nss-util-3.67.0-7.el8_5 >  A aM<U]^*xt>Պ_GZ•֣ oJ>ݎM6b,HgT z`.Պm+)pi T)_2QZnZwSݚ//6Q6"KS2*ZK%Ӏf>"!TtXtY-߶;*=`ӄ>UPf>ZŽML[Q,V2@O0gĉ]OASG*f]4t >:g`蓔Z,ķ(Q#}]t-r,yu5VO&(X\iZl(9yjEI0aDm*Jhxb̎3oY\_#*(\c!4K1fq LaFjp?6!8迣snN$hBԐuJ uN/pE y9≽`:l mJccw]^@ t Utr3skU+B l #7p<?|d   F "(0H T ` x  (@^|,d(89 p:[IGHIXY4\d]|^bDdefltuvwxy,06xCnss-util3.67.07.el8_5Network Security Services Utilities LibraryUtilities for Network Security Services and the Softoken modulea,Kppc64le-02.mbox.centos.org]$CentOSCentOSMPLv2.0CentOS Buildsys Unspecifiedhttp://www.mozilla.org/projects/security/pki/nss/linuxppc64le$pFAAA큤a,Ha,Ha,Ha a,H`ce931a5c66a9f623d745478c52059ffef3661790bc4094df89f23968d7bb9009a20c1a32d1f8102432360b42e932869f7c11c7cdbacf9cac554c422132af47f4../../../../usr/lib64/libnssutil3.sorootrootrootrootrootrootrootrootrootrootrootrootnss-3.67.0-7.el8_5.src.rpmlibnssutil3.so()(64bit)libnssutil3.so(NSSUTIL_3.12)(64bit)libnssutil3.so(NSSUTIL_3.12.3)(64bit)libnssutil3.so(NSSUTIL_3.12.5)(64bit)libnssutil3.so(NSSUTIL_3.12.7)(64bit)libnssutil3.so(NSSUTIL_3.13)(64bit)libnssutil3.so(NSSUTIL_3.14)(64bit)libnssutil3.so(NSSUTIL_3.15)(64bit)libnssutil3.so(NSSUTIL_3.17.1)(64bit)libnssutil3.so(NSSUTIL_3.21)(64bit)libnssutil3.so(NSSUTIL_3.24)(64bit)libnssutil3.so(NSSUTIL_3.25)(64bit)libnssutil3.so(NSSUTIL_3.31)(64bit)libnssutil3.so(NSSUTIL_3.33)(64bit)libnssutil3.so(NSSUTIL_3.38)(64bit)libnssutil3.so(NSSUTIL_3.39)(64bit)libnssutil3.so(NSSUTIL_3.59)(64bit)nss-utilnss-util(ppc-64)@@@@@@@@     @libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libdl.so.2()(64bit)libnspr4.so()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.17)(64bit)nsprrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)4.25.03.0.4-14.6.0-14.0-15.2-14.14.3a@@`E`ݮ@` @`ٹ`̊`9@`Ȗ@`D`r_@_^@___@__"@_"@_"@_!d_@_ L_ _@^^@@^@^ۅ@^4]N@]]߶]e@]M@]µ]L]]^@\F@\Q\\\\\\@\I\I\U@\ `\l@[[[u[#@[[W[O+[M@[ZZw@Z|;Zo Zo Zg#Z ZZZ@Y+@Y{YY@Yn@YV@Y@YyYm@Yg`YJ_Y1S@XX@XX @XXYX@X@XX~@Xx@XoX>@X*X@WW@Wt@W~Wv[@WrfWoWm WbWQq@WPWJWDB@W4p@W@Wo@W@VV޾V޾V@VяVIVɦV@V@V=@V@V@VO @VHsVEV3[V UYU@UU@U@U>Ua@Ug@U[%UUU @T@Ts@TTء@T@TÉ@TT@T@T?@T:m@T"@S@S<@S@S@S @SSSSpShS(5@S@SRy@RJ@R@RR@RSRR@Rm@Rg@RD!R@RRR|Q@Q*@QQ@QKQ@QQW@Qw@Q]k@QNQ9Q7/Q#@QQ @P!@PՠP @PqP@P@PAPXPd@Pd@PPP@PP5@PPnP;a@P(@P H@O;O;O@OiO@O@O}O~OiOYOX@OOdO&@O!@@OO@O@N>@N>@NNܲ@N`NؽNN@NuN;@Np@Nf @NA!@N*NpM@MWMc@MM@M@MMfH@M^_@MZjMS@MQ0@MQ0@MQ0@MQ0@MK@MGMF@M6@M-MM@Ls@LOLLZ@L6LdL@L*@L@LA@LL@L4Lx@Lx@Li(@Lf@L_L_LT@L0L0L K @KsKsKKCKCKCK]KMKLd@KD{@K<@K5K4@K,@K+nK*@K K@K@K@KJݦ@J - 3.67.0-7Bob Relyea - 3.67.0-6Bob Relyea - 3.67.0-5Bob Relyea - 3.67.0-4Bob Relyea - 3.67.0-3Bob Relyea - 3.67.0-2Bob Relyea - 3.67.0-1Bob Relyea - 3.66.0-2Bob Relyea - 3.66.0-1.1Bob Relyea - 3.66.0-1Bob Relyea - 3.53.1-17Bob Relyea - 3.53.1-16Bob Relyea - 3.53.1-15Bob Relyea - 3.53.1-14Bob Relyea - 3.53.1-13Bob Relyea - 3.53.1-12Bob Relyea - 3.53.1-11Bob Relyea - 3.53.1-10Daiki Ueno - 3.53.1-9Daiki Ueno - 3.53.1-8Bob Relyea - 3.53.1-7Daiki Ueno - 3.53.1-6Bob Relyea - 3.53.1-5Bob Relyea - 3.53.1-4Daiki Ueno - 3.53.1-3Daiki Ueno - 3.53.1-2Daiki Ueno - 3.53.1-1Daiki Ueno - 3.53.0-1Bob Relyea - 3.44.0-15Bob Relyea - 3.44.0-14Bob Relyea - 3.44.0-13Daiki Ueno - 3.44.0-12Bob Relyea - 3.44.0-11Daiki Ueno - 3.44.0-10Bob Relyea - 3.44.0-9Bob Relyea - 3.44.0-8Daiki Ueno - 3.44.0-7Daiki Ueno - 3.44.0-6Daiki Ueno - 3.44.0-5Bob Relyea - 3.44.0-4.1Bob Relyea - 3.44.0-4Daiki Ueno - 3.44.0-3Bob Relyea - 3.44.0-2Daiki Ueno - 3.44.0-1Daiki Ueno - 3.41.0-5Bob Relyea - 3.41.0-4Daiki Ueno - 3.41.0-3Daiki Ueno - 3.41.0-2Daiki Ueno - 3.41.0-1Daiki Ueno - 3.39.0-1.5Bob Relyea - 3.39.0-1.4Daiki Ueno - 3.39.0-1.3Daiki Ueno - 3.39.0-1.2Daiki Ueno - 3.39.0-1.1Daiki Ueno - 3.39.0-1.0Daiki Ueno - 3.38.0-1.2Daiki Ueno - 3.38.0-1.1Daiki Ueno - 3.38.0-1.0Kai Engert - 3.36.1-1.2Daiki Ueno - 3.36.1-1.1Daiki Ueno - 3.36.1-1.0Daiki Ueno - 3.36.0-1.0Fedora Release Engineering - 3.35.0-5Kai Engert - 3.35.0-4Kai Engert - 3.35.0-3Daiki Ueno - 3.35.0-2Daiki Ueno - 3.34.0-2Daiki Ueno - 3.33.0-6Kai Engert - 3.33.0-5Kai Engert - 3.33.0-4Kai Engert - 3.33.0-3Daiki Ueno - 3.33.0-2Daiki Ueno - 3.32.1-2Daiki Ueno - 3.32.0-4Kai Engert - 3.32.0-3Daiki Ueno - 3.32.0-2Fedora Release Engineering - 3.31.0-6Fedora Release Engineering - 3.31.0-5Daiki Ueno - 3.31.0-4Daiki Ueno - 3.31.0-3Daiki Ueno - 3.31.0-2Daiki Ueno - 3.30.2-3Daiki Ueno - 3.30.2-2Kai Engert - 3.30.0-3Daiki Ueno - 3.30.0-2Kai Engert - 3.29.1-3Daiki Ueno - 3.29.1-2Daiki Ueno - 3.29.0-3Daiki Ueno - 3.29.0-2Daiki Ueno - 3.28.1-6Daiki Ueno - 3.28.1-5Daiki Ueno - 3.28.1-4Daiki Ueno - 3.28.1-3Daiki Ueno - 3.28.1-2Daiki Ueno - 3.27.2-2Daiki Ueno - 3.27.0-5Kai Engert - 3.27.0-4Daiki Ueno - 3.27.0-3Daiki Ueno - 3.27.0-2Daiki Ueno - 3.26.0-2Elio Maldonado - 3.25.0-6Elio Maldonado - 3.25.0-5Elio Maldonado - 3.25.0-4Elio Maldonado - 3.25.0-3Elio Maldonado - 3.25.0-2Kamil Dudka - 3.24.0-3Elio Maldonado - 3.24.0-2.3Elio Maldonado - 3.24.0-2.2Elio Maldonado - 3.24.0-2.1Elio Maldonado - 3.24.0-2.0Elio Maldonado - 3.23.0-9Elio Maldonado - 3.23.0-8Elio Maldonado - 3.23.0-7Elio Maldonado - 3.23.0-6Elio Maldonado - 3.23.0-5Elio Maldonado - 3.23.0-4Elio Maldonado - 3.23.0-3Elio Maldonado - 3.23.0-2Elio Maldonado - 3.22.2-2Elio Maldonado - 3.22.1-3Elio Maldonado - 3.22.1-1Elio Maldonado - 3.22.0-3Elio Maldonado - 3.22.0-2Fedora Release Engineering - 3.21.0-7Elio Maldonado - 3.21.0-6Michal Toman - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado Batiz - 3.21.1-2Elio Maldonado - 3.20.1-2Elio Maldonado - 3.20.0-6Elio Maldonado - 3.20.0-5Elio Maldonado - 3.20.0-4Elio Maldonado - 3.20.0-3Elio Maldonado - 3.20.0-2Elio Maldonado - 3.19.3-2Elio Maldonado - 3.19.2-3Kai Engert - 3.19.2-2Kai Engert - 3.19.1-2Kai Engert - 3.19.0-2Kai Engert - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.17.4-5Till Maas - 3.17.4-4Elio Maldonado - 3.17.4-3Elio Maldonado - 3.17.4-2Elio Maldonado - 3.17.4-1Ville Skyttä - 3.17.3-4Elio Maldonado - 3.17.3-3Elio Maldonado - 3.17.3-2Elio Maldonado - 3.17.3-1Elio Maldonado - 3.17.2-2Elio Maldonado - 3.17.2-1Kai Engert - 3.17.1-1Kevin Fenzi - 3.17.0-2Elio Maldonado - 3.17.0-1Fedora Release Engineering - 3.16.2-4Elio Maldonado - 3.16.2-3Tom Callaway - 3.16.2-2Elio Maldonado - 3.16.2-1Elio Maldonado - 3.16.1-4Fedora Release Engineering - 3.16.1-3Jaromir Capik - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.16.0-1Elio Maldonado - 3.15.5-2Elio Maldonado - 3.15.5-1Elio Maldonado - 3.15.4-5Elio Maldonado - 3.15.4-4Elio Maldonado - 3.15.4-3Peter Robinson 3.15.4-2Elio Maldonado - 3.15.4-1Elio Maldonado - 3.15.3.1-1Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.2-3Elio Maldonado - 3.15.2-2Elio Maldonado - 3.15.2-1Elio Maldonado - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.15-5emaldona - 3.15-4emaldona - 3.15-3Elio Maldonado - 3.15-2Elio Maldonado - 3.15-1Elio Maldonado - 3.15-0.1.beta1.2Elio Maldonado - 3.15-0.1.beta1.1Kai Engert - 3.14.3-12Kai Engert - 3.14.3-10Kai Engert - 3.14.3-9Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.2-2Elio Maldonado - 3.14.2-1Kai Engert - 3.14.1-3Elio Maldonado - 3.14.1-2Elio Maldonado - 3.14.1-1Elio Maldonado - 3.14-12Elio Maldonado - 3.14-11Elio Maldonado - 3.14-10Elio Maldonado - 3.14-9Elio Maldonado - 3.14-8Elio Maldonado - 3.14-7Elio Maldonado - 3.14-6Elio Maldonado - 3.14-5Elio Maldonado - 3.14-4Elio Maldonado - 3.14-3Elio Maldonado - 3.14-2Elio Maldonado - 3.14-1Elio Maldonado - 3.14-0.1.rc.1Kai Engert - 3.13.6-1Elio Maldonado - 3.13.5-8Elio Maldonado - 3.13.5-7Fedora Release Engineering - 3.13.5-6Elio Maldonado - 3.13.5-5Elio Maldonado - 3.13.5-4Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.4-3Elio Maldonado - 3.13.4-2Elio Maldonado - 3.13.4-1Elio Maldonado - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Tom Callaway - 3.13.1-13Elio Maldonado - 3.13.1-12Fedora Release Engineering - 3.13.1-11Elio Maldonado - 3.13.1-11Elio Maldonado - 3.13.1-10elio maldonado - 3.13.1-9Elio Maldonado - 3.13.1-8Elio Maldonado - 3.13.1-7Elio Maldonado - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado Batiz - 3.13.1-4Elio Maldonado - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.13-1Elio Maldonado - 3.13-0.1.rc0.1Elio Maldonado - 3.12.11-3Kai Engert - 3.12.11-2Elio Maldonado - 3.12.11-1Elio Maldonado - 3.12.10-6Michael Schwendt - 3.12.10-5Elio Maldonado - 3.12.10-4Dennis Gilmore - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.10-0.1.beta1Elio Maldonado - 3.12.9-15Elio Maldonado - 3.12.9-14Elio Maldonado - 3.12.9-13Elio Maldonado - 3.12.9-12Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado - 3.12.9-9Fedora Release Engineering - 3.12.9-8Elio Maldonado - 3.12.9-7Christopher Aillon - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.9-0.1.beta2Elio Maldonado - 3.12.8.99.2-1Elio Maldonado - 3.12.8.99.1-1Elio Maldonado - 3.12.8-9Elio Maldonado - 3.12.8-8Elio Maldonado - 3.12.8-7Elio Maldonado - 3.12.8-6Elio Maldonado - 3.12.8-5Elio Maldonado - 3.12.8-4Elio Maldonado - 3.12.8-3Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Elio Maldonado - 3.12.7.99.4-1Elio Maldonado - 3.12.7.99.3-2Elio Maldonado - 3.12.7.99.3-1Elio Maldonado - 3.12.7-3Elio Maldonado - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-12Elio Maldonado - 3.12.6-11Elio Maldonado - 3.12.6-10Elio Maldonado - 3.12.6-9Dennis Gilmore - 3.12.6-8Elio Maldonado - 3.12.6-7Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.13.2Elio Maldonado - 3.12.5-1.13.1Elio Maldonado - 3.12.5-1.13Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.9Elio Maldonado - 3.12.5-2.7Elio Maldonado - 3.12.5-1.6Elio Maldonado - 3.12.5-1.5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1Elio Maldonado - 3.12.4-14.1Elio Maldonado - 3.12.4-13.1Elio Maldonado - 3.12.4-13Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Fix CVE 2021 43527- Fix ssl alert issue- Fix issue with reading databases that were updated using unpatched versions of nss- Better fix for the sdb timeout. The issue wasn't a race, it was the sqlite timeout waiting to begin a transaction under heavy thread usage.- Fix sdb race condition- Fix coverity issues- Rebase to NSS 3.67- Restore old pkcs12 defaults.- build nss for older nspr so we can pass gating with the new nspr in the build root- Rebase to NSS 3.66- Fix various corner cases with ike v1 app b support.- Fix the following CVE - CVE-2020-12403 chacha-poly issues - CVE-2020-12400 constant time ECC. - CVE-2020-6829 constant time ECC.- Revert some policy changes the generate ABI runtime issues.- Add support for enable/disable in policy. Now if your policy file has disallow=x enable=y it will act just like our other libraries.- Add OAEP interface so applications can wrap keys with RSA-OAEP rather than RSA-PKCS-1.- fips need to reject small primes even if they are approved - code to autodetect whether or not to use the cache needs to do so in a way that doesn't mess with filesystem negative file caching. - add kdf selftests- Fix issue with upgradedb where upgradedb expects standard to generate dbm databases, not sql databases (default in RHEL8)- Disable dh timing test because it's unreliable on s390- Explicitly enable upgradedb/sharedb test cycles- Disable Delegated Credentials for TLS- Fix attribute decryption issue where the private key components integrity check on private attributes where not being checked.- Update nss-rsa-pkcs1-sigalgs.patch to the upstream version- Include required checks for dh and ecdh key generation in FIPS mode.- Add better checks for dh derive operations in FIPS mode.- Disable NSS_HASH_ALG_SUPPORT as well for MD5 (#1849938) - Adjust for update-crypto-policies packaging change (#1848649) - Fix compilation with -Werror=strict-prototypes (#1843417)- Fix regression in MD5 disablement (#1849938) - Include rsa_pkcs1_* in signature_algorithms extension (#1847945)- Update to NSS 3.53.1- Update to NSS 3.53- Fix swapped CMAC PKCS #11 values. - Fix data alignment crash in CMAC.- Fix coverify scan issue- Fix endian problem in SP-800 108 code.- Install cmac.h required by blapi.h (#1764513) - Fix out-of-bounds write in NSC_EncryptUpdate (#1775913)- Add SP-800 108 Generalized kdf- Check policy against hash algorithms used for ServerKeyExchange (#1730039)- Add CMAC- CKM_NSS_IKE1_APP_B_PRF_DERIVE was missing from the mechanism list, preventing PK11_Derive*() from using it. Add gtests for the PK11_Derive interface for all the CKM_NSS_IKE*_DERIVE mechanism.- Backport fixes from 3.44.1- Add continuous RNG test required by FIPS - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism- Rebuild with the correct build target- rebuild to try to retrigger CI tests- Fix certutil man page - Fix extracting a public key from a private key for dh, ec, and dsa- Disable TLS 1.3 under FIPS mode - Disable RSASSA-PKCS1-v1_5 in TLS 1.3 - Fix post-handshake auth transcript calculation if SSL_ENABLE_SESSION_TICKETS is set - Revert the change to use XDG basedirs (mozilla#818686)- Add ike mechanisms in softokn - Add FIPS checks in softoken- Update to NSS 3.44 - Define NSS_SEED_ONLY_DEV_URANDOM=1 to exclusively use getentropy - Use %autosetup - Clean up manual pages generation - Clean up %check - Remove prelink dependency, which is not available in RHEL-8 - Remove upstreamed patches- Update manual pages to reflect recent changes in commands- Make sure corresponding public keys are created when importing private keys.- Fix the last change - Add --no-reload option to update-crypto-policies to avoid unnecessary restart of daemons- Restore LDFLAGS injection when linking DSO- Update to NSS 3.41 - Consolidate nss-util, nss-softokn, and nss into a single source package- Fix the last commit- Support for IKE/IPsec typical PKIX usage so libreswan can use nss without rejecting certs based on EKU- Backport upstream fixes for rhbz#1649026, rhbz#1608895, rhbz#1644854 - Document PKCS #11 URI - Add warning when adding module with modutil while p11-kit is enabled- Update nss-dsa.patch to not advertise DSA signature algorithm - Update PayPal test certs for testing- Backport "DSA" keyword in crypto-policies- Update to NSS 3.39- Fix LDFLAGS injection when linking DSO- Install crypto-policies configuration file for https://fedoraproject.org/wiki/Changes/NSSLoadP11KitModules - Port enable-fips-when-system-is-in-fips-mode.patch from RHEL-7 - Use %ldconfig_scriptlets - Remove needless use of %defattr, by Jason Tibbitts- Update to NSS 3.38- Backport upstream addition of nss-policy-check utility, rhbz#1428746, includes required fixes for mozbz#1296263 and mozbz#1474875- Switch the default DB type to SQL - Enable SSLKEYLOGFILE- Update to NSS 3.36.1 - Remove nss-3.14.0.0-disble-ocsp-test.patch - Fix partial injection of LDFLAGS - Remove NSS_NO_PKCS11_BYPASS, which is no-op in upstream- Update to NSS 3.36.0 - Add gcc-c++ to BuildRequires (C++ is needed for gtests) - Make test failure detection robuster- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Fix a compiler error with gcc 8, mozbz#1434070 - Set NSS_FORCE_FIPS=1 at %build time, and remove from %check.- Stop pulling in nss-pem automatically, packages that need it should depend on it, rhbz#1539401- Update to NSS 3.35.0- Update to NSS 3.34.0- Make sure 32bit nss-pem always be installed with 32bit nss in multlib environment, patch by Kamil Dudka- Fix test script- Update tests to be compatible with default NSS DB changed to sql (the default was changed in the nss-util package).- rhbz#1505487, backport upstream fixes required for rhbz#1496560- Update to NSS 3.33.0- Update to NSS 3.32.1- Update iquote.patch to really prefer in-tree headers over system headers- NSS libnssckbi.so has already been obsoleted by p11-kit-trust, rhbz#1484449- Update to NSS 3.32.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Backport mozbz#1381784 to avoid deadlock in dnf- Move signtool to %_libdir/nss/unsupported-tools, for: https://fedoraproject.org/wiki/Changes/NSSSigntoolDeprecation- Rebase to NSS 3.31.0- Enable gtests- Rebase to NSS 3.30.2 - Enable TLS 1.3- Backport upstream mozbz#1328318 to support crypto policy FUTURE.- Rebase to NSS 3.30.0 - Remove upstreamed patches- Backport mozbz#1334976 and mozbz#1336487.- Rebase to NSS 3.29.1- Disable TLS 1.3, following the upstream change- Rebase to NSS 3.29.0 - Suppress -Werror=int-in-bool-context warnings with GCC7- Work around pkgconfig -> pkgconf transition issue (releng#6597)- Disable TLS 1.3 - Add "Conflicts" with packages using older Mozilla codebase, which is not compatible with NSS 3.28.1 - Remove NSS_ECC_MORE_THAN_SUITE_B setting, as it was removed in upstream- Add "Conflicts" with older firefox packages which don't have support for smaller curves added in NSS 3.28.1- Fix incorrect version specification in %nss_{util,softokn}_version, pointed by Elio Maldonado- Rebase to NSS 3.28.1 - Remove upstreamed patch for disabling RSA-PSS - Re-enable TLS 1.3- Rebase to NSS 3.27.2- Revert the previous fix for RSA-PSS and use the upstream fix instead- Disable the use of RSA-PSS with SSL/TLS. #1383809- Disable TLS 1.3 for now, to avoid reported regression with TLS to version intolerant servers- Rebase to NSS 3.27.0 - Remove upstreamed ectest patch- Rebase to NSS 3.26.0 - Update check policy file patch to better match what was upstreamed - Remove conditionally ignore system policy patch as it has been upstreamed - Skip ectest as well as ecperf, which are built as part of nss-softokn - Fix rpmlint error regarding %define usage- Incorporate some changes requested in upstream review and commited upstream (#1157720)- Add support for conditionally ignoring the system policy (#1157720) - Remove unneeded test scripts patches in order to run more tests - Remove unneeded test data modifications from the spec file- Remove obsolete patch and spurious lines from the spec file (#1347336)- Cleanup spec file and patches and add references to bugs filed upstream- Rebase to nss 3.25- decouple nss-pem from the nss package (#1347336)- Apply the patch that was last introduced - Renumber and reorder some of the patches - Resolves: Bug 1342158- Allow application requests to disable SSL v2 to succeed - Resolves: Bug 1342158 - nss-3.24 does no longer support ssl V2, installation of IPA fails because nss init fails- Rebase to NSS 3.24.0 - Restore setting the policy file location - Make ssl tests scripts aware of policy - Ajust tests data expected result for policy- Bootstrap build to rebase to NSS 3.24.0 - Temporarily not setting the policy file location- Change POLICY_FILE to "nss.config"- Change POLICY_FILE to "nss.cfg"- Change the POLICY_PATH to "/etc/crypto-policies/back-ends" - Regenerate the check policy patch with hg to provide more context- Fix typo in the last %changelog entry- Load policy file if /etc/pki/nssdb/policy.cfg exists - Resolves: Bug 1157720 - NSS should enforce the system-wide crypto policy- Remove unused patch rendered obsolete by pem update- Update pem sources to latest from nss-pem upstream - Resolves: Bug 1300652 - [PEM] insufficient input validity checking while loading a private key- Rebase to NSS 3.23- Rebase to NSS 3.22.2- Fix ssl2/exp test disabling to run all the required tests- Rebase to NSS 3.22.1- Update .gitignore as part of updating to nss 3.22- Update to NSS 3.22- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Resolves: Bug 1299040 - Enable ssl_gtests upstream test suite - Remove 'export NSS_DISABLE_GTESTS=1' go ssl_gtests are built - Use %define when specifying the nss_tests to run- Add 64-bit MIPS to multilib arches- Update %{nss_util_version} and %{nss_softokn_version} to 3.21.0 - Resolves: Bug 1284095 - all https fails with sec_error_no_token- Add references to bugs filed upstream- Update to NSS 3.21 - Package listsuites as part of the unsupported tools set - Resolves: Bug 1279912 - nss-3.21 is available - Resolves: Bug 1258425 - Use __isa_bits macro instead of list of 64-bit - Resolves: Bug 1280032 - Package listsuites as part of the nss unsupported tools set- Update to NSS 3.20.1- Enable ECC cipher-suites by default [hrbz#1185708] - Split the enabling patch in two for easier maintenance - Remove unused patches rendered obsolete by prior rebase- Enable ECC cipher-suites by default [hrbz#1185708] - Implement corrections requested in code review- Enable ECC cipher-suites by default [hrbz#1185708]- Fix patches that disable ssl2 and export cipher suites support - Fix libssl patch that disable ssl2 & export cipher suites to not disable RSA_WITH_NULL ciphers - Fix syntax errors in patch to skip ssl2 and export cipher suite tests - Turn ssl2 off by default in the tstclnt tool - Disable ssl stress tests containing TLS RC4 128 with MD5- Update to NSS 3.20- Update to NSS 3.19.3- Create on the fly versions of sslcov.txt and sslstress.txt that disable tests for SSL2 and EXPORT ciphers- Update to NSS 3.19.2- Update to NSS 3.19.1- Update to NSS 3.19- Replace expired test certificates, upstream bug 1151037- Update to nss-3.18.0 - Resolves: Bug 1203689 - nss-3.18 is available- Disable export suites and SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Rebuilt for Fedora 23 Change https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code- Commented out the export NSS_NO_SSL2=1 line to not disable ssl2 - Backing out from disabling ssl2 until the patches are fixed- Disable SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Update to nss-3.17.4- Own the %{_datadir}/doc/nss-tools dir- Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic- Install pp man page in alternative location - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer- Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available- Resolves: Bug 994599 - Enable TLS 1.2 by default- Update to nss-3.17.2- Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work- Rebuild for rpm bug 1131960- Update to nss-3.17.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Replace expired PayPal test cert with current one to prevent build failure- fix license handling- Update to nss-3.16.2- Remove unwanted source directories at end of %prep so it truly does it - Skip the cipher suite already run as part of the nss-softokn build- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Replacing ppc64 and ppc64le with the power64 macro - Related: Bug 1052545 - Trivial change for ppc64le in nss spec- Update to nss-3.16.1 - Update the iquote patch on account of the rebase - Improve error detection in the %section - Resolves: Bug 1094702 - nss-3.16.1 is available- Update to nss-3.16.0 - Cleanup the copying of the tools man pages - Update the iquote.patch on account of the rebase- Restore requiring nss_softokn_version >= 3.15.5- Update to nss-3.15.5 - Temporarily requiring only nss_softokn_version >= 3.15.4 - Fix location of sharedb files and their manpages - Move cert9.db, key4.db, and pkcs11.txt to the main package - Move nss-sysinit manpages tar archives to the main package - Resolves: Bug 1066877 - nss-3.15.5 is available - Resolves: Bug 1067091 - Move sharedb files to the %files section- Revert previous change that moved some sysinit manpages - Restore nss-sysinit manpages tar archives to %files sysinit - Removing spurious wildcard entry was the only change needed- Add explanatory comments for iquote.patch as was done on f20- Update pem sources to latest from nss-pem upstream - Pick up pem fixes verified on RHEL and applied upstream - Fix a problem where same files in two rpms created rpm conflict - Move some nss-sysinit manpages tar archives to the %files the - All man pages are listed by name so there shouldn't be wildcard inclusion - Add support for ppc64le, Resolves: Bug 1052545- ARM tests pass so remove ARM conditional- Update to nss-3.15.4 (hg tag NSS_3_15_4_RTM) - Resolves: Bug 1049229 - nss-3.15.4 is available - Update pem sources to latest from the interim upstream for pem - Remove no longer needed patches - Update pem/rsawrapr.c patch on account of upstream changes to freebl/softoken - Update iquote.patch on account of upstream changes- Update to nss-3.15.3.1 (hg tag NSS_3_15_3_1_RTM) - Resolves: Bug 1040282 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) - Resolves: Bug 1040192 - nss-3.15.3.1 is available- Bump the release tag- Update to NSS_3_15_3_RTM - Resolves: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws - Fix option descriptions for setup-nsssysinit manpage - Fix man page of nss-sysinit wrong path and other flaws - Document email option for certutil manpage - Remove unused patches- Revert one change from last commit to preserve full nss pluggable ecc supprt [1019245]- Use the full sources from upstream - Bug 1019245 - ECDHE in openssl available -> NSS needs too for Firefox/Thunderbird- Update to NSS_3_15_2_RTM - Update iquote.patch on account of modified prototype on cert.h installed by nss-devel- Update pem sources to pick up a patch applied upstream which a faulty merge had missed - The pem module should not require unique file basenames- Update pem sources to the latest from interim upstream- Resolves: rhbz#996639 - Minor bugs in nss man pages - Fix some typos and improve description and see also sections- Cleanup spec file to address most rpmlint errors and warnings - Using double percent symbols to fix macro-in-comment warnings - Ignore unversioned-explicit-provides nss-system-init per spec comments - Ignore invalid-url Source0 as it comes from the git lookaside cache - Ignore invalid-url Source12 as it comes from the git lookaside cache- Add man page for pkcs11.txt configuration file and cert and key databases - Resolves: rhbz#985114 - Provide man pages for the nss configuration files- Fix errors in the man pages - Resolves: rhbz#984106 - Add missing option descriptions to man pages for {cert|cms|crl}util - Resolves: rhbz#982856 - Fix path to script in man page for nss-sysinit- Update to NSS_3_15_1_RTM - Enable the iquote.patch to access newly introduced types- Install man pages for nss-tools and the nss-config and setup-nsssysinit scripts - Resolves: rhbz#606020 - nss security tools lack man pages- Build nss without softoken or util sources in the tree - Resolves: rhbz#689918- Update ssl-cbc-random-iv-by-default.patch- Fix generation of NSS_VMAJOR, NSS_VMINOR, and NSS_VPATCH for nss-config- Update to NSS_3_15_RTM- Fix incorrect path that hid failed test from view - Add ocsp to the test suites to run but ... - Temporarily disable the ocsp stapling tests - Do not treat failed attempts at ssl pkcs11 bypass as fatal errors- Update to NSS_3_15_BETA1 - Update spec file, patches, and helper scripts on account of a shallower source tree- Update expired test certificates (fixed in upstream bug 852781)- Fix incorrect post/postun scripts. Fix broken links in posttrans.- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement.- Update to NSS_3_14_3_RTM - sync up pem rsawrapr.c with softoken upstream changes for nss-3.14.3 - Resolves: rhbz#908257 - CVE-2013-1620 nss: TLS CBC padding timing attack - Resolves: rhbz#896651 - PEM module trashes private keys if login fails - Resolves: rhbz#909775 - specfile support for AArch64 - Resolves: rhbz#910584 - certutil -a does not produce ASCII output- Allow building nss against older system sqlite- Update to NSS_3_14_2_RTM- Update to NSS_3_14_1_WITH_CKBI_1_93_RTM- Require nspr >= 4.9.4 - Fix changelog invalid dates- Update to NSS_3_14_1_RTM- Bug 879978 - Install the nssck.api header template where mod_revocator can access it - Install nssck.api in /usr/includes/nss3/templates- Bug 879978 - Install the nssck.api header template in a place where mod_revocator can access it - Install nssck.api in /usr/includes/nss3- Bug 870864 - Add support in NSS for Secure Boot- Disable bypass code at build time and return failure on attempts to enable at runtime - Bug 806588 - Disable SSL PKCS #11 bypass at build time- Fix pk11wrap locking which fixes 'fedpkg new-sources' and 'fedpkg update' hangs - Bug 872124 - nss-3.14 breaks fedpkg new-sources - Fix should be considered preliminary since the patch may change upon upstream approval- Add a dummy source file for testing /preventing fedpkg breakage - Helps test the fedpkg new-sources and upload commands for breakage by nss updates - Related to Bug 872124 - nss 3.14 breaks fedpkg new-sources- Fix a previous unwanted merge from f18 - Update the SS_SSL_CBC_RANDOM_IV patch to match new sources while - Keeping the patch disabled while we are still in rawhide and - State in comment that patch is needed for both stable and beta branches - Update .gitignore to download only the new sources- Fix the spec file so sechash.h gets installed - Resolves: rhbz#871882 - missing header: sechash.h in nss 3.14- Update the license to MPLv2.0- Use only -f when removing unwanted headers- Add secmodt.h to the headers installed by nss-devel - nss-devel must install secmodt.h which moved from softoken to pk11wrap with nss-3.14- Update to NSS_3_14_RTM- Update to NSS_3_14_RC1 - update nss-589636.patch to apply to httpdserv - turn off ocsp tests for now - remove no longer needed patches - remove headers shipped by nss-util- Update to NSS_3_13_6_RTM- Rebase pem sources to fedora-hosted upstream to pick up two fixes from rhel-6.3 - Resolves: rhbz#847460 - Fix invalid read and free on invalid cert load - Resolves: rhbz#847462 - PEM module may attempt to free uninitialized pointer - Remove unneeded fix gcc 4.7 c++ issue in secmodt.h that actually undoes the upstream fix- Fix pluggable ecc support- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Fix checkin comment to prevent unwanted expansions of percents- Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1- Resolves: rhbz#833529 - revert unwanted change to nss.pc.in- Resolves: rhbz#833529 - Remove unwanted space from the Libs: line on nss.pc.in- Update to NSS_3_13_5_RTM- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3- Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2- Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name- Resolves: Bug 805723 - Library needs partial RELRO support added- Cleanup of the spec file - Add references to the upstream bugs - Fix typo in Summary for sysinit- Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections- Update to NSS_3_13_3_RTM- fix issue with gcc 4.7 in secmodt.h and C++11 user-defined literals- Resolves: Bug 784672 - nss should protect against being called before nss_Init- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Deactivate a patch currently meant for stable branches only- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request- Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl- Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible- Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support- Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi- Fix broken dependencies by updating the nss-util and nss-softokn versions- Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM- Update to NSS_3_13_RTM- Update to NSS_3_13_RC0- Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)- Update builtins certs to those from NSSCKBI_1_87_RTM- Update to NSS_3_12_11_RTM- Indicate the provenance of stripped source tarball (#688015)- Provide virtual -static package to meet guidelines (#609612).- Enable pluggable ecc support (#712556) - Disable the nssdb write-access-on-read-only-dir tests when user is root (#646045)- make the testsuite non fatal on arm arches- Fix crmf hard-coded maximum size for wrapped private keys (#703656)- Update to NSS_3_12_10_RTM- Update to NSS_3_12_10_BETA1- Implement PEM logging using NSPR's own (#695011)- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Short-term fix for ssl test suites hangs on ipv6 type connections (#539183)- Add a missing requires for pkcs11-devel (#675196)- Run the test suites in the check section (#677809)- Fix cms headers to not use c++ reserved words (#676036) - Reenabling Bug 499444 patches - Fix to swap internal key slot on fips mode switches- Revert patches for 499444 until all c++ reserved words are found and extirpated- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix cms header to not use c++ reserved word (#676036) - Reenable patches for bug 499444- Revert patches for 499444 as they use a C++ reserved word and cause compilation of Firefox to fail- Fix the earlier infinite recursion patch (#499444) - Remove a header that now nss-softokn-freebl-devel ships- Fix infinite recursion when encoding NSS enveloped/digested data (#499444)- Update the cacert trust patch per upstream review requests (#633043)- Fix to honor the user's cert trust preferences (#633043) - Remove obsoleted patch- Update to 3.12.9- Rebuilt according to fedora pre-release package naming guidelines- Update to NSS_3_12_9_BETA2 - Fix libpnsspem crash when cacert dir contains other directories (#642433)- Update to NSS_3_12_9_BETA1- Update pem source tar with fixes for 614532 and 596674 - Remove no longer needed patches- Update PayPalEE.cert test certificate which had expired- Tell rpm not to verify md5, size, and modtime of configurations file- Fix certificates trust order (#643134) - Apply nss-sysinit-userdb-first.patch last- Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248)- Fix invalid %postun scriptlet (#639248)- Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801)- Add posttrans scriptlet (#636787)- Update to 3.12.8 - Prevent disabling of nss-sysinit on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Added provides pkcs11-devel-static to comply with packaging guidelines (#609612)- NSS 3.12.8 RC0- Fix nss-util_version and nss_softokn_version required to be 3.12.7.99.3- NSS 3.12.8 Beta3 - Fix unclosed comment in renegotiate-transitional.patch- Change BuildRequries to available version of nss-util-devel- Define NSS_USE_SYSTEM_SQLITE and remove unneeded patch - Add comments regarding an unversioned provides which triggers rpmlint warning - Build requires nss-softokn-devel >= 3.12.7- Update to 3.12.7- Apply the patches to fix rhbz#614532- Removed pem sourecs as they are in the cache- Add support for PKCS#8 encoded PEM RSA private key files (#614532)- Fix nsssysinit to return userdb ahead of systemdb (#603313)- Require and BuildRequire >= the listed version not =- Require nss-softoken 3.12.6- Fix SIGSEGV within CreateObject (#596674)- Update pem source tar to pick up the following bug fixes: - PEM - Allow collect objects to search through all objects - PEM - Make CopyObject return a new shallow copy - PEM - Fix memory leak in pem_mdCryptoOperationRSAPriv- Update the test cert in the setup phase- Add sed to sysinit requires as setup-nsssysinit.sh requires it (#576071) - Update PayPalEE test cert with unexpired one (#580207)- Fix ns.spec to not require nss-softokn (#575001)- rebuilt with all tests enabled- Using SSL_RENEGOTIATE_TRANSITIONAL as default while on transition period - Disabling ssl tests suites until bug 539183 is resolved- Update to 3.12.6 - Reactivate all tests - Patch tools to validate command line options arguments- Fix curl related regression and general patch code clean up- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- New version of patch to allow root to modify ystem database (#547860)- Temporarily disabling the ssl tests- Fix nsssysinit to allow root to modify the nss system database (#547860)- Fix an error introduced when adapting the patch for rhbz #546211- Remove left over trace statements from nsssysinit patching- Fix a misconstructed patch- Fix nsssysinit to enable apps to use system cert store, patch contributed by David Woodhouse (#546221) - Fix spec so sysinit requires coreutils for post install scriplet (#547067) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387)- Fix nsssysinit to set the default flags on the crypto module (#545779) - Remove redundant header from the pem module- Remove unneeded patch- Retagging to include missing patch- Update to 3.12.5 - Patch to allow ssl/tls clients to interoperate with servers that require renogiation- Retagging- Require nss-softoken of same architecture as nss (#527867) - Merge setup-nsssysinit.sh improvements from F-12 (#527051)- User no longer prompted for a password when listing keys an empty system db (#527048) - Fix setup-nsssysinit to handle more general formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build3.67.0-7.el8_53.67.0-7.el8_5.build-id4e023b2d362072c6e7d446e974d6d58b69396a47libnssutil3.sonss-utilCOPYING/usr/lib//usr/lib/.build-id//usr/lib/.build-id/4e//usr/lib64//usr/share/licenses//usr/share/licenses/nss-util/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnudirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=4e023b2d362072c6e7d446e974d6d58b69396a47, strippedASCII textPPPPPPPPP P P P P PPPPRRRRRRRRR utf-81d0aa649442937e0a49323b81915fd095bff7cd47c5b7bc4813ce2b95f49b134?@7zXZ !#,] b2u jӫ`(y-6yRҹψC_z\nǔ9X_o,ڋ=}V 03&!"}2k ? Vս *>6urZdl H~VM&1ݹT9,=Y-QL<$( B=Sh,CB@me|\?u h 3EEDRܤ4&7(n΍u6a#l\@AMda(I#*;eJ'MjuUu&m! n,dab=u-;nmo  4kĢSyHni J`ARzX{̅ʆP{>oB!]jW~ی̇D?E|"UjVaQ>!Phe~Y'`RI6tSʼ\7xcmwX5 $-b>ϠVh17]־ 6q&"vgV %=pL=ɪˎ#Z=GbxsH}ޤ564O0AՆhcϽ}< NzB  Ţ-o_9ŹuՋHpW_C1DVSlUL,.0̀i˧~o , M|W_$Π5r=˗0;Փ8pб;38NZs QKbMݡg60F+e̟mk06<сzՃ| QjObn߀:j:E'pl?1| `3Ƒ1vf.Ho_y^rpfFbs}‹XʈӖ^D@ka87:.lpҍuNrdXt8LE F1JR)HYHf)9+/ ]-ex$P]HSzZ[ ؆4ct~Lrk f\vτeŴͺc #*C?A[3zO"3x`[|wTaY4Y"J1l%>"@jM%GnBgi|W&(t3A6R k,HtfgaϷR~(JN &q pi(`7M)w\D2"jg^tQ`1}ZmLJDkZj@qf.'`4^f}Lzs+J"s<ˇqێenOd@J*Y9!Q9=m3V[gN/*x;X&RYۦ }^ {#҂s|,4F<~7J$|6+#0QbY<e6DA,9/R`>XO;&XxE/}W ΀0XcfQ`w&JHFVbK9}0M<݂wg{ PH41N:_?q5z=Ѯ@[$2i+@ MKEJ7 ͥ;=OeZIka?쁸G |!RIړၰak6 7g~сXym`]Clday`d~:-AGŨ䓷@/L5+Q hm:]?pj?('`oG>l ;򺖓w|%71" S2p\Bd,/Ge*A hNk'| ҋC-ALΐhER.w3d7mdėKğ l$D8vt`h.JŽ&:UWjʝo Qc(ع9Z>II4ݷ~sᘅ.x&ƃ"}\lIb= 7Kd2:_~W~rUi˺}줗zDt Ym Ksߡ--`-#1[&g8N5񑧎K^CNip׫@$5ɚ=e#ք@\N>[֘I]]^/;H{@)ѻvnpX4yB"TZJ2;Q3tpAde[Q'x4.U%ρw %e;@@QRk1#<5cz`&vpBĐNlM+tt Dv9{R7/WhwɯO#e^z?oSmVl"w K$iZ~G'Oe&=@uREln4 Xhx5I&T9Rɱ'݌ⅧqW{s~6>Cu۩&xT(Y9-LKE%U>|}4$249WXěRQK^ @[a69. MR饙%)u[>P\WaSVYLJ}9KPOmHX'_4Vsv]gUy]>z?cлJ}zC^@۞Nk_np=P` J_>a;Zvؙw-k!kʮBk+4!;go:szDhEZuMKcIuw5"B$zgWd |ݲ]P \C0hȰao]v2W@.g}q6,\Xr]"^6b3&I.|URQL D`xRy~5{oڠ;M'Ź}:h̎'KSD"ꉞ$VJa.4Ϡ9L:6[Sņ6?ɬ?6HsPC; ֤h|*ݭW<ܫ<5kXH~NW[ݬ4%%T9>F2H1k bP)2 C]rnO*Ȃbu?(Hn (R $',A}U?|ß<ыR,W-=B=VǁUh'HE ]Jny5X$!5$!'ALu0mF_2=,7˜vND9T }Rf1{9>vۍ°u=a<Ϗkk,ҵ\Q G(q(HWKk; D#q֐qG,4Ow dȘ0e=*燞3N+&0"'I.e(R,69#Q5&:S.(?[ݕ#&-?OFL^it; 74\{8/$&fu0)<_X E)Hde-ZsX+lZxD5M~]]M% zRyjZ\.g2G6_R8Փb8eV !akn8Og$OF[ =)Cn:BHk!f/O>ADVՔ- B6v헸ќ-oޚT4%sWɣ͊A^YI)X}={mTȊ>zfkQ  sx g+S: Ϣ9֤Y0] " sFk,VL"yxNET еCPTeA!nj( Ѽ择r[:cΨ:kdcVwKf .ָ\2O7cRq%}rikkKHBajƾ>ɰ&JyxxstcCʪn#8pcHynȵh5O  T{VUԹۧ7ï~gxۮw*B`~:6r-jdOOsDdkp86KڪTq2SFیƇP'V^ 5&u?Hi]HGl+h%D먙TsÕcdJPWʓCۏg^|k|W0 >'j"Kk?|EA#ȼ?(.^0#\pd; SySpqorkPgWoJ>pX2_0ct*]/'tS|&HlefC#FMij&InxKAq/^} " dI/яBþL;mJ7~KU"{ r^|Qh:rlL=!N$o[p@K[$ZYcJ ĝTQj4  +u߸ 뜇#Ok7dV_pͺKl}xa$eZU1](p0xv+X {M&:i-V^~ь^Pxkm,̭@V9L1LVo ZHP[-JQ؊X_"t+44p)X\h=qhloKGFe'o M+pL.gS)GY^ŰGaMC/8꣏;:&}=~:Xb3n僥Sq [1`)X)ZPg S!W3ry2\kƊ1 n6 4jt(mv aԿ&7q0^X/AN Ipo HMiz斁U)^cg'IwC+Z|4``J$3K_{`IznǑ|~NR1cԣq'7Ճ7VѨ|X~lNAM_D;͟f5K INf<{Qsu'ڄRɧ ( BU1(Z*^g!") @Lc_dhfgFq*v4#?㭬8⪊ qnZc\s"`T ~Q *%^_)$uKW+ح[^<ʅ&G@ dvAɲ"O 9}_!eiU[Ż8<*Ҩ0q[4C[ّ٪"&IF 9L?^6w]$|kAs8 NW _WUK&\Ed+ďmGy)M18\RQB>a^2fr/\y"~{٦Ô DMpйiD_Ji]=t^ 8&}(Dip.]/e۾ssRx၇6 Ev @Nst; s)m)8ܪQCe_ ^Jo ,ujzyASłJ)Jm٨"dNSI0rho ;jaԱ֪t;_I|qf U*hN@e+Š=gD_S/ b/#+510[)J|5,*@-ݻ^0V@kA'怃pp(:!WF}H$^ёVvScKQ> BvG| HXsk~I |X!/[G2 Z0)@˪ E=3Wcڕ+,ԣ-BoPMOnD @2d0&j3o__qL^h*(vSS$ZP^b-1+g 箍7C<4.[xIsLK*ذM.5A_` cǾs`Tt90~}^+` ?QfJ00xk{G/Ma#/چlM[[1G@ٓ7@KZB23 y`[}(DdVq|X=`@.]FwX:}m2Ɍڤ!\B_Xv;zL,/x3/FG #5ݧCVahyoXu[V ڃS !?;"Alb1Ye:M+eNu=7PKҭ0UIx)*#qNIׅHGjXw 05e]POC-ϑ R )5O  ĵ!y-x]h 8p4.$}kC˷N9dZW.W>oL^U70 >fV]> j(mҧ Ӛ6 *3O7-:6+ڙn4+%Uze`^ ,àhQ)u72骁+F:bJH2 YlA/2,?f_M'1wR ]O5H6BzX5|"`Nd"*%qfQg']%>lU?&/L4^,D !G檴aFcknw<[-Q(}v_O`&ǯcI0|ےW Ƽ@玢d:YtKs.4Ϳcf>`$_ps2C" ”ĝ iI-@Voթr,N*'k<(IL,n@k`22 eFlr}m%tTL>{O3o7݅ $r=A> Py5 5h]mm_A ٸ+BJM]>:N7h(+*"MP&vLJܓ7=`ZWsj@Y(l`ǩR\mTX b-^BU@guJB0*( ۯ3TsY H2y]0-􌔦ukD2=PΡ*.\#fwɞ.ZX w\Qu~%iQ^Q>x&; DV=®?)l-b A5l,A mʖcHǗ)ly`C%:c RVhnY6id:j PK'[:fT^xTEg&LY90؈$CieF\ c)e T9KRV@3egIa|A׾_zh"xr/ BxY7Hњ $]NRC.-TYn2_SRh?٦55<l[à-L|ʁɟ}L W%-4c*8b~7H]'q̊]~/7~VlDGڳ3D+/#{QAUmȉ7ɲ޸hH4|!DUH/=[|91, g8!Q#Š욝+𱾪bcܫGəxzLJ@^b+Ϲ3588"dunC#̕lU@]&#z+Χ#PO`X+PWX# 25D7݄#hͦ>eVUr}Me$e8\V4q$Ѳ?}Ӝ z޻\R!*Qaz7pFbafBakBVAZbD< 8{@𭶒.GvӪxa]r4\r0I,MY4V}y$9{2μ'=:f@d0Nf^Nftߺ`*v-$MEL_u 6X2_eCf"-U΄!Atޗx^ލx&Rvd^jOV"UKu#ѽ/9xsL(LK@Z2C"j2dz?0bEBT! {l_dݠ.W ֓I*ݧ})E>cv)ZogFb( Kܜ+g v_U?_ iUGh4Oᶓm"86H^2?E0"1`^0sL|7 /Pm]F^-5l 9'{硿z0-. "]jG4)bhmGֺ|͒ئM6ZoS {}9$ Aw6K5&V˱-P݉럊Ь;cޒ9YyAaK'T.׏{j $ߩVT G8~ ކRK $!+ I]MAaAy(8G/c9~= n2[HheAp)p*bƩQ|~NLv=,ij\B^zLtFMty)Soum\8NH(OAZ!B r:!%};wuގș*_ -bolqhlFaI=priOw}G1L# 9ulT nA*opV S S)OT7X͚㷀=n=UF%z? |.iTXXh3>jsΊa 3x P(xO_1U e{_[(h]m}6vp5Rhܽ.;tj|IXhϜ"*l/V6%{Ż FQVh,ǐt :bМ$]Lw>`Ngox {Dނ?< gHC n0U+|Ux &.^cԴ] 3Q5| O#Z~U2 `t7syA]6!K7!_ZƩz KڋE6H\A@)"Pʋ昽YI y}QFOd P\>"薵̆ XfvqeP]t\-BwʠI+ᠹUG>'&>78xus遻+%D5q /uJ rK8-i@~gtK`J:[݃㓑YIT-\h Lgo|Bn?qʍB1KPr0"ċ4iy.nebcQVqhGyE._ac 3j{b*|J:D,y ktio3Xtl®Uk;Hf*F+:ŬԢʚgҰSx[rBuRS7΢)B]\Ţ0aUPt')HQo(7in`ojc u\V$B+>@a&ox"]Zd x*.WUO&4#? !pll] :xqV )(t6Yݳ,|1i$s1}.vdt|1"#1wIYp¦ =:P::bl} |7!=z06m* R^sU>}YKZN8OCT ,ly EpKiٙDIͿWJh Aŋ+f:ώz'h } N2d{ /ThE["]Vʔ=Rxѷ?Id-5M'햏X, 4NC/?J '|k^ţ2,0H5wVяBF.f5RJ`3k9ku*,sv"PP$"$* 9Fb”yÒ7 iX,Mr\35žVL-e>L8Gd3܅wriG.A騰GN?SDUjf?1>SpYd%3P7 $1rK)(D `np@[X>l73~oQFmi2 GQ*#2$Wl(p 0nZ ȾJo!Eo[u'e,Thdlin2=!ޑ+KGaiBk.}pH SDb͝)+0&+,f~*8s GYvI=.edsfAAQ8SEHUƗwuEa}>{O|IC,S~ Ϛ ~ .Br 0Bp{$V) 1봏=F bKdq %ؼnpwws֚[.H"i]-< amYI %WOdsPP =4{bnTx{]'. =˕XSFZ'E^.LxGwR~0f(Kb`vgXS=&%0dg!^7{Z03=cP[IK&^64=O>c,!y앶ںyl;~LT :N,?IN] HxrFkGSEM℈ȁBk:kw Q fC)0$Os)@ !w/dT^ϲ\ !Tbo |kЗ% I?uъKyZL ^fؽ={lfHm*n;q<10;e槄2G Pglyv8ۏRw'EO@˄63=.a$&?֬ΔhU.O͞Z%B:libCW7ٕinnݢ?S#>9+,Vዚ L(8 %lG)o!m"mL|& ՚L7-gdyn^U&u+RnKZjFu?631x ni(桧y`F U҄ʧո3d4mS<_oE^o@cv<ndߌ]7W,W8Yr}V]Qk9UGK-cH6_=!.tR/o~3]A@d "n_K]O#"9z0`#Gz`8cd u2Wό|8';rs0}4{zv9M6@OM{qyH&~8PDC+j': +MVµwp3:8Gy@f.nNhz4'sWK][:&g.VB2i9T}3Z;K,YbȦs|6dP=O٨:qsqއ7a4rLƈުx&WH^HXL/c&1 ϿKKnn%*&@3{S=Q;09hPz-\z`7Ml`TtZdL׭r}XуjI*a#uڱ0d i[P3{ifbw*dJT(3z>_':F_gˣ%ugQJۃ8wުYacr~6w/I<8CMƴm`U *|ע`C҄n%/s6ۗJ3R l# VeQVA~}moopW>'NT9֥qkBx%/٫ݭ:{.~N?B&g)[  s{*an wk1(7G-;kw#l_y%J<伩94M*ߺ&xLfK䥆YLgu4#m)-vӝZ}#F4~##])xIfg8RϛT*_r%Z3W%FeSmٵs8 h s!h[N6Q+#;f&_b8W#` ESt.`gj~DruB:J6DZ-wMg̲룚c¿ND eˆbWneF>ԚZ )nr[c5Ia컨uL_(R@e.™iCEFv%$X"Fo"NB0{`T)$0-?o%>n2rk㜕kL EGgvΌWksr,^["icuB VG(Fv ua'B *Iׄ29lGiR^gA`9?$wt@~P":J(-Gɡ>(}ZBׯ]g>;2mklR_7>$o{*i&Nn-iFs#g?Wڢ%r)M\=$&MM8?dO\@F|_MybW,!6{rEPE)M'?^7c_dӀ,WjqD> 3 rTk fΑ{I5tR0'\H7r1ޚ6B-8N8m/ڻu{Ӭސ]'x@[W8ƏñV>.0; OH|#Gt;'mdu:@bo%ԵV#y?<@~nZd_">08t\9 $ !hT{d.I~h'Kdl{cM=;Ö_ )n%@I'=V;hd<)ʮw:r#z&ACzWC9rv<-ljUvvٍ˘ qhCf ѷwBYF`/{kC&ebX-:g"G|=7F!ebL`<w=Ozh` O\hz2@INZW* ÊxXr]a;sc/ZSL,hߋ>ySD֔* O( kԑY‰ ?81ߴݑQ5Ž^7= JW+پ$!ILѽގ6 uqH7%G9֞Dɍ,{G ƂP_x7Uxo(@#b{ zM08Lo -J]N.i oXfm8pv&]d^g."nyط:bSQȯJﻘH)UvO2*o_'*< փiB?1angM^v9C0o3s S4+@=]d?ߓ)k3=-<ڪX&p1 Z9aVRmNjku-[m,q>YH+4o vWN@G) 0 ܁ͽ<b #tK-uH'~w x|rdQR6#GϻmۏQAB Hi{ʬ @)o?i2Wh`o؞PBĀגsn`ˀ2^RVi "IVCA[kz\ %otm]w~鳐kݎ!5C?웪r4RCa:'|C?Z<+v+~u/&ScxD;T1:u2n,NmGm8"c h4բttM׵TıCOHoʑj -%lr2.2{E K6,q`ooB{AW [qϔF|: YJYF<-Hn}\k ~9!dv$c_bTnn7qCX#PB|%^5 & ҦhWKDPO$r@D M(މ"@߂.ǀ65hx#[^^UW DJ|n *R0bE_!$/arI$,j?85`"s/^TF}\wbNZW~}=FC6"/FD;젔o=w`PrmPB>2b=<__CUv;=N\zdԄ1p?O4S޷]zyOj|&# bUhw,R@}Uc^fS[,ItK=.c5070tx.;L7Eóǚl'nt5;l![hN}Q"ޏ}9iTUtxP&{NQra}nZ?vC~"Uv(`h7UGCR*92-<{bE(y".W'OBmS)oO8Ss~|jQdQ8?ʡU ',v؄詺EO4-ϱU@zvR#+ս3@Gv_ؾSQ#(/OuK5Pgz?MG˽:S!!bD5qy&|5~5n۞7R4bh\J#EEJN0MUp\@ vrȮ{P]Π1AȌs+0l) <(oIe#,m6X7)|kAFvl&Ӟd rfNYXMG#Ukx1h3el: W=ʶM^S >A: WB{5%dSVS-_v7Wf\PհPÄ_<Λ&U1vbZcԘB0!fT:zfND?ji]2ҩ^麮P/ĖΑ8S ͤUě0:UWq;vo;gPb:*GԬ "} %~]y[_SЁ'Pv.#^{T, )ܙߔ ]R_&LG‰4j|Y?)bbHqlgQkm$2ϖfSFHޑ2łb3MxGv@}kg-ĩfGHp8qW-*g,\h0tJ~JgnmUz2S骱69EKfeeEhԒH|꽖CHU1يDk'fc9l˻8yU&ZcjO?uc5x.g ֻvy]-2Ye_Wb`y#ov*w4pxkqN_h62Q DtпS|5S]b>yO=w{R#ch519HXUÉǥ)[^Ұ|6`x?xңY%ݞpģQT{=m{;KiW MG:g!IKDl]E.%ZFLQ-zB>oGAh' WjcQA0϶ bfL-)e/t tiW@[pEQHg>EFFo+ K$p{ß,i=LO8Q`w2/"q.ѣ7)o=fǝ̣%w¥|K^ΊR[:poYnɑw+գ]ЌKZ pC")|Duw&9MO/H_n9Ճry!r$?uIKEqbLaQ>ş5e%?V bbJTR<9 pkWNG#I4X|SvA"odڕ:O%%fI.bMN/}&kv(j1 H읠l9Fk%:fŹs_HrG[{3gY֏&0#E0<] i ?7s٠zϺ zB=f9%8r~%*B Q4gbz~MRo"@T;uSevЫ9߫a`3{(ԽyPwU6F$7h9| どڶ>>#|"M8"VM 29oj*&> N Պq_-x6 o\[8':P zHkۨ 9X&sLNc H|!EZ:@ ('<tM\~y'FaLJ Q_nokRJs22I7ѐKGF2 Lh}*r.~C6LHboOEɆDCLh`c^s%N$͖3oK!.1|/9td"6`/Q&̢/RzZEw'8L2_ԧXfs+n\K6\o0:2T3(9zQL~0 n(>y_?/%2֌yBJAmNow%t7&@=X4k& H6߀'YՌ]TFP=Ty&gdc{2wu(Hg5!|h1jMF509q#*̽CӸ9axϨ%&dR;g񥔣kv(/Nj7}Wӄ Q$|w[t Hp@plh`ZIG"HKiń[as92$;%)qRty-oo <)3PO=FG+raT9,h2ha 0'煛mySz`S/ϴ!4 c?mWMQu${.SܥZ>V M&q*Zfw_yb + qG55O-Bwh^Uq5ex2㳇=`3V@9C:ogbRE󬌫qNz~2=(n@-O MSCX$HT"+[cl-*_hVD#O`/wL3Ud44YPRK3GQ`;熜Lum]ylesL-ϰ-M4Cg"6\?\/),N |o}?h׮` QM(D+ *@-ThKsx F`|M7lDwqUv#^>|!SZq!/ RU;x#"辪5d膡'+?A'>5.+ѷY@ J,r1&hmD23VA9k㹛D6} ʿ]z-pzwT A;˳|FQ,}kRyNע l, K+*.s̮E^7m:ydO{ X1 ~|w_LZwxrW=Û:O{C0Xŧ> >z6X`xJdٌT+OCnj~w.ήI'ݖ]=85{&) }aJ NHxlflSTwKY PgRoAb}I?<#XE)w$U˰0O>@LJU'2}IY [*4 ۊXaZG;/^DىVl&iBw-Ї"S ^WdPY)Fq7#![]!+&@ ~1Z:8)dR*xxdMPk$@)(Ir~4k&S—݂(=D u,H"Nᨨ4Egj0ck:nnu֪3@YcRfr+p ]TT>CߗAQpw xP(vP"XŽ\\&2:N*jISt<,OKa>< GK{g܃xrsOZLyTz"Eq ?ͷS~2>G6RvwZ*Ǐ@M+=SRS2,RVb[`ħ wh&~L5Oђ0m4r"Pg^1U=v P(em7!cZWm6s##dD7՝|F Bp7wKq! h8I̐!hdyDEMB2^JGwݺ^b$3lUD;czpCj×CeB/%uP{;aZYN*MvwkH!-w<'e)Km5@ =#sJS@bό։=O5boiu k r eX;7U(vN:`(s Ew@Wc% ꀂ w\!C#/8Zu~ aweүDa隊'O8y.A Z]aE\|ܿʟŤ랺f TXq؏X]ș/[il ]dʯA6\w8ExSۙCkI^C,cpё7hט"my˩w)i2-k@J_oU<8-ڻ@{վǙ 5~[0vU.bpnA6-ԕI/"C y]QH2^WC/["hnHukc}w޸/ݵhs7>9. ڌ ѻ!z)d֗zr)q/'R?%8{4G!F- =ۀM3C߂ПNm!;X痐_џbnU ƠwG kr3ED *9nr]u?^:~&:Tƅ1Ҽr欞0,XdbqP\MC;3=(c斒I\d&[ߚƿ#`PlX b*S 0+`Ii5;U']viM2r=ה[炍,JC*HRV$0_M IcwE1Ȯԥ5ȏ9935٪gI.%F*t=A#R_=u6 v/ΛI 6 ft=>;j5M>|{LrU7DZBjvu\@V맽qM,_$ػnPhm `\@ d\5zH;|QLL|} 3-#A^`qr'كJCLFP_!+̦5</`3C\q۶ ̽?DPozLhH-Owy:s% ;.JUH%'DxZfFֻwl5iӢqY9q.L g ?/Fr*i}]c~ ->Fj4Wgțe[0tj $$/tŘ?3AUɜ+{iDqO4®j{ݨ=_W ,&;ڡ4j+Q$ sTAf-0>RL"CFo@+“Hd&D<ÿYYnǩ P#eoFؚdAWEk`^> ܘe@3;~N a`yR[4)AOݴWZP=JnlZY5i@ȸ鈎Z1t$N qDŽ%(!MҶ,Un_ М_+t&rޟ> L@pWOh^ ֋XQPXS6<}ʛH2QR%"S8>>&_( xـbe {l֩CUrօTF!rj?fl%3$3VY3ߎ<[&x˝ڈ[1xM2Y qݕu,|oWp}u(ÝMx88lr1VǤ|U*^qu6X*= ѪtOU5M2-?j;NS36L+mDtˍSw۔6^J;I$vh ouF͝dr0ϐgB}҅6c`cd W1w=j‡GnwdɋU`T%:cP#T4ӤNDEFkU0pMa2Ll91J C9r 66sCX3 żƺr DŽ \YɾGl7܆wqJYڏNץW\5g}҈jJߕ}q6;3,IڌٲΉVfO|2=1nW(I-_Bfh(q.s+CG)>p\х1^"]v^mr&?DJPፘEo0 d67nF}qm۬pkn(Ɇ(+hQX1T%2 M*.7n?=8VՀH71ma x_1BbЧtںO> }0GRlEN Q_Ih"d^t 2IWEp@q UZx,a+1/TֹRo*.~vhT5MaGVM=ZPdukB<{:ku%5/k #@a@|`+KU?zϝ>#$Yr3X ?űrO&zޯu@ ݖá򩠏FDÆ&yzjP%m "XwB? Da6 #ޅ+j$5tEΨK2H'm%iwokc]e~ BT9LE(UODi*6>bGN~6X`Z\eJ\@T0d7N{bO~SO`آc{GOiVČ=`.ce O:IΫݜYң,i'7 rJY*jŒS֊NAIE_݅w]U-,cErǩDs0M!a cKOKk`G-?rJgLGh 7ex-MpLm*!|Dč3 ;}ѼA!-;6舺"ښnU~|]yٮًMeV//`5>9d^nq\CPا\M.Lj_+"MB i(Uq;Xlͩq.ˣO-G82i\at6#P#L43s*~?B#RPண~.KSqKdnSAݩꩆMplbҬIp=^#%JYe􊲦Rn n_M[!ݟUy|'-bK2^6B zFcBb9 nnO9P]%WyZvjtگR3'/lS[c( 9tfBhTb"&u2{f]o?l&?gDbR7u:=O (ܪ (O5 X+nJo+$4s5wP:f+{me+6*hTvvaYńW` oJeM'r\ וּD+U*tyN:bkʊ[zݰ])ٵ?ltEO6Crv jПFqd/Q۲d&+2 } 1}4HeN_.Gv;;TƜ*GҬc~<}Qrp|m7!t>$q ?^'q_tĆ& jJ(.Qb)YTVA 2ֈ]Jt4\lK; E~=/7\|}mbpf aݮ +0Ch4֚h36bkr"C)m'@7ϨWK7t/p`[Kԏ9)aOޑ Ŗi/9F#_&:`@F?AFkIsB2?\r] }c6XZ߂ʦSneӡ\JCemam0.\<{žO>PvY'Q%HqΑ6klP5["X9Yu. [V;y|_6F]ʒ IUy2"hk)nE̒7af7ro(:0 'I!Zִ[ `Jrjl4C{bЍT"}U* WTbpb*\/߈*98kO/]d{4ԺB|^܇\UL. "@}NX+iVì#2Tժ䇐+X T헊*5R3<g:QΆ2O3I,pՖJLEGr?Pg}2BYTl H)'ഖ!0L)l08máaFb;TB<.de aHTUrZb{(+f!?0B֠TBaR^iX*|9Qn wfefr? *!H0bn`ֆB`([Q̩O4` &D'L]BC#Bfɳhl"}}Tg) Ǘ6b×tAL5o="vWT=|\)0$k`MCX4ٷB( ^_F8]/ʔsh'Lq3~Xඋ5{OiE S'Y]h`_gUM1jbx/3 *򒁖obż踆TV_|”|"o> b0Ǐk-8,$GJU5dI2vWBbPk%-. "?pC4Œa>$72z?OPMx}]^ү8˕`./Đә9J#ڑ' zH@yIГ_*|4g8Z: RgˈNI'qA9bˬ _%$j׶ij[<%x}bx v3)o9B"ߨ)gyߗ3;/W( ́p sTmNJYqEODXRULpvydu~#7Ab'"E ZӇ)<(;%+;,"v^@UR 1>Qxsy\R"wAD|+Gozum.e ~ g2|-9,}ҒGPM)V4ɕD+g]Z%Yt;)/E-W 2=ri6TOfH?;!p 4'.I@ۄ-Z84ms=`!Z=QeLc SOUWgvWcCI^C@?XH⋢A J' ;(%BJL\M/Mbۉm R蹍Z@6g &Fk֥|QܕCGh b]VK]4 }L֌c_d8ddə!ogJ->BlkVnLA39qh-{[T&'B* Ż}W>p ^ik;/.qD0L5a#mӛ h jD^2@ 2dYaTbQtq5[fb, ~pfg=2.9RC73ɒ,5F .;klr;0|IEJI}͛t~n|d%ɇZsR=mbL˽IvWN-CYK_?͜Y3 I$1oE&F3aC~9Nۈz4)lLyVdF l12C beKE:Ϯ췁~qngܫ/:C@w{ nϾaFB}"Kg(~7Č쩷>zFku\+Xut5f˜C^Eicm.Ϟ0Jn0LYzhc~7F!>'_[tc`M:X[U S LɲE jW|!R#s՗Ggr kȢڱ@s [T1oҔ'j+De7 ]D3'8Ƨ] ם}MQ$F}c{vbV{[Sڭ?N:,]V6_Hv hW@(+ũC8VS*W&p ȇ* ѹCv{PatũYg$ME t lIH{$KK5y;]t6zC/IU h#!LDlxc/Sbyu42SN+:{r{;/uӷ7-ˑG/Qx!IE*K*}d;b=j E|/&N@* JʪE~=r9CX|÷6@6(0-IDIхUff[;ML꫱>b)4UgL8FBlmI-ẄmU3 vR3ed3k!+X;U,.l*RD1}7l :B5(@m(鵤 Q+i 0uVNm!1 Kkm?Bm?RmQ܊! S3^UKnGg lٖv?A9EgAY gJH(*]f[Dz <3ŋAl_`3OI_vVEb8r`ܚ qo7Ŧ1K#ᝠh?g[c%bN|u<*CD[:џfS\=DxXsJ;^6@oC3{աFVssF;rW2wXК "abiK; %vxgy(-rre}dTOMJX;=&$g5roV* MUjvXVt9s$anM ɸp;gm쫚%Ne]Ml>j(%bRo{Ӫ?)caW" pSG+Lx-=K~O,9jB8m)GUc;qʿ%zJ3 4b||p{24#] #jcCVnuME;sXyZVQ^1>Ó2l-GV/T :Th !] e ].n6w}?2v9M1它X1?}8E ' ]⟢e Q+ć >e>_[2Bg Vkib=ݶ"yJEL Q<i92kiS1(AEXWcՊ P C>5WU}kp<=1ԹyM9@ G m-g$^덓4|C>nbg PP"5鉈MRYG253?pG*+F.yb8\!Vi^ l"f2ԍfئtSb1Gg9>A@ -H0LD?+H+B]pigF;)kGuCMx9\:*N"}F]@*/+'o+mXG/bĊ8$I#~ Rβ/4\OoQG/~- 71 侞Xo7L/Yx`CUvaK`$څʺ^SB:jq'~GM[՜HmEƨ?mrw6ťeƒ/HyBRV=4c稪'1 ?z=0=R:˜s#ye/s&#Ռ鶯vI6dJie Dq2}ISϰjv;&j5q^ɟe.}S\aŒh̓Sh.#)+ŋ ңHˮպwOmZ>Q$ C%Fj[dH료>Mt,$͠5b^+;\/yi6|ՎC?"m JG r0%+6V&M" JJ { Pj7[?!5v}`ЋΚ|1cݶ)ӾgiRO6:~Ml-G%0ɔZ4E89&Ky_#  a Mj 2ꨗڴ$I#:NP Y_ ieQcg;2\M74罔 nĢqoFZ=::'dB\\x>m+\K?TI|6VnщQ6I?z g-?"TF.gݠ(Jy;-)vG.3l,wfӡ#3B+c{ *jf{"0|+̙TqmCߦ]|G "_Qeٍ$O*_w61IܠҮ9N\ ^ )FG' l:F=nYڧr_\jWű{/ct"Ԗc <=ⳤ '5)B:͓=ܒͧ 'z}]hev`h `ɿ2Q0FpJuG8h` QSnd-Alx.\8&֒&cxWHz_ue )u)Lcq3)g0%4CDA7=D_  ;ֹò GE X(;(/5 ${ʂo};i~4""d pȇbMNOTҴ;*Eq!^㥾|aq~vW֒0`kr^Wde't1vߑdMvJ&˜2+X"O]c>T+{/!<__]{Cu˕œ˱ҥ*/who/hIp.  z@oKu~1#Ⱥjrm:ʱrEށk) ڋ(U uŸXfWNص8+=c/o3G.UQS3'oWHvj1m-c+(>4 3hIFJE'Z[-:ˊws g-Y0k({ |\F7ǖ7kB S(hjozTlVi8U,/[WNq]1tqyʵyu4lkӨT=ҽ(^wf}gxP> _.E dKl3Dut<5Qo)(@d m{6 ԗ~%qҐO9fW0L!T<訶`FvW}[`L Iy!PGX}:{tT?""1STxH'TT7`%CR͏͗,H]7b^4^Fr| yt&2:es8|5q\2&1&w8Ђ4j n%OCW=M%J_4U7@+rmZ6oR9քs0j8DmK41vArnZuP@QwB]Bӯ rMs0:6;Qi=)*fqwT *lV氭O u@5dmO U0i,YNyNq}n{Feߐ ֞݁N8ޞ̅ C< C_ߴ %OnRW.Ðr7L^-O['q((KYבӂo{T+ż&JB :%Pw%w؋5nsh9R#Q6ur/,Hc @ɒ2MyW<;= 9RˠG){akP[^`ww=P(R x*Dm. C`6eWE\Yu*oP)HLT/ ʃִDD.+v LE虪L0%Fo&ynAdO}փL[ ]WvԾWμx &Lb]^UF {D.Ԇ=͍-he1vL N )WdFOz844fN(U?]9v-/ nbqO԰ʖOBoe k ́цHMVn4c[9lB{d<)-t'I^ -#~yCJ2hd\kSHwJ椙}J~5Z!C_:?'Jdc̀&NkyhNz˯pM,ל ϵe༾%9*{sZ8!0/c]6+ te7_FΆ:q-i/l|gTH\gVb9!@㑋vadnцGf9zzz˅ _$%X=*6 -j(ף >^] mH;߰\Wʒ%5A]2IWo_kRV`*tES%97V1D4‍Oa#C_.ΝYu!04#.ɸoIr?8$Y,Աz׺kA Utc?BQEĠZ}<5HX, ^GYOTSw Rkdzuz}FB8j ư.7Zn{k7tM=Z=eR6\ ڠhH3]К>(S gzw0B0h6-$^ UMz;b߿Pj Tt"x̯g |N4aid=S}ʮ-ûDBWKc]1!@ s-۱gd RwF%i!PYg\sC{y=T=ܮ}t8dP1=y|} kfs+5B툓Z4-`U[HDaBe. lqL lFٵ1 IP)ZwMԀ * MOc@BYOJ-z HMD C]tpFmQ-1xqV7c}}9sgoW&b? KwVE3 &t:jU:.ܫ/!fe>[I ]滘&LK u6l+`¾8"gsl~E}Dw( '?wzvTK,?%L2{Ϛwu†I2)F[/x/c\N5`rA;X K_[Шu gNS?n ,S ٗ8{҅SOT!AMp|ynH Ccn͛NMZEb_d# gb<Ȳ o>hlqWo{fo<} כ<`ϗA0dUG5n$dھ0PH|ʺ_*Yx8UܨAZ5Y?Ag_`Xg|/y W#d$p?)g=2@9icD5wװKUW;(#A6ZL)ʐ3eadZAͷD .nR,kA}R%ӮVtI:ee[!YGAmD7ϴ\]a?KoQF:R[s̩ħy{X1|rVmo鲨N=np \K22TIУ uE*k$~{6lnJ2 Jw\ww.mA"),}pPAh91>Oe_cϺu='Lr sbɎI\I13%Dzk@[TېBzkp3L9@7iWSkB%d${ K-ABOSl}U=i4 L>4 ,*6Ңɨb J = X1A~ e9\G㑂^Reұs}˕bqSP!iVE2~7>!()E0!:z&6#N(B&+Z=6+=D؞=#gY}GM3E9سŶVb:b0Ȱ]^h `ZK)$0WJW,.^ma97~.u4u?ܗNSL@ Ie wۛJ\xOC`O4 KRw w~&v}{ꪇB LвѢU tM Xfv'+WQ뭪M{@D?r")1I0}]BGdu"NlK&As<Š~(Ar{D+ѠhH :]\\]!žΊ:%QU'OM-NM*و[_15Md& 5,~.eg-{iPiuݳ\L$.^P[AO~͝ݪxSk \n1{2 ua!>\0@=c߭aS?W3B`r4\$?ʢAiLxУ1\}:CgsxewIQ sR_BG +gnf 凊U$&78A SnXj^ֵ$PI!YS$K|,Ez5F :BǟZI)<7\7$cGT4ޞ)yHY#',1I)N.,)m0x2@5h>̍>!nߝ_U2nɔf6cV=IIO<Ͻ$)E* );~G:۲\vk>-~Nwb UgqP Os^Oח z{iB_W6W!hd(uh% `0I 7!9G1%l؀u1G8Ȏ^E6𺉏7FI|FQ5g~$Gؤ#&iq;ՠoOHQ,>ڼxtGoI~Гۘu][$!]ͺ^lb$%L dp hʬbwj&B(]4z I.-7QpD?rwe룶qIR0ӣ0E;hY 934uh&w`7c~(tw!t{]eH$@P~$ɰn 4% Ǽ|E׶ sS}#oWQ";Hl8؆cDl+C/ntg~~aV]TR]'C =w3;Eń#[A^x?„֜^[ ZX$y#ՇT?zY#drۉ47;?>g\8M|cK_`ڽ Hx%\V'J9Z<+ij&5cSN5pDU2 Uq"<cxPJΌ 8#ƜiQ$gs6 ?l|8IrcyK`5$.&.+ESjy:X|/:k-X7"<;*3]TTzёdV}_eх Hi3ةi. ^r~K^2P}E(fpZvo߄&.VSc X+)ӧp JSN'VvY97-+7_,.Ay,`FOjva9f79ZzTi?$?*PqezZST@q9P96Cc(+dEˈ>W - r%0Q I.Kq~Tp$S0{i3Hc0#{c;R"odUN5UDөaO⟖X\YI Ce@27V]0"8./Qk,(m Oh@jt deԅx7ڳs@) dʧGݮ7$AxʝkEW Or ;V|S_oO0I*_CⴉQ{΀nB>} 0_g˄V^x2BfQB HL*g[>eڷ K*%Y-qKC^%q30VjCй'_/ Ϗ),ZCj&$yC9tohqapb2ZJP{ak\Y-0r&T ^bZc hl<_290R@f𔃓HMX0аXqRȝvq$+ުeOc){u7Yqh~\+3Fo{|1(/bU-LyႡL_B1F{dp`s+P%3I&#Z^&SB Fm{(cX4k_ u2?:d̾ZGE HukHMnױ0[9 A?}Hgo6Z%Tt$džˮ+KW\2n5~bꏧ4|^3i3Ճp j_IzqJ799QnShzuY\-%@7mhΊ=I(FrtA.jq͛&q͉>$;Bl]h*̠oSQ5Fø;~g`xZm B bjisJJk72{g3a˫s ]^0=U V5 vIQg5Ui+A6͵(r²2'^Peᮔ~TѹCk(fj)bdI74]^x$CJjE AҘ"^ .E5wq" aeF>4?fYA{_ab)Qqj/qƫKR%! whQj\kP*M6:R&0S#~.D2 []NS$Nft CPo qIt= 9Ƅ(咜Yeh@´_ǹoDNY j0+am+,2ɕׇ"t!vcYs34d ‚G 6VN}ʼn5ByÝ߮4ZWJ*?`GՃih?6S12gWVXXkKrTR Gm-|/686K9L`Q80>t'x"Q$'LUn"Ar r\U~^ߡz>,*.cxU[@WT2(_BѽpZmi *`1( \4(nmwR-sT4J /#%d8͎z>.z243q a8SHR@.xMɑWp` -Gz}!#:Eya1:]wkbXn O\0tRG,·(g#X1* 'r&MJzmzl#v)O9mΒqGQQ?9mwdAKSk ]pq弎@ɯ_| wLq{-=Q˜o0 DMWb־,eH mmÕ?9|HA5Kb8aabX"zBcRw$@؟ x>@s@K5<{Ӱ>b#`ғkpf4c'8?gQ2UvEʊӦ52߿0YL2{ ZO Ձ싖7L\XYs\ʄ +lKRM>(/pn5ϐ6_f48}f (,WiӳcVw vq7p-ŒGK^7S#'8" 4dϦOS;)`|1xQ1pCW6>x2ϭc:}ֈstX V[YB`U]w{0ú2r /'r`ix}"PL߳*81bo%%.EǥR,`6}y fӯ%r3d~Rͬ{%@ i$edTe# ܙWo+yF2 Ү fbz!@;x{꾲QKy_L8|KZLDK?(/r-8ڄ=y%{9qn“"lz%KVX{A噿`Wp^GK7K 8m<*XBe0Xr&{ a3v qEeҗw^>JNҁjf}uΜYD9hϽGa\G1₀ .V[@h=2 NY0ifg$ew͋.ź~J-;)F\9F&KmV\Q]tHжzCW۝4pX< vs GQh-9={~@w>>9e6>N/*O}o|>|V,=…x{;`J8`F&7„thL5S PzRiyBH5҂l_5Rvu<90+0 ۶;5h] j Rßm&5)4D=[ ]G!~ 37ƥfǹ57q(zA;Þߙq3>ZPۘaZ@.DW9?LE[ ,GԷފj% vL[b2C><>0an:&,cC F1*mw^L^jR@I)CkrSChgtqœe"t_!MxKX5| UBk!;ݺpf^rOCtCxwmQj`Ҝr z S-er\tQBGv]v O#*A3 *y $A2GP>^X啧'wV"!We栁V YI-\w#9pK<):zpEG6w 33W]L҃T ,a?dQh7yjfԡ<^ySpHӐ~eޅw~zt+Qvi{7 4v@?Vƻ"Ek'Ni$z)91hHCi,ER#tpŭ0M,o5(*V89L^ZggڍZ k]0n`ٸC YAe $fBv0)Ow~VwIrfO'?V.6힋\C.-R-zΌԏ'vp?>@QȔՀrT-zlw|K7_S#ZEl^zvzX)R\1Rg +9ӋEFGy1*\tfqhWkƊmKxSx91K$IEć$ *^ 壤yK.[vgd零(*Ⓜ(\f1Ue;F>rT^k.:Ar6uZ'`&a)7kC?ϲ%aǩOpݼb`o2#WGH骔 7Qw' Lex zWE>;7;# 1c?- 7!|OhIʅn#A$L HS,p`_.~fd&+ox r56Ay1CD0%rάgBp92#fCusV-akj-ik%Ca*~K6=^}|̓ħ[l!z']8z$TD,Xqc+T4Q^)^X, :BMikŘhŴッ9`--éi}Lcm)cpRu!/\Z/xy4*7qp$1*kc# Ō4+:*ON8 C2uHNFMh #R4: 7 NB8зe.t/ZLW í)ʈ+yvuS&=IJrÏލ5[_!GڋH'a)]O1B+ooRʷ+<ͶYbiKG'{hrtޓO=/Bg5n xRcTk\ Ȗ OL"dfTL5_F80Aj0sk-k?R=Wo ) M.1 X[PU" M-$ ?LXZ;&Cs"bU) +Aʬ&=rhJj8Gr?POb lՒFY\b^. b9\4ev;%csgΊ"2#VVJG^(Ǭ]oqt(fp/lKG.QI!"OʱZe+Iτ%rsX8faʄ A emeo?%2r ]-+\ VFV (}APP fG"QTa*.x-u)X }Yf:WO5HZ ᆬ EViiR&9`Ix7Do ) <9iPܒƇNSeV=`h (%.ƾMίإ2Ks% R\n4o(V*^Xy]Y,IRv0np6\NHqOY ɋ˘1[P?YU"P2uTl,5 Oi @g*w2"]tYB0E(%: ++}A"LZ, j*Tu#nlcVݽ txu;p/P/ut|m1Qv)m-8J6ƈ٬)hT^!M:ðGF0uVH(|eA,X>Lbw ׶ތߗTg\ @M7Pݍ%7Pgsm,t _чI?u8EJsR:~߶&ʏuZWZ&k0Tq ߃vsvFT9_ip>*Z;vEk.]tJ4V3|V[3: Ok 9 D9}|Α :$_cw㐚Fo\!r9_]y+:[/ZVX`s/Hte3 }R5r$f ]".>D̝^&Ms+Q˰RIbzؿ^G joUO+@aݹ1wF6ɢ7Z<b{q]Aeg2kjܶHNY!Jp>aLdv<7' [ڢE UMRqY4wEi;D,;ՎE 恳`^mԦEuݙy FiAt EK4 fW8_VV:T~AZ-ЃJ(7sx!==MnLjDEP"?#tƄPdl}>tFj-bG"QdJ/jpTga.l%GhfsBoG8#ܘ\?n79 0򔙾64&Qv9V-85GWȏrTïєym䢱wU8q}y;]")A-#]tM;,5"/s!1jvFݯsoa&{*8ڗaAKA#xRYLi#n&?-u"$^.4B .&9F/. u@ 7/f״"M6=-U eLCdpW#wr)qF(o wۤ8}}r&;dyA8ES3{C$3ӋAݻ>}8.;iOt63ckHLhHLr8ܻ2N# ~7SO;?lM(^M"{ m!rD J{M :~$UxJY0Jϻ l,$] LKV9xR+)ɬ?Sڟd@Am[{+ 2Qٲ جv1g/zDskgLWS mF]=ޒP0)Nr['j6h1'GI\aTa|BI\/ԴJt\ mf 쁪S``N{\|n(LI~ݻxS+yvhf'm5Pfen{Rη(O~42746 X]մ) @M)™MMEs-n!s1q ~A=G7:)j@vә뎬rKR)"HWL:1Ca9k\|_֐5wތ~<2۪К_Dxܝ"Mе-BX./ Oz r6c-BSpИn^mqF->Kfˌdl }C1++7lm8#ԑ: ;ASUu@Gx{X. _)wE nèXHl!-rNIVhҡQ?F`Ü u ,4dZgvL@|`^b:NFC7-A:5Oĉ=FIrlJ&{aBfN09jўJsq}5 o֓ͨ9j?.Hs%d4ÓC׭~3n7g+\sSrtiRU[%|FtҞ)7!o&i ƊY|!/ˏgQ $MyL45i^TxȶB+Sꊢt׀BB̖\g o-x@US`آFλ2r~~8"<kJCc Ծ_Zug` N;|ҿ zrM&d'[[RD\S Hs1unڀL|P;dw$$1"dMHoڒ&qyvg(o L^NDiFd\6,W[y `GWx!`vcLWu!I2bt(c}6㭻Tyzt9>JmTZ-ZOKoTQC˴[=XѸ5xK󸐝N֗cjHi Wl|?׭l-fcI@,t0Tb vHzk$BOmK6ّ !ԎM/a.; bUu-\k*'gG!o0d1aG/b|Ẇ ?eHz"Yt޼YK 8Y!vlOU/!1_ T)X3{I(-IHN@)% V$UF8e)bSj$v wwQM."g]!h fCxԍ+:J} #)qh \DQI< |C5]nwNpõdcPn#8q0tygɊ|=&9 =yVmIΊaL#$;qnK#H ,|zԭrt2@.m%|svAޭ<|G )5.؃ ?\wC&lNAN] V$)JDy2 ~j+;JuM[y8A+DXQ]5'߽ҔIJn o#9 uUf_^v6w߸{OGMf%.VDӧƸ7.U sׯJ7F!yUL[d& v%Ҹij§~r>:%wI4H{<ָܾ\N>r5qqިUw(“eBhD4T3ћ7w*5E_uW\M(Z?x{FU0Od iYm_Jw1G]_\4@rN{q@#ڪu?JZmD硢j+| }oOZl?9e19Gv4C)^f(s=:=S^ۻI_+.e/](++ ,׍]3w>o5~⼫"<7.#C1 4T=Oך`\M|Osz`N0kXzP ;ίГ+:Y~xrXk)["T?C·$>%BHl^mvYS^p{ySnܾ z^< pj)]%~.lS\o n7qLA OÄޞfd` 驕5!K\3Sl{NaAECBY&y#|oDD0E;xr6SgL}YN LdO1X\[N$2f; ƥ |b5V/5,缭bbdye #J`EqR=I`DB7 绎M&]'ژ+Ÿu2V{$焁4d% X܎U3?e [d˾Бw|%0SU:$uԑr%M9N0'h O(ݘ+رs'OèـȄD`6BWҨ6 #EsRv:8e}FLt„{i]Pz+9vD7tuPWvi[McחI* N;<6Bſן@NZe:lr^.#?bgcGdV`s5wU.[7|NŌ0U` k,ؚQZ9ZYm@BX- ۥfߥx®[`F?PLh=9 Ñ"?dIY 6|Kʯb_/ccDw{,NJJ|4TkZ~IJq֘m\6M8/ W]7)Z+V`OsD9百W#fHq/ N0K6OZ;O6kDN.u$U.Df?}>QìZ~y' yQ''Ss[tz I<-)ݺ˿>jDxCfSGhPb{uW+lND*܌,TJ 5ZZ1>|CJͭ⎊z<& ]E,H||!KGI*Br%( y~΁ߣМ&m R9Dc!`-^e?jQu6*cPALJva ע^tZM/wDd'bTĢM6x2\@ jXOP0b!}bSÀU$X%(i0N$W瀙u6H@ 4t5]a~Q?FZf꽩{g贿!ґ#!Z 잇RcODYGx9ӛkamV9/)ER%A7eG<܈70rp]_ SwxHݛ7KVn@L *zAH>sbQ5QoTc`UGtr8i*KJ76I&eT c*]=>auH zWJWtzڒQ / К1Xdb{s%= [熤LLV 7UW촴czd;o_zx_ ٕgqص9BLڰ⃷LN쐺N$Yw4XIvz.Hԟl'lNyzp4>\LxPdzDe .dAEy@^ŶuT.|.0xTϵ~|VXh/L%/F/4)kZJ)J )븡o ;[Bg{iޅ.KǑwܭqWW:_Ըp$ruZQ)U oDȷ>`\0`9[}8ɴG i E`5b+rxO7N[FhnqF*@dgC R6VYh{,N.H= <>ZRj% wp.(gm:{8.2?p{]ajFPMm/(9w25<̕¶\oMe_x+| VH{H8] ]UrfuC&+G_P E+;mʵ VM->p}zs$\:Q<0 yyk|px5BH{L!>ra/7An`>hׇF >l8VNA.gUVddUHҍCc2H%c%A֠$axr6* QpGea^s|VK! AThu]9Z]O9Ͽd|ha[EA瑱tuhMB;Ku15j'^ƨH8wB/YeqЃ ʗ pgE()3DؓwfGXjZQ@OJZV>4L Y?Ejuqy``f}UGH2B㇬VC3 Y4|/ӊpRXqP2b,pz < u\d$W+O"]T$7E);nc1-ذLC{$pH/t,gǜ́e{ɗ6~v;R m_Cˠ) kAwmTO67/iI]LՅ#rʋFj2o= uYrvA)_9'W\^-L 6 Td\38r:3)̭e84\b2Z3>@#!yOHb"|=qoAD^Ow kw#MrsqrZZABiv)渴.1Dr3F ZkuwtL*Sa` 7>Y/ ĕ&n(W~O`o50JI)K/5j 5\eHW#4w{l^ BqS3G,V 鲚abZ^3%(6[!܊cȲs3*2bd+%[Hdj0b9;#DJPo/dZ`Ve9;+r{_%QPDro|fH;a cR`GI؉cmրwz7,Y}]40;pߤ/v`5̲,(9썥6:(%@`FBVlƭ{2Vb׊o}r;*O WIvb˚~ /~"p;!//N`'R+ m5c]Aᢠ`x\;Dda,B]6WEݔ6fճ %C'pT%G;yV?6 "2$ -XM=QA)ӔngS*W,O|oQa>$@B$2tuUbXM4ĭ$ʲD=r7 { 9߳ h"32p[NL[XxCVtU{-GahZ]+~Ig[-YnjJJԈhy]6,RB!*7#%o\u4N PlK53-P0 Mɘ-OZ l^wM`)}iŐʑ9F?(^ X.?Nc^ـ5U6 TfFd8uK[_%z 1|)BebcbzZ9hEwIN&nc8nwEX9MX)( MO[i}b }8bD f3r&#AX{_syk0R^)E; ,@I\Kj謢]x!|[V6.YMDLD%tH=gtaJ.kp^/Q&Al5j'x@>?M,Ϧ'"ƧaXA.IoRh>`YfؼjD%xyҝcFk!%a@k[5.}<Ȃ!dx4{ky9 41pܦ+ !! )^MSIݕɃeg f_*GfcETz>}d֑dΤ炻2;@!G"< o p|q05| %$mω6=ᑖEa-Y̖Xm{ˎca$`3m<َu|* 2wJ֋mH"O?XVɼ<~f9FYio QX ]k -Vm+URlVa]3J@ް)iB#>m1/qTWJ|y*][|c俈J7=Yo\l5_#~x BP|V!!.&= Vb"\qDd%ER`SjGhֻ,8]ͳqV75 3_)A((+8"wXӡ^M!13ĊjT\z{ %MVBIa` XX#N`2d''OanĨ:J;VړYYƕ,ӊ ϒj1%:A 8&.LӿCjOr$ScaYya;O4"B f<#oaxT;.}{"Domzd ϥFrO6_%M>sJit3wOb"5kQ*ZѯΚ皲*jP{{ˋKaБ OkGLX#&: l~%<(gZ{rz,}̟vF$LH x,V 28qvqd(hrj:zϺdMRz [m;J&w4ЖoQ8\'7ԮTOۿ_{\VJ,k!֢1)KoVbtxTX2116+aw"f$urVOـ.dgz fQv/E#,e#bb6+L"A8YI]ab5PĊQ?ء)}.悮OkJlsaoE ߍ݉GDBIe$kl{3s(0?eFg{ETkz:jCMɍyXhƙ\R姃lc.sG06fYj9Q$W\E[tIVñ C?˻p+ 0ڂ*Tgmx{3zF̌iX`6[8Ssǭa3K| o:2ӟ+-)n^BHu@Fm⚽\ޫB,l%>Y B_z(</>v䉆Zڝ>R8^=@/嘒 r:1|"K޽ ڻumՑ)"6'`+| pK|^7 Qud輽s0=I}#|̨t$?|jI t zݰ^ Č*13DFG KR=kA31fi?D#+EK_ԵKB[FWlWr*xzr.wBO+}5+EqjUSo$ԍ<1BѺ\O0>ZMYQ1Cv&DA֊+IS RRؑ|,LܞnV' Y}R 䑛$w>(@Iq(8VSH?8SI:e,?dv đޓ'jᇸ3< &]z~j"]䜆Ǫzj9m: \'KSRr#}k-<`4-_7naN ̬H ˋ ^YLFO- 4U\2#ꩴ 8 kJir%3i4<{$tvqR ꡎj %A3~OQXd d>vJ;(٥͉+\/w&Ծ\T$"9xa_#{o' @`G_*(vc Q,AlPx.~?nM.ź? i+o}?t7jʙFGk.\8B  i4F_.Yh;3,2bBy<T&csQAG{1횯DK6,Sx1C.E$svB)3TJٸdkk(Z+%TG:Ί*Y&ڴe`KzmBL*J焼Ujb!\MJ*L58C^)hUFCmM(`#ؐ),4r1-5حn=}FGݛWBيY^KE I뢚i`?Thb o=[*sh -V:E D77e>lE2 n7;:JV&d^'t`AFժ 2o֭4Ggj^q-iV: GtSg[y+|sοt J"rXԷ,H@E|cѯ+||l,_Z)L(Jβ*mDY^u`d|ռ,0ZS&V =:.OP 7yMRQBJ,&?iW#p׊/dG<:sֹ=MCB2k!-S&9| aEԒ- [po9E={N%J4U)򖬾??.ho !3.%ꡌ&yoO~C"IXnɣTvik9XXq_D 8H hHdZԝ)UB4D 00W#6PojjBZPˑ]U bS~'X$ h~SpZBKgOΩF{7m >Kn{CL j`蓣7P6gX2ࡵæAc5T^c1}Cq@]ifi@iOAjɕ4i-ۃC`g+wJLM|_tU\"fŭX6z~@U'/``~#2pvǣ-Mֵ=Pӆp&pcӖܩjcfCS4\~e6XT"yK+{&.0 VQ[yq֨U|NJA+wn{۽*D.ty.=^20"vۚ:\5:H/Iyw`YWlJ'_% y=Hp@n+%CH[ODz򟩑dCrz mRQqԑHNˌ<~$ Zf;tcx#P6|hW}Sζױ ge^F:u RLҚ817;bՕ& ՜Sv7 \1 MA$f6,U0][AU`SlnQgJ*'~Rd*߆Uōkf#"| =Y6Dec5׺= >cbj{OCْDS*gWNA"eB dlLR: OY`GXx[hM%^юܰ+V6H`daGZgWٷoa/[ VM,(3.Ȉ|ݣp{ ϷS\(|iԜ HXpTyY+4`R4vRMɎ@xe^,I^)@Aҋ?1 ))9sd_$SN"V=\ -amTZfoha  (B=v;B t3y0t353|xpCتEJJh!£X@.-z6W"/恵׋{Gd갅z㇝Jr8'Q>M*i(s$j\7W^[ ^k }uhnFڢB+Gc r,^xZMvaB]_u0.yÓ|RFhz-ܐgIP8 x^٬9xڽ=U.!FNՎR_b*-1 "ihj#e)bȚ%>%ISv.~ȯ ,m`Ճa:%eY9[,bt[jV@$S8eʺ1͒u{]^xlTc^bϮ۩c&N.'/{=w~Iq΁ܨ hx'ΰ{Gc tVdFkXM 3dL2~bpWrN:(K6MC0 ʝ?ڻP߾͒k:Zf/r^(Тw@=}J)0>,_Zh%V {q'N(=[y5K^Elx98̈N6-KJ .վIWd〹 O .PB EVя՝K\ cG9GCu}vYVQ(C)R[~3)=t~r/bQri'굃ֶe`b/FBg+5ܕcG }sV9U3Z9gz)ufݟ bFiPc,jMBudr,8Bz;/43,#6nB_7-Z3yhuy[ )_ZitZN3qma(YzCx0m%iUVE2'ROAeO{chtdE04SkLҧvx!e7"4 y2Xɩ:g} {Wb$}1`6! OywO&UxFAM5L96=E0pDbϚ>TWKG3}G \RS4 /4~uScMre~e+冚9sbqt0yI-*\T|Vi1pɻRD5`{&T("!TI<BNy^a1H@$PmS.qx`.?#Qm $z(&-,D~#91_12ŋGЀ#RR`ş3}6[wZpwỲe%&x;eK|8=Qd uY \xn+g"6,UɦJ#js^ծU,py1gA/All@^ )l~7>nP {ɚ;:%wq/ZHC| nUh1b%]ta'rK]嬸8XLthhVx<ˠMX^]TXeʂAQ-*=Cg#}>,F㻛 VZM>GPvZf*xWںġP@,HO)%֬F bR9}'`X>n({ VsE+71lu ⩉p#pmN SVО,݋U c\kK=!3taƹ-f R+% &vmGsC6ӹ t5mPH\z#hȁs'T$c=O^v>7)A*Zb\|o:d6 P6udR>n&3Q.Wݎ\-^( +47кk◴N9.K {ܘ9&j;im6;П1Z=Ȋ]'ƖT%xeS BDuaĚ,(ab^.fÛySQ!MۘA_ Hɗ!L+zfHk(4ݚ.:J…-=84ӌo Pk`bC&pƽ=bϗO3#)رkD0TS- vY'Lޛ\Ӳ+s kw*;9!XyNnS8ctw""P,^(y<(id?.Ixegu pv )kn/n~BuhAAL[ʿ𠌆!I7 s3 4bqPE㏡Q"_Fנ4eMh# yr\͞BRk 99)^>k?0Jd͇:fyM[!4nVPԿ(TI^*57`O*xxit9ѥ}>;K .Z=]wyPwQ!pc_H<D@Rم 7D)>nk.NjOoT#w4W@mB9DXCh9r7ε1o93؋*h-bz\sL~:wR"[!3c2T{DNVV-@HIG:ZĪ¿Fs{(S/RfǺWzc_Y[Z S>l<pt+CR*d@(<-d uJӝ;骧+Ap!ྦdUTEEV.o5yC4!7|Ӧ\(Lf\Bok:+ӉY#;:Y{ (EÖoǴdP¯s_:0mCH> !=dE]| XG}}GAv%&]ѣu>s,z/̼NwD0FjZp.ʳ~V/ٛ?D gybljp&k:%jeY |Nu^DDVԧWqٖ%)H[69'}ACEmJxVTEXtCSMu` +M0%E sW.,#Q7 /'nZ')gp(0dMAr-LVNdl-q@.QT2\J͊{ؠ0JWeJo[q%V߰`F:_f8Hlw47KqS!leF೼̣$-Y9bT n OU8Iԓaoq3 pv-2K9?z+,uб|rg.%X=;ْMZevYkdm'{DQo5NS4 Ü5!K:WWHz{F#K?x5 Qny?De "$EFфW6i j$`FwR>5Orop=_)=He01у. JLJ"Kz8K O2{ٺ!A>̶ @M3u"kLD7 wIy\o."9xQ-r֖8pag㱔j0ETf}1d4^ ۰_~7_w+JW\b@4% fTc^c3tUU`&/!p.ZT_/TB4<;WTbتF8b}5ᏮIԭ6t7r,2 o E4"]q0*31.Ȼs7*jQƟJ%)}IgB9$p"Bk9+=Ig܌sk3 ?WIqP\Mڃ2ǔ] tn^Rl|;ACNį) /+)h/iS;lFWR%WbyvfBǹvO=ڻB<@ mGܯ•maA )քnj>-=qenqzWz䴗AmPd^{Mbj̄_&򠉵I@R}O0gBtBM拇,F%B +Tޕwv\4_)мz9DD&?dz\PKU I;;TLm/nAdȑ~6ܧIlrcﴻ:n঒j1>a%QAIDO1R6(#KUќKWa:1#XV O̎h/Ĺ7줙N".Ϛm!_ic-(ʤ_Nx$^%٩)^Jj,n`¸`^ͬ =%'la'_eQRF/ 1.]DX?HGS

Tn{ig?9+u%r7u ({-ԕIB8:8zI ]{53WY", Rgž*AnC%o} #qcc'CxUUٯ;‡!J71kηt)ekR/<·TdcRkT-Z?% MS7k|1' 00'zn<&NC/??`_;ʆ{0@7\_󔘆[.ѢF{yf/U@pL.J݅'""te+Fݵ[{jg5HX1U0's3Kd|X:nhKXQp Oo_|AFcJx 1ʴa^]Y!+3&c!H~8_#"L&:4$Zo؟B1?,K(2K%dۺ]c(2',溻{HA)KՏS3<!d,qd7Uxb>/^UTQdՆ{A:JK<iͷUA~P~ș9(cXh^D"j[&iqꬳEMR$gaP^m]ӈg % ݤ7S6qIr#mL=4j5wUPAyM#D!Քe'<{ b nLMZ7Pe)dJ뷤wC:r|0`LukBb35m@a^, /ƥX EiA439C^NVFQ=U!5C:k"~1OFsEYd9-΢:~?^+).5J6!u */9F Lܺg2`4&L)mA"/m V?lDz.m)H9e%$}iY4hK.\ F ;_W 6е؞7KdA9 $?􈒊R.Byd)*{B Q'{8s.BG:мa@Qύ,$P9n6fףZP0̋Vp:M#H_]lpdJ&^Q@d( x2mQ9ͫ\ Oſ'!+̪gڟ|l"4QF[O;: $[.Ź$n ? +n5v Ɂ.1_qf:/"l&,RFo"r\u$ۛ  dgp,)Zl$H 7-m?mBymʱu/hCݵ'ϧ)]ƌ4o#8F(yp;%S}M&ڡ/vxd$s??uI_2m_B2P)͇leoL/Br8'fDdPetu-/]>7x%gL86eGFH=>Nǥ0DCfqh3x#v)6[HU{HAȁI ` #ATL)whlU5k`J;qGsȨ+AԦf̺mHPLi꫔ *@{`qwF]M^嶅#a$XgT=zn#mJ6u6s}@}Ap=M(y߹a@誓£ QKP,ESmqYyu1)/%)'銃TI2_tf9Kb̋f~@*+.hА{:{cMTx 7NE.RR@5ʸx ie\DgicTSqָOqHHO=Yf]^DZ, )|&*NeE.8P?H;QCOX־J?*Å@bD[a̿+\B2.ΰjz?e.(2P;:AlفI˜3Ĥƽ MtpSMIeV /!>6[BKf#! vhGvpZVMNkm֪J W҆;I%C\`PK'OFB]aE5hjn$ps&PXљK dzJCΓ{Motw ˺B#xSlzD&Up罶qH(Lٯ0$xPB؛@ȿ[*4@%Q"'N;v*!)_`Na :zI 8O :*ɦT-޵0 6N_8vLK齘<\8tlZ~Nyc+̀=~TTx%גSnA%7N҆9ҧs䜨ձY{왦DGEJ vz{]|9%Yb\g(q3_r,Z=#-r5RngTad"q{(`Cڕ-edUN>2aW+({+m+[П.=hHGE3"̔Τ+ڻFj;Sj?$c<ե`('y5T3zy_)ms\1@f _5S[o^ޤTOq,:NJ'NARt.&8Wŋ8\qxy .},"ش%Y"F]"0_ne{=wdF yFZtT6@JTawڥIPӲG8~3>i}Yvj^[cQ`}@T\S|=88p]XNDjBzo8RPܠr!^#=3WJ(ʔ8" )rM*I?;рR;(? mdlg"M7/HJ`2n8fN"ܑ  {Ѡ'F!B "&. .o8&GPc-NLC^_ πP0`g>H$K˪ D˝EXO퉾I0~VoHQ'~ Q )De~`2;_׷H;;c0ڔԙ̕.RxSV: >H"Y7@rMNxEԔ6U+xǴQeaBH70#}h]% I41r<pÅH> 2ylV}F5 8Gn9vwbWZ?ii hTH|*E:I3[wG( 1}yFB ;.>mH1x_֚E"]vYX14ڶ;IO68:bo=dA Aj)7 +1prg' iADp39B>Ŏ+ `5D|;F⣠'ޥ ) vM˅AT i3u^K;oMeMk|-yz2S6$P#jO P@ ?ɘV &2 %#^~ǽ'uXmw|ZŒeUIn XM>9B&A&5el ÿ[>Z{-_+b6x6;P ԁ~IHTh}@3S)愋E`+LL$!\iRkq#ε%qFJp:v:އۨuF9J.WƫtOR7=*bz\ǀa7!h"#տn/L?\]w]"on39^ ;{) 8OOb|Y}!v@pCgS=5P$W5QQgͦ_Q lZa(0jLMq;q 1bjЄg6!4 \528G9feϻhݼ^E9ӓ&D )iǦ'*Ħ(t0>K$ L/ō ]6ⲽsYK/$Жeo,WZ¼~wW[t hܘ0( YP wsf)DrĚƜ;bpF̃(JlBn~OCÌn>q5a^TVt g=JzƲ̀y@guNewӏcv0`(Gy[j/ҧNx/bdCJAB;{񉅖- wzMi9;(1^1W.I6`/ӹs?aG7ZJjZ$)#{Z_7w {A/UHybw&+?x2=6w18?s8e,s3YFGESjɍ:OS$)' v.}(;->~vTM>b0'Ҷw򺌿e?\z"NftϵVs_ifggy<~ lv PLx0c^U$Fdn72XS7 ΢T\CIZhyLMd_&Q >s9Kf)$!}Kx6?l.4 2I[X>nӂuUAqY/:wƋ%meLSܵM[CQ,x5inIHmhl_(9AZ9+'iV9Ɠ[%ى.A!(),|Wz}xҁZ:!YбSk[V9{-mO_Au:R\%:52ޯM+2ؙ|#~_3K"f:/Fe=j*hTey` :9|Sh4S4)"cRB'?aZ®Op ~a/ EEl:`CL;t+uiL报YCKaE/qV.Δ] BFLl?Tw7Luـ;,YRɻA`4&HOє R|~Ԝb0&CKz5<~GKY?Ls\%v-匫Ic+֚XB VUcWu,7\d쾤S; a|0!aīO=HZYvl4+B{LE/JK7+xzm0rG=<[\/8 %d*L|Z@R(7xdG3&j Aa(HQ(ҩD7~@mr4jqZ)u" C5jhUfN1m=ۇbEE[*W:0Qμk+fn`i 98:$k5N "Q}M{~H~Sq&R\/A.#VU>zU{nbu`WB*W00yd&/ldQnc>Dzh7%0f}-|sgy+B^-?hzEza$֬5bص&Bm e㟯 1"C 6g^e~Yw DWZՅL~V >$qn aPNgy`ocK!R?u CE8!*} k {,_ܪd9Oi4&"|%[i߇?x1Ȕ eG#+kkA ͮwbSK%ޭ+e}vjYC,S|LQAFkOs@nTu+Xyt̰I %[J e|B+iR 96i>,\:EH+.dD# F ~ ufHWbS䌺$C#BЁߩ ze8y ض#ꩂ]k@El^.a=\2,HAxU6kg,Sk1,^Ivk7$MfkvĒU\Йhw#L5ӂ(ؠG@%sJ }>3=mD qY}.uo%<n-G.f }3ɾeρ;r!| K1H<_Df/sBJjP#qǢFK~Ge&Y'4YP0f0fsr7^S@!scὖŷ\?T"HVsz.|*ZB&[R{\#TJq0CD@b#|T(wT'q76A,{gR72k9`,R}j֯1CR#] 7 7 $ HLs>ӑ 4e&UwPJL(<`d ^G!, 0(y⁷͊C竾NBd3T`x )ad\2/3DojM閇xOq'LU2QaUx~aUKbQHA\Zn|ύKA)@^AZ`nE,̓WMU &{^ YZ