libtss2-mu0-3.1.0-150400.3.6.1<>,hf8tIp9|++qMds:I7f5̝ =F>ԓ(6rSGO[zIN޻387L|5CfOJ9c VXV ֊"IGyʵ`՛`C<5Vjgp4̲70LȖLh TKhe4PebbU6cbe:Nnɇ>LFfS)h9EYB |*MEShҿ5O}$ONgv,qkK9`ۯ7v>@MH?M8d ! F,0<@Yz     B X`jt   (#8,'9':;'>J@J$FJ3GJLHJTIJ\XJ`YJl\J]J^JbJcKudKeKfLlLuLvL wLxLyLzLLLLM4Clibtss2-mu03.1.0150400.3.6.1TPM2 marshaling/unmarshaling libraryMarshaling/Unmarshaling (MU) as described in the TCG TSS 2.0 Marshaling/Unmarshaling API Specification. This API provides a set of marshaling and unmarshaling functions for all data types defined by the TPM library specification.f8tIh01-armsrv1`SUSE Linux Enterprise 15SUSE LLC BSD-2-Clausehttps://www.suse.com/System/Librarieshttps://github.com/tpm2-software/tpm2-tsslinuxaarch64`f8tBf8tDcdbe720d3f294b91fbf55908aef09ed06bd38607eec56832aa6f7e1cccf4ae72libtss2-mu.so.0.0.0rootrootrootroottpm2-0-tss-3.1.0-150400.3.6.1.src.rpmlibtss2-mu.so.0()(64bit)libtss2-mu0libtss2-mu0(aarch-64)@@@@    /sbin/ldconfig/sbin/ldconfigld-linux-aarch64.so.1()(64bit)ld-linux-aarch64.so.1(GLIBC_2.17)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3f4cʂ@a@`#@``ٹ`@_t@_^M#@^4^*@^@]@]_@\\@[t[[>@[;e@[6@Z@ZYKYp@YoIYoIY)j@YR@YX@X@X@WW@W,@W@V͛@matthias.gerstner@suse.commatthias.gerstner@suse.comaplanas@suse.comgmbr3@opensuse.orggmbr3@opensuse.orgmeissner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.comguillaume.gardet@opensuse.orgmardnh@gmx.demsuchanek@suse.comdimstar@opensuse.orgmardnh@gmx.dematthias.gerstner@suse.commatthias.gerstner@suse.commvetter@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.combwiedemann@suse.commatthias.gerstner@suse.commgerstner@suse.commeissner@suse.comjengelh@inai.demeissner@suse.commeissner@suse.commeissner@suse.comjengelh@inai.dedimstar@opensuse.orgmeissner@suse.com- add 0001-FAPI-Fix-check-of-magic-number-in-verify-quote.patch: fixes CVE-2024-29040 (bsc#1223690): Missing verification of the magic number in Fapi_VerifyQuote(), which might allow an attacker to generate arbitrary quote data, which would not be detected by Fapi_VerifyQuote().- add 0001-tss2_rc-ensure-layer-number-is-in-bounds.patch: fixes CVE-2023-22745 (bsc#1207325): Buffer Overlow in TSS2_RC_Decode. Overly large RC values passed to the TSS2 function could lead to memory overread or memory overread.- Version 3.1.0 includes: + cover update to 2.4.5 (jsc#SLE-17366) + cover update to 2.3.0 (jsc#SLE-9515) + fix policy session for TPM2_PolicyAuthValue (bsc#1160736) - Add version the configuration file tpm2-tss-fapi.conf- Remove conflicting sysusers.d file- Clean spec file - Add new library libtss2-tcti-pcap0 - Update to 3.1.0: * Fix FAPI PolicyPCR not instatiating correctly (CVE-2020-24455) * Fixed possible access outside the array in ifapi_calculate_tree * Added pcap TCTI * Added GlobalSign TPM Root CA certs to FAPI cert store * Changed EncryptDecrypt mode type to align with TPM2.0 spec 1.59 * Added two new TPM commands TPM2_CC_CertifyX509, and TPM2_CC_ACT_SetTimeout- small services fixes and comments- update to 3.0.3: - changes in 3.0.3: * Fix Regression in Fapi_List * Fix memory leak in policy calculation - changes in 3.0.2: * FAPI: Fix setting of the system flag of NV objects * This will let NV object metadata be created system-wide always instead of * locally in the user. Existing metadata will remain in the user directory. * It can be moved to the corresponding systemstore manually if needed. * FAPI: Fix policy searching, when a policyRef was provided * FAPI: Accept EK-Certs without CRL dist point * FAPI: Fix return codes of Fapi_List * FAPI: Fix memleak in policy execution * FAPI: Fix coverity NULL-pointer check * FAPI: Set the written flag of NV objects in FAPI PolicyNV commands * FAPI: Fix deleting of policy files. * FAPI: Fix wrong file loading during object search. * Fapi: Fix memory leak * Fapi: Fix potential NULL-Dereference * Fapi: Remove superfluous NULL check * Fix a memory leak in async keystore load.- move the tcti-fapi tmpfiles.d config file into the libtss2-fapi1 sub-package. - improve the descriptions of new libraries (fapi1, cmd0, swtpm0) - adjust baselibs.conf to match new library versions and added libraries- Update to 3.0.1, changelog at: https://github.com/tpm2-software/tpm2-tss/blob/3.0.x/CHANGELOG.md - Update libtss2-sys0 to libtss2-sys1 - Add new libs: * libtss2-fapi1 * libtss2-tcti-cmd0 * libtss2-tcti-swtpm0- Update to version 2.3.3 * Fixed mixing salted and unsalted sessions in the same ESAPI context * Removed use of VLAs from TPML marshal code * Added check for object node before calling compute_session_value function * Fixed auth calculation in Esys_StartAuthSession called with optional parameters * Fixed compute_encrypted_salt error handling in Esys_StartAuthSession * Fixed exported symbols map for libtss2-mu- Use system-users for tss user creation (boo#1162360).- BuildRequire pkgconfig(udev) instead of udev: allow OBS to shortcut through the -mini flavor.- update to upstream version 2.3.2: - changes since version 2.3.0: - Fix unit tests on S390 architectures - Fixed HMAC generation for policy sessions- update to upstream version 2.3.0: - changes in version 2.3.0: - tss2-tctildr: A new library that helps with tcti initialization Recommend to use this in place of custom tcti loading code now ! - tss2-rc: A new library that provides textual representations for return codes - Option to disable NIST-deprecated crypto (--disable-weak-crypto) - Support Esys_TR_FromTPMPublic on sessions (for use in Esys_FlushContext) - map-files with correct symbol lists for tss2-sys and tss2-esys This may lead to unresolved symbols in linked applications - Support to call Tss2_Sys_Execute repeatedly on certain errors - Reduced RAM consumption in Esys due to Tss2_Sys_Execute change - Automated session attribution clearing for esys (decrypt and encrypt) per cmd - Removed libtss2-mu from "Requires" field of libtss2-esys.pc Needs to be added explicitely now - All fixes from 2.2.1, 2.2.2 and 2.2.3 - Fixed SPDX License Identifiers - Fixed Null-pointer problems in tcti-tbs - Fixed Default locality for tcti-mssim set to LOC_0 - Fixed coverity and valgrind leaks detected in test programs (not library code)- update to upstream version 2.2.3: - changes in version 2.2.3: * Fix computation of session name * Fixed PolicyPassword handling of session Attributes * Fixed windows build from dist ball * Fixed default tcti configure option * Fixed nonce size calculation in ESYS sessions - changes in version 2.2.2: * Fixed wrong encryption flag in EncryptDecrypt * Fixing openssl engine invocation- bsc#1130588: Require shadow instead of old pwdutils- update to upstream version 2.2.1: - changes from version 2.2.0: - Fixed leak of hkey on success in iesys_cryptossl_hmac_start - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - Added support for QNX build - Added support for partial reads in device TCTI - changes from version 2.1.1: - Fixed leak of hkey on success in iesys_cryptossl_hmac_start - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - changes from version 2.1.0: - Fixed handling of the default TCTI - Changed logging to be ISO-C99 compatible - Fixed leak of dlopen handle - Fixed logging of a response header tag in Tss2_Sys_Execute - Fixed marshaling of TPM2B parameters in SAPI commands - Fixed unnecessary warning in Esys_Startup - Fixed warnings in doxygen documentation - Added Esys_Free wrapper function for systems using different C runtime libraries - Added Windows TBS TCTI - Added non-blocking mode of operation in tcti-device - Added tests for Esys_HMAC and Esys_Hash - Enabled integration tests on physical TPM device - Added openssl libcrypto backend - Added Doxygen documentation to integration tests - Refactored SetDecryptParam - Enabled OpenSSL crypto backend by default - changes from 2.0.2: - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - introduce _service file for syncing with upstream tags- update to upstream version 2.0.1 (FATE#324477): - Fixed problems with doxygan failing make distcheck - Fixed conversion of gcrypt mpi numbers to binary data - Fixed an error in parsing socket address in MSSIM TCTI - Fixed compilation error with --disable-tcti-mssim - Added initialization function for gcrypt to suppress warning - Fixed invalid type base type while marshaling TPMI_ECC_CURVE in Tss2_Sys_ECC_Parameters - Fixed invalid RSA encryption with exponent equal to 0 - Fixed checking of return codes in ESAPI commands - Added checks for programs required by the test harness @ configure time - Fixed warning on TPM2_RC_INITIALIZE rc after a Startup in Esys_Startup - Checked for 1.2 TPM type response - Changed constants values in esys header file to unsigned- also process udev triggers for tpmrm subsystem, otherwise /dev/tpmrm0 isn't properly updated (at least on SLES-12-SP4)- added all librares to baselibs.conf to satisfy 32-bit dependencies of esys0 and sys0- Explicitly require udev to fix missing ownership for /usr/lib/udev.- update to new major version 2.0.0: - version_fix.patch: removed, we're now using the distribution tarballs where this problem shouldn't happen - this update introduces an incompatible ABI to the previous version. all libraries have been renamed so there is not really a relation to the old version any more. - upstream changelog: [#]# [2.0.0] - 2018-06-20 [#]## Added - Implementation of the Marshal/Unmarshal library (libtss2-mu) - Implementation of the Enhanced System API (libtss2-esys aka ESAPI) - New implemetation of the TPM Command Transmission Interface (TCTI) for: - communication with Linux TPM2 device driver: libtss2-tcti-device - communication with Microsoft software simulator: libtss2-tcti-mssim - New directory layout (API break) - Updated documentation with new doxygen and updated man pages - Support for Windows build with Visual Studio and clang, currently limited to libtss2-mu and libtss2-sys - Implementation of the new Attached Component (AC) commands - Implementation of the new TPM2_PolicyAuthorizeNV command - Implementation of the new TPM2_CreateLoaded command - Implementation of the new TPM2_PolicyTemplate command - Addition of _Complete functions to all TPM commands - New logging framework - Added const qualifiers to API input pointers (API break) - Cleaned up headers and remove implementation.h and tpm2.h (API break) [#]## Changed - Converted all cpp files to c, removed dependency on C++ compiler. - Cleaned out a number of marshaling functions from the SAPI code. - Update Linux / Unix OS detection to use non-obsolete macros. - Changed TCTI macros to CamelCase (API break) - Changed TPMA_types to unsigned int with defines instead of bitfield structs (API/ABI break) - Changed Get/SetCmd/RspAuths to new parameter types (API/ABI break) - Fixed order of parameters in AC commands: Input command authorizations now come after the input handles, but still before the command parameters. [#]## Removed - Removed all sysapi/sysapi_utils/*arshal_TPM*.c files [#]## Fixed - Updated invalid number of handles in TPM2_PolicyNvWritten and TPM2_TestParms - Updated PlatformCommand function from libtss2-tcti-mssim to no longer send CANCEL_OFF before every command. - Expanded TPM2B macros and removed TPM2B_TYPE1 and TPM2B_TYPE2 macros - Fixed wrong return type for Tss2_Sys_Finalize (API break). [#]# [1.4.0] - 2018-03-02 [#]## Added - Attached Component commands from the last public review spec. [#]## Fixed - Essential files missing from release tarballs are now included. - Version string generation has been moved from configure.ac to the bootstrap script. It is now stored in a file named `VERSION` that is shipped in the release tarball. - We've stopped shipping the built man page for InitSocketTcti.3 and now ship the source.- removed leftover comment from dropped reproducable.patch- update to upstream version 1.3.0: - support for reproducable builds - improved documentation / manual pages - various stability bugfixes - EncryptDecrypt2 command is now implemented - removed reproducible.patch. This is now included upstream. - added version_fix.patch to fix package config version numbers.- fix the "fix", turns out only the unversioned symlink's supposed to go into - devel.- no longer install the udev rule, it's now part of the new tpm2.0-abrmd package. - fixed a warning regarding a missing dependency of the devel package to the main package - correctly package library symlinks only in the devel package, the library itself only in the library package. Was mixed up before.- removed tpm2-0-tss-configure.patch, it was just a hack, fixed by requiring autoconf-archive, see https://github.com/01org/TPM2.0-TSS/issues/227.- Updated to upstream version 1.1.0 - With this version the resourcemgr daemon is dropped from this package. It is replaced by a completely new implementation found in a new package tpm2.0-abrmd. this package will only consist of the libraries any more. - Changed - tpmclient, disabled all tests that rely on the old resourcemgr. - Fixed - Fixed definition of PCR_LAST AND TRANSIENT_LAST macros. - Removed - tpmtest - resourcemgr, replacement is in new repo: https://github.com/01org/tpm2-abrmd- Add reproducible.patch to sort input files to make build reproducible (boo#1041090)- create tss user account and install udev rule to fix startup of resourcemgr (bnc#1038586)- remove unnecessary dependency of libsapi0 to trousers. trousers has nothing to do with tpm2-tss.- fixed typo in resourcemgr.service (bsc#1031004)- Remove --with-pic which is only for static libs. - Fix an improper Requires line. - Split libtcti* from libsapi0; these are independentlty developable units.- Updated to 1.0 (FATE#321508) - Added - Travis-CI integration with GitHub - Unit tests for primitive (un)?marshal functions. - Example systemd unit for resourcemgr. - Allow for unit tests to be enabled selectively. - added pkg-config files for libraries - Changed - move simulator initialization code to socket TCTI init function. - socket TCTI finalize no longer frees context - rename libtss2 to libsapi - rename libtcti_device to libtcti-device - rename libtcti_socket to libtcti-socket - move $(includedir)/tss to $(includedir)/sapi - Move default compiler flags to config.site file. - Fixed - Fix run away resourcemgr threads by closing client sockets when resourcemgr recv() call returns 0. - Set MSG_NOSIGNAL for client connections to avoid SIGPIPE killing resourcemgr. - Fixes to handling of persistent objects by resourcemgr. - Removed - Semicolon from TPMA_* macros definitions. - Windows build files. - SAPI_CLIENT macro tests. - Security - Fix buffer overflow in resourcemgr. - use sample resourcemanager.service - tpm2-0-tss-configure.patch: fix weird error.- Remove type=forking from service file (bsc#995554)- added a systemd unit service file (FATE#315631)- Correct package naming to be in line with shared library guideline - Remove unused systemd build and runtime dependencies (FATE#315631)- Fix rpm group of library package: libs belong, per definition, to the group "System/Libraries". (FATE#315631)- initial import of the tpm 2.0 tss stack (FATE#315631)/sbin/ldconfig/sbin/ldconfigh01-armsrv1 17149758173.1.0-150400.3.6.13.1.0-150400.3.6.1libtss2-mu.so.0libtss2-mu.so.0.0.0/usr/lib64/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:33671/SUSE_SLE-15-SP4_Update/f8e72b8b3119bb1f0687ea7d03152f7c-tpm2-0-tss.SUSE_SLE-15-SP4_Updatedrpmxz5aarch64-suse-linuxELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=606cceeb1666635aa14e17027d3e491a6f0c28e3, strippedPRRRR[%3twutf-82d05fe9520d684b07e2fb87e9d3fcaf2e9257e589f5c58d3cdbe26b6caf11bd5?7zXZ !t/p3]"k%d\Q͋@2]re)P4BLXXGżz>L.t8f-Rg$T,,eNy9ž4gV?؛ )^W0%钊 ?5W P o΅+JP rI +e8x5߅$ OEmV\ z[gbɴ@M HⓎ7d[q3ȏK}+" % !WϪxE M%$g*Zʯ ӰA"Kj@*  "x~BqYn& bWr g~)21œOD86@a# \Co" 'r*XpG['eOV90w/>k2UWJvo2|g ~c2=6A]/&"Fazp */񨼱T bDe 8$Z$n灊!?C!RM-8GVa=;o{|B@{"hUugo c?Kr/;|eky!sۈm_ZZGhŊ~B~e~?td]#]I55}zRP@0_S7l6<OVJiP:7cM_j)L_xI|-;]O~MŞ]R롶!u)^6=g?ڇSGvwnFXs;)>` sJv&mVW~×C@E*uoe!OCC1O:=st}G B3HFƁwv MD 7R=)@YhTӤN }ø`U2—j`JVWܞH;k{V8K˙v˦`FƛeVN>lk%h܁SMMuq[c]h>j!i#7sNހGwb?9u'(jQY\X9m@=KNCZ2h!.!(7W6 Bw^I+&4i,[)^m1w[8^vMh#.AZr)[Tݙ>Uώ^ 2i zJkn[E7maq{oWyʷA ȎUA'W(-PMh٥\ϏhʪYFxsΞܺ}GN]K6%p# %ŋ&ǓA#CSs^EZ-> 8p׫_E*3i!+UX}3tT{Ó[texBk̆$[ ! +S^.Mȉ,oSX4 +шSni*NHM=solH xQ`:֤Z~P~yWaf 3i.7xd=j2%{N@QV84<$ 'Qh"~ - >)M1xW!ًAT e)?8.{48ٞ5D;8L&=~7ob5Q[z2-" gς#/ _T8> 3x㛞R[jr+Oz:x^y܅Z[$uއik#mOb XpDUJ 6]*5=&ٿ. caJ6K[, H=p)̨ OnoF$;k͒ {ƥXk"\Xٟ U/ a/b*\% _ …ptвg- 'צ~Hs7 F_"K"Hhʯo:U{ML)A;=Z`99tw1~V2Er턶/vĐQyttJ\p1DrO[{ q`ΉXL$uq_9;PǠ2UYlf95{AO#}~aq%#@=T-) AD"݋=bJu %:-vA 4p5.jxg]"wbˣ"^GJ6YMnvUi^!ZN^e ҲxAH u jBo;=x®+7/4Pק8ցebLjZؼ4 iӔċ롪0 RiN̙*IZؽ\*AG2GG$ځ8_^Y\8)d@ydDk c^.y] "<-(fJYtsp9 ]6#Cu ZΗe^FNwk03Nr9Nxk7yDcBd=D)/]ZQQ&-‡J]5Bqؤ<ƍ?~]`wʞ[%=1\/NݭF1mu Mp<זbeϜ*`dע!&ܦRovuv֒ϦƇKB~a?_ Y~* dI 1"Դ䩺d֦Lz-'JKD^ΑIbbls/Snƕk%."T RN=kΝbM d:QhzTl-C#Y/JIW W<RK6AQJbaMvFue&̤+ A4x扼I *; su{f۲ט=;2A-T-Щ/))^a!$ѸdQ_DFGQ2lR?տҝ#YTq-Pߩ4&V?x,E+UƬ3?lx?ԡZxWQCtOotgZIZze,020>5)q| D)PVԝZϳOyJS?Rt%@#k@v%s7пG/6 ?0ZPbQ}j2?(02侘]ez Yz ) +$=h ɑ6H9plC_NK;f2OjR˴i+J;r8G׮F:ոH:7}+.紺,VwĴ{HRۢ4an՝z\8TC">vL?5̘qҚq:)ΡKT%㸝sɎZ\;:2T0Q(#V`Cg:!9!+l.lU{1hY(ƪDCVN%Ht٬L発SEș^Ȃ1y yLvaǤ8)%>,9ޞ]*Uwid6[ ee/D!Jq=\2O{d;Z#>1ۼ\B/4Gb ىO rNb q (MS:c;E!%3" 'EŖ%!ѐSg MsScoSa *jG]G[6d}z3NcUHW㙢~C)Yөe}1iTAwᆝ˞<u@ڬ+&VQm\OoU OY}jDsG%TO릚1Zi\FFPK֑WAA<>pq vYw(~db TMDw/iL>b#)|,wJ[8%ę6x 4_S: uwo ѓ65q IٙKkIɣnHVϲl`Tn-t,ű &xSi\_w7B}8("3ZbcE{|OB*jxzNx!mi ô T:P䱧|?ӗ?n}#&xvڲgﱰ%j؅B z5+ $fė{zrZOdĊo S?D&Rº;QJ#Y*ּ0 j aCr tHHKO_F _߫CJcC?t\ڡgRH"%˵9'&859Y6X<+vYF^C-6-{ %P-gFzW̠*}F w+mgc#C}nw͑ݳ?p?fyƄ}L*[>\{g O׬%G CuCXOxSt3x{\ŗ`9sNϒ? .mPY G9ЍDFN|> i3eя}ԡ3CxL';%`.o8b4\KnTY@ƿ14RjK5,#US)X] "f[eOcRq49)%6傯7mkV(p|{;[n8 [t.H? `R 3lHU A8s' ~͇ڝ`>gsCI|~rJѓ^Çq9' ԝ&%Ma?;Yξ{e܀r Ȁr,4ՙxKnEyǙ􌸺ͶЛj riWTNsN.%a+2šf}@Q2KeөNǠ[݋8p).U,9X -Z<*z caY\CH/y^8&[{"^ٔo +{aýe0LwSLj*2!&4Ⱥu n ǢѽHwbAi,^ m^z9xWJ©<Ynܒ@+ZÎ--Zmpd'?W(뉲?O^/ۅ#ҍgyN\-Z*dbdC뇚v׵C ֥6Wz(zM /6r[ 6h˿ZTl"n{.j~`z<. 85]#sPJ343%kw3O{-i>-h]KOl4] 4iLNГ?_bpI:q hJ?J_QX}xTJ߃{4@`ݝhNdM3ȕM%%G6RrIӱ ޜiJSgtIcgS_ 2XOߐRf@)Hk 䉊|j"a8mѮX i@wlD7)2u˟O4^* D~*"#藞!<-(f`^*]le#Iyk%% ־7!$]#y(eƞf }[TnQ[7P4T?'9H:c iֈoO;Gowm [ۻ^U]C!$Mz8'a$*_>K9VMHy)mPm>CguiLhRsɊMƫ1V(e&3\lRFEP8Շ:' Q&+,d+uv|!sZZ.PZh]V$[,:Od՟Xn pC'Ѵ҂ *bPT#=mvd*kQU 5Նж8MhX7TԜN^hV֊DŊ޼$gfId)dQlil)v-FotHfALlЧ@4 dۏE;ˋHGV NKTatdc(c5˭?)%HcQr+B=5QFraR>u8^l߱° X/ni?cTC &E9˩|=Rg>k/%=yq,ț4_gT/H̎&$ C&ݾJT<)BPb#:-O<5ჾ/HF GWLv~]p.u:%&i~Ҍʺ?:Wg^J,CEsgDU\9Փ9BKaF_%^l5Bv tn<ZiUYÉW;=@Ymsomm \"LP2#`h$\H,[y2jQRJ*Qo8p`.z49dE2Ra !P 5bf wWjAc&֩qd1r>y3*5;i]TPUi\YKDbG@f-幠# :D]-FK3Ġ^<,AV+3o?;N CO[W A 59Pd`{n=*) `~ƽ- Xմ2z84,d |ZEC,7iKCDSbUv8özumɜ/{Ev>V@ +z5)krj4_KZ.5t$ "ڤ,VoyxOdFoyNƊ4`dl4H:?{ACמa.j?U/<ЋfwG=iCAا#ǬSn0~LILCRh^{WO#α+Ȅнü~] 730A`4)x{tR;yfA}#Q|7˫b Pwo52߾6,Y;o"k"ͤ{/|ߘ>TF;Q\b(]xf._Pj/i < O>jQ4~*)/d<i9ɧ0_K',kjǟ\;zIMcR/ AtT҈{3sA]e 4>#RR㛺RS3b!W NDWx>{XݕO:_J|g#iB"ኅt^db:^)ǵ1!X7+`ڠHW}+θVTp ;KVw9'jR&zyA7(wuơ=p9R"w4fb-Y%Gda X\zL. 9ζ:2Lm!Fy`]fYdL^Urid HϏ")㰻C} Pdzu?zt(~gJ)e} $E6e=gO,6?'̣[Lpyo N~ߨ䊨9KĬY ~Еs=w/Opaiz'ZWP)(QV}l;(0 _ Q@nܐiV#==d#X_DTK,63'lgzJO0̰ѵgھ`Iv/%Y$ʯ[I:>/-`Ծ㶰yz%DnU4}A._T;2@<b׽S1t/ӥ̨H5GaqCdE#| R5&_0~?h M&UcOVŗ }V>;*u1 @y:bic=p|/J;Sr2oe ,D|^R0Ь9H8ad'>2u6}_%C8{T\O.Bh1$a1q7՟xB oP:uf~۵J?芨,kVzHr-<3g;AiuyzrVjO2?ΏkHZMK1+H&5OrhIa{Lq ŭ$li#-XsxN0_-ZB1!4nܶ@G .>jI-Ա e)=juõg)t{nZՉ%GYn!CIqܬXxcǧ)3Љ{ieai~P=˔s,wsR m-{kY?A7 Iher†Dm&}u2khj–vG` Ly WnKoVa] S0 cL{W)ӏҌGF dQg'P