nss-util-devel-3.67.0-7.el8_5 >  A aM>U]^!KCW%&]ϓ`[e/wXxLwu_,z J}Wh@}Hm_F=9kQoIJů|E#wU3lÛZ fB>/f*Ǒ0JٓO\{=Eg{+w*B: E G|3ܹ~5A fVFȡzPj)|00l4<a@E pm,Hխ>$oK0n^pÜ;!M4#<7`2x/rCQ * VتP3Y!|BkԨHe$' |˧uڲAIQ6_iYH.mq;:~A6IHl_+M9$lMTO<DhGg[dϐ\R8 ں({\s8{m:zՀ 8Ɣ++30a016d34459f2f7b25a32d89109c821a16a0cf07fc3c38920eb1e0c1e451c01d82373bfbcd72bf9bcd16662a25f6e734963eadaxaM>U]^4qx;P>U>?G#fckP'<^GhZME7TT<?/v8md^ytLA6?U4. gGӷƮGKm[cT}(iL "w~19 $ M:*A4|&IvkZ?/zQfYӶB1k+z)xlj{Y>V-&<}Esy4Pq{9 W@M/p9h khdDn eqbe2E[jѤEC$ 1cc.s򄺍!K-eZEik|kRlRCaZd'~;*~g1+3FG+ki6]]L3muzLj6n~@9CyK"⤧Ac" q-I7ӡEAYŜosgm4<ʣMCdJ7Hl+??H>p<?d  ^ FLT)) J) ) @)  i)  )8)))   (89:fmG)Hx)I)XHYT\|)] )^b%duezf}lt)u<)vwD)x)yCnss-util-devel3.67.07.el8_5Development libraries for Network Security Services UtilitiesHeader and library files for doing development with Network Security Services.a5 x86-01.mbox.centos.orgůCentOSCentOSMPLv2.0CentOS Buildsys Unspecifiedhttp://www.mozilla.org/projects/security/pki/nss/linuxx86_64  #?|V}ZfeZ} F 3*t )n,L[9IR `"HA큤a|a``````````````a]```````````````````````a|c711276457797496294e9befbcd44d2806282a1ff339a1310b2f7f26479091256acb4c10f2e2cba8e0aefe4688a16cf871aa83f144e4fee693a5be95ae12bf10c2cc1a442fa0a2c81c1908973d388255f1aeefcb10902ef01f2b99e0a105bdde3724b315716317d26d06077b07065b5b1d6460b4ee77e467fcbc0b06cfdf746af550df71e8d08b8c37c1e1365a216144ee9fdfd59be54073c34af9b263d576b39c7ccc03e9e4d129de4a7d59f139589f9ea67204d485187cce300c853597952b54f450105aabc475c487e03650cf671dec8f702c560b28e2dae3cb639ca4cf25e9ea8ac53462437dd45b5e5d06d9859e9eba64b8c233653c0bc75952c1d035cf1b31b62fb0b4ffc1523470c2d02e5777cd7073fc10deca942f284d394eb49c2c2ae4f83a9a865c080ea849f9e7b052ac02112b2c77f5da4b0025892f9f22a1eff069f7650de9d6e7307ac7472198f3d992590966844368f49aa2f81c2636c143f8858b3dbfa63280b653f1d0095b17a85db44f0f0bbb92f20996c50ba4d19abea47532c366186a691249d560c46b9ebe21c6590e85c53504969724ad8554d7240e456a192fcf430d552c419882cb03885ca28f29418b8729a4739773ebdc7698b08e790d7c2cd86cfad7a37d1cfa3d1ebebe85a4e3e731a55b0a1052af23fd5674158284789fcf82305b0c4d19aa103b4d15580b5ce6617dbc17d3177e7e3786f83e09177de2e19f75c2aa76039d19b4fdb36488cf6e7dffbdafa618e9cac3fae9002ffdf59ae0f0dd3f685e25e917a46603b22769d42435f5da2f6e961305ad3b69fc5c213922e9f2b9a653a2c6f91463ef01e4b7ee0f091403425a0c71562a9d263fc8745b06c42669dc4db48d20f89634a02b7bc83bbf40aab8b0ea72924a34dced0f3a5beaa1870aa58a6b894fbdcd3cde9e1afeed0ccd31d1810809f24bab85c510a27f391a27749304df24a37bfa3193f877bbce858c71bb7b4c975283bb4c3fa494aba1901d99ad8680b7152ab05000d021088cdea3cccab11254a88b59d530b9183b4b66ab56c68820e90ea0bc841a64d904b317926ff62181583459d90e5fed59bac300ea7545ab24e8b232deee3240b3ad3857712c3a8d46969dc1e62e41d64a2105d40f2e00d0c3efdda4137841256c21cbc46f70dd182778aadbeafe51f6561c74e52d95ba9d92c158aa9ac5bcec89912a31938435536f3f34fc467ab939d50a84925ccba8b99b04d80bffa9f1b55f5d3d0c27d2352620a30161dc3a2566f674df9ee6a2491300bf7213f155c926b783f5a37bbee090344c71f248736e5c12de750c10b8513a4b197e8233458cef82379e14b37a89c9e66b693330d538766929d5031a2b23d4b15f440f59dd1128b7c88acea789dd42edb47eb5fb3233c91adacf05f7911c16dd5500bc18c0ad4e096e0c18fedca3d8c40070a92ee937af367480b83356f16180ed0d29e82491777a17bcea2479ee0ddfc005e12bed723aad36ea1979c37ef6f188a4300ea6831687355a07c6fb9f8bbf5be1750b49c38465909b854455c4508592dfc314224c001287dbd3ba2135aaaace12a6903d5231229c7eed585fd13772ac258d0cceb36de3c040ffd63648f8c70e5bc4bcd5dd93270f9c7d8604ce673695040383dd6f6bade4846b81fb97dc52b45db7937681574883949e620327ef0e7a2bddb8776a0e620fb6bb325fe275f918e2972df840fbfa70f1674b1caed9371a31118a6a6db8149becc159e2d70164b8bd887a048b042404cd9d2dc10644a43503b168f65db3b1e040ba092b2e117070591erootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootnss-3.67.0-7.el8_5.src.rpmnss-util-develnss-util-devel(x86-64)pkgconfig(nss-util)@@ @     /bin/sh/usr/bin/pkg-confignspr-develnss-util(x86-64)pkgconfigpkgconfig(nspr)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)`E`ݮ@` @`ٹ`̊`9@`Ȗ@`D`r_@_^@___@__"@_"@_"@_!d_@_ L_ _@^^@@^@^ۅ@^4]N@]]߶]e@]M@]µ]L]]^@\F@\Q\\\\\\@\I\I\U@\ `\l@[[[u[#@[[W[O+[M@[ZZw@Z|;Zo Zo Zg#Z ZZZ@Y+@Y{YY@Yn@YV@Y@YyYm@Yg`YJ_Y1S@XX@XX @XXYX@X@XX~@Xx@XoX>@X*X@WW@Wt@W~Wv[@WrfWoWm WbWQq@WPWJWDB@W4p@W@Wo@W@VV޾V޾V@VяVIVɦV@V@V=@V@V@VO @VHsVEV3[V UYU@UU@U@U>Ua@Ug@U[%UUU @T@Ts@TTء@T@TÉ@TT@T@T?@T:m@T"@S@S<@S@S@S @SSSSpShS(5@S@SRy@RJ@R@RR@RSRR@Rm@Rg@RD!R@RRR|Q@Q*@QQ@QKQ@QQW@Qw@Q]k@QNQ9Q7/Q#@QQ @P!@PՠP @PqP@P@PAPXPd@Pd@PPP@PP5@PPnP;a@P(@P H@O;O;O@OiO@O@O}O~OiOYOX@OOdO&@O!@@OO@O@N>@N>@NNܲ@N`NؽNN@NuN;@Np@Nf @NA!@N*NpM@MWMc@MM@M@MMfH@M^_@MZjMS@MQ0@MQ0@MQ0@MQ0@MK@MGMF@M6@M-MM@Ls@LOLLZ@L6LdL@L*@L@LA@LL@L4Lx@Lx@Li(@Lf@L_L_LT@L0L0L K @KsKsKKCKCKCK]KMKLd@KD{@K<@K5K4@K,@K+nK*@K K@K@K@KJݦ@J - 3.67.0-7Bob Relyea - 3.67.0-6Bob Relyea - 3.67.0-5Bob Relyea - 3.67.0-4Bob Relyea - 3.67.0-3Bob Relyea - 3.67.0-2Bob Relyea - 3.67.0-1Bob Relyea - 3.66.0-2Bob Relyea - 3.66.0-1.1Bob Relyea - 3.66.0-1Bob Relyea - 3.53.1-17Bob Relyea - 3.53.1-16Bob Relyea - 3.53.1-15Bob Relyea - 3.53.1-14Bob Relyea - 3.53.1-13Bob Relyea - 3.53.1-12Bob Relyea - 3.53.1-11Bob Relyea - 3.53.1-10Daiki Ueno - 3.53.1-9Daiki Ueno - 3.53.1-8Bob Relyea - 3.53.1-7Daiki Ueno - 3.53.1-6Bob Relyea - 3.53.1-5Bob Relyea - 3.53.1-4Daiki Ueno - 3.53.1-3Daiki Ueno - 3.53.1-2Daiki Ueno - 3.53.1-1Daiki Ueno - 3.53.0-1Bob Relyea - 3.44.0-15Bob Relyea - 3.44.0-14Bob Relyea - 3.44.0-13Daiki Ueno - 3.44.0-12Bob Relyea - 3.44.0-11Daiki Ueno - 3.44.0-10Bob Relyea - 3.44.0-9Bob Relyea - 3.44.0-8Daiki Ueno - 3.44.0-7Daiki Ueno - 3.44.0-6Daiki Ueno - 3.44.0-5Bob Relyea - 3.44.0-4.1Bob Relyea - 3.44.0-4Daiki Ueno - 3.44.0-3Bob Relyea - 3.44.0-2Daiki Ueno - 3.44.0-1Daiki Ueno - 3.41.0-5Bob Relyea - 3.41.0-4Daiki Ueno - 3.41.0-3Daiki Ueno - 3.41.0-2Daiki Ueno - 3.41.0-1Daiki Ueno - 3.39.0-1.5Bob Relyea - 3.39.0-1.4Daiki Ueno - 3.39.0-1.3Daiki Ueno - 3.39.0-1.2Daiki Ueno - 3.39.0-1.1Daiki Ueno - 3.39.0-1.0Daiki Ueno - 3.38.0-1.2Daiki Ueno - 3.38.0-1.1Daiki Ueno - 3.38.0-1.0Kai Engert - 3.36.1-1.2Daiki Ueno - 3.36.1-1.1Daiki Ueno - 3.36.1-1.0Daiki Ueno - 3.36.0-1.0Fedora Release Engineering - 3.35.0-5Kai Engert - 3.35.0-4Kai Engert - 3.35.0-3Daiki Ueno - 3.35.0-2Daiki Ueno - 3.34.0-2Daiki Ueno - 3.33.0-6Kai Engert - 3.33.0-5Kai Engert - 3.33.0-4Kai Engert - 3.33.0-3Daiki Ueno - 3.33.0-2Daiki Ueno - 3.32.1-2Daiki Ueno - 3.32.0-4Kai Engert - 3.32.0-3Daiki Ueno - 3.32.0-2Fedora Release Engineering - 3.31.0-6Fedora Release Engineering - 3.31.0-5Daiki Ueno - 3.31.0-4Daiki Ueno - 3.31.0-3Daiki Ueno - 3.31.0-2Daiki Ueno - 3.30.2-3Daiki Ueno - 3.30.2-2Kai Engert - 3.30.0-3Daiki Ueno - 3.30.0-2Kai Engert - 3.29.1-3Daiki Ueno - 3.29.1-2Daiki Ueno - 3.29.0-3Daiki Ueno - 3.29.0-2Daiki Ueno - 3.28.1-6Daiki Ueno - 3.28.1-5Daiki Ueno - 3.28.1-4Daiki Ueno - 3.28.1-3Daiki Ueno - 3.28.1-2Daiki Ueno - 3.27.2-2Daiki Ueno - 3.27.0-5Kai Engert - 3.27.0-4Daiki Ueno - 3.27.0-3Daiki Ueno - 3.27.0-2Daiki Ueno - 3.26.0-2Elio Maldonado - 3.25.0-6Elio Maldonado - 3.25.0-5Elio Maldonado - 3.25.0-4Elio Maldonado - 3.25.0-3Elio Maldonado - 3.25.0-2Kamil Dudka - 3.24.0-3Elio Maldonado - 3.24.0-2.3Elio Maldonado - 3.24.0-2.2Elio Maldonado - 3.24.0-2.1Elio Maldonado - 3.24.0-2.0Elio Maldonado - 3.23.0-9Elio Maldonado - 3.23.0-8Elio Maldonado - 3.23.0-7Elio Maldonado - 3.23.0-6Elio Maldonado - 3.23.0-5Elio Maldonado - 3.23.0-4Elio Maldonado - 3.23.0-3Elio Maldonado - 3.23.0-2Elio Maldonado - 3.22.2-2Elio Maldonado - 3.22.1-3Elio Maldonado - 3.22.1-1Elio Maldonado - 3.22.0-3Elio Maldonado - 3.22.0-2Fedora Release Engineering - 3.21.0-7Elio Maldonado - 3.21.0-6Michal Toman - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado Batiz - 3.21.1-2Elio Maldonado - 3.20.1-2Elio Maldonado - 3.20.0-6Elio Maldonado - 3.20.0-5Elio Maldonado - 3.20.0-4Elio Maldonado - 3.20.0-3Elio Maldonado - 3.20.0-2Elio Maldonado - 3.19.3-2Elio Maldonado - 3.19.2-3Kai Engert - 3.19.2-2Kai Engert - 3.19.1-2Kai Engert - 3.19.0-2Kai Engert - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.17.4-5Till Maas - 3.17.4-4Elio Maldonado - 3.17.4-3Elio Maldonado - 3.17.4-2Elio Maldonado - 3.17.4-1Ville Skyttä - 3.17.3-4Elio Maldonado - 3.17.3-3Elio Maldonado - 3.17.3-2Elio Maldonado - 3.17.3-1Elio Maldonado - 3.17.2-2Elio Maldonado - 3.17.2-1Kai Engert - 3.17.1-1Kevin Fenzi - 3.17.0-2Elio Maldonado - 3.17.0-1Fedora Release Engineering - 3.16.2-4Elio Maldonado - 3.16.2-3Tom Callaway - 3.16.2-2Elio Maldonado - 3.16.2-1Elio Maldonado - 3.16.1-4Fedora Release Engineering - 3.16.1-3Jaromir Capik - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.16.0-1Elio Maldonado - 3.15.5-2Elio Maldonado - 3.15.5-1Elio Maldonado - 3.15.4-5Elio Maldonado - 3.15.4-4Elio Maldonado - 3.15.4-3Peter Robinson 3.15.4-2Elio Maldonado - 3.15.4-1Elio Maldonado - Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.2-3Elio Maldonado - 3.15.2-2Elio Maldonado - 3.15.2-1Elio Maldonado - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.15-5emaldona - 3.15-4emaldona - 3.15-3Elio Maldonado - 3.15-2Elio Maldonado - 3.15-1Elio Maldonado - 3.15-0.1.beta1.2Elio Maldonado - 3.15-0.1.beta1.1Kai Engert - 3.14.3-12Kai Engert - 3.14.3-10Kai Engert - 3.14.3-9Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.2-2Elio Maldonado - 3.14.2-1Kai Engert - 3.14.1-3Elio Maldonado - 3.14.1-2Elio Maldonado - 3.14.1-1Elio Maldonado - 3.14-12Elio Maldonado - 3.14-11Elio Maldonado - 3.14-10Elio Maldonado - 3.14-9Elio Maldonado - 3.14-8Elio Maldonado - 3.14-7Elio Maldonado - 3.14-6Elio Maldonado - 3.14-5Elio Maldonado - 3.14-4Elio Maldonado - 3.14-3Elio Maldonado - 3.14-2Elio Maldonado - 3.14-1Elio Maldonado - 3.14-0.1.rc.1Kai Engert - 3.13.6-1Elio Maldonado - 3.13.5-8Elio Maldonado - 3.13.5-7Fedora Release Engineering - 3.13.5-6Elio Maldonado - 3.13.5-5Elio Maldonado - 3.13.5-4Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.4-3Elio Maldonado - 3.13.4-2Elio Maldonado - 3.13.4-1Elio Maldonado - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Tom Callaway - 3.13.1-13Elio Maldonado - 3.13.1-12Fedora Release Engineering - 3.13.1-11Elio Maldonado - 3.13.1-11Elio Maldonado - 3.13.1-10elio maldonado - 3.13.1-9Elio Maldonado - 3.13.1-8Elio Maldonado - 3.13.1-7Elio Maldonado - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado Batiz - 3.13.1-4Elio Maldonado - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.13-1Elio Maldonado - 3.13-0.1.rc0.1Elio Maldonado - 3.12.11-3Kai Engert - 3.12.11-2Elio Maldonado - 3.12.11-1Elio Maldonado - 3.12.10-6Michael Schwendt - 3.12.10-5Elio Maldonado - 3.12.10-4Dennis Gilmore - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.10-0.1.beta1Elio Maldonado - 3.12.9-15Elio Maldonado - 3.12.9-14Elio Maldonado - 3.12.9-13Elio Maldonado - 3.12.9-12Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado - 3.12.9-9Fedora Release Engineering - 3.12.9-8Elio Maldonado - 3.12.9-7Christopher Aillon - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.9-0.1.beta2Elio Maldonado - Maldonado - Maldonado - 3.12.8-9Elio Maldonado - 3.12.8-8Elio Maldonado - 3.12.8-7Elio Maldonado - 3.12.8-6Elio Maldonado - 3.12.8-5Elio Maldonado - 3.12.8-4Elio Maldonado - 3.12.8-3Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Elio Maldonado - Maldonado - Maldonado - Maldonado - 3.12.7-3Elio Maldonado - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-12Elio Maldonado - 3.12.6-11Elio Maldonado - 3.12.6-10Elio Maldonado - 3.12.6-9Dennis Gilmore - 3.12.6-8Elio Maldonado - 3.12.6-7Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.13.2Elio Maldonado - 3.12.5-1.13.1Elio Maldonado - 3.12.5-1.13Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.9Elio Maldonado - 3.12.5-2.7Elio Maldonado - 3.12.5-1.6Elio Maldonado - 3.12.5-1.5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1Elio Maldonado - 3.12.4-14.1Elio Maldonado - 3.12.4-13.1Elio Maldonado - 3.12.4-13Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - Maldonado - Maldonado - Maldonado - Maldonado - Maldonado - Togami - Maldonado - Maldonado - Maldonado - Maldonado - Maldonado - Maldonado - Maldonado - Gilmore - Gilmore - Gilmore - Gilmore - Maldonado+emaldona@redhat.com - Maldonado - Gilmore - Maldonado - Release Engineering - Maldonado - Maldonado - Maldonado - Engert - Engert - Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - Engert - Engert - Engert - Engert - Engert - Engert - Release Engineering - Engert - Gilmore - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Keating - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Fix CVE 2021 43527- Fix ssl alert issue- Fix issue with reading databases that were updated using unpatched versions of nss- Better fix for the sdb timeout. The issue wasn't a race, it was the sqlite timeout waiting to begin a transaction under heavy thread usage.- Fix sdb race condition- Fix coverity issues- Rebase to NSS 3.67- Restore old pkcs12 defaults.- build nss for older nspr so we can pass gating with the new nspr in the build root- Rebase to NSS 3.66- Fix various corner cases with ike v1 app b support.- Fix the following CVE - CVE-2020-12403 chacha-poly issues - CVE-2020-12400 constant time ECC. - CVE-2020-6829 constant time ECC.- Revert some policy changes the generate ABI runtime issues.- Add support for enable/disable in policy. Now if your policy file has disallow=x enable=y it will act just like our other libraries.- Add OAEP interface so applications can wrap keys with RSA-OAEP rather than RSA-PKCS-1.- fips need to reject small primes even if they are approved - code to autodetect whether or not to use the cache needs to do so in a way that doesn't mess with filesystem negative file caching. - add kdf selftests- Fix issue with upgradedb where upgradedb expects standard to generate dbm databases, not sql databases (default in RHEL8)- Disable dh timing test because it's unreliable on s390- Explicitly enable upgradedb/sharedb test cycles- Disable Delegated Credentials for TLS- Fix attribute decryption issue where the private key components integrity check on private attributes where not being checked.- Update nss-rsa-pkcs1-sigalgs.patch to the upstream version- Include required checks for dh and ecdh key generation in FIPS mode.- Add better checks for dh derive operations in FIPS mode.- Disable NSS_HASH_ALG_SUPPORT as well for MD5 (#1849938) - Adjust for update-crypto-policies packaging change (#1848649) - Fix compilation with -Werror=strict-prototypes (#1843417)- Fix regression in MD5 disablement (#1849938) - Include rsa_pkcs1_* in signature_algorithms extension (#1847945)- Update to NSS 3.53.1- Update to NSS 3.53- Fix swapped CMAC PKCS #11 values. - Fix data alignment crash in CMAC.- Fix coverify scan issue- Fix endian problem in SP-800 108 code.- Install cmac.h required by blapi.h (#1764513) - Fix out-of-bounds write in NSC_EncryptUpdate (#1775913)- Add SP-800 108 Generalized kdf- Check policy against hash algorithms used for ServerKeyExchange (#1730039)- Add CMAC- CKM_NSS_IKE1_APP_B_PRF_DERIVE was missing from the mechanism list, preventing PK11_Derive*() from using it. Add gtests for the PK11_Derive interface for all the CKM_NSS_IKE*_DERIVE mechanism.- Backport fixes from 3.44.1- Add continuous RNG test required by FIPS - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism- Rebuild with the correct build target- rebuild to try to retrigger CI tests- Fix certutil man page - Fix extracting a public key from a private key for dh, ec, and dsa- Disable TLS 1.3 under FIPS mode - Disable RSASSA-PKCS1-v1_5 in TLS 1.3 - Fix post-handshake auth transcript calculation if SSL_ENABLE_SESSION_TICKETS is set - Revert the change to use XDG basedirs (mozilla#818686)- Add ike mechanisms in softokn - Add FIPS checks in softoken- Update to NSS 3.44 - Define NSS_SEED_ONLY_DEV_URANDOM=1 to exclusively use getentropy - Use %autosetup - Clean up manual pages generation - Clean up %check - Remove prelink dependency, which is not available in RHEL-8 - Remove upstreamed patches- Update manual pages to reflect recent changes in commands- Make sure corresponding public keys are created when importing private keys.- Fix the last change - Add --no-reload option to update-crypto-policies to avoid unnecessary restart of daemons- Restore LDFLAGS injection when linking DSO- Update to NSS 3.41 - Consolidate nss-util, nss-softokn, and nss into a single source package- Fix the last commit- Support for IKE/IPsec typical PKIX usage so libreswan can use nss without rejecting certs based on EKU- Backport upstream fixes for rhbz#1649026, rhbz#1608895, rhbz#1644854 - Document PKCS #11 URI - Add warning when adding module with modutil while p11-kit is enabled- Update nss-dsa.patch to not advertise DSA signature algorithm - Update PayPal test certs for testing- Backport "DSA" keyword in crypto-policies- Update to NSS 3.39- Fix LDFLAGS injection when linking DSO- Install crypto-policies configuration file for https://fedoraproject.org/wiki/Changes/NSSLoadP11KitModules - Port enable-fips-when-system-is-in-fips-mode.patch from RHEL-7 - Use %ldconfig_scriptlets - Remove needless use of %defattr, by Jason Tibbitts- Update to NSS 3.38- Backport upstream addition of nss-policy-check utility, rhbz#1428746, includes required fixes for mozbz#1296263 and mozbz#1474875- Switch the default DB type to SQL - Enable SSLKEYLOGFILE- Update to NSS 3.36.1 - Remove nss- - Fix partial injection of LDFLAGS - Remove NSS_NO_PKCS11_BYPASS, which is no-op in upstream- Update to NSS 3.36.0 - Add gcc-c++ to BuildRequires (C++ is needed for gtests) - Make test failure detection robuster- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Fix a compiler error with gcc 8, mozbz#1434070 - Set NSS_FORCE_FIPS=1 at %build time, and remove from %check.- Stop pulling in nss-pem automatically, packages that need it should depend on it, rhbz#1539401- Update to NSS 3.35.0- Update to NSS 3.34.0- Make sure 32bit nss-pem always be installed with 32bit nss in multlib environment, patch by Kamil Dudka- Fix test script- Update tests to be compatible with default NSS DB changed to sql (the default was changed in the nss-util package).- rhbz#1505487, backport upstream fixes required for rhbz#1496560- Update to NSS 3.33.0- Update to NSS 3.32.1- Update iquote.patch to really prefer in-tree headers over system headers- NSS libnssckbi.so has already been obsoleted by p11-kit-trust, rhbz#1484449- Update to NSS 3.32.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Backport mozbz#1381784 to avoid deadlock in dnf- Move signtool to %_libdir/nss/unsupported-tools, for: https://fedoraproject.org/wiki/Changes/NSSSigntoolDeprecation- Rebase to NSS 3.31.0- Enable gtests- Rebase to NSS 3.30.2 - Enable TLS 1.3- Backport upstream mozbz#1328318 to support crypto policy FUTURE.- Rebase to NSS 3.30.0 - Remove upstreamed patches- Backport mozbz#1334976 and mozbz#1336487.- Rebase to NSS 3.29.1- Disable TLS 1.3, following the upstream change- Rebase to NSS 3.29.0 - Suppress -Werror=int-in-bool-context warnings with GCC7- Work around pkgconfig -> pkgconf transition issue (releng#6597)- Disable TLS 1.3 - Add "Conflicts" with packages using older Mozilla codebase, which is not compatible with NSS 3.28.1 - Remove NSS_ECC_MORE_THAN_SUITE_B setting, as it was removed in upstream- Add "Conflicts" with older firefox packages which don't have support for smaller curves added in NSS 3.28.1- Fix incorrect version specification in %nss_{util,softokn}_version, pointed by Elio Maldonado- Rebase to NSS 3.28.1 - Remove upstreamed patch for disabling RSA-PSS - Re-enable TLS 1.3- Rebase to NSS 3.27.2- Revert the previous fix for RSA-PSS and use the upstream fix instead- Disable the use of RSA-PSS with SSL/TLS. #1383809- Disable TLS 1.3 for now, to avoid reported regression with TLS to version intolerant servers- Rebase to NSS 3.27.0 - Remove upstreamed ectest patch- Rebase to NSS 3.26.0 - Update check policy file patch to better match what was upstreamed - Remove conditionally ignore system policy patch as it has been upstreamed - Skip ectest as well as ecperf, which are built as part of nss-softokn - Fix rpmlint error regarding %define usage- Incorporate some changes requested in upstream review and commited upstream (#1157720)- Add support for conditionally ignoring the system policy (#1157720) - Remove unneeded test scripts patches in order to run more tests - Remove unneeded test data modifications from the spec file- Remove obsolete patch and spurious lines from the spec file (#1347336)- Cleanup spec file and patches and add references to bugs filed upstream- Rebase to nss 3.25- decouple nss-pem from the nss package (#1347336)- Apply the patch that was last introduced - Renumber and reorder some of the patches - Resolves: Bug 1342158- Allow application requests to disable SSL v2 to succeed - Resolves: Bug 1342158 - nss-3.24 does no longer support ssl V2, installation of IPA fails because nss init fails- Rebase to NSS 3.24.0 - Restore setting the policy file location - Make ssl tests scripts aware of policy - Ajust tests data expected result for policy- Bootstrap build to rebase to NSS 3.24.0 - Temporarily not setting the policy file location- Change POLICY_FILE to "nss.config"- Change POLICY_FILE to "nss.cfg"- Change the POLICY_PATH to "/etc/crypto-policies/back-ends" - Regenerate the check policy patch with hg to provide more context- Fix typo in the last %changelog entry- Load policy file if /etc/pki/nssdb/policy.cfg exists - Resolves: Bug 1157720 - NSS should enforce the system-wide crypto policy- Remove unused patch rendered obsolete by pem update- Update pem sources to latest from nss-pem upstream - Resolves: Bug 1300652 - [PEM] insufficient input validity checking while loading a private key- Rebase to NSS 3.23- Rebase to NSS 3.22.2- Fix ssl2/exp test disabling to run all the required tests- Rebase to NSS 3.22.1- Update .gitignore as part of updating to nss 3.22- Update to NSS 3.22- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Resolves: Bug 1299040 - Enable ssl_gtests upstream test suite - Remove 'export NSS_DISABLE_GTESTS=1' go ssl_gtests are built - Use %define when specifying the nss_tests to run- Add 64-bit MIPS to multilib arches- Update %{nss_util_version} and %{nss_softokn_version} to 3.21.0 - Resolves: Bug 1284095 - all https fails with sec_error_no_token- Add references to bugs filed upstream- Update to NSS 3.21 - Package listsuites as part of the unsupported tools set - Resolves: Bug 1279912 - nss-3.21 is available - Resolves: Bug 1258425 - Use __isa_bits macro instead of list of 64-bit - Resolves: Bug 1280032 - Package listsuites as part of the nss unsupported tools set- Update to NSS 3.20.1- Enable ECC cipher-suites by default [hrbz#1185708] - Split the enabling patch in two for easier maintenance - Remove unused patches rendered obsolete by prior rebase- Enable ECC cipher-suites by default [hrbz#1185708] - Implement corrections requested in code review- Enable ECC cipher-suites by default [hrbz#1185708]- Fix patches that disable ssl2 and export cipher suites support - Fix libssl patch that disable ssl2 & export cipher suites to not disable RSA_WITH_NULL ciphers - Fix syntax errors in patch to skip ssl2 and export cipher suite tests - Turn ssl2 off by default in the tstclnt tool - Disable ssl stress tests containing TLS RC4 128 with MD5- Update to NSS 3.20- Update to NSS 3.19.3- Create on the fly versions of sslcov.txt and sslstress.txt that disable tests for SSL2 and EXPORT ciphers- Update to NSS 3.19.2- Update to NSS 3.19.1- Update to NSS 3.19- Replace expired test certificates, upstream bug 1151037- Update to nss-3.18.0 - Resolves: Bug 1203689 - nss-3.18 is available- Disable export suites and SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Rebuilt for Fedora 23 Change https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code- Commented out the export NSS_NO_SSL2=1 line to not disable ssl2 - Backing out from disabling ssl2 until the patches are fixed- Disable SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Update to nss-3.17.4- Own the %{_datadir}/doc/nss-tools dir- Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic- Install pp man page in alternative location - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer- Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available- Resolves: Bug 994599 - Enable TLS 1.2 by default- Update to nss-3.17.2- Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work- Rebuild for rpm bug 1131960- Update to nss-3.17.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Replace expired PayPal test cert with current one to prevent build failure- fix license handling- Update to nss-3.16.2- Remove unwanted source directories at end of %prep so it truly does it - Skip the cipher suite already run as part of the nss-softokn build- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Replacing ppc64 and ppc64le with the power64 macro - Related: Bug 1052545 - Trivial change for ppc64le in nss spec- Update to nss-3.16.1 - Update the iquote patch on account of the rebase - Improve error detection in the %section - Resolves: Bug 1094702 - nss-3.16.1 is available- Update to nss-3.16.0 - Cleanup the copying of the tools man pages - Update the iquote.patch on account of the rebase- Restore requiring nss_softokn_version >= 3.15.5- Update to nss-3.15.5 - Temporarily requiring only nss_softokn_version >= 3.15.4 - Fix location of sharedb files and their manpages - Move cert9.db, key4.db, and pkcs11.txt to the main package - Move nss-sysinit manpages tar archives to the main package - Resolves: Bug 1066877 - nss-3.15.5 is available - Resolves: Bug 1067091 - Move sharedb files to the %files section- Revert previous change that moved some sysinit manpages - Restore nss-sysinit manpages tar archives to %files sysinit - Removing spurious wildcard entry was the only change needed- Add explanatory comments for iquote.patch as was done on f20- Update pem sources to latest from nss-pem upstream - Pick up pem fixes verified on RHEL and applied upstream - Fix a problem where same files in two rpms created rpm conflict - Move some nss-sysinit manpages tar archives to the %files the - All man pages are listed by name so there shouldn't be wildcard inclusion - Add support for ppc64le, Resolves: Bug 1052545- ARM tests pass so remove ARM conditional- Update to nss-3.15.4 (hg tag NSS_3_15_4_RTM) - Resolves: Bug 1049229 - nss-3.15.4 is available - Update pem sources to latest from the interim upstream for pem - Remove no longer needed patches - Update pem/rsawrapr.c patch on account of upstream changes to freebl/softoken - Update iquote.patch on account of upstream changes- Update to nss- (hg tag NSS_3_15_3_1_RTM) - Resolves: Bug 1040282 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) - Resolves: Bug 1040192 - nss- is available- Bump the release tag- Update to NSS_3_15_3_RTM - Resolves: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws - Fix option descriptions for setup-nsssysinit manpage - Fix man page of nss-sysinit wrong path and other flaws - Document email option for certutil manpage - Remove unused patches- Revert one change from last commit to preserve full nss pluggable ecc supprt [1019245]- Use the full sources from upstream - Bug 1019245 - ECDHE in openssl available -> NSS needs too for Firefox/Thunderbird- Update to NSS_3_15_2_RTM - Update iquote.patch on account of modified prototype on cert.h installed by nss-devel- Update pem sources to pick up a patch applied upstream which a faulty merge had missed - The pem module should not require unique file basenames- Update pem sources to the latest from interim upstream- Resolves: rhbz#996639 - Minor bugs in nss man pages - Fix some typos and improve description and see also sections- Cleanup spec file to address most rpmlint errors and warnings - Using double percent symbols to fix macro-in-comment warnings - Ignore unversioned-explicit-provides nss-system-init per spec comments - Ignore invalid-url Source0 as it comes from the git lookaside cache - Ignore invalid-url Source12 as it comes from the git lookaside cache- Add man page for pkcs11.txt configuration file and cert and key databases - Resolves: rhbz#985114 - Provide man pages for the nss configuration files- Fix errors in the man pages - Resolves: rhbz#984106 - Add missing option descriptions to man pages for {cert|cms|crl}util - Resolves: rhbz#982856 - Fix path to script in man page for nss-sysinit- Update to NSS_3_15_1_RTM - Enable the iquote.patch to access newly introduced types- Install man pages for nss-tools and the nss-config and setup-nsssysinit scripts - Resolves: rhbz#606020 - nss security tools lack man pages- Build nss without softoken or util sources in the tree - Resolves: rhbz#689918- Update ssl-cbc-random-iv-by-default.patch- Fix generation of NSS_VMAJOR, NSS_VMINOR, and NSS_VPATCH for nss-config- Update to NSS_3_15_RTM- Fix incorrect path that hid failed test from view - Add ocsp to the test suites to run but ... - Temporarily disable the ocsp stapling tests - Do not treat failed attempts at ssl pkcs11 bypass as fatal errors- Update to NSS_3_15_BETA1 - Update spec file, patches, and helper scripts on account of a shallower source tree- Update expired test certificates (fixed in upstream bug 852781)- Fix incorrect post/postun scripts. Fix broken links in posttrans.- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement.- Update to NSS_3_14_3_RTM - sync up pem rsawrapr.c with softoken upstream changes for nss-3.14.3 - Resolves: rhbz#908257 - CVE-2013-1620 nss: TLS CBC padding timing attack - Resolves: rhbz#896651 - PEM module trashes private keys if login fails - Resolves: rhbz#909775 - specfile support for AArch64 - Resolves: rhbz#910584 - certutil -a does not produce ASCII output- Allow building nss against older system sqlite- Update to NSS_3_14_2_RTM- Update to NSS_3_14_1_WITH_CKBI_1_93_RTM- Require nspr >= 4.9.4 - Fix changelog invalid dates- Update to NSS_3_14_1_RTM- Bug 879978 - Install the nssck.api header template where mod_revocator can access it - Install nssck.api in /usr/includes/nss3/templates- Bug 879978 - Install the nssck.api header template in a place where mod_revocator can access it - Install nssck.api in /usr/includes/nss3- Bug 870864 - Add support in NSS for Secure Boot- Disable bypass code at build time and return failure on attempts to enable at runtime - Bug 806588 - Disable SSL PKCS #11 bypass at build time- Fix pk11wrap locking which fixes 'fedpkg new-sources' and 'fedpkg update' hangs - Bug 872124 - nss-3.14 breaks fedpkg new-sources - Fix should be considered preliminary since the patch may change upon upstream approval- Add a dummy source file for testing /preventing fedpkg breakage - Helps test the fedpkg new-sources and upload commands for breakage by nss updates - Related to Bug 872124 - nss 3.14 breaks fedpkg new-sources- Fix a previous unwanted merge from f18 - Update the SS_SSL_CBC_RANDOM_IV patch to match new sources while - Keeping the patch disabled while we are still in rawhide and - State in comment that patch is needed for both stable and beta branches - Update .gitignore to download only the new sources- Fix the spec file so sechash.h gets installed - Resolves: rhbz#871882 - missing header: sechash.h in nss 3.14- Update the license to MPLv2.0- Use only -f when removing unwanted headers- Add secmodt.h to the headers installed by nss-devel - nss-devel must install secmodt.h which moved from softoken to pk11wrap with nss-3.14- Update to NSS_3_14_RTM- Update to NSS_3_14_RC1 - update nss-589636.patch to apply to httpdserv - turn off ocsp tests for now - remove no longer needed patches - remove headers shipped by nss-util- Update to NSS_3_13_6_RTM- Rebase pem sources to fedora-hosted upstream to pick up two fixes from rhel-6.3 - Resolves: rhbz#847460 - Fix invalid read and free on invalid cert load - Resolves: rhbz#847462 - PEM module may attempt to free uninitialized pointer - Remove unneeded fix gcc 4.7 c++ issue in secmodt.h that actually undoes the upstream fix- Fix pluggable ecc support- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Fix checkin comment to prevent unwanted expansions of percents- Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1- Resolves: rhbz#833529 - revert unwanted change to nss.pc.in- Resolves: rhbz#833529 - Remove unwanted space from the Libs: line on nss.pc.in- Update to NSS_3_13_5_RTM- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3- Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2- Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name- Resolves: Bug 805723 - Library needs partial RELRO support added- Cleanup of the spec file - Add references to the upstream bugs - Fix typo in Summary for sysinit- Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections- Update to NSS_3_13_3_RTM- fix issue with gcc 4.7 in secmodt.h and C++11 user-defined literals- Resolves: Bug 784672 - nss should protect against being called before nss_Init- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Deactivate a patch currently meant for stable branches only- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request- Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl- Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible- Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support- Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi- Fix broken dependencies by updating the nss-util and nss-softokn versions- Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM- Update to NSS_3_13_RTM- Update to NSS_3_13_RC0- Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)- Update builtins certs to those from NSSCKBI_1_87_RTM- Update to NSS_3_12_11_RTM- Indicate the provenance of stripped source tarball (#688015)- Provide virtual -static package to meet guidelines (#609612).- Enable pluggable ecc support (#712556) - Disable the nssdb write-access-on-read-only-dir tests when user is root (#646045)- make the testsuite non fatal on arm arches- Fix crmf hard-coded maximum size for wrapped private keys (#703656)- Update to NSS_3_12_10_RTM- Update to NSS_3_12_10_BETA1- Implement PEM logging using NSPR's own (#695011)- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Short-term fix for ssl test suites hangs on ipv6 type connections (#539183)- Add a missing requires for pkcs11-devel (#675196)- Run the test suites in the check section (#677809)- Fix cms headers to not use c++ reserved words (#676036) - Reenabling Bug 499444 patches - Fix to swap internal key slot on fips mode switches- Revert patches for 499444 until all c++ reserved words are found and extirpated- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix cms header to not use c++ reserved word (#676036) - Reenable patches for bug 499444- Revert patches for 499444 as they use a C++ reserved word and cause compilation of Firefox to fail- Fix the earlier infinite recursion patch (#499444) - Remove a header that now nss-softokn-freebl-devel ships- Fix infinite recursion when encoding NSS enveloped/digested data (#499444)- Update the cacert trust patch per upstream review requests (#633043)- Fix to honor the user's cert trust preferences (#633043) - Remove obsoleted patch- Update to 3.12.9- Rebuilt according to fedora pre-release package naming guidelines- Update to NSS_3_12_9_BETA2 - Fix libpnsspem crash when cacert dir contains other directories (#642433)- Update to NSS_3_12_9_BETA1- Update pem source tar with fixes for 614532 and 596674 - Remove no longer needed patches- Update PayPalEE.cert test certificate which had expired- Tell rpm not to verify md5, size, and modtime of configurations file- Fix certificates trust order (#643134) - Apply nss-sysinit-userdb-first.patch last- Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248)- Fix invalid %postun scriptlet (#639248)- Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801)- Add posttrans scriptlet (#636787)- Update to 3.12.8 - Prevent disabling of nss-sysinit on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Added provides pkcs11-devel-static to comply with packaging guidelines (#609612)- NSS 3.12.8 RC0- Fix nss-util_version and nss_softokn_version required to be NSS 3.12.8 Beta3 - Fix unclosed comment in renegotiate-transitional.patch- Change BuildRequries to available version of nss-util-devel- Define NSS_USE_SYSTEM_SQLITE and remove unneeded patch - Add comments regarding an unversioned provides which triggers rpmlint warning - Build requires nss-softokn-devel >= 3.12.7- Update to 3.12.7- Apply the patches to fix rhbz#614532- Removed pem sourecs as they are in the cache- Add support for PKCS#8 encoded PEM RSA private key files (#614532)- Fix nsssysinit to return userdb ahead of systemdb (#603313)- Require and BuildRequire >= the listed version not =- Require nss-softoken 3.12.6- Fix SIGSEGV within CreateObject (#596674)- Update pem source tar to pick up the following bug fixes: - PEM - Allow collect objects to search through all objects - PEM - Make CopyObject return a new shallow copy - PEM - Fix memory leak in pem_mdCryptoOperationRSAPriv- Update the test cert in the setup phase- Add sed to sysinit requires as setup-nsssysinit.sh requires it (#576071) - Update PayPalEE test cert with unexpired one (#580207)- Fix ns.spec to not require nss-softokn (#575001)- rebuilt with all tests enabled- Using SSL_RENEGOTIATE_TRANSITIONAL as default while on transition period - Disabling ssl tests suites until bug 539183 is resolved- Update to 3.12.6 - Reactivate all tests - Patch tools to validate command line options arguments- Fix curl related regression and general patch code clean up- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- New version of patch to allow root to modify ystem database (#547860)- Temporarily disabling the ssl tests- Fix nsssysinit to allow root to modify the nss system database (#547860)- Fix an error introduced when adapting the patch for rhbz #546211- Remove left over trace statements from nsssysinit patching- Fix a misconstructed patch- Fix nsssysinit to enable apps to use system cert store, patch contributed by David Woodhouse (#546221) - Fix spec so sysinit requires coreutils for post install scriplet (#547067) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387)- Fix nsssysinit to set the default flags on the crypto module (#545779) - Remove redundant header from the pem module- Remove unneeded patch- Retagging to include missing patch- Update to 3.12.5 - Patch to allow ssl/tls clients to interoperate with servers that require renogiation- Retagging- Require nss-softoken of same architecture as nss (#527867) - Merge setup-nsssysinit.sh improvements from F-12 (#527051)- User no longer prompted for a password when listing keys an empty system db (#527048) - Fix setup-nsssysinit to handle more general formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build  !"#$%&'()3.67.0-7.el8_53.67.0-7.el8_53.67.0nss-util-confignss3base64.hciferfam.heccutil.hhasht.hnssb64.hnssb64t.hnssilckt.hnssilock.hnsslocks.hnssrwlk.hnssrwlkt.hnssutil.hpkcs11.hpkcs11f.hpkcs11n.hpkcs11p.hpkcs11t.hpkcs11u.hpkcs11uri.hpkcs1sig.hportreg.hsecasn1.hsecasn1t.hseccomon.hsecder.hsecdert.hsecdig.hsecdigt.hsecerr.hsecitem.hsecoid.hsecoidt.hsecport.htemplates.cutilmodt.hutilpars.hutilparst.hutilrename.hnss-util.pc/usr/bin//usr/include//usr/include/nss3//usr/include/nss3/templates//usr/lib64/pkgconfig/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpioxz2x86_64-redhat-linux-gnuPOSIX shell script, ASCII text executabledirectoryC source, ASCII textASCII textpkgconfig fileRPRRutf-8b0788d3c42c2e4f281354f1f6331ba3c7c9f937433b08b6cb8b79aa583cd619c?@7zXZ !#,>] b2u y-iSqinoPCk8¦~e ^P'9Q,r#25y%3Wt+3F@w ٭9ZP N LFPzM<]8o u^Q~[:Ekp䘠CF! _ٴ$TX63lܻCr S=KD'ZTH7BD-ف>fOM6 'F4w5`|ot'F~i+ ݜ * ~f RZTq4iBaj o( dR.E7Q{[Lg1Lo$f'cD%:D2%NSܥ] G( =Q7h otǶ'\ᮋ\ߴfÌۧd97 *AH,Z]2ͤFbzLՈgDrl95u`VE\Wcc6aE*/Ժ ۥOnAvUS/YXs g-;ۉݺz!sܐlzLF9>ߔ8A( Wk zfMAYrΎrn<uuJ# D/|A0 @81|~z$2šqyl(ali. `  78l{3 _g2H !1ֳ;8dcݓLŏ.41GZpˉw@AffNhud%qڰ@te|0#ؓa u-wǖy $aը$j+vn}d84 W]%ӗoPZ]:ie3D',l8_[01BSHwIX; ׬W(6鰘h&k܌8ї1WB: "euvVܡ&LpÇM5pm:86#uϝCQNL(p|q4tm^b{?e9~GN)"y~{v!۽0HY5|JO|f'0 vK+%Wi`=ʵ^B w"ڸc%K3Z*i2VǴb%PudW3{7&R1sJFuQYSv}ن(ٓ߁0gRg'TnRvr (cm.myIbJI3b]g`751c O>#0/vj|1DW7-ZvMU /\ ewnY5QBjҔb);Φfj7$UX}͢nM*-!Q4<8Axe7V!hR:@oB"98 ˙Emq4TSB)ؐTf)yBdMG<9ZZ63a҈Xl ;=V>MAK_R& B&;,]kl7vYޔ>olp5UV݌sVp[~Mq-H\-Ct?9oly#V*"T%tUaP-ݟgԸبx5Rq;|xwtMY|_ΩHAa3ddFT'ɑqJLdmx#Eܛ[Z<}? ִQ+Zhts[gdk'mce%&(6Xcq1^uiKAqӅGbtuN,%Enr=҆祌΃%aO?}@÷y80b67]GJQ`oJQ|͊4W즙{\:cVˌ2 rR,cLx ]5Z: lI{i\?p8mw]p__&9F’P ki;.'X&o꣹ ~1GB(JqF64Z 1x3HcTTߘ%՝j­7V^~h˫x[~V:4Z#v}, = :9 ӕkF-6Tj I'˄* I(J٪;`{=HRPV)vPɕȃN@?ң(bщD)n]@QaSAʤς+jqf )C$NbĠ׎NG 4{\-{SM&$c :M4zlUă/D%K8=#|'Ěm`oBmb}o-阪Cktl QCAnR8˳Qh- x?_=9(s^A<8\&阬/,5ſ޷NSn?=h6u8ޤxi4F~irB8$z0L$dK rfpEf3̗t Uf]BU9ON JP!c(5z>t >~r5QÛ;]'qVũϦ!9`kBWwu,9qG&3IIB evt'G#iFl]*jx"V'x|+c\<"edv$KxEehOa;cz`*)HMpr<}Cgea9am/#> 'L'`֯s'JA;KzrHEP^^uմF3iD()n'aSz2k78[^U¶`RGpXojP:kTĻswnGl\d< qItYêWY00Gl F[RHWU&{7wVH_6[< ЉA0g_̔'rzXa5,R+ S[@W .[/~5C9ez A;BK9,JTDQ/fWbxdj8㻷4.*Pij!DPWщa_lCqI JXSF.cNgA):-w/Sj ]*=>2AZ~E!M\i\J=C9_W*4;ha .ۥ[O?:Ɠˑh^)vRCJ^5˿u;&빯v4wT kp٤\ (QGӲYOJ<}72SWCͫ?Z(pzCaB=GÝ֩A`Q]wo, tQ˰ݮ~)sv551<İJ.nxonţY7qڶs`kxzR͹J Ry [!L'M-{w 8i4yyL"P~k{55W>'qV eyL]&BDc-O_DW$ r5Բ(,T,,鿕HQ݂ bC5Fc(S}ii+QY!N`ClU·'Oe+P0#o]u cyڂ%|{QC7CS'lL/RYG 5x`?JB$stx4èlDWZ5SLY#Y0k@ʤ)ܐG.w>^ YE„@_H([j}xMr\"%Q<22 >D/"7+C-gRãe8@ X]"Ċ}(*mBQ@ͬEdDT'wSʓ >Ug;N,RS 3(rR> jAzgwZ~BoݔHj{ L.xL =K4=T\?3n+ f _t. \No8Р>=n xvm{Q&.zz˞g8XѨۧ"qdu=%IB}upZ% .Yd9/KzEqq"SA\3?czh983R94/t0K7YSW?Mla/ @]0BO!ၚo̥r6JY @]y hy*R|?U&kUY$ZNgN*Tbȕ7RjBROpw&ϑ&'YٙɡFAhq{xd#m-.itsWg&&ega<@fuz q`TOǑqq%t1YRU^T~ ȃtDzylĂBx>9(VaH|Kt=Kc k aSwbQDQQ!,c4UT?!rԫޏVq@BP53a 4+KIM@¢B +SohC2#+fa1j9zRѸV<)7/Q: jaX?K-(t8 ~khV!s˵}q8r°a(Bb@P Zћݘ:~K\Hf"[R?K?.2YE#^`5AIbp֔ 3__&bBx#g&,-ed!TӥR-:{kmA<Ŧ>ς?u*!@0{5䇌ܵumk1J{ϡ%\Tǽ/DN+ +>>r^'i{߾(|G|Cbp]Z!M{1nr"~.2e8g#F<1 wMnGńF8zbt$cd 2!N!Yb5 rzc8U>5"0g!v=Qk 썄9bvw&;FU.^1JIexOVJx>|M.vQIWzcz7ǫRAh뭽n!PxgYN-jvM?6ZDtyCO)@x)up8,g7 t3Ca^HDa;$(yIevC5~1[sDv٪ɕa4{ >Q./ȣP)UҦU ,\,yhoRM8#*g)U 0v=g׽!jՖh%/\P?c0.9>">4~R5)mP( Ә{zI}A{ JתS =%H e|/~pkںT22hMM3KJ?{^#Z7hWPǛ]CݖGz$E21a576N5x(1PBct x9`0A@oǥ*ͽU>}app16 J@rɴ<'KiQ:R!{ffԨYcM: E\U`g]H}e{V}IHfR$8Gͺ僳aaQ+* 7WeKw*mLW?R(+}+ee Ty@=@R<%w:ȉX.d%4DL%Vb~2^{xq]y[ο.lJ a5RbXƱ}-xR%\/xf"dY+F9V>6i> { jpVpPjSZ}p6w(&v)lcÈiiBx> :\VU^H/¢ w0!irAg\ dĴОiUV~/YMhggyS%%d "9rucP9HgsE,x[N0bt d%XKwuW}u0JLai{7"m*2 C?MTnCr{co_;VOfe6~EA5Is8J3h%w { +.2TDZ86sC]3ZmQ? Um9_ J)RnץFUWi7c[hZ|{){]_>9@KlCQ@:/Q{`_Is~dۏ=AyX2;皡du /H9\NŸRڴx5Vb33+4(WAVvٿA3 k1s}ebx*?ѻ{Ak?g@xXqWL5¬ګs ۚw}#MmTy.55*l%,M17QNaW7*]KܚT`zOxj-}6~Yz[%xR.@ɜD?gXgrh:d1_ʔDvۈފA׺sc/R !1}n u۱cV%+: ~KXDcl}Kݱ {'^T&]vHX0⫭'4|*[|($) lsc)?ƻ:vLLv)ٖIp8d/(R Go'M|ZQ&߼zlCH>KQ'k'F6EİLCe\c3!QW*g!by"`|Eq6bk #};d0د,۫҃ H \GBݚxV%ua^*q^Cl;j>ds|:q|z>ͭ~x-m-yC\E(:Y6?1 ڦU[kZ4Z",pbIzp̋&,V9G"Wx*w0S.6ښI{˳:Wd7Yj A L("H:Ln`HgjDgpp' c:02:J+-ዦISsQqu>%2*vNOqGrVv'oΖ2 v?SĀ_ e'\_-ܮ~4/r&nx ]?/%ffw+ 4[fnΌijZ!JӯsR{딥!E{=&甠6]Zvw$C=VS$Z頖no2jdEfጌ!F2įlJ&7a|pĠljVAoh HY<[6Wi^8{ur6NgR649|!Ϋ}Fj+^Vc"WqbYuV097rC<ve& xDŵȗr6!7yQ,Egv~qSlGq>vl #¸16gd$xm^{UOSbx>O8e9B"+c(YT^"[.Fɒ%N &`\w mcjN&ByZ ȶhQʟ a(hzZ0ŷ 4\u@+rgF@>l@Dt˻`P9]LIoLmhO̮$S>(e0cms^<1{[.m+mϰ?f|jX)+Y@IsʎŊ 7GN*ύD.)&96 kNWfMR7y!(^x32jBvSqqh]_QL4>GĄ.eu[+aP4~-51398nF-.nɹg,m\HӼ,+*w7҄6)ԯ:ɱFknƪf%A^xb~&y,N~ P| S]E)(_[{H NkmB!%M{A+૿hvLj7N\*/34JkL޵EBL4I]t #\$(觀z˴xFyo6L( V9Ć$g{Xz2/6 sjRMBǪ{D&!̤& RmݯvIJ3 ;tH@NKv| b w"B/)tKK9szF.E탊uHX'U%GE!3*X4f9EYfc $KݬxZ@oeOƍn%=~, 3hoblS-V)#;&ޭ;?&MQr5njy,_6K#>$^LçlP_*nv4‡DSBv b)'U4mco}?Ȋ߹⟃׻:?!^r N1kׁ__K%E9ѐ0V- 6 7gGLAlJzf vᜍie lEؕg?] fGn~;PR%FS塲ɴuB\[Qʍ='ox!)K4E-A"Զ='JF0fc/h2!" IiɮHIߌΚQ(\`8R RXΈ 1 X,_^X;7r'D"icƔ0G+ޒ |NHMo WHQf?ˏ ͐-Xz_UqDrG$'0 5;M%RaM߅<)@bV"-˼#-[)7LP *GؑWd<鮙?Oz,$AFb0nu24DjJC }5KRPDu VsY3)M@U&N H6 q\݊ 0xXnkBYw~l7?vڢd)HT$^w }=7VLH] ll#`8 8ԌaCZ?S0vPkgCtv{cc=.Bn[>~ C p 7g7x7Z|_Jtwſ[ =4ݜ@*2MW D?txXL#Qo-ݍka"L=d$p]}"ޒaeTx6Qad"444' "m+Ǩ4kXkM|= n7 O@-lk: @  ZY+5 aLZMYDrq|9i1oԾ׭5kκ"y~vyP"Zْ~Cv`ޏVukC9=!;DSDu} ZY@Ll.VGs1UA8ِ@w 4oV7G@Z1lA8D6PD7VS醾Dx-Z>H(t5Xʺ mW>BrJ֣zP(fFlUZ'UF/P  KL,&#@S|4CuW[+1uIoګ?@hAzZ",C8ZO^Qe~]!T i'Hiʽ9ZғY4Nh 菠!Z=sgX\}sU? U׷=,m@4)GrwM34ꎯX(dzvk*Br);Bj/܋ 3؀ʥ4@9|߸ko)PqצRp FsYfqŨF&ly /Gg<= GwKwR] sd-~Qk\Bk{AFSX(ρVrחO>y nE*ҳe`H[ATw(yra'{'j5"qjP6P^UUC^Ц4|{;*qO0LΈSeb v~pĴכ‹e-!^5/w <ݞPjSDh3LSmF: Aԥ oئ?,=}F,W:rnD@MR˓b>PAz PzWՏ 邲,/> PmnR}#Pf*42ad,ϿؒJ (IŨ`<$?2F +|{ c!B".8R=.fV~£0"nmQ(R Xe᪏:.};tJNmc(lOH.R /IVţxH䉅+7yXFxڳt3r^b}/.x>W3`Vroq KoJ>:Y[jsFWn>V̆3aǧw(7\*X>{ΕV##5 >F+:L&'{,Xزb 5Ur ֧7\u!C= LD\L=,Zw[8Mm Vȁxl)jzʹ4ԖK9@FbTYmdNe"Ӣ{&n>T!g&ymP絀( t^-&jTrl%Q8􅑰W2,OT)Lt[}Ob5gtlD*Ķzsf *Z?2V8F+nR$D˞|InNp.,`N\*uln9gs)V]}wy&9(+;j7t5 cs iYw:5=nl#0<;`jxT:V(lgAR?e}EC8Rڙ q<'q̭W7ן=`k/A㴗#fɰ3^b ! 8.ql4R49x{ r_j1t(N@b;S@r;zgaVS_#%%YmBLJ1R2:DTfe7ߥary HKlu`)Z'6+$XXq7y4 hGJK45o b)[> ө1|= T\I[xq dA6]cr<<%nQn 3^+<<15)1igƒ{HW6 GW 3P+ݮEV _ JbR=PSB S" WHpcK-^M*NzFGbs[b!U$=)h A2V =jCvY념#8#xlJ{P;}~,Bξ\^Ԕ [kdJ0v]~6Ojlql$RD-7ɰG;}y#v!35~T꾴K? (Z [e"8ک$> kfBS0Eڋb}&7J{q z@e l ]b>J85=r3HKV7y JdATQbb&]H]3!&Oj.٨0#OLhOvPQZi8 d2\+A?R+Erd֭eR0{ˤPbXyd0 ӛU ,vOru_J DʦB兰 夺3oWfI,*]f*.flIڃbڎs J+*mI)Sş(GʫˉD1!~R=nnXt/rͭ}TJf_VZhW4;}Y$A6H­eǙVD}ԵvC@L"[4)ߡ>UN[yHr\$$ZP 6P5y;@%QFivolD/ʆfz\ +b ![I.إ=RԤfߚ"9҆yl8eQ Gw+oR&5eEɏ{pk|ty?LZ'K?{&d~0, aTb )&֚Trc!JzH'kHwh NՖ^&䖤3?)pԗvIBIATf;?z=mP^ܞ1>jZθ%w6zn]j<je-~7xŊ݀7>J,^3Nj\%d@j,`vx u'o4ߚ6p1Wng\no3 ":]YXLX@MZ)>J3ɁPyeC`86 :NUt$qԭ o搡@|&=Tjl ,Kd0n븀@n(y%&:_X BEݥLOO$"UƁo='֖i+tS} m-p/6 WKgj<[60q=NyE+2,tpf2N6癛ض^=T U A㛘Hj* z6-)tjm{/x= 6~aܕ S/0y"eeBꎿYa@;G-|xT~-Cg/zuͿ7eyn1gN| :Ù6k6i' ?Nd ?wMKE4/ZL!Sz%2{$F{ G:~ɒ-] g_kZ^@jx+?YM4֏xJfe8ofm=Z,ON@M${[6'I;e=%wy5I8HsޗQ{F;!&PcVNbXQ b4h(-69?T$r'JH:ӿÌ8Z‡qݯ.ÀwIgqF7 ;Ul-R sx;o XYP}c]~YtiA0޲qD'2%]zH+jCpMSNqBIDB!ST~r*Qk  ':Tt-ݣvIf|m rb\X>:ݕC d o$` C a{z'|j/%Ԙi;$`%+g'E>Xk $xl Wݭ֟שVOcGĩٔ۴ ԨU檚}{~ueծU26ľT.RI[va:n'Z}QbtصQ%5R&fb4PK|T[ 00x/2p/^O bс$dxJY!%WN )8ȥQ9@iA&&ؔ4c@(-vp6 2NҲiw~U/6bLn} _&H*#QJnm:;"?zDrM?J;5Rj>l'^s[P*^td{>wj|liUE1+9wFͫ-xI?x5Dj*&IlO1p)L?ņ՗̀Qa=Ő޾]7vK!+%HD4tLR-A"e^SS+@#YyDdؘɿ:"@-ed:1#31DN(H]p*erg.!SA*W#/=oA#o4rNZfUxw(JG!W Mv7pVrGai(jBJ?CS#&qM)c!KB4oo.9/EJ$.QjޗoВ||S.aFeԐ5R˞Sm (qԞXpVșJ>R}CibykJo'hA .%)9;H+\Ale`k*q'sxFU,!$Jv4 9H(-] +o`;R!u<ɍ:LQ3 9z~mut4%`⣴[=.Wpx{J3BmW߄5lƹ2ڪXM2nJ#ݻe윋` [y >f>`!lȟ,\̖CwJ!}E %2]_ĝ}xN}IM $VztsS]*j~F7 ("l29.50 X`vyӫ& g2a3< w]byCTho5 f5ƕ_&G*[O:DW 354 tDd猆b ̂~"!jt ^<`3OfǚK#y@h϶o/4RpƂ/EXZ'qcX0B}hqtl'm4>v>.LεtG̣c*>:>O*8!ͤJQŖ([lDpYUP6i]AIA!<36ǣ48bsѥ.:uJؙNX0%K9T!gEK]"OQ/}\hb8It'~^ n&k!=L%ԝy[^w-Ms.D(.Eduos0sB\9چt)|!A"ij^9,:5̧Bɦ(o 3uX 6ܞhHVyf{| 8f\$U ~l9*+|ϰWݖ ~-J c10zIhio̓хƄhibRup^ʻ :~2;< SDLo;APYrg$߆IVb2'ݷ'EUϴ8(s(9:H_#e /{ <Ó'>k SjOLӭ[׹"Y9=D.Aś}XqW!s8B_"C +'"lEnIAG(*˭પ>z.Y+ȗjf0W~%۾wF\#Lsk޸l躠h gbS+qQ!hI M%a8\"lT 4HOv5kM̕l\)!<%a\6 51zVIi sD=jB7sF)kY$Za\orrk %Q1m(#t5m+ "NS o]c.22*`ஜ88Ђ,@NcL|dR1g[/}mmĻp&0Vea_dSo-Z>JXAO-0iT8@'!=1|eVK&^p{(0'rUZkoݟ0vȚ`R=' k. ݰɴchW"Ϛ*!)[(ֆ \@n Ǎiʣ8ծGNDI~MW? & :\N@>L3# tF@9-9}vD8g41.id֢`#SS@-MwKpA礛d -s-l6c9@P)YW ]}W*41j`:|d+nܬ ;PkcGCV3J12~|d\ʳ-zAK}\ov JNyAȣfhvo}Qz{kΛRjT VR0q SI?̓xӑC֓ULf[sB\ Vq r.ۊOFlح_e^3hp!}iN̤W+>—ZS`aEw* F >D MctSi+KmvC@tCJFzXU08srN=pU*h7AFP4C}SvN[zcmT # J Jʊw[׊,[tDtEŗ0| B.ih9ws&N=2ܢYV ){wUeVSCM$\Q'0r 4C?(jS/NsaW{?ahZm;[?}dgC_i>>A[}⩕8d# (egW[@ť9nB74|(e[2$˃2r\E-Ga C!3E+?Qx N03@/tF8}ϟ>#r[N嶎硸R EaQssl){"Esƚʁ&o<(_ }3K3kBګdt&r1Ӟep?w_ P5cay9d|}ӝ*+EtzEiTq{|ݺ˒ *>9޷H0Nƾ+0Nn#AvWV4YRvNR!#¾a )DjɕW/:߯ce$:i-ݶmiYGE6tƎ-Swir^p͈  ֓{Zd ^Shq[6ZF\AH;c9x76IZhjf? ZY+-}Q%DhuNWލl&_'-5D:ym0*)sbscz֭"r"i4Oz pyXA$ؒG43&x"% o/mہ3r\c%3LsSզK=2& p -uˈ*K|[Y,:\ɼ4%m'A2\ڭ0qn}I)ʦʠg->j}DRsJiPo*s(C}7!PξwǍ?D_h˱+:t["+Oͬ`bH_ڐKd@B< bULppFy1\4Ez'R&vա8w)~zOKG"]Mޛ ]ahUzޑ9Q6fq"S$YC Mlp3eG'IrB/3#.+kҼe/r]91iЪէO ӞQuYd9UE^` C 6$lIZحLY0Jĉsydp^X%RPwvz/sHѐ"ɠuWyfgr숴5ts[u>&}*" -h KS |YRU~_Z",`P['sv릙-hZ >41탴{[ ɞRB3En6ZTzv5!dz@eu2XePu'0&8nI FMQAOnȑm ^F,ӕ'Ve% 4n砖:$=եֱ̚澶6m48nv1&sc?A1>k:nB(,]=|LW%ͳf; D(+l>+q8}I`~gNJ-e(v Xz <B]Q9JaIڭhl*Ԑ_y)t((;]NvLj8u2Nz'3)X("‰b^7;InKI؇i H۔p:Cq~E5JD_P4g/=l"q`,i' D|35*En>V+k) o.Ճ 3eߘK= Îcl+!w᭬c#!e&h`X ]~dTS>YQbЌZ_IX>Fn)$8K]4mtp]}mp$?"%)mg\W]ndb9KN`̇HVكTƫγ k/, 9kŗA59(I[}9 d)6ĥ٦ZqJ&\=Y7B Mvә8 =65L5)9=뿺AlLʳBt@_"c)(nN tC&:f%u0up͖$>dn605I[i:ZYE6YCdO0N▦лۃuXv6-0xM}%,L2!J&`x 7CT(PM*'RE1xڿU5s[Tخ&$zB"/;XՒ @g-73 y*\l0Wγkg5NAK&X ]&ć9BLZNӤjPZd[O fs;ֽy&)0)>XD &M zUM-Ӑuּ!i0eQˣ8+&*2#yI֋&dbxfW=BN4LYZx:#*KNS}2_tX)l<6sBN0YKe}op%>dQlz ppC>pjGIOog]fbmO56)1ް0 >iW|XKJ̋haSYJbt;A(5)&6hglΌ:`:TB s^.OL=HXqnڭKMfP"FiA#e8?DpPϔIQTw6lu[Q.#3~1v }qq7?#J5_)9ǭ2NjL]h2|8\~yCҔjvXTi'U6ς3{NJ;4HXxU8=Iwr6㭵LS.!OiY&&mvad^%"-^5Kuc.F rlO(;,/?R.̒E$I\A2kY[3v*ޛ!Mg_XOgans<1mXapR&Xk! )Lol4Uq3ATZ֧*` 1m][ظ Q3/?U\ݼ,-۽a ^E/Ovͤ ;Rߑ?0W L~wӊ%'u~Lգ]Ci d3 ^̚a#+M}n i RkN~4uLUKIR*N;[vȔ|wdm Ւ;Cwn_ E=m3Ul}wo6'T\9Bc]n;d$ي|2uuʦ;8{KTNPl[_MIsL0f`1ϼaeTu'Gn4莊gG?XT;% Ppf-WZ "|\Ұ?)#+!BvN$Jձ2 CALhߵ-C݉!MH;uNn7}̙A-IݦdYqd[G=އ=E"ؼ]|)rxNشo}/v~sݍ-b{UMeO7hP\J(8%?ґ]D==$Ǟ! Al7d{jiT,7R~#;޲xY^sp|Cl+' 䅤ПEsN< yTTvph(QcDc'oy %=375x ߼mt].GչzO?q@X;w ^N$A?>hګ29.9@hU(QVS>l. ׹+]?b?V)}}P=;)wzLabڦK=/}`CEсiR #G oQ?oƌBL}^߫S/ԱA]0|k[?cThY 7K> pS"- I+\}eKi)`?G|\Qe oE8R3s0 ^+X#Y4ӂTXML]I&VkQz ' IJ=&nr6B=M"Qՙ)l?9P*]aiYv q;ŇSy:vkp+iG{J{=:.j0UWgceV7kkp`qHq?f2 4?1hz'|CL9bryA9ڢQL&Dn`e;"ynt-25\H[<6X d?֑MDN34C`z-N/zneH. .76VMnpeN^*`BrnxJKmݤOѤ˫Ad2s &z̶E^+ txe-<׌>#u$Ԃ\ѹBrND)g8It*0M }kPwxYyde6t r3HS^2_ZI!zTpR{C+ܿdA Hّ zoz&!F~q2H LK+&f^*B6,Jp]IefFZl\vT-5dh^c+ }1;r7CF; 1&_H{$uT8*f*ļT?s$CO$c bf 7qYf$i涨DèH)-cNh .>SR:I?5އ׶v0猄 X:!g8r)/k7x]9;WNދq$cAx|$`yZa A!A|sX !o H%;+ng:cdA7r5| 9a`t{*ͳ .hF 'NXZR(ؽĿ}Y{ xCBf,x==)ƒ FAf7p{]A,ZnQY!oи7jkLWyHvwh1DLO!"b1ʴZڥXc7)_  - VƂ+Q& h8NҲ0mvP8> c}!͎,q&n]kRm \K@Rii}<'夭uRN0 / W/gjMC~ z?vBJ^I#A#C.'3/u*#cxH w( F*L#a%3"0zS3J#VW0̲-LɄbJ®@ B78'A7 LabӇLҴ=1{#3нq eVnXβ~Eg[Ŝ׺X1̯O{;89OTDmMRڅfLب-Ba4N6[(:;|96UO  -Ϝ:|chfebCbѩ58G\+YC]te;Xrn6\!bYH-8%lߦLeUglb+/o{tN뮧it#W~:却°>#'W\OĬxD&z@-E3Pj9PKV rm=}[͈e^c r(cߨL.M~ꄢ${rlj>CL^UGwW;SGڗ!>cFno\H'qPbxYC!?\Fr a C[KId8})1sq9Ik`qdbʎ c>0ꁅP'd^ tg֪.׾ "\wDYd2Ā`*`ߊ:(|Ф ^ [o C(sS2mO'*>D16t*At눂&n OXG~,+S^a tEd "Ch@εl6RI6b7 \\ dihU1U} !;1L 7KJ*n^'@7|b 7t W(AWu jPl#C%<5Iq7”vAG ֥\QꞭyMG i)i1@SAXFFA>T^} KR{Bt.5mNZ 6;ea=[$ڌ kmv;f<ؒ_*{<\YSv8ŏ>ȕY+]\7!eS`1T`k;v\v%PAv Y5ԑPJ2rdrq."{;1Tbr+T6IGƭeA9S^o?p"~Ҁ5w[qDת_/[ o7ߩkFJA9]x>%8#U^7G-)soU > wn2ĭ&?*3n'bR#ĊCP*;8 8,IQQinϫ}o;)gA(%˽Y/_B伵$-͠";[$53è͊E!/޳o-n,yCۯb o|K@7Y_d#3XOBeX=D?ILeUp.^ktL^OM/L3]Ib"ub|GIۄKuỹMj*~>Tתξ],[ۑ{ajD$olTÙ?;{ΖZ3TLi ONN[QY8:F9۴@uzSјi%tA 5wD038ktUp^ / n| }f•7P<#d<0X}e{=y ?!Pa?.%3. i"/v8DE":BܐLoԯ$N2\FelL{8QbsXj`kðڅ@X2*a ,Cp+t|n obd9@7%_&[ p:rXI"S/L)NޱECюzAaYZn*~RN("*WKD\#s3E[ Zpٞ_zx WТ媖,Sh]765#t~?RFYVp0tLpr*/`vpQd4c}MJ?&k48ScWY˩nu;P wc:nx' !!j_aЎh?OH9 -Ѻ E&Za:sF@&T\LTks$7N:[A%t~6%r[ Z?iVƢ+f4 BSm |`X\d@5ݠ\JNU[ 9ߩ^W{!*s.^oѫ"Sɓ D蜗%@ PJm!"Bf݊>>]5x2\$]\H}~ǜbs1w ^d@\hf}ϖ:; M,cӺ1 *f}^Toia'7ڔ-"uęBUyzF:2%:QON] sج/[@+87QO ^eD[r5!N1Xe?GO3Pϒ0l(EiL_#flJ\ 'r"4i)eoO "ASjEDoxp&FKO?HӺp-}F5}27YzxLAuroZ@ocvSQµ}ru- D;|}ը6WܿF(q<|o |<h|ܾ[͜(=,HvSib%2!Dc)=!GhdNc-(W˭VM\5>7)ŴvˉϜJsc ;LsFdN}uyL]ًUSWc5 auUK8Ź^_0&&ECL|RZ4.>H.<`@+L}};wClge8Àd<^lp̷تۆ/}mfkb}݁ K^Gs6@\g&>f)(%8STG\Wlo]AŽ/^|F^40le&l0CؼUb[~zF4? .`Y%!4CaeMvX턌 1x}$@گQ7-=XE1ue)=|{M 3$f5[Tp!-BN]4&˴yTXȏwQMzȗ 4_fbPdzw. =AX.>vx{ONHsJB08[M{>nGA+U`Uɗ4]dmgLOUAK#rs 'Qw% nkI<ЄۻY,;^.>blx^zu#o9;KفwH\Ksshmsj-a]6R A&rXhU"۫93y6#[\Uz5x9ɓplx\>IhXŪ~WٸI/ S'z-X_ݵ ? { y㻏HXiKn~7%RL[\Nrc?g^I*ڷV=J gg\JMˋ-6u%91\v}`L̻gj PyHifaIlgg+ߤhJ9AF`YMQHMh5EQP[{C[-Sݖnz.,͈QaѰU]~%oT_ 'dlY߿!%L@Da%Q{eշs6yKV@U@CcOck ۤY(W}b 9p!P&xcp.LW\:8f? b4/21\p(Hf?<(c|Ucd g2CB$EZl~~TIJ8 { q9]/Z(UI.(.35MВ>Tcb"􅥯ty8]S 8d`мAcdLx4+|0B⮰:A@͕FQf5)nw++ۮv%%`rwv 1O\/ #x;|okX\@3qJ 0/5罕Zyq63*)?}[BeWt@>ؚiwNgRAptf p$(#Y o6owSl>򘤄frn8{:bf G!0'-t1T@߈cy.v?Dny,O;NZ~uX>T69L.U }ZU737&@mzd٥bҗQA6#C //_r˝Q6VSޞD-F'(tfs`&3\"U}n\t}U:nr]ƕ5\lvX($1Jg߃,"$NgMQPtg1lyC.=Iuf'ꝷD=@K'ITM;PLZbz$7Ԯ9369,?ޔzt|#`YSlMQW.[+@Ᏻ]\bl$ 7#C6xp@5vsLk1ܨ`2~|e\TL}oTaWF4R0vab0Gr2ǒ3 2z|.dG8*'B&yd_ցOlWkoUW!oY0?ɰ1+kS"u sJN J ieJ,QB= U&"G7<#rtV =(~d2JDU^v!3/IϞt6G D(R1X=&b Y]IP ?9H~e6.l\vWlޑ)\3ٕX@'ӟ3mM8i/QsonUaK_\'g)Z^lg[p0]_S \ F2cJ8|Q? Y#wa!A8ǔWp_#i+ voXVpd-Hstk5¦`)?=q̐8|wus%mP2;tN]HƔ_yv/+ojzHz'4I-`qZ3:i@>9+׏"{Z[zf>BY N^*dC5:%qY35`áuKh@/yfOK]iיuuab!bԉq}1:n?ܓCmɊA=]p;S3G4 %~R<\mfHinlxjX`)qaC@]/h䷓>@G*>Qx-l/QWmZ/$^f̥o6 7‘ 9Q KOڃ k'LFxK [б4'&s|qB -;ʀ̃W,C;_KZ$oNP`,cn{A7 it. =b#9F}遧`6Q9$OWdKGe n/||]|ULu3  vJ.f6 &[g"/8SdpmMX" ̼Ic؏x6 ' wh>'oAw"cX T= ӽn x}7  =GeuՎBH.&$8r~cK@Σ" E?Dp*:y '_jS\t{-:NI 9G"EYrO{F7Z3%&Ѡ}f."AK`1d)7 k3™?"%˸IaggVBiJmICg(ϒ D̜p8Č/*ЬPTE(@-^,FyV-ҍ pQ ܒ !/[mwi{c`C$  <+cD]ȣNr M-bs;sat^ RΩ {96~ yAV@#aV t14o9( I7mZyc./r"TD#/^߯Ra0tmC:O5XvӞXJu7I$O13HeRZX&!+m%㻑ZL4qցZ{%|#_FZn/CS3W*/nV9 BƏ FnzGachr SI+{iI&6ڬZ 5YĽU^H{ɈõX 6J%x?Ai߷p\ wKZ4?n:fM.E-5~KDWs\ʿK:y|A7o-pea&A >}FṸQ=)6l!2$~cb }7SP>=Ŗ w8^ʒVJF&[}4 q\;dWrԳ WVU=4l˫3"[|EՋSTi]+ntR`tI&ܙs߭Hg _d3(Bf kCX)UѴ{;~IǏul;@ad @ O{Gڈ&qÛOA3Eת/e`.>2rp<ŰBOMz(&p 7 66Ou $sSF6O_lj@ns8DF?H5IzirޞEP0hက/!u;C: ׭I?oJb[NHn^%]m^&.O?EZw5e6Ǘ#q!+.\4*S N u:9?4r藊*RAɎwzΡBgP_@J.$rf%[[$ZEX:вxy Pj$IK(FHK'%QخJÈ F+/FNV쓓8:ȲZ*KOFP.`j`q*QMmE>Ǧ3m"n"L#Bi"-9g.s5kΛ:Y6H,&Y϶8I9u*q?ask(\^rcF7W C'"]Wk-B!>3oulL K uюgzQ#@f`򃘄 ~dTy,'ߵ"uy$Ih[yH}jg+Z< ?kf:q"@ݰ]%"'Įpӹ`iD a>cU"O鞨ǡcNao-Rd8MN ᗩBq^_.dD\ =W`.IX?1S0]j@.I-i v!0Dkp^+ۉ;õXl&v+X rg^qˏJS9|g\:/GR6w. 4}-CVB9w /m"sy˔ddtͅ%Җwҍ)0p%bd7^:RG@Nr^=B+ӚZ}K. !# RvR*F NXsdF0%oFBʶ@ZW?o,yʡֈX>S[,_{)y!sF}LcRLEs uAֿ#:/oQ<0zS I4\x`/]ewtKy16?g~$sNR:L֟Kvd Nb *Wݡ*WFu9W >/y9Ҙ^*O`T{Í7㝲 H֝UE*s,yRvlf"A 3~!e4J{͵n.\,9Epz=)7Ў=qrIj2v5xLS*cHV2 Dʻ`6 y1Ζ괻:vyxڔ@Y}]mʯ2,ʚ/ bk]mtif97X81e}Ph18@Ӓ2*|_$X pp6YaD8O#Ȕ$S ɬb.1> լgʍK%c~&LT3RonG#z|YbIʛ?_娺HdOLռC"YJ`kS^ь;qb7 Mu0]űE65Ao" !=kS-W``\Hhr D{Aww }2x($cEr\ K!3N+aͬҧ%x@/<(Liz..ݒl@IT ZG/juanrAŃ{U9 bg+qq~_TN8?C,7!+5Χtv{x)ogf1dO&ブLx?*ef=pmc%Gކ" PH%97U Јi0O |۩50!m_\k\'}ħh{Du@N8Wbnwm_@$/Z^K%&Y~E,f(O'WA٧=5X\%$Gy1QgbETy&Mm;`F7q/ p&{3d$|5%2)dih +n~\ х˓ѹ 8\Q:2Vλ9`y㗞?(c,+Q UlhfT馈R#Zοw.$3 v7]=;ltLc/ wYd\`43oCoAE s '0B`,vɳkG}MWFfLq~b[ & LE E A=DRQ-|2i#~i'ik}b0gc{Po·N}}8TwaⵓEnQ"-ʫ Ӑ%C( 0HfgWNR eڨO9;[c?f%3%(]{\ A3na\5~$*-qEb0}Kߍ~[((udti~ِ|"Lm!l!Vl{a.LZش`ĵrurmUQ=oXKZ.c4 |"<d~^}F-ɞw5~d{.h~c錒|{wff}v丙wW+~Os])%tDzO١..!`CSu:9ʌoQgQa{I#itO`/eKyު(<&MK_=T%;4kjH;?/*#x[M)fâ"Ae@1`>d@UU%IQU$L-I4yID@W=9F&oY# =MN>Lyή غ'}Lޡ7#ũ-CN贼>7k9Y|udC3+2 )_u+ . U6c@sʤ>\`&_YA8ڝuۼTX0/9WߠV徏(o"`n`$/nZ`|{7KztIڮ/NiJ3~YvA?bq|Pm [X~b[QN-[ALvd m pizXeDtG@zUr*s 1̬HSĸڟ~{;{m@9 jUe (`V프v ONj4ZN$Aei=Jܖ7$(RtpASh;b)ݦ@+zESfFq! ЈY"ԣd`MAnAǣ}P=EiT \;ݡ8%qyfR%Ai[Q烵2]?#]ko'輀`.R SuS ޏbQAƗK䯆ul\NH)ܿgqOc7:9 .*H=w453YԒÿ9tϰLjwWTKjp~ E2#|3V:Rޭ7ML7k5$'-ķ'>" 4 0O$B4`$LffVH3s#\YЃAǺa'HH-w:ި$`tTQfH =<'Si\2Ң_ӓ"2v˥6dMy :]@A¿1Bͅ>Kx, @WΗ lFp} FLkk 1|8{ݕxٟ(XC̡P{xs=|&2A0X6jfR:z.KP2F; ' %5dДJ(' UKEOD' LS",8ft*(0Vm.Rkiu[ e pZV qiu@tCK.%=E yR`+Pl `Vfb rMp[8?Qu(UA=ʏy(d˾UhɣomǾ?FV$m7V/:P?vY%5KMIHK5ZD[~C!˾% Ah!Fe/^d+g\Ůr_bɴM-hmG?*e\2JXwk}z>uG۽$D6{T!Wl}A}5޾3)>BUn}(V-}QBe?kB;y?I-a'`E:aklZU9U@7csg-XGl="70n>f{|3pB_ְ23Ew8BML.³g;]MfioL7ZoMdc>@!6!~%c-_SF=jY= Un97*2_zFߑo6_Qynbb6 tB:L_\kdDE0z'#4T6ہVoqrH=`@\ g}-8qoUGΊݕ d.nFD+ yx.3Hu'}'ϱ-c+YtշcsH/lsƂrs0F(L=+b72NW)ɒRfsAZZKAy"}YFәؾdgY"{&uҶ>qS#8_܂j^?;"|(8L]'y2_|'2{tKuRҍ^UvRd'%^hMf#}/2 2:ȗ2I CXP>GE5tΡǟ#cIXS&O{G8 B0l H4>xq&ǪP!la(N9yK`6T̵p\26ۏy;iVG*qf' Ҕ1R_ wBəРROeId$#ĒK>?Pa:CD!j5[Y:P`%VJ7Zo7 L~`V>01w4p[0.6!voH%MG$zr\7;u)GbN8[ttGI~ҳQ _nm&e) !U/{R1a(MV̈́rHݷs~ &@lvhʇ sR"$,hmQdè3% ؇1PȗggKP?h'J *[PF7kE$OZD>Xb&@,ߴų ݄aޯIbvK#\N]q >e':)}<=CQFc;޳]#+F3•6e<`oSӮk[:;"70YK"gua^4R8(@`F,eSTqN-}>Wņ~,5B< 8嶀ҙ\`,[k Ej@7#PD 0/$eSFڗCVY'zoH3[)Y:qE|Ê:PDqStҭ|xa]Mg?SyLMRnU-`'9=MZPL~U@/nzVAԥ(¸_3;1j/#ްwNA4¡X~ևo)w h\;R s7N{V׍kF|`3X˺Q3ru#/0J-7Nu3CIl"Y%;EZZoXMQ+!6oo{]!%͸XƷtwv;G %?@PΝ.O|W縇 62!ĉqVп^ozWP ں[9Ҕ-Orݾ"<\QV.4^ԇ$Ty;pnP-HZVn_]No,r:"vWR:65mzVw)ז<}$ mX@L?XeFΣ:vgM'&8:ɘE=:% XX()][ˋ_sA ď>)zt_\8sCDd+8di: ~@9Ҏй%*Ud*NјiYeeu}@g0:06mHHBfEPc6Ŝx(<ʶ3}Rz11=sFEǘuS7Q1<~kK+c+h(j8s5pQ~)UPv7U^u@请sNeg2wmb{G}褋#)4(5m-2u|$XMt$a(+ aGI#螈,-H6$Fa%ߊteUSia'iEj}t<[`t}dK6ӻWܺq=,o2,UxF- <ه2M{yP>qsURwKH' ^s GkuJ]Hr~qB?aQ@..z%P[FF?(_AYVEw31\-q9 琘su clKn~TZ' H\Z+DJ:n 60Dݣ"cZE2wǸ,sՂ*`!*ӹ.GP3 2xCJϢJ{ ]j6w{-D%zp:' ֜\CE=VPr%#Kna1jQ Fr@~82sDf;) $q/?#uXv؃ÜtG1?֩ox)9ϘY^Xa.fc.{aŰa0rJ Mj؊_1DL =R=-sL%S 1H7 ʆxCֻ([gЩ.;³Ytiy:1jCҸƌ!K{ djψXme*p&@iuϼ ['[g;ngLY&lWț0V>hΪXns4ltK ҉fM>a֎ H8a߿z=_ Rl80 pEiqK#e-uZ$CꨤFZ,,*lP8Mp6aLGgSh#5 ~৳ "SW%CWxXK JO>ރV0hit<Ӽ;e/sAƬ7q ˹^E rUxx̝P\P}kO3m oʤtԮKzI%E>T( z8) NzOO'喉ኾX8x/VXx{1L˒6Ş돈=7 ]-k0X% N>Q--m!#Ԑ^ΆE8&S L{GRyW^O6h( RWҠÓ<+ >?on:LK(eeG֔0+~d՛~TZH,S'ubX,DvN>xt*.%"43S7 4Oz --ljԚr }US"> UP.Z;1w!Ө*}X7pAfW5RBZUS>N[Kõ1YGFT]IgC:7v^:`Ga%#?qbCn7 ڿ9U8=}:sV#l7vP)6#tpQf|Eu]wBd&tL5Vniѡ~'R)Fɤ-N,2ܹ3g6F\ 8*>E1h_QS@biOh|ϱͶo[3INZ1 V=Ê@.7r,{w{Y5/C1Ţer:w)o:R~2N=_dJs&08BpƆw Bwǟ.8'Dj]:S@5WɩPBL[Dxqđn.`dN:tr7ÔP)I7%HR{1rNAFW )Vք`o*oilnILwܕ~'xŧs3}%ͪ %n+Qi4"MUMàKf&ECya=\x(iw1~s_vBJUjW #$@My{HJс/B1۹r45}`d8v;y&~{ XlPج-X2]/s%SR2"GܣiE Y:xUŹZqZ(t"׶?+4ncovReHtJ*dD%8-~E>?S8yVzl+JAD[ZFYA\S3):0*QAw4tWwC0+T!R5ZF@ڏyBo 񹾞ٵ/9+SKonI["A @TTLnLCpz'Ї*XXv1Qk.u: ,knCsNfbbn`>D9ym6ZJr-XekSL8=Vr%`J:$0jL_x]sk&Gjvɝ^XSa ʨs3#0|̯hl=2z|?өxHI{ct.Q".sbG~9S eqZkA^(fzg{_.߮|u@g^U׾7R떦>d(-~ECNͳ#i9CbڀŷRcJ6#-l^¯0ل.X(_PzKWXf [RCJD IC7"Jr[Qz)U VVQDs@iRΥ>EL}!rwbJ }=yǼrCdpu(61{Ga^1ZDjn-t@Az?e*9rɰ|-.BW2!z/ sLq4 ak\J:NB rcJBނ܋B1D}Lf@K͝twdȅ#ĕnaM{ЛȄN#z8Vp60JGдH ppj(n]ޮ:u7YVt٧I.s([IC"BU,6Ed7+ӏ].k :,1r۱y~РzD`%z -OݶR2FH7c 3GecﯾBݧJ~@ vqֈ ?wn?Z3PF:u{ao l@͘(]юZt)RI昗[p~Wۻj=(>V *!1o@1bAxC"&aͱ:Ym %Gw1eK;dh"U &{4p,kW+P8:7 YjA㟋T#uE1eJw@r+PDR0!]-e5VzN~aܥ5@sY7 [3||cdZݎJ6wL VRxc{;"H@䓼0)"Rkו31H~spޔ("rd\<c̀M9:xkCXbM,a@1sSZ9g8Պz_*7b`[jz7# ;e- xɅ }rbF}V|I% 皘CC.aQry(E\mvW{oB_o?} YNvb.RWVg3xrą4 B.5}b+'(#`4 q%iI[!"_A zk`"TK6٣XAW+? A &'$Ű̾eն bϳEQ4j-Q]w};F) &:qG$4f _2Rq'p240D{28Aycy^5mҜ,r1޸x=v!HFwxZfPkk_CnEgQ~y"T%Hr9Z|?C?@9ckcRɟ;$##JH/\H_c/d+j8+bJ͉ssec_oDߐ 0/(=9RH {(k-> *kztxz(Peq^C) ]=Wz?QY$GS|5g'95Dɯ̲vcw(D1Ieo#|} X&,Z:+wیo"@'Qٺ 8hH7Sǜ蛉т?LuR@$ہ*1)/K~RXf+ˏ_y2w83rp\~~p=ۖTOJ_9̳Ϙ!Z714ç&=K(uMk e,˟ }2l/w2_9+USz653b3G\ecL@I! z= e)&3ctXOXp@iR}V6G(GM^qi#:hҿ{$e,0w]%a)%v:CjSz>}^f[nVãǧMmfd2ibB*A4l 1{9qƭ^k+f]+U 3Lxy.ICJ̜+AY=!R%n 0ȫ)iʸYv5uE='2má#|KJK ЅuT360VHV7|9Ue U [$7:=UtʅO{ ڤ2vw$N@?+*g$a*Cj'(Q)pwDq9vsq3)wyYs bEd1BK!}He*[D}oūF&V>ҐYsezlawƤZ90O9lPf#/k":(b*(ڔ.]HѼ.|j0ޖ=iY G>ؗ:c/C`ѱ-T&!:({t8khM5*䇞m7rHh>*Y)r$nA>$ۙtBNQgnXKxݚ,+C- O̞/Ãj3D 32f:1T S Vt4GYӂ,cNTTDLjG=)hqAG7PNS*/_[.uЅ !Q5*x>aJ 6),v.:ÆO0E`K %A K^G'&F?Rl.FlCӀ= jBމ.S; G6Gm.mHFezP@#{c]]^VZҨD bH rIW+[1Ziw4ǥ@h@п4?J='uNbHcWt9@YT@D3G4.͋nbn'qmҵfm<m](#B ፾nHS1~"Yn'eAmbRV/cEX--bF=/uHㆴO\ 4VKĘ \ [7b56@a l4 1rA<YAV2gCQ0$^0;r*B{A+၊:BW}?&1u::Yf_&ʨKZQFϪe) |.ZT&]s`ɣFkp9dE{ORWAfrvZO^ @}}8,x(= $5wsJymo5)Ng i>ך ӭdާ1)}ՖLK)/?|Xrt[{葂( t&]ͫM1|ٕ8Z'r9R{#\k-B=P}V 21v~SH&if#eSyҎ5J|oMETzG0J` n+Ev~@t]ȩT03ASfךǎG CK1/@fTҺkSdrL@s=Q{McL'Au`1v 8_{kM #8ݻ48@?Gba_m? Ll`RX^eHTsخWF* aZ"پ᳣M_e2!qmG~6"N:n}X Q/bsEMճ?Qx{ j }zn?<;@*&Z.փ"J|!j*?nC& fT Fv%b  AnAL(4l+$:a4k&ه?''Kc!yЈf\P~F>BIxmc3.,f:QI N_b`6Pü-ϣ/3J;^|:6>kX)J9FxJs\g0!6 _9xYM +c]1!"\9<xp[k$#OuԍV6Uz{˄r3>$wI-`4hd3['h.\Wt'WD`l4$U]f7Jpҵ7;^QP6ʾyJ2˪=uIxh #/e=z-A c{.IdQ)T KBeߐ͜1!*!Mx!S-K|34ȧNK$$)Ltc_@Zd'Mxu<ȷ6teH3!-!PO?1G!dϹtz#qcمCm?kLU:V;٤~2#C]t7ҀaFH>*M%.(W:A4Qv8I8MRF`X~` R3&fL_]q=L0Indpm ?=3<(P_N:BKIyq%Ei&3ȀaR;Bzk ~ު’X]b+zqln9e?Ef4q7NQcmcuAU}YA,wr3kلWʹ|U"#zm2JGz{Edk'@ϔ7O%WF<&"EQgP}O (\6H4ʠ܉~VTEΖ3H:\l!򥒅* LrN񣢳#UV/JR kv^sUGGQL>ZOc“ LE@z|C, d̂/hjX8^(VCY`uVWљ˻-uI4{ߛ~eb:vp8.X {\Dg61jEc1ԟ_i 륃a2*j>ɯɹd>ik\OS FHöla,\ƌz" 3bF'* ^wز ,pB%ФeZ)gȭo̸PT t:21neK-E+)jd[nmU$[*]h=v4'E~ o'ʦ PI T f8]L;@'P n:? /pj+xqd=ƜӼg8?l̎M#U :g?([H,c(7ñ!aQ e1Mh0؇0bo#8UN$I$R<= )+geʧ "80Q< Q2P|w.MQßmQrQFLDCe+rR-Xz+;t(r Of|0Uͳ@ 3>/CCj9iZ* 3Ӕ35Sy:Fb!έx<Fu5'!O&&ԪDv(ky7hI g]Չ6@~E.RXy=ofrIɗx.;u w5HCF=U3 TҙVsdpSۋot g&yg@*e@|C+]T<i ^kgg@FcJn6vJ*EuG0\Bn#z'!ЋGN2P/11)~7X ږf|$'f5=W[XLG ,jU4T<.dA' Mq|Εұڤ}u&4 uCZ&\q'MŸxYߜ4™+<;k#҂`4fΰ=f]^RiY=Is7҉m6?Ư}J:d 8 oV}Rv XGvuK*%v;@#=<9 sq8qnjB3br=e*OڲT[e8b}(I˓ 1(!`zaЎWN'@ 7yam9&M=?lg#]5n~9å$҃UGP|ǘz/G\X5Z$M FGFXvË R& a|c6RФڼ;އ Růj*V@+p \>b$x##W4)iF;n(۱dhKMP>l%'NH_V"vpk :بGe:]=f-AZt{5(XbPT6gNb+r\Od%e\6<%r5AH*$!mB x훪8ܮ ֝FI9(+w1Yrkm} `8)T!2