libtss2-tcti-cmd0-3.1.0-150400.3.3.1 >  A cFp9|plJ[Wndu5HyUMnQ mecl52ZB(<5.;K"f[8zi63Ew=1l0Psj3ZIW˸Bf{$PRO4 @;&ݸ†~W;ZK,x&;e9LBBrn\>xpvĄ{>#dF]6Y%A(h|Lp9b?D:**l㋰1ȽM|L8cbc7e467950554474b7a6c20ae9443cfc6d2f46011d574b1694e39fcaa1a0e6d388d4795ad4ee6850653e83000295aea014ef58ycFp9|Y eդELYGJ{ۆq-R7&;MW'tui Qi;{uYS;MlSkz&0pY[=F^^Z?vh>LԮ?*IRic$RnJ;V$ gVVݡ5 N}[6fup :!9B1Jo9Ef[3&Ƽ|XdҩKG@nJF˦$۲z:ZEk>p@LL?L<d ' B (,Efs     . LT^h  5 (Y8`&9&:P&>I @IFI*GI@HIHIIPXITYI`\I]I^IbIcJudJeJfKlKuKvK wKxKyKzKKKKL8Clibtss2-tcti-cmd03.1.0150400.3.3.1TCTI cmd interface libraryA TCTI for interaction with a subprocess. It abstracts the details of direct communication with the interface and protocol exposed by a subprocess that can receive and transmit raw TPM2 command and response buffers.cFYsheep61iSUSE Linux Enterprise 15SUSE LLC BSD-2-Clausehttps://www.suse.com/System/Librarieshttps://github.com/tpm2-software/tpm2-tsslinuxx86_64icFOcFR053bfd3902cffbf0a316613d25b5eca6b72ab80031a68a7241fa2aee67f88d4clibtss2-tcti-cmd.so.0.0.0rootrootrootroottpm2-0-tss-3.1.0-150400.3.3.1.src.rpmlibtss2-tcti-cmd.so.0()(64bit)libtss2-tcti-cmd0libtss2-tcti-cmd0(x86-64)@@@@@@    /sbin/ldconfig/sbin/ldconfiglibc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libtss2-mu.so.0()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3cʂ@a@`#@``ٹ`@_t@_^M#@^4^*@^@]@]_@\\@[t[[>@[;e@[6@Z@ZYKYp@YoIYoIY)j@YR@YX@X@X@WW@W,@W@V͛@matthias.gerstner@suse.comaplanas@suse.comgmbr3@opensuse.orggmbr3@opensuse.orgmeissner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.comguillaume.gardet@opensuse.orgmardnh@gmx.demsuchanek@suse.comdimstar@opensuse.orgmardnh@gmx.dematthias.gerstner@suse.commatthias.gerstner@suse.commvetter@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.commatthias.gerstner@suse.combwiedemann@suse.commatthias.gerstner@suse.commgerstner@suse.commeissner@suse.comjengelh@inai.demeissner@suse.commeissner@suse.commeissner@suse.comjengelh@inai.dedimstar@opensuse.orgmeissner@suse.com- add 0001-tss2_rc-ensure-layer-number-is-in-bounds.patch: fixes CVE-2023-22745 (bsc#1207325): Buffer Overlow in TSS2_RC_Decode. Overly large RC values passed to the TSS2 function could lead to memory overread or memory overread.- Version 3.1.0 includes: + cover update to 2.4.5 (jsc#SLE-17366) + cover update to 2.3.0 (jsc#SLE-9515) + fix policy session for TPM2_PolicyAuthValue (bsc#1160736) - Add version the configuration file tpm2-tss-fapi.conf- Remove conflicting sysusers.d file- Clean spec file - Add new library libtss2-tcti-pcap0 - Update to 3.1.0: * Fix FAPI PolicyPCR not instatiating correctly (CVE-2020-24455) * Fixed possible access outside the array in ifapi_calculate_tree * Added pcap TCTI * Added GlobalSign TPM Root CA certs to FAPI cert store * Changed EncryptDecrypt mode type to align with TPM2.0 spec 1.59 * Added two new TPM commands TPM2_CC_CertifyX509, and TPM2_CC_ACT_SetTimeout- small services fixes and comments- update to 3.0.3: - changes in 3.0.3: * Fix Regression in Fapi_List * Fix memory leak in policy calculation - changes in 3.0.2: * FAPI: Fix setting of the system flag of NV objects * This will let NV object metadata be created system-wide always instead of * locally in the user. Existing metadata will remain in the user directory. * It can be moved to the corresponding systemstore manually if needed. * FAPI: Fix policy searching, when a policyRef was provided * FAPI: Accept EK-Certs without CRL dist point * FAPI: Fix return codes of Fapi_List * FAPI: Fix memleak in policy execution * FAPI: Fix coverity NULL-pointer check * FAPI: Set the written flag of NV objects in FAPI PolicyNV commands * FAPI: Fix deleting of policy files. * FAPI: Fix wrong file loading during object search. * Fapi: Fix memory leak * Fapi: Fix potential NULL-Dereference * Fapi: Remove superfluous NULL check * Fix a memory leak in async keystore load.- move the tcti-fapi tmpfiles.d config file into the libtss2-fapi1 sub-package. - improve the descriptions of new libraries (fapi1, cmd0, swtpm0) - adjust baselibs.conf to match new library versions and added libraries- Update to 3.0.1, changelog at: https://github.com/tpm2-software/tpm2-tss/blob/3.0.x/CHANGELOG.md - Update libtss2-sys0 to libtss2-sys1 - Add new libs: * libtss2-fapi1 * libtss2-tcti-cmd0 * libtss2-tcti-swtpm0- Update to version 2.3.3 * Fixed mixing salted and unsalted sessions in the same ESAPI context * Removed use of VLAs from TPML marshal code * Added check for object node before calling compute_session_value function * Fixed auth calculation in Esys_StartAuthSession called with optional parameters * Fixed compute_encrypted_salt error handling in Esys_StartAuthSession * Fixed exported symbols map for libtss2-mu- Use system-users for tss user creation (boo#1162360).- BuildRequire pkgconfig(udev) instead of udev: allow OBS to shortcut through the -mini flavor.- update to upstream version 2.3.2: - changes since version 2.3.0: - Fix unit tests on S390 architectures - Fixed HMAC generation for policy sessions- update to upstream version 2.3.0: - changes in version 2.3.0: - tss2-tctildr: A new library that helps with tcti initialization Recommend to use this in place of custom tcti loading code now ! - tss2-rc: A new library that provides textual representations for return codes - Option to disable NIST-deprecated crypto (--disable-weak-crypto) - Support Esys_TR_FromTPMPublic on sessions (for use in Esys_FlushContext) - map-files with correct symbol lists for tss2-sys and tss2-esys This may lead to unresolved symbols in linked applications - Support to call Tss2_Sys_Execute repeatedly on certain errors - Reduced RAM consumption in Esys due to Tss2_Sys_Execute change - Automated session attribution clearing for esys (decrypt and encrypt) per cmd - Removed libtss2-mu from "Requires" field of libtss2-esys.pc Needs to be added explicitely now - All fixes from 2.2.1, 2.2.2 and 2.2.3 - Fixed SPDX License Identifiers - Fixed Null-pointer problems in tcti-tbs - Fixed Default locality for tcti-mssim set to LOC_0 - Fixed coverity and valgrind leaks detected in test programs (not library code)- update to upstream version 2.2.3: - changes in version 2.2.3: * Fix computation of session name * Fixed PolicyPassword handling of session Attributes * Fixed windows build from dist ball * Fixed default tcti configure option * Fixed nonce size calculation in ESYS sessions - changes in version 2.2.2: * Fixed wrong encryption flag in EncryptDecrypt * Fixing openssl engine invocation- bsc#1130588: Require shadow instead of old pwdutils- update to upstream version 2.2.1: - changes from version 2.2.0: - Fixed leak of hkey on success in iesys_cryptossl_hmac_start - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - Added support for QNX build - Added support for partial reads in device TCTI - changes from version 2.1.1: - Fixed leak of hkey on success in iesys_cryptossl_hmac_start - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - changes from version 2.1.0: - Fixed handling of the default TCTI - Changed logging to be ISO-C99 compatible - Fixed leak of dlopen handle - Fixed logging of a response header tag in Tss2_Sys_Execute - Fixed marshaling of TPM2B parameters in SAPI commands - Fixed unnecessary warning in Esys_Startup - Fixed warnings in doxygen documentation - Added Esys_Free wrapper function for systems using different C runtime libraries - Added Windows TBS TCTI - Added non-blocking mode of operation in tcti-device - Added tests for Esys_HMAC and Esys_Hash - Enabled integration tests on physical TPM device - Added openssl libcrypto backend - Added Doxygen documentation to integration tests - Refactored SetDecryptParam - Enabled OpenSSL crypto backend by default - changes from 2.0.2: - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - introduce _service file for syncing with upstream tags- update to upstream version 2.0.1 (FATE#324477): - Fixed problems with doxygan failing make distcheck - Fixed conversion of gcrypt mpi numbers to binary data - Fixed an error in parsing socket address in MSSIM TCTI - Fixed compilation error with --disable-tcti-mssim - Added initialization function for gcrypt to suppress warning - Fixed invalid type base type while marshaling TPMI_ECC_CURVE in Tss2_Sys_ECC_Parameters - Fixed invalid RSA encryption with exponent equal to 0 - Fixed checking of return codes in ESAPI commands - Added checks for programs required by the test harness @ configure time - Fixed warning on TPM2_RC_INITIALIZE rc after a Startup in Esys_Startup - Checked for 1.2 TPM type response - Changed constants values in esys header file to unsigned- also process udev triggers for tpmrm subsystem, otherwise /dev/tpmrm0 isn't properly updated (at least on SLES-12-SP4)- added all librares to baselibs.conf to satisfy 32-bit dependencies of esys0 and sys0- Explicitly require udev to fix missing ownership for /usr/lib/udev.- update to new major version 2.0.0: - version_fix.patch: removed, we're now using the distribution tarballs where this problem shouldn't happen - this update introduces an incompatible ABI to the previous version. all libraries have been renamed so there is not really a relation to the old version any more. - upstream changelog: [#]# [2.0.0] - 2018-06-20 [#]## Added - Implementation of the Marshal/Unmarshal library (libtss2-mu) - Implementation of the Enhanced System API (libtss2-esys aka ESAPI) - New implemetation of the TPM Command Transmission Interface (TCTI) for: - communication with Linux TPM2 device driver: libtss2-tcti-device - communication with Microsoft software simulator: libtss2-tcti-mssim - New directory layout (API break) - Updated documentation with new doxygen and updated man pages - Support for Windows build with Visual Studio and clang, currently limited to libtss2-mu and libtss2-sys - Implementation of the new Attached Component (AC) commands - Implementation of the new TPM2_PolicyAuthorizeNV command - Implementation of the new TPM2_CreateLoaded command - Implementation of the new TPM2_PolicyTemplate command - Addition of _Complete functions to all TPM commands - New logging framework - Added const qualifiers to API input pointers (API break) - Cleaned up headers and remove implementation.h and tpm2.h (API break) [#]## Changed - Converted all cpp files to c, removed dependency on C++ compiler. - Cleaned out a number of marshaling functions from the SAPI code. - Update Linux / Unix OS detection to use non-obsolete macros. - Changed TCTI macros to CamelCase (API break) - Changed TPMA_types to unsigned int with defines instead of bitfield structs (API/ABI break) - Changed Get/SetCmd/RspAuths to new parameter types (API/ABI break) - Fixed order of parameters in AC commands: Input command authorizations now come after the input handles, but still before the command parameters. [#]## Removed - Removed all sysapi/sysapi_utils/*arshal_TPM*.c files [#]## Fixed - Updated invalid number of handles in TPM2_PolicyNvWritten and TPM2_TestParms - Updated PlatformCommand function from libtss2-tcti-mssim to no longer send CANCEL_OFF before every command. - Expanded TPM2B macros and removed TPM2B_TYPE1 and TPM2B_TYPE2 macros - Fixed wrong return type for Tss2_Sys_Finalize (API break). [#]# [1.4.0] - 2018-03-02 [#]## Added - Attached Component commands from the last public review spec. [#]## Fixed - Essential files missing from release tarballs are now included. - Version string generation has been moved from configure.ac to the bootstrap script. It is now stored in a file named `VERSION` that is shipped in the release tarball. - We've stopped shipping the built man page for InitSocketTcti.3 and now ship the source.- removed leftover comment from dropped reproducable.patch- update to upstream version 1.3.0: - support for reproducable builds - improved documentation / manual pages - various stability bugfixes - EncryptDecrypt2 command is now implemented - removed reproducible.patch. This is now included upstream. - added version_fix.patch to fix package config version numbers.- fix the "fix", turns out only the unversioned symlink's supposed to go into - devel.- no longer install the udev rule, it's now part of the new tpm2.0-abrmd package. - fixed a warning regarding a missing dependency of the devel package to the main package - correctly package library symlinks only in the devel package, the library itself only in the library package. Was mixed up before.- removed tpm2-0-tss-configure.patch, it was just a hack, fixed by requiring autoconf-archive, see https://github.com/01org/TPM2.0-TSS/issues/227.- Updated to upstream version 1.1.0 - With this version the resourcemgr daemon is dropped from this package. It is replaced by a completely new implementation found in a new package tpm2.0-abrmd. this package will only consist of the libraries any more. - Changed - tpmclient, disabled all tests that rely on the old resourcemgr. - Fixed - Fixed definition of PCR_LAST AND TRANSIENT_LAST macros. - Removed - tpmtest - resourcemgr, replacement is in new repo: https://github.com/01org/tpm2-abrmd- Add reproducible.patch to sort input files to make build reproducible (boo#1041090)- create tss user account and install udev rule to fix startup of resourcemgr (bnc#1038586)- remove unnecessary dependency of libsapi0 to trousers. trousers has nothing to do with tpm2-tss.- fixed typo in resourcemgr.service (bsc#1031004)- Remove --with-pic which is only for static libs. - Fix an improper Requires line. - Split libtcti* from libsapi0; these are independentlty developable units.- Updated to 1.0 (FATE#321508) - Added - Travis-CI integration with GitHub - Unit tests for primitive (un)?marshal functions. - Example systemd unit for resourcemgr. - Allow for unit tests to be enabled selectively. - added pkg-config files for libraries - Changed - move simulator initialization code to socket TCTI init function. - socket TCTI finalize no longer frees context - rename libtss2 to libsapi - rename libtcti_device to libtcti-device - rename libtcti_socket to libtcti-socket - move $(includedir)/tss to $(includedir)/sapi - Move default compiler flags to config.site file. - Fixed - Fix run away resourcemgr threads by closing client sockets when resourcemgr recv() call returns 0. - Set MSG_NOSIGNAL for client connections to avoid SIGPIPE killing resourcemgr. - Fixes to handling of persistent objects by resourcemgr. - Removed - Semicolon from TPMA_* macros definitions. - Windows build files. - SAPI_CLIENT macro tests. - Security - Fix buffer overflow in resourcemgr. - use sample resourcemanager.service - tpm2-0-tss-configure.patch: fix weird error.- Remove type=forking from service file (bsc#995554)- added a systemd unit service file (FATE#315631)- Correct package naming to be in line with shared library guideline - Remove unused systemd build and runtime dependencies (FATE#315631)- Fix rpm group of library package: libs belong, per definition, to the group "System/Libraries". (FATE#315631)- initial import of the tpm 2.0 tss stack (FATE#315631)/sbin/ldconfig/sbin/ldconfigsheep61 16744628093.1.0-150400.3.3.13.1.0-150400.3.3.1libtss2-tcti-cmd.so.0libtss2-tcti-cmd.so.0.0.0/usr/lib64/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:27517/SUSE_SLE-15-SP4_Update/7f28f4121b7b986905e9573aef867183-tpm2-0-tss.SUSE_SLE-15-SP4_Updatecpioxz5x86_64-suse-linuxELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=973256e5011af08f17f472d2249e8310c51ddf2f, strippedPRRRRRR7Yc`*{%utf-8b6336fcfea80f73f04fbed4c09299e25a66e50ade86ac9761580a47bc4fb7542?7zXZ !t/k(Y] cr$x#Gj!w2)4+@Ň1f[TFKr3cY~I;ڎ +" 1՝F55$coѣHm45gQIzʹP,N[9u..X~o_E ۙ8w98p u7U0aݾm"g^wfp~^f;%0 *wnLu.c%**/ `yНxx: }DМ%*, 1Js9\t^{^?U7GWB3M/[`۠s=3j+14:20Lx1=mnx׏H2K޹E;g<팦iY&ה$(#s}##OO!$jyb=PJf V*O:P9#^ 1"ՓxL4\qWR&,0}ZkO-BM%sаpAEky.WAO"*xv qzIoz J(x*f}س(ґB-CS"lTg&hB5@i W 3aƲ*ȹ0fO5džX$]/Fȥ}GCn ޗX:4| 6F\]@6\RDFl&"llRt6#%ic4BxE {><+`xJ [g@R]ݖ*5C 8YF}I0 DkZd {0J13~\B r9B7("V-zZK[$G"R$\0HwH2%mBgA5H AkԢR.ۗeu@/ά\<ㆲQhcfG'FD(x~}Z?U:\ʀ]Ey "xl+6 *>]@>]*2v.bvRv\%VQ '=.`)wO@S_,ϋVY5OXwju1 -Hr6lJΩQBaw" h 0'lDj)-^kܑ9ѳCWM l ֬9j1 幦@2ox=8yk\r2o)q5!3M9+Ҕ.^S<C<_$=F ʮ"PC-O5Ͷyy,gJi|D`n̆95ɳz| RX-Z,5"`ÕLL -d:ꭀ*H֘|:OS"GaMقFF}/S0xxE.yL 3'Yp$FFי -A\c5LFg!"nӑ8.D%x/sT 9FoHٝ[:XKIR½XP~B[ƶ/$zcYaNB: `2 nlLRQdPK>* L/q`٣NkS{M8VOXc (?;暅G~~/}O-G+V;;<]Ց&iV,67| /ʞef.sFn`gl@YNLm_\R\Jj;VŪXoONo_!J*ܙǾF^! ߰4._WsϕH]#00q_ .J eNvF$4*T%OykW zpe ck! qXzL. M㇧w3qR{9c8,I!7@ ~ip9{+YOә.%^VwDP/x\ߺϩ4fG 4oV |a2$t ץƍ3k G=_XU f9"hew5caem ༩{c 3>ƽX.6C(JC*sz1g.ԊcɣTMSw(vl4W[N$h:ل b8o!'C)OU) 5{ׯf#/A:ǦZ}"pk,klA}98KRyv?7-939vj)9 1ޯO)Q|莈3h,aZڨcZ40˸mKd=?C|!ok^zeb{Z =CNGM)Xoؖdso$8[C()]2Q>zǀ }qduvx&w3YC{o EgJ?:8BVa}ZGnGdX*8ohׄkj//7i 7Ě|oxc fp3%<^فJŀk=eE*?jid@d~K-ItO^zaň[a/Cyb?;B(뒳?' ]1}Ӻ@٪…J/:tWA%jRھb,+G@jQ?%jnmoɌ7nԷom\FWrѵ h 5s]H^8@F'# 8K#!d`3Nt;ӜY 'C˗pS }5iUc:qPԊr$,.Ic Mh00Dߛp`<J0fS 'z-dbDl"rs2H!rMx@#RTGef" xM7bIR5h}X֗:v 5y(qc1m i^4)T8B^BO$͎ٿlD4IQSX)p&SW(J=eax\RM pNhIXCh/B J$7̾!"2Q[. L:"?xO*eNG`(-"Q̥o G.P7bᵐwtyWqZٌƿɚ,Tinnk:R\^j?vk<a;4 VRJTA8b߸X' >tm~NOe#Z%pi!-6Ý-F]~_2f勧zQ -oL_[k7^ ؐr/ЦckvoƕU]ڬi3΀g԰%QT`U/%".a/Ra,*u0+r u.\r|!i n<jַ~FTVt hhJggmѻQ#?[e:rIw{\ʚϣTYBru!63"#G- 'p ұhuk V( գX1Fm#56T\ R1:q;FpaQ~w?\ =&P\EP|o;ba9~9eלݬ0c@+FmkG2"g=U2w3ȫଂ%C*eπk}mFB\]NzpV^|xұS nAIcv4a'G=n7tI 5dKlwS5N<+0r ilb2`k%tL+~iەgֶf4笗'Ou3պ,zr 0OɄp̨z%]γ є Np?XHϘ-:d!g7 B5`R}hsjFɁI"¹y%0~a%)6"0H0mlƨ],XgƷAt`;=DZ"|=i]7a YűD/Y[p'Ivs‚H}-vx&0@ /+cT\WsW ћO)E.FWDBjz w93@ԐCߠg0U{H(,r杍нQa)!c \Ơz4)~'~CcP"!t-iv/\7[fd<ØRdXuc7ɿOckr0rQkQ: l!I/~$IT͍"tV7)&C+֠{=븚z7jEqj7-$eN{C&#|q^E4@:[G{od |0L &'R[[V;9Ms)_n.6%F8|%+B$"{VQ&>!A2V{ 99>-S,<9R%M^2(uSQàGQ?4я"$TPᦥ2濟I?z5.RPB[Ш Zp w b|s*HVCFájcLA{civ0w+'>omҚoRk.xs)"^͙2TqYw[G*Īn QEjeuMn fW'V`)➓ $H05S*Wmҧ[iJU̺b|@Jw1 ^1$[{"Oڙ%:yêQ#3 yb?J2]A18e_VD,&BͶU١ JToa{&N>gĴ3vu ~&;P'q~ov~y|f n~ay"xܝ[+AuȒr _/ JX<& =;ݠ1~H̸S8b689ǁ4ŷe /=9̐p+FZQvp<D@NapkQQCQ̈́P$D?8|͕duKtH^wzdD'o>-?wi J7ݫ޿=m>aŃ)W3LW| QсMRV uUz!&*m!#v/Ђk1q`? q.jzvi{;ڕgOg7P_H5] [eͿ{ zPt*Nl#P0tF}*v f&f7R>Ʒuy Z2ϰJWH'଑})zKЙ#[Ȓ5= Sx]pDX̑9][̋^GP?~k9fz1  kiBc99VQRn_|U+$ډO46}e8;_RhUo)Gnkx|9]DH-)kbϙs kK/Y9yove럥E+EnCpbZ=GL8|dFQh|+5!:2MMÎT"}۷~1@=?Qj'i\ 8a~<`Œ*Dvt,iaAUU 2yɔ?w.K㠉4l0fͶUIUCJٜ#J"S4W]cR ry쩳dK`Ȟs=^ʅBkS$`j^4T}F/*o(JZ/˗7gKE(' ["j "afL+K+׼T#ܶQr\)$ltxCzusdw:@S̓@~.9ur,8 @Fx m[Nuw|,sgi0j ػ{lŅmИ}==2AW;9}!\z?O(}8"^I>ȃ,t> Gs ޾Ό1#~K$"P MH.?cl_𖁣rʤq8us_(ƒ7x\맂8Plez쫣"i ^fE ]Yvr#DjkzD-^c"0XMu=ݒF="v6S 6R1ky(e%c*IJY[Ѿ2"2Y j 0{!Lz)Qbb-)Gɓ~/jo0xhWnC6R!S1hÕu/O+(פm•xܔ&6I6 Vp.mgHE~+C8U%JVUtĹLddzX-$6E4]RIC/p Y፩;ۀa{{.k+MV)w w+TJBzMuפA)//rUjuqleWeC/Qݱ(PWSs-U&v^Ƈ~ 1_qkʹW=aD{Ll@'E@Ǡ.E؁Q_T 9 YS1('Q&C@AvYmN}}6Kq |#6!h˖rݧIOڰ@Y14 k{un ySZ S 2M͚#H bFjK8&.x%|c7p\]6fRDesޗ BcT25JegcZ3SI,MؖrOKjb'`wHR\NYR!`utxn*F}"ZH1^()uwiZp' ,|&ɴMVſME_ƞ`0E5wޟ- em|ÒWWO 6C 2NXOA D?8(c415 {-$Q`8VygwK;N8 ǚ@w[F YHKW1my°U|H. o@3Aڴ10b j!||1'Fjj\jd~J"r8*yM" ifc[6X},Z\P[ݬ+p"_7 2H2`=>wz 2}Er]prytEbχ|㑏,X"aU_nrAlXYXU2{]q^l%˪\n^o5|O5 uwzhWgZ5 M*Wעl;u]TaL|ȯFgpf~IEq`6o~ (HFr9u8Z{Ƶ1uΆrRױ;B F<; |O؍,'O_hm iŻ6_tRT%8e1ꊑڈcɝ.gi2YKRrwK6G629A{arYCT<'at1O&Y7@ʅ!b@lB*' 51ިg>qBU3۫O"K+z:,7QxdT!Ṵ;Vz44~|HVm-A\Il휒VӱH6a: 7o[&$?Jh^R+Ldn; S񳊎$22{3 ol.&~yE19b_@2$4t@+DiwY^J9{yщ;9A4~@*,QXKA}ȁp Փ'^Tj%IT^8[Ϧ~EDH! lAj䴉S3k_S =6QHyC YZ