libgcrypt-devel-1.9.4-150400.6.8.1<>,hdp9|PK@w!\P|Tsba@LyP<1LB2t; ۩ͩOD~gJb R=RU@Lp`ax>(?d % <' =]  H    D  * P   8 ( /8 8a9a:HaF`GtHI,XDYP\]^ bc}def l uvx wxylzClibgcrypt-devel1.9.4150400.6.8.1The GNU Crypto LibraryLibgcrypt is a general purpose library of cryptographic building blocks. It is originally based on code used by GnuPG. It does not provide any implementation of OpenPGP or other protocols. Thorough understanding of applied cryptography is required to use Libgcrypt. This package contains needed files to compile and link against the library.ds390zl33BSUSE Linux Enterprise 15SUSE LLC GFDL-1.1-only AND GPL-2.0-or-later AND LGPL-2.1-or-later AND MIThttps://www.suse.com/Development/Libraries/C and C++https://gnupg.org/software/libgcryptlinuxs390xA8:X*Ipsb h+57 2FHgȁ큤A큤A큤dddddddddda";0a"ta"eda";0a";0dddda";0a";0de132875d392e397fd30f8c0e48fee962515750fc7dbe3d765b326a78f3922eb20216cb6d4d12f7c82e8b8d6fddfb4e78ce472b7f74c365cd3cef4ce8b8b9c905b29de09aa011c7f5f039964cafc0927e0d3bb6f74b87c235e5d7cdd113ce4215778348677861de1adda4abcb6587e6f1fbdb02059c061abb31c1f1fbdd5a9c90964134655213eaec8f139344780beff63fbad3aeca454aa777e9e765b78aebcfacd15344cb662bbf7b790d8df34c4f025648bfdf5ad5fc2c720bfa4bf35645c38e9490e4be73bfe0c9804132e4466435021796013a1d7bb020913e4e80ed352a8a15616c94d11ecfbde36dd3ee61da1419765906b176519327c923e55b0aa2de7f2a88574f4c82f73ebac85522a914f930544c9500a6cae345500bf4741199f4ecec3d21e9cc4414be30f5e9505f0948479db714967058801cd2f547d6e80c22960b2cf10161f0aa970bbe9c40b06ddef4c1dc7d53d2173351aa1fc27194a00cbd022783ca6ea96fe06eb53ea530777e77d0165bbc118759cb6d33d495c5db1e6d3eb2da4dd3fd7fd4e0a9cd53bff761ebd12827a90012de478537e87c8e70a0a2dea5f8bf4a444512f010f49ed3c785de5101a8b57fe3f202b1d7740f432a0a68fcc02790f2750ba207150cc795afb2c3432f5ef38501dfcccb67ee47557b50002968fa4bb2e0fd242ae6bf7df19f8bbe6d55a07a881e46d94a76a6754e47a7f8c945c014689ab8387d5011f5a0918a470dd78263e169c63de25f8d7186413932b1062f7da84967e7019d01ab805935caa7ab7321a7ced0e30ebe75e5df1670ca0061fc1381a3ab242310e4b3f56389f28e3d460eb2fd822ed7a21c6f03053264969100b25b6cb392f8a73b883717188b0e6fcc728c1066c5b507abb2fd8d55libgcrypt.so.20.3.4rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootlibgcrypt-1.9.4-150400.6.8.1.src.rpmlibgcrypt-devellibgcrypt-devel(s390-64)pkgconfig(libgcrypt)@@@@@@@@@ @@@    /bin/sh/usr/bin/pkg-configglibc-devellibc.so.6()(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libgcrypt.so.20()(64bit)libgcrypt.so.20(GCRYPT_1.6)(64bit)libgcrypt20libgpg-error-devellibgpg-error.so.0()(64bit)libgpg-error.so.0(GPG_ERROR_1.0)(64bit)pkgconfig(gpg-error)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)1.9.41.273.0.4-14.6.0-14.0-15.2-14.14.3ddd2c@ccc@bbX b9@a a@aLa@a@a@a(@azaI@aI@a#a#`t`#@`P@`u`-@`>`@`` l_@_c^@^@^H^@^@^|@^|@^j$@^j$@^U @^%@^!^!]@]e@]]ʞ]m@]i]A]0_@]G@] ] \\@\r@\C@\@\@\@\[@[դ[:[*A[!@Z@Z@ZZ1@YYu@YqYTY3@Y1S@XXRXOWF@WQW9@W9@VVUUJ@T@TTԬTԬTԬTZ@pmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.comdennis.knorr@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.comandreas.stieger@gmx.depmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.comandreas.stieger@gmx.depmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comvcizek@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comvcizek@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comandreas.stieger@gmx.dejsikes@suse.comjsikes@suse.dejsikes@suse.depmonrealgonzalez@suse.compmonrealgonzalez@suse.comjsikes@suse.dejsikes@suse.dejsikes@suse.dejsikes@suse.devcizek@suse.comvcizek@suse.comvcizek@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comastieger@suse.comschwab@suse.depsimons@suse.comkbabioch@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comfvogt@suse.comastieger@suse.comastieger@suse.comjengelh@inai.deastieger@suse.comastieger@suse.comastieger@suse.compmonrealgonzalez@suse.comrmaliska@suse.comastieger@suse.comastieger@suse.commpluskal,vcizek,astieger}@suse.comastieger@suse.compjanouch@suse.depjanouch@suse.deastieger@suse.comastieger@suse.comvcizek@suse.comdvaleev@suse.comastieger@suse.comastieger@suse.comcoolo@suse.comdimstar@opensuse.orgcoolo@suse.comandreas.stieger@gmx.de- FIPS: ECC: Transition to error-state if PCT fail [bsc#1208925] * Add libgcrypt-FIPS-ECC-PCT-Add-transition-to-error.patch- FIPS: ECDSA: Avoid no-keytest in ECDSA keygen [bsc#1208924] * Add libgcrypt-FIPS-ECC-disallow-skip-test.patch- FIPS: PBKDF2: Add additional checks for the minimum key length, salt length, iteration count and passphrase length to the kdf fips indicator in _gcry_fips_indicator_kdf() [bsc#1208926] * Add libgcrypt-FIPS-pkdf2-Additional-checks.patch- FIPS: Get most of the entropy from rndjent_poll [bsc#1202117] * Add libgcrypt-FIPS-rndjent_poll.patch- FIPS: Check keylength in gcry_fips_indicator_kdf() [bsc#1190700] * Consider approved keylength greater or equal to 112 bits. * Add libgcrypt-FIPS-kdf-leylength.patch- FIPS: Zeroize buffer and digest in check_binary_integrity() * Add libgcrypt-FIPS-Zeroize-hmac.patch [bsc#1191020]- FIPS: gpg/gpg2 gets out of core handler in FIPS mode while typing Tab key to Auto-Completion. [bsc#1182983] * Add libgcrypt-out-of-core-handler.patch- FIPS: Port libgcrypt to use jitterentropy [bsc#1202117, jsc#SLE-24941] * Enable the jitter based entropy generator by default in random.conf - Add libgcrypt-jitterentropy-3.3.0.patch * Update the internal jitterentropy to version 3.4.0 - Add libgcrypt-jitterentropy-3.4.0.patch- FIPS: extend the service indicator [bsc#1190700] * introduced a pk indicator function * adapted the approved and non approved ciphersuites * Add libgcrypt_indicators_changes.patch * Add libgcrypt-indicate-shake.patch- FIPS: Implement a service indicator for asymmetric ciphers [bsc#1190700] * Mark RSA public key encryption and private key decryption with padding (e.g. OAEP, PKCS) as non-approved since RSA-OAEP lacks peer key assurance validation requirements per SP800-56Brev2. * Mark ECC as approved only for NIST curves P-224, P-256, P-384 and P-521 with check for common NIST names and aliases. * Mark DSA, ELG, EDDSA, ECDSA and ECDH as non-approved. * Add libgcrypt-FIPS-SLI-pk.patch * Rebase libgcrypt-FIPS-service-indicators.patch - Run the regression tests also in FIPS mode. * Disable tests for non-FIPS approved algos. * Rebase: libgcrypt-FIPS-verify-unsupported-KDF-test.patch- FIPS: Disable DSA in FIPS mode [bsc#1195385] * Upstream task: https://dev.gnupg.org/T5710 * Add libgcrypt-FIPS-disable-DSA.patch- FIPS: Service level indicator [bsc#1190700] * Provide an indicator to check wether the service utilizes an approved cryptographic algorithm or not. * Add patches: - libgcrypt-FIPS-service-indicators.patch - libgcrypt-FIPS-verify-unsupported-KDF-test.patch - libgcrypt-FIPS-HMAC-short-keylen.patch- FIPS: Fix gcry_mpi_sub_ui subtraction [bsc#1193480] * gcry_mpi_sub_ui: fix subtracting from negative value * Add libgcrypt-FIPS-fix-gcry_mpi_sub_ui.patch- FIPS: Define an entropy source SP800-90B compliant [bsc#1185140] * Disable jitter entropy by default in random.conf * Disable only-urandom option by default in random.conf- FIPS: RSA KeyGen/SigGen fail with 4096 bit key sizes [bsc#1192240] * rsa: Check RSA keylen constraints for key operations. * rsa: Fix regression in not returning an error for prime generation. * tests: Add 2k RSA key working in FIPS mode. * tests: pubkey: Replace RSA key to one of 2k. * tests: pkcs1v2: Skip tests with small keys in FIPS. * Add patches: - libgcrypt-FIPS-RSA-keylen.patch - libgcrypt-FIPS-RSA-keylen-tests.patch- FIPS: Disable 3DES/Triple-DES in FIPS mode [bsc#1185138] * Add libgcrypt-FIPS-disable-3DES.patch- FIPS: PBKDF requirements [bsc#1185137] * The PBKDF2 selftests were introduced in libgcrypt version 1.9.1 in the function selftest_pbkdf2() * Upstream task: https://dev.gnupg.org/T5182- FIPS: Fix regression tests in FIPS mode [bsc#1192131] * Add libgcrypt-FIPS-fix-regression-tests.patch * Upstream task: https://dev.gnupg.org/T5520- FIPS: Provide a module name/identifier and version that can be mapped to the validation records. [bsc#1190706] * Add libgcrypt-FIPS-module-version.patch * Upstream task: https://dev.gnupg.org/T5600- FIPS: Enable hardware support also in FIPS mode [bsc#1187110] * Add libgcrypt-FIPS-hw-optimizations.patch * Upstream task: https://dev.gnupg.org/T5508- Update to 1.9.4: [jsc#SLE-17558, jsc#SLE-18135, jsc#SLE-20734] * Bug fixes: - Fix Elgamal encryption for other implementations. [CVE-2021-33560] - Fix alignment problem on macOS. - Check the input length of the point in ECDH. - Fix an abort in gcry_pk_get_param for "Curve25519". * Other features: - Add GCM and CCM to OID mapping table for AES. * Upstream libgcrypt-CVE-2021-33560-fix-ElGamal-enc.patch- Remove not needed patch libgcrypt-sparcv9.diff- libgcrypt 1.9.3: [jsc#SLE-17558, jsc#SLE-19413] * Bug fixes: - Fix build problems on i386 using gcc-4.7. - Fix checksum calculation in OCB decryption for AES on s390. - Fix a regression in gcry_mpi_ec_add related to certain usages of curve 25519. - Fix a symbol not found problem on Apple M1. - Fix for Apple iOS getentropy peculiarity. - Make keygrip computation work for compressed points. * Performance: - Add x86_64 VAES/AVX2 accelerated implementation of Camellia. - Add x86_64 VAES/AVX2 accelerated implementation of AES. - Add VPMSUMD acceleration for GCM mode on PPC. * Internal changes. - Harden MPI conditional code against EM leakage. - Harden Elgamal by introducing exponent blinding. * Remove libgcrypt-CVE-2021-33560-ElGamal-exponent-blinding.patch- Fix building test t-lock with pthread. [bsc#1189745] * Explicitly add -lpthread to compile the t-lock test. * Add libgcrypt-pthread-in-t-lock-test.patch- Security fix: [bsc#1187212, CVE-2021-33560] * Libgcrypt mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm - Add patches: * libgcrypt-CVE-2021-33560-ElGamal-exponent-blinding.patch * libgcrypt-CVE-2021-33560-fix-ElGamal-enc.patch- Upgrade to 1.9.2 in SLE-15-SP4 [jsc#SLE-17558, jsc#SLE-19413] - Remove patches: * CVE-2018-0495.patch * libgcrypt-CVE-2019-13627.patch * libgcrypt-AES-KW-fix-in-place-encryption.patch * libgcrypt-ECDSA_check_coordinates_range.patch * libgcrypt-check-re-open-dev_random-after-fork.patch- libgcrypt 1.9.2: * Fix building with --disable-asm on x86 * Check public key for ECDSA verify operation * Make sure gcry_get_config (NULL) returns a nul-terminated string * Fix a memory leak in the ECDH code * Fix a reading beyond end of input buffer in SHA2-avx2 - remove obsolete texinfo packaging macros- Update to 1.9.1 * *Fix exploitable bug* in hash functions introduced with 1.9.0. [bsc#1181632, CVE-2021-3345] * Return an error if a negative MPI is used with sexp scan functions. * Check for operational FIPS in the random and KDF functions. * Fix compile error on ARMv7 with NEON disabled. * Fix self-test in KDF module. * Improve assembler checks for better LTO support. * Fix 32-bit cross build on x86. * Fix non-NEON ARM assembly implementation for SHA512. * Fix build problems with the cipher_bulk_ops_t typedef. * Fix Ed25519 private key handling for preceding ZEROs. * Fix overflow in modular inverse implementation. * Fix register access for AVX/AVX2 implementations of Blake2. * Add optimized cipher and hash functions for s390x/zSeries. * Use hardware bit counting functionx when available. * Update DSA functions to match FIPS 186-3. * New self-tests for CMACs and KDFs. * Add bulk cipher functions for OFB and GCM modes. - Update libgpg-error required version- Use the suffix variable correctly in get_hmac_path() - Rebase libgcrypt-fips_selftest_trigger_file.patch- Add the global config file /etc/gcrypt/random.conf * This file can be used to globally change parameters of the random generator with the options: only-urandom and disable-jent.- Update to 1.9.0: New stable branch of Libgcrypt with full API and ABI compatibility to the 1.8 series. Release-info: https://dev.gnupg.org/T4294 * New and extended interfaces: - New curves Ed448, X448, and SM2. - New cipher mode EAX. - New cipher algo SM4. - New hash algo SM3. - New hash algo variants SHA512/224 and SHA512/256. - New MAC algos for Blake-2 algorithms, the new SHA512 variants, SM3, SM4 and for a GOST variant. - New convenience function gcry_mpi_get_ui. - gcry_sexp_extract_param understands new format specifiers to directly store to integers and strings. - New function gcry_ecc_mul_point and curve constants for Curve448 and Curve25519. - New function gcry_ecc_get_algo_keylen. - New control code GCRYCTL_AUTO_EXPAND_SECMEM to allow growing the secure memory area. * Performance optimizations and bug fixes: See Release-info. * Other features: - Add OIDs from RFC-8410 as aliases for Ed25519 and Curve25519. - Add mitigation against ECC timing attack CVE-2019-13627. - Internal cleanup of the ECC implementation. - Support reading EC point in compressed format for some curves. - Rebase patches: * libgcrypt-1.4.1-rijndael_no_strict_aliasing.patch * libgcrypt-1.5.0-LIBGCRYPT_FORCE_FIPS_MODE-env.diff * libgcrypt-1.6.1-use-fipscheck.patch * drbg_test.patch * libgcrypt-fipsdrv-enable-algo-for-dsa-sign.patch * libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch * libgcrypt-1.8.4-fips-keygen.patch * libgcrypt-1.8.4-getrandom.patch * libgcrypt-fix-tests-fipsmode.patch * libgcrypt-global_init-constructor.patch * libgcrypt-ecc-ecdsa-no-blinding.patch * libgcrypt-PCT-RSA.patch * libgcrypt-PCT-ECC.patch - Remove patches: * libgcrypt-unresolved-dladdr.patch * libgcrypt-CVE-2019-12904-GCM-Prefetch.patch * libgcrypt-CVE-2019-12904-GCM.patch * libgcrypt-CVE-2019-12904-AES.patch * libgcrypt-CMAC-AES-TDES-selftest.patch * libgcrypt-1.6.1-fips-cfgrandom.patch * libgcrypt-fips_rsa_no_enforced_mode.patch- libgcrypt 1.8.7: * Support opaque MPI with gcry_mpi_print * Fix extra entropy collection via clock_gettime, a fallback code path for legacy hardware- Update to 1.8.6 * mpi: Consider +0 and -0 the same in mpi_cmp * mpi: Fix flags in mpi_copy for opaque MPI * mpi: Fix the return value of mpi_invm_generic * mpi: DSA,ECDSA: Fix use of mpi_invm - Call mpi_invm before _gcry_dsa_modify_k - Call mpi_invm before _gcry_ecc_ecdsa_sign * mpi: Constant time mpi_inv with some conditions - mpi/mpi-inv.c (mpih_add_n_cond, mpih_sub_n_cond, mpih_swap_cond) - New: mpih_abs_cond, mpi_invm_odd - Rename from _gcry_mpi_invm: mpi_invm_generic - Use mpi_invm_odd for usual odd cases: _gcry_mpi_invm * mpi: Abort on division by zero also in _gcry_mpi_tdiv_qr * Fix wrong code execution in Poly1305 ARM/NEON implementation - Set r14 to -1 at function entry: (_gcry_poly1305_armv7_neon_init_ext) * Set vZZ.16b register to zero before use in armv8 gcm implementation * random: Fix include of config.h * Fix declaration of internal function _gcry_mpi_get_ui: Don't use ulong * ecc: Fix wrong handling of shorten PK bytes - Zeros are already recovered: (_gcry_ecc_mont_decodepoint) - Update libgcrypt-ecc-ecdsa-no-blinding.patch- FIPS: RSA/DSA/ECC test_keys() print out debug messages [bsc#1171872] * Print the debug messages in test_keys() only in debug mode. - Update patches: libgcrypt-PCT-RSA.patch libgcrypt-PCT-DSA.patch libgcrypt-PCT-ECC.patch- FIPS: libgcrypt: Double free in test_keys() on failed signature verification [bsc#1169944] * Use safer gcry_mpi_release() instead of mpi_free() - Update patches: * libgcrypt-PCT-DSA.patch * libgcrypt-PCT-RSA.patch * libgcrypt-PCT-ECC.patch- Ship the FIPS checksum file in the shared library package and create a separate trigger file for the FIPS selftests (bsc#1169569) * add libgcrypt-fips_selftest_trigger_file.patch * refresh libgcrypt-global_init-constructor.patch - Remove libgcrypt-binary_integrity_in_non-FIPS.patch obsoleted by libgcrypt-global_init-constructor.patch- FIPS: Verify that the generated signature and the original input differ in test_keys function for RSA, DSA and ECC: [bsc#1165539] - Add zero-padding when qx and qy have different lengths when assembling the Q point from affine coordinates. - Refreshed patches: * libgcrypt-PCT-DSA.patch * libgcrypt-PCT-RSA.patch * libgcrypt-PCT-ECC.patch- FIPS: Switch the PCT to use the new signature operation [bsc#1165539] * Patches for DSA, RSA and ECDSA test_keys functions: - libgcrypt-PCT-DSA.patch - libgcrypt-PCT-RSA.patch - libgcrypt-PCT-ECC.patch - Update patch: libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch- FIPS: Fix drbg to be threadsafe [bsc#1167674] * Detect fork and re-open devices in_gcry_rndlinux_gather_random * libgcrypt-check-re-open-dev_random-after-fork.patch- FIPS: Run self-tests from constructor during power-on [bsc#1166748] * Set up global_init as the constructor function: - libgcrypt-global_init-constructor.patch * Relax the entropy requirements on selftest. This is especially important for virtual machines to boot properly before the RNG is available: - libgcrypt-random_selftests-testentropy.patch - libgcrypt-rsa-no-blinding.patch - libgcrypt-ecc-ecdsa-no-blinding.patch * Fix benchmark regression test in FIPS mode: - libgcrypt-FIPS-GMAC_AES-benckmark.patch- Remove check not needed in _gcry_global_constructor [bsc#1164950] * Update libgcrypt-Restore-self-tests-from-constructor.patch- FIPS: Restore the full _gcry_global_constructor function to run the self-test from the constructor [bsc#1164950] * Add libgcrypt-Restore-self-tests-from-constructor.patch- FIPS: Run the self-tests from the constructor [bsc#1164950] * Add libgcrypt-invoke-global_init-from-constructor.patch- ECDSA: Check range of coordinates (bsc#1161216) * add libgcrypt-ECDSA_check_coordinates_range.patch- FIPS: libgcrypt DSA PQG parameter generation: Missing value [bsc#1161219] - FIPS: libgcrypt DSA PQG verification incorrect results [bsc#1161215] - FIPS: libgcrypt RSA siggen/keygen: 4k not supported [bsc#1161220] * Add patch from Fedora libgcrypt-1.8.4-fips-keygen.patch- FIPS: keywrap gives incorrect results [bsc#1161218] * Add libgcrypt-AES-KW-fix-in-place-encryption.patch- FIPS: RSA/DSA/ECDSA are missing hashing operation [bsc#1155337] * Add libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch- Fix tests in FIPS mode: * Fix tests: basic benchmark bench-slope pubkey t-cv25519 t-secmem * Add patch libgcrypt-fix-tests-fipsmode.patch- Fix test dsa-rfc6979 in FIPS mode: * Disable tests in elliptic curves with 192 bits which are not recommended in FIPS mode * Add patch libgcrypt-dsa-rfc6979-test-fix.patch- CMAC AES and TDES FIPS self-tests: * CMAC AES self test missing [bsc#1155339] * CMAC TDES self test missing [bsc#1155338] - Add libgcrypt-CMAC-AES-TDES-selftest.patch- Security fix: [bsc#1148987,CVE-2019-13627] * Mitigation against an ECDSA timing attack * Added libgcrypt-CVE-2019-13627.patch- libgcrypt 1.8.5: * CVE-2019-13627: mitigation against an ECDSA timing attack (boo#1148987) * Improve ECDSA unblinding * Provide a pkg-config file- Fixed an issue created by incomplete implementation of previous change - [bsc#1097073] * Removed section of libgcrypt-binary_integrity_in_non-FIPS.patch that caused some tests to be executed more than once.- Fixed a race condition in initialization. * Added libgcrypt-1.8.4-allow_FSM_same_state.patch- Fixed redundant fips tests in some situations causing sudo to stop working when pam-kwallet is installed. bsc#1133808 * Added libgcrypt-1.8.4-fips_ctor_skip_integrity_check.patch * Removed libgcrypt-fips_ignore_FIPS_MODULE_PATH.patch because it was obsoleted by libgcrypt-1.8.4-fips_ctor_skip_integrity_check.patch- Fixed env-script-interpreter in cavs_driver.pl- Security fix: [bsc#1138939, CVE-2019-12904] * The C implementation of AES is vulnerable to a flush-and-reload side-channel attack because physical addresses are available to other processes. (The C implementation is used on platforms where an assembly-language implementation is unavailable.) * Added patches: - libgcrypt-CVE-2019-12904-GCM-Prefetch.patch - libgcrypt-CVE-2019-12904-GCM.patch - libgcrypt-CVE-2019-12904-AES.patch- do not try to open /dev/urandom if getrandom() works * Added libgcrypt-1.8.4-getrandom.patch - Drop libgcrypt-init-at-elf-load-fips.patch obsoleted by libgcrypt-1.8.3-fips-ctor.patch- Restored libgcrypt-binary_integrity_in_non-FIPS.patch sans section that was partially causing bsc#1131183. - Fixed race condition in multi-threaded applications by allowing a FSM state transition to the current state. This means some tests are run twice. * Added libgcrypt-1.8.4-allow_FSM_same_state.patch - Fixed an issue in malloc/free wrappers so that memory created by the malloc() wrappers will be destroyed using the free() wrappers. * Added libgcrypt-1.8.4-use_xfree.patch- remove section of libgcrypt-binary_integrity_in_non-FIPS.patch that caused some tests to be executed twice.- removed libgcrypt-binary_integrity_in_non-FIPS.patch since it was breaking libotr. bsc#1131183- libgcrypt-1.8.3-fips-ctor.patch changed the way the fips selftests are invoked as well as the state transition, adjust the code so a missing checksum file is not an issue in non-FIPS mode (bsc#1097073) * update libgcrypt-binary_integrity_in_non-FIPS.patch- Enforce the minimal RSA keygen size in fips mode (bsc#1125740) * add libgcrypt-fips_rsa_no_enforced_mode.patch- Don't run full self-tests from constructor (bsc#1097073) * Don't call global_init() from the constructor, _gcry_global_constructor() from libgcrypt-1.8.3-fips-ctor.patch takes care of the binary integrity check instead. * Only the binary checksum will be verified, the remaining self-tests will be run upon the library initialization - Add libgcrypt-fips_ignore_FIPS_MODULE_PATH.patch - Drop libgcrypt-init-at-elf-load-fips.patch and libgcrypt-fips_run_selftest_at_constructor.patch obsoleted by libgcrypt-1.8.3-fips-ctor.patch- Skip all the self-tests except for binary integrity when called from the constructor (bsc#1097073) * Added libgcrypt-1.8.3-fips-ctor.patch- Fail selftests when checksum file is missing in FIPS mode only (bsc#1117355) * add libgcrypt-binary_integrity_in_non-FIPS.patch- libgcrypt 1.8.4: * Fix infinite loop with specific application implementations * Fix possible leak of a few bits of secret primes to pageable memory * Fix possible hang in the RNG (1.8.3) * Always make use of getrandom if possible and then use its /dev/urandom behaviour- libgcrypt-1.6.3-aliasing.patch, libgcrypt-ppc64.patch, libgcrypt-strict-aliasing.patch: Remove obsolete patches - libgcrypt-1.4.1-rijndael_no_strict_aliasing.patch: Rediff - Reenable testsuite- Apply "CVE-2018-0495.patch" from upstream to enable blinding for ECDSA signing. This change mitigates a novel side-channel attack. [CVE-2018-0495, bsc#1097410]- Update to version 1.8.3: - Use blinding for ECDSA signing to mitigate a novel side-channel attack. (CVE-2018-0495 bsc#1097410) - Fix incorrect counter overflow handling for GCM when using an IV size other than 96 bit. - Fix incorrect output of AES-keywrap mode for in-place encryption on some platforms. - Fix the gcry_mpi_ec_curve_point point validation function. - Fix rare assertion failure in gcry_prime_check. - Applied spec-cleaner- Suggest libgcrypt20-hmac for package libgcrypt20 to ensure they are installed in the right order. [bsc#1090766]- Extended the fipsdrv dsa-sign and dsa-verify commands with the - -algo parameter for the FIPS testing of DSA SigVer and SigGen (bsc#1064455). * Added libgcrypt-fipsdrv-enable-algo-for-dsa-sign.patch * Added libgcrypt-fipsdrv-enable-algo-for-dsa-verify.patch- Use %license (boo#1082318)- libgcrypt 1.8.2: * Fix fatal out of secure memory status in the s-expression parser on heavy loaded systems. * Add auto expand secmem feature or use by GnuPG 2.2.4- libgcrypt 1.8.1: * Mitigate a local side-channel attack on Curve25519 dubbed "May the Fourth be With You" CVE-2017-0379 bsc#1055837 * Add more extra bytes to the pool after reading a seed file * Add the OID SHA384WithECDSA from RFC-7427 to SHA-384 * Fix build problems with the Jitter RNG * Fix assembler code build problems on Rasbian (ARMv8/AArch32-CE)- RPM group fixes.- libgcrypt 1.8.0: * New cipher mode XTS * New hash function Blake-2 * New function gcry_mpi_point_copy. * New function gcry_get_config. * GCRYCTL_REINIT_SYSCALL_CLAMP allows to init nPth after Libgcrypt. * New gobal configuration file /etc/gcrypt/random.conf. * GCRYCTL_PRINT_CONFIG does now also print build information for libgpg-error and the used compiler version. * GCRY_CIPHER_MODE_CFB8 is now supported. * A jitter based entropy collector is now used in addition to the other entropy collectors. * Optimized gcry_md_hash_buffers for SHA-256 and SHA-512. random pool lock). * Interface changes relative to the 1.7.0 release: gcry_get_config NEW function. gcry_mpi_point_copy NEW function. GCRYCTL_REINIT_SYSCALL_CLAMP NEW macro. GCRY_MD_BLAKE2B_512 NEW constant. GCRY_MD_BLAKE2B_384 NEW constant. GCRY_MD_BLAKE2B_256 NEW constant. GCRY_MD_BLAKE2B_160 NEW constant. GCRY_MD_BLAKE2S_256 NEW constant. GCRY_MD_BLAKE2S_224 NEW constant. GCRY_MD_BLAKE2S_160 NEW constant. GCRY_MD_BLAKE2S_128 NEW constant. GCRY_CIPHER_MODE_XTS NEW constant. gcry_md_info DEPRECATED. - Refresh patch libgcrypt-1.6.3-aliasing.patch- libgcrypt 1.7.8: * CVE-2017-7526: Mitigate a flush+reload side-channel attack on RSA secret keys (bsc#1046607)- libgcrypt 1.7.7: * Fix possible timing attack on EdDSA session key (previously patched, drop libgcrypt-secure-EdDSA-session-key.patch) * Fix long standing bug in secure memory implementation which could lead to a segv on free- Added libgcrypt-secure-EdDSA-session-key.patch [bsc#1042326] * Store the session key in secure memory to ensure that constant time point operations are used in the MPI library.- libgcrypt 1.7.6: * Fix counter operand from read-only to read/write * Fix too large jump alignment in mpih-rshift- libgcrypt 1.7.5: * Fix regression in mlock detection introduced with 1.7.4- libgcrypt 1.7.4: * ARMv8/AArch32 performance improvements for AES, GCM, SHA-256, and SHA-1. * Add ARMv8/AArch32 assembly implementation for Twofish and Camellia. * Add bulk processing implementation for ARMv8/AArch32. * Add Stribog OIDs. * Improve the DRBG performance and sync the code with the Linux version. * When secure memory is requested by the MPI functions or by gcry_xmalloc_secure, they do not anymore lead to a fatal error if the secure memory pool is used up. Instead new pools are allocated as needed. These new pools are not protected against being swapped out (mlock can't be used). Mitigation for minor confidentiality issues is encryption swap space. * Fix GOST 28147 CryptoPro-B S-box. * Fix error code handling of mlock calls.- libgcrypt 1.7.3: * security issue already fixes with 1.6.6 * Fix building of some asm modules with older compilers and CPUs. * ARMv8/AArch32 improvements for AES, GCM, SHA-256, and SHA-1. - includes changes from libgcrypt 1.7.2: * Bug fixes: - Fix setting of the ECC cofactor if parameters are specified. - Fix memory leak in the ECC code. - Remove debug message about unsupported getrandom syscall. - Fix build problems related to AVX use. - Fix bus errors on ARM for Poly1305, ChaCha20, AES, and SHA-512. * Internal changes: - Improved fatal error message for wrong use of gcry_md_read. - Disallow symmetric encryption/decryption if key is not set. - includes changes from 1.7.1: * Bug fixes: - Fix ecc_verify for cofactor support. - Fix portability bug when using gcc with Solaris 9 SPARC. - Build fix for OpenBSD/amd64 - Add OIDs to the Serpent ciphers. * Internal changes: - Use getrandom system call on Linux if available. - Blinding is now also used for RSA signature creation. - Changed names of debug envvars - includes changes from 1.7.0: * New algorithms and modes: - SHA3-224, SHA3-256, SHA3-384, SHA3-512, and MD2 hash algorithms. - SHAKE128 and SHAKE256 extendable-output hash algorithms. - ChaCha20 stream cipher. - Poly1305 message authentication algorithm - ChaCha20-Poly1305 Authenticated Encryption with Associated Data mode. - OCB mode. - HMAC-MD2 for use by legacy applications. * New curves for ECC: - Curve25519. - sec256k1. - GOST R 34.10-2001 and GOST R 34.10-2012. * Performance: - Improved performance of KDF functions. - Assembler optimized implementations of Blowfish and Serpent on ARM. - Assembler optimized implementation of 3DES on x86. - Improved AES using the SSSE3 based vector permutation method by Mike Hamburg. - AVX/BMI is used for SHA-1 and SHA-256 on x86. This is for SHA-1 about 20% faster than SSSE3 and more than 100% faster than the generic C implementation. - 40% speedup for SHA-512 and 72% for SHA-1 on ARM Cortex-A8. - 60-90% speedup for Whirlpool on x86. - 300% speedup for RIPE MD-160. - Up to 11 times speedup for CRC functions on x86. * Other features: - Improved ECDSA and FIPS 186-4 compliance. - Support for Montgomery curves. - gcry_cipher_set_sbox to tweak S-boxes of the gost28147 cipher algorithm. - gcry_mpi_ec_sub to subtract two points on a curve. - gcry_mpi_ec_decode_point to decode an MPI into a point object. - Emulation for broken Whirlpool code prior to 1.6.0. [from 1.6.1] - Flag "pkcs1-raw" to enable PCKS#1 padding with a user supplied hash part. - Parameter "saltlen" to set a non-default salt length for RSA PSS. - A SP800-90A conforming DRNG replaces the former X9.31 alternative random number generator. - Map deprecated RSA algo number to the RSA algo number for better backward compatibility. [from 1.6.2] - Use ciphertext blinding for Elgamal decryption [CVE-2014-3591]. See http://www.cs.tau.ac.il/~tromer/radioexp/ for details. [from 1.6.3] - Fixed data-dependent timing variations in modular exponentiation [related to CVE-2015-0837, Last-Level Cache Side-Channel Attacks are Practical]. [from 1.6.3] - Flag "no-keytest" for ECC key generation. Due to a bug in the parser that flag will also be accepted but ignored by older version of Libgcrypt. [from 1.6.4] - Speed up the random number generator by requiring less extra seeding. [from 1.6.4] - Always verify a created RSA signature to avoid private key leaks due to hardware failures. [from 1.6.4] - Mitigate side-channel attack on ECDH with Weierstrass curves [CVE-2015-7511]. See http://www.cs.tau.ac.IL/~tromer/ecdh/ for details. [from 1.6.5] * Internal changes: - Moved locking out to libgpg-error. - Support of the SYSROOT envvar in the build system. - Refactor some code. - The availability of a 64 bit integer type is now mandatory. * Bug fixes: - Fixed message digest lookup by OID (regression in 1.6.0). - Fixed a build problem on NetBSD - Fixed some asm build problems and feature detection bugs. * Interface changes relative to the 1.6.0 release: gcry_cipher_final NEW macro. GCRY_CIPHER_MODE_CFB8 NEW constant. GCRY_CIPHER_MODE_OCB NEW. GCRY_CIPHER_MODE_POLY1305 NEW. gcry_cipher_set_sbox NEW macro. gcry_mac_get_algo NEW. GCRY_MAC_HMAC_MD2 NEW. GCRY_MAC_HMAC_SHA3_224 NEW. GCRY_MAC_HMAC_SHA3_256 NEW. GCRY_MAC_HMAC_SHA3_384 NEW. GCRY_MAC_HMAC_SHA3_512 NEW. GCRY_MAC_POLY1305 NEW. GCRY_MAC_POLY1305_AES NEW. GCRY_MAC_POLY1305_CAMELLIA NEW. GCRY_MAC_POLY1305_SEED NEW. GCRY_MAC_POLY1305_SERPENT NEW. GCRY_MAC_POLY1305_TWOFISH NEW. gcry_md_extract NEW. GCRY_MD_FLAG_BUGEMU1 NEW [from 1.6.1]. GCRY_MD_GOSTR3411_CP NEW. GCRY_MD_SHA3_224 NEW. GCRY_MD_SHA3_256 NEW. GCRY_MD_SHA3_384 NEW. GCRY_MD_SHA3_512 NEW. GCRY_MD_SHAKE128 NEW. GCRY_MD_SHAKE256 NEW. gcry_mpi_ec_decode_point NEW. gcry_mpi_ec_sub NEW. GCRY_PK_EDDSA NEW constant. GCRYCTL_GET_TAGLEN NEW. GCRYCTL_SET_SBOX NEW. GCRYCTL_SET_TAGLEN NEW. - Apply libgcrypt-1.6.3-aliasing.patch only on big-endian architectures - update drbg_test.patch and install cavs testing directory again - As DRBG is upstream, drop pateches: v9-0001-SP800-90A-Deterministic-Random-Bit-Generator.patch 0002-Compile-DRBG.patch 0003-Function-definitions-of-interfaces-for-random.c.patch 0004-Invoke-DRBG-from-common-libgcrypt-RNG-code.patch 0005-Function-definitions-for-gcry_control-callbacks.patch 0006-DRBG-specific-gcry_control-requests.patch v9-0007-User-interface-to-DRBG.patch libgcrypt-fix-rng.patch - drop obsolete: libgcrypt-fips-dsa.patch libgcrypt-fips_ecdsa.patch- libgcrypt 1.6.6: * fix CVE-2016-6313: Issue in the mixing functions of the random number generators allowed an attacker who obtained a number of bytes from the standard RNG to predict some of the next ouput. (bsc#994157)- remove conditionals for unsupported distributions (before 13.2), it would not build anyway because of new dependencies- make the -hmac package depend on the same version of the library, fixing bsc#979629 FIPS: system fails to reboot after installing fips pattern- update to 1.6.5: * CVE-2015-7511: Mitigate side-channel attack on ECDH with Weierstrass curves (boo#965902)- follow-up to libgcrypt 1.6.4 update: sosuffix is 20.0.4- update to 1.6.4 - fixes libgcrypt equivalent of CVE-2015-5738 (bsc#944456) * Speed up the random number generator by requiring less extra seeding. * New flag "no-keytest" for ECC key generation. Due to a bug in the parser that flag will also be accepted but ignored by older version of Libgcrypt. * Always verify a created RSA signature to avoid private key leaks due to hardware failures. * Other minor bug fixes.- Fix gpg2 tests on BigEndian architectures: s390x ppc64 libgcrypt-1.6.3-aliasing.patch- fix sosuffix for 1.6.3 (20.0.3)- libgcrypt 1.6.3 [bnc#920057]: * Use ciphertext blinding for Elgamal decryption [CVE-2014-3591]. * Fixed data-dependent timing variations in modular exponentiation [related to CVE-2015-0837, Last-Level Cache Side-Channel Attacks are Practical]. - update upstream signing keyring- making the build reproducible - see http://lists.gnupg.org/pipermail/gnupg-commits/2014-September/010683.html for a very similiar problem- Move %install_info_delete calls from postun to preun: the files must still be present to be parsed. - Fix the names passed to install_info for gcrypt.info-[12].gz instead of gcrypt-[12].info.gz.- fix filename for info pages in %post scripts- libgcrypt 1.6.2: * Map deprecated RSA algo number to the RSA algo number for better backward compatibility. * Support a 0x40 compression prefix for EdDSA. * Improve ARM hardware feature detection and building. * Fix building for the x32 ABI platform. * Fix some possible NULL deref bugs. - remove libgcrypt-1.6.0-use-intenal-functions.patch, upstream via xtrymalloc macro - remove libgcrypt-fixed-sizet.patch, upstream - adjust libgcrypt-1.6.1-use-fipscheck.patch for xtrymalloc changes390zl33 1678305682 1.9.4-150400.6.8.11.9.4-150400.6.8.11.9.4-unknown .hmac256.hmacdumpsexphmac256libgcrypt-configmpicalcgcrypt.hlibgcrypt.solibgcrypt.pclibgcrypt.m4libgcrypt-develAUTHORSChangeLogNEWSREADMETHANKSTODOgcrypt.info-1.gzgcrypt.info-2.gzgcrypt.info.gzlibgcrypt-develCOPYINGCOPYING.LIBhmac256.1.gz/usr/bin//usr/include//usr/lib64//usr/lib64/pkgconfig//usr/share/aclocal//usr/share/doc/packages//usr/share/doc/packages/libgcrypt-devel//usr/share/info//usr/share/licenses//usr/share/licenses/libgcrypt-devel//usr/share/man/man1/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:28151/SUSE_SLE-15-SP4_Update/14de7dad04474f52c41cf82063c517bf-libgcrypt.SUSE_SLE-15-SP4_Updatedrpmxz5s390x-suse-linux  ASCII textELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, BuildID[sha1]=963a2e0e45810b4b763bbba3b9abc300f1859dbe, for GNU/Linux 3.2.0, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, BuildID[sha1]=b40a8b86a7a8459e45117c2a3886e77418af9d9e, for GNU/Linux 3.2.0, strippedPOSIX shell script, ASCII text executableELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, BuildID[sha1]=0c8be545af0c630a2ce91ea153e49c7b9f31b881, for GNU/Linux 3.2.0, strippedC source, ASCII textpkgconfig fileM4 macro processor script, ASCII textdirectoryUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)RRRRRRRRR RRRR RR RPRRaknx@ utf-8982d090fe64de5a77f290cb8c9d2197f9a688d0730e5bf15518ce332b02d370b? 7zXZ !t/]"k%{)^8jI/B$Y8gQ- 81r,?֒@yfp<1@Ɉ]A?ߍd * M}9&t'כFdcZ׻7;͍:Ab o%GԖD) Kڰ{Vʖh<[ҵ, yㇶxV؀nQŸv4MW" IQxmEBZLpقucU;, {&V1eK,ށ08ꗠo> Az^-\ &]dbEcs\{K$9o_˅@UrGgӮhfAB+NARdypN~LRiۓPguqQ!zi?,}ɨ;ऻwKP; g@,-w*#kf-oMH~zfqՌ]MDQj |Dv"n.u߼O>tJED{DT-ZZ>^"e 4 ߍ/ҘGiX]зx&"-oDk*e:lIy0Er5"+ϼfش@;"tlI1U9RU{!E,2uy;͇, ...Ra~m{%{@ba$=XAY> tJޅ~o@:^VPKgЋ8r\y7z(nFE(XfdRc76?bDPXgh:=g)4 /Okn;Tq _ ke7n}AߥS]qz5?‡#p; >h9S DsP%3ӱ]tp-r/fZ9499Cc QX,bG5&pUidaY͆EKg@zPbʊ|<:z{ZC4p~|:Rlk7LТԅ鱗6W UݕszS(CG͎5Hmo'MW  #Z ՠ}/}P{ìO_v#ofŌ~#0JxdAM4koibpd+iКQFHACz.orB ;i48o2}2Op7xx9AXG6L8VZRI2ayý +do~b;y-\f L?a:7D, K#`p&{[ycSn-޻وe;/3*hnQX3Ȕs׻ѡ'[U=akP=ڿYWnX)ǐJ))0Q/h5TƝA~b 豐A`V8C~y~Tp1]bbi$ (YMN! 0!\wӊwƠv 棓x*D}pςZA/Zv6`k_NO&J]@0NhrM*IGha+5(89si6#$31ineYkB=$.Deκ3dt9Ł @Tr7EWa$ȅ)UГgcէ(ylBѫ̊[Mt*G,.=BbJ'+ ~y] K;x TmsV PVQ)K`lR=䚋!Н C] ISdJbv_*D):@WH, nY;UK2AVSmCTXzt^ e뚽7$T cF:z r[Q[Wϧͣ$YCķ\XH`Ŗ>:EX&5ܗ?TD+|OTExz@m .?A˼\`UG=y(}_([G{۶vQ),j79DO){#^@A2oM*B~wR5P[ȟ׮n%Tg5ö-pс.jQeI&{}HX+>>#:e9su B]=G~TI;6qlH?PUr@Нu ҐI2cʉ"BXDmKJ00=i ^H2 {U&IÀQCyϣҋ g38Vm352Lx>к6,2'HZf5w3pљ[ZvPR~$^q3ty0tce9vβg&Row|1*(aBbE„PoNun]sR+(|f’GQUST:^sEs燯u=iyJx[u䘓bU/sݰ ">v!<,_n1 ǎΌ][lzݳ'B:%L1eCK/FyB]{ڹ}PO41X1od!G(qɁ}h0@)zz|F}#jVZAR.69y5]5F/(5+h(Wcx?3 H ۱H*o^G ~;H Kđ\]Im e~ٜi^"&E翪@ wKցe~œAJLb?TJK{#}rA0֍vAI9ݢ%w7 }qg+闎s(Y= ŒgԐƒHm)wV3Vq12?a~u>aE њmJru T{dEjc=:6iydI<)G{xɓ^٧e*3>:y3,"TiZNφ:xi!J( aͲjO|>M@SD+ƶհU#OGQiaBi"P8#)Cڧt}3?͓Lj7 nF{EqhѿJlT~Bve?;qAMmZbDu`\i+RA=W0 852b|INZ5 J"ޮê?%x8ηS7S<"gZ ۈX//jW۸~*cm2Й=q E؜5ưC@,rek~xȐ~ )uw7C,@Ɏ_P-[eVKDv#T3S8s\[`H.^niXE:xT=^4|'Zc(0[L_EeWHt`;!>`]Ҏ"|+@̯{.qPj˴YyYD_z{wAhr 2_%'.9h :+\I`Dΐ%GvX>vˊ  (usBAp-ꃀoFcs%C4S4:e^%nN(P= %?K"WhԘjWBx6'^{1Xg=+OuY֨ep Jɺrԓտ2Aaz*;:lB4'B|d+ ײ)zڷDZBV CO [bw>7jݘ_>B|6x"InQk@qKef$T>߻T@ObE_"3!zxS9dЋLMxĻcbǺO3NPI''zq;6;N|5 "t&j/~)s_gLk%Fki„|us5 {羛i?{* &BQz;HcS%&&Zbnuobtksa`gHs&]\Z@zG@`eG[&;1SMm7 ~9m#DZ}{, 3<Ñd=iw]<(݄:2&f`ʯ7_ΟIwN ,]vUDɺzC0}T6`Aqctdl;gD=X̛u.xi 2†{j\T8Y i/A#3' `p%+ .ɖw. ro,'*@-&wL՞>lGh"*_Ic "QO']D Ex$;`gnTvc tU4UP6 >7fPjˍy Fuu I,( |~e挣dnFg%^ZdAŭn5( wS3x^i<]@EMU Q:q@XŃفQB)*CG_[2x$VwQYӤ}pjo:irց5dD r a56C,.Q7f4'l~]]tPWPP!tmQX#ǣ1VYꊏ\URpIf &]F_s O @l< C8z^Ñ(7&(N/{j6R>/,)d.}kz Zc;33mLlè|o$YZz7^rފ1>QT o5e@)v6^(J] "e#Qfw9w "&G1LhfErx]8н n<㢲ﱝ^СV.rS>3X,z8.\frdJ1&7}dɰ]o"Q).ȈgG&<сCa!?ҽUݡ'9ZuNv䖭ihSAp:RE!2I[6$R޵Wse%T5?xsH;}D{aD%|_DuHlthdd˃0V 72s%I$#8Sn[\w&ہkuQwK뉑 % - $wt?|IHȘPeDSX_s6cAOf6|E0?ܔiVW9"α"xbJi[\@UcWٻP)6B@tMGOqg_\0$nڬGHQb o)pXc(xE,,]Zk7>L2ZpX 8OķS$yUSMs]Nh&ƄTe"Nxo^?;K`b1e;ô a>#QL3s(`wuUe+~oLO`&:pP8#܈lѿīg`гÍp['YTW-t˾GP&"N\,bc?cIj-&Ԕ I=&\qK:TL@a8yfi7PhW.ߚX8Z퐍VqpFzشTɉEߨk->c|]N0'7`?8@bghF{TE58 Z$+>j'^Np]}g(}|C:'k^œ{/XB>48 ]McZuG@NMGp`*SYn`}kHuW& P~eԈ=zY;hmS~ƋNYS^a "(yg9p\v'sJ3HFv~͏Rn-_ \7]9%3%ԴN,td"6' z:{_Q(qB44tpEԜ2*sn{LAlOjRΌK͎1 1 J2Zkz%ڮ~v:_ (`1^Ak&3h#Tg"!}[\=7*5wuT+Ĥf(ڏ7Ga.)e>4g7Ԧ3S<|L|B^)Vfd)"Ocwakb­ZF\lhL}RuZ2 wF%MpŒIQ3y;ό-Ϩ;9NYDAجgMV>=*&%JNd'N}j]*qdt\O7džkBS1gӓq  1=jDmV_^FM+~5Qwr(qT̨fd.}bI3Y rѷ;q;5hn5ӟfr)2);~] |e6*2D\LO~~kW -q0@3oؚ]*6V& !&7Fq%iS3B!`m* 6SƗã$hG4v?_`~kk|aXM_Gv͂L-/WhMQ$@Hp/nz|KME5bץf;)1h~p9{Mn#UEz]z&ā2C { 1-)rp@+,#K]Y hj!NV]N |s=c=Pѻ~AUUT#lޭz .P|ď@h]h;ISM2LjLӹB} (lfZ}Yɫ2A-> Tdfo4-9R`=Rn!oAR[6+KEKhF#Rgڥ'#aYz{x1T&lYnA@nNPo|a*K/xRIǩUEAHu([nƦ|x Xh)Ώ1{-Xx ~J}@pjJWp^OQUƦPAon)wkM?^*GYKk!')A.Hqf; RP?1,c}S%liKH(GcTo+UēxR[Q9tc$;s2{˾GttRkTTm: [&]X`- 6y/Af0'$׽fNIo\Мm RlmMrtѮb+ud]|&aчɊ]^$E`K Un_fs ~$w/Zd,,m?$00>e+]tDQX|)%;OZM(`C0֚1Lk\E ޤNKe1n5wQHY=DZ4f$"y~[jJr5a:)GKU.tC&}j)`P*,:0;']*q;#NAw^s;. `=) |Nό8ה*)~v+GqbUD#"cJ!fr9V|G xF, Fp]6u(l_/ϤS7 rMf=ęJ5&rذj?T^NzWPeK0aomWA3>^ٸhF`>|i㓌o]XAW jOgxS$fkST`3|{WhxReAo2}S%OOtG"F݁z5К6ʏ6:^97+yE9K{w3ĭoP\eJ6f3*K0Ȗ𸕙ݜ W]a/A7S(NJ-{I]޻1g.%7_}Ew ّ"_`|%u7~{q[tUdʾAOL&݀ ޺&A1@Ꮷ/Ǵ#Z0T`׹X>B$ (a9ݭٵr NɓB 7%M:i<ۈ#ń>ʾWgInqz+nA{eL2'!^V|!gV[V03Z [M,'sf:/.'}8[[d)":ѯVPX.Eζ:,Dmt묻 lȀ Tif|sVGgy%Ym<,/@=V7UݺKshU3:nbqZ(ywj#Pw&U.׶6 8U-?7f|0)7%x@>w.A钟9^&@PŽX=s gk{MoK̨\PV%[dsz`CArzKTm47tdۋ\ 'F/ "]^GYyg[kU2]`8 {%He+=]7JȒs ыrXF[lBz÷3d]R/ ⥑ ~7NՍ$Dˢd%y 9?`QG}^-_ȯXPrw]d8:W} Q2C2G#%Ӳ{ks$ji6/eL iD^8N^^"덣5p8s.+-:TmԮk]\[3:AM=hJm|HHbP \:JC*˅ y1bվڱj#n0h$>hS 1A7n**Wid@)#Tk93wOX,uLпf]t? 3uk̙g:+d>했1{ ٜuYM )9ϖ`bk$oנoDpAr'%q+_de3 GM>|{N_ _Ƭؓ/3Z0gտcб/W0w2upJOQ58E!6:H\iP%{xO3ʠխq̻Ä1[ ?paAԗ-&UxZMSMVniT%\&_ \̪8e2 _kɽL⫼`/lz@ɯ_Giv! rԒIJ?l[v- &{BYo0?tyfv>"bM-1=8AbvB>.z㙥ӷq^NX"0;.'+-1"Fjca:;c"y֢7)& tC̏ Ҟ] ]FrD BkG9,Cif~wvݐaُ/txy̖޿FYjW7EҵvrdI^y0J,a$+,yľych/),4d 9'XuB ~l1yg>E kxw{Zw]vLWP_hR ǬbCX6T;o$yQx/r-`ͻT)/% Y;h%C;EPʭUP1ba%XɃ8%*d7I/Y~(Ch1?y .sXdύn/;T&M))xWZ b[̎ W~:vs!0^ m䞍LEHf`I9$$h.0'ءbԹK؀@.uLV-AAgBq؝;]4bI{wb1BPbs祴Z;6kfn FjDK.VrvJ ,DX`QZ99-ͣ7 ۙ(qIFͬ)nSIq'OG׵d.j)P# scA[kfeGkUx5k0;},B3ՖF;/nj@ $h%fV%!ބ#2R& 5XleB/r;}K~2˒i̺AOG4EݩML>kE»hMz$kddhG @1α?UA l_yJQ&{/d{/;սM J]7%O? o;LYHNˢl_܊:x'%CGYWaat`I$j %tCqnot4ț TDɳDq/x1=ijyfHZe! k-t~OoDTuVA lԈU(ZA >C=+;7_ê oz^^vpvH, tQ.=}-Λm^<_g1b0m'+HQpLxz*6XC3!f4[Tωߐ驤zWC)8S2<bs'27}LF̱gX0"e]2 ٝ Q]>y7/λc2oG8aCsst<1 *R&ca776F' ;?r[P$O%?~BO/hYUxʈV> #RCl{u}`Ƨ%a٭-*B$Z )˟@Qy%4`lDg{=./E6#?')R@FBY.c}WB?;~zskLV{=+* u[_[\ك=-HH)UC*$rWr9'G5 N":pw :0Xl4~ۃ؇HJ$8aDT MHA)3y6E^?-sK3ڊM#p J!naزlYdWrfIF%UXS}g/w{&#)wS h+X;a?kMk9 ŵ=8u&( 3nH*y;BG,ܢe[yD!}Vϓ8](?ymSE wA((hwCLfk 뮯m4*m oJ ^>+5>=l/+4n8ɘIf[f=q D$SHOZ ph74\AfR爵PЀcǟNτCr8\geDKhSP᎕ 6O\gq)[15 /}HC BslHyAtӌ/PsV=#. I 4[Nt*?%hCfv?Ə658#aF'6P%mNHE;p6J170iHJ* $MbLi%M )f 84wJ!K\ Xyͷ39,_/ %2W-А]1i W=Lg=RᡖۉGw?k𮼒I;b|/rf}ûbhlpgJi/:_daGPk'G4qy6X^ߌ-e7Aף)sb^Il:/GoZK瓹7&!~cn.ѵy z4/>%;ẍhƋhMm0xK:̼ Km /s#54$DWHK|>5׈:4:T͡1] }a.l^zmo'SvW^GG^Oz%6u7jۏ ݩv̬q7pΟޭh--euHxbs%ﯵe!M:ggE a]uWǠS 柭VhT gvQw \YE2HꨣA5(ǭAR $ExNÚVd(e*bP(8cz!dޤ%?J=;Vzyš#kB<7xA?)ZR0XPd.( _p^3x' q҇Kzb=JT5(JܔBb?PveS Nrkڞ6fwv|r)J^zA2?Ss8 Ԡ&gc_ɳK&[Ni{ xɆwdTs0u}qG@χH҈ؓs2?Ë9vwvxp]ەH{O]5_Jbi Uv[8xˠm/#]!̰ia33BX~7Y+}}eȢ-k)DŽ]U~hı'KNG+eDQNs'Vu4cڱgoB}YQ0~+IKD>0`oUBj)PjYNRj(ZfNA.4 ed@-Ar ˵3Z"Hmַ־"6 e4 b2 Nˆ8LlhV$,mDXAyt\h`DB؎L^}PBgϒDOVYTl`.Y_xT~,1Xxs&ЀL|Ӿ;cp>NvFa&R#%mx6{_}u'@BJTu;݀J'$0 kRF O[eY ^{Mu504͔FQ01vL̥CWu#1!PX`~vQp9Wt%_ #pbvprFCbܣIkM_ykAÇy!XĊ%oPn6gh4@Uf쥌'qPڽ{XN^^F--'˜/[r٫I+*GVO;`*H&? @Ez&DޯDGB aa1.իǟv0Z*?W59{5-ieմA󎝉7Bgl-a؟ pXx`k)/cV@?rMk`/{i7|CcB#mm0D1U`zA; I.ֆ?:kް.r;3iHYj!r,J)chݥ -:dIki~c P!3*z0K^X4>tO{@:}??כngb"Ux$gm䳙Pd8[$Ӡ:&:ɍ6ҭu ݙ'9^kJwK:=s!INd:sԩ9D#:B9a"Cκo0DD m isV|jJrMlH:)dO3, 7ð5B BC|j=Of(q^'p1r+<0UCNqZ_9nch Bsc&^{}/]b{tjܳKŢnNM:(\־X. /j~U.Pa8k\p}^k˅ :ڪrN',>+yM;1h@L0M ڔ^eH̭=G7-vy}BZ[.+3؈i@;9YN5"(XYo)]ɇ)Mdmw;Ħ2muJ WuP)~q|<&شJD50M_+sM#4 *AO脜/Ì,~8̱\mwY}qhKV3<ޙnfxTf FIxNGʰ=56-veꮕ8 5ojyJE J8L&(zyO3^xhӻa\LWxI .;^̭3EN<hmh1$x--d;OqVx3??PC6eZQY#M$'g y">j̎.a-R`Qrele3LENQ&2ZƺwB>D`]UUO_sPȡ럇F܅Ya:%N{/&.x)&O(c*,|hݟMp}8C4@dqf[SiTp[ꃻoJ;*q4 . YCKS¢GĻXk)B) ] !hM}inOkIMYeD$VsRY!&.fm(ZJOK57S .,rwA,J6$Z~x%̓6MCT[na"T`1-PpzLi+ . }F uZqĜa޶D85`ǽ!# PHJՎ‹AwV/FKs3TDVj>GtAFRQ-2$.YJՔX.흸{:!ǓN|\'{=uۻd2Qk2 dA}B gΰܳ%Ve3_3#rKU2-􏣧 \lUrbu'+#SbIa  bnqYe5DInűd2f<>\bw(I#4`VAv@V#!ytM.ti<`WzXaZwǑ|ouR9V+a}m B%df7fiaNwXe;֝ $uH. fy3zW8E=q(Zza3n  N<3'&CZH<^ ,-\r;py M@\,;ibrq|#GN*71.h0(\_rC 8(N[5IqRg|h@ @ e047}FhKve;SH37nfN.8gp$,$[?2[U‰ЫERʮ&'l*qcwO [,S0 $9;̪1~rG9vPx uV` ,$ؽռY{$sȃ5WPnZ JnTM>ZQn3Cii{ TPB/uYk?3RTS :>pcbwI-^*sU\,TFưeYycӴ܇;'},v.H ߩt)e奎:D@DcҒ%AtonsW7aQ[N=U91]P 3T-~9e6Nt;쵇ASxXO $dB+D>^3a`!5Dސg缀zpXТ !'ܳR+ h1%ib>_4ΓщPiJ,4U;\Y9k8}E'u j;L SJ[%8O?͓2߈#o]mEJa y7xa!kLq_v;'}JkȇGMBd/bd5~4Go@ /~kȘq]s:Pac+ Kr$dYڢ%fd~ =Ffd~V2 .<eqŸcjʮd|g$~З:E#ks=yOWTTܤH\/%z< zQ_< S;t*GY  !`[ FFOBO)qeCq;y{#W | ي$)e pD? DŽdF(GGlU/ hz0һ/x8ҺY3:{-ʊ'|qY4nB DԥIٌD5Z ρdvH B3nBVvbQ]սX5ϵ}z-Hߋ%oQU>҃)a*ijDYp=xH7XOBN8W3C³ʎVӁklG|1BҡzYv0 ՖDgHhY ڎ&?kfκ +J_F-LIY#\ \CyY# mJES pL_Z'V4ܹ4S).y-/qxWN-r;d>yftN$e<=Zs tEUnx>r(Ȩyt?bW`4nESt Üwc_$K;&N?@EQr٬܎:_>*?\bɶ,J0+6B~4ȓl@ߕzhfʂ%Њ.2+3H&CF'D+Oa`"`TFr=Ч4h9PQn7\~ Ku MSVi{6P ]]tۿZQ̓ H ]8KyNDW2f, to0'Y?8@ԅmcyQLG-1Fyp}55F9 >TS-|`"r1oMCa|<8U^8(=g*v$\6]d bd\F$&q-xb͋kIv"bw.\i{c|^%K5ݵp?M G]a~Y%m(a.ܧs?"ya| ;>{8wWb> e'JzCJhOOWY,TOGzs/yڊsf)Fg΃PI2x0vr{IlZAIOߍ9KrTa@c3B )_a@P|~ iQҹ>*m1}d*<-Zgv~9㍞j81}>cA 6q! Fj͢?ԕ}kK'$|ԧd"C8D0&dZKk~k}ʣK,)f%!1Cd[s!=݅I֗~  umjͣuaС@ {%RU‹%̞RHE{z$Gw(6^acD,ɨCiһ#T PR#NQdt1Ea$ TQtC L3cr44Z@V_ɗ*5%够#|~c7;5Q 2{[_.)9qtp@=wn& k^%/t_vsNksa E$͞`6bܻK ==qmق#AGp& 2M`PDKҊ=QoJʩ.&lduKTEiR8;#<ݛ㊪&%,;3b6}.7c7;{j>]y"|a2`^09S#!g"c#En^hDkAȧk2M|j1 Gk:"jjڥb3!Pppn9~0詛%"kᎷZAetȁpĸRĻunVWĶ;NL\щR "ԔZM "ĉ0uwoiK4[Cy[Sh#ZZ k: V+A7W&Z&ӣP{(1h–GP9]=UFGӰo^r?69PL6[%(jM0jL =2A y&?ួ K`j~LĬ۳b끘J7v.*$WsuXvJYIEfoh9JjRݙ.VJZ(֡J=^ p? l[|JQ9-]M7}+t2RKH_)gAȖzݙWlsY'̀|'tzixJ[_S*McП`$1%9XzV&%6,j%S*~xåYua7TQ%ïJ\Ew%br5 %j֙^{deUUY4B5=&"QGi.38ԝW˺Z&P3-_NҠT~QX?QjwmЉ[IlJѰ͞.p&=fӠ6NcHS!U#\Md6QEM$jTD}Vnlj2:X!5}2HiHBEjb1ueO+aӴ?]8Ic)8H d@_JgU;Қs ^/4m2v]2S9ɕnH^asm'@s#O>ioEMeS9LydfDɖV*Lorl_@,Z:<kZF]&d.kg@ɗ:SjɄMD6Q )}$zk&=7"\ON>qg5]Ug{"%(mO|!Nic51.eg 9/A*jc1;6C*ձI9SWh@v'=_G&q3Η!JK {2*$K_B_^SdaxzqMXDͯ¸'`GqJ,MIQٴȒ7>q`==nQz2{t-_(8:Xj]tՍ`w:zqQrYcAk -1Nlԫh8B''bF`,"f4H l!S GFl'VADf]zg[*4N2b6p&8W$SQUɠY#krH,4YM{](hZW~[F'sʮWr3%䳛Y%N# ?iZy/d -> j[eT^N?L6 h>[eջ4}T|VTبd(;fmF ttVCueD] =ɇNo> fb%e?2˲ ->-Bj̕w쾂|(H T ޏLNɊhQyC(`8S6)D}ulɷ'+inE2)l@(JԁF9S$T&\x!0XTՌvcZnmcwWɴ$m{#8Lj&VCn&&$! b>;to:*@Jt89l0)=2tt @adE[ u8g@P(O ϯVGY"&?yᨮW^(Gӄ#Lwcz~BQצB dk? H{K$Fy5Pay6+6{8KJl㖒AhX$2;{ ^֬:;tJmWKBY@ȁ2;vSc6 ]enT֕-//X2)LPY/oÍZ cǺt{)m{'QSi$,^;cNzTw +Bx"h^舾âWQmYce@9"Xyڷ5#{0ʖ\rQsZYw$S],-lK*5 3<40X&,oq/ăii4#FN\jSG1^;qlʙ,za((O4%}X?%.'S⋤~Na71㖭Q0Zt@{K5?)O.[ѧd/˅m_P=@W +rELv:ҧ-Υ=&m ;jt%?1ָdCnaN{|Y3 3sDG;5\ JHN^־hezh5߮-?o4ՐJ5f7FrtƢG ru@m)nu6Utx 칦2bi $n@)MtXd}DUQ&HR ,oH/긡D7½Ӏ10ɐVY'Ű׬He1S&R E䒸4rPz xs K$'f<CK;O҆<ܘ6q$3%$?xd f@zbbT9]dZ8% )9emm/ky$ ~E"&޽>CWp<`/ʦ-q;50x,"7,L UHKWsD}Y0lڷlu.\Rz1Bs-aTPG%Lj0[Hi6c{ omzmVs)tmoB"\!alom󵼕^@)D#&,!oI 3u} u|^nBl~8,-a|c6zM[B.(EΝSa .( ӖI yp qGߧ S,dƏf tznPP6bl4|KgΤf‰9eޭ@LֿtJi]v1-WpH8tQ>See_)ZLB0vI{MsN"9bc5~]mQUL 켠C8R\t?Hןq@-]bf:cms$ aw"dN#b\O65(1HdܫA eKlK(aC%I&QH opAcPKS8|v  8bSPD9LaLdrCFKiרS)T*RxmkR=ӻ"}XI  /ވbvO A'Ryz> /,h]J1,'K*0ǘ Hսǔc4S\ 4&,u kMP !6`˜o?a{~[pΟk59B$Κ%$bvo:'QyC8 "drS"3`ƑWA3TQd~,@`zQ$^):2E&eչ|$:Ԡ/<9i Z0CNAXq?XӪAۜ!a90 8)#=81ybp;#6kU7[0,` ;(B/!d: -;6׮Ia˝xAmbLC-%nc\p9i{IoA {e<#Ss|Z!䁢P S]g-} ǒfvJc D`'X ,4!fyW̸_u&׫X7DaBr }@*]~3'.">pWDۜ=keIdUǚ<"m ]1$JyD$٥_-(jdv=pr+*"Vf.e!Lf_.B^bn9'7Ok˞B=D Z$²~#1=Og>p;7PXٴR TOL- ,Dђms".PИ́VҴ~H]Ta.ۂfvzB戺ټ>l'IpF.̍ơj 6Zeۚ8E8*r:ze<*P(W+2 v苗89^>eV*F3x g,߉;ZRԓxSM@JS,^6a)@Wsdutp}҄ʅB>3Fl9Ǜw?VIQuqU{ +j5ھ;¿xh+BpIB{~Ma@HTg}`eW5zhdn p6M+yCQÁǩB)YoܟTx썷Ziߒ/I%SP.VWXbqXvЃhj>}>hQc9 Ӗ3^l9ڍ 3Š *\4hކ Jp3sX;~ GW!C}&I7`Ĉ {}pEܚdW.Ш1mw#Ԕ V*}P!Bn+P p/Q'{ lҋ/n힓 fZlg/N bYܴ HW|Rk%SsqcĪ{Z(P#1R<98[nO>G|\v.}/,A y|j7]}=w~ڔ:Ef}mLO3O9KfmqJ⑿gtwD )}Y,:Uᷩ }}ɽPR*ZFK,"2ړ23¥<-NN-9x b*.\|{n᫧ sHUaڧ$οƦK1ּ\ї֯%-άyמDHN F[:7SEۑH*ֺ؅DcB$svbp0H۶?* ,{=Ɗˤ*6:]w<;4KDJG_屚79L~i!B',!N8hz =mx}Ӗ$.*U8g䰼U]i&sU(.q ugm$/֭ll`ت. 94%lh1~W~w9dx5)?MI~TLǬ4wA@h1=f5T{B!!uSڳ]$b +\rАi"iwQ4?ׂ bUNK2TJ~o޴Pv_Vqe&H=ӮA x%نb{ ~#07E. ? <ynbt[=q,C)I0]{ qM`b|OL#8;Gͳz0]} 73 C,gzgXώH:AX ?009p:~Дj,k-h ib23sC#]eOmoz$݇ >5M{_V D=Qrg\uǀuOh|?0WzO"`]ђ`tp.v3bϨ_ίr{ַ kJQu sc@v2-wx>X*WI2a\إcE}A̖s1wFӬGw_OzQjRO='w)]A P2k̹Nvf6-\z&k";'t.ù,@.hnY`qwcK)zL9:?Zm$!:TZ܂y+F?" t̻ .ahM,6q^s܁^ LuٻaEVtO N eЦ+ ZV? \7Ih@IvvT7 ,h75L7pۺwqű~-UZ`kWYQ+rFl7Ub DU說 .*XAT[= 3/$ s RE|sMI+_q} #vYΎӷ9~&DŽFetGJ>@]ٺ3$a%ɀ> tz`7N ץ;\1+fW-8)Kj*I J8.ڴCrfߌH1S;Qԙ9m$]ͨf`TM5%!13$ 5M귊f PMs:Vvm"}HL'y8?қDNV_)%V6.\#Q8{^_VN^L*)s!_fO i# wƊma- ٵ7ކЧb$۸WS9[cT ?1`Y7Ǥ%+ݙgSH_@㠃z$CXŐ$1mƌ ^YY}yaciFjjSD{ Q>!1U"b 1IGw&HTJ¥eX7:Oȣt1%+lǀ"'M B_F(?`LێaFb!$2Hu5p#6.Xi=B =CCבEu'iӇ J(mT_;` QyjW:w$u+rd4t\ePrҹG~4ps If^aͱLY4%a}C/Z.X%]|:hkA5'Q FY )Y~V0Oi klϭmwI(v#Ox^c BN=&;#( ~Jvٖ z2Y}܃Ȕ*aTa,hS̍oSVE%.,AW,  !JS{Ml5`So~nY10<+dPqѷkD^߭i~Xl 99&pE3[9G#iT'WH^\ \xW6$+A ԍ^bwGCD2ܘHzq#EA9[V>;$/mYGIןgى\SOL9-mVLU> ;;!T_~WprZ-S';~+! 9W_ٳPo$.#Syo`q_aQp{كz|b].wP1?#p.#fLCBoP8wVR;0/3>U&$"+G$ڞ_S!.v;rƭ)E })^@ AgjRq,Sш9Bv- oJx= Dwi!F'՛bzgZz5$ j2?+S4k? :vv_"Cνrj&wsQU1;*=:*[z ͭ>kփ*?< &ze?+9g/{ݣ/E՘mOsF0\qBnooe;4g"W?hcŨ& 9rԎ&UOP1Xݗ>a$8[!QSg_ u´V-T:T"X 1i#veܝF9A&*q 9L8;dvQϓr]wܫo&S"V|uV eM]¶8(~&Dd~ :!|+8~ V"6So{DGbo>]p>݀ҟBe*!g!Ip9tb&UYw"jtupnOm_'yep\"Sp ORng= rGt[hrܭ%C3 W1ha'I7h_1L?Ia6X>rEu@PFu q\&/A w&̨t gCm5%f:yܙ.lF͋249o=Hm(cUĈq6olccbXjB2+ckA*lܧ9KBhG񽚪n | jQaÆj`횜XZbXT2FKjRҠwWNI/s1I5 N ӹa3?:KK"Z“2G=k"mdF;_nMZjmou1g'<4Ŀ9&ȅ?E dzN1U#N͡=j#s*b)T|cy_nE^zN[;e_ hѳcdW( +w_e{+i~54vq2xv57 MH۾Жb[P?؍GMue$+ՈؼnOhCs7*&5Sz0h8T ~zWj]Gsy,Qaп,Ww~?H`HjIÚAKxmGSd|\o6r a$I7#ZN%Ժ;s1Ht)]{0t!򼹯>K"ZUܶ]9DAhx7*G(N >Dp-ȢC'k8cwpacvAs{cR=0کӢJX,vטMz^TrXLRAH %:#3V$Ewj̧^.ioF/{V'DϥcCMcl#k̤A-Iشu7U@le'+3g jA֯uپXCR2'j' O\ Y3BIԜ;1QmOFǚQ=l?m˙Mj ZRAn{廠&LjӮ*eYq|Qq$BG-!߶Ǹ2;Ҍu`ۻIF;w9|8lXͥ,;ya.1:>[ߝUũJ&年R8)RSzxb <XYq\1pZގ:7f{=;{슏WUFeGQ%Ms9irKL5o\Me$r.Œkʓ/< E&gQqh%p:~Xï\/Oͥz7ףL!0Ke\EJi:ΧJbXMuԿ,BH،@X6aLc?ǥtm5ؚ_~h|z] 2pXbfyqRW&-ptN#uKhYW,; +lZ*jt n#օzM| Xǎ 2X V7Ft7 oҗZv=1[c5Aj.Є@+יyվEpIh0:|u@X}u U Li$6B_&qVP:]k'pnӀ9 u5jåmQ˹PXjQgWb~X>}tZᄈ-*i˼bm) 6x*К<1:؟sW} ͗~Bml2ܠ^`NHi'VJ_>]7lCAPJ"(`1v i#TrHݟN!XA2 8/tj׊_~J嫧M&nruVHz-EA0m\ w{ELS#S*A÷LeᢟHpԙ%VAOJ]Z'FW`5$5eu#x1ql޴(LdHpХ1(edܤl{kdX^( {R%SӨ&+sAO?{ElTAa>ЫKC!2H;VdV=o^W1=W?/L((FO r X6RypN4/vfՉ\ON.WOA[}U>^J0+6YQJX 񵬄ֆ*^Lĵ'$6!jͿiCG\&A[٨_7WIs4>k׋Pn"$:_18'˻L2Gg^ٰYг6ѱӉX{-1v6`m5e#ldJV-о?L1\Ǯ95Y$ :AC\d4$8KrZ~u.$“3Ef<5?~c\]{LTG.`uv \Dx7Cthl.2gƩܝ>2.ue12Ү|NPї; w`;wފCﱰ> ؉W po+<\<ϲz>Ėkr'|38? ̳h.e6>/PP˺Ü^=/Ԙ1صͅ7l䏇]w9hJ~+datQ Cv2:Xu3|Aɾg]~T`{Q6/^ IE7F;ȼKm\ HN|ӫ(۵);sޫiPmFZ|"|8 ),=VOǤj}" r#>7ĦX,ETi. t `[m_zŴ.%k?UVtnAbָ"t#/@E9zyv,uTK^7X@;_4ֈӈd$[Z@Y'Wp ;.~r Tï$;:z}uQ,0Y<|n}d#:a}Fi. )7M 3nI8J\n3DdVR:"WJSOZ*^~_cI{*[rMosɑ Y6.,8 d>kļteF'˔6PGx!0ꋅ^val$ C E֋MYeb?=Μ:[nAW3Ķ}A*Kuo{O9t # w!)ꚼ/lE2,gmҥTJsm5(ӭ F0Ktq>TX& 8!|*ѓֳh@&c lɾ9PN5C%j^Iqŧ[zC0nj׍zb֩n\1-~LR* SkF'c< /]V[RsF0 tlra--lnfY_S~2fVL6aĸNG nj,t15fȪ\V$xH/"q6҈`n[Bgi|K{8n}'Ao[ysǨq=HyzTWH׌#ir2i(>@/{@,MQcG8E[Wԅ$IDǦg;iQ~إE|nعťgX?-EWƉ% 5*򤱿ﳔm2=nG,V>k_znu}8w%JYW˼+0,iEl;<)).lz*mΠ{zj[&'{]ʟ/FCj}N_U#4{qn[1@p^f Ԝi Ҁg®N1ˊVNټŦU)lH~+|k8B6W!+Q!NΨpE L4!iY[{ #Cĉɐqu60dXw6B7mL4Nvc/-('*p+{Z$%\P2vu#^^|H :"%{H_qd3!74kq՘MKߏcӤ*=)B1hԻ%ZKN "쎼iuJ=Q#&}oF%FKOS`)) ?RB!Ю D;y M{,[$+iM&e09`v,ޖmv,'~]]*b.F;`VFllX3i%])mRR[=AmrQ%ld+@U{p N+h2aȰsov&V(wƕZvy8 9myY-M!3JOdt7J0[vX1B%쓜gKdi:dly 3òb͝+ $%lyq#zZEc'UiFddZLG#ݼcx67 wN:bd]_6u%}Ƨdą?$Nŕ P薐`gzof"*LfȂDߎeTFAx[1&pWEyAФ/ȠѲx\KQ*FIg-%갉ͯn,z.<59pM^ɂ8v6:y0E-&w-V䧡e(3I&^;DoP4S Ɨ v]i` VXՐH2b %]@mG*ʔ5l VO2wzyܮv;I:"4#D xrhDzA Be1 ҟUtznŦT%`g V#>I[L~x$6_%`N% ZoðB\ҥ+7$>0+SH^G-w^kEZ6l+\6XBrh.obLxZFW!(JS@4fl˫ |a6إ  ]5_a@S(JJe:-c5e;|b?;G$˧Co4'LcGvƤa_$jpL~]0Qpi|hg H⡂uB"1_Rps'DI"b `дcC1Ad)im&( \'I}q/>0ll`jHXgoi㕋gZ%K/($&}EqXZ9Sc:X9$ABm7?1CIڸ3gGlvݺ-\PKmJ8mM=Zx- 8Q2D}n"Mb(4 } 4X%? yN!.1F8H_% tkqm 6]_ 2䂢V$)ma-hpeyFO9[5A4#Y9U}\\f%Ŋ\hnuc+S<+$A_Ss[i,s wKi͙' 8kYʗ~T>V,= >S0h ?UwO(nM\DWt@ HN~XRaI2c:SbLYۨ+#`T O; 6 KXanoS)tbq~'bj0; |{ \6 djг |7roR^7sV1GfQ^3C` G=V֞7ђw)W)*5%U ~ 2r7A3o5w(OB_ [r`[IC-M0\WC5SGmR7ibZ,%r c3q yؐID+##v(NM:Y;r_e 4C+1*KlWTɔ@~]?$(1SWg-Jx߀ίz1rZaj<DoI"Fه5IڦW 6A=Ex. Yv^|;<qoxA!nxoɅؽѥ3_F^^hN7]H+fi+Q8 ȉ1g{Sg͑@0S9H[o.|H@V2i-ˡƚ&55Z'~ U򴉷Re}_gC#p$5i$`,"jUOBFâg(=KunҬ^`G,;څ[L7VTw;ĭ˝SUWV%mdjGN"|=јYj\ px7CQH$dN%1~3LYm{]Ow:33ÕT滢qVFΙ[Tk||5(d*Ea!ʸs^wB G#PNT^`V^zD{>_M.rKL$ו.@۱zXx P\\kfHDf$of![|=CJ>d|؁ĔmDPC1XAߏDH|LqD!Lk9p8**YJNIV_UD*4dœ^jq9~aDédb}W}h(F. K}34%TΪKxٰmMԜ]w{6q9^`jůŚ|'>gIHxB%|)/>JtQ.lU256+Z<E?͆{8 C8{o\l=] oȻ#z-u_dgl Kk@,iZ83PՓR]'&+m(o]ЇoA蒟B,k+0XPi Tj򫢓<C9Ä~~{ˇށv2퓞vF;H+n|]9爔 ]q'a2!r ˔nіJRw1:܈Q'Ǹް;sPӛx|kY>ָ)9Ҋ}0o g~/SjK~vdo!C< 8v53.?p(/4 @^kG_nDN#S4^wZ盩[ / 1At9o~F^:2 [ I!buL&T=.\'뷝d7 \50v>-D`k.?4!7QحxAik)+́d9 2g"Յ*ѐeE8M)@ »uoi iejo'e6}*Yj11Z* 5m'J#AѾA^L`"} DКFxӜd@_&Jgw.nN$coO,1 YKrn]L-ʽTbS2XN?+03)n|3MB AOV6DV_d~4/ZHo* a5e0yΆ(a:'m n8d_ΠRk<1hʯ)ɫ NH=x4ν}I ZypO6P]:|oPeI{I6n08`D[1}2aj9$|BT >Q aͳ?[3-;0GPujQ_C6Ebx 0:j=Kty@6 dU+X^ h7'hc^UFA.ŗ2~$YD§ձ&A∇P6(oh6Z.{p4}79Yt6Icň`|MР 8*>7}pzܞVS^/wf>sxe8\lPf_Zh= vyh8|[bԽ RLE,!兦@w7t'x;n Rk 8>B57K[Zq@Q>hݮ| /ltu"P[G!1nva"kcacM7&9RG_uFcىw ut[C ^VU'&FVd?$5b<>1hH<[`33ҸJ%qkuru2F<,&l~Uؒ8z;"$o<6 {%3T[7JVmlO$2|j^g}Y:]2ᤗ,Hk1z2dɕ_J$/kyx0N`ͪ:[Щj5po <ӕ`YIx18g5Lbu<]N/+&^y*[a,fagE w?ś,"Pt$`*IMj4P˯؀`< m'/rL;jv-r c q6{\7S-p{a˛qmY',d9y%L#U/yM ipB`(G+ʼ=#ثP3Qfyv]C]Ԏ,vy!+VMp<{oe)UœL0d}{wcy)ʞkz.^_l=4o+P?̘vc^7+lgc`*reN MaTgp]7n[  *y5yOdr򘓣ͦpthI@c>-3P0-jX.GD]>P3v11' OQS%CX?'K Zc{ 7#pؚpXg@o5>ysivݟ$]s?Y- ꜻb-tOHD2 \WE&Qө`d U4i|t7=ky}~UG|89B>Wz ]#2]p(EL7 ծ4]f& g=Ty AҨA]Fc̮Z=MH@ۧ<r8?HaC7*yMЍr>~"TFH@x@vֱuH'g+I˵ n3NUzQ-Ǹ+(IISP.S* ɹ:b̘d)ٱ&09a@'OV8J{GakG&}t}r[Dw +h1.)0̹.t1'ua&,g!͢J]e#x4ή_6kx7`&,nLE\2fGxtE^jk,$@r? ,ei]37Ğk0ٝ?wC(.o!o1VQ*VBi,y%@ugAH̻EXT ne (ZBuB~&i$+ed eXĀPTqRl,6_O4@2ko MO W1T0ưuT0KkHUh< >-Tr&~%jftB{[w_jJvHl?` މjr:3+j ci'NNמW"t-aR,3ʋlU݇bL$r 2Y.; 0w4VF03-"yN M]BBY&H/!I':!+!(e ]?:+񋠄LbNgV|NWkv` 1S_lխ7i$yZX=Ihn:4t30M|W=I*I VHɾɨ(2^`Ш>x(tZ Rv;%Acoe1GpQpm/U*l'-ɣ tfCzk䎀xx<\?dR`vW+HV`J:\_Qq[y=(1 m^Dm@^l6VO5@E1̓/J\SaoH-YE0"k{ G=]wҕ{wGZ':=GH R4:\zgDp &g_Dk"ɰ.B8qCi*[@3|fg*Nbi< =WvE %gH!?N<ܳWv`P6~Xaȴ޹"Cu s^x55牱Kw(U'ބQqh=ArG7qh6{qHaNH!#,དྷX{}'3=$!b_"8+-Bj50yqG78qLr-EZu3] *AT~9 b1 *e9bN{ N:u=\^E*zH2MDt2㚘Lo }w@.0H1'cr@6h ;Uk\&*Mn s]s҉mTiĶ0U-<~};lAl ́OBZh|'ov,t(S :a]Laт0uChU[+VOciYIfq39nޑSv䵔q"#+V \B<00>A75fsZҾk=.4 RU|q/l=je[3.i P™"iDiUA뻑n ]{c.R8;LxQ׮|qmÏSLF2B: C!5f/)P $[C6(Y>f%CCK}h|;'B֟_"ޏK -v{ ƱS㦵(Ҝ?2. 5+OYzBVFbC32ٹ밫^i)ryp2%/ (? /toϣ'fT ,FdUEQŽa2Ku@`-moWd` kҏFb:a3O# c[V-rE1(?p)vd1ĥGT?r)3jzN[E7\..ΨM2 3~uHiy~KR W:zTǦ $ž}?R^-x߂#&e%tvYiֱ1ǾˍIE"'|^u5(_}őm7l>q$ il5XVjxg,gOՀ xȝ%0S=i.thڻc\A70V].V ƥJ|5CjAC9h[ѮO= gb!XB}PCf} jJ@/~4;_RU}Չ@Zy)]0onzxU?;?ѳ1Qot*25Nkaihr` f\ 6KY-\L$_U)4ۥ<]̨ 1s$XڽfLoۏ+{ 4JIS QD+ZP06IB-ĴBUnęLžTmr!s: }8cE cд9rV̀$ {AyilGTR?, })'gV?Ȗ"GD]{}T2r^٠r$?ItTQ^6 XV5Han7#mpkgR[ߗ` 1l5A;_ǫbQ~-*sD ,wag[]H䕍珣uMj@-(&tDCV%bab@k vLю+zApaUγNV^r sVpMiN[5~JQ=U 8mBUlH!|=8oŅdU*Z֚z_T$ONewʞZUEh8ǙlJ`IV6 6JSk24J AE y6ze,bAj2?-!\w 4 k?ep3_5eWPMzKr a4"T/pTw;ݶޣڳ +qwo.p*B원O=Y+QP>8-{TN7uu ŗž G4p8R1OrԅDRti/{ß iB^M0Qrp MOqH%r($'U8s/5()NB3$+YvPY W|Ҕ'c m! #|?"{Zy8?\Ea =ap.;h9"8g4G8ъD{+ZT'u\rp1-K k'cP|ma>=3)~HBenPFL /:ْubb yHC'nFM6+2]`+[UࣚY)v-"n4oۃ=;UQl]4LćCj siCG7^i6;| d꿖id7cqXC9|[jNfTBGr,@^lex8-9=@' a3+:ܸAks͝ɼJ^p2ul"w"Mpau|<x$Pn#V_ۻT)G]̗M?eGеuƵ>(crsDʵDZ n&idtZYN;.IPEoRj5ª[HrXC ,E R$3f0U ?i4\e_!V7\Tpqr%:u^~Fq@ha*tIr"Qج<{l`lCSl;݋?;/ԍ$)xr> +mOo4h7 Ky[Y:*.=lXXW '({W&duG_qrʙ2$p?%ZFQ ,bK)F_.w9F>;!fZ d$l?N$=$NVe6 ¦:QQ@-*-|'iyMbg&4]R,x;:jMs+5Πx>K' 6GD bQ:9S_:tmvڡn8[A!Cd-B_‹ck ݞx3i4najM).nw4X;]\Ulo!DO;¶%g1BI ) >{8Rn%PH7;"P~"(ۥ&iͱ n&>/x}!Q!~C$5{xvbe2bo uR_q%gs|;&;AiO AigXg&ʗD>\ )vKT+EM|DEtSgEd!kd"P)uddA'Q-*!80/a0<d{K~1ä+\k(95W?Ok clݜsʗjz(ָ>G[:TY 2776ɖSBzvCw:A`-Ip]$-\PL}Hd,V.>oյD&`sm{a/a[s|gu^ĄZa;-liU>T\ݚE ;8Êhڊs2c ~ێۛ8&hhJW:g\ݹ*I}_Lj$:;Y=aؠ ><Jџ3F- g)GO孢*uE*ǢG<<6X HGַ)E 7O5x.=Dkl5K~5,toLlk .vعu%g,74793|P3vV7daH,e^>[J (=-YoV,W:Y_k `r>bkg ؁/M)=! $7n>~(@/LXc-:nT H։To2ٮ!r$24hIGe9$q ϧ\zf]S9M!#X dש#+Xlc3o3/9-rk: +w8{pY z${jhw\/Y@n|HpPbJ욇6"\Ct6C QBvHI#hzDTX3APg]6P7MLcU$ܽ[Ddp @-,~C)S&=׿U{3^yDUE7`c6* ؼ^uY2UaYLJ#@^F^.%!Rў;SO{3`!$[MGakԇ biP<ޗz5q ;7-rϠ_ə^g3%\Yv(lxIlrhgNO$[ҷ‚ɯ\\fd5VR'"V1J QBR?pi+'PpzkiM 9-`$W 2F8{&c F)G=9Ոs뷈=%:~R5hlRcyvFD" Z~> d ȅ<<ȒY%Z4QDj,INql''t{>8XOj&S%^>`\)Y"QNI eR 2rzG=M].+~6*TD^lc^#cϕϜ=(N[7S(K n|~owD-D6o=|RLB*2*/rK>MK']qdF2+d?L Ԅ\L#(xB,5 Q=Ue97`-!` 7`(%Q]Gp )¤Km*S8.vWJf5k۵n7 ˂-l̺vuoGv]t7xHv^AO,DQYKMgN$.c>y@w,42CnR>[pP"Gt=,.'YJ}*#@MalS8qŁNbUD'S[0 9֪jT7$7'lJc_+pbN:$h/='t~@DҼ [`z=vv<I-'E {8ypm(ER1{<$xktӺQ~2n0;*e3D/U̹H! l1q<_i!f/"zx=iD|.+5{ru!rjV*7o4].ZS<ѢCf+"K@f1<Ն.:p p}\+G/qX9;R{hFE1z“#]"Ds Oܤ|0PɔWu`.8D8hPx ?EM2+r(3[ɛ3Ⱥei#eU?!hH.' Fx q=ώӏ'Jdu8\Vj ?ȳv6\ж- NE.Clۅ&#\O C2uF34j )Պ+w*矷*anϊurg [[״}ų!?fIG/QFEJԐsc<aq>Ϊ!ctbW8@_՞)q v)5DXiD1`Fi`Ⱥ}vU`_ȯXmvlQ-s\\Grtȃ\%DCK+c )/6XT'&M~F4?\͡;>gѩÃ{< )ٽ\!CJ^|m$B e1d`eHЗOt=+r B絚J@6ͣ p"sJ[T7 '2 &:Kz^zvNYn߈./oS'J>wt\:%)\z(N.b\E %yz[,|R!1?k\Һ} XV"ו0X~ <)['mN8.8fxaM+fe_1BloT4ru~r;d1Np u7*ܲTҫpoi|i@3$41ڠ; ˜(N %L}v&C  W5>p'pB25[hF l Wk`%Ti % M%3K?"ӕi ~E&xoKiD7!y,)ٮ?nj1)jqhf0KB( .MC$p`xg*BnYꚍ|kx b>On@NH-f8KR:vegnګ ƫt_,Do1'KC,n)̋r[d=˥4eYQj,v[և^;xߎ;VS Qngov 3\[Ȍ=ßh^I y)n/@[3E}4>|츉.ZR4\tNb{?;>jwT7 |;>ou/:^|=s.qs؊?v.ޟ}BoH_;G?Q>9qo?vN?!ҁqu^ Iu9-Skoh![nMg.F5vۇ ƭ]7IOpҰqQw:>E7Giއ6E8>mëv!L}tykۅN؅u )[@.@)0F띣K^*!Sǎ^DjO;_}"rvV{bn!wpn^Ip|Gֻvϐ Njq}q#UGǴS܁0@|pϺ2Ej?`z5.[ tۧn#6?ẗ́'57wW;tdnz;#Ho[=9P6ѥ)ϬwݠN i%u=|7SA:nQt/enzZ vYOOv0^D{86lA @@, 6EDq1J)$ڦ4L! \*| DFXOU 5*')]*nNbGȵTRX‰^ԊID<r6<>1k3+*c-Qlm[p$+p $U9D(hQi S[R+1˚N՗pO}s^m'[ٷ;j.||ߺ;ܛ^>Njѫ ">8q۵< H9/sۛ47Mym^d^N ]6v5h1*TQj,Y)#jẝ:B_p.*%n)PG^, W[x vmo|Ic = A7cpw†s8,l8U+65E#}6G{H Slm+p\4q;FB 誁S,d\8aȴ7cڏžXa7 _JD= zi@6ncڕSYHꀪ[uUw+:uE+;uiUK܅`YEE|[wIrp9[𹾝W\΋V'uF1rKCne > ^MH>ԱgP%?MƊX(mǾWuWAPt"x3AWW #XTૂ^ڑ+R!  gr"!W2c %vq%!mݙ D L.I,WRM-Ca}(SODߪB]SA6St@BA66裰Q 'JI :9tKbK%qc,{*@7/K F%~(dV'S ?O\נi y4pY;_ 9/Ty4*_{{SAo* A xn_dʨMVu"S,)aH@ TCW ~݇$|^ E|@Hʡ{Y+gcA3S~^ 3ɰV£M(kJ Z *B; G:1prcJ'c 1o7K/{\>a̻3R*;w 2|gِVro:#j=_"Yk;޹Bnj [r=LfһEOڒL< Co\C5UHp*[ ֻ_X\X[`c&WcS7)UxtӠ`ospF8aף+T!+WT(Vq\fy6TT-D[_qQQl1ZZTZ9scpX׮ѻPC/Kvb Wu U d@BI+rm q;Ɯ)v /?:cqo=WDK _SA1h`Rbr2!iHvMn>XIL[p".]] C0.!01*͙BZY{weXq+^az lS\ !xOijy( g `Oa=jO`) GlSyg1?#`O/3OsF)ˀ=/Tmr =:C1Γ{X|*MAzx0Hb-b /==O@wB71? @y!>@Ͻz~y<*Oa{C*?G5ylr\4m bG{B46Q~HH:u<dz4>Q</3x|O<{:y$(%cNGC@yA@ydSAydRPP~ qWxތ/wNw'Aa8+}avׇnhP u &ىiF§y͛u,$dUyzpQx_j˿ݡ_Y/)pCxɠNa.U={UhPr1&nn6~p@/ 1d;j8-k8Pk⪃=ƍ2L2'j8FlirK*n?p&Ӿ0XqvѬ{_/Q 񫉓7j ?~|p1?4_&wCg?|+)}hz+:h4ʒG,Kջx8 Gtܶtz{}% gN]rmY?8fvBRGTf[L{׼|r}12k_@Q1r*9k@XwiTR[~ Jqw/\N&E}9^7{BoUΫ 0=}l Jt:%WV~KFsc ^_6PcB:C6387"(b6#h6=nFs@+v{R֩(ϼ/v*dl!w[tɔl R)2j +?Ղf3_.($<*tL/>ChGN;|tnu|>5Nh@{@&:jAJUUכk=V{4ߡ$#]ܤָV}ui3]~_;]4^ݿ/>[}Ũxc|2W2:;jwܛ:bѨ~\N5g_\8H㟻/zc#n[xt't6O<9_ o^U{^:ص)(+Aܔ:λvwuqsxMGh줽r"C>6؀UYdAqJ'u0`dr=kT. ?{G8ZoU:&]-)2:ʟ2"g%T甁P0ao~'Ϟ M'EcsƱi[GHDK}_Q罍B4ՎΩa")u=:>4=/^|sw>$k\dq'5@4=hd0{vuq=~䁉ljϩ渧Y4tW_?rkMy'6 Uxw0_$9?w^93yB;F?f)*9bݎ$w WD''׻{?]$ΏSYaѿ_j𯟙KT:~Xl"u>ΥIҜ>LDuIJ-9s7Vj75f*u}AU\rGJC)yJ˺"4"kUr:,PQɫo]+ l^OI!mL16j7-0)9uwOrڑzM,(leN,VLEάnvJn|}_fobf~V AJۺ_j-PkZ4!Y\~L{FïxQ05AYIm\F` ,\8wVuޖV+ Ã? fNTBAFeqz4U4x]Q t2z+^??qCvuHݠg6aH:nFZ޻Wd):uL48F6?~_lqF֐z2_\,Wq _#rԏh55>R"2`)l"֗D)jV7ZyP(4 |zׄq<1 HoUp07'$ﶮMU=M{ 7d}co A)u-=PS:jel=d1K;/I+><1?] ΀Ƣ!г(N,R_xmaHE5~"c c j$v[ˀ}5MЕ&"eQC9^0l:rLl: \Oy7q6XR㈥%޸,iI.Jc}D%,MSh'It؁eBR4eq>bS+0[Ckٹ'vg"=_W@3?A,pv@D8AEq8\Zdnw 4r~0 {:H[= Ǒ,G=":\B71r{hqvfj6B;$| ZJuOwu S[.1Q.heN:$C^ra:mTn!pbvSN9Fw>=>Lvf 3Pg\ K cmXɍIqyER3rX\BKR4KH.cCٱuY?;px-* :͂ȍGsQubud)\Fh s".Z@HhfYtm`i 3Zv:tz w%@r,'H6xGRP{V"uO7Vg 0-[iFYV .UӃq&Elؤ]Z)ϛy3ܡXB嬆)SYwa? T f|l>y 70~Ϯ鹅ɽ ]_G֛'380/q`-$aEs> gr z߮6>Sk^{)yI["5H`B#բp,ApFK(89( vκ -ƠK:ʡgP O*]IVʨُ;g$/TTD\:uVhi5mSMbH1u/;'=5J 2kŕ}-Ոŕ|%Rc6b!uU&^T_D\-vɕD6.eaQ8*boCTMv FN'J ##6j̰ig"rsV/0Qo&W7?07070100000000000000000000000000000000000000010000000000000000000000000000000000000000000000000000000b00000000TRAILER!!!!R6ҌYΧ<-@AK)CXv ZaZ  YZ