grub2-i386-xen-extras-2.06-150500.27.4 >  A ddڤp9| eG1yjW&t4Z c*EImwêh^\atef>;#1-1rF.hP06 }/5m_=haQ06H5W!w7,S_64 2O9,VYuش͆os6D)APM܇ Ac2nE[fk B .)fdb583f710d9587ec83ddbc40347dd4a11e02fb809be6d69ba0b757b5139f8afcf41dbdd5fa7a9b53b1aa62f7e4a43bc31ff6822Xddڤp9|4d#x^?1ξ7u[5uw;Kpr39PyqTjE@Hڣll휎$\\l_ zsS7]JzƿDf\Cq-Nn=z\mrV !8F0} L١?rL,@`Q55$eɿSmq2[BI޴v.EOwJ_a`[rM d) c*ٞ=89݆` T36>>p;E4?E$d ) Jtx  < J X t   CfXl(89 :FAGAHAIBXB YB\B0]BL^BbBcCdCeCfClCuCvDzDDDDE Cgrub2-i386-xen-extras2.06150500.27.4Unsupported modules for i386-xenUnsupported modules for grub2-i386-xendd[sheep65dSUSE Linux Enterprise 15SUSE LLC GPL-3.0-or-laterhttps://www.suse.com/System/Boothttp://www.gnu.org/software/grub/linuxnoarchPD4(A큤dd;dd6dd'dd'dd'dd6dd'5c994db33b4a80a806b529a09e18bdec53667f54a26b67d84b1d491ded9edee2861d26bb6e897589c972332eb04569a041e888afa2e311f64787df449f9feac2251c5145697a1e87c45f79a9fc9a382f9c35e1cc7fc2eadc4576c4774b2af5f989b74b831c6999f00b0a5886ff1774b888285a830de92786340594ab68185f8c0e1bf289344d027e8fad6a3605629eca00a02d7606a11a80655a66b15f5e1f74f70e9e7390a5f429d57bcdcc7051d516f50394872fb49da8220711788ce8edb9rootrootrootrootrootrootrootrootrootrootrootrootrootrootgrub2-2.06-150500.27.4.src.rpmgrub2-i386-xen-extrasgrub2-i386-xen:/usr/share/grub2/i386-xen/zfs.modgrub2-i386-xen:/usr/share/grub2/i386-xen/zfscrypt.modgrub2-i386-xen:/usr/share/grub2/i386-xen/zfsinfo.mod    grub2-i386-xenrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)2.063.0.4-14.6.0-14.0-15.2-14.14.3dBzd>@d5Kd.@d?@d@cU@ccc=@c@cR@c@c|cdc[@cV~@c< @c$e@b@b@baG@b+9b)@b)@b!@b b@aea@aq@aaa{a@a@aaqV@an@aKa7T@a/k@a.a @a @`]`ٹ`"@`@`@``@`q``}p`n@`P`J@`8`3`.V`U` l__t@_@__m_X_G@_A_?@_;_5+@__A@^x^U@^H^y@^t@^oj@^j$@^g@^Y^K^9\]e@]{@]@]@]W]]V]0_@]@]]@\ޢ@\ޢ@\-@\\\mA@\b@\N\J@\J@\I\HW@\@[@[@[[@[t[Q@[-[~[l,[j@[h8@[W[L[D[<[3|@[*A[#@[@Z@ZK@ZZJ@Z̧@Z@Z&ZZkZZ@Z@Zz@ZyZxG@Zg#Z*~ZOZ ZZNYeYA@YX@YY@YYYn@Yu@Y[@Y0YR@Y@X׭@Xg@X@XX~@XO@XZXXXX@XBX@XYXpXX@X|Xv@XlXfL@X=X @W@WiWWF@W@WWW@Wq@Wi,@WPW>@W=W'A@W!@WV@VՄ@VՄ@V@VT@VVvV$@VrVqR@VhVetVa@VV@VLh@V5V3[V2 @V#V @VV@UU@Uc@U@UUzUt2@Uq@Un@U]U[%UPUOH@U@U.RU/@UTTT[@T T@T@TT@T5TLTy@TeTR(@TR(@mchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comglin@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commsuchanek@suse.combjorn.lie@gmail.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commsuchanek@suse.commchang@suse.commchang@suse.commchang@suse.comfvogt@suse.comrw@suse.commchang@suse.commchang@suse.compvorel@suse.czseife+obs@b1-systems.comfvogt@suse.compvorel@suse.czmchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comnormand@linux.vnet.ibm.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comlnussel@suse.defvogt@suse.comlnussel@suse.derw@suse.commchang@suse.commchang@suse.comolaf@aepfle.demchang@suse.combwiedemann@suse.comschwab@suse.demchang@suse.comrw@suse.commchang@suse.commchang@suse.commsuchanek@suse.demchang@suse.commchang@suse.comrw@suse.comrw@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comguillaume.gardet@opensuse.orgjengelh@inai.demchang@suse.commchang@suse.comrw@suse.commchang@suse.commchang@suse.commchang@suse.comglin@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comdimstar@opensuse.orgjosef.moellers@suse.commchang@suse.commchang@suse.comjbohac@suse.czjosef.moellers@suse.comjosef.moellers@suse.comjosef.moellers@suse.comjosef.moellers@suse.comkukuk@suse.deThomas.Blume@suse.comidonmez@suse.commchang@suse.commchang@suse.comjdelvare@suse.demchang@suse.commchang@suse.commsuchanek@suse.commchang@suse.commchang@suse.comiforster@suse.commchang@suse.commchang@suse.commchang@suse.comolaf@aepfle.demchang@suse.commchang@suse.commchang@suse.commchang@suse.comolaf@aepfle.dejmatejek@suse.commsuchanek@suse.commchang@suse.commlatimer@suse.commlatimer@suse.comagraf@suse.commchang@suse.commchang@suse.comrw@suse.combwiedemann@suse.comarvidjaar@gmail.commchang@suse.commchang@suse.comarvidjaar@gmail.comarvidjaar@gmail.comarvidjaar@gmail.commchang@suse.commchang@suse.comarvidjaar@gmail.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commsuchanek@suse.commchang@suse.comarvidjaar@gmail.commchang@suse.commchang@suse.comagraf@suse.comschwab@linux-m68k.orgmatwey.kornilov@gmail.commchang@suse.commchang@suse.comsor.alexei@meowr.rumchang@suse.commchang@suse.comdmueller@suse.commchang@suse.commatz@suse.comarvidjaar@gmail.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comro@suse.demchang@suse.comarvidjaar@gmail.comjengelh@inai.deagraf@suse.comolaf@aepfle.deagraf@suse.commchang@suse.commchang@suse.comarvidjaar@gmail.comagraf@suse.comagraf@suse.commchang@suse.comdvaleev@suse.commchang@suse.comarvidjaar@gmail.comolaf@aepfle.dearvidjaar@gmail.comarvidjaar@gmail.comolaf@aepfle.deolaf@aepfle.demchang@suse.comarvidjaar@gmail.comarvidjaar@gmail.commchang@suse.commchang@suse.comeich@suse.commchang@suse.commchang@suse.comdmueller@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.commchang@suse.comarvidjaar@gmail.commchang@suse.comagraf@suse.commchang@suse.comarvidjaar@gmail.commchang@suse.comarvidjaar@gmail.comdmueller@suse.commchang@suse.commchang@suse.comschwab@suse.demchang@suse.comarvidjaar@gmail.commchang@suse.commchang@suse.commchang@suse.commpluskal@suse.comschwab@suse.deschwab@suse.deschwab@suse.deagraf@suse.comledest@gmail.comledest@gmail.comjdelvare@suse.demchang@suse.com- Fix PowerVS deployment fails to boot with 90 cores (bsc#1208581) * 0001-kern-ieee1275-init-Convert-plain-numbers-to-constant.patch * 0002-kern-ieee1275-init-Extended-support-in-Vec5.patch- Fix no prep partition error on non-PReP architectures by making the prep_loadenv module exclusive to powerpc_ieee1275 platform (bsc#1210489) * 0004-Introduce-prep_load_env-command.patch - Fix the issue of freeing an uninitialized pointer * 0002-prep_loadenv-Fix-regex-for-Open-Firmware-device-spec.patch - Rediff * 0005-export-environment-at-start-up.patch- Resolve some issues with OS boot failure on PPC NVMe-oF disks and made enhancements to PPC secure boot's root device discovery config (bsc#1207230) - Ensure get_devargs and get_devname functions are consistent * 0001-openfw-Ensure-get_devargs-and-get_devname-functions-.patch - Fix regex for Open Firmware device specifier with encoded commas * 0002-prep_loadenv-Fix-regex-for-Open-Firmware-device-spec.patch - Fix regular expression in PPC secure boot config to prevent escaped commas from being treated as delimiters when retrieving partition substrings. - Use prep_load_env in PPC secure boot config to handle unset host-specific environment variables and ensure successful command execution. * 0004-Introduce-prep_load_env-command.patch - Refreshed * 0005-export-environment-at-start-up.patch- Fix installation over serial console ends up in infinite boot loop (bsc#1187810) (bsc#1209667) (bsc#1209372) * 0001-Fix-infinite-boot-loop-on-headless-system-in-qemu.patch- Fix aarch64 kiwi image's file not found due to '/@' prepended to path in btrfs filesystem. (bsc#1209165) * grub2-btrfs-05-grub2-mkconfig.patch- Make grub more robust against storage race condition causing system boot failures (bsc#1189036) * 0001-ieee1275-ofdisk-retry-on-open-and-read-failure.patch- Move unsupported zfs modules into 'extras' packages (bsc#1205554) (PED-2947)- Fix out of memory error on lpar installation from virtual cdrom (bsc#1208024) * 0001-ieee1275-Further-increase-initially-allocated-heap-f.patch * 0002-tpm-Disable-tpm-verifier-if-tpm-is-not-present.patch - Fix lpar got hung at grub after inactive migration (bsc#1207684) * 0002-ieee1275-implement-vec5-for-cas-negotiation.patch- Fix nvmf boot device setup (bsc#1207811) * 0001-grub2-Can-t-setup-a-default-boot-device-correctly-on.patch- Fix unknown filesystem error on disks with 4096 sector size (bsc#1207064) * 0001-grub-core-modify-sector-by-sysfs-as-disk-sector.patch- Make grub.cfg invariant to efi and legacy platforms (bsc#1205200) - Removed patch linuxefi * grub2-secureboot-provide-linuxefi-config.patch * grub2-secureboot-use-linuxefi-on-uefi-in-os-prober.patch * grub2-secureboot-use-linuxefi-on-uefi.patch - Rediff * grub2-btrfs-05-grub2-mkconfig.patch * grub2-efi-xen-cmdline.patch * grub2-s390x-05-grub2-mkconfig.patch * grub2-suse-remove-linux-root-param.patch- Setup multiple device paths for a nvmf boot device (bsc#1205666) * 0001-grub2-Set-multiple-device-path-for-a-nvmf-boot-devic.patch- Add tpm to signed grub.elf image (PED-1990) (bsc#1205912) - Increase initial heap size from 1/4 to 1/3 * 0001-ieee1275-Increase-initially-allocated-heap-from-1-4-.patch- Support grub2-install on LUKS2 encrypted device * 0001-devmapper-getroot-Have-devmapper-recognize-LUKS2.patch * 0002-devmapper-getroot-Set-up-cheated-LUKS2-cryptodisk-mo.patch * 0003-disk-cryptodisk-When-cheatmounting-use-the-sector-in.patch- Security fixes and hardenings * 0001-font-Reject-glyphs-exceeds-font-max_glyph_width-or-f.patch * 0002-font-Fix-size-overflow-in-grub_font_get_glyph_intern.patch - Fix CVE-2022-2601 (bsc#1205178) * 0003-font-Fix-several-integer-overflows-in-grub_font_cons.patch * 0004-font-Remove-grub_font_dup_glyph.patch * 0005-font-Fix-integer-overflow-in-ensure_comb_space.patch * 0006-font-Fix-integer-overflow-in-BMP-index.patch * 0007-font-Fix-integer-underflow-in-binary-search-of-char-.patch * 0008-fbutil-Fix-integer-overflow.patch - Fix CVE-2022-3775 (bsc#1205182) * 0009-font-Fix-an-integer-underflow-in-blit_comb.patch * 0010-font-Harden-grub_font_blit_glyph-and-grub_font_blit_.patch * 0011-font-Assign-null_font-to-glyphs-in-ascii_font_glyph.patch * 0012-normal-charset-Fix-an-integer-overflow-in-grub_unico.patch - Bump upstream SBAT generation to 3- NVMeoFC support on grub (jsc#PED-996) * 0001-ieee1275-add-support-for-NVMeoFC.patch * 0002-ieee1275-ofpath-enable-NVMeoF-logical-device-transla.patch * 0003-ieee1275-change-the-logic-of-ieee1275_get_devargs.patch * 0004-ofpath-controller-name-update.patch - TDX: Enhance grub2 measurement to TD RTMR (jsc#PED-1265) * 0001-commands-efi-tpm-Refine-the-status-of-log-event.patch * 0002-commands-efi-tpm-Use-grub_strcpy-instead-of-grub_mem.patch * 0003-efi-tpm-Add-EFI_CC_MEASUREMENT_PROTOCOL-support.patch - Measure the kernel on POWER10 and extend TPM PCRs (PED-1990) * 0001-ibmvtpm-Add-support-for-trusted-boot-using-a-vTPM-2..patch * 0002-ieee1275-implement-vec5-for-cas-negotiation.patch- Include loopback into signed grub2 image (jsc#PED-2150)- Add patches for automatic TPM disk unlock (jsc#SLE-24018) (bsc#1196668) (jsc#PED-1276) * 0001-luks2-Add-debug-message-to-align-with-luks-and-geli-.patch * 0002-cryptodisk-Refactor-to-discard-have_it-global.patch * 0003-cryptodisk-Return-failure-in-cryptomount-when-no-cry.patch * 0004-cryptodisk-Improve-error-messaging-in-cryptomount-in.patch * 0005-cryptodisk-Improve-cryptomount-u-error-message.patch * 0006-cryptodisk-Add-infrastructure-to-pass-data-from-cryp.patch * 0007-cryptodisk-Refactor-password-input-out-of-crypto-dev.patch * 0008-cryptodisk-Move-global-variables-into-grub_cryptomou.patch * 0009-cryptodisk-Improve-handling-of-partition-name-in-cry.patch * 0010-protectors-Add-key-protectors-framework.patch * 0011-tpm2-Add-TPM-Software-Stack-TSS.patch * 0012-protectors-Add-TPM2-Key-Protector.patch * 0013-cryptodisk-Support-key-protectors.patch * 0014-util-grub-protect-Add-new-tool.patch - Fix no disk unlocking happen (bsc#1196668) * 0001-crytodisk-fix-cryptodisk-module-looking-up.patch - Fix build error * fix-tpm2-build.patch- Fix installation failure due to unavailable nvram device on ppc64le (bsc#1201361) * 0001-grub-install-set-point-of-no-return-for-powerpc-ieee1275.patch- Security fixes and hardenings for boothole 3 / boothole 2022 (bsc#1198581) * 0001-video-Remove-trailing-whitespaces.patch * 0002-loader-efi-chainloader-Simplify-the-loader-state.patch * 0003-commands-boot-Add-API-to-pass-context-to-loader.patch - Fix CVE-2022-28736 (bsc#1198496) * 0004-loader-efi-chainloader-Use-grub_loader_set_ex.patch - Fix CVE-2022-28735 (bsc#1198495) * 0005-kern-efi-sb-Reject-non-kernel-files-in-the-shim_lock.patch * 0006-kern-file-Do-not-leak-device_name-on-error-in-grub_f.patch * 0007-video-readers-png-Abort-sooner-if-a-read-operation-f.patch * 0008-video-readers-png-Refuse-to-handle-multiple-image-he.patch - Fix CVE-2021-3695 (bsc#1191184) * 0009-video-readers-png-Drop-greyscale-support-to-fix-heap.patch - Fix CVE-2021-3696 (bsc#1191185) * 0010-video-readers-png-Avoid-heap-OOB-R-W-inserting-huff-.patch * 0011-video-readers-png-Sanity-check-some-huffman-codes.patch * 0012-video-readers-jpeg-Abort-sooner-if-a-read-operation-.patch * 0013-video-readers-jpeg-Do-not-reallocate-a-given-huff-ta.patch * 0014-video-readers-jpeg-Refuse-to-handle-multiple-start-o.patch - Fix CVE-2021-3697 (bsc#1191186) * 0015-video-readers-jpeg-Block-int-underflow-wild-pointer-.patch * 0016-normal-charset-Fix-array-out-of-bounds-formatting-un.patch - Fix CVE-2022-28733 (bsc#1198460) * 0017-net-ip-Do-IP-fragment-maths-safely.patch * 0018-net-netbuff-Block-overly-large-netbuff-allocs.patch * 0019-net-dns-Fix-double-free-addresses-on-corrupt-DNS-res.patch * 0020-net-dns-Don-t-read-past-the-end-of-the-string-we-re-.patch * 0021-net-tftp-Prevent-a-UAF-and-double-free-from-a-failed.patch * 0022-net-tftp-Avoid-a-trivial-UAF.patch * 0023-net-http-Do-not-tear-down-socket-if-it-s-already-bee.patch - Fix CVE-2022-28734 (bsc#1198493) * 0024-net-http-Fix-OOB-write-for-split-http-headers.patch - Fix CVE-2022-28734 (bsc#1198493) * 0025-net-http-Error-out-on-headers-with-LF-without-CR.patch * 0026-fs-f2fs-Do-not-read-past-the-end-of-nat-journal-entr.patch * 0027-fs-f2fs-Do-not-read-past-the-end-of-nat-bitmap.patch * 0028-fs-f2fs-Do-not-copy-file-names-that-are-too-long.patch * 0029-fs-btrfs-Fix-several-fuzz-issues-with-invalid-dir-it.patch * 0030-fs-btrfs-Fix-more-ASAN-and-SEGV-issues-found-with-fu.patch * 0031-fs-btrfs-Fix-more-fuzz-issues-related-to-chunks.patch * 0032-Use-grub_loader_set_ex-for-secureboot-chainloader.patch - Update SBAT security contact (boo#1193282) - Bump grub's SBAT generation to 2- Use boot disks in OpenFirmware, fixing regression caused by 0001-ieee1275-implement-FCP-methods-for-WWPN-and-LUNs.patch, when the root LV is completely in the boot LUN (bsc#1197948) * 0001-ofdisk-improve-boot-time-by-lookup-boot-disk-first.patch- Fix Power10 LPAR error "The partition fails to activate as partition went into invalid state" (bsc#1198714) * 0001-powerpc-do-CAS-in-a-more-compatible-way.patch- Fix grub-install error when efi system partition is created as mdadm software raid1 device (bsc#1179981) (bsc#1195204) * 0001-install-fix-software-raid1-on-esp.patch- Fix riscv64 build error * 0001-RISC-V-Adjust-march-flags-for-binutils-2.38.patch- Fix error in grub-install when linux root device is on lvm thin volume (bsc#1192622) (bsc#1191974) * 0001-grub-install-bailout-root-device-probing.patch- Support saving grub environment for POWER signed grub images (jsc#SLE-23854) * 0001-Add-grub_envblk_buf-helper-function.patch * 0002-Add-grub_disk_write_tail-helper-function.patch * 0003-grub-install-support-prep-environment-block.patch * 0004-Introduce-prep_load_env-command.patch * 0005-export-environment-at-start-up.patch - Use enviroment variable in early boot config to looking up root device * grub2.spec- Remove obsolete openSUSE 12.2 conditionals in spec file - Clean up powerpc certificate handling.- Set grub2-check-default shebang to "#!/bin/bash", as the the code uses many instructions which are undefined for a POSIX sh. (boo#1195794).- Power guest secure boot with static keys: GRUB2 signing portion (jsc#SLE-18271) (bsc#1192764) * 0001-grub-install-Add-SUSE-signed-image-support-for-power.patch- Fix wrong default entry when booting snapshot (bsc#1159205) * grub2-btrfs-08-workaround-snapshot-menu-default-entry.patch- Power guest secure boot with static keys: GRUB2 signing portion (jsc#SLE-18271) (bsc#1192764) * grub2.spec - Power guest secure boot with static keys: GRUB2 portion (jsc#SLE-18144) (bsc#1192686) * 0001-ieee1275-Drop-HEAP_MAX_ADDR-and-HEAP_MIN_SIZE-consta.patch * 0002-ieee1275-claim-more-memory.patch * 0003-ieee1275-request-memory-with-ibm-client-architecture.patch * 0004-Add-suport-for-signing-grub-with-an-appended-signatu.patch * 0005-docs-grub-Document-signing-grub-under-UEFI.patch * 0006-docs-grub-Document-signing-grub-with-an-appended-sig.patch * 0007-dl-provide-a-fake-grub_dl_set_persistent-for-the-emu.patch * 0008-pgp-factor-out-rsa_pad.patch * 0009-crypto-move-storage-for-grub_crypto_pk_-to-crypto.c.patch * 0010-posix_wrap-tweaks-in-preparation-for-libtasn1.patch * 0011-libtasn1-import-libtasn1-4.18.0.patch * 0012-libtasn1-disable-code-not-needed-in-grub.patch * 0013-libtasn1-changes-for-grub-compatibility.patch * 0014-libtasn1-compile-into-asn1-module.patch * 0015-test_asn1-test-module-for-libtasn1.patch * 0016-grub-install-support-embedding-x509-certificates.patch * 0017-appended-signatures-import-GNUTLS-s-ASN.1-descriptio.patch * 0018-appended-signatures-parse-PKCS-7-signedData-and-X.50.patch * 0019-appended-signatures-support-verifying-appended-signa.patch * 0020-appended-signatures-verification-tests.patch * 0021-appended-signatures-documentation.patch * 0022-ieee1275-enter-lockdown-based-on-ibm-secure-boot.patch * 0023-x509-allow-Digitial-Signature-plus-other-Key-Usages.patch- Fix no menuentry is found if hibernation on btrfs RAID1 (bsc#1193090) * grub2-systemd-sleep-plugin- Fix CVE-2021-3981 (bsc#1189644) * 0001-grub-mkconfig-restore-umask-for-grub.cfg.patch- Fix can't allocate initrd error (bsc#1191378) * 0001-Factor-out-grub_efi_linux_boot.patch * 0002-Fix-race-in-EFI-validation.patch * 0003-Handle-multi-arch-64-on-32-boot-in-linuxefi-loader.patch * 0004-Try-to-pick-better-locations-for-kernel-and-initrd.patch * 0005-x86-efi-Use-bounce-buffers-for-reading-to-addresses-.patch * 0006-x86-efi-Re-arrange-grub_cmd_linux-a-little-bit.patch * 0007-x86-efi-Make-our-own-allocator-for-kernel-stuff.patch * 0008-x86-efi-Allow-initrd-params-cmdline-allocations-abov.patch * 0009-x86-efi-Reduce-maximum-bounce-buffer-size-to-16-MiB.patch * 0010-efilinux-Fix-integer-overflows-in-grub_cmd_initrd.patch * 0011-Also-define-GRUB_EFI_MAX_ALLOCATION_ADDRESS-for-RISC.patch- Add support for simplefb (boo#1193532). + grub2-simplefb.patch- Fix extent not found when initramfs contains shared extents (bsc#1190982) * 0001-fs-btrfs-Make-extent-item-iteration-to-handle-gaps.patch- Fix arm64 kernel image not aligned on 64k boundary (bsc#1192522) * 0001-arm64-Fix-EFI-loader-kernel-image-allocation.patch * 0002-Arm-check-for-the-PE-magic-for-the-compiled-arch.patch- Remove openSUSE Tumbleweed specific handling for default grub distributor (bsc#1191198) - Use /usr/lib/os-release as fallback (bsc#1191196) * grub2-default-distributor.patch * grub2-check-default.sh - VUL-0: grub2: grub2-once uses fixed file name in /var/tmp (bsc#1190474) (CVE-2021-46705) * grub2-once * grub2-once.service - Fix unknown TPM error on buggy uefi firmware (bsc#1191504) * 0001-tpm-Pass-unknown-error-as-non-fatal-but-debug-print-.patch - Fix error /boot/grub2/locale/POSIX.gmo not found (bsc#1189769) * 0001-Filter-out-POSIX-locale-for-translation.patch - Fix error lvmid disk cannot be found after second disk added to the root volume group (bsc#1189874) (bsc#1071559) * 0001-ieee1275-implement-FCP-methods-for-WWPN-and-LUNs.patch - Fix error in grub installation due to unnecessary requirement to support excessive device for the root logical volume (bsc#1184135) * 0001-disk-diskfilter-Use-nodes-in-logical-volume-s-segmen.patch - Fix regression in reading xfs v4 * 0001-fs-xfs-Fix-unreadable-filesystem-with-v4-superblock.patch- Fix installation on usrmerged s390x- Improve support for SLE Micro 5.1 on s390x. (bsc#1190395) * amend grub2-s390x-04-grub2-install.patch * refresh grub2-s390x-11-secureboot.patch- Follow usr merge for looking up kernel config (bsc#1189782) (bsc#1190061) * 0001-templates-Follow-the-path-of-usr-merged-kernel-confi.patch- Add btrfs zstd compression on i386-pc and also make sure it won't break existing grub installations (bsc#1161823) * deleted 0001-btrfs-disable-zstd-support-for-i386-pc.patch * added 0001-i386-pc-build-btrfs-zstd-support-into-separate-modul.patch- Delete the author list from %description (the %description section is literally for package descriptions (only) these days, encoding was also problematic). - Add %doc AUTHORS to get packaged that info- update grub2-systemd-sleep.sh to fix hibernation by avoiding the error "no kernelfile matching the running kernel found" on usrmerged setup- Use %autosetup- Replace grub2-use-stat-instead-of-udevadm-for-partition-lookup.patch and fix-grub2-use-stat-instead-of-udevadm-for-partition-lookup-with-new-glibc.patch with upstream backport: 0001-osdep-Introduce-include-grub-osdep-major.h-and-use-i.patch and 0002-osdep-linux-hostdisk-Use-stat-instead-of-udevadm-for.patch.- Fix error not a btrfs filesystem on s390x (bsc#1187645) * 80_suse_btrfs_snapshot- Fix error gfxterm isn't found with multiple terminals (bsc#1187565) * grub2-fix-error-terminal-gfxterm-isn-t-found.patch- Fix boot failure after kdump due to the content of grub.cfg is not completed with pending modificaton in xfs journal (bsc#1186975) * grub-install-force-journal-draining-to-ensure-data-i.patch - Patch refreshed * grub2-mkconfig-default-entry-correction.patch- Version bump to 2.06 * rediff - 0001-add-support-for-UEFI-network-protocols.patch - 0002-net-read-bracketed-ipv6-addrs-and-port-numbers.patch - 0003-Make-grub_error-more-verbose.patch - 0003-bootp-New-net_bootp6-command.patch - 0005-grub.texi-Add-net_bootp6-doument.patch - 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch - 0006-efi-Set-image-base-address-before-jumping-to-the-PE-.patch - 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch - 0046-squash-verifiers-Move-verifiers-API-to-kernel-image.patch - grub-install-force-journal-draining-to-ensure-data-i.patch - grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch - grub2-diskfilter-support-pv-without-metadatacopies.patch - grub2-efi-HP-workaround.patch - grub2-efi-xen-cfg-unquote.patch - grub2-efi-xen-chainload.patch - grub2-fix-menu-in-xen-host-server.patch - grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch - grub2-install-remove-useless-check-PReP-partition-is-empty.patch - grub2-lvm-allocate-metadata-buffer-from-raw-contents.patch - grub2-mkconfig-default-entry-correction.patch - grub2-pass-corret-root-for-nfsroot.patch - grub2-s390x-03-output-7-bit-ascii.patch - grub2-s390x-04-grub2-install.patch - grub2-secureboot-install-signed-grub.patch - grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch - use-grub2-as-a-package-name.patch * update by patch squashed: - 0001-Add-support-for-Linux-EFI-stub-loading-on-aarch64.patch - grub2-efi-chainload-harder.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-secureboot-chainloader.patch - grub2-secureboot-add-linuxefi.patch * remove squashed patches: - 0008-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch - 0009-squash-Add-support-for-linuxefi.patch - 0041-squash-Add-secureboot-support-on-efi-chainloader.patch - 0042-squash-grub2-efi-chainload-harder.patch - 0043-squash-Don-t-allow-insmod-when-secure-boot-is-enable.patch - 0045-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch * drop upstream patches: - 0001-Warn-if-MBR-gap-is-small-and-user-uses-advanced-modu.patch - 0001-include-grub-i386-linux.h-Include-missing-grub-types.patch - 0001-kern-efi-sb-Add-chainloaded-image-as-shim-s-verifiab.patch - 0001-mdraid1x_linux-Fix-gcc10-error-Werror-array-bounds.patch - 0001-normal-Move-common-datetime-functions-out-of-the-nor.patch - 0001-yylex-Make-lexer-fatal-errors-actually-be-fatal.patch - 0002-efi-Make-shim_lock-GUID-and-protocol-type-public.patch - 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch - 0002-kern-Add-X-option-to-printf-functions.patch - 0002-safemath-Add-some-arithmetic-primitives-that-check-f.patch - 0002-zfs-Fix-gcc10-error-Werror-zero-length-bounds.patch - 0003-calloc-Make-sure-we-always-have-an-overflow-checking.patch - 0003-efi-Return-grub_efi_status_t-from-grub_efi_get_varia.patch - 0003-normal-main-Search-for-specific-config-files-for-net.patch - 0004-calloc-Use-calloc-at-most-places.patch - 0004-datetime-Enable-the-datetime-module-for-the-emu-plat.patch - 0004-efi-Add-a-function-to-read-EFI-variables-with-attrib.patch - 0005-Make-linux_arm_kernel_header.hdr_offset-be-at-the-ri.patch - 0005-efi-Add-secure-boot-detection.patch - 0005-malloc-Use-overflow-checking-primitives-where-we-do-.patch - 0006-efi-Only-register-shim_lock-verifier-if-shim_lock-pr.patch - 0006-iso9660-Don-t-leak-memory-on-realloc-failures.patch - 0007-font-Do-not-load-more-than-one-NAME-section.patch - 0007-verifiers-Move-verifiers-API-to-kernel-image.patch - 0008-efi-Move-the-shim_lock-verifier-to-the-GRUB-core.patch - 0008-script-Remove-unused-fields-from-grub_script_functio.patch - 0009-kern-Add-lockdown-support.patch - 0009-script-Avoid-a-use-after-free-when-redefining-a-func.patch - 0010-kern-lockdown-Set-a-variable-if-the-GRUB-is-locked-d.patch - 0010-linux-Fix-integer-overflows-in-initrd-size-handling.patch - 0011-efi-Lockdown-the-GRUB-when-the-UEFI-Secure-Boot-is-e.patch - 0012-efi-Use-grub_is_lockdown-instead-of-hardcoding-a-dis.patch - 0013-acpi-Don-t-register-the-acpi-command-when-locked-dow.patch - 0014-mmap-Don-t-register-cutmem-and-badram-commands-when-.patch - 0015-commands-Restrict-commands-that-can-load-BIOS-or-DT-.patch - 0016-commands-setpci-Restrict-setpci-command-when-locked-.patch - 0017-commands-hdparm-Restrict-hdparm-command-when-locked-.patch - 0018-gdb-Restrict-GDB-access-when-locked-down.patch - 0019-loader-xnu-Don-t-allow-loading-extension-and-package.patch - 0020-dl-Only-allow-unloading-modules-that-are-not-depende.patch - 0021-usb-Avoid-possible-out-of-bound-accesses-caused-by-m.patch - 0022-lib-arg-Block-repeated-short-options-that-require-an.patch - 0023-commands-menuentry-Fix-quoting-in-setparams_prefix.patch - 0024-kern-parser-Fix-resource-leak-if-argc-0.patch - 0025-kern-parser-Fix-a-memory-leak.patch - 0026-kern-parser-Introduce-process_char-helper.patch - 0027-kern-parser-Introduce-terminate_arg-helper.patch - 0028-kern-parser-Refactor-grub_parser_split_cmdline-clean.patch - 0029-kern-buffer-Add-variable-sized-heap-buffer.patch - 0030-kern-parser-Fix-a-stack-buffer-overflow.patch - 0031-util-mkimage-Remove-unused-code-to-add-BSS-section.patch - 0032-util-mkimage-Use-grub_host_to_target32-instead-of-gr.patch - 0033-util-mkimage-Always-use-grub_host_to_target32-to-ini.patch - 0034-util-mkimage-Unify-more-of-the-PE32-and-PE32-header-.patch - 0035-util-mkimage-Reorder-PE-optional-header-fields-set-u.patch - 0036-util-mkimage-Improve-data_size-value-calculation.patch - 0037-util-mkimage-Refactor-section-setup-to-use-a-helper.patch - 0038-util-mkimage-Add-an-option-to-import-SBAT-metadata-i.patch - 0039-grub-install-common-Add-sbat-option.patch - 0040-shim_lock-Only-skip-loading-shim_lock-verifier-with-.patch - grub-install-define-default-platform-for-risc-v.patch - grub2-editenv-add-warning-message.patch - grub2-efi-gop-add-blt.patch - grub2-efi-uga-64bit-fb.patch - grub2-verifiers-fix-system-freeze-if-verify-failed.patch - risc-v-add-clzdi2-symbol.patch - risc-v-fix-computation-of-pc-relative-relocation-offset.patch - Add grub2-instdev-fixup.pl for correcting /etc/default/grub_installdevice to use disk devie if grub has been installed to it - Add 0001-30_uefi-firmware-fix-printf-format-with-null-byte.patch to fix detection of efi fwsetup support- Fix running grub2-once leads to failure of starting systemd service in the boot sequence (bsc#1169460) * grub2-once * grub2-once.service- Fix crash in launching gfxmenu without theme file (bsc#1186481) * grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch- Fix plaintext password in grub config didn't work to unlock menu entry if enabling secure boot in UEFI (bsc#1181892)- Fix obsolete syslog in systemd unit file and updating to use journal as StandardOutput (bsc#1185149) * grub2-once.service- Fix build error on armv6/armv7 (bsc#1184712) * 0001-emu-fix-executable-stack-marking.patch- Fix error grub_file_filters not found in Azure virtual machine (bsc#1182012) * 0001-Workaround-volatile-efi-boot-variable.patch- Fix powerpc-ieee1275 lpar takes long time to boot with increasing number of nvme namespace (bsc#1177751) 0001-ieee1275-Avoiding-many-unecessary-open-close.patch- Fix chainloading windows on dual boot machine (bsc#1183073) * 0001-kern-efi-sb-Add-chainloaded-image-as-shim-s-verifiab.patch- VUL-0: grub2,shim: implement new SBAT method (bsc#1182057) * 0031-util-mkimage-Remove-unused-code-to-add-BSS-section.patch * 0032-util-mkimage-Use-grub_host_to_target32-instead-of-gr.patch * 0033-util-mkimage-Always-use-grub_host_to_target32-to-ini.patch * 0034-util-mkimage-Unify-more-of-the-PE32-and-PE32-header-.patch * 0035-util-mkimage-Reorder-PE-optional-header-fields-set-u.patch * 0036-util-mkimage-Improve-data_size-value-calculation.patch * 0037-util-mkimage-Refactor-section-setup-to-use-a-helper.patch * 0038-util-mkimage-Add-an-option-to-import-SBAT-metadata-i.patch * 0039-grub-install-common-Add-sbat-option.patch - Fix CVE-2021-20225 (bsc#1182262) * 0022-lib-arg-Block-repeated-short-options-that-require-an.patch - Fix CVE-2020-27749 (bsc#1179264) * 0024-kern-parser-Fix-resource-leak-if-argc-0.patch * 0025-kern-parser-Fix-a-memory-leak.patch * 0026-kern-parser-Introduce-process_char-helper.patch * 0027-kern-parser-Introduce-terminate_arg-helper.patch * 0028-kern-parser-Refactor-grub_parser_split_cmdline-clean.patch * 0029-kern-buffer-Add-variable-sized-heap-buffer.patch * 0030-kern-parser-Fix-a-stack-buffer-overflow.patch - Fix CVE-2021-20233 (bsc#1182263) * 0023-commands-menuentry-Fix-quoting-in-setparams_prefix.patch - Fix CVE-2020-25647 (bsc#1177883) * 0021-usb-Avoid-possible-out-of-bound-accesses-caused-by-m.patch - Fix CVE-2020-25632 (bsc#1176711) * 0020-dl-Only-allow-unloading-modules-that-are-not-depende.patch - Fix CVE-2020-27779, CVE-2020-14372 (bsc#1179265) (bsc#1175970) * 0001-include-grub-i386-linux.h-Include-missing-grub-types.patch * 0002-efi-Make-shim_lock-GUID-and-protocol-type-public.patch * 0003-efi-Return-grub_efi_status_t-from-grub_efi_get_varia.patch * 0004-efi-Add-a-function-to-read-EFI-variables-with-attrib.patch * 0005-efi-Add-secure-boot-detection.patch * 0006-efi-Only-register-shim_lock-verifier-if-shim_lock-pr.patch * 0007-verifiers-Move-verifiers-API-to-kernel-image.patch * 0008-efi-Move-the-shim_lock-verifier-to-the-GRUB-core.patch * 0009-kern-Add-lockdown-support.patch * 0010-kern-lockdown-Set-a-variable-if-the-GRUB-is-locked-d.patch * 0011-efi-Lockdown-the-GRUB-when-the-UEFI-Secure-Boot-is-e.patch * 0012-efi-Use-grub_is_lockdown-instead-of-hardcoding-a-dis.patch * 0013-acpi-Don-t-register-the-acpi-command-when-locked-dow.patch * 0014-mmap-Don-t-register-cutmem-and-badram-commands-when-.patch * 0015-commands-Restrict-commands-that-can-load-BIOS-or-DT-.patch * 0016-commands-setpci-Restrict-setpci-command-when-locked-.patch * 0017-commands-hdparm-Restrict-hdparm-command-when-locked-.patch * 0018-gdb-Restrict-GDB-access-when-locked-down.patch * 0019-loader-xnu-Don-t-allow-loading-extension-and-package.patch * 0040-shim_lock-Only-skip-loading-shim_lock-verifier-with-.patch * 0041-squash-Add-secureboot-support-on-efi-chainloader.patch * 0042-squash-grub2-efi-chainload-harder.patch * 0043-squash-Don-t-allow-insmod-when-secure-boot-is-enable.patch * 0044-squash-kern-Add-lockdown-support.patch * 0045-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch * 0046-squash-verifiers-Move-verifiers-API-to-kernel-image.patch - Drop patch supersceded by the new backport * 0001-linuxefi-fail-kernel-validation-without-shim-protoco.patch * 0001-shim_lock-Disable-GRUB_VERIFY_FLAGS_DEFER_AUTH-if-se.patch * 0007-linuxefi-fail-kernel-validation-without-shim-protoco.patch - Add SBAT metadata section to grub.efi - Drop shim_lock module as it is part of core of grub.efi * grub2.spec- Fix build error in binutils 2.36 (bsc#1181741) * 0001-Fix-build-error-in-binutils-2.36.patch - Fix executable stack in grub-emu (bsc#1181696) * 0001-emu-fix-executable-stack-marking.patch- Restore compatibilty sym-links * grub2.spec - Use rpmlintrc to filter out rpmlint 2.0 error (bsc#1179044) * grub2.rpmlintrc- Complete Secure Boot support on aarch64 (jsc#SLE-15020) * 0001-Add-support-for-Linux-EFI-stub-loading-on-aarch64.patch * 0002-arm64-make-sure-fdt-has-address-cells-and-size-cells.patch * 0003-Make-grub_error-more-verbose.patch * 0004-arm-arm64-loader-Better-memory-allocation-and-error-.patch * 0005-Make-linux_arm_kernel_header.hdr_offset-be-at-the-ri.patch * 0006-efi-Set-image-base-address-before-jumping-to-the-PE-.patch * 0007-linuxefi-fail-kernel-validation-without-shim-protoco.patch * 0008-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch * 0009-squash-Add-support-for-linuxefi.patch- Fix rpmlint 2.0 error for having arch specific path in noarch package aiming for compatibility with old package (bsc#1179044) * grub2.spec - Fix non POSIX sed argument which failed in sed from busybox (bsc#1181091) * grub2-check-default.sh- Fix boot failure in blocklist installation (bsc#1178278) * Modified 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch- Fix grub2-install error with "failed to get canonical path of `/boot/grub2/i386-pc'." (bsc#1177957) * Modified 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch- Fix https boot interrupted by unrecognised network address error message (bsc#1172952) * 0001-add-support-for-UEFI-network-protocols.patch- grub2.spec: Fix bare words used as string in expression which is no longer allowed in rpm 4.16- Improve the error handling when grub2-install fails with short mbr gap (bsc#1176062) * 0001-Warn-if-MBR-gap-is-small-and-user-uses-advanced-modu.patch * 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch- Make efi hand off the default entry point of the linux command (bsc#1176134) * 0001-efi-linux-provide-linux-command.patch- Fix verification requested but nobody cares error when loading external module in secure boot off (bsc#1175766) * 0001-shim_lock-Disable-GRUB_VERIFY_FLAGS_DEFER_AUTH-if-se.patch- Make consistent check to enable relative path on btrfs (bsc#1174567) * 0001-Unify-the-check-to-enable-btrfs-relative-path.patch- Add fibre channel device's ofpath support to grub-ofpathname and search hint to speed up root device discovery (bsc#1172745) * 0001-ieee1275-powerpc-implements-fibre-channel-discovery-.patch * 0002-ieee1275-powerpc-enables-device-mapper-discovery.patch- Fix for CVE-2020-15705 (bsc#1174421) * 0001-linuxefi-fail-kernel-validation-without-shim-protoco.patch * 0002-cmdline-Provide-cmdline-functions-as-module.patch- Make grub-calloc inline to avoid symbol not found error as the system may not use updated grub to boot the system (bsc#1174782) (bsc#1175060) (bsc#1175036) * 0001-kern-mm.c-Make-grub_calloc-inline.patch- Fix for CVE-2020-10713 (bsc#1168994) * 0001-yylex-Make-lexer-fatal-errors-actually-be-fatal.patch - Fix for CVE-2020-14308 CVE-2020-14309, CVE-2020-14310, CVE-2020-14311 (bsc#1173812) * 0002-safemath-Add-some-arithmetic-primitives-that-check-f.patch * 0003-calloc-Make-sure-we-always-have-an-overflow-checking.patch * 0004-calloc-Use-calloc-at-most-places.patch * 0005-malloc-Use-overflow-checking-primitives-where-we-do-.patch * 0006-iso9660-Don-t-leak-memory-on-realloc-failures.patch * 0007-font-Do-not-load-more-than-one-NAME-section.patch - Fix CVE-2020-15706 (bsc#1174463) * 0008-script-Remove-unused-fields-from-grub_script_functio.patch * 0009-script-Avoid-a-use-after-free-when-redefining-a-func.patch - Fix CVE-2020-15707 (bsc#1174570) * 0010-linux-Fix-integer-overflows-in-initrd-size-handling.patch - Use overflow checking primitives where the arithmetic expression for buffer allocations may include unvalidated data - Use grub_calloc for overflow check and return NULL when it would occur * 0001-add-support-for-UEFI-network-protocols.patch * 0003-bootp-New-net_bootp6-command.patch * grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch * grub2-btrfs-09-get-default-subvolume.patch * grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch * grub2-grubenv-in-btrfs-header.patch- No 95_textmode for PowerPC (boo#1174166)- Skip zfcpdump kernel from the grub boot menu (bsc#1166513) * grub2-s390x-skip-zfcpdump-image.patch- Fix boot failure as journaled data not get drained due to abrupt power off after grub-install (bsc#1167756) * grub-install-force-journal-draining-to-ensure-data-i.patch- Fix executable stack in grub-probe and other grub utility (bsc#1169137) * grub2-btrfs-06-subvol-mount.patch- Fix GCC 10 build fail (bsc#1158189) * 0001-mdraid1x_linux-Fix-gcc10-error-Werror-array-bounds.patch * 0002-zfs-Fix-gcc10-error-Werror-zero-length-bounds.patch- Backport to support searching for specific config files for netboot (bsc#1166409) * 0001-normal-Move-common-datetime-functions-out-of-the-nor.patch * 0002-kern-Add-X-option-to-printf-functions.patch * 0003-normal-main-Search-for-specific-config-files-for-net.patch * 0004-datetime-Enable-the-datetime-module-for-the-emu-plat.patch- move *.module files to separate -debug subpackage (boo#1166578)- Fix EFI console detection to make it a runtime decision (bsc#1164385) * grub2-SUSE-Add-the-t-hotkey.patch- Downgrade mtools to Suggests for consistency with xorriso (boo#1165839) - remove info requirements, file triggers are used now (boo#1152105)- Add secure boot support for s390x. (jsc#SLE-9425) * grub2-s390x-11-secureboot.patch- Fix grub hangs after loading rogue image without valid signature for uefi secure boot (bsc#1159102) * grub2-verifiers-fix-system-freeze-if-verify-failed.patch- From Stefan Seyfried : Fix grub2-install fails with "not a directory" error (boo#1161641, bsc#1162403) * grub2-install-fix-not-a-directory-error.patch- Correct awk pattern in 20_linux_xen (bsc#900418, bsc#1157912) - Correct linux and initrd handling in 20_linux_xen (bsc#1157912) M grub2-efi-xen-cfg-unquote.patch M grub2-efi-xen-chainload.patch M grub2-efi-xen-cmdline.patch M grub2-efi-xen-removable.patch- Disable btrfs zstd support for i386-pc to workaround core.img too large to be embedded in btrfs bootloader area or MBR gap (boo#1154809) * 0001-btrfs-disable-zstd-support-for-i386-pc.patch- Fix grub2.sleep to load old kernel after hibernation (boo#1154783)- Enable support for riscv64 - Backports from upstream: * risc-v-fix-computation-of-pc-relative-relocation-offset.patch * risc-v-add-clzdi2-symbol.patch * grub-install-define-default-platform-for-risc-v.patch- Version bump to 2.04 * removed - translations-20170427.tar.xz * grub2.spec - Make signed grub-tpm.efi specific to x86_64-efi build, the platform currently shipped with tpm module from upstream codebase - Add shim_lock to signed grub.efi in x86_64-efi build - x86_64: linuxefi now depends on linux, both will verify kernel via shim_lock - Remove translation tarball and po file hacks as it's been included in upstream tarball * rediff - grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch - grub2-commands-introduce-read_file-subcommand.patch - grub2-secureboot-add-linuxefi.patch - 0001-add-support-for-UEFI-network-protocols.patch - grub2-efi-HP-workaround.patch - grub2-secureboot-install-signed-grub.patch - grub2-linux.patch - use-grub2-as-a-package-name.patch - grub2-pass-corret-root-for-nfsroot.patch - grub2-secureboot-use-linuxefi-on-uefi.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-secureboot-provide-linuxefi-config.patch - grub2-secureboot-chainloader.patch - grub2-s390x-01-Changes-made-and-files-added-in-order-to-allow-s390x.patch - grub2-s390x-02-kexec-module-added-to-emu.patch - grub2-s390x-04-grub2-install.patch - grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch - grub2-efi-chainloader-root.patch - grub2-ppc64le-disable-video.patch - grub2-ppc64-cas-reboot-support.patch - grub2-Fix-incorrect-netmask-on-ppc64.patch - 0003-bootp-New-net_bootp6-command.patch - 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch - 0012-tpm-Build-tpm-as-module.patch - grub2-emu-4-all.patch - grub2-btrfs-09-get-default-subvolume.patch - grub2-ppc64le-memory-map.patch - grub2-ppc64-cas-fix-double-free.patch - 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch * drop upstream patches - grub2-fix-locale-en.mo.gz-not-found-error-message.patch - grub2-fix-build-with-flex-2.6.4.patch - grub2-accept-empty-module.patch - 0001-Fix-packed-not-aligned-error-on-GCC-8.patch - 0001-Fix-PCIe-LER-when-GRUB2-accesses-non-enabled-MMIO-da.patch - unix-exec-avoid-atexit-handlers-when-child-exits.patch - 0001-xfs-Accept-filesystem-with-sparse-inodes.patch - grub2-binutils2.31.patch - grub2-msdos-fix-overflow.patch - 0001-tsc-Change-default-tsc-calibration-method-to-pmtimer.patch - grub2-efi-Move-grub_reboot-into-kernel.patch - grub2-efi-Free-malloc-regions-on-exit.patch - grub2-move-initrd-upper.patch - 0002-Add-Virtual-LAN-support.patch - 0001-ofnet-Initialize-structs-in-bootpath-parser.patch - 0001-misc-fix-invalid-character-recongition-in-strto-l.patch - 0001-tpm-Core-TPM-support.patch - 0002-tpm-Measure-kernel-initrd.patch - 0003-tpm-Add-BIOS-boot-measurement.patch - 0004-tpm-Rework-linux-command.patch - 0005-tpm-Rework-linux16-command.patch - 0006-tpm-Measure-kernel-and-initrd-on-BIOS-systems.patch - 0007-tpm-Measure-the-kernel-commandline.patch - 0008-tpm-Measure-commands.patch - 0009-tpm-Measure-multiboot-images-and-modules.patch - 0010-tpm-Fix-boot-when-there-s-no-TPM.patch - 0011-tpm-Fix-build-error.patch - 0013-tpm-i386-pc-diskboot-img.patch - grub2-freetype-pkgconfig.patch - 0001-cpio-Disable-gcc9-Waddress-of-packed-member.patch - 0002-jfs-Disable-gcc9-Waddress-of-packed-member.patch - 0003-hfs-Fix-gcc9-error-Waddress-of-packed-member.patch - 0004-hfsplus-Fix-gcc9-error-with-Waddress-of-packed-membe.patch - 0005-acpi-Fix-gcc9-error-Waddress-of-packed-member.patch - 0006-usbtest-Disable-gcc9-Waddress-of-packed-member.patch - 0007-chainloader-Fix-gcc9-error-Waddress-of-packed-member.patch - 0008-efi-Fix-gcc9-error-Waddress-of-packed-member.patch- Consistently find btrfs snapshots on s390x. (bsc#1136970) * grub2-s390x-04-grub2-install.patch- Fix fallback embed doesn't work when no post mbr gap at all (boo#1142229) * Refresh grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch- Revert grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch until merged by upstream (bsc#1134287, bsc#1139345, LTC#177836, LTC#174229).- Fix iteration of FCP LUNs (bsc#1134287, bsc#1139345, LTC#177836, LTC#174229). * Refresh grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch- Use grub2-install to handle signed grub installation for UEFI secure boot and also provide options to override default (bsc#1136601) * grub2-secureboot-install-signed-grub.patch - Remove arm64 linuxefi patches as it's not needed for secure boot * 0001-efi-refactor-grub_efi_allocate_pages.patch * 0002-Remove-grub_efi_allocate_pages.patch * 0003-arm64-efi-move-EFI_PAGE-definitions-to-efi-memory.h.patch * 0004-efi-Add-central-copy-of-grub_efi_find_mmap_size.patch * 0005-efi-Add-grub_efi_get_ram_base-function-for-arm64.patch * 0006-Add-support-for-EFI-handover-on-ARM64.patch- Avoid high resolution when trying to keep current mode (bsc#1133842) * grub2-video-limit-the-resolution-for-fixed-bimap-font.patch - Make GRUB_SAVEDEFAULT working with btrfs (bsc#1128592) * grub2-grubenv-in-btrfs-header.patch- Check/refresh zipl-kernel before hibernate on s390x. (bsc#940457) (Getting rid of hardcoded 'vmlinuz', which failed on PPC as well.) * grub2-systemd-sleep.sh- Try to refresh zipl-kernel on failed kexec. (bsc#1127293) * grub2-s390x-04-grub2-install.patch - Fully support "previous" zipl-kernel, with 'mem=1G' being available on dedicated entries. (bsc#928131) * grub2-s390x-09-improve-zipl-setup.patch - Refresh * grub2-zipl-setup-fix-btrfs-multipledev.patch- Fix GCC 9 build failure (bsc#1121208) * 0001-cpio-Disable-gcc9-Waddress-of-packed-member.patch * 0002-jfs-Disable-gcc9-Waddress-of-packed-member.patch * 0003-hfs-Fix-gcc9-error-Waddress-of-packed-member.patch * 0004-hfsplus-Fix-gcc9-error-with-Waddress-of-packed-membe.patch * 0005-acpi-Fix-gcc9-error-Waddress-of-packed-member.patch * 0006-usbtest-Disable-gcc9-Waddress-of-packed-member.patch * 0007-chainloader-Fix-gcc9-error-Waddress-of-packed-member.patch * 0008-efi-Fix-gcc9-error-Waddress-of-packed-member.patch- Use %doc for older products for compatibility, or may end up with unsuccessful build result * grub2.spec- Revert grub2-ieee1275-open-raw-mode.patch for regression of crashing lvm on multipath SAN (bsc#1113702) * deleted grub2-ieee1275-open-raw-mode.patch - Add exception handling to FCP lun enumeration (bsc#1113702) * grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch- Fix LOADER_TYPE parsing in grub2-once (boo#1122569)- Create compatibility sym-link of grub.xen in the old location to which old VM definition is pointing (bsc#1123942)- Add patch to fix ARM boot, when kernel become too big: * grub2-move-initrd-upper.patch (boo#1123350)- Replace old $RPM_* shell vars.- Support long menu entry by scrolling its text left and right through the key stroke ctrl+l and ctrl+r (FATE#325760) * grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch- Improved hiDPI device support (FATE#326680) * grub2-video-limit-the-resolution-for-fixed-bimap-font.patch- Build platform-packages 'noarch' and move to '/usr/share/efi' for SUSE Manager. (FATE#326960) * grub2-efi-xen-chainload.patch (bsc#1122563) * grub2-efi-xen-removable.patch (refresh)- Support for UEFI Secure Boot on AArch64 (FATE#326541) * 0001-efi-refactor-grub_efi_allocate_pages.patch * 0002-Remove-grub_efi_allocate_pages.patch * 0003-arm64-efi-move-EFI_PAGE-definitions-to-efi-memory.h.patch * 0004-efi-Add-central-copy-of-grub_efi_find_mmap_size.patch * 0005-efi-Add-grub_efi_get_ram_base-function-for-arm64.patch * 0006-Add-support-for-EFI-handover-on-ARM64.patch- Change default tsc calibration method to pmtimer on EFI (bsc#1114754) * 0001-tsc-Change-default-tsc-calibration-method-to-pmtimer.patch- ieee1275: Fix double free in CAS reboot (bsc#1111955) * grub2-ppc64-cas-fix-double-free.patch- Support NVDIMM device names (bsc#1110073) * grub2-getroot-support-nvdimm.patch- Translate caret back to space as the initrd stanza could use space to delimit multiple files loaded (bsc#1101942) * grub2-util-30_os-prober-multiple-initrd.patch- ieee1275: implement FCP methods for WWPN and LUNs (bsc#1093145) * grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch- Fix broken network interface with random address and same name (bsc#1084508) * 0001-ofnet-Initialize-structs-in-bootpath-parser.patch- Fix outputting invalid btrfs subvol path on non btrfs filesystem due to bogus return code handling. (bsc#1106381) * modified grub2-btrfs-10-config-directory.patch- Fix overflow in sector count calculation (bsc#1105163) * grub2-msdos-fix-overflow.patch- Downgrade libburnia-tools to suggest as minimal system can't afford pulling in tcl/tk and half of the x11 stack (bsc#1102515) * modified grub2.spec- Add grub2-binutils2.31.patch: x86-64: Treat R_X86_64_PLT32 as R_X86_64_PC32. Starting from binutils commit bd7ab16b x86-64 assembler generates R_X86_64_PLT32, instead of R_X86_64_PC32, for 32-bit PC-relative branches. Grub2 should treat R_X86_64_PLT32 as R_X86_64_PC32.- The grubxenarch packages are now architecture-independent. [bsc#953297, grub2.spec, grub2-rpmlintrc]- Fix config_directory on btrfs to follow path scheme (bsc#1063443) * grub2-btrfs-10-config-directory.patch - Fix grub2-install --root-directory does not work for /boot/grub2/ on separate btrfs subvolume (boo#1098420) * grub2-btrfs-06-subvol-mount.patch - Fix setparams doesn't work as expected from boot-last-label NVRAM var, after inital CAS reboot on ieee1275 (bsc#1088830) * grub2-ppc64-cas-new-scope.patch- Fix install on xfs error (bsc#1101283) * 0001-xfs-Accept-filesystem-with-sparse-inodes.patch- grub2.spec: change %config to %config(noreplace) Don't overwrite user changes to config files on upgrades.- Marked %{_sysconfdir}/grub.d/40_custom as (noreplace) [bsc#1079332, grub2.spec]- Replace "GRUB_DISABLE_LINUX_RECOVERY" by "GRUB_DISABLE_RECOVERY" in /etc/default/grub and remove test from s390x install section in upec file. [bsc#1042433, grub.default, grub2.spec]- Added "# needssslcertforbuild", which got lost somewhere, to spec file [grub2.spec]- Replace confusing menu on btrfs "snapper rollback" by help text. [bsc#1027588, grub2-btrfs-help-on-snapper-rollback.patch]- Use %license instead of %doc [bsc#1082318]- grub2-emu on s390 keep network during kexec boot (bsc#1089493) * grub2-s390x-10-keep-network-at-kexec.patch- Add grub2-freetype-pkgconfig.patch to fix build with new freetype use pkgconfig to find Freetype libraries.- Fallback to raw mode if Open Firmware returns invalid ihandler (bsc#1071559) * grub2-ieee1275-open-raw-mode.patch- Fix error of essential directory not found on UEFI Xen host (bsc#1085842) * add grub2-efi-xen-removable.patch * rediff grub2-suse-remove-linux-root-param.patch- Fix corruption of "grub2-install --help" and grub2-install manual page (bsc#1086670) * unix-exec-avoid-atexit-handlers-when-child-exits.patch- Fix Nvidia GPU in legacy I/O slot 2 disappears during system startup (bsc#1082914) * 0001-Fix-PCIe-LER-when-GRUB2-accesses-non-enabled-MMIO-da.patch- Fix packed-not-aligned error on GCC 8 (bsc#1084632) * 0001-Fix-packed-not-aligned-error-on-GCC-8.patch- Fix incorrect netmask on ppc64 (bsc#1085419) * grub2-Fix-incorrect-netmask-on-ppc64.patch- Fix UEFI HTTPS Boot from ISO installation image (bsc#1076132) * 0001-add-support-for-UEFI-network-protocols.patch- fix wrong command output when default subvolume is toplevel tree with id 5 (bsc#1078775) * grub2-btrfs-09-get-default-subvolume.patch - insert mdraid modules to support software RAID (bsc#1078775) * grub2-xen-pv-firmware.cfg- Rename grub2-btrfs-workaround-grub2-once.patch to grub2-grubenv-in-btrfs-header.patch - Store GRUB environment variable health_checker_flag in Btrfs header- Fix incorrect check preventing the script from running (bsc#1078481) * 80_suse_btrfs_snapshot- Fix disappeared snapshot menu entry (bsc#1078481) * 80_suse_btrfs_snapshot- Fix unquoted string error and add some more checks (bsc#1079330) * grub2-check-default.sh- The %prep section applies patches, the %build section builds. Remove mixup of patching and building from %prep for quilt setup Related to bsc#1065703- Check if default entry need to be corrected for updated distributor version and/or use fallback entry if default kernel entry removed (bsc#1065349) * grub2-check-default.sh * grub2-mkconfig-default-entry-correction.patch - Fix grub2-mkconfig warning when disk is LVM PV (bsc#1071239) * grub2-getroot-scan-disk-pv.patch- Filter out autofs and securityfs from /proc/self/mountinfo to speed up nfsroot test in large number of autofs mounts (bsc#1069094) * modified grub2-pass-corret-root-for-nfsroot.patch- Fix http(s) boot security review (bsc#1058090) * 0002-AUDIT-0-http-boot-tracker-bug.patch- 0001-add-support-for-UEFI-network-protocols.patch: * Workaround http data access in firmware * Fix DNS device path parsing for efinet device * Relaxed UEFI Protocol requirement * Support Intel OPA (Omni-Path Architecture) PXE Boot (bsc#1015589)- grub2-xen-pv-firmware.cfg: remove linemode=1 from cmdline for SUSE installer. openQA expects ncurses interface. (bsc#1066919)- use python3 for autogen.sh (fate#323526)- Do not check that PReP partition does not contain an ELF during installation (bsc#1065738). * grub2-install-remove-useless-check-PReP-partition-is-empty.patch- Build diskboot_tpm.img as separate image to diskboot.img to prevent failure in booting on some bogus firmware. To use the TPM image you have to use suse-enable-tpm option of grub2-install (bsc#1052401) * 0013-tpm-i386-pc-diskboot-img.patch- Use /boot//loader/linux to determine if install media is SUSE instead of /contents file (bsc#1054453)- Use the pvops-enabled default kernel if the traditional xen pv kernel and initrd are not found (bsc#1054453)- Fix reboot in UEFI environments (bsc#1047331) * Add grub2-efi-Move-grub_reboot-into-kernel.patch * Refresh grub2-efi-Free-malloc-regions-on-exit.patch- Add preliminary patch for UEFI HTTPS and related network protocol support (fate#320130) * 0001-add-support-for-UEFI-network-protocols.patch- grub2-s390x-04-grub2-install.patch : remove arybase dependency in grub2-zipl-setup by not referencing to $[ (bsc#1055280)- Fix minor oversights in and the exit value of the grub2-install helper on s390x. (bsc#1055343, fate#323298) * grub2-s390x-09-improve-zipl-setup.patch- Make grub2.info build reproducible (boo#1047218)- add grub2-fix-build-with-flex-2.6.4.patch - fix build with flex 2.6.4+ that removed explicit (void) cast from fprintf call in yy_fatal_error.- Support LVM physical volume created without metadatacopies (bsc#1027526) * grub2-diskfilter-support-pv-without-metadatacopies.patch - Fix page fault exception when grub loads with Nvidia cards (bsc#1038533) * grub2-efi-uga-64bit-fb.patch - Require 'kexec-tools' for System z. (bsc#944358) * modified grub2.spec- grub2-xen-pv-firmware.cfg: insmod lvm module as it's not auto-loaded to support booting from lvm volume (bsc#1004324) - Grub not working correctly with xen and btrfs snapshots (bsc#1026511) * Add grub2-btrfs-09-get-default-subvolume.patch * grub2-xen-pv-firmware.cfg : search path in default subvolume- new upstream version 2.02 * rediff - use-grub2-as-a-package-name.patch * drop upstream patches - grub2-fix-uninitialized-variable-in-btrfs-with-GCC7.patch - grub2-add-FALLTHROUGH-annotations.patch - update translations- update grub2-btrfs-workaround-grub2-once.patch to also store saved_entry in additional environment block (boo#1031025)- fix building with GCC (bsc#1030247) * add grub2-fix-uninitialized-variable-in-btrfs-with-GCC7.patch * grub2-add-FALLTHROUGH-annotations.patch- Fix out of memory error on lvm detection (bsc#1016536) (bsc#1027401) * grub2-lvm-allocate-metadata-buffer-from-raw-contents.patch - Fix boot failure if /boot is separate btrfs partition (bsc#1023160) * grub2-btrfs-06-subvol-mount.patch- 0004-tpm-Rework-linux-command.patch : Fix out of bound memory copy (bsc#1029187)- new upstream version 2.02~rc2 * rediff - use-grub2-as-a-package-name.patch - grub2-linguas.sh-no-rsync.patch * drop upstream patches - 0001-efi-strip-off-final-NULL-from-File-Path-in-grub_efi_.patch- TPM Support (FATE#315831) * 0001-tpm-Core-TPM-support.patch * 0002-tpm-Measure-kernel-initrd.patch * 0003-tpm-Add-BIOS-boot-measurement.patch * 0004-tpm-Rework-linux-command.patch * 0005-tpm-Rework-linux16-command.patch * 0006-tpm-Measure-kernel-and-initrd-on-BIOS-systems.patch * 0007-tpm-Measure-the-kernel-commandline.patch * 0008-tpm-Measure-commands.patch * 0009-tpm-Measure-multiboot-images-and-modules.patch * 0010-tpm-Fix-boot-when-there-s-no-TPM.patch * 0011-tpm-Fix-build-error.patch * 0012-tpm-Build-tpm-as-module.patch - grub2.spec : Add grub-tpm.efi for Secure Boot- Fix invalid Xen EFI config files if xen_args include GRUB2 quoting (bsc#900418) (bsc#951748) * grub2-efi-xen-cfg-unquote.patch - Fix linuxefi erroneously initialize linux's boot_params with non-zero values. (bsc#1025563) * grub2-linuxefi-fix-boot-params.patch - Removed grub2-fix-multi-device-root-kernel-argument.patch as it has regression on how GRUB_DISABLE_LINUX_UUID=true interpreted (bsc#1015138)- Fix for openQA UEFI USB Boot failure with upstream patch (bsc#1026344) * added 0001-efi-strip-off-final-NULL-from-File-Path-in-grub_efi_.patch * removed 0001-Revert-efi-properly-terminate-filepath-with-NULL-in-.patch- Temporary fix for openQA UEFI USB Boot failure (bsc#1026344) * 0001-Revert-efi-properly-terminate-filepath-with-NULL-in-.patch- grub2.spec: fix s390x file list.- require efibootmgr in efi package (boo#1025520)- Merge changes from SLE12 - add grub2-emu-4-all.patch * Build 'grub2-emu' wherever possible, to allow a better implementation of that feature. - add grub2-s390x-06-loadparm.patch, - add grub2-commands-introduce-read_file-subcommand.patch: * allow s390x to telecontrol grub2. (bsc#891946, bsc#892852) - add grub2-s390x-06-loadparm.patch: * ignore case and fix transliteration of parameter. (bsc#891946) - add grub2-s390x-07-add-image-param-for-zipl-setup.patch * Add --image switch to force zipl update to specific kernel (bsc#928131) - add grub2-s390x-08-workaround-part-to-disk.patch * Ignore partition tables on s390x. (bsc#935127) - add grub2-efi-chainload-harder.patch: * allow XEN to be chain-loaded despite firmware flaws. (bnc#887793) * Do not use shim lock protocol for reading pe header, it won't be available when secure boot disabled (bsc#943380) * Make firmware flaw condition be more precisely detected and add debug message for the case * Check msdos header to find PE file header (bsc#954126) - grub2-s390x-04-grub2-install.patch: * streamline boot to grub menu. (bsc#898198) * Force '/usr' to read-only before calling kexec. (bsc#932951) - grub2-once: * add '--enum' option to enumerate boot-entries in a way actually understood by 'grub2'. (bsc#892852, bsc#892811) * Examine variables from grub environment in 'grub2-once'. (fate#319632)- new upstream version 2.02~rc1 * rediff - use-grub2-as-a-package-name.patch - grub2-s390x-04-grub2-install.patch - grub2-accept-empty-module.patch - grub2-btrfs-04-grub2-install.patch - grub2-btrfs-06-subvol-mount.patch * drop upstream patches - 0001-dns-fix-buffer-overflow-for-data-addresses-in-recv_h.patch - 0001-build-Use-AC_HEADER_MAJOR-to-find-device-macros.patch - 0002-configure-fix-check-for-sys-sysmacros.h-under-glibc-.patch - 0001-Fix-fwpath-in-efi-netboot.patch - 0001-arm64-Move-firmware-fdt-search-into-global-function.patch - 0002-arm-efi-Use-fdt-from-firmware-when-available.patch - grub2-arm64-mknetdir-add-suport-for-arm64-efi.patch - 0001-10_linux-Fix-grouping-of-tests-for-GRUB_DEVICE.patch - 0002-20_linux_xen-fix-test-for-GRUB_DEVICE.patch - 0001-xen-make-xen-loader-callable-multiple-times.patch - 0002-xen-avoid-memleaks-on-error.patch - 0003-xen-reduce-number-of-global-variables-in-xen-loader.patch - 0004-xen-add-elfnote.h-to-avoid-using-numbers-instead-of-.patch - 0005-xen-synchronize-xen-header.patch - 0006-xen-factor-out-p2m-list-allocation-into-separate-fun.patch - 0007-xen-factor-out-allocation-of-special-pages-into-sepa.patch - 0008-xen-factor-out-allocation-of-page-tables-into-separa.patch - 0009-xen-add-capability-to-load-initrd-outside-of-initial.patch - 0010-xen-modify-page-table-construction.patch - 0011-xen-add-capability-to-load-p2m-list-outside-of-kerne.patch * add - fix-grub2-use-stat-instead-of-udevadm-for-partition-lookup-with-new-glibc.patch fix compilation with new glibc- Fix build error on glibc-2.25 * 0001-build-Use-AC_HEADER_MAJOR-to-find-device-macros.patch * 0002-configure-fix-check-for-sys-sysmacros.h-under-glibc-.patch - Fix fwpath in efi netboot (fate#321993) (bsc#1022294) * 0001-Fix-fwpath-in-efi-netboot.patch- grub2-systemd-sleep.sh: Fix prematurely abort by commands error return code and skip the offending menu entry (bsc#1022880)- Add support for BLT only EFI GOP adapters (FATE#322332) * grub2-efi-gop-add-blt.patch- info-dir-entry.patch: Update info dir entry to follow renaming to grub2- Add serial module to efi image. Serial terminal is still useful even with EFI Secure Boot- Support %posttrans with marcos provided by update-bootloader-rpm-macros package (bsc#997317)- Remove outdated README.openSUSE (bsc#907693)- 20_memtest86+: avoid adding memtest86+ to the list with UEFI booting.- Fix new line character in distributor (bsc#1007212) * modified grub2-default-distributor.patch- From Juergen Gross : grub-xen: support booting huge pv-domains (bsc#1004398) (bsc#899465) * 0001-xen-make-xen-loader-callable-multiple-times.patch * 0002-xen-avoid-memleaks-on-error.patch * 0003-xen-reduce-number-of-global-variables-in-xen-loader.patch * 0004-xen-add-elfnote.h-to-avoid-using-numbers-instead-of-.patch * 0005-xen-synchronize-xen-header.patch * 0006-xen-factor-out-p2m-list-allocation-into-separate-fun.patch * 0007-xen-factor-out-allocation-of-special-pages-into-sepa.patch * 0008-xen-factor-out-allocation-of-page-tables-into-separa.patch * 0009-xen-add-capability-to-load-initrd-outside-of-initial.patch * 0010-xen-modify-page-table-construction.patch * 0011-xen-add-capability-to-load-p2m-list-outside-of-kerne.patch- add support for netboot on arm64-efi platforms (bsc#998097) * grub2-arm64-mknetdir-add-suport-for-arm64-efi.patch- use $PRETTY_NAME instead of $NAME $VERSION for $GRUB_DISTRIBUTOR in openSUSE Tumbleweed (bsc#995549) * modified grub2-default-distributor.patch - grub2.spec: add http module to grub.efi (fate#320129)- binutils 2.27 creates empty modules without a symtab. Add patch grub2-accept-empty-module.patch to not reject them.- since version 1.7 cryptsetup defaults to SHA256 for LUKS - include gcry_sha256 in signed EFI image- Workaround default entry in snapshot menu (bsc#956046) * grub2-btrfs-08-workaround-snapshot-menu-default-entry.patch - grub2.spec: Add true command to grub.efi (bsc#993274)- grub.default: Empty GRUB_CMDLINE_LINUX_DEFAULT, the value will be fully taken from YaST settings. (bsc#989803)- Add patches from Roberto Sassu - Fix grub2-10_linux-avoid-multi-device-root-kernel-argument.patch, device path is not tested if GRUB_DISABLE_LINUX_UUID="true" - added grub2-fix-multi-device-root-kernel-argument.patch (bsc#960776) - grub2-zipl-setup: avoid multi-device root= kernel argument * added grub2-zipl-setup-fix-btrfs-multipledev.patch (bsc#960776) - Add SUSE_REMOVE_LINUX_ROOT_PARAM configuration option to /etc/default/grub, to remove root= and rootflags= from the kernel command line in /boot/grub2/grub.cfg and /boot/zipl/config - added grub2-suse-remove-linux-root-param.patch (bsc#962585)- Support HTTP Boot IPv4 and IPv6 (fate#320129) * 0001-misc-fix-invalid-character-recongition-in-strto-l.patch * 0002-net-read-bracketed-ipv6-addrs-and-port-numbers.patch * 0003-bootp-New-net_bootp6-command.patch * 0004-efinet-UEFI-IPv6-PXE-support.patch * 0005-grub.texi-Add-net_bootp6-doument.patch * 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch * 0007-efinet-Setting-network-from-UEFI-device-path.patch * 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch - Fix heap corruption after dns lookup * 0001-dns-fix-buffer-overflow-for-data-addresses-in-recv_h.patch- fix filelist for s390x- Fix grub2-editenv error on encrypted lvm installation (bsc#981621) * modified grub2-btrfs-workaround-grub2-once.patch - Add missing closing bracket in 'grub2-snapper-plugin.sh'. - Fix snapshot booting on s390x (bsc#955115) * modified grub2-snapper-plugin.sh - Fallback to old subvol name scheme to support old snapshot config (bsc#953538) * added grub2-btrfs-07-subvol-fallback.patch- update grub2-once with patch from Björn Voigt - skip comments in /etc/sysconfig/bootloader (boo#963610)- Make sure all systemd unit files are passed to %service_ macros.- Add patch to free memory on exit in efi environments (bsc#980739) * grub2-efi-Free-malloc-regions-on-exit.patch- Remove xen-devel from BuildRequires required headers are included in grub-2.0.2- Add support for "t" hotkey to switch to text mode (bsc#976836) * added grub2-SUSE-Add-the-t-hotkey.patch - Add support for hidden menu entries (bsc#976836) * added grub2-Add-hidden-menu-entries.patch- Correct show user defined comments in menu for snapshots (bsc#956698) * modified grub2-snapper-plugin.sh- Fix GRUB_DISABLE_LINUX_UUID to be ignore and also fallback kernel device won't be used if fs uuid not detected (bsc#971867) * added 0001-10_linux-Fix-grouping-of-tests-for-GRUB_DEVICE.patch * added 0002-20_linux_xen-fix-test-for-GRUB_DEVICE.patch- new upstream version 2.02~beta3 * highlights of user visible changes not yet present in openSUSE package - arm-uboot now generates position independent self relocating image, so single binary should run on all supported systems - loader for Xen on aarch64. grub-mkconfig support was not in time for beta3 yet. - improved ZFS support (extensible_dataset, large_blocks, embedded_data, hole_birth features) - support for IPv6 Router Advertisements - support for persistent memory (we do not overwrite it and pass correct information to OS) - try to display more specific icons for os-prober generated menu entries - grub-install detects EFI bit size and selects correct platform (x86_64-efi or i386-efi) independent of OS bit size; needs kernel 4.0 or higher. - LVM RAID1 support - xnu loader fixes which should make OS X menu entry generated by os-prober work again - key modifiers (Ctrl-X etc) should work on EFI too - ... and lot of fixes over entire tree * rediff - rename-grub-info-file-to-grub2.patch - use-grub2-as-a-package-name.patch - grub2-GRUB_CMDLINE_LINUX_RECOVERY-for-recovery-mode.patch - grub2-fix-menu-in-xen-host-server.patch - grub2-efi-HP-workaround.patch - grub2-secureboot-chainloader.patch - grub2-s390x-02-kexec-module-added-to-emu.patch - grub2-s390x-04-grub2-install.patch - grub2-s390x-05-grub2-mkconfig.patch - grub2-efi-xen-chainload.patch - grub2-mkconfig-aarch64.patch - grub2-btrfs-04-grub2-install.patch - grub2-ppc64-cas-reboot-support.patch - 0002-Add-Virtual-LAN-support.patch * fix grub2-secureboot-add-linuxefi.patch - use grub_memset and grub_memcpy instead of memset and memcpy (caused errors due to compiler warning) * drop upstream patches - 0001-grub-core-kern-efi-efi.c-Ensure-that-the-result-star.patch - 0001-look-for-DejaVu-also-in-usr-share-fonts-truetype.patch - 0001-efidisk-move-device-path-helpers-in-core-for-efinet.patch - 0002-efinet-skip-virtual-IPv4-and-IPv6-devices-when-enume.patch - 0003-efinet-open-Simple-Network-Protocol-exclusively.patch - 0001-efinet-Check-for-immediate-completition.patch - 0001-efinet-enable-hardware-filters-when-opening-interfac.patch - grub2-xen-legacy-config-device-name.patch - grub2-getroot-support-NVMe-device-names.patch - grub2-netboot-hang.patch - grub2-btrfs-fix-incorrect-address-reference.patch - aarch64-reloc.patch - grub2-glibc-2.20.patch (related code dropped upstream) - grub2-Initialized-initrd_ctx-so-we-don-t-free-a-random-poi.patch - grub2-btrfs-fix-get_root-key-comparison-failures-due-to-en.patch - grub2-getroot-fix-get-btrfs-fs-prefix-big-endian.patch - grub2-ppc64-qemu.patch - grub2-xfs-Add-helper-for-inode-size.patch - grub2-xfs-Fix-termination-loop-for-directory-iteration.patch - grub2-xfs-Convert-inode-numbers-to-cpu-endianity-immediate.patch - grub2-xfs-V5-filesystem-format-support.patch - 0001-Add-bootargs-parser-for-open-firmware.patch - grub2-arm64-set-correct-length.patch - grub2-arm64-setjmp-Add-missing-license-macro.patch - grub2-arm64-efinet-handle-get_status-on-buggy-firmware-properly.patch - 0001-unix-password-Fix-file-descriptor-leak.patch - 0002-linux-getroot-fix-descriptor-leak.patch - 0003-util-grub-mount-fix-descriptor-leak.patch - 0004-linux-ofpath-fix-descriptor-leak.patch - 0005-grub-fstest-fix-descriptor-leak.patch - ppc64le.patch - libgcc-prereq.patch - libgcc.patch - 0001-Fix-security-issue-when-reading-username-and-passwor.patch - 0001-menu-fix-line-count-calculation-for-long-lines.patch - grub2-arm64-Reduce-timer-event-frequency-by-10.patch - 0001-unix-do-not-close-stdin-in-grub_passwd_get.patch - 0001-grub-core-kern-i386-tsc.c-calibrate_tsc-Ensure-that.patch - 0002-i386-tsc-Fix-unused-function-warning-on-xen.patch - 0003-acpi-do-not-skip-BIOS-scan-if-EBDA-length-is-zero.patch - 0004-tsc-Use-alternative-delay-sources-whenever-appropria.patch - 0005-i386-fix-TSC-calibration-using-PIT.patch - biendian.patch - ppc64_opt.patch * drop workarounds for gdb_grub and grub.chrp, they are now installed under fixed name * do not patch docs/Makefile.in, it is regenerated anyway- Make mkconfig search for zImage on arm * grub2-mkconfig-arm.patch- Add support to directly pass an EFI FDT table to a kernel on 32bit arm * 0001-arm64-Move-firmware-fdt-search-into-global-function.patch * 0002-arm-efi-Use-fdt-from-firmware-when-available.patch- Add config option to set efi xen loader command line option (bsc#957383) * added grub2-efi-xen-cmdline.patch- Drop ppc64le patches. Build stage1 as BE for Power Droped patches: - grub2-ppc64le-01-Add-Little-Endian-support-for-Power64-to-the-build.patch - grub2-ppc64le-02-Build-grub-as-O1-until-we-add-savegpr-and-restgpr-ro.patch - grub2-ppc64le-03-disable-creation-of-vsx-and-altivec-instructions.patch - grub2-ppc64le-04-powerpc64-LE-s-linker-knows-how-to-handle-the-undefi.patch - grub2-ppc64le-05-grub-install-can-now-recognize-and-install-a-LE-grub.patch - grub2-ppc64le-06-set-the-ABI-version-to-0x02-in-the-e_flag-of-the-PPC.patch - grub2-ppc64le-07-Add-IEEE1275_ADDR-helper.patch - grub2-ppc64le-08-Fix-some-more-warnings-when-casting.patch - grub2-ppc64le-09-Add-powerpc64-types.patch - grub2-ppc64le-10-powerpc64-is-not-necessarily-BigEndian-anymore.patch - grub2-ppc64le-11-Fix-warnings-when-building-powerpc-linux-loader-64bi.patch - grub2-ppc64le-12-GRUB_ELF_R_PPC_-processing-is-applicable-only-for-32.patch - grub2-ppc64le-13-Fix-powerpc-setjmp-longjmp-64bit-issues.patch - grub2-ppc64le-14-Add-powerpc64-ieee1275-trampoline.patch - grub2-ppc64le-15-Add-64bit-support-to-powerpc-startup-code.patch - grub2-ppc64le-16-Add-grub_dl_find_section_addr.patch - grub2-ppc64le-17-Add-ppc64-relocations.patch - grub2-ppc64le-18-ppc64-doesn-t-need-libgcc-routines.patch - grub2-ppc64le-19-Use-FUNC_START-FUNC_END-for-powerpc-function-definit.patch - grub2-ppc64le-20-.TOC.-symbol-is-special-in-ppc64le-.-It-maps-to-the-.patch - grub2-ppc64le-21-the-.toc-section-in-powerpc64le-modules-are-sometime.patch - grub2-ppc64le-22-all-parameter-to-firmware-calls-should-to-be-BigEndi.patch - grub2-ppc64le-fix-64bit-trampoline-in-dyn-linker.patch - grub2-ppc64le-timeout.patch - grub2-ppc64-build-ppc64-32bit.patch - Added patches: - biendian.patch - grub2-ppc64-cas-reboot-support.patch - libgcc-prereq.patch - libgcc.patch - ppc64_opt.patch - ppc64le.patch- Backport upstream patches for HyperV gen2 TSC timer calbration without RTC (bsc#904647) * added 0001-grub-core-kern-i386-tsc.c-calibrate_tsc-Ensure-that.patch * added 0002-i386-tsc-Fix-unused-function-warning-on-xen.patch * added 0003-acpi-do-not-skip-BIOS-scan-if-EBDA-length-is-zero.patch * added 0004-tsc-Use-alternative-delay-sources-whenever-appropria.patch * added 0005-i386-fix-TSC-calibration-using-PIT.patch- Add 0001-menu-fix-line-count-calculation-for-long-lines.patch (bsc#943585)- grub2-xen-pv-firmware.cfg: fix hd boot (boo#926795)- Add 0001-Fix-security-issue-when-reading-username-and-passwor.patch Fix for CVE-2015-8370 [boo#956631]- Update grub2-efi-xen-chainload.patch - fix copying of Linux kernel and initrd to ESP (boo#958193)- Rename grub2-xen.cfg to grub2-xen-pv-firmware.cfg (boo#926795)- grub2-xen.cfg: to handle grub1 menu.lst in PV guest (boo#926795)- Expand list of grub.cfg search path in PV Xen guest for systems installed to btrfs snapshot. (bsc#946148) (bsc#952539) * modified grub2-xen.cfg - drop grub2-fix-Grub2-with-SUSE-Xen-package-install.patch (bsc#774666)- Add 0001-unix-do-not-close-stdin-in-grub_passwd_get.patch Fix reading password by grub2-mkpasswd-pbdk2 without controlling tty, e.g. when called from Xfce menu (boo#954519)- Modify grub2-linguas.sh-no-rsync.patch to re-enable en@quot catalog (boo#953022). Other autogenerated catalogs still fail to build due to missing C.UTF-8 locale.- Allow to execute menuentry unrestricted as default (fate#318574) * added grub2-menu-unrestricted.patch- Add missing quoting for linuxefi (bsc#951962) * modified grub2-secureboot-use-linuxefi-on-uefi.patch * refreshed grub2-secureboot-provide-linuxefi-config.patch- Include custom.cfg into the files scanned by grub2-once. Allows to chose manually added entries as well (FATE#319632).- Upstream patches for fixing file descriptor leakage (bsc#943784) * added 0001-unix-password-Fix-file-descriptor-leak.patch * added 0002-linux-getroot-fix-descriptor-leak.patch * added 0003-util-grub-mount-fix-descriptor-leak.patch * added 0004-linux-ofpath-fix-descriptor-leak.patch * added 0005-grub-fstest-fix-descriptor-leak.patch- Do not force ro option in linuxefi patch (bsc#948555) * modified grub2-secureboot-use-linuxefi-on-uefi.patch * refrehed grub2-secureboot-provide-linuxefi-config.patch- add 0001-efinet-Check-for-immediate-completition.patch, 0001-efinet-enable-hardware-filters-when-opening-interfac.patch, grub2-arm64-efinet-handle-get_status-on-buggy-firmware-properly.patch (bsc#947203)- Set default GRUB_DISTRIBUTOR from /etc/os-release if it is empty or not set by user (bsc#942519) * added grub2-default-distributor.patch * modified grub.default- add systemd-sleep-plugin subpackage (bsc#941758) - evaluate the menu entry's title string by printf * modified grub2-once * added grub2-systemd-sleep.sh- fix for 'rollback' hint (bsc#901487) * modified grub2-btrfs-05-grub2-mkconfig.patch:- Replace 12.1 with 12 SP1 for the list of snapshots (bsc#934252) * modified grub2-snapper-plugin.sh- Fix btrfs subvol detection on BigEndian systems (bsc#933541) * modified grub2-btrfs-06-subvol-mount.patch - Fix grub2-mkrelpath outputs wrong path on BigEndian system * added grub2-getroot-fix-get-btrfs-fs-prefix-big-endian.patch- If we have a post entry and the description field is empty, we should use the "Pre" number and add that description to the post entry. (fate#317972) - Show user defined comments in grub2 menu for snapshots (fate#318101) * modified grub2-snapper-plugin.sh- add 0001-grub-core-kern-efi-efi.c-Ensure-that-the-result-star.patch make sure firmware path starts with '/' (boo#902982)- Fix btrfs patch on BigEndian systems (bsc#933541) * modified grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch * modified grub2-btrfs-06-subvol-mount.patch- Fix license for setjmp module * added grub2-arm64-setjmp-Add-missing-license-macro.patch- Fix install into snapper controlled btrfs subvolume and can't load grub modules from separate subvolume (fate#318392) * added grub2-btrfs-06-subvol-mount.patch * grub2-snapper-plugin.sh: use absolute subvol name- also Recommends mtools for grub2-mkrescue (used to create EFI boot image) in addition to libburnia-tools.- Support booting opensuse installer as PV DomU (boo#926795) * added grub2-xen.cfg for tracking default pvgrub2 xen configs rather than generating it from spec file * grub2-xen.cfg: from Olaf Hering - replace grub2-efinet-reopen-SNP-protocol-for-exclusive-use-by-grub.patch with upstream version: * 0001-efidisk-move-device-path-helpers-in-core-for-efinet.patch * 0002-efinet-skip-virtual-IPv4-and-IPv6-devices-when-enume.patch * 0003-efinet-open-Simple-Network-Protocol-exclusively.patch Fixes EFI network boot in some QEMU configurations.- fix grub2-mkconfig-aarch64.patch: fix arch detection broken by malformed patch rediffing- Cleanup patch not applied * remove grub2-enable-theme-for-terminal-window.patch * grub2.rpmlintrc: remove addFilter("patch-not-applied")- Merge changes from SLE12 - Do not pass root= when root is on nfs (bnc#894374) * modified grub2-pass-corret-root-for-nfsroot.patch * modified grub2-secureboot-provide-linuxefi-config.patch * modified grub2-secureboot-use-linuxefi-on-uefi.patch - Fix xen pvops kernel not appear on menu (bnc#895286) * modified grub2-fix-menu-in-xen-host-server.patch - Workaround grub2-once (bnc#892358) * added grub2-btrfs-workaround-grub2-once.patch * added grub2-once.service * modified grub2-once - Fix busy-loop and hang while network booting (bnc#870613) * added grub2-netboot-hang.patch - Add warning in grubenv file about editing it directly (bnc#887008) * added grub2-editenv-add-warning-message.patch - Fix broken graphics with efifb on QEMU/KVM and nomodeset (bnc#884558) * added grub2-efi-disable-video-cirrus-and-bochus.patch - Disable video support on Power (bnc#877142) * added grub2-ppc64le-disable-video.patch - Track occupied memory so it can be released on exit (bnc#885026) * added grub2-ppc64le-memory-map.patch - Fix grub.xen config searching path on boot partition (bnc#884828) - Add linux16 and initrd16 to grub.xen (bnc#884830) * added grub2-xen-linux16.patch - VLAN tag support (fate#315753) * added 0001-Add-bootargs-parser-for-open-firmware.patch * added 0002-Add-Virtual-LAN-support.patch - Use chainloader to boot xen.efi under UEFI (bnc#871857) * added grub2-efi-xen-chainload.patch - Use device part of chainloader target, if present (bnc#871857) * added grub2-efi-chainloader-root.patch - Create only hypervisor pointed by /boot/xen.gz symlink (bnc#877040) * modified grub2-fix-Grub2-with-SUSE-Xen-package-install.patch - Fix xen and native entries differ in grub.cfg (bnc#872014) * modified grub2-linux.patch - Fix install error on ddf md device (bnc#872360) * added grub2-getroot-treat-mdadm-ddf-as-simple-device.patch - Fix booting from NVMe device (bnc#873132) * added grub2-getroot-support-NVMe-device-names.patch - Document peculiarities of s390 terminals * added README.ibm3215 - Grub2 for System z (fate#314213) * added grub2-s390x-02-kexec-module-added-to-emu.patch * added grub2-s390x-03-output-7-bit-ascii.patch * added grub2-s390x-04-grub2-install.patch * added grub2-s390x-05-grub2-mkconfig.patch- grub2-arm64-set-correct-length.patch: arm64: set correct length of device path end entry- grub2-efi-HP-workaround.patch: * try to read config from all-uppercase prefix as last resort. (bnc#872503) (boo#902982)- add luks, gcry_rijndael, gcry_sha1 to signed EFI image to support LUKS partition in default setup (boo#917427)- enable i386-xen (boo#891043)- Downgrade os-prober dependency to Recommends (boo#898610)- grub2-snapper-plugin.sh: cleanup grub-snapshot.cfg not referring to any snapshot (boo#909359)- Require efibootmgr also on i586- Require efibootmgr also on aarch64- grub2-snapper-plugin.sh: fix use of printf without format string; fix quoting- grub2-arm64-Reduce-timer-event-frequency-by-10.patch: fix periodic timer on arm64- enable 32bit arm targets for uboot and efi- Replace 'echo -e' command in grub2-snapper-plugin.sh script to 'printf' command. '-e' option of 'echo' command may be unsupported in some POSIX-complete shells.- fix bashism in post script- grub2.spec: Fix conditional construct which wasn't supported by older versions of rpmbuild (caused error message "parseExpressionBoolean returns -1".)- fix errors when boot is btrfs with Windows partition scheme. The first partition is created on cylinder boundary that can't offer enough room for core.img and also the installation has to be in logical paritition which made MBR the only location to install. (bnc#841247) * add grub2-setup-try-fs-embed-if-mbr-gap-too-small.patchsheep65 16843308432.06-150500.27.4i386-xenzfs.modzfs.modulezfscrypt.modzfscrypt.modulezfsinfo.modzfsinfo.module/usr/share/grub2//usr/share/grub2/i386-xen/-fomit-frame-pointer -fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:SLE-15-SP5:GA/standard/1af5e2f338a2f08763080df6e8f095d3-grub2cpioxz5i586-suse-linuxdirectoryELF 32-bit LSB relocatable, Intel 80386, version 1 (SYSV), not strippedELF 32-bit LSB relocatable, Intel 80386, version 1 (SYSV), with debug_info, not strippedY}LtA=O`utf-840a85610c9919e2c096f581822b55b49cf648d5102c217a40b4ac8f6328f8028?P7zXZ !t/] crt:bLL r+9-ĀGG]okϡ `%;{M<Ѩ \e]GƸ:F1l 1nΎ!!q^IOl%oS6&3Z)I_8b!\3$gї! 97׸.xX7 p?dVT;WK'L V!ͪtE͢b+ (U~)UgQ4NچDȾ,PfD钅ż. 9|-{Ѓeo#jMdESQ0Aka*&3$"ㄘPkC_vO S]߂EqKQ Wsَe:ZW7(PCI[?R>pXGb;ouR1+kU䬲bDPM= Bri` uGkR`N"Vs!&vd+# :qẦy\"pu[lݐ"-H~FV<+0Zi{|f ;=mW7 Vлf|M&M܇bk r^s:&^=cx(%@8}(D=aLl2ȏYyT>=ٙk?RDsۅg_cE922ϯg` +sPg02x߲ޫ(%,S-M~O\9-"IRVmB (Zւ3$q$޼&-΄iMb37 #9g7-l(ޑJaRy/kRjOtiaSA`3 WWJAb'RC[Y$?6j͇֦EQD>F XI& Og(IakN<J Ϥ0[.g&|RەH㡫l|O14vfhb?xH2"rU-Ĭwv}$Pi7Y\fHJjϗ_7=^CvyC.8ʸ])՛"AOQ"[ڰ}^<*9 ;o~RKCnS nP9!HJ4gȰ ؓlE1۸\]nNmvI$d-ۃۇ]y.] 9璠k1S?ql(g[Q຋WB*%ddp>ȝkjDhNހ/F)h܅އ;lU ؞`NDz@ {[F!/u5廫 Z{"#H{_"YFϸdBo!蝱 ,TD8˽ =4EV>m' bLl8&>j"Չ+#[Qt -ih2 L+uZZDp9֗w&q K>hԢ u쓝qWʍ]!sgz-ǯ͐ZI&97p4)SJL/ $~RxG1=LB>_8U}+=_*.⨧Վ^{& K4+ix/ өi7OxF bdXX֗2Byx$)*ZX`/,kѾ4 o)-9/8z5X`;C$N 쏠9Q:DOcKȼVNm>0"+`rmB5(fe;ˁ?&ݔ{Xy9`*e UK5=qMv?kuWّ&I9H7.1oWe(P}@!n d7z1F7y |8~'3(m"WJ!z_ڥVUZ;9!AN-q3#_05L?x/y7` UMkkdO׉py Yo:ۅd '9=ᔻYy>?-LyiJ58hǾ r-Rn_fo#|҂.NS ck!@8~us} _6E ;ҕzBXSwwӂd+*5 )tת: z(#42┃9̏Q IVQxޫT("w9aB̽;t>/jj?3gB#{4'|fE2M3M?4%"a(?\(FQS 17ʫ6 P*FƬ@Dd}ԁg)C5f*z @|$Y|+tRL!qx+OIC'II2S4L`oZ@J_J{Vɫ/ ;K\_L `׬lէ=;)I֐M5v2G ~^{@OƤHag2:c=2!Hf7C(g_`?*f\WѮɛmvxY+8 &DM9fwuE#3}*{keqѿ;#KMhn+­LIzUǛ0BuQeJO,e W$Y\(哰$d^2 Cq?Շ_DMșD#2I8 r^HFn?X"N և7nҖ!,&^9n!B:T8m`t&R2p'3#a_/NICl,;Ia!Kh`"6q7l`\UB:ġ`aVC-bq|`PI([': 0E=&5  dr|@KWf` ܘ< R 7ӌ"3jմL.+ځ>Iř"ntgcx!Ւ:qi+C{.->f.[&q7b# .QБf4 JK> Yvz 8MI GlBH9 g(' >옐0Z xWRZdiR=<8a;QB)*rM;'!ħF">-,Gɇo?͘Ѵ8Z(@ri7 'LYRČ/a۸Yvg Сi0hY9J!ҵ)0HUWM=X$s'<~.J%%N'}Xܗ\i L! n?ucxT528Z [ Cqp:R0 _m@_)YYWŵz&a>㝔?mHiTÙ>Q$Cn]gQ}AƠ,.k])~X[|I[5ሩ+n3;3إ}qΤ8k#7}}oK0(9ЩfJ"N%peѭy] $p3-lE%߂0Ps} 8F()10UY m`G07 1ΚD֋VEU "%ٽ;.H%4l؅Liv,FBTRf{b}Y5av;d.02 {Y"?{Lf۽n3-2lf_Z|wS6;L"͑Lv[gL)^fG]NnΫj4 D=?+^;AzQݘ()e]?fz5n~(B/``۹8ј yqv2.gڒhŞfjQKjjj>x4>EKwɼ)b)hG{G"yTB nfLؔ>q>jO.&r%B1 k.av Dcnߏk(-LQ (/{'0@qٯ6c)D e̅ZSҷC9 CoB:vϋ3S6ug]l *UL+26tww9'Bc$K{/<֖.`8 DDֆ)=)&lLAOəЏE)#w4+6Á _ŭ`J'ř50 JLPHC5!D4n,UP;rŶ<5SO[~Z_ao<|CJDy7<(PX*ep4|'ψ{*] NJESRǵWC55AQ*{jصU PR;\*HL:|'a02 +H,mE)?X@!%yDlefũpHߢW1zP}*P;R!aR̶zmr}ǢDC؃ _Bhg-{J)`qDZ~eJԺ[Mf8{(_YUݳ!|5Tfe7ͺ` ÇʧTRF='Ιc򐐃3W13Zv`Z9P;8yf޳^%,I͠݌y])TgΑCwT8i@ xPm軄Ϻ>H.Da]<$1%d?%Gfn0>*T0E))1SPȳW&X]:4 /S$b8g՝7((ld3lP]},y9И˂Oq-yP,+\¢KgI*8L/c>>cg{%18 /;`~ɦۖ7!޼<1Ta4tdb]ޘSLES_ʢuZ]ϰ=ѳYgr1Nv a; 8H!a:>#R>֚wvYܨ$ ГS7j^\UΤ}}(g$ps"d|0,OL/ZS7B6QwGyΟ]:]޴<_JI:[UVW|5Ù=\Gz/(HYqXI AQ62 w,׿5$fjY6 C-,D5XWhZN0w"/ޖcpRF{8+G ڈ _ XIWtNI΃m.csO'S3^2RHr|EAGީ0t^$c<6D9 YT 'Od4Ϥ@B3l %?]u3ƌ皧vӏzX"tQz){cѸOE0 z<`|Z8le3ilWG ƇRA_ Q5 C0Y֡r>Ět mExDRwjV^1$:4?)f`o4u]%XV9ϰOVr iPci6|-jд4aWmaoYoG]57+dnwnYޚH8-cH]7z'M_s{?@ 2Ɏ cǍ3:J.Bc)hqXC5NC>G(]kvG?17G\# D,BcviǯG㦦!++!#Hwz{[GbKy9IE;Ӹ*h1 3,a=7\F.ܑG+w.AUu f\3iw%zeC-@5jnOOկX Vж nIM8?|q[YkVxd[Eti}:-AE?l=Њ11=_6i3Vm1u=6^ `%LH5S΢W9`B٩5"]Gl\5Yeb!;c塨pi5w_}e8' T4xMtW\b %#4B3Y2b)0;]?* ͯ=0rn6ς ?u)4"Ƌ&$6e%&t&J #-vա]hVw<Е 2'7Jyo[=y֊vsB Y%01>lgP3&w 0\ew`@#C~7!#DnoC;@alV)(3]BQ$M"2$(wZRϪ/B}1pעou҂+ Q8@U(lԶg{ό*R>ݞͼ]2ge*P}hf%< Nʒz/Kv˷6Z=kլ"TZ` ݸc6C/C{yąGUFC!4? "@'Tq&Y7[']-*7%j莙8~wy V4"~,N+$ɱ2ENk[RcE5Hei;VYѹ ,~baxDoFD ȋ RbF#iQfO|tbJB* @3i}m) m ?9!KAYuMgLC(&rl%Mg<4ݍCJjN+P}ȖpǠB 3ŔC<%E=&7z ( }PQB,A}ݸ6UnS$e!] AIb=}'H;xiܼdxuHTңeCU3%Srz*xtG)Vs'.8>2Ԡ?SЀktt=[&MS`Z3fnī|` |J3bpMHgPjl3I3+!Wv=jW`>"#f࿅GݻAÔ|.V ^AQ#PWy)w,m܊^:Oe%3#"h%DL )D'Å[ka() BhxJA&uwD)Sy;- Ykly͈}b2a9 \Z]1Ǽ*ha ?vTX 'ӀǯCK9Fe!i)^TAV|DBgc w /nT.ʮԤe\쒽pMjLHJ鲗.[L.IK/=8w=Cg{y{|E|N`,`zMryTљuqIrk96-`a>`8CF{i{1f'jK?#ΠE1/Uq~p2gl }\7:2cywW>k07dA 2;/c"0=sV|)G- 罄|^/. wjvġaJ~@d:3йcO<isbP鈚@,ek+@Iؖ`/dVUwt{}ULWojC=i|4~{7Inf\V~ғr&3gNCۋW.e"7YPJ+"\veq> KU`喻_H(':JMGѝ@8˱ŏiJu402(Nzo !su2ܺfq8AX zt>szEwU8*vkר)waƮnu%nCON~KMÄD/B9==*v,v&@֔sEurZOEcqM/kek=xLTOXXFBB*F0)!$ aawiA vrmK^*(^$) ?A G.6UOk jI2u@b&^#K{^jƮWE]If@Qݓ⒴ٕBtwEVAq Y8 l  UG%&|k k9]nVUՖT6|={?`XcNTX}w męw+gvt =͏$xk"yz to n䓺,?uK Ab]@=̙CwbZk1oFh$gl,^ e1!ґ7p}9Klֽ K~,9.+kŠn9 unD0i{6'68l7m}e@PKgE'i *mM9R8+BV[)6|P{91gzw!6h.δiH(,yњJbFVŦzno8Pj8s]?~M͢8SغBu2.)p\ M|dʫdc#O_751@1*UV14W?,{>u{*ϔ9IIYxpLU>;&=rhp[?%T0r4&f| 5u}-1K9W{tI3Vd4eÛ/B12azvQVA9A&tauN@Zkc栍}cOIEّok 7s#`HOCK*ФvOk|U13fSLӊ*DIB;5+Xvat(SG)?_ܳi@ ђU y6iGzG|kjQZjO~aE';/zf_:Zz i>-:)[@+r|,ҖmtTeOqvukbۄ\ne4&H]i*R1ʸu9_%NjNhb_Wz^p1Yz\nËϤsaVH7etyGNhqTzCklۧ0 'z=TR@qZl `%su h̊0:?F9Y/Qv&8O!4nObOܶ2QXjMY@~򛅈WgM}Bk*~GpVgHI+\G†X()ἂ?$[.x8z1_\@7XqȷY|Pۄtت*o9:lG>M#IevB| D!]wI<p\ EPq?7À?̮L-QtKQs vl n]Lb&=X\S$6l\PӸG&h`Bx<=21j0\(UF ˓G tBIh^"0SGɍ9s}p%\VLg z9l%)u[ݐS;\CژܻboSo:E C[v9*oEa9mUyJ+T-Vr(ֲP]Xhen1 R:) O2e̘u744Vt˜dnY˰usj33_Z`u{ߔgb4ͽMXwz\HS;H0I\"͌Q_Cjy۞sL"^9X{\1Yz¾{w 6JΤnebBb'%]^4|fP\3)C#dba-a1jr#yH(?zaR%yXj^y웿*#+YZ5MjvbH& =d`û{n4vq\1@{>79)hVC@(9/ZoPeԥxiz5jF[c*^PURb DpʷY1J 7i J"_߶Jt#k=Fb_-Æ ?q-&Lab-I%K|!Nq470G| 9r-lj9˂d|7S:h;0{5\G7]Sr{TP8SMz8sc 5ͱء~ U֝0yL.bֺ! 3Cɉ bdCEzʩ:EO4`Cu֫şlf+Is`8B8jXi7#[_ 3&_W)5}F`&FDZ1Wtrax`vgtpNpٿRRQmw<%b~̲1xvGtkmPk#r|&j/n49z6c,#>[wdŚn(0zvDX]͎Sk&e÷pD2~lx[#6 4d؎v62-#B1H()JDP`=  J_`+OD-M[bfVn7M!!̾B˟ԡ@5X5e(Q /I;lG|wTGu`}Q5{mQW DhKIW3@UfZhU6Q;@8uϚ/ ͣBvI _)j;¼ʮHb| Y`s@^݂Qqorl $]6,``c$+ ~ЬڔU!OM^ /RX{ X,x@L+5i^SK }񦗼Ew-1{@M&8L@{7l9qmlS]6d677$0>Km+QzC{$Mb[_Fȁ/}T5 {@p ŝuCH]Nz<|0]@dqXGM* 4]݌ zNqnG#v|9{AOIx`KYrwPyb'xId먗C-LL,mus]A~o~"7Ab-z숗Z~'y\ e/`)}PðM$$[q,%c ?OMo~C- 3jVP0w!#/oXFEG9dN)R/=ёi }p?NU7?qRwZTDK@TRM+a3dIUr&F<8nAE Wӣ6w ]i}Is>a8~$hfSNаCh3M,#~h/zRݠU֓Vt`T')k(h/X&f,VscI8* ݕLB528(OXК܈Y"` JT\RqL6:KdՏlK6e`9qzsf wTEkHH> {=Q8SH0-.ZH'lsesMkGʒ@?p(@*Fd8j9wʹ:6R0xAh =Vl=ſ|%zM>s|EsVppFK bk#ȎxؓFn0:CJj $l Uul3y4rZ8]mxlh c@6Zl(H 4ڎ}*$OdFnz?)Njv횝e#rݬKnC>)eڬ]_ Ӫ$F:JRyZ-<zi}Ky#ժ*h}pz xCgz Opͅi+ &gVpgL^t1SOE#$>Gk0ѿ1V;m7WEO[ :,:q|#%fJFH)K9>9'K5{-rQ'$U= \$hteilyvc~9H%Sܾ|@Xes1gѹ }<1};Dz޼P_m) ]yՃw+7:3$kAT)7iFLća3Do*}7gLCmAFE _Wx?'{I{1O%;Z?#;$m50޿?-Gx#_'1t7ﻴ|UU p1`4JM7tu?$.tG ! VP/RPe^ ~S,7qUwViy=?0&bD?$nX#mLAEmz(\0֥ʨex~jMmmK{k06pRC~a\X:2! v(K~^i6)%3s$x0-Q[^9+7van/?ae"/MvB8M>g~^*, xCk|`r&^Txun97Ǡ4:b{QLیP7LTG@b&,UqZzDtr^e.V$' nUC( ݷ"L0i)6B‚{_&I?=PXxy_ ְ ڙM _4%iZդJLN/g&You`L8e(.rB"91-uPh"xRS-ZAUb^ucঙ9#R}T>1ܭmRtb;M.t՚(4C[ljg}c9 4ǮQtXI霌s3MjlClۋɱY|J$x:D7s H:pLZ"){0qje vσFo ͕WylVh.E@ _DBg/ŁB::F^P%p R(D!<4+'k2m*A@6[2)2줅q ;KQY $J&iBװ+pGoYq0ea\ IɡIϼTm5d`O͕R&+:b9kG Oג3|_s1 bV#AKõ)+L3~X}+tgփ h˛T}5_*U :Ӆ/ڔSů38-VW{5V:O / +>OF~{ ,cv^&'L|{Ήj[:G22Wx:Ch'r[8(.Zg!vfx)xw*$a0.Tu\t'_^AtIWIWx_] aa 9-Yؽ36._!o+F}')W49.^j;( )}U; aj*Hr aGc׮셮N!sYDchпqB0wĬi,KxKR0@=t-JR[%\IqJ$'D\$ tr~žW:#}qMv^VDaX{jZ}r <@ *sCn{H(nA;cs3:+; lLAY!/NpZJi5.XB>>Ȫ+ꦡzZŚW2|≢[hoU~?4"}zw X:^3 h9!](R!UL3/bu}B Χ>y?g$F6:y̔6+}6QzemhS !wZ6@J_=Qo9U25sw&O280T[#@^[zQ%y}g8X/.hwX_O,>QGKɐ0G=d5 O],t ڭ=I{‹%4g)L`oҙ!/{_Y2d.vXbx0]!TZ=`50 j<1.G_JX,̈́S7N_`Ƃ-~auX/jYQ %&6uD{P<^*oJ/LՊ[W-ι/ "~2O1@0$q1ɌxBN9xZUzh5o[NhBUEYg{BDg) smeqQ5kQp.Xv!B~T!0l 4jV.l:.k=p܂aXBH%gPn0ן'1&"6uX?JRs$LΣ= [E7igf2{'(u UCDXPwQ-!:"  {NJiQ3uL]MҵooW%^=b,8Ğ{[LږQDnA㊨"x# Av YF9Cn?{ 35WaEBP!ڤt߆%!oRHv2}HI@3,MVN <Š759ٜo_:!ߪyԩ|GۋΞONo>0y9f6#ug49Z_/C3R7ȇChPQyLSѝ5l40uCA+%m\9nK6^rEbv?y,r¾={:_ҏ!&jhx o'34 h_=o(g7뷄Yʹl퉝D$8 8Hiu 4P8`!쯳~k!F MlbQ+۽FPW SӿPe.Z[QIܛρ?sh]crr/mӺCE82&Q,(|Ss_vc±/o, E#O_EWecƵRw:>MBvzIǎe_M(SX[rό QR[Ѯ6Vw\xs@*jd8]p<_/ mWS7HƪmqŀOb*NnB12P\ZB0_)?ᩡ$GEs5x-B Dc _%|[!YAXIni\(Bfl /dEizӑc'6d۶$]V2ht b6`61K^Hsy?S8cr8& aM+@܊NJ%M-??j'5.$[.ñ.}3Q.pEzEc*AUhyg1gy_VbjUU:'ڨM"Oi_FO`.ADEв뜾-+ Ӑª>zi %5ةW{&pBI9q-dxE@}5 {mzsi۹cƄ1O/]nk-9v-Te]$Ɋxn?s\=?}۸yhjvN\/ Lq4SO(xx gq~8Uk>Lo3Dw6U;-#1Ήp㺌3w_(W|V`b6&`s 䁱 iSO%ݸ*XhE4V*7J#L{ % ;'OK_І`Jc^,[wګE``Nr.f:X`OxĠ ΧrH-lcQ>U9S\naV4&7ZN;WBoHM(S{M*BG@JSge5k*Q+[V +Ws̯$w}+X6-Mu! NkhW#əN PՖD@btQ@ީI3eٲk< *tGvkC}_%ȯZU#/Lu;5#vRY;{@.ht. m ?(HG?m[*{9ͺTN~xN7/oCu#Mٞ˒U.D_]v?X)B\q[r?ij;PtvzZ7".+A]UKP\^A)5M"ukE#|xF=ɡb0c9:i 6椂\\<6XQ95=|"G"!w_.L8^H%3 vQ#Ҩ^ʍJԣZa[w/<*d*on tc>XZY=.XTE0؀%11L aӔB]~ry~.z/N;?!C%Uml,_]%%-6r`cݬ_{Jf1f>gSJ2,_:hXsQLF3=_"-Ϣo՘;aj0_ԕF4@ 5}|ppuL+a:%/1eH] !(M5@2z3b%i!ך]z/F־h-A"-AxgS6\,Hh2BW@TLɃy\(Gvz{@$-,?!GM^cVOE.J;L坪<4I{ҷzOO"At>Ym\Aw~+<-d1 !Ej$$,^،m:j-K+m4K ;]A[ފS `'+Ač08  Ǧ.g<?Uq>q!y~`a!wG(’x6V.W_tQi1[x[Qx%[9nnV- =(ՙ}0e fL-k=P: i*_2"aYr½a$7V5ܲ$> e'wx H4c$ *N˒dl4%RHFRzDOCɨRN-~аvqf.C"r:F] Q!zӂ0scq@@_#"Ó&6 /z5(7KPqM"1 b|ڗ"xݘ7WN4yIu˭&Cl9{6k4ۊo*ݢ~lfY*] a 6˸]H0hx}d`vcJ.nG7A6#"VҴvVKMʓ]zu.C>x C,&Z;@y,T%EvϾ Ugϔki(<L};E%oBI$< }( &yl$T zLӏp@tnӫJS=VZmD=rשB杽E,CYOE|V_yCv/#Qf f~!qj%[Ʊ* })9eZ &!ʉ^Fz\=z$8L p~sב`lzѮ׵0T^nDQO 7\D5` Zv'D.#b1Vڼ3ͫMz?ɞ G?=( `a;}uo# )79E/ L !w;+ۯo*,=Ӈ,(ݣh*GēaCQx֨]ukBs%huũ'kpeC;;OhDS\.CM,$XM:̀C>XԴq^XT]P!G(N"qs< ґaE#tؿL>r 8pO|7NJԲ!B9=]gҭƄ%_;5A|{fw+~Xn& V݌a|#=2hʂh6a9:~cᒉm?JGJ'9FVnGPD=|cR[${I=ڨ.sm6XNpLh5[O+YiTmo?e8ZAV8&n*]Ta`QѭCK2S'?9f5t]demCi)BN~wf*^]!E;!}qxJ-R♯š ,`6m,\< [nb]]L5,D t]c>~'iJiʰfQJn)F~V!3#:F5JX> FU{Nr c`e"/hC}ѻGkʿ6Ww92AQ 1mz >ׇ,h-RqwR?h(>xF7Up{z_1G"Ok4bed1<"ԥ3u) VF4AcB1^mw3(WOi yLOo3[\pA|P~fWt v[*x(SoWz>ijmubxGlάv]2Br f6n=\>E7:载}ZJ3K|dZH|id u{ PGݬ -5]S"ƼW&gX\17V'Z 4fT_8Wq=1FRlt"ҲirD4իK?jh gڤS2U[3 2մGuܩʃSUG)w`⑮ dрj۴]Q#*f2"P`ǁd~(&@?ѧ+j% /~_>ț7p}.,=؊8sbȬ'͇V7^SabR,#A= }}+PXbDO.sG.;QϟbUJީ׮0#58s%p<[=HR9/soK) ׄڛopnBT?K\7NF˪^[2q _ZF{j$T!%{ _&o ܍PYbx/JJ뱯8|cvnqM7$ZyV *Y*`;("!Def܇cyQAcSNr,cdjLi`  yQP3NnhEYt>A/'`Q689n%_6Z| Ȋ[& @_ ߑ!}/K²t,Y?́[9%e31q?wo;c\(0*ЙWLi o_r7Sr/v5G@tJrjnOh[rIp:9ļS!~7/_B]5X%SW[V= E.:!fΩ_n HthtzKM:ǁ¾踋>m+6 aT m@=\+x"OνivL oe Ij,=wb<ؼC*P3D4BX{ʍrd+'aGdWͶ'je3`Z%0YgGO@o7bX6 >qx XQ %\fiԙWB̕Ap݂B蕇hW6H&-J//JTV޿>)'(فW9{ Ȃ=[)eNk G$xbA۳4]}e]/lvr_Ai?*m@e6\z[igMk hSqK-$fԂJڮwH5$W6?WMԃ~2E?R@+9$_@hbmvQy|7L}S>C͵-S c)YVoEs)t-IB [H DC>UŒ}ɓuNN3%LP]ؖa`F~T&.)j,}cjMtX*!I5x|v=*n8]+ouq30-i𤗺h-1a|{QHF[wBAԝZ`97T.J:+7gol ApSTE Gi]qM\(|ek >&-|_DR4R J$=A P3@ s;> jI l0Q}appY= iѤO\Zhcz5ugY-c26kpd@NfpUS/P>}G,QuV.5GphI |ō6YPrrI:xh}ōfhi -aE!| }'U'r5uܔdP.G;LM}qF]z7tЖBv693͢#"aԿy[Oo\{'~%< ΅if.{ԣGA$eI۽22d隮!V}C)q&nݽQo23&NuL?= qD#YNL"!EVF4Z{ 5;GBj,p(Jw|ױܵ _-ku1 UJTkۘRqͳVKPro @2|U勍KJa'=RZ6W6%Tz eJEZ௪1ő4Uo7{S9vŒ0,r_U!3ZQldtŜ7yhFJ4}&?Z~Mj!36} d r,r= RH&9p zQ9Wwʠ;zWS}+žV_'[0^:Ag-,~įqWS"I.:{ER\pwoUu2xزu^z-o0Z~C(8}UE&0Y_݀͡0KnY4Xĝ;mlG@{Ӽy4 騵? t Oye P1h[ %o)6\1š CmiILu~GAX*0gBG0q(1gu;uTomdH -Ⱛ5(LPYMF5޹1A&ȃSa~m&{r[IoΠN3C [߂,|f*n8;&e&k 8cr$|W}c.2e%(i3W/osqD|ۿt]sO"ĵMR ӇD%j_4p: t*A"7$2G L.ZYب@<Ț2\W.{8EG\ 51.K!຋lm=%Z'Y0:z3/x^" bѧr} 'VY.i-1f(2HXb +nM<ƟłggnQ64^{҇|;m !;=#\͡YK,ZY]r"VD:"oϫ Yo\:چ"O{y]uswZsXn'R zXox"=ɰ}&?p] , R&A "G @|CGs XR)BXPDBډweg) *Kp AIBrJ@ub]PG>lKcGs b?]*cXQӢ{PH5&Es[+8&.l|7Chȸ?("ٷIA& 6K6wq7zJ3hS^Bp c)3>a1M0\kiD)˄K(F8p%-r+(רuctb:.]];ax1č:of0RA[iNWʷ18+e&!?SIZW ߋau|8'+} o\A-" |B)ta5OEW.G!{„ޛn}0@93I͂j?|I]Zyh? IJr[F"8+S2uCkJLWxrHq4TL~g|r!=Jy>K!KWѧǢح I;ÌFf G!Q%"A.!~(mO$e@ox坰C$y-NQ'-6Ԏ d ؇9T9VuOF, |w8\必UG#RS/-{ `ˆ0 vCQ _B#|Øe%HnF_0Vp0զ}J Cp"wtg6GgL*6ncZ y ȢTEV|]<b2 g(rydX+Ks(iuWD\ ?e2T!2cay,z) E6s;?b$$|>ʛi]e^CqvdWv$Tש 012Ш\kv't[2SNU/a粲oFf$Ԝ_bp{UKQ9 Y@\ j͝ UD@ˀ` ͋dP7QXqĂ-U I5`ǹ J8r{yqFSNlubŜ8(l RBiŶSܳ6Zțka(tNfNQ&kZԒpqI{nV)AĈv["Sպ,M1N)(YD: xK^QU Rz6cS\jwƦ T$ ԫ`Ww/Z'ōY9zz oM#ɵ8l`T(3<&-%:nsə5Q2>ӍYWRRfY+D07d[U?(顖]Ĥ?jfx21} MFv*XhABx9a4" :[A4`NA%?;+׭ m㘐l'H4ZlqxEu9Fvz"H3z#4Mo%2~OTnRMI;_~Sz%=Z14s$npynpEBnx7w\)ySQv\߄:3\vZJ)2@@ګ/x/uz%vIS)Tq3g*0$\O=\OTu<Ԛ3+b:J2Uoœ\%s\BHh*w%Wn{@]~j fM#7L_kLtoXM;d73뻻Uef¶bW@7OI5K P KUJR2,vbLlk:jǑ%$*W[O \+Y_p\25c5_s2%klu qgm+;Ql_"y59ez6]^bo%| BH1rF ؏[yK~d𚂁׾NFu} tR=44 ~| v,cAjֲW$}43< A㖿ppo&ۯV$-VjVEHQGt!oqFplRm,T3u {R–ofefbH^W9 ^V/nmQi 8a4ޔKP!Dom*\OxV1("qKQ2c0!V?7 <-$.Z>h^NjpD-Wc3 -۵3W!kPJ%/Aݏ:DA\՟|YIzs\~X[ 梟o+paVKI!`,8bl#5| dqST>|`W;Kw.+08ũT'f] ;#cJ=O.qsܼ[Z5-2.VWQCG HRd=2ñ/5_tWT™# [xsl xC$ޞ{%|Mrgۓ=ݏ ~JM68YQF1qQ7}.sIjTrêk|ǛxUNMYo؛#$cy(8l͑VXV%CcneeM  􎻜./x|4*lmB/rz)^*AV+[B ID ʤkᙣhoBiweS18K45eѳ:xX"(~8z1hIl@z%9pNM'o,?n##dhMJy`/S0qyktOJ$4^H(MY CLuÜح?VNTWFv(W]D 1 /&7QũQȴ.Jy sNO/-MwYɨ*LhvVme;+Q0qR%z\472[ "KҟB#4{@OZP]X9~F8:@ٵ˯>ROMB'k\[~>K;Jۓo{V9H8$zaV&LG$m:A [B֕ :-؏)RК& %z 3fF Yuގt3 w=~K*Nc?E iXS тZWuaLPP0o2[)пNMBh!lR^Z/Lǖ0!?tm-\˹i/~Z~?t \3)}l{kiX7IC,#H,x K}P VgFctDy2=Q=>)MFZN +u,TgV*'ȰrEC251L*Ɖ}k6"k)FU.XSt/- H [ّؓn[p?f B5j" `pJ}l%k҈ k]yGQ" 꼃X'+/ I_ $S]3n/%s9(PQR]艢 ƨ)TU7lRҠ z֥I<- /ߨ,do͙wNjTĨwn$"f{lk=7}Bi'rb\"LHܨ;j;ĝR&ҍ25*8L)/[b5c1PBd|~h1<+''=h4kZ(| Jة,ǧhI%Gk6Dj8d/jL +Eqa8cŅ9&*f6T!Kꠒ PDwgzM{oýJ&Ú5Y<:L+1Y5`mo=g6d]{IwpRJi.V))yXߛs Dh/^~BJHff;YX)gaCp&ޠS=a*>w~>Rj5 =X{pIifbE Zr1(eBg0STUyCC?r~I+Щ"L,*{.mvn.KV\x";^ [5TrMGкߪ -g?Gv+ILIa4ȆxQ`F ȩ £r }"ܔX3U\ax3oV1Jj& E)2(cx>{1\˅8e `* J qm'7r}:suX w"/jРS_4y3~cG3EOnRN %}4i>R̭ݗk"¯v9|3 )"zY:xPfḃT>*1G| l]ޔ1 Ws]aI7cQ'_//u4R(n_'b!sQ#'^k]e})Sp=iՉN5u!V.!bc.N| 6C%ϰ6_=a%v(~D6=(ڌ-sw7=%Ïݳ ~dYI@b*}S!,o9.-R|5Vu(uO7uQ> :y}fit=!bnz1e;b7AuL]Ri8ˆnvfWB;PDIKr4W5"#i0Fu["p䞞Zw:0B;pq$> :`n=ׄ74B '`H D·Ce!Be"[2pEfJp2l˾lu V= 7́'Y(fS< xTwb[T?Hxv]RhhĵȃYQd2Cܳu[)>WE$:mgp u"xWnx߽尚WZ4nhQSnLy`VNM5{t0CY7q. V >䱺bsK6=XͅmVKB;_&|~7h"Lvo0P?;f6-A1SE]vNqFRfS=|H{P  Z,v_G~p1,DU"Y xϭ16_Mh&tp6SōZhr6A+vOBaV#u߳ `ߗ,dC ʜ%09sРOZH!0U }0\56vLybMS;rw:H.KkX/#PC \Mc@e%Jf4 ڏueꋂж m֯|*0zXy%Tέ2"7!ӝExΦoQ\ ġW٨4h;C *m0 XxKs@o+?5A!ȯQǍG).8|Vqy)]Op };9RJ+u͉~Z?Vq;NKtE+8S[\FCo][߃cOBcȚ Q, |8nd5"t$$eWʙPIΫ(I]v)x{R}=T"2ڊ\gB Q_xZ 7}>lz! Ұg"*mꞖzz(yw1Lb(!vZ`TLQ1ؼ6p!- c{ZF&t;hO֟{uZ8\8jG<)wV|,.Gv/pEtj;\3Ss%u;U6]+ }Ј'x~0^tngX7I9|\f96} F\캑x]FuǛv^V1=Y?f[%\L {TXrb w ]HܔTJE$ŎϷ#Se"WQsX;h̅7NeZOt U$QϤH)^έt;moj;JўWE g}6n:-[<X?\1sHjk*D)/a$.W|4p5lbݱ]hf˶Tg5(R`]) _/1NڦnDc *mCH\m=]"vnYx% PW VC+I'FW?/Iv83tAEta|/)&g:gmdwD`qAXk3b]o!?Ӕ . 2(sDd:&=P%d05%j>sƣʱ:]GF\#R5r}8f˜n\"<M}B9hę 2_,M7fsPIK(Kۻ6d^3R:&勇O3핶S[<4{<@> :3Wa L%Tpa<H3-$Q8(z!y9!YU3qq#kdPhW6GlP5fW.2[ ћ23_h́N>ԉ:BbяaI:=xy-2ec&힇N8JsuAM~*oٹC}cf&I@Іއ]DF\cß*y+twoAW-ؿP>U1J\ έ8=kc|E"%9@˶Sƒ1VAQ%H PfwQ&/ z=Y8!0nϜ#G?-ql %I @WB?|FkTO^V/b1#H/.'"ۺOO6JV@AyI.,kuc׵?XXOgۮsbj? TyQvًڽgZwTNľ_/ʃEY)-T\O\Z*sXV} RaG~l@ dZ^e\؃YҮcЌ$iģECSƜdyڭ l(LMR1ؒuݸe2^Z' }TZ'.OoL!Ł:E1GiDRNS4Rao/@ȭꌓ6<6=H蠘+Q\ϛ8BqMicS.) *=(;ז=n`>$[]Mwل"q+Sմ T~b]"G9,m.\  ֞iq.8 vVXpIe7l=wg`ϰ~2L1>)lwfMVXu:GUbM,Pi[J["R~ʊ]!Y(yӸ||L(oV»S `Y2)VQpQ#bd@&$pi#p˗`&@;W+)ai̽!P]i٬"%3trqPI(ZݖPWPӁ`XFvCX2s" aDKf'ln=SeL+$eqo ͽ@ ztp>ƫNE#B$?IyYt&? R*BMfN(i8 lGk6rDԝV c}VE #K|y&X%0O\S)R<. (j>xƱ k3||Svrd >u#vCm7ᅡe֐Z>MIQe@E_6 #N)zE;IJ\d [2_j^A^))\%֖8 W8B͛*x+Ɖ*aeX|\%!Uez씿JCjG%TAN]ĘNCtFKQ#7w@r4qW(X]e0? G{!!U/D@q X[nbβTuw qV *3/xp+}9hzMQi[ u?7Pk +>"Xxi(Geŷܥ#cE <iK@秊 hȒBgex†+kzۃMds؀|.IholQk;+KL+zO^ :L]8pRhA_"}̨aBWL0\2_AML7pEqaCIm+oNg$sm(Ha\zV@ R9{&lԃrH}zb$zXͼK{֑fp Թx?0R߸NXw[qؘq#+36⼎00uv? ݀`sn*+L2zK(@rPsaPl/rU~kB>DVR^hvu`)ͮs8$5t@PgU*#+mP )R='~uj " $N,XԱed'LҊc d*wG²rQDͻU;S[E+/Qu(IO&[UT@r|R!xIO0']{`9nHl|iĀdxP4cݳ沯^ɡ=`6a|vC0('H & rdgBJ8G'xgJAﳋb|-MAIK^ Xݚg*]Eep( 6U aQׄ]M"–ks ,NHhA2_=ݞ"]W  ? aG$2IE b$5nf00R IlgwPh;yu"c.78L=O>!47QH0>׺M"_}/>T\ IhHΰ:)qPMH9vJBqC-anC:v'Տ{XQkp) .nң'c=\q]4^:Z,*?m`_0KoO`JPwhȢwU@V)oI_-R<^*\f;}Fʖ&F{o NDW/L)X/6R6~ c48ëаP?t lr)bߋ׺KxzaL6|L% S Kdn 2v}$)Gu%>+hIU߄fc6W<:OE{~"73Teu&;[!q *i3>v<64'p"\AK ʲO- JC ͫE; Zhh(cnQ!? ٱmWZ dEI)-;l',Tw3g#=69jYO&4@Ϙwr\v%.wQ*bخ.J#rvEǬ>>@B5 ?3XF[YjxC t.}t% ')fƕ  fT`eU(jI5" tpp#1TԑcM>Z %5) :,o_:*Cޫ #S^Y&Frw[5]ap8NeyۑɈ7fg͠> !'k aLœ &Ds-D)̃JZ9qE>|Y:h٬Y^o|$s\OW8%&RrI0}pampb݇[D_2i;y?(tM4,8oSݡ ō{ZnmM8Z `Қ5IsgOMKAvr7y;26RKcYVBm^zl[-ĆfneH[0f]~GB-O8}[c@]/JJ Bֲh$w-04\9J)&>}mQu'3Vv0R?u EBcC:Hjg-&n.\>#]8HFkDU}כ]H`,Cj (KB|^m YE%x@ V6<~/t,CfPZ:E;|M#鯝:A!HkT(zkcVz[oL $`:I'THVMGz΂_^a>9\ګj ,ٌ,x13ozG}f$M6عnx[(;WTH_rIg(˸t<9vғN ϝi'Ls,>KUH4@& w"aמ%~-!ΌeCtx0S A^R["[ԖB1;rifz&2)- T (}3 ;o09̦ItS%Ĕ-24Svk|UX.jU$|$T;}e%*UV՘v-]d;.^u/-H9A=0s#س$ʟAg[hR½t4v o `̘>%1*wUxjZ5=uEጯa$59&6%UA^/ޢT|Q f<(f7AK2VqUKTDϨX<".YT,+͝fҡs_%=wOȆPbV4)r={P3 G$DcK;y󜷕QzSfW-}*1 6ful FΓXvu+y K|[XeӘF(Ε˂oPWby'dk01;J>")y_fjPzC/|Nl1B+iV([` ʡŃ yh QDؘ"s"di48 61]*u;.o*tx,bŐBAt$,m~#X0ʃ[fJ1MEPv_+A@)2釟R#B%Kb dIaAT˺s qg)JFd\QRSXh $گ]־z|9ˉvGb)<'\olx~.1f:ʂy/K9\sx2h&EcHtPQp[>Wwخ [oFaYt)E` (]E1L?Ck55;)jeGk%Ut)Kq_\_oZyW21,?ǴQ4rҌŚP~?d<%8Nb3Mf\sBЉ+p "h{NɣmP{1L,bo+i>\O3.v'^ 8S&%AEyL*!87[;ÖW0 H?Dѕt'Y *yuG 1н͘(]R9dm՟e*4Alp qɗIgj cc7a 6H?#z/G%SeEbHP[!w?9r_;mhµsCH\x_vQ 3-`e sQ1^B5@t#l1WM'|>MRZ +GiR*C΃6Ou2Ok'1oͭ W9W~f$ pz]9^--NbcȮnkɌxS疙z'3P[lў|g~dj49Cqb0.e+~OcGNN[Hzs3-J j^k_qU1PQн`i ձ/w3@@JUF 0܋m! [{ O:>i>9pӑB]W8.4IML>bCL!Ws{[} ;ю㾢2ꀓ\i*# ՓjHI4#ʂIO_,VI=|I&%(&ནR-3w7$.TUiE;Is^IIٽ 2JfR`x44v֙t0CeB>Qsȷ`FN;&{53Udԛ Z"sw1SG'ڝ7dP=SޫPFw#6cI.Yzg^˴Szk,I?]K:LK^{N'U~P ~mέCZt;ƕJu/p/5c ' zRtt۩:OSwYA;J'nkb<~ MEӋip ?NC tTzԮJ'z:GqHw{?iE& x(L%S͛a<$*3Iql%+Qz6v^9BvEyqE$e5}S[\|IF*4!3p|vweFLg1krѿ1{-~‹ߙՃje=e=+ F;I@Gg$Rdyn"DX_iQ w#:[ &MZ.kHfQ E! tkn¤иR>fw\_;&"8}p3ӥkXH@GhO )guk00I40*UW5?D|-E*ۿ5*37hR^V{: 1̼r%^[3]JԨ~b9-J L={ܕdb5Ys LBぎNNU *aIF Mm={l %)Ngsꉙ\aZ"/Dr-PZ/jNwOG_ _EEI0ema*`!e:^OI k%XC ϔ{12u%C-sYtELpzaJ!/oՏ¡n۾ Ὼ2'-wLBe0l)IQP$Q(=?c}껕"za/?)FM*<8#Bn֜0oZ,SSEhGG9X*=VfpHq?~oll+d\@Ph)c,BqС!!ɼ"N Egȹt`Ą2ƞA>>DUXgta,&h12O'5.eDWn#ސ&:Uu, vvH4G-myG"/ھIN564 8d$a_ zEpgcܟ3^`]զҤeZm ha4yH7U6jBvͤ- Yeoӑ}/xEWYEkkm!$_́D! 3H ݴ/54İxaELU4tMʐ5yv |tPfW79=8uiL+<^z31_Y4#$˭~D9XFVzI28'0Zu{6]3 +8XT:ΕoUEPe<"'Vwɠ_!?gl0hwIƅVcog1^x:Ǯ ^J|YMpmJ~qb^ ?j,F_"KB=+ɤQ jB"(ɸ?g-el4G(gUܲRx%Aa<4R tOa)Ik[=g(@\[՞?c_݊tj"$!aOqX@"~ t{Ô"a [R 03Jf]?2rl# V7m_ߊZ!bk_gS.ccBeJ^{r÷Oڻq*0q3kn.bgz@/)O6HhNATL4v"{_?1p5pG`Jjd0Kԃ. SClܜ5/'6k:~w]ZݘvDwlG(s,^ ExJ@J'-_E*<?z~}sP'~SZή4/>l?|Uj-x/G1TC{ %$ ɾ&.aFaGԇboygތqiSQ_\<]`93 î\"T8-x9V"o|,dPY}|c8GWa&9L\eޘEӖ fSn[̑0)Lg4{b1 m=s7rE!_NMyπVcW xvj.ϫ')Q٥vMU#}`NrWzڢ<BAQ@ MϠ ¦ToEV1 xv}0S7iq("%W%!zf;Z}D15+x8pǺ-YA`QHv&3>#,J}T]W2ڏZ0g# dwI"(Cs( 3} Cm5kxW{Ug$r >9m, ޱÉl/՝?u~~)bX-fe^̝O' ,H8;j3m}J66P"ݝoRs*uڄbO 1ꆮG8pyѩU!w|qM yzAj??Jmp6p>eDS'G;k !Sştd$&;sBwIXVJ/eg>W,h'ٲC<ؠ#mdg*qyiHȀm]zSRi = {%T0OR'3H[F' K4r9raN+R~Dxs!ikԧ*Pw[Df($ٞ3E,|Ǖ fWB^Q3Q` C+cT .Do0kbg0{Y+>P!Ya1%9qm^FSQZFn(NtpPZe},sy|9%YTiڢ8L%R:ڂ玃 p>g.ֱp(YX۸og?}# fd)_YP#r8ćyѬ 6$ C(ma-ea3هwg׊!*YK c(mr'踇gu)cy&ΐ&m|HtНLܘFϏΟV+NE.vUQ+Ś6δxԶ'ٛ;n3+@mZhLE/]CĐ?ZBn?-`<}Htpj]K"Ŕ NHeA(v!3w7@l W2Ψ m*Gie8$qjYK*י@dd[&Q$m (VRlP_3)Mzx&L6#g۽puV- `<gm>Ia1Mm]g$R_!0x 1Ҩ,π$?B*|4K/޸j,: 2]R.*IcȯIJF|&Sf_{$C/1+F,͟y{]` p jsO gHs]^`pLJV|kTIpxw,E{/\OV 53Lh1YbJk%) )x5yhS`?:'q܄˩Kz27 )()G7j V0A0r?)|/4u+fl诧H9HJOiTPa}鳜އ꺝@s@{ p>ӏId:2VgY%Vpl;=-&͙r+!KGZd]'5JkmCE^@V!ئ`#zy"z0:܈R@>؟",$/R.k$دXfӢŊkd!f[0Vԧ : krNkYqe 8 ĘڃB R,YXiR7 zǭv z]K4jI<9R4~hJ8L4qjGIU!h;OԧQk@#0S!=4AHJKgcNs(ɐRzNCH2.?ډ@9yYԤJr HШJ m.e>f5{=fvxZV͂S=}L„Ta `xzd_-irvzF* [?Gk-_PW mpNUA'w5*U!cSxJ=]&fL:"fP8;n.!-irv-ØS٤gUڻN{>֘~qMm}7_(Wq1D o5 :UWqZ04k'!v&(>3H|{ے{l.OJBGGN3>cUP7!q%^ʵK-XujABg*>!&jJ;\HdsDm5㧋Ui{*9c_O՚ \{{f}VEvgW@}Q&T3WǼR{i=F\&5q%÷-[]uSW o& NEZw,A%F]0V8.遘g-"P/L޸5w9#w`2-c1.j , 4d/cZ^%W{@/>zM_7J$}:< =E.s59^s"klEjߎ^ώPKOMw j4 iP$&TVy'&X}静Q8(`kwYIi/ԐdU' *eډ^ٕ_0Ba'X;F4xuVaS9 ų(`_+\*)3S4s;ɎZx-#Aͧx;3o];~>m4].l)db)uƟr=  藕EYwz6 0%SlP$jˌHÅ(G40~HڦaWtHkÊ )Y{`SfҮbZ<lމ[2y=c(nųHF-X-3,0dK[_NJͼt4<""* <@p}&8;^; =_L®,fȣVKLeblhh~O^vv/ >={JE{Nkk睐_fmYuQ4*[mז4UDx<`I:m_GB@}Ro lvl֔1 %R^kq d{;ҜlL &2b=;O 3]ݞV pdd?7Pf 1uUNa t㶏>#ԝyڳb#Tr<@c,AT⬨aZ*9QPޞ6wz$8[G yA6+$)B驵ObӝDvpM{fx09Fi ziVtia?t$ 2[˹x}KkfoCWz@^ nd8Tk<*(M{hDyI-mmw1(9݄ miPd lĺ%gk5z!D#(㞬#;KxNiupW CWUQv=]O+6fe'C4x,鎋Zb9Xޘ-Y"r$XSL2e.(n&KƁ${E39fH@H@x5A `*zs+ (G'j(G/&Ygi8&JE,heEQ*@Fx]3 /fzl)s& }dw U8ơM =[ASbxpu/N*\w8}1?'£fm| G&p%EE Ӷ9?(z0H7^vxB/۟74>iovw.@]a|+tJ|Hفܓ>^C`}Mh/Z#4Qmp)*c@+ {fGbœ v;FtS5ktWD}#fjs>ԥ#\,46?[hqOs`" Ia5G9l=ڔ!hZePJp x/Uz#<zc5%U||ݖ/Nfc.п]n J 6 QTuI _RěUƨi|E"ʄ&$ MU*q\1ԙ,q..H Q$&Y{p&{jßh_EEIbҰ>1۝ -PvhJR _)ump=b`( d, ~3`BC_e!)l!Q_rcS!^NQ|RIjv63vP=.c]i3).X3N趜IdFpˀT j+׀P8ٮ]76c rD H^L&0 cd3،dh0#hWƀ|#6Zza2+SS$sX*-?ae6!"׍鋤@p%Wë6@H#7PDX]%z0`o _$j+D8y40HNрh;a } $)8?G]GPj 6٠7Ѧ~?r s'8,[kz# in-)!J w-[v>e%7x"5WzTmphilfk 5i3B˓NWAñ /SR J+ Y*C i$B3T>GEZx[O4`п[ V\"i~eJi[ϩ΀/=Zuӱhr@Ѷfizʋk&ii{/QzM<)ì`,,,<'Z}I);9NbG<hݦZrEv1Y5XO=sSfn\qdwS&j!:k^IΜwRl\Acp~xn8AbӨ WeJkz^LU [RZ5lfZ,=W?K,AefQ>LjsK(LjŖtN> Ϗ_eccNbqAf~j.k3>z3G)?D wodfFy;UT6#]r{="o7{#1+0uwmp89VCy5bz &!]INZzcEO}%p!eX먚6'L@ Mi/w +/|O:W]Tְw{P1[NOx OӪe.Ѷ^?u1!̞]%C}D_;˛cPؽ FEyZ5&8TȽe|/zA?붮s{foqK `6 K{AgCQ&bqǎ2P aR(ܣ4%PXltQ7m& Ԃ$';k9wnE 827T$goI6jwy |`P(Rj}~@eCXH\\ 2y]p9dB[n~?IgL5BBvĖ[|0$4i:1?0l CT+Ρ̀}>wD} Z39{K\IN ^ce+-3Z?Ce-5T^)+9]oWԟ+{W1{Z~TۇKMy0/Va)p,=ŲR@! 'srψHFB^2IJ -gR~*E%O c+ J%6D|H@%>t9hI[{م+pdo\m!-xCUO&~ZB|^3ҰDv{)(|فv4Y/RWΫӶtcZ}V ZU%>c>v&Vgn*)tA!E :ljUMHRB֌<"P`^8U [3I wpt-hS9C"M4LF5. NRe_oI YjPbtIl/ sP+p 0Xj*84<͊ Œ 27n$i^_*DQ# hHm}.H8g]_b47Z!f$" NO9F~~)K*# h_4L|VysGoC#iqaU^PThJe^Yq >Q1D @@E^ϥx.x.[S{VܟYT2RAJ-T޷< g՚QP>l5ei_ N my˅,#G[k⠜O`/[+.4TX?dwhQ2HǾ I9 ĭgoJC0` 1._0keD*)^uE U ^/c퉐ռ۟E3S&q%֥H椏kPH>/\bZ4jjT9n:o”7yjTA-dyHS{94zsT1"%Q۠H6/d4iP iZvȭ5 SKdx(z BϑF'q1C"X΋db}g?l1fdր(YQ15 2[R7v;:wH8a9ɺK ݕV/G ]D0!.auޣ>u2B0؍-w.;F^ »}:f^_ pV+33O,g/-ܒlC"*3Mɽwj\(]phx LkA`En^z;h#r^R9")Y H>}*ue܉:ZClC.*t#(RwaP$;$]ivMA|~wZ|kBWi!(/̡!j"B$i0D9 bؙ}{e;򶕶5^-Ħ X\=M{އO#KZJ=q2vRKTޙ!^.Y$cѿ_HCsF0>"`{Zg$!ݩ4?Gmb&ǢZeDk\:&R2tzҞEȟ/clb`¾8:>r O'or.3x}S]}C(+j*µQcK;_ങHz =ld0IXŽQ{}RbkF / PFʶM˙(#sŻX 4WF1Zg)_8RheP)߱6I65~nd3h ,1ҳbCd5B9m1NCowrD 97IQufcJt,(*׽yt9C x9h_ښiV-EEQhV̜oXw@%"CUmz3Ӻ,Pw2R;|)ߜim" ǽC(ȁ \:F0)ݦ1u> rȿ*][C#@&άPxq xm/?~`WEvXk6JyUCv_D{3pIp3rhMS­_Y8jeaHIT O/oC",H$nuH ;+;ͦأZ%̦L%3| @v{32D,1 fMQurV* ;iU& =\-Y^hu7"Qoàl/MAu"~BO?K"M}щ\䒤 ܭrӼ [Zi- d}<n+~Iwº'qu[Ir Rbـ+cw{;776 qףĿ*X?Fl@ya8ؗq}QuCgw*rَ}Oms&+u4-y.CJy{̪AsK;45T~`JkDD!.\g:G"M) .st6rZ3c{Q**NFC顛F 1$P#5| @~_ҽG? =gqUj"9 PAR)ЄzBfɗ@&yv|? KǃEanAO*u_ջQu?jH,qFM;Pȣ s4'Yx6'MKM[vj`N߯L}Ʒy? ŜRT?-. R&wT[]rOO^?a #xf0,0ԩ!Yt$el R^G$#p߻SꟕL 4Pxޜ/v^4gm}ePl7Hgj*}MGPY 8qc /Zw{l^Cs'~#bW g!B =1:T[e ηxwvTP ~ خ;E7x**[q6L$tL`m\CTSEώ$ 9YI;L ײ=р>ҨPVm}{AZ^'[N7w~^<)w./&X1jXcYCDa;r`5H7-.@f43uN鯰4"*9%}k `YMoij-3w5$/.2 V 8 FrCrdqH]7$V"(sP4|?W f?^4pGY F d{)^C3+0d!l⾘m-្mfp bۆo-Bb窪)HF|!Q-QUznPv ĆMmZ2?ȅ#xxoWZ)^s: B~oBer+_ D/`3VQX~/^7͗;p54njcD7d|9FegUBȢ\cpc{@jS)A e'ܨ aס/io5TfuT'z #"Paeɛ;D[ݸ.'ZPchx#@"m͋r,2m)tI@^CE9#:A<9Jں *Z;ʔLq >\38naߧ=J?h ?R U׽ZO%Șx0)%́yx"4Ge4p/&8J{<H^`b3i%9.:]Wx:trN K¦!tb ` eaAةSGR(#7[]}]S6p1&_鵤bKZ1<=_?T1vk},~v f4A :c խɮ0Mg(PÕ=ԃC]I H QTDA0q_ip簸:A,.d='DŸ`֍ǭ tC*vw6UzvkU'pS@KWթ[:JR^=8>G^n;~f G.'2񞘺O݂$ڸ/ufi_-n J*m$JSxW &"ILhh?$qFh]-a:۔$f/eZDץL("Ce F{ $ 8$]6 nfTz:ȼHKY*U8XՈI-~eW<<*F|gHNzb01V*'-./j%}"Bo fMSp4'J \|zblэѵ F7E|u\`P*Xȧ+Z4%.pII\hx@^u_-Sfn.2ir^E3`Xe".22//Deٝ٭R᝺QPr!R$2eQ՞#z}t&0>9 6I KsM*C\(g5;P+Ѕ6Qt,gn$jYD&N,1]GhK7{w4v'ލXk*P~Q\yוu_CJRSWұ)%yt6_G,$.6A(?GԺ_j!K>uok ;RztTE1Yf[$o%ZU!a@a4 $?zi2˺sKIJKw7b쵞ؗ,I:ܻa0op3 s@I-XCy{xKXfg ;Á6%B**`YO#w$A15۱]osI>ϥf/`o0$Nq)LjHBX{Nu_n7aF‹uY c!I+ ڡA+ʷߨ?&F/5RDWB_M)bp<fw2`)PǷ# yz6t|uūQ;^)* ;Dʦ(Go [)\hq'4FfB7  nϝ?S!h҉Y\ :lR/Hr:Gv-faYlοFa g ǧ@qPWPSOBU kga_gC|v߱X~MRh{F8pAO Ow׊ |t"%[8Lz/ C"qdfK.]I,bu[8% %]lYWh+ PMI*P֞U S'yv/OGZ1cHB⠖zH :#o&X& A!6j`(HB]CdmVk0VA[M 1cރFOBHѶW8 5_K:DS8.#\Vj]qXNY t\Y keyܷ^^ u+fhzy6S3H] n;(uz~eR7'IH;3FSaMA}&ēF"-mfZ띫QߝjW\_+ab4RŽ6wUs!qZU G]\~}ڡQ7GqP tڿzk/] 2/ `}}Zӳs=a`x?L[-l:a)J-ϚbDp+?7;z~yLZ\߃GNO |?)t?WXrb:2I@^w} {ԋj@ ~^  ?,Q) vCPՄԥCܢ32|qPU<4VVzJ BĂ_ ]wMu#IWuqRϠHU|.51X^{8m7Os]?"~GiŽ7T!Dd0_w. +ohD9s-M4ws{x֭uuc܃B#=d"OgF.-|tލIHSt>^:OI @-pZYbjQ1t'I&7Z|P>" ΚźH1'kgQHi< >c@ R|8d8oTKfN #]&hǣ5mP6 5ih|V pvzno-䠒f@%AK-ׄ{;S3.*<7ZM)a-p8yפVrۈ+Vndj=>f-n<0IӉBR]T5Kj5a.]jxsyƪ3Up0{^L!A_mƈnd6W<ٰkN'rN?h"\?WQl϶WjnӺho׊&bύT3Q#L-))6q9U$ˤpxxfiN0)5Ayk|jg.^FG@Vjzth [Ke)%QmSӓ6~c6ty)p?9# ]SasFs(ә6%^rmDѪ #',^eG;G'j8^.9ߜd̞UI[n &JwfLg +xp nf"P4z̒1WUfE=ɝ,\چK(ՙBQ\he35(|n9N7JE%,\ZlMȬBc mؑ,[uOcޙdWK&!Vٟ j/D]]a'&.K]dň $ԣ ^/Xoٚ=2-ɵ0RG'`$s_ "aQnkrVKj|[v_$SO3Z!fLG㜂6',1e[Hߢ2^kjc4Wjnfg/v pQ#Kw \*o5-=3-Y3#5vSB/.)Eח_|InOdm.ENrƸdFOlf^RY;G D˝~^)I$4,q c/ u\wJ F@8G3RJ'8(p`j%7fE[)uA+^ EQ lvYi\.j0˺/k ]6EsPOJ3cD͍3֟ڌ!j_W q f((0)(mI42S}}Sn'I%i\0Iy3_ k .ܓ#1jQ1KK!gzAlErECD4!DL`Ra% 5VlTu]4m Dy$xr0&XŪC0ަ[ Zƙ>6+YPI[HYBltt8赿!Y kDb B)vl>cW>Hn<;,J3?"$4ew3SH,=E6IAҵ:D&-"x$-mOƨpkJk+7 vC!2 PSSrBT;0eb$w9sl9&fȅIN9׿NJ,aX+ :֏ kŘp~J截!WF0K%ոll} anb!T=g}F̥L$ SB.4b`Mqnd pZWҼPa_Q ?{aLՏ 8˜fMDb*F&}}Dy`Uzé3~)p""]{TÝiF,FUmMV\EUFZk.= {%lTʨ&ewsH 6V|0UG{X0lJ~K8P<2mTTdÞhȓC[s\awD*[diE"c|*&`FSS̔uú5N=R{@_Ǐ-sqda#Q^ uztfMi?řU_.RFNGd)J\Ak6"rNHlVXCmWs]O;1Zd\NxHLbH)xFWkf&0R}_|6Ux6ZS]l4$mH mb9 ty +6aϐfoa#hzf9Ӥ*5ά qQ.^V!T=x MNi\Ln/5i@I#B9)MҝqCC2ȔSD|gU <}$ߴ._U~kN\@BDjO46HUtxz#Kh*4~TT] V(=d&眆J{nCr0QGD 1DP3Q+C~]1 ֟;|~JG6dBi}9$ukb~,,X- / N׀cZ>ݚR 7 \4r='NΩ벗k^&'d_]":USFA.TR6m(`r9wવVeĵE 4Lә&5H̜{G8myUJ21^r5&[7 9h&aeYI'ܥAa ߿G_||v=!@_^Qp0g@,ܴX8!8˒`FʃKNG&A,#z*\2]r&K|,ǧqAzM2@nqlsU!Kީ(p[*R$Dkӥ.,6[@Xa qJ ‰m_ %%YY\~IBv6-ENtSyϽ[ⷷl[c31e>-m%ns-s 6{FkyPbXml+&.mxv+PӬB"I^*K{ipG0b*w+'j|Ld6Y=eO`%Aq\<39ԊY Jãp u0c}]f {n<*V}6-W\ZAp1>b==pwiɩw\>c +F["R\O_\ h@1%70i 1p<9qWf(S3WS䔊0vuouiȬ"l: 4LjNx#f<0jY}oyzBMV?˔v~n"ϭƾ0ch 'E;_]3, @){Mrp4|sAQ!k_P*[4Z¯T7ٙcÌܽ}K񀏢y gŴF[sq ?~w?~NoUs̪p wkdX)PƊ)Sm:LeoN0z B(ڬZsvUQ~p`;~]ވt5ZRd:ɡ )߾-WkG:$;uORښˮF#TlR.+>b~ d/"TIbny? =16 MWv 박)id;GVS⬖֒ CdLp5Wo^ɖ.S W@w; PrK D ,+Pw9>Ohu{VKcGsv>МtɈ8a#!eRI7=w؁c|bnC0wU8JKa]oL"c82r4&'˚(ix=VWgbtXm* D =F@!I c|PI WnHF֯KFX#Jլ!!%$.DďL$%=J@_mw6{u?[>A<'6d)Gڣڿݫ{%bz ,ΎT2q +Š)s+#.`,1 X08o/PVb$a_wض&ds;lS:zz/o.:Vpf,xSe@6ϯL\/K|dj6 ip5 Ȗ1Kό.^l3pMۤUL~"|4.[rA* 1de[KݜL}.[WNJ~ y7HuĠg'kk5!qx\: {$ƚ0OfJ T;.Ŧd6]](. ^8kSM}:#?&~Čh{ bDpkG <x4(A>@( pu-nEM9>O2;%jg+<²bjGhD6y{tf,a`-1Ew+.~%#A6=j>5Pqjj%x=5R&5Uh>qeH,zeq,zVm@R ʂ|Fz>Ng*l\Rо"C)(K=)M/]G[Q.R0@g0) dV:u["߼lxnUղuJ` \ߵ;f9h]5d- h﷘Kf⋪)Ga9=f(W=]47y" EB?2֙F$ԹwrҒm׻;1gވDY#;9We2/_8e  \2.*p[LSO z"I`/X'&P>3R)Y "auzWxCd6wi&_%i7PvSp%tgwtI(nۍgCuNpEuwU3pDr+|[ yS]_Džպ}VҲ  4#&Y9ЩsQE=^ˮDBfjLVer :4y=ӈYv˭ʩ*&e0ada)9KZ gx!PQ;9;y{ ġ]֢Gc;)쥠esP/e}R﬒ <#\x KdyKžPP(FLr/~q Xh =3m[rNS*L[1to;&AvY8_Э`M\?9#L}m9X  R!`)/(&-d̑:=P 7R)7JV2_q1G!CXaJFMU,|w&j !{$X/9?Ywng/UENV4@=Fi7둙 OmU0l8J2n~#lyJpJ+n]5g vH1W8ĵ\/F_f I_{b"ovw}WWy "Yp5DG! шj2!ir  ɮt6N :,,`mF /(y~hU=.V3eaAC5k=!B{&_2D* C*^jfǵʎ(mpߍ:6լwB%鲭J l, аh۸Yʠ;30tn̢Y@j9 k]܈mZu#YZ ͩJTd*e6g6.q }F7-dw>6)u1{ME]ÜM JܓR[B><`as֪fm ph,~|'Iu4UW~^ײPJoëd7KoB>#3@=ie=1̅OG"YsژNrvP+y`nݒ9>d1Z KݨG-_IdkU#Y Ny{>GIu:v1 [HlJĦ0M\tD[-c:]Q($ax>1-Ʉ  z뤮뵎]gjHJs O y_Ka06{6VCE[bta~PgLN>vz?2xDaD~}dV9v.N\8eT!l_NzAP|5x!@xA[g,4[]Վzi]ZY[R/KzW>3r_v\k8v"#J3B7- 1iE~dz2~P}j+$gk4dæ1`P7EsR$,I"$+v (NL  8 ^ 2&v,l/hӕ힐*u\Uʋc 6EtnAهr-^!|ygϵ-a DP*u8kc~n#t9Krkx۬EUon>9DdQ*fGݫ c{Y.;L&z|Q~/~ PH4o_G󠶈oW~.up&ֽ.%emB~qN|b8'SFpLéV+;ެnc_tk*sUG7}NYlfMUޕ"ciH8֊إ+B}V*B$ fhY 1o~k=!6jA~_ ͕.76zvp3ʨ:L}D4r7lӇoVAdϡ8g3^ 5&aY1ִNuCA.tP,DjSbTf@M`4YeHُq)al)[u= = 7Ϲv鹟c٬ی T3K0ġhAĬS\G"+!tX@ xU!&‡|sݯih[c%>W+ ”|o.kmzY $?%% ]ϊt@R=[AKuXfWll0ğm./_\~pVE݇tkKfN")oxvy#;v`/ثڋnQ/R^MbUH;x:)c}p&j96Cw?OUG}uY"q(`ߐl~ϧjF%z q܎o^bp z‰,k *"Zh@ z&_b˒`!It#"9vsn#/Ve/ږ^`\X!vCĴqVs3n`%l`/9g.ѭ:LfsFy ;L1Ⱥv&8M 8_Bw DeR}IAsoUqIPi3WnmէfXHؾM6hmtoPP6g]QA3c~9sP@i395:rQq (O$Gs F_.aCWeb"I-Zxh[m! 5|?fffJlUHi m+4ҼO:҈#gAYuQǝ2,ePy8._<;D} nLވիy %bv<Kp6h`t7r66(([|B Ks(zۖҚ>ߍI>x츂ӀN+h;Ӈg6Dy͞Aƻb5Mkĭ:ZXǧS[V=Ju@ W|=Kk5uC|봥(l [ݸ\MAd.Kn/ɜ$91cݻaTYCLS02+H^Pc%a6HRSWQRcTɕy UUC0}5^bMIUveN.S _/WK &z L8WFGYNPLH㯶$6-Ëb4ӿBWbׅS&#q1=C9a?]t-/sr2$gΟ{[@?4|NMhDtv#1Zb0vjϮP:)[\+ 5\鷘t'[ ^sd[uތ($ jL}0!Eiw%\` [MF6`H8VW` 46W2zQI}ģʹr`.ճ\M痴٧L aNsInF<߼A*wM'yh1&GZgUs6K׷/Y-4բ@V˺Po6Qa'e\~e8q2Wz.qn"J@K}!*` tO%JǷ݀-`:P&4lr?Q~OD<*aIE\թ#uē%OnRȳ菂>}ֱ<;j|)%"I}T0 Aʤ`kUMfGiyŏ0Ł@:stK!m-^ކ[&'K-ot0o::YvV>\2Cս&^(vD`":$A@: -0 ~M>Rvyea!M}`#xHKwOQzrd.ta D˔aZc*\PT*RR DH,PAr-(U3[euYp&mb0zNrs|ʜ%g(HrF956AKwQ^2n$G3!s ~?X(AobtR3/Hp@#th#B8 Kj.vɵ @3XKO~ ZHLq0Ч*] ckd?0E1eX4݁UO1Cs}ѥ LkVH6%w|X, >I=ez-vG.ؓ|'{{K#v{/"G)R`c܂B;L 9iWo-J\5qtq_8I?&u5ЗQшK]=8ˤMတm#ՂPuCGg*YEٖ%N{ט<^>Šțna@ J: q͜+|S} `@'*D 0!kvY{}{k:]a){릫wQyS_&i^(1=ѽxZ޴pofl9Aj=z&c:Juu.MCgؓ LJ/hNWW-RO0eC| zds'alvVF:;9V(/(fݸ_kℇc!4m ~,;3)CJ!rE%]FԁU9j]1'BIٚ!1_sA+fCЩk~jB4"3u?bjt^ nϸ< :]|bCyt%|3͑' U 4fP4\Q{g V^ UBNp)bUdX|>~Hu[tS2z`'=XxkUj8k n-Dg+%"=P3ނJt "%_.[,ERtfs0\Alͬ2B_V53{Bq4$P,no[WY WMOAVjh72'*["ZxengZډ(k c U:R]wHg$+Mi{pbJ"qNApQ4| ^L/A8S`GH{U4 Zgti IsPlI@cu0v[s>o\"3{ !~c*!A9/$Pu0/_J \%t0x;. wn" < Ŭhs4:NG ,')m4t$CJgaiv?+.P\ -J`BUjm}Ly)xڶEe/[o yn-\McHLț~\dah2FpݳQ- SƳTsvPʲ:c="3>Jc C}öy. UЕ…M[Z݆m3.-m韛ALNV1h IRѽe~g;ښ`T,5XyX`\)boBr~-NdA.F.Lit:rOnX$e6Z :v枒{380wg, mǮFVnT3cxbs#f/0c#'̢-`Qn vׂSM__Dz|?+(b!ۧBea"3K@ xJ"uBDp%W16'8X=Vo=,~Ry`v B;!ZɊRZ] Mc?63Iy-5s*gah1#mH&i)ڹg߇Shi\̊Rxt)_2ק&0PeGDGo=&G#Gd5FBOC}f! Q)n8ϡiꌍar `ĵlnO Ɉù2Pyj3f3֑'`<.ʼ0i\"TDоֲjwԺ%4l{(uM27)rOToJe!~vxS}#/Cz$Q ɠ~.\K]m ]-`~<%"p.*'-XV`? ߛwovmH.e*6Er\țM2=UA4`ΆTpG]XtvK%AWs,C 58˄]WƘPmаrMrBOaO4QZe'VpF"x1p9<VX`E3G޷hP⃚y{|iw>:P  $%:1۬WQOxqKꏝ&z CVG7!,_K{@`l7%W!S8WcyD>32S=\J$&{jQRxbdμP+zS |,7$7u5yOziܢopW]v TKE驶C+ڥ#W Ff\P,5{Y;Xdrycz 6DUFLLӬaz lQNtu]4IYߚ?uj#3Ϡ u^ױ 7L) jd#ɶI/k~舁.w?< PPF߼JI_ZC\H{cĜ*sF2-"ܫ瀷:s43;w%r4v$ j2xPj:bwz}e$e"IM ҉O?T/ Ujʠ2v|֕ia$ F%PHaʂA3Cny:;pacDmO$'UdQqKRGΉEs^rdV ^f3CTx1D7cq\*-\ a {kEu>qn8933-2D ʗjq EEs&^XnEQL="#)aVEVduA3r̻&}oTV#J01 vI(Xv L+$Yr%8PIRnU?8ز@w0:ƻ2$2:z*a +L 6 @,&N“,ka g2݃Tj$8%`@AÎX 23x̂܆L6xў w!4vi[4A >_Пx J"(^"{LU[&_Tً AJQ|].JW)ԕߦɬ#暳A :IZ3%ecLFذBýO'AĮkw~ >3ҝĿ]|; N;-+*tfJʬ5/)qh&A(KEJ f(nƜ1wf*lpc5ƥQ vHP1Yh҂UVHu(*%qZ]|ߚ *Qfm¯?b ˆ״)z'L`7V>U^ Y'BAi y g$c=D$ES 7{XXh:O] U֚ T+btg*h/dhMG0I;yceKKƸ7KZ"Nz{QLx}V0ԙyMY+FsP~`ߧ : J e IPĨ{Z}4a^bK&BzӾϝLc4Af}.{ 1C iK=ciYOX S^@RTaCXK{Su1f[=c[X#1 /е9O`<.fE3mAh9K FjuU+1YԌ9`+tWB4՝9`)\JьqϽt .l3BpJXew쁟t-eڑ 1VvSnE<>KyRJbHGV?}(aӱb+{a7E !΃7݆aiϜ" RL81%| z'6쇸4>5ۦ1f̓1)P -}KPP4`L#Wd7aiG1{xfz8);3 y@h5B{.2R?e猏,Pnne{[.,~JBڥ=xIbx.|6c: U:0 e {U Mtdk,-n!\x?ֻ sevƕP^!?p8l^qDT~~=$}qWJYBpC}.XKДz~h"@8)ڶc-i!1e |v_ V::w4g)'Y⺪F ="D'U,@W | 4'6h ?XDNӦCC O1'76"Oj4Ӥ>uKqJMCp;cH. ]"CcVAOq$}H(9+?`@qD/+ԧ/uS{<5:zܳQUաLU!%F}G?O Yپ*dLXu읃2OilOUDZґ-61feϖ FD㏯!'f `ABU[UװK`K`qfN@'ro% eƒ RpF҂{*+5:많N̜)xO7 -GD&}`$8Zz6`VR>U ,2Ư<8žTwB%?I6Q,|>Ylf5&@_oombvmĉٳ౷5H0K3jv|| CfDC2e3}˝h!9JJ8z!MUʖ/WK_Ms5d4YDmrA HI[5hǙǏѿ-4L[;_Q:ҿ6SQ+3һ7<\Ux0W F ܱq%Pvۗ2ZGeՍ#$ٗv S)\ {;`U\#S1t.v>rFYUl#.q\uڰ,Nac\1%nb(&>^H|+^A..S>QA!H ldt+, &/'3lу^7)ACea<7\MG$8uHu#sK{n,4-ި([7^;=PV`ߢIy:HCWA(Lns2U#W=[̜ i_Q2%Qӱ{/Vga#P嚧0QO}P4v*|ߕ2t/QK| "&^M{[Ϯ϶+r{|l֛v.^fToN1iiIZF,5Ü5 @7t&YT3{EÅlU&z޶Ж|-cp^nYn85ܔ.z/)z}Bȯ?8dYz L^+}eFc.)*փ$NA YtFK&m rQλQBw xUW،?:T@$m US{㥅&fsaӟ׈S n>*<}w7!K$bP*2hv{Gi-cآqAQ0Zsy'P#M+׊"c̾^}uv!%^N^ϫ^JϺ\m\aP醼k{0clG28;-eHcVAл{ْCK迦@ЕhhylF.D B*$ɱ ݸ7-$P{)ج#eyBD/@C*΀6H . #Xpl>Z*]Z.>dSq鷣a Pf$XXӪ4_+d?39C2K}0C-~·:ۤ{[~^g4%-m%Դ9!ET.Be4;a ΂"Mڢ'8(a|îUuY jjYWT{H{:J.o̞kt3:&Ck>tQHtB@tqDlf /j-I;G!w)S`f -$NW$2$K# lQC*?R>ϱBȠ(_8tjKJf RD^4bgGa虃 #*8E?#񷡤Z7xxNi]'19cky Ue<)%kNzY27r!5223)Tg:+<4Su2laEThp :C1VA|8e0A=OqkP/x,lBVɾi zb9ӎ.QQY|u/lPkTY"Q).2@| qy:TpmXuy7~Qbؑ B_kH[m\VsV5jIG:S0_kMTq~(fHyE']i2 e!܉TPӱ^QnfAuFMJ5+XoRڅ!cdx!lbǰә}b-Nk׺@W .y1]d 9e*c7 43 k Clvc?ZZBe($o>R ylv;pkWI@Y:4k'AfB>2r=ysDkڨ)mY`boZL3ǔݑ eidA;"H$ؙM(so0