/f؟U;I~T;PXGM[i) Lɣ208ãO\Mg~BW`4Ⱦ6dOýuʅ^|e83q#}siX63[OdJn֬cvTR|.\nnv{Ņ13KT|' b4ytkܶ_$`v2%")0M%l:!'5 ~!ⶄ)ЕRLfت蔬L_f* /ཱྀVH@Æy>M8>'zoqE4!욾Ov֪<~v"PgnSɕ~Q?-@VѺ.$՜>.hPU=XY(پx$b8WdMQѳ@=-A#~_:8IlnD'ջP rp`{u;_aAPNN{j@F;R,~ULH|mTX 6Ic~477m%^BD(}?銌ky1')[ҕDz EK-xNݜ$kO[+^>[D*sL;'`WL2cIRaJu~DrIdupTֶ6/l̯Qآ] (qh4xIRg'"J Hf+߆Q* bAӑ  NAU[KAA%NgPz% PbюE\Fo@+“HcGPj9LLR"C)Wj, %e v3r?Co,)2a MȞm/ޞ)Lmh8Z""k ꜗ˻S7 H\ͷX؅!-4f4Ȩci{B ?H7Jcķ_R')u%m+Gz|z#` ϾwYv ҍݵ ?Oq9hJ(ThnbT$ބ}okPtc'u,Ŏ,i#g%J6P=-b!IQA\C T&3uWptp@[k„*+V?~v'7P_AꎱlqC2:*PC0ėXN}Oy0I)v'dE6i: 'G#&:-P#\⤪C$SY .|G_فOK;;cГ j;TSzWEg[";$fc9 b:&E÷]`KW6È+!/| 1j'#/rH``0>AKТ})C$fhS*̄>|ILT}gkQ?;b:F=+\Jjꉬ|NJ`K;F`;QtTY5}Y?mZL x+6B˥*- CG^_nY?\,Fᆰ-M}Fdž3.b:fp<%>VTA^I>Rn+RQk7qЖ:K|$̈́ISD_ Cgϛpc؈֭g-[ KNU{ ɤ-"-2c J! ¡cI J+$ܧ4P.kbC!|E閇Ap@f=$P 5 Z_I=} HMFϒUqDc;}zihg|Ob&9؈A1 vMSZ '&z&_bO]D@W {[u^%ڿWqcyW58@h{q!3e{p۱z&aNN-anj8LQML#N# KZ)Quiϐk>u"M2e5ds|G KX-BIs/Ki\=B~"c^^O3:{u:,ˑMHJbҀl%`Y_u̶>A.CMGC{]9aMwS4~:FNU-ݧr!͡תsTG j9;] i'$S*s3w WK=ߤ0pk 0-Mn).{s&mLgJA[HROMhnKP8uLb縠CRa{SlCn4y?;V^1ژG+%.VXǶz:.|t͗Zn{FRGN sAZ&ڭ.ܔ_|2TC]h);p`2A#S3uBklqCު7>( Uٝ1 AˢN$g35HcpފŇ5c1 'zQ`OJi5 5ֆxeN P ;Q`ih=)[^QwisKeCJg"QM]Eu/?Rj$ƃ cf5 y*דoF:}rǎ"ju_3TM(gɼh*o;'psb9I W4(곣p&\B^Bj@F(hEѻsaa{&rEGW7SBVσC}0u9GGWȍb#\>F gIS8%t[DHk Ҽi4.ߗt,焬~Tۦ [~6Ѽ9D,$͈3)" joPaӲoqTДte"jS$0ۭ5^V''99^զtu,/vha>Rcf»~{o[4F5 rxϻ\!n/Bw ڔ65҆iӾ]x0>N(_JBZYD_z \Q,OBֆ36'SU2M-N\BU$;f] V(D_囏̢[UCd; ƀ|׶a0P%0&iqH|J39 B#z[9@Y.$HOA#Ҍ W^+E ,p *ұ4[\c4KcuJlȸ 8ؿ {SRT5`o\gp)Ÿ MGi6jXz'\J[yb$C3VWv"jԯNa;ϏW_H[cr&5UN Ew?Y ̦'·}]DHmM8sJx>:6p7{xXDt?(i$\ED]DVmt]>&$8 o~(£Em/ \!^)QSuՉ Td=nH8+>נ;.ب7i!NGOHB?SpE$@uE+@dٚ?\N*֜jC p̊7uF0qMȅAc*,26=L%1QM L7K@7K}$L=[u[Ӑ{˸NVHjaRR̯ig3`g `^*/mq[Ekp4W.lL i&om"Ln_^ T'a_ ߼ާs+G˩0}b?Bji @e1$U2}0T &8c 5! %$q,ԁ3:%Cg7cP8yM ;:w!Ja!|I-K?;` w"Bcѱԧ𷨑&Xic9 Wu:Y-= FT(+pZl>*' ܗ^M*u`3x ~lNúK ȟ/Sana!wa`mբ@1BM?L xә'afg!$ɹ=O1LpȜd{"Ivvk:o˟p[oCqsiOf;긖ȱ3,@l$g91Um{ݤ'/w68ozn:3fd.$.7΄zvٜGY'?Wմ䔝#Җj 펤ф7CF2;wk?nE=\oQaL!i]N2~֤`|+x" ‹zx!c\LPWgk]$fKJ SC?Xam͘VWdfs[!. ]Ykq[=\p'’?H'gaixyy4IvZK[.^Y$hu0>mT5]`oNX$C~&@x3 蛷w$&.9ɍfl|a]Yf8)UlFum'H.XFt惑=$woJłm/MDYAO,c.4i# Ө 4J 1-}09N\XyNEH6mX0cc}V|:9t5U\z]pv#sk͍u|lNݢ~ZZ5x|(©$R~%v,A⤮Y]}x01UKKs_ܑY "yq[ *οhW:<&pzA~;`<Rơ^Tg̐; -Fay-E_⥩dz6K7a]7@s~;i>P~?7s4B_ yVjC%ʹ~ $,LcʮkgF]١v/ 2TlzG5Gi*3`N|1,m(eowrdf߅6< WyƟ:;_gL w|f F/!9sq ZyúZ47pXǘq/7 h)#-wΡX ' GdFIЬ"* Ьs288H?;)- 4KHEqZ.$nkoO'QE,'y )I9M4^5Tay9!%j-R"':%FDw&L{S};$^l)mZ40+0P2tfgF15׭E- BZ[Yju g{Y|:[0ъS}g c Kpmߓ%3n{&xk-"!$HK5_bq8&묊s[T '1yBp2)J 3 Xvi;kgV*P$V( ,-\ /TeS%\_wǞV} 26Z0Va<(p;H+zYpBڒ$i  @q] z_hK Tf_1W"Ś('bT|GYV'$9&m{΁9c\[H-HV n);T]?C]]ʂؘ6弧o7DJQ fX@p`9{OFsx/Wg/g?tQ\,ΟP %._9* *j^ LeCkǮKhӉ3CY&M{hYsңVD|qF.,X 6 ?$}WA9?dq0 #+jCh M[GL|*}zqoծ,b^̋\)S,24ycIRWeO߆RWR^j3Hx6PYl;{^ XjDPրu?`7P,No֔„s6imK p'w܆4zh; v(43s~j, YիBm:3{H+VbϖzɀB=ۖ EjXh*)H"nc5t{&8TEd8(M'n'~΀*n{`,wKCp'CJȡtlSy07E_4x/'_w|ǚBG-癮А䖷yDyc5/ |KM"/4{E"pYaPf:|LT+8O32vfu7zJw(L6!s%?.maòuF(e#)wg G#U܆!SSPx,"`WRf&V[;Q[0P$z Kx۰l"LsIh{n][|6Uu?OȽG wn(M&kY-q7w01nb#hwn̊{,}.Z;[%\*1I^=t5nM͑ xyKXФ(pAwg{W[U<nPڜk@o4SFh;K+Ґy` bIXvQ ' ;S(N^S:|ґclK=c7M#UD`4Ls3W"TWUϦ?,6;IXh|Xm^Q /GCtp?,- jbeF]tO.T,($?ô^`r^NzEU8 ?H&i9 FG 7 3P+T@E`%f=0#r '5T~PSLf|wkNeE.@i*ItX`-Xp/{68 4\k"}H;e4 !R[ P1by=8yp [;"_BJV0W7&&sfcU sujYQ ;Ws7T8׋h֤H1ILrԟFvcs82.*#t/b"}6!ha&fn[U(3<ӡ5#hP%'"ڼr1ݐ=U0G&~]-ڭB~$Ig!ꯃ}ZJtcuwe"kz3_ }_?m*toC/`6p(V(D'@.z}b$ H`ai3 Kx TJ@]?&fd?3l< Ms븮bgg& .|Y)3vnZL{~ͩ[OwO඘1A7H7UĮ'9VD &"~yii+1BH /"P +qL`:3D`1j~} :KfNxV-;[*Uf٪{9w_؏gŮgV-tW];p#/o7bePevB/ uK<]Xa"~WSg.gImsmgÄ]H۳6 h~Mz뚚P6z%T_`},W-:_mvSƺh=eV>-,9?F>2Mc."b,B`CÎvX'R>g(1 L* BPݺh&MQozd',#KJnu'!R;4_w>Қ`*ù3GXF^R»R·R]PhRVxgybɧ?iQYeS06a v8}oN1m,K[F_U2IE'cM?o+vS$9o_xb7m@e ?ݽΘInSG/.x'_/oTW*uq"fߩ*R%;[USekϋ;AMܗ=˖t[V+q؃' ĺP-Xn{̡3LWQ64\iڏ x+>rPE:+LPˠ8#M{1U1|]«5X(D \w!lQ=Cbc<9ٜ;>)'&~T@PҊV@Ծݸ8H^H坢fce=WnxY}+;%md;xtAPz>;Z4rn] Qa`oڭu˴%Ra GvU.k[]ܶ*kQ.WHMIzVw9t}/JAvL SOq׫lǪp$^*R z<5:Npֈ Az?sL0ь ~'7YÎnvݙ w0V"-_Ry$8Ime|->{2y';$d~Ij0JDQPDD1F04P:2)uǎ qQP+,!'<4`Nv+}(Kb}ñ3[牬v@e15*>}H9J\K(ȲqUoI8M} RAh끮ҟM.lL&GNy>ۜnYo: dCm#[XטZӸ u9 uk(Xr[_M1]JʢyDHH[<+4wT2* 4R)d¬e= xw[q ~`!ڠ}Sr L[OeFV2fS̊*;g:sCߺuq9Oe A "А뛙P!+IID"}?ed+ZH'K;-#H@X&cs,+ꘕ ?ajua._dd^VXQDP:ryn*@, gZh d`B(XO;e2uWޥQTdJY šIzQaws~,J7I4Fc;7o5??x)=s wLC2ey1U_7R33jO# R$'hEAO3:td4GR`,~.P_E[1+72Ьt~Ѵj4m “e|"8"`BR'"Sz}sÔ-J>0 _yt (lk t=9Xx[i8¶S3$Gsx"Rw;R%>wn1X3L!XN J5np<66Z4JR=ȎD;KrHSU`\åG]>x)7F"UW|d.Z!oށ*>ri"p-Lv9# .IY[Ue>$NkK>+"AGw]NP/$ECE@|}E[mfhE,FDCRK Yt $=;3?w4 " |z.s&^E'ඃg{H_b$qYZW&P u) -%QX1;Џdl#x,jUJ:l\>Jg7/pM,=ÉH _= odNgYCK-f?l)]X7[|EKtbV#vyIyX 50S7 x,-m;F;eaVXXXTeTu/=J'ޡkB][֑ZeI9 @ c/ԎUp90,zIƩ}r~ hј`|"\ׯBR=`_qCM oq y9 ՛9G!A4,Vn9V~ ka~{bmp1F:d:;494VjSs'* dƊA9V(;W\d+a?Y@O.$eZFqK\^NԜ|C& Uy"yo4a[j$ `ˀxݍ*!u--G)=;~ 0d܏rCroYR5$m)qo afyvҙH"U0q A@u[u/ xdؽIlIvAa<2WLۭͫiWa_kAAʇU R-EM*#Q[1 C+Z JF8 cnSL ss(^th1L1vكʩ|&J KV|ƅI+։(JȧϦ rG|FU>CCEA^ l,5aՆq+$ az%C73=|Fqbhbmَd!Vߌ}oT@}W7Մ)F]: M GwVan4^ D~ BAP=9 YaЗj2# GZ? YmtAzD[!Gn,IYNdvU!by|Tb~=1-d!fۨNKN ǀ L O?w@ؽBaji!,MAMFdd7*o^/o. 6(a~3 &%2KpQY$_$ߘ\*ZTyc7'!EOϬƛqt]pj5pycF 3$Ζ>wze ]S0x_&1KIy>B G][ 7"w(^#_br)9=%$r;V^Ba.Һb9㗆E"|v"Jc\V ZY=8`Ad; 1sm-K[;݀0a/5 %gfF՗)ߍIw69aV >`x%CT9熋[FLi4"\UΛP,=LuVpIR ?f=vKA^C*6&lE3_ arGl)HSA*>r {Hqa4Ns_[ƃ8 HR%{eA"c$$0,?oJu !GߦZ KTbX+&A,%2(@ڃ]DޱʮTkv:W@i[)8sJ`1 &cD{Q%z2. PsϕCb /q*@:yEI ~њ:\IDa/S|.(O(lB,2H3fm@_'nWn*oIf5cXJ"K-k)J$$cw?Mn6Y.,C*jiauF&I`[ kg7(esڙn4~/s`v2U e/M!2hV:eU g[ij6I2T)ߋ =0Xb<҉{+qj8`Z݌,C Me:"n_!G+s0b24C[Sg6I"$AzӇ;@~XkoNܒšߘ$sGja ^^/hU͂7 JaS=f*Vӂ6.Jp2鸞Vn[9cP hȮ+Ῡ|Έ,\2nQj +ASapߐ̌g9X)Ms]u+lzd6|SҜ{݈ʚ|](X#-'U$Q  [u5LtS tD*8 j@b+YQאJ,m4>ܯpȫzH6%NÝ~GO@)׀a$d'\ Zgtup)̣KWD br\ǃ|O&/sԛ#U6Fݜ?`3pY\SO{s͕`dDMys.auK^[TcGۅ6>Vg& Ojs,{I$:Hs{7d{96ǣmd,a4v[G#-TbVk$in3$5IWRmrԇ)z!mzq8x0,K''aɖjߜPYnf5K\;:ETL] @]]1Iw)ƤL\p꣝{Phe֧,&^,|[{b&90W :J&F`1rX`3}zEa,:*++i> Tq)ÖZ-6uN;rsk))ysդTe ;wfކSɫP8a).~v_F|F2׹8pљ?7 ;Ce؁"X/1q>G XD"]c*C#,Yv_iG99k$zvCX 7x/ڎ6!iJ&xFlywș y{wonER?Y(GjHJmLSal<,Ɏ!:EX}ud~(z*uѐkuvv+"UAćSA}O(h8kD_F4Բ1|%i1j8Rd_L*C7 PISIg,KW;-Rlp< 79c1csyB/ruZk3`;%z-| }@ʛQy,&3t-$r6GPW r ׊ XJxiB[f i朵 oAK|1F ߈X7]nF`+ dۅҙi`px x=!Qݝ~T*sx ! o>>}&wMJٙ網{0Y&lUąH -i.Ah4DI NOҭOErrOrC˫5HN8`ʓJ^~QKTKezznbAw}˽\ޛf@ڡ#q*"5#W#G';j뢧\ (oH p5y< vU_W l_|5,Xp&\pGEuJav*?Wc C4{_ yc C?{ygpbLވ[Ɗ8Gh` G6i㞇`&6y|pΫ3KzV<GG^o>3[V#a0n(h @R\ &q`[m&K~^jA ``ׯ#0zr6c{+{5w QY@F8+q%kF0C6ꙇ \_hfgF1BAP]K4۾ T)%ɦ\Y>/ *~Uee~)>hvCj0ϊ5 9Xߌy|ݨ&J(݇##+2l ]R !mvGrkjL6''suJkG x%OWo]B--"G_MbePH:@TUh¸=FTYV˔2E5Dbm*NwdFֺ="J)Q Oh6S^0tLa&C#uc# ޤiJ@q_[wpվ^B'|C2%zg" ;X !&DOJX,xNNHVr(ܴ('}n3xFjsmL)Mm1 +ۭJSlD,v?Kɢ5j{lKYݐxIB%X#燽u|irn8tNN<ӁZU- )P!Q(]ښ!)97F!JZX4!KVKsz ȓ8`A3JvM;p&xo_T\T@ڣ9He^v}CTI&f1$O|Gjk*tuZG ӋZ|"j&ct[t|i3N^ÀK$%U}ưkEaOYǫ-w?|3#ke7vG-L*-.[V@93uG]|Q*I<׳pQ ziTC[ \|"7 FL*)nM&:{gM"W, cfָֹRP·Wm\?rRɯ` B6b{ * BVXc:.d&qLi)puZkysPot<3HݘvUTqzi};}~$A"0egsD1w~+)ƪQKy3vc)@#ʱphoQS`G=Ϥu(4fO Rd'I2+d!}2O&P2 >*)eyAr)l 6j#C~Da0 0wf&z[7ubl뮹0Y!iJfy[2MpzZ"?P40ELRj}J ɪN#"$= KS7lgZrfƴdt #FGQFQu.~Zd9Љ]%&L}Mv. v)wط*3ys8F_ހK~=C뒕TvOl7wk"JUL%}B]Rj{?ڛ5}@kl޲G^ fg!scq DOT9{YމU:{<Ӛ.S<[\s`彞~,It T%ѱ3S=[D!'X氛Mt!6L3Y2f,j$߼`>$h_cjLG)czi=к@i傿AK-*n%7glo\D'b+2p&G2_]_ae.<@j1ؕgkş-PxwD?ɯuB>{ЇWTs.ЙCFkA sDZhrjj])5ny.3Di(cy]&~iC8%V\IPY >Zwn Xz_5NWI0=YdCtC:B3xhOP:^bgJ,&J^9扽)\E0?E|JT̢+ ݓ %8۩M77MeL Vſg;\My@f6aJjxA'|B_hb?TpS$bt_Gɗ;kNwI=36­w <<|K<恉;`DQi|oo>+8<O/OvٝJ@C^lTS02% #0i5;]vbSsm%8<**Z1S~75g&ueXqڨkhԿaeUj~ŝ [+oQiQ'\KM1f*r*Eu XO+$SYe#cf'x'3 7 xl?R|\gBQ,l9;Ybr R&F0L8RfL3[qǪko \ul'Iv4)$u:2\n3 Lj."*Ѳ3nj2pȩ^e  [s MVg܅ ݌wH(EI036v]xPas3+ZQLK]!4uH~hAawl n5n|<𶤍Գڱ]4OZPl2[AeҊ֡ AGÌEj]ѓu\vJ0pa;kf2/mG _H:YQ,Ry{/w{y@Aίl!3S .1 bi3(%IEhcHd=29ىB0 ;3F^iF e6j/]uST4qxQV.,*#1)^y-0tȥqgCJFUl45GuC;76S>8)fsۺ $W WPJ^aB ޞ4jCbU<&u^]ww6*D 36/@,bc㌔ᔪu<ԶP{ľ;?HG|[yȶrd~&}Ayً)R&=wۆ 0 3 )+ [N/5Ñv؜?zyAukm}ĄTW:nQ]?gǡ԰on2jZVݘB- IϘl5&Y &"b~Ex -"H1H{iG4*tɕNfZ~R$zg ko+TA7>r|S&=`E V1KgiMF Y 5w 2( wgǙ؊#֙JGl0=ز<"N7Rtgо-I Dϳhx-e,EexOsqoOY,Z %2X\ا$wDw2;s$M摨YuzDu8i{-ilT~=Bbj2xty-Z6Zr/ 3BO畑 0 8y;Z@-XZ^xfs|0 0awlLUU57x}o(Nd\z.ϚӇ WN{Ƭ&-.ށg1]R^` t>SS#h8Ylg2l"!4訉P 7CKy NtLW Y.̂=L%5s=N׍qlu=+Ϙ/%7MO5^_S?c=i%pPx7h1kSmT |bߡQS#)MרkB[gݏU]UR׬m[`re>E}ЄPmƔ; ygcbnL9ۇ5#toM]"SܨC&T3?M5w!O~ &ܚf0ϋxmCLZÛ/Z>Wڐ\.G)Q ~e8UK. 8?Sw54̡\J2>65D=Z8]}N,K+w_zҫIkDH;'23ŕT d585~T~궎f.k0nW/߉WGH&m^7xu=yfK߫hn wXx#eE+93@T Ȫ::܂Dpr0ww`$^n3tBR-Ze&D*xbf0ޒ:/=)sȔ݇h.YOw;x"ۘEN[tn""!i>@q(0 &,Ҹ̟=.΍Hrr.Lt &YuCLq%< ʺBkXNX h9O}- huh#]-2uc4{B1$"H\^ ks#.9 @*"Kv@$mu҄&2S:yC$݋`K"蔅Ş e,2#1+#kxͲeX N ;MU6\F lNJ lԄYujEkD  q߲10iOe$=2[ZdqI;e!>tV̮iO%U;C)ϕ4saN<`D ^\0 .SԎn.wPFN2_@꺡鏬ܭ7_WM}h .DjT,J;GbvB&zyxT"I0+܉gpʘF8%+av^۬j8=n}kexUݥ?ƊWgooK(j659)$  WtSFx;]ɷ` D^~sVG<]"]hz>Q-.zMa>aG07Ԃ<˿zVo 6kmX#IIn?=oY?xG;l*bbLT߅,֞A䥐zG@Ya&c#;N}C6^ $_QczVFSt_Jޤѽ!SgoDm2g$DDC;;][OA:jՁ;(fMT["*o3ڕm5:(PciABR2WuQś~F^ Yt*vHEgX*8!0b1oCjwjjhBxOcXZu#:.;>h#L0qURi.F+55s 7ߣ G~ӡ[)$gO1&ECVa^ ۙGXt.UWfEhK4=E*7ɋ8eQ#XP ,41KM}gEx}K$.>Iqaq (\y u%R>GXoԧ`3zR*XmwwW|]sqIlJ-, >(a "bu~+3v+l0;$=XߩZ Rztƙ_paw?\l+(=哋C%UtM\MEf`y0=PvOh# X?ev#u 2!mV\^T-dVSsjzwx.9|?U5\Fv*vk<+;z ?fٝ{H 2qB}q&7yG&SD5" ^@,-*;mCD]vkZ$8N-Bܿޣ!S׫w"gAR[TP|R֮r5Á0z`ȶƶ҃ S\"4σD)$哂yA=D W{ _p/R#}Ok8<4C,Hq[d3^{Qօ {H1i_Y9*ޝkL:mE!m$%WAX Zi?adTLN&}?ڜQ+3UԩohNw@> (LlLLɡO)yx hG癋·0$j+禗>1J|︠6F@mwmؿX||[LBԔ]ۡ:~, HPԌIW̱P\5: eb:LbA30X6 ֛Mw2=?H;o:(V\ރ Io`kEaӜOlnn4~˾=|n3Ն}6fsR/m4ljN:Plę:< ){T``%%uߊ= tTdTՋxv턅dwgnRXZON Pa/]?J9{E 2 5/|Y~h\|ߺx[1dnйyNfY82*`4ڬo%4XLo)K7=<ۇ&LcJs 1"`moGJGexY;9kY-^D&6=Cm[kPA9 ϵg&{fEfDnG^a rgzNᬼFjy0k£?a%32 rN!+̡0'83bdUݘlR%?zW8HȂWD7ی2i^#БT\=Ɖ1XU @a >|{J2 *s1Z{L;B(cy ՐɘU9h]@ <ٔI6+ej?P˲۬^ފFlׄr{GM8e^KKx27k Jc*qA&!T!@_V1 Dm&ˆA2(U[9.D=2M\o1=6fa|TWI'/LxV1U꞉c֪qyH[Z)tc0W@ FJX:Dʬ % Z d1@`,z*d=T=R$Q֗wJ#H9ùF5y%4-lO>?@,g] :@g[O0}zET߈&M˂Cs>+A1Զ |g̟@8 .Ua^O%떴`^lVf5Bp#F;ٟ:5tJER5,7)+Hý:}lbP ,|!Ͼ9];D^3UOfl\ nQzm`c>hW,D7ּY,'~_'Ƞ9Ź2ígRl8_&yF4U`#,ɫ^CEO"0V*]R% ip[=a_T4K,/]{]I7F25Չ3Awq?\vmVNԯRrrkpBP TL6GE)u2(w|Ď6rl1ƣO5-9awXH} l*&w@~)\vv-^ K6 ~&慖SmN28{/zM4>!TY/z<^n:E5U%c[cL3@Oa);:t '7tqjP*Ojzp{'@ٚ{Ѽ_=,U*n)l &ˑ/CkKӹ4#תNZ~J /(u8w` U(>9a{]h8"TʋS (WAokI2b3WuR'Ý+@ bzZS:鶊 `)C:x B> *.VGM\ps}=tz }+hm흛 )6/:M+瘊#*?}8|oywO `Sߨ0PpZڎRN=+ۙ |Ư+`hX:ݜΠ $AL <ʤj Le(¢¤o(G_Tcm8 !6zkӭ +fI*N0"yz1FSw.3 &̾;`0Uf;sK ;߉ڄ+|'i@^e"9d6F |O:q[·5x:Qypjgޛ[?Cn 7 q1H9tpMp_p\kT~t2+P^x{-)Ζ}OˈOۇe:铌]WN : ;yƠm/*r3a:KVcWʋ[}ktuEuhvVlB;M/T0>͘uG#V ͳ5[̎GcqSI`W kgEуW#:D=" + y2n0VaAtH"?va4Nd~7 ސ8F9:$Pաu @g}6,"e'T5;)Κ;K:7tk-@4uOsXh_1꫰Vo%V/dU:I ~(%б@Mv1E]7`ur6 ٴ .(yh? hv5'j!gdz{혤[-G:K"yW%:qZByPY VӖlX2)bxH'kɉ_ 6R=I9a=XVj4 l(#a8SE(I]Ƚ< }w({|؋jv?j15gSҨHȉaiI x,(tZNVׯ>j pyBҙ%8fUqCOk^ [Dq?(H[?&k>X-QYFȑ2:jA{dT/֧%ӹwZ2ñ{e졹o'P ;Adv7$B6> 8)tta":f7F[b\8v>3|)AD-).2r\YԮګr*sjqܢ ,[u< ST4-/c'WpP+akȸ[s$)]EK׳dM9 v@~rS!r 9#u9tdn&"ͨ2[STNt\"wdxr <®!AO}CUY} g.7;ċ! Ci-욙Ϙ d~bM^rՋ]hW&e0.XZmđplRO o%m-[9?Ӷj' 1RmLIF<5-/!1OGuUPr^ zʣ@V7Z(#pIl٦$X /^%Tڸ 4|aR% ϰP4Ci$2P%^-X3)D)}~Id R xe W4n9?;l=5vGAxr&V|S/gR.x-'!:ω(I \k#ABŋʌ'I?U}sf6)pt4c[the?$ݳt P}P& ٓM [gFBrCU(1p 3x/R3M`xo(P^Go$i^l3;αl \fy@:}4Ri9ȺS974 bD񛟫zPl^(@JQi%UGYaiέV+N>14~`3L]9}4,)~[1,mDQ2 5 ((xx<2W/OCR:Q_`w1PcקO)=xs)'b?%&}+ڱgeTmF6(Iz;OaJ1.M}[\ͼϱ"вsˍN쓿bɿtg٤<$(ήj^C>n{TU|Um y_wi̲@buϰ\v^; #0%Q- #.iTAW3+RMֹU yf,HU #i}l\k&2o[S_ fL?trx4BWleŦp/#z`JHc:S2ng 1:k8U5b n^Z Sj.W:%S-a~kӠ^io;ٌsuo4B}o`m'W ̦@QfG$Bv76vlugީꜷJoX.-֙B4d2IxP5?k$s`G2.dc} xE ½$syCDK;T8&͕d`\JNJ̎[q1c6^KMq=\Ԕt?垢(~aItplji9x n9tPnizcU)Y/v0ڰg:߽m[/Q-$VN >o^ rRΟPN{N.Sd(zo`ĸԴnEi7&Wq?H!PQO#j 5Gɽ{DJ  Ck@3 4 SM(YXbgHU'S:I]0#/Kbɜ06˹9S n &hC}$<:d}nj.9q4(VrPwבvN1Z:\H_3Ҏ%nX AvmL33)c%3?XL"[bB8a[x UH54? u *;QXα8CbR4>aѭmh^K=7$άl] oxق*pru#$(<.ob$>vOFʄ:ljmb151xU]Lg|:ս?T1_G;Qa7f:HC%f;=!3c" Gs4eF[]GY AO)LC. @?\& QvI;?wa PZa+7SyIik+8,EGlRYOyR*djI/GW'QjJuĝg *(a^T}$s~)׎ftkdxk9֯> [m:Hb@s\K Kzpg25Q.ogQ r.~-UM29J[ 7%p}tYݜdrS ir[L\= ꍯD\oVپm&_3:rR)4G #T2 d9d 0G?]7w)W U#ftأ#OOz`;9~ yEq~y)E޸z| S-^OԳHvd'WXFML0L+G.jYKp56@cF);'5,T/zojʙ+};HLE~ϫ1DenŃ z :|0%xxBWMixEQ>J?N0ɍjP6DEgGV9㠜J.M|b /okȆTߩ/+êOsEzt8P.lRuqF;;V#(0@2v?zw$Yq&<!"e-:zq+OEQΜȿ%\(ӓ5Q-qj^$0|koאQ -~p%%9 PQ%+l'.C3%ŜKbA?fmʊK³%84Ld9⢱.< \XO3po6?1LB~!UѼ5{-ܿ auyo9\\Xw5r7_L_g(u7gli}ߺ1{3yOsjF)x"SUmKW5g\ Įvmd‡ᬩe'Ru-g?`)ƃ`sUw 3\nعtć*j]P~eWf(Q"Ћ獷[$ui 3Hݚ=S9E}x nLpUz)͋Π]\a1*Cm7&rh" {TKw(2x)w.T{|m\PLs17R)Qź[>#'`mJ/mka!Sh q;s)p!\ۀJ}IB ͞X4L \iD0_utL/gI rC$OwYKؚ2 @5K[[{23M<9KDDx.d O<@_X&aks?Mmy[#>w "' z 1HjmVatSCEΓﮆƑbCfo< 3弨RYc%=P9Q3KvPOLkwoRISm>9:oK/sEn';=2)K;Z~[#*mP!zj(3\׎Mi]ziOM+KjH26VoPrΪhS q <'JVOhÁW2vRc^A1k+ ^ɧ"^d$_`2UT:M~=9nNfEK/.æQ F# .TEwgK%yYTY 8k6EX;u:d^ۓAj ѨĤ3wgP7TQ ,R`S9ܦEaY3mʍclژp&./]ideT{kETH\] @RFrI>rA1pw >>NiQ7 vϻ,/|,^7+l oߊJC '{r^`T(٥&U}xҶHqie7Kf*y{ZmOEwŇ٧iD`k@rr78r%,ݎ肞t3ߢ&XIke:u_cAE,cޑR?tV̐Xd`=@Q1Eem=պGF4&k|=wCI4N%&NA$DQE 4Gv uAAvJXa%Zsu e;ሰ=//~sO$dtXni§v׋@$- ]e ?e_/B.LGhqJ[HK}v *śQ$T7ӕ Kn2e@M`^  2e,PY)1唣kLp&gf#HĮDcB@DٱDM֌rrvV=Ip Gt') %Vw?1EܶϤR_ M%^|3j]fyZ>vCIE)+<كC;Ū+)SЊ^ 628p 80@Cگ0F/fli nG̋ ;Cq(ܘGwX(ҧix9l()[rrOg!V*]=10Y[Ln[Mqe>%~Ax܁X;\W PŢ*ğmU N͔݆ҵ,L'1U$yr*|W'烨=FߎX!Ppae6UfW,( >uhkʸt}Q׏ K*8lEAuG[)_7oƒ?PϘ@GO1BLsDYxHT(]k%"lL&'pifffy9$fN3⮘1Qj > Sx实wĵRTݾ|,BʹEVpݽ%1M+Y VVD\#$:Y(@' agu=Ҳw4ZG2v08āf8EH'8撽}ovDg9TT9M@] 4$FU/[m !+q\ǘk5GEa8d-l8o3H Lĸx5W7w.웷9Ê@Ȣ]LLQ `v}*SXL|rZ6g-e 3A,^!1|ӯhhK0e׳?M8 sQw#1GPZ,Â^4iR*wڴona'i/7xЭb9;Z?9Cm/Hx- ܱO X"R$כyyʂqT5]߀}C&9Gi_Mlٱq$߫m:晝{ 2@' *C)"rɏx W{o"m} lVnHbdaũww!ʳ6~ȒCOjplUWMp͠s GۜXІE0x/#te-oV:裻\C4~~b37HhM4`HҘ K"硽#c(M&_KFڰn0qCqjhf7 5 E/&BqrIXʙwqa"&S |Ln'7 `7 Ѝ2o*^#W@.nG[M;nwgh?Yg}wFjвp|GU ۵n@y>6M؍bd/\,^jxtm|G"bȼȝcg^H:Tf^4꼔퍣x-UH÷375ʑQCjdI q7h&g "y2 -D˜!x}ʉ6Xkiy)Vbͦ]W@[4] _~,5G'ʶ4E-h9qU^l.臰$Fd ?jѰ,cq #rb>C) AK-nYD5nIEßWy^:x+h&n&^buF2  S%=o9ohycLOv: |¦y* "n#~L-!w`3dD;}WلEב=gwu~vs L0AGP*Ç|)a4koVjc/rPMIʉ9ecf-Fy N}Q&:_h[ӂ֥9i!m4y ݰyؖL޶! jlE QvlS#JP61ܚ>bIFAP^ʐ״f *1kpT_ j\Ͻfum_yT FIjQLuz]>9΅;$C<nM=ӷxj=ME^l0;'1r V?tP{< "B6ϴp&X:?6b)b9 uY-%RUpE3%2v>z+^DRyhPkXC|w&n1ʠh{œ+C+4 K"*5hJe{^?n(QPW0)|ҨE & bэ9ԖyDLj: O4;E08X7cE?H8qvLqsZ%hyr/UDn:Q%ߟJL~ѷz,K(oaQ>a!pf+dj.ֲ>m'$Z6ce"V9}j|6R>{1b{;MSS/<;#)țc> B%5~VMDa:E0|P5hv<Ξ־HI,j_=!'Nj 9 '֠#R+Sug0-,IJi̒F ؽڟzFm匈@P.&=9!7 :G"9,G>uq}"ȓly8ƇR;4BZN0p~tg 7m/>MrmzIg8ƒ'DUK.ht4!8;.fL+$JL";?@UNBV?Ke'!/[%# i#h@p#X'fR8#TgKFE&^UΊa!V8zC>"Y)K-}zX72 dvreWBˍsrWBss*M ^hIpԠnU< T Nr!  76;n4~ِSx"Vf= VPmu\ Toi͠a D流#E-\tlTZiQzӢ0v#UŬ&,ҩDb Ij'-jv"E̗i ^ݫ{qcTo~W(xDk!ы{N)Rҥi`ժCbtRܧ3vJsQ{l{OkH?\W9rcN2+NZ-S%[l-;qЂ02`ˬEvHb@86+0j'kibeV͟r DrDg-$.LT;ap~Ԍw&tR.;&H4wR"@byNubrNGvS-ie*޵%QACP9deЌdT= 9qJA@tmKl ;9%fcE-zuXj+.G%Ŕݡ0x}K'YDsYe Лl:vTSθ~,O'֊9Lj;LJ+~bժ|&~;ePj@NwN€1lN4&z[nlMSڥNN 572 {t%$?|~fe$0W#zΣtH\;Vw$9X@UK;-P,nfe#IZ@uӎNWEM酀3W܍Z[*<13GnvrfƬBE: j|0>'9\kՠVaJj1dUb04+xYCE;*ٹ694#<7 #lņG) S fkp N;,vE:&fdPisR:~ F M^lutzΌUM7ܐ \)XtyXҠĊ SƝ6D4qxLCF!/>AD09E ʦ"O6a% ώިtTpg&.Z9|S-`v3TC= cyA>cyO'ѥcB}y`վ Q=M,|6rζ]ώj\yV[Aaxebݾ~]b?iP00h&H[#R<`I^n!q% *ν^Mb@ݱYT>$Sg h;FX#f-&2?jORla\kWVL{2L:w}Sy3p3MgN4`T%H"7ae٪1-<_:V߾ RʸIaZ̠ΦFz5䨩v[,3Y3[QszV)E1v4Y7'Z ;%Jvwvf1f )Pl=BV'u!-_]B~hFsOoÚ6f3'ƈ۽M[~\XBcdǖwn| ЮDE sy%2fHߜ] N?ghhNMw(I`qLd.} ĈzbHԱ6-.vJ, ɭoу"%ʰEiH++2i]f?%"N~%A i ]zagd Oa{ ꓷbT)H=z i < <?V^BK#6yv/no-i=y-#*VG=,1=ӄXO7ŊomX8?y:"A$HG 8 ^U@'F7e('{uz 180v%K@UfJO-DB}qƕ1]4%-dK– oQځoah5'p) ',dG)}!fTa Lu/oL3AmSh}"ow>v~P Y6D^ p\`s|IJW.H\E?RN[=1aS*1(R!'!еJ]$P-T'붿\ (P.2~HF;^ݾ%Xo֍_*Ih~LF8d`+h2~2CqW/厛` /l&֧EF@;qc<$] WITVLH?#SH,-ck bLVp uyG`HUl N"9I0@䫐W>##B{9!F+U7Vy*cx0Qy)Zuw˗iesR->@?2m@Yz~LNeGS;/7e_MtU22`HH8ATо|KkS!%@z1XW]. 6QyGwEW;K4*$0-s-U Ωdi?4pKӮP|6bN~ɲ0B U5Rr2+"ϛ^2 Q1e?4| `7ʬa rڏ-.I%TI?w464P=lcO_ҟ b鋸z~g*=9UɅ8ho0 cd M!yR '1rLEM)/2NίqRϰ+kXr!2p36`p%&ǹ)t=xڙ CFLD"4W~Ah^:E`N X8DHE J/v@ R/ϤNopY5r6'ƻN ~rSXdFJL/pò={n9ٍSnęOK.]xy__ Ixjf"8ov$v~ߩw!!g͕B[D$LF @ÜLGS/Cc|Ar]߬v^嶼'?J׭pzz~3^e=V)3h((] !kF:2̶j$\6S:8 !*ϩE3&>.l'\׋;3 \"DRJ| ʙ L,θHk2\uR U?1 LmsTK]1CRgFeQQI<Ӓι:N08b2gd=DwUAil7{lX}{hdXWZUVQM)䴬|} h"@:TkF- g:$ڙm_\G(&P_.BYEό1 $u \EG}@@{L>KS ZP;#%xqm3~tAR$ <W!O8RryDpy^E)ʹ)=y{kX:sb'j{iU[':$՚dlZpSZC1(l5U}Ӥ?<&y=P-BA`}$!VYLxWqvVui_WN (N@dB1XypϰM|#g6Kh0|b%2x10r$K\҃ =n^(B| p *]UM.[Z1Y+&R|~VzճծT$$ ŝSͪ6b$֖Bb/ UoQ݂: jQWd:-$hdv_ƛ}z7Խ#@2Ma"cD8a+Kki{achq*N{Ea3⁤c|U51uc3vpQ}t:GS0C#?R%n*Q[ n`xh<=v nH@t8kJ}S[L.:;#O(:5ߵ>gDe/m@i}.ڼ[Kw-p1m;!x -ڵa$p>.o?Ƴ`#ac'rڡҍCd!pu*U9,'\c(aFޣm9r2;A滲7 $JM3?y],BA֑ Ӓf1;Pnd{)76w)jlAWD0`St)A00OPB70\ɰA^k~yd+YU:>'4RLX>T&Fj4{`һVL(d%(L\c暤; O̦*j JK;4*~D= 9~wP'ڳ*1/ɭ(ΊeYM[Z1@9qutMdKJ8uXd>>o@2%K}J+Fձu$vtBe)ZQ1+/r.MJj *G8WE 6dZќGXOcX$VrC1h@(yUV S<9jsPo18~,<*.n`ʡ\GxJi?fP3{Hm*Ň"bS$cn =3+gT ቭڛӔ1m"6!?rl"[ε tZ$$ҍp_}Z\fX> Acv Jc Tl[pr;!t §;:^;l)D"?jZ(2e$l!=`Z \-]D|Ӕь֤Tt`X,ݱ q@z-0`K=lR;Rgc)η&C$[H΄^oPdȠ$'\h%ȧ haNYצDCCR7.5ő,&!Z؜G\:Lw X OhL g"`=J.`Sd kj&""cͣz~z{MiBVCV-5dJODСO?J92.fZgR.f ;< [y#6 ! ҄%p{q@g,B3 r XƁZ3:r8(!s%jICǙ}k puM^ܨr{cEװ?uD!1mDo$(W«/aLo" iL5Y"lE>HXKSPɫw߿y]U߹wHD$ЬvT/w` w9 b~sD YZK$a3;u1n;Q_vC YZ