libgcrypt20-32bit-1.10.3-150600.3.3.1<>,g5op9|`",%c6ήAS4nwU'ml;'D& (G6ѤX"F=$Z?0jL[]_F#>0[Mo מ$!ʃ/Kly׃9ŭty0읒Hlp Ћa3Du4۶!zڈF&W}V9,IQV@ՌjJ0V` /Mғ#x.H\O&I:kC۷|P?V2V396YHuWԇ܃k''!jT^>AL?<d ( ? +<agn      4<(8 i9i:i>BGHIXYZ<[D\`]h^bcTdefluvwxy8Clibgcrypt20-32bit1.10.3150600.3.3.1The GNU Crypto LibraryLibgcrypt is a general purpose crypto library based on the code used in GnuPG (alpha version).g5oh04-ch1dUSUSE Linux Enterprise 15SUSE LLC GPL-2.0-or-later AND LGPL-2.1-or-laterhttps://www.suse.com/System/Librarieshttps://gnupg.org/software/libgcryptlinuxx86_64/sbin/ldconfigUg5og5ob8a70397b971e0b03672f01e19bfb18bfc377ff4031f63b579575b73b3e39b1blibgcrypt.so.20.4.3rootrootrootrootlibgcrypt-1.10.3-150600.3.3.1.src.rpmlibgcrypt-32bitlibgcrypt.so.20libgcrypt.so.20(GCRYPT_1.6)libgcrypt20-32bitlibgcrypt20-32bit(x86-32)libgcrypt20-hmac-32bit@@@@@@@@@@@@@@@@@    /bin/shld-linux.so.2ld-linux.so.2(GLIBC_2.3)libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.25)libc.so.6(GLIBC_2.28)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.33)libc.so.6(GLIBC_2.34)libc.so.6(GLIBC_2.38)libc.so.6(GLIBC_2.4)libgpg-error.so.0libgpg-error.so.0(GPG_ERROR_1.0)libjitterentropy.so.3rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3gg@g@g@g@g@g@eee@e@e\eTe.w@e@dkY@d5KdxcOc!@c@ccc@bb@bX b9@a a@aLa@a@a@a(@azaI@aI@a#a#`#@`P@`~@`-@`>`@`` l_@_c^@^@^H^@^@^|@^j$@^U @^!]@]e@]]ʞ]i]^@] ] \\@\C@\@\@\@\[@[դ[:[!@Z@Z@ZZ1@YYu@YqYTY3@Y1S@XXRXOWF@WQW9@W9@VVUUJ@T@TTԬTԬTԬTZ@lucas.mulling@suse.comlucas.mulling@suse.comlucas.mulling@suse.comlucas.mulling@suse.comlucas.mulling@suse.comlucas.mulling@suse.comlucas.mulling@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.comdmueller@suse.comotto.hollmann@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.commpluskal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.comcoolo@suse.comdennis.knorr@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.cominfo@paolostivanin.comandreas.stieger@gmx.depmonreal@suse.compmonreal@suse.compmonreal@suse.compmonreal@suse.comandreas.stieger@gmx.depmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comvcizek@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comandreas.stieger@gmx.dejsikes@suse.depmonrealgonzalez@suse.compmonrealgonzalez@suse.comjsikes@suse.dejsikes@suse.dejsikes@suse.devcizek@suse.comvcizek@suse.comvcizek@suse.compmonrealgonzalez@suse.comvcizek@suse.comastieger@suse.comschwab@suse.dekbabioch@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comfvogt@suse.comastieger@suse.comastieger@suse.comjengelh@inai.deastieger@suse.comastieger@suse.comastieger@suse.compmonrealgonzalez@suse.comrmaliska@suse.comastieger@suse.comastieger@suse.commpluskal,vcizek,astieger}@suse.comastieger@suse.compjanouch@suse.depjanouch@suse.deastieger@suse.comastieger@suse.comvcizek@suse.comdvaleev@suse.comastieger@suse.comastieger@suse.comcoolo@suse.comdimstar@opensuse.orgcoolo@suse.comandreas.stieger@gmx.de- FIPS: Differentiate non-compliant flags in the SLI [bsc#1225939] * Add libgcrypt-FIPS-SLI-Differentiate-non-compliant-flags-in-the-SLI.patch- FIPS: Implement KAT for non-deterministic ECDSA [bsc#1225939] * Add libgcrypt-FIPS-SLI-cipher-Add-KAT-for-non-rfc6979-ECDSA-with-fixed-k.patch- FIPS: Disable setting the library in non-FIPS mode [bsc#1220893] * Add libgcrypt-FIPS-disable-GCRYCTL_NO_FIPS_MODE.patch- FIPS: Disallow rsa < 2048 [bsc#1225941] * Mark RSA operations with keysize < 2048 as non-approved in the SLI * Add libgcrypt-FIPS-SLI-Disallow-RSA-keys-with-size-lt-2048.patch- FIPS: Service level indicator for libgcrypt [bsc#1225939] * Factor out `prepare_datasexp_to_be_signed` for FIPS SLI * Add libgcrypt-FIPS-SLI-Factor-out-data-SEXP-preparation.patch * Include missing checks for EdDSA and ECDSA for FIPS SLI * Add libgcrypt-FIPS-SLI-Only-allow-defined-digest-algo-for-EdDSA.patch * Add libgcrypt-FIPS-SLI-Reject-use-of-SHAKE-when-its-ECDSA-with-RFC6979.patch * Include upstream patches for FIPS SLI for libgcrypt * Add libgcrypt-FIPS-SLI-Introduce-an-internal-API-for-FIPS-service-indicator.patch * Add libgcrypt-FIPS-SLI-Introduce-GCRYCTL_FIPS_SERVICE_INDICATOR-and-the-macro.patch * Add libgcrypt-FIPS-SLI-Implement-new-FIPS-service-indicator-for-gcry_kdf_derive.patch * Add libgcrypt-FIPS-SLI-Implement-new-FIPS-service-indicator-for-gcry_md_hash_*.patch * Add libgcrypt-FIPS-SLI-Add-t-digest.patch * Add libgcrypt-FIPS-SLI-Fix-t-digest-for-a-minimal-configuration.patch * Add libgcrypt-FIPS-SLI-Extend-tests-t-digest-to-test-hmac-too.patch * Add libgcrypt-FIPS-SLI-Fix-comment-in-t-thread-local.patch * Add libgcrypt-FIPS-SLI-Change-the-internal-API-for-new-FIPS-service-indicator.patch * Add libgcrypt-FIPS-SLI-Implement-new-FIPS-service-indicator-for-gcry_md_open-API.patch * Add libgcrypt-FIPS-SLI-Add-tests-for-md_open-write-read-close-for-t-digest.patch * Add libgcrypt-FIPS-SLI-Implement-new-FIPS-service-indicator-for-gcry_mac_open.patch * Add libgcrypt-FIPS-SLI-Implement-new-FIPS-service-indicator-for-cipher_open.patch * Add libgcrypt-FIPS-SLI-Add-gcry_mac_open-tests.patch * Add libgcrypt-FIPS-SLI-Rename-t-fips-service-ind.patch * Add libgcrypt-FIPS-SLI-Move-KDF-tests-to-t-fips-service-ind.patch * Add libgcrypt-FIPS-SLI-Add-gcry_cipher_open-tests.patch * Add libgcrypt-FIPS-SLI-gcry_md_copy-should-care-about-FIPS-service-indicator.patch * Add libgcrypt-FIPS-SLI-Implement-FIPS-service-indicator-for-gcry_pk_hash_API.patch * Add libgcrypt-FIPS-SLI-Introduce-GCRYCTL_FIPS_REJECT_NON_FIPS.patch * Add libgcrypt-FIPS-SLI-Fix-the-previous-change.patch * Add libgcrypt-FIPS-SLI-Rejection-by-GCRYCTL_FIPS_REJECT_NON_FIPS-not-by-open-flags.patch * Add libgcrypt-FIPS-SLI-Add-behavior-not-to-reject-but-mark-non-compliant.patch * Add libgcrypt-FIPS-SLI-Add-rejecting-or-marking-for-gcry_pk_get_curve.patch * Add libgcrypt-FIPS-SLI-Add-more-tests-to-tests-t-fips-service-ind.patch * Add libgcrypt-FIPS-SLI-Check-DATA-in-gcry_pk_sign-verify-in-FIPS-mode.patch * Add libgcrypt-FIPS-SLI-Fix-memory-leak-for-gcry_pk_hash_sign.patch * Add libgcrypt-FIPS-SLI-Improve-__thread-specifier-check.patch * Add libgcrypt-FIPS-SLI-mark-non-compliant-cipher-modes-as-non-approved-in-the-SLI.patch * Add libgcrypt-FIPS-SLI-cipher-Don-t-differentiate-GCRY_CIPHER_MODE_CMAC-in-.patch * Add libgcrypt-FIPS-SLI-cipher-Rename-_gcry_cipher_is_mode_fips_compliant.patch * Implement `hex2buffer` in tests/t-common.h for FIPS SLI testing * Add hex2buffer-Factor-from-existing-uses.patch * Remove redundant/reworked patches now in FIPS SLI * Remove libgcrypt-FIPS-SLI-pk.patch * Remove libgcrypt-FIPS-SLI-hash-mac.patch * Remove libgcrypt-FIPS-SLI-kdf-leylength.patch * Rebased patches: * libgcrypt-1.10.0-allow_FSM_same_state.patch * libgcrypt-no-deprecated-grep-alias.patch * libgcrypt-FIPS-rndjent_poll.patch * libgcrypt-Chacha20-poly1305-Optimized-chacha20-poly1305.patch- FIPS: Consider deprecate sha1 [bsc#1225942] * In FIPS 180-5 revision, NIST announced EOL for SHA-1 and will transition at the end of 2030. Mark SHA1 as non-approved in SLI. * Add libgcrypt-FIPS-SLI-md-Make-SHA1-non-FIPS-and-differentiate-in-the-SLI.patch * Add libgcrypt-FIPS-SLI-cipher-Differentiate-SHA1-with-GCRY_FIPS_FLAG_REJECT_MD_SHA1.patch- FIPS: Unnecessary RSA KAT Encryption/Decryption [bsc#1225936] * cipher: Do not run RSA encryption selftest by default * Add libgcrypt-FIPS-SLI-Do-not-run-RSA-encryption-selftest-by-default.patch- FIPS: Make sure that Libgcrypt makes use of the built-in Jitter RNG for the whole length entropy buffer in FIPS mode. [bsc#1220893] * Add libgcrypt-FIPS-jitter-whole-entropy.patch- FIPS: Set the FSM into error state if Jitter RNG is returning an error code to the caller when an health test error occurs when random bytes are requested through the jent_read_entropy_safe() function. [bsc#1220895] * Add libgcrypt-FIPS-jitter-errorcodes.patch- FIPS: Replace the built-in jitter rng with standalone version * Remove the internal jitterentropy copy [bsc#1220896] * Add libgcrypt-FIPS-jitter-standalone.patch * Remove not needed libgcrypt-jitterentropy-3.4.0.patch- add libgcrypt-no-deprecated-grep-alias.patch- Re-create HMAC checksum after RPM build strips the library (bsc#1217058)- Update to 1.10.3: * Bug fixes: - Fix public key computation for other EdDSA curves. [rC469919751d6e] - Remove out of core handler diagnostic in FIPS mode. [T6515] - Check that the digest size is not zero in gcry_pk_sign_md and gcry_pk_verify_md. [T6539] - Make store an s-exp with \0 is considered to be binary. [T6747] - Various constant-time improvements. * Portability: - Use getrandom call only when supported by the platform. [T6442] - Change the default for --with-libtool-modification to never. [T6619] * Release-info: https://dev.gnupg.org/T6817 * Remove patch upstream libgcrypt-1.10.0-out-of-core-handler.patch- Do not pull revision info from GIT when autoconf is run. This removes the -unknown suffix after the version number. * Add libgcrypt-nobetasuffix.patch [bsc#1216334]- POWER: performance enhancements for cryptography [jsc#PED-5088] * Optimize Chacha20 and Poly1305 for PPC P10 LE: [T6006] - Chacha20/poly1305: Optimized chacha20/poly1305 for P10 operation [rC88fe7ac33eb4] - ppc: enable P10 assembly with ENABLE_FORCE_SOFT_HWFEATURES on arch-3.00 [rC2c5e5ab6843d] * Add patches: - libgcrypt-Chacha20-poly1305-Optimized-chacha20-poly1305.patch - libgcrypt-ppc-enable-P10-assembly-with-ENABLE_FORCE_SOF.patch- FIPS: Merge the libgcrypt20-hmac package into the library and remove the "module is complete" trigger file .fips [bsc#1185116] * Remove libgcrypt-1.10.0-use-fipscheck.patch- Update to 1.10.2: * Bug fixes: - Fix Argon2 for the case output > 64. [rC13b5454d26] - Fix missing HWF_PPC_ARCH_3_10 in HW feature. [rCe073f0ed44] - Fix RSA key generation failure in forced FIPS mode. [T5919] - Fix gcry_pk_hash_verify for explicit hash. [T6066] - Fix a wrong result of gcry_mpi_invm. [T5970] - Allow building with --disable-asm for HPPA. [T5976] - Allow building with -Oz. [T6432] - Enable the fast path to ChaCha20 only when supported. [T6384] - Use size_t to avoid counter overflow in Keccak when directly feeding more than 4GiB. [T6217] * Other: - Do not use secure memory for a DRBG instance. [T5933] - Do not allow PKCS#1.5 padding for encryption in FIPS mode. [T5918] - Fix the behaviour for child process re-seeding in the DRBG. [rC019a40c990] - Allow verification of small RSA signatures in FIPS mode. [T5975] - Allow the use of a shorter salt for KDFs in FIPS mode. [T6039] - Run digest+sign self tests for RSA and ECC in FIPS mode. [rC06c9350165] - Add function-name based FIPS indicator function. GCRYCTL_FIPS_SERVICE_INDICATOR_FUNCTION. This is not considered an ABI changes because the new FIPS features were not yet approved. [rC822ee57f07] - Improve PCT in FIPS mode. [rC285bf54b1a, rC4963c127ae, T6397] - Use getrandom (GRND_RANDOM) in FIPS mode. [rCcf10c74bd9] - Disable RSA-OAEP padding in FIPS mode. [rCe5bfda492a] - Check minimum allowed key size in PBKDF in FIPS mode. [T6039,T6219] - Get maximum 32B of entropy at once in FIPS mode. [rCce0df08bba] - Prefer gpgrt-config when available. [T5034] - Mark AESWRAP as approved FIPS algorithm. [T5512] - Prevent usage of long salt for PSS in FIPS mode. [rCfdd2a8b332] - Prevent usage of X9.31 keygen in FIPS mode. [rC392e0ccd25] - Remove GCM mode from the allowed FIPS indicators. [rC1540698389] - Add explicit FIPS indicators for hash and MAC algorithms. [T6376] * Release-info: https://dev.gnupg.org/T5905 * Rebase FIPS patches: - libgcrypt-FIPS-SLI-hash-mac.patch - libgcrypt-FIPS-SLI-kdf-leylength.patch - libgcrypt-FIPS-SLI-pk.patch- Build AVX2 enabled hwcaps library for x86_64-v3- Update to 1.10.1: * Bug fixes: - Fix minor memory leaks in FIPS mode. - Build fixes for MUSL libc. * Other: - More portable integrity check in FIPS mode. - Add X9.62 OIDs to sha256 and sha512 modules. * Add the hardware optimizations config file hwf.deny to the /etc/gcrypt/ directory. This file can be used to globally disable the use of hardware based optimizations. * Remove not needed separate_hmac256_binary hmac256 package- Update to 1.10.0: * New and extended interfaces: - New control codes to check for FIPS 140-3 approved algorithms. - New control code to switch into non-FIPS mode. - New cipher modes SIV and GCM-SIV as specified by RFC-5297. - Extended cipher mode AESWRAP with padding as specified by RFC-5649. - New set of KDF functions. - New KDF modes Argon2 and Balloon. - New functions for combining hashing and signing/verification. * Performance: - Improved support for PowerPC architectures. - Improved ECC performance on zSeries/s390x by using accelerated scalar multiplication. - Many more assembler performance improvements for several architectures. * Bug fixes: - Fix Elgamal encryption for other implementations. [bsc#1190239, CVE-2021-40528] - Check the input length of the point in ECDH. - Fix an abort in gcry_pk_get_param for "Curve25519". * Other features: - The control code GCRYCTL_SET_ENFORCED_FIPS_FLAG is ignored because it is useless with the FIPS 140-3 related changes. - Update of the jitter entropy RNG code. - Simplification of the entropy gatherer when using the getentropy system call. * Interface changes relative to the 1.10.0 release: - GCRYCTL_SET_DECRYPTION_TAG NEW control code. - GCRYCTL_FIPS_SERVICE_INDICATOR_CIPHER NEW control code. - GCRYCTL_FIPS_SERVICE_INDICATOR_KDF NEW control code. - GCRYCTL_NO_FIPS_MODE = 83 NEW control code. - GCRY_CIPHER_MODE_SIV NEW mode. - GCRY_CIPHER_MODE_GCM_SIV NEW mode. - GCRY_CIPHER_EXTENDED NEW flag. - GCRY_SIV_BLOCK_LEN NEW macro. - gcry_cipher_set_decryption_tag NEW macro. - GCRY_KDF_ARGON2 NEW constant. - GCRY_KDF_BALLOON NEW constant. - GCRY_KDF_ARGON2D NEW constant. - GCRY_KDF_ARGON2I NEW constant. - GCRY_KDF_ARGON2ID NEW constant. - gcry_kdf_hd_t NEW type. - gcry_kdf_job_fn_t NEW type. - gcry_kdf_dispatch_job_fn_t NEW type. - gcry_kdf_wait_all_jobs_fn_t NEW type. - struct gcry_kdf_thread_ops NEW struct. - gcry_kdf_open NEW function. - gcry_kdf_compute NEW function. - gcry_kdf_final NEW function. - gcry_kdf_close NEW function. - gcry_pk_hash_sign NEW function. - gcry_pk_hash_verify NEW function. - gcry_pk_random_override_new NEW function. * Rebase libgcrypt-1.8.4-allow_FSM_same_state.patch and rename to libgcrypt-1.10.0-allow_FSM_same_state.patch * Remove unused CAVS tests and related patches: - cavs_driver.pl cavs-test.sh - libgcrypt-1.6.1-fips-cavs.patch - drbg_test.patch * Remove DSA sign/verify patches for the FIPS CAVS test since DSA has been disabled in FIPS mode: - libgcrypt-fipsdrv-enable-algo-for-dsa-sign.patch - libgcrypt-fipsdrv-enable-algo-for-dsa-verify.patch * Rebase libgcrypt-FIPS-SLI-pk.patch * Rebase libgcrypt_indicators_changes.patch and libgcrypt-indicate-shake.patch and merge both into libgcrypt-FIPS-SLI-hash-mac.patch * Rebase libgcrypt-FIPS-kdf-leylength.patch and rename to libgcrypt-FIPS-SLI-kdf-leylength.patch * Rebase libgcrypt-jitterentropy-3.4.0.patch * Rebase libgcrypt-FIPS-rndjent_poll.patch * Rebase libgcrypt-out-of-core-handler.patch and rename to libgcrypt-1.10.0-out-of-core-handler.patch * Since the FIPS .hmac file is now calculated with the internal tool hmac256, only the "module is complete" trigger .fips file is checked. Rename libgcrypt-1.6.1-use-fipscheck.patch to libgcrypt-1.10.0-use-fipscheck.patch * Remove patches fixed upstream: - libgcrypt-1.4.1-rijndael_no_strict_aliasing.patch - libgcrypt-1.5.0-LIBGCRYPT_FORCE_FIPS_MODE-env.diff - libgcrypt-fix-rng.patch - libgcrypt-1.8.3-fips-ctor.patch - libgcrypt-1.8.4-use_xfree.patch - libgcrypt-1.8.4-getrandom.patch - libgcrypt-1.8.4-fips_ctor_skip_integrity_check.patch - libgcrypt-dsa-rfc6979-test-fix.patch - libgcrypt-fix-tests-fipsmode.patch - libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch - libgcrypt-1.8.4-fips-keygen.patch - libgcrypt-invoke-global_init-from-constructor.patch - libgcrypt-Restore-self-tests-from-constructor.patch - libgcrypt-FIPS-GMAC_AES-benckmark.patch - libgcrypt-global_init-constructor.patch - libgcrypt-random_selftests-testentropy.patch - libgcrypt-rsa-no-blinding.patch - libgcrypt-ecc-ecdsa-no-blinding.patch - libgcrypt-PCT-DSA.patch - libgcrypt-PCT-ECC.patch - libgcrypt-PCT-RSA.patch - libgcrypt-fips_selftest_trigger_file.patch - libgcrypt-pthread-in-t-lock-test.patch - libgcrypt-FIPS-hw-optimizations.patch - libgcrypt-FIPS-module-version.patch - libgcrypt-FIPS-disable-3DES.patch - libgcrypt-FIPS-fix-regression-tests.patch - libgcrypt-FIPS-RSA-keylen.patch - libgcrypt-FIPS-RSA-keylen-tests.patch - libgcrypt-FIPS-fix-gcry_mpi_sub_ui.patch - libgcrypt-FIPS-verify-unsupported-KDF-test.patch - libgcrypt-FIPS-HMAC-short-keylen.patch - libgcrypt-FIPS-service-indicators.patch - libgcrypt-FIPS-disable-DSA.patch - libgcrypt-jitterentropy-3.3.0.patch - libgcrypt-FIPS-Zeroize-hmac.patch * Update libgcrypt.keyring- FIPS: Get most of the entropy from rndjent_poll [bsc#1202117] * Add libgcrypt-FIPS-rndjent_poll.patch * Rebase libgcrypt-jitterentropy-3.4.0.patch- FIPS: Check keylength in gcry_fips_indicator_kdf() [bsc#1190700] * Consider approved keylength greater or equal to 112 bits. * Add libgcrypt-FIPS-kdf-leylength.patch- FIPS: Zeroize buffer and digest in check_binary_integrity() * Add libgcrypt-FIPS-Zeroize-hmac.patch [bsc#1191020]- FIPS: gpg/gpg2 gets out of core handler in FIPS mode while typing Tab key to Auto-Completion. [bsc#1182983] * Add libgcrypt-out-of-core-handler.patch- FIPS: Port libgcrypt to use jitterentropy [bsc#1202117, jsc#SLE-24941] * Enable the jitter based entropy generator by default in random.conf - Add libgcrypt-jitterentropy-3.3.0.patch * Update the internal jitterentropy to version 3.4.0 - Add libgcrypt-jitterentropy-3.4.0.patch- Fix reproducible build problems: - Do not use %release in binaries (but use SOURCE_DATE_EPOCH) - Fix date call messed up by spec-cleaner- FIPS: extend the service indicator [bsc#1190700] * introduced a pk indicator function * adapted the approved and non approved ciphersuites * Add libgcrypt_indicators_changes.patch * Add libgcrypt-indicate-shake.patch- FIPS: Implement a service indicator for asymmetric ciphers [bsc#1190700] * Mark RSA public key encryption and private key decryption with padding (e.g. OAEP, PKCS) as non-approved since RSA-OAEP lacks peer key assurance validation requirements per SP800-56Brev2. * Mark ECC as approved only for NIST curves P-224, P-256, P-384 and P-521 with check for common NIST names and aliases. * Mark DSA, ELG, EDDSA, ECDSA and ECDH as non-approved. * Add libgcrypt-FIPS-SLI-pk.patch * Rebase libgcrypt-FIPS-service-indicators.patch - Run the regression tests also in FIPS mode. * Disable tests for non-FIPS approved algos. * Rebase: libgcrypt-FIPS-verify-unsupported-KDF-test.patch- FIPS: Disable DSA in FIPS mode [bsc#1195385] * Upstream task: https://dev.gnupg.org/T5710 * Add libgcrypt-FIPS-disable-DSA.patch- FIPS: Service level indicator [bsc#1190700] * Provide an indicator to check wether the service utilizes an approved cryptographic algorithm or not. * Add patches: - libgcrypt-FIPS-service-indicators.patch - libgcrypt-FIPS-verify-unsupported-KDF-test.patch - libgcrypt-FIPS-HMAC-short-keylen.patch- FIPS: Fix gcry_mpi_sub_ui subtraction [bsc#1193480] * gcry_mpi_sub_ui: fix subtracting from negative value * Add libgcrypt-FIPS-fix-gcry_mpi_sub_ui.patch- FIPS: Define an entropy source SP800-90B compliant [bsc#1185140] * Disable jitter entropy by default in random.conf * Disable only-urandom option by default in random.conf- FIPS: RSA KeyGen/SigGen fail with 4096 bit key sizes [bsc#1192240] * rsa: Check RSA keylen constraints for key operations. * rsa: Fix regression in not returning an error for prime generation. * tests: Add 2k RSA key working in FIPS mode. * tests: pubkey: Replace RSA key to one of 2k. * tests: pkcs1v2: Skip tests with small keys in FIPS. * Add patches: - libgcrypt-FIPS-RSA-keylen.patch - libgcrypt-FIPS-RSA-keylen-tests.patch- FIPS: Disable 3DES/Triple-DES in FIPS mode [bsc#1185138] * Add libgcrypt-FIPS-disable-3DES.patch- FIPS: PBKDF requirements [bsc#1185137] * The PBKDF2 selftests were introduced in libgcrypt version 1.9.1 in the function selftest_pbkdf2() * Upstream task: https://dev.gnupg.org/T5182- FIPS: Fix regression tests in FIPS mode [bsc#1192131] * Add libgcrypt-FIPS-fix-regression-tests.patch * Upstream task: https://dev.gnupg.org/T5520- FIPS: Provide a module name/identifier and version that can be mapped to the validation records. [bsc#1190706] * Add libgcrypt-FIPS-module-version.patch * Upstream task: https://dev.gnupg.org/T5600- FIPS: Enable hardware support also in FIPS mode [bsc#1187110] * Add libgcrypt-FIPS-hw-optimizations.patch * Upstream task: https://dev.gnupg.org/T5508- Update to 1.9.4: * Bug fixes: - Fix Elgamal encryption for other implementations. [CVE-2021-33560] - Fix alignment problem on macOS. - Check the input length of the point in ECDH. - Fix an abort in gcry_pk_get_param for "Curve25519". * Other features: - Add GCM and CCM to OID mapping table for AES. * Upstream libgcrypt-CVE-2021-33560-fix-ElGamal-enc.patch- Remove not needed patch libgcrypt-sparcv9.diff- Fix building test t-lock with pthread. [bsc#1189745] * Explicitly add -lpthread to compile the t-lock test. * Add libgcrypt-pthread-in-t-lock-test.patch- Security fix: [bsc#1187212, CVE-2021-33560] * cipher: Fix ElGamal encryption for other implementations. * Exponent blinding was added in version 1.9.3. This patch fixes ElGamal encryption, see: https://dev.gnupg.org/T5328 - Add libgcrypt-CVE-2021-33560-fix-ElGamal-enc.patch- libgcrypt 1.9.3: * Bug fixes: - Fix build problems on i386 using gcc-4.7. - Fix checksum calculation in OCB decryption for AES on s390. - Fix a regression in gcry_mpi_ec_add related to certain usages of curve 25519. - Fix a symbol not found problem on Apple M1. - Fix for Apple iOS getentropy peculiarity. - Make keygrip computation work for compressed points. * Performance: - Add x86_64 VAES/AVX2 accelerated implementation of Camellia. - Add x86_64 VAES/AVX2 accelerated implementation of AES. - Add VPMSUMD acceleration for GCM mode on PPC. * Internal changes. - Harden MPI conditional code against EM leakage. - Harden Elgamal by introducing exponent blinding.- libgcrypt 1.9.2: * Fix building with --disable-asm on x86 * Check public key for ECDSA verify operation * Make sure gcry_get_config (NULL) returns a nul-terminated string * Fix a memory leak in the ECDH code * Fix a reading beyond end of input buffer in SHA2-avx2 - remove obsolete texinfo packaging macros- Update to 1.9.1 * *Fix exploitable bug* in hash functions introduced with 1.9.0. [bsc#1181632, CVE-2021-3345] * Return an error if a negative MPI is used with sexp scan functions. * Check for operational FIPS in the random and KDF functions. * Fix compile error on ARMv7 with NEON disabled. * Fix self-test in KDF module. * Improve assembler checks for better LTO support. * Fix 32-bit cross build on x86. * Fix non-NEON ARM assembly implementation for SHA512. * Fix build problems with the cipher_bulk_ops_t typedef. * Fix Ed25519 private key handling for preceding ZEROs. * Fix overflow in modular inverse implementation. * Fix register access for AVX/AVX2 implementations of Blake2. * Add optimized cipher and hash functions for s390x/zSeries. * Use hardware bit counting functionx when available. * Update DSA functions to match FIPS 186-3. * New self-tests for CMACs and KDFs. * Add bulk cipher functions for OFB and GCM modes. - Update libgpg-error required version- Use the suffix variable correctly in get_hmac_path() - Rebase libgcrypt-fips_selftest_trigger_file.patch- Add the global config file /etc/gcrypt/random.conf * This file can be used to globally change parameters of the random generator with the options: only-urandom and disable-jent.- Update to 1.9.0: New stable branch of Libgcrypt with full API and ABI compatibility to the 1.8 series. Release-info: https://dev.gnupg.org/T4294 * New and extended interfaces: - New curves Ed448, X448, and SM2. - New cipher mode EAX. - New cipher algo SM4. - New hash algo SM3. - New hash algo variants SHA512/224 and SHA512/256. - New MAC algos for Blake-2 algorithms, the new SHA512 variants, SM3, SM4 and for a GOST variant. - New convenience function gcry_mpi_get_ui. - gcry_sexp_extract_param understands new format specifiers to directly store to integers and strings. - New function gcry_ecc_mul_point and curve constants for Curve448 and Curve25519. - New function gcry_ecc_get_algo_keylen. - New control code GCRYCTL_AUTO_EXPAND_SECMEM to allow growing the secure memory area. * Performance optimizations and bug fixes: See Release-info. * Other features: - Add OIDs from RFC-8410 as aliases for Ed25519 and Curve25519. - Add mitigation against ECC timing attack CVE-2019-13627. - Internal cleanup of the ECC implementation. - Support reading EC point in compressed format for some curves. - Rebase patches: * libgcrypt-1.4.1-rijndael_no_strict_aliasing.patch * libgcrypt-1.5.0-LIBGCRYPT_FORCE_FIPS_MODE-env.diff * libgcrypt-1.6.1-use-fipscheck.patch * drbg_test.patch * libgcrypt-fipsdrv-enable-algo-for-dsa-sign.patch * libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch * libgcrypt-1.8.4-fips-keygen.patch * libgcrypt-1.8.4-getrandom.patch * libgcrypt-fix-tests-fipsmode.patch * libgcrypt-global_init-constructor.patch * libgcrypt-ecc-ecdsa-no-blinding.patch * libgcrypt-PCT-RSA.patch * libgcrypt-PCT-ECC.patch - Remove patches: * libgcrypt-unresolved-dladdr.patch * libgcrypt-CVE-2019-12904-GCM-Prefetch.patch * libgcrypt-CVE-2019-12904-GCM.patch * libgcrypt-CVE-2019-12904-AES.patch * libgcrypt-CMAC-AES-TDES-selftest.patch * libgcrypt-1.6.1-fips-cfgrandom.patch * libgcrypt-fips_rsa_no_enforced_mode.patch- libgcrypt 1.8.7: * Support opaque MPI with gcry_mpi_print * Fix extra entropy collection via clock_gettime, a fallback code path for legacy hardware- Update to 1.8.6 * mpi: Consider +0 and -0 the same in mpi_cmp * mpi: Fix flags in mpi_copy for opaque MPI * mpi: Fix the return value of mpi_invm_generic * mpi: DSA,ECDSA: Fix use of mpi_invm - Call mpi_invm before _gcry_dsa_modify_k - Call mpi_invm before _gcry_ecc_ecdsa_sign * mpi: Constant time mpi_inv with some conditions - mpi/mpi-inv.c (mpih_add_n_cond, mpih_sub_n_cond, mpih_swap_cond) - New: mpih_abs_cond, mpi_invm_odd - Rename from _gcry_mpi_invm: mpi_invm_generic - Use mpi_invm_odd for usual odd cases: _gcry_mpi_invm * mpi: Abort on division by zero also in _gcry_mpi_tdiv_qr * Fix wrong code execution in Poly1305 ARM/NEON implementation - Set r14 to -1 at function entry: (_gcry_poly1305_armv7_neon_init_ext) * Set vZZ.16b register to zero before use in armv8 gcm implementation * random: Fix include of config.h * Fix declaration of internal function _gcry_mpi_get_ui: Don't use ulong * ecc: Fix wrong handling of shorten PK bytes - Zeros are already recovered: (_gcry_ecc_mont_decodepoint) - Update libgcrypt-ecc-ecdsa-no-blinding.patch- FIPS: RSA/DSA/ECC test_keys() print out debug messages [bsc#1171872] * Print the debug messages in test_keys() only in debug mode. - Update patches: libgcrypt-PCT-RSA.patch libgcrypt-PCT-DSA.patch libgcrypt-PCT-ECC.patch- FIPS: libgcrypt: Double free in test_keys() on failed signature verification [bsc#1169944] * Use safer gcry_mpi_release() instead of mpi_free() - Update patches: * libgcrypt-PCT-DSA.patch * libgcrypt-PCT-RSA.patch * libgcrypt-PCT-ECC.patch- Ship the FIPS checksum file in the shared library package and create a separate trigger file for the FIPS selftests (bsc#1169569) * add libgcrypt-fips_selftest_trigger_file.patch * refresh libgcrypt-global_init-constructor.patch - Remove libgcrypt-binary_integrity_in_non-FIPS.patch obsoleted by libgcrypt-global_init-constructor.patch- FIPS: Verify that the generated signature and the original input differ in test_keys function for RSA, DSA and ECC: [bsc#1165539] - Add zero-padding when qx and qy have different lengths when assembling the Q point from affine coordinates. - Refreshed patches: * libgcrypt-PCT-DSA.patch * libgcrypt-PCT-RSA.patch * libgcrypt-PCT-ECC.patch- FIPS: Switch the PCT to use the new signature operation [bsc#1165539] * Patches for DSA, RSA and ECDSA test_keys functions: - libgcrypt-PCT-DSA.patch - libgcrypt-PCT-RSA.patch - libgcrypt-PCT-ECC.patch - Update patch: libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch- FIPS: Run self-tests from constructor during power-on [bsc#1166748] * Set up global_init as the constructor function: - libgcrypt-global_init-constructor.patch * Relax the entropy requirements on selftest. This is especially important for virtual machines to boot properly before the RNG is available: - libgcrypt-random_selftests-testentropy.patch - libgcrypt-rsa-no-blinding.patch - libgcrypt-ecc-ecdsa-no-blinding.patch * Fix benchmark regression test in FIPS mode: - libgcrypt-FIPS-GMAC_AES-benckmark.patch- Remove check not needed in _gcry_global_constructor [bsc#1164950] * Update libgcrypt-Restore-self-tests-from-constructor.patch- FIPS: Run the self-tests from the constructor [bsc#1164950] * Add libgcrypt-invoke-global_init-from-constructor.patch- FIPS: libgcrypt DSA PQG parameter generation: Missing value [bsc#1161219] - FIPS: libgcrypt DSA PQG verification incorrect results [bsc#1161215] - FIPS: libgcrypt RSA siggen/keygen: 4k not supported [bsc#1161220] * Add patch from Fedora libgcrypt-1.8.4-fips-keygen.patch- FIPS: RSA/DSA/ECDSA are missing hashing operation [bsc#1155337] * Add libgcrypt-FIPS-RSA-DSA-ECDSA-hashing-operation.patch- Fix tests in FIPS mode: * Fix tests: basic benchmark bench-slope pubkey t-cv25519 t-secmem * Add patch libgcrypt-fix-tests-fipsmode.patch- Fix test dsa-rfc6979 in FIPS mode: * Disable tests in elliptic curves with 192 bits which are not recommended in FIPS mode * Add patch libgcrypt-dsa-rfc6979-test-fix.patch- CMAC AES and TDES FIPS self-tests: * CMAC AES self test missing [bsc#1155339] * CMAC TDES self test missing [bsc#1155338] - Add libgcrypt-CMAC-AES-TDES-selftest.patch- libgcrypt 1.8.5: * CVE-2019-13627: mitigation against an ECDSA timing attack (boo#1148987) * Improve ECDSA unblinding * Provide a pkg-config file- Fixed redundant fips tests in some situations causing sudo to stop working when pam-kwallet is installed. bsc#1133808 * Added libgcrypt-1.8.4-fips_ctor_skip_integrity_check.patch * Removed libgcrypt-fips_run_selftest_at_constructor.patch because it was obsoleted by libgcrypt-1.8.3-fips-ctor.patch * Removed libgcrypt-fips_ignore_FIPS_MODULE_PATH.patch because it was obsoleted by libgcrypt-1.8.4-fips_ctor_skip_integrity_check.patch- Fixed env-script-interpreter in cavs_driver.pl- Security fix: [bsc#1138939, CVE-2019-12904] * The C implementation of AES is vulnerable to a flush-and-reload side-channel attack because physical addresses are available to other processes. (The C implementation is used on platforms where an assembly-language implementation is unavailable.) * Added patches: - libgcrypt-CVE-2019-12904-GCM-Prefetch.patch - libgcrypt-CVE-2019-12904-GCM.patch - libgcrypt-CVE-2019-12904-AES.patch- do not try to open /dev/urandom if getrandom() works * Added libgcrypt-1.8.4-getrandom.patch - Drop libgcrypt-init-at-elf-load-fips.patch obsoleted by libgcrypt-1.8.3-fips-ctor.patch- Restored libgcrypt-binary_integrity_in_non-FIPS.patch sans section that was partially causing bsc#1131183. - Fixed race condition in multi-threaded applications by allowing a FSM state transition to the current state. This means some tests are run twice. * Added libgcrypt-1.8.4-allow_FSM_same_state.patch - Fixed an issue in malloc/free wrappers so that memory created by the malloc() wrappers will be destroyed using the free() wrappers. * Added libgcrypt-1.8.4-use_xfree.patch- removed libgcrypt-binary_integrity_in_non-FIPS.patch since it was breaking libotr. bsc#1131183- libgcrypt-1.8.3-fips-ctor.patch changed the way the fips selftests are invoked as well as the state transition, adjust the code so a missing checksum file is not an issue in non-FIPS mode (bsc#1097073) * update libgcrypt-binary_integrity_in_non-FIPS.patch- Enforce the minimal RSA keygen size in fips mode (bsc#1125740) * add libgcrypt-fips_rsa_no_enforced_mode.patch- Don't run full self-tests from constructor (bsc#1097073) * Don't call global_init() from the constructor, _gcry_global_constructor() from libgcrypt-1.8.3-fips-ctor.patch takes care of the binary integrity check instead. * Only the binary checksum will be verified, the remaining self-tests will be run upon the library initialization - Add libgcrypt-fips_ignore_FIPS_MODULE_PATH.patch - Drop libgcrypt-init-at-elf-load-fips.patch and libgcrypt-fips_run_selftest_at_constructor.patch obsoleted by libgcrypt-1.8.3-fips-ctor.patch- Skip all the self-tests except for binary integrity when called from the constructor (bsc#1097073) * Added libgcrypt-1.8.3-fips-ctor.patch from Fedora- Fail selftests when checksum file is missing in FIPS mode only (bsc#1117355) * add libgcrypt-binary_integrity_in_non-FIPS.patch- libgcrypt 1.8.4: * Fix infinite loop with specific application implementations * Fix possible leak of a few bits of secret primes to pageable memory * Fix possible hang in the RNG (1.8.3) * Always make use of getrandom if possible and then use its /dev/urandom behaviour- libgcrypt-1.6.3-aliasing.patch, libgcrypt-ppc64.patch, libgcrypt-strict-aliasing.patch: Remove obsolete patches - libgcrypt-1.4.1-rijndael_no_strict_aliasing.patch: Rediff - Reenable testsuite- Update to version 1.8.3: - Use blinding for ECDSA signing to mitigate a novel side-channel attack. (CVE-2018-0495 bsc#1097410) - Fix incorrect counter overflow handling for GCM when using an IV size other than 96 bit. - Fix incorrect output of AES-keywrap mode for in-place encryption on some platforms. - Fix the gcry_mpi_ec_curve_point point validation function. - Fix rare assertion failure in gcry_prime_check. - Applied spec-cleaner- Suggest libgcrypt20-hmac for package libgcrypt20 to ensure they are installed in the right order. [bsc#1090766]- Extended the fipsdrv dsa-sign and dsa-verify commands with the - -algo parameter for the FIPS testing of DSA SigVer and SigGen (bsc#1064455). * Added libgcrypt-fipsdrv-enable-algo-for-dsa-sign.patch * Added libgcrypt-fipsdrv-enable-algo-for-dsa-verify.patch- Use %license (boo#1082318)- libgcrypt 1.8.2: * Fix fatal out of secure memory status in the s-expression parser on heavy loaded systems. * Add auto expand secmem feature or use by GnuPG 2.2.4- libgcrypt 1.8.1: * Mitigate a local side-channel attack on Curve25519 dubbed "May the Fourth be With You" CVE-2017-0379 bsc#1055837 * Add more extra bytes to the pool after reading a seed file * Add the OID SHA384WithECDSA from RFC-7427 to SHA-384 * Fix build problems with the Jitter RNG * Fix assembler code build problems on Rasbian (ARMv8/AArch32-CE)- RPM group fixes.- libgcrypt 1.8.0: * New cipher mode XTS * New hash function Blake-2 * New function gcry_mpi_point_copy. * New function gcry_get_config. * GCRYCTL_REINIT_SYSCALL_CLAMP allows to init nPth after Libgcrypt. * New gobal configuration file /etc/gcrypt/random.conf. * GCRYCTL_PRINT_CONFIG does now also print build information for libgpg-error and the used compiler version. * GCRY_CIPHER_MODE_CFB8 is now supported. * A jitter based entropy collector is now used in addition to the other entropy collectors. * Optimized gcry_md_hash_buffers for SHA-256 and SHA-512. random pool lock). * Interface changes relative to the 1.7.0 release: gcry_get_config NEW function. gcry_mpi_point_copy NEW function. GCRYCTL_REINIT_SYSCALL_CLAMP NEW macro. GCRY_MD_BLAKE2B_512 NEW constant. GCRY_MD_BLAKE2B_384 NEW constant. GCRY_MD_BLAKE2B_256 NEW constant. GCRY_MD_BLAKE2B_160 NEW constant. GCRY_MD_BLAKE2S_256 NEW constant. GCRY_MD_BLAKE2S_224 NEW constant. GCRY_MD_BLAKE2S_160 NEW constant. GCRY_MD_BLAKE2S_128 NEW constant. GCRY_CIPHER_MODE_XTS NEW constant. gcry_md_info DEPRECATED. - Refresh patch libgcrypt-1.6.3-aliasing.patch- libgcrypt 1.7.8: * CVE-2017-7526: Mitigate a flush+reload side-channel attack on RSA secret keys (bsc#1046607)- libgcrypt 1.7.7: * Fix possible timing attack on EdDSA session key (previously patched, drop libgcrypt-secure-EdDSA-session-key.patch) * Fix long standing bug in secure memory implementation which could lead to a segv on free- Added libgcrypt-secure-EdDSA-session-key.patch [bsc#1042326] * Store the session key in secure memory to ensure that constant time point operations are used in the MPI library.- libgcrypt 1.7.6: * Fix counter operand from read-only to read/write * Fix too large jump alignment in mpih-rshift- libgcrypt 1.7.5: * Fix regression in mlock detection introduced with 1.7.4- libgcrypt 1.7.4: * ARMv8/AArch32 performance improvements for AES, GCM, SHA-256, and SHA-1. * Add ARMv8/AArch32 assembly implementation for Twofish and Camellia. * Add bulk processing implementation for ARMv8/AArch32. * Add Stribog OIDs. * Improve the DRBG performance and sync the code with the Linux version. * When secure memory is requested by the MPI functions or by gcry_xmalloc_secure, they do not anymore lead to a fatal error if the secure memory pool is used up. Instead new pools are allocated as needed. These new pools are not protected against being swapped out (mlock can't be used). Mitigation for minor confidentiality issues is encryption swap space. * Fix GOST 28147 CryptoPro-B S-box. * Fix error code handling of mlock calls.- libgcrypt 1.7.3: * security issue already fixes with 1.6.6 * Fix building of some asm modules with older compilers and CPUs. * ARMv8/AArch32 improvements for AES, GCM, SHA-256, and SHA-1. - includes changes from libgcrypt 1.7.2: * Bug fixes: - Fix setting of the ECC cofactor if parameters are specified. - Fix memory leak in the ECC code. - Remove debug message about unsupported getrandom syscall. - Fix build problems related to AVX use. - Fix bus errors on ARM for Poly1305, ChaCha20, AES, and SHA-512. * Internal changes: - Improved fatal error message for wrong use of gcry_md_read. - Disallow symmetric encryption/decryption if key is not set. - includes changes from 1.7.1: * Bug fixes: - Fix ecc_verify for cofactor support. - Fix portability bug when using gcc with Solaris 9 SPARC. - Build fix for OpenBSD/amd64 - Add OIDs to the Serpent ciphers. * Internal changes: - Use getrandom system call on Linux if available. - Blinding is now also used for RSA signature creation. - Changed names of debug envvars - includes changes from 1.7.0: * New algorithms and modes: - SHA3-224, SHA3-256, SHA3-384, SHA3-512, and MD2 hash algorithms. - SHAKE128 and SHAKE256 extendable-output hash algorithms. - ChaCha20 stream cipher. - Poly1305 message authentication algorithm - ChaCha20-Poly1305 Authenticated Encryption with Associated Data mode. - OCB mode. - HMAC-MD2 for use by legacy applications. * New curves for ECC: - Curve25519. - sec256k1. - GOST R 34.10-2001 and GOST R 34.10-2012. * Performance: - Improved performance of KDF functions. - Assembler optimized implementations of Blowfish and Serpent on ARM. - Assembler optimized implementation of 3DES on x86. - Improved AES using the SSSE3 based vector permutation method by Mike Hamburg. - AVX/BMI is used for SHA-1 and SHA-256 on x86. This is for SHA-1 about 20% faster than SSSE3 and more than 100% faster than the generic C implementation. - 40% speedup for SHA-512 and 72% for SHA-1 on ARM Cortex-A8. - 60-90% speedup for Whirlpool on x86. - 300% speedup for RIPE MD-160. - Up to 11 times speedup for CRC functions on x86. * Other features: - Improved ECDSA and FIPS 186-4 compliance. - Support for Montgomery curves. - gcry_cipher_set_sbox to tweak S-boxes of the gost28147 cipher algorithm. - gcry_mpi_ec_sub to subtract two points on a curve. - gcry_mpi_ec_decode_point to decode an MPI into a point object. - Emulation for broken Whirlpool code prior to 1.6.0. [from 1.6.1] - Flag "pkcs1-raw" to enable PCKS#1 padding with a user supplied hash part. - Parameter "saltlen" to set a non-default salt length for RSA PSS. - A SP800-90A conforming DRNG replaces the former X9.31 alternative random number generator. - Map deprecated RSA algo number to the RSA algo number for better backward compatibility. [from 1.6.2] - Use ciphertext blinding for Elgamal decryption [CVE-2014-3591]. See http://www.cs.tau.ac.il/~tromer/radioexp/ for details. [from 1.6.3] - Fixed data-dependent timing variations in modular exponentiation [related to CVE-2015-0837, Last-Level Cache Side-Channel Attacks are Practical]. [from 1.6.3] - Flag "no-keytest" for ECC key generation. Due to a bug in the parser that flag will also be accepted but ignored by older version of Libgcrypt. [from 1.6.4] - Speed up the random number generator by requiring less extra seeding. [from 1.6.4] - Always verify a created RSA signature to avoid private key leaks due to hardware failures. [from 1.6.4] - Mitigate side-channel attack on ECDH with Weierstrass curves [CVE-2015-7511]. See http://www.cs.tau.ac.IL/~tromer/ecdh/ for details. [from 1.6.5] * Internal changes: - Moved locking out to libgpg-error. - Support of the SYSROOT envvar in the build system. - Refactor some code. - The availability of a 64 bit integer type is now mandatory. * Bug fixes: - Fixed message digest lookup by OID (regression in 1.6.0). - Fixed a build problem on NetBSD - Fixed some asm build problems and feature detection bugs. * Interface changes relative to the 1.6.0 release: gcry_cipher_final NEW macro. GCRY_CIPHER_MODE_CFB8 NEW constant. GCRY_CIPHER_MODE_OCB NEW. GCRY_CIPHER_MODE_POLY1305 NEW. gcry_cipher_set_sbox NEW macro. gcry_mac_get_algo NEW. GCRY_MAC_HMAC_MD2 NEW. GCRY_MAC_HMAC_SHA3_224 NEW. GCRY_MAC_HMAC_SHA3_256 NEW. GCRY_MAC_HMAC_SHA3_384 NEW. GCRY_MAC_HMAC_SHA3_512 NEW. GCRY_MAC_POLY1305 NEW. GCRY_MAC_POLY1305_AES NEW. GCRY_MAC_POLY1305_CAMELLIA NEW. GCRY_MAC_POLY1305_SEED NEW. GCRY_MAC_POLY1305_SERPENT NEW. GCRY_MAC_POLY1305_TWOFISH NEW. gcry_md_extract NEW. GCRY_MD_FLAG_BUGEMU1 NEW [from 1.6.1]. GCRY_MD_GOSTR3411_CP NEW. GCRY_MD_SHA3_224 NEW. GCRY_MD_SHA3_256 NEW. GCRY_MD_SHA3_384 NEW. GCRY_MD_SHA3_512 NEW. GCRY_MD_SHAKE128 NEW. GCRY_MD_SHAKE256 NEW. gcry_mpi_ec_decode_point NEW. gcry_mpi_ec_sub NEW. GCRY_PK_EDDSA NEW constant. GCRYCTL_GET_TAGLEN NEW. GCRYCTL_SET_SBOX NEW. GCRYCTL_SET_TAGLEN NEW. - Apply libgcrypt-1.6.3-aliasing.patch only on big-endian architectures - update drbg_test.patch and install cavs testing directory again - As DRBG is upstream, drop pateches: v9-0001-SP800-90A-Deterministic-Random-Bit-Generator.patch 0002-Compile-DRBG.patch 0003-Function-definitions-of-interfaces-for-random.c.patch 0004-Invoke-DRBG-from-common-libgcrypt-RNG-code.patch 0005-Function-definitions-for-gcry_control-callbacks.patch 0006-DRBG-specific-gcry_control-requests.patch v9-0007-User-interface-to-DRBG.patch libgcrypt-fix-rng.patch - drop obsolete: libgcrypt-fips-dsa.patch libgcrypt-fips_ecdsa.patch- libgcrypt 1.6.6: * fix CVE-2016-6313: Issue in the mixing functions of the random number generators allowed an attacker who obtained a number of bytes from the standard RNG to predict some of the next ouput. (bsc#994157)- remove conditionals for unsupported distributions (before 13.2), it would not build anyway because of new dependencies- make the -hmac package depend on the same version of the library, fixing bsc#979629 FIPS: system fails to reboot after installing fips pattern- update to 1.6.5: * CVE-2015-7511: Mitigate side-channel attack on ECDH with Weierstrass curves (boo#965902)- follow-up to libgcrypt 1.6.4 update: sosuffix is 20.0.4- update to 1.6.4 - fixes libgcrypt equivalent of CVE-2015-5738 (bsc#944456) * Speed up the random number generator by requiring less extra seeding. * New flag "no-keytest" for ECC key generation. Due to a bug in the parser that flag will also be accepted but ignored by older version of Libgcrypt. * Always verify a created RSA signature to avoid private key leaks due to hardware failures. * Other minor bug fixes.- Fix gpg2 tests on BigEndian architectures: s390x ppc64 libgcrypt-1.6.3-aliasing.patch- fix sosuffix for 1.6.3 (20.0.3)- libgcrypt 1.6.3 [bnc#920057]: * Use ciphertext blinding for Elgamal decryption [CVE-2014-3591]. * Fixed data-dependent timing variations in modular exponentiation [related to CVE-2015-0837, Last-Level Cache Side-Channel Attacks are Practical]. - update upstream signing keyring- making the build reproducible - see http://lists.gnupg.org/pipermail/gnupg-commits/2014-September/010683.html for a very similiar problem- Move %install_info_delete calls from postun to preun: the files must still be present to be parsed. - Fix the names passed to install_info for gcrypt.info-[12].gz instead of gcrypt-[12].info.gz.- fix filename for info pages in %post scripts- libgcrypt 1.6.2: * Map deprecated RSA algo number to the RSA algo number for better backward compatibility. * Support a 0x40 compression prefix for EdDSA. * Improve ARM hardware feature detection and building. * Fix building for the x32 ABI platform. * Fix some possible NULL deref bugs. - remove libgcrypt-1.6.0-use-intenal-functions.patch, upstream via xtrymalloc macro - remove libgcrypt-fixed-sizet.patch, upstream - adjust libgcrypt-1.6.1-use-fipscheck.patch for xtrymalloc change/bin/shlibgcrypt-32bitlibgcrypt20-hmac-32bit1.10.31.10.3-150600.3.3.11.10.3-150600.3.3.11.10.3-150600.3.3.1 1.10.31.10.3-150600.3.3.1libgcrypt.so.20libgcrypt.so.20.4.3/usr/lib/-fomit-frame-pointer -fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:37939/SUSE_SLE-15-SP6_Update/a9ba8262a3ae4922d7c5c71a5acdd0de-libgcrypt.SUSE_SLE-15-SP6_Updatedrpmxz5x86_64-suse-linuxELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked, BuildID[sha1]=a5bd28d4fd93e594dc654ae1bd5e05724971f86c, strippedPPRRR R RRR RRRRR R RRRRutf-8e742531507e9ed9ecc0ef3acd9320e1a4e2ce6b594b8b4640bc058de8c0ed625?7zXZ !t/D{]"k%+)_þY霐 V2ip/4 U8-F׸1#L>zLi;ODar"eE\6UrdW&1;_-ƾB^cex`E! ,AU[ʝD.uNpXr5t8^\92AO 2z0=PU '=J֮Bo<('=Mrk_N׮=#0ep+y,}ls,}(kM*C G2LA\BgoY1ӗ[? }Pc;v@ m m"sZIS )N'{t\=dnk4]Pӥ8d&xʺnOQcmM19İh+ʵXŏ6pt~CGn*bm-Q@P7w 8#j0wbѹTY$klTc-AVlNZԓ do9ruC1(&V5G b5WؾB !Pvה0#TxyNCT"l\&7{+b+IhM"o s%^aSDm|ęฆ.=F hpwb@oĔ%t'_v•FƯaY.d'p4%Ym8z:~V"{zez;gFה?b0ӹ^;QCdkQ\ Uv4bI ~Eg*"$Oo]o,8W m=`}dFRou]؏:mM|4+͇oq|5wj_B]hpl|nM}ϴ@$xDFPXJ C˟(8yNciNYvoB@t^P<w8#RQOV&΂T9e?^;s/~FSI&ZXDkAw\['.\ ݁SyRV70w8y^0QREB6ƁO(ز덺С z tQ;|8HM˔n5 b=h>rT JQ DX:ͨ`臬9F+:=5>;~hHOh0h郾QJoMg K5hG{Sb$z\mY>"»sV1w<& !E~ZjVVDRbl#r *e("ckc&A t _<ϕ:nRIϕZ~xdb\T\7JBmsȥLiK  ,K샴$&  iB_q#CSxBVD@Ea vPt`Mb;21Mh 1zZ)^d!ݢDKڹ>}P}a򻨼 ` za̝3iWT,s؋| plG,;AR#ZA `fkB_zYZ>WK6ITa:M=fي(gfnW(".FHaRA ꚡ4RBE+rከp6URh?hty7M͓3з_QI7(,Tdr .>OPےeڨTI_HPYvJ7W^nacJabGcWz\: -ݎH!>h%Wڀ )FX;gJq,jI0U'|^\)U9mb%sGkX,qG38GDL9VEyڐ̡(3 1UY5Djh'k:ۍbˏ:eܾPG.#;aXoELGՠDdzz ͦ .^ҏ-piC]` nnM6>IM/ZPWݢK%hߣہ7Yeޙ4H4 2. `d&%z#\˦xtMWj-(#Ye !%ߋ+1ծ3}r&3Y=HWM&p}40d/7 Y>]h26X&~2Iϔ\4sC:ݏl !$RhvNk;+)Zx qpk 62K?%MƕʠC n9[MnC1*EKBi+HW6ֶ͒ާy`lE߯p>nCÙ RG)<!#Y/`.)?}S2?C1:(Kj)ydP h%"OE^O~NmQ,Ɣ\3$šmiׁd,D |Lb n5!)JJ.Y`ހFiާ(Ȯ왮>R2j2,]#d-8ǃq"PT3W;d<.7VQ /FVچ=g@:[s3On hC Qa'ta9ޢz6g+=촕g>c hkXu [|]Fތf1IsQPfOZ|"Wvm@+gDv*؇]j^kDa7+u?pN;w=Iɛ|@knsl70lR{S[zOlUq]?trXTT{[p*V<Pj0a0t]Wq"Vt==@B:98qNLhD[v~*^1< }$ɓbˑ\ -h/I! /c7rZy蓼61 DίF W0YơFtpHi Gۖbj(~/Uw=V=XyX,w >=)#bUM ÌlY ~@`̽+Z_ lMA:GbQ$iS7$ [4Ҿ=ɔj#oXpeŝ+ș_Xf#} 2C I+m`#A1L.H_(`ÝB+@y~{%j=;x ZKۃX:Tv҅CydP'e[.x\.1A{"۞z(%I=8|ٞ;uө{<:P#/!}OM"ݖu(k;ePJRmp`5jwi`@<o{aSN}&W"g*rpCk4ۍ $6r ؠцBfR0#o/hAYbj/zR㒴-y&$pD`5/t=֨NJFz;YXleNh)6Kل߸q2Vyb췛|ZYh4+o#{2|ؘ |Yǽ/S bW^7)Ph]6G8/~!cOS$n 3gdfzbKBz-vN~{ʯU7 L nx03Ԅp`84sq?%pI V ݖnܗH^)[7*Oj57I-{х ({LNxp :G@{ߨh uHS]nϷ{(ad7I0} Kٷ{mI8ztGe`ƫ$=-2{}2@X얊(十"_TeѼ8gz#!5"8kmkz1 >^:yDWQqT ۉ^dDNp/%Caa;d{p^R[W24 HsjSC.|n<"AyS^_+B*}zܲxoCgRZ < 7EAY3V}^If x? N(?֗v 6l;uJf}~H\W2L\PB5R`w)=AK4gP$wAPqlbӈeBO'1ޓR40">~ҡۢ[+ bghI J2_en ,,KLNz]r _Ws&GuTtAgiSV^ n V}oeÜ P?me7owwӬ3j_l?UO;Gܓf Cv8]~{MwT2>̉e?bZiM2 P)1N|Ty֓,Q &궽L8mi+S{go[1JKǡA*Dy3~D#LjM`ؗP@4 )1S_qo'$< }GITCju'+-x("Ԍ;\̧srKNO Dnx/ V_kMZV4ل^-Z*ԃ b6 '|Ot.cw]䁱o5Y!3rt#%)9lqRE4u3Miv=شm)nOi֭R4X]/L!J)[B W#&}_D+<mjǂef+ E%N6Z;nS A;R o[nO_t'SG[XugE"ȡ ;ߔVhV\ݕFup.ЕO@Lap|Ck^F=2=9 Zım\$A4zj`#\Iō <1:%h<4X2=ҁi3 v(=Dh3%xnAȊEv])_O &mN&e0j**G^[cGƅc+*/h=ra1R,ƄF<[BPpg>Of@+y'?Ar{Xr^έu*=AVኅ`̢Kr]lFX@ Z>u!|0d`?98RhL @Y UЋ?䨜Gj0ܾ|4V}("Xv?YLh6"UET Pw鸲NY@jT.ϲXgg|mNl)(MQA?=dveG I"(&-nB_-̷uq%UG%g^ =-B) Rx s؞Xꆐ=]).u"9y& Ǫf#>=AO3anc#VݰA=!$,@nE`#g:UN,)2^j4(7wŘ}wA{m++$[B qzZ?P|=ݭЂtw瞽sQw  q иq.SZem廴b|HfT=۟#wf/2o2s Sg՜/:lP /RxHCҩsuzo@_U ~ c5 SJGf.>'YMG\p1m?<s ,'*;fcp[WEjo}ְdk5* (,Kی_ո[V^;“gcEZzbbTz\aE94gv`PExKcqX8 >B`2CqpDC?: ˕Eyl9>=528fOnMUQMxV 84 B.gJęG8"$(UܡuwpQB_ZY "^ni/LvP]DQC{;dUH!7%;Oz֢'6%cqq1"*lx>0i.QPXC@&rd4Q,"\f) { X;&!!`"@r ر|)l)"Y[f-ue/Zp~6% W)8wS w Q{!ަ<(q#C$ WH%CWr̭SpZkoo%b1yqAJQ"+[5C_抆X5Wdd7XG˔=4(m1#'*:Z]C:Ab%iJu+eL_ǵ6igѾ VKab G!CUoરaHj sAI6T! 8\ei'}-E_Қ[uV_m;Ex$̱7W̨V:) ~|vƼ3=niԜ0A3]L0قLxC1KE k{ GmNq""3RcJ: xUB:' Zh^:+:E";BEUΫN2ݏ;^_,1 _:: z LU0)_IͿ&Ef\^ H* eRDj·/-ӵeE,?$;e*ZG]9[EEpdmLi10j+TҶۼ4& KN_ Ѧ Hٿ_Y拒"8V-3o Rh @O`sX(2rυhyU%v1#UJYr ϧԫ Z<ԉ(C3=٨ :y;|sε縶C]UROIhzV@|Έ<o/{qpvCQssUJ,n9gOK~~(lRR'ȷ BR9sIfRe9 C"bUO@ ~ab};3p*fE'(wQ8{O7 9~ Zd4aDVEH4k|ېcG~ I=* ,s k4F;qkNɠ5p} s/nM"5!$g׆.%uo'؎f4ǽy*i<v.$> ADXʬ`VGYχ2Gq,¥;Nw9ZfʓB)p}Aǩan]!*s24nAOaN7D*^de w莐nP,k:G܂r{q Tk%j\7RɿgkC Rz09:gB?<ӶѣkI@luXXl@@+&L4 }l|[`-ޒK3ޟkBRI4c"^ʼXHDx 2x?=ar[T='pe#JJ8곜mW.[4 ȡiw5z$~I*/5?I34?f$oSG).O4c9lY~_EM}Gͮ}}SMJGC&uػgU$TYmbqB65/du)qRDEsO|05=%COׁиݴs`uTq0q4]ۘȝ5T1c|NOZu8c7r_szٔTn@@2c^֊)1or Hm^Wfpt}XD*qE ڄZc#NMۿ@-ݚWn6z߂xM3;uw;BIp6o=WZYKyp3N,wOR5 #p6>P,1M4V)B-Zamg=]/ D!P8mv-_\/6l`2?'AJ[<>+~=uC1~6?E'8AmјdKk uM jށ xL.ᚊ~Y>bb-ke82cCG7Dha>c!ܞtz>b6`*PSѓQo2 c:w1h\օH)OXY\ S-i)4T01~IqV2wp\ҵ[@Uw.uNs1]5\fY 8_?D~>G$$܊{@}Sh[t0kK ΍D#W]0MAhr/B"z# "0 qqL&kk qID4k|ϱs;` Ÿ"e,QE|xQm-BQ}K>@'TVe2#K cvy(vOhOS *v? 928E]`n]_Oj+:l R㳩}?ti30 iQ XG)*;dRV6OzcȀɺmJq֬PEdf&R[yNQwF$'2x$&w*"*k k0`M/z8ifLmn~PZ0XhjD1jɉ*@,/4OQS7U#IvЅg4 rل7?*di@ij !@*gqbvHI0{gH5 F5;C_ N}KYMսS7[?bscnN43S2*mXqtFɞ7IY_ݰ& fC l#>Znq7Ѯ"TwL^O@/dmUNi-ܮBǭ$²#$)αQu+)ڰV7 E` H"k4KKR^Gb*raCQbwqgF> !PQ]iOeoLJJWs(D6V8s Bfp쮫%K 0d(V6ap(~Co)n$"2}{;cի!B:PY]2+`mҗh"^PF hr*(׹ֶ;ly@U9k0-{FfD h|\o<*M>W] }4Ha q>BMaĶ_c2l>u~lpS.^+fxHR'Z, `p`{@TBa)//YdB6+#hWMIip@ W'6w~Gʨg۳ݷ@gl֑Ku)+%DuF&x4gZ$sY3en%MM}@waVC;Үid{hϋF޷T&^!9Wd;Go] ^~%pdʴ;dFMTe0/ {" -rV/:1uqqiTx!S=L.hO!kwSVKxJ {#-_Ev*Qe[-fW)-߳#1Uԣ# çjT6[**FHZ@Tw2rV7h&-ȍԓ bs]zک0czbloBF_C?gb}um sW=7$VHa RiyA=_!j虚 &% 6/H=@21L.0 CRnڏd9B|\CT?cCIҗj&%}!Z\]Xz_pbk;j,)kTlzҴ'g!C7IM5Uf+͔+JҜGRz_$dfa&, Ny4S,Q'y"",.2o"asb u> "Eܑ+J=[0[b(( _^_X{ Z[pMy_KC9os9-$퀶d&GL82#P8݈ kӑĈ_: ,| sG?\AҨtZwij)p*77LaDG /u`\' ᤏ WuיSx`OR`/xHV^BQE7mZ5z7Nlнz>ǡ]C_=E2%S{f[O+)ht?(T Ѩw>P1Y~d1XR:4.1sASj7b/ eЖuoNYGnJF E x!w#9ƽ+^v5xK$fqհׇ0AR͒oBAKCڲ"]}v3jur2Yk$o ݱ 1\3Ѓk1­`j#F#e[{2؂^!k=bZQr'.b;ouf. ɥ1[j&N3}з!' k͉*(Rho_Q 8¬ ŽTVy.1ڋ̆ϭtyh8z";0~ɩXhI`.pJW7(+c=ȶ 3϶ S#sctYu*Tzp$2HP hU+Y|bHHb3.FE;,3؁! dagӤ1%en%_A'[&X܅Nh kM2z K"]2 [L.}whM%AE`qKe)˚ƺ_e})k~3QmǽXX AVy}5Vl8 hN`L1QեhéV"4Zyh.4ϳ ̬~;W9^yaUWJwkQxLv1>ń)SB@̷!]:` Yj5 -5޾I8Y"#an/ ʀJ jEٛRi&,].#07!u:'g/cЇ{ Pm̭mm%f=)os$:BKR/s}B~""vr-d߇y;Wu~E3vz?Q@sեOnaKz:$Jd:c23Y}jZ޹q? ?'_vFjue Vs%e3>M'G2>!S?GP{-8CZgtDv#ڕn-ﭙfQx߯x9.6υ"gK!kݗ#\"55,^UnkRSB|rʅ8~f$ٞHrWc`fznXM@8)Pc+:$  `SPK ) UE%wn١w}i) ZWE*b]e{N(ir8Pw'/=C9B 1goA|" $ESJUyݡ#Y IVtt =>xjw쳗jZd9g- ʱ]vWB{% _&|$`ڛwkGσX%Dvdʏ#xgDm%ß`q0tv+.IT4^+w8Y TNb2-m?9:} -!uG w'qwuQV!ڢ.7PEnl>]w.4#$my@R&\rѨ(Vv@]hs&PQ⑓|7gб%ugwLxXB0ߕtџ\J w:,zYdRI:zrf;y"Gdb5O#8zN:(z LPe !~JVz^#%ǃ#U*`k&Z-(fi15"6Y|u'|gUnf{o%xS>P$u^Ovowvo{TRfbd7)sE(Zۜ29%ljjT^N̩RֶQڞO9ؐ^Aa8dgMq>IpO7 o^mM}I T0S}:nl@tSpp=x:G]SsKǓ8=M$@>ze54߂l҂>%.~/0e꧎+qb$2&Y㲨(8:q?^ZKKaCpG;ήr"v>`(cJfBψBq!*/X?= ˕"j`: = WlQU gsvzH2^?ՠ̕_!ܗ},1D">q:jBC_9 N$?Q"Q<5qa)9{۫d"zB"OeTj!I5OY96R4OTtC:Cf$˧7tXg AϾ뚩]U6:)%^F9 OZu"3'j1zхX( gI7r#4 +Qe.&t %Y$B vwp- h6^*˟U)s&HDVXX:[kU[ͅ) mq{%1NNC z=`G|AH:U'l) HH(IӴ '$\sa&,{kp6K LӒkt؈3X!Gؓm92P9G.mkiDUۣQ Duq/CEMjû Q4;="% %KyD`cTlRN0j#k"Mr,~@'wXc )|r)A$=(j*<46c3AaqQdH]C[3h FO&R4x^pe))JDGfWn'`1 Mg_$UYz -GU`ka +-2bIq򠡫F M |M|3]XpNB1Q&yg $7AQ#ʡ[ ]$}O[l=cDۅ j .rp߇c i NsOu$L3tpS˨ĚoeG)nL0p0t !(kP4}tvZ)bٶblb }qY{2RAϥ45ţ_I6 TO.IP}1̓(/urjĔ- E_ћ VNew.rt(ytWntD ]VvF*-w[7 Iى{yQhjr~&+hK>GUo(&VqɽE>ߕ46ͻӱPb9Ͳ׾Q9Et6U&93i=0mTKD*HPB_(l,gt#ĭ.f ؝r2Es 'JWP՜iڕw2 !c/rO)4}_\(o;ͥOC<2u#v ʔRϿ?9i΢me$S;^  'X8ׄoGUtVhjOU+1/l3Oq_ lf~.xUلO1`9$HeYA;Pq\{5 x0^4|o`e />O NG.dL&*fsک#W6e@ _X3Vf:J"]-tˆ^[/j2ǑJWs$\ϝ@?V2aF[-B oMu3ţLwd_l0H,gCۗ|۞㔚~:動mZbwS'Y&+_X㡎9[A>:ﻮ_PZQ?7JY:@}uſ`m$BI^m01@unW]U%N1BG|>hz %opv*1a~ee|Yld'Xggts%9s_L+|f xɟN(٦. /oEn2D;Ő .K- plF-tqd/TCp ]ƩwU#E|7I=i6DՄA)㈎NsiBXg;*+K1 B!f fT Q&71ο#qFĶA"&ic`tx_ș=3qr4"R"’^ŘMOHrf5:N/=Ərٵ$8 *G7Qsw]_l3|W7_v-\ކibFj;0g,Bǘ_q5ہ6nI 9/x^N}%FJRa v,v ) `[KBֺ2%-Ͻ<0 a #cu1ո-E8t2Qda|.y&[B@Gvp MƷyT*n "E`1ҖC=ta֨ *R0X q6푗:d G!h \/2UiR=i9ܒlm5m^jwMbQ LTk"\68">8*.yu{3k;Ϸ4 ve<|.+xgү5< ^ )RHa~q+-rm ʬg}o&M-O JnRxx9Ψ45bfvN:tO'~&4E|"%g-G) S=n{Yu".Z]`Vޖ'۟%ڟef4a_?<'.vyH"IKK?UBI܎66h)3׈^k^6gDrqHV항]@pd\ m|&q&9JF49]&P᢯Ó,r:1m4=nB}J"4RJEpNsxI? @;QpZn%.dD%),ҀBj6w[uP({TӺݪ!}?Hm]<Σ஧]?{*f$v 9Kq8*ǭTN 42x˓Qr¢O&>a{6'| /FlZLbmGq)l䶛$Œc@i\| iI3a%Οv ض&7YOFV"EzYW;?s5 cFnMםV*nXrAzGtETg]zh^Y4#9zJ 0dA%&xΖwN7*[x,U%A+wOo0_MHrSuSOT<<`eI|'|`W?ZޖyF:>`YY9`p@xs 9~CWZc(GP|zr3#,MD^ 73>Ta ZFv ߚWAE{?_#,Khq\a#fRz9n GskC "&mD&|ODr4-%_E# ~$_]5vh`kg!#ۂפYczle[||^ zCD[]SF@K!QÚ)Y4u\ y*i|ޯQ/̬A> t6RU-rS!@im7ߨa hc:oA8R hAq@jLc/&|aܓx<:!2s閟@Pm p|?ĞsyX]*FNNn&Tᯧ70~PZ/R.͖x% l /7)09믰K!!I~L7Eֵ]EhhNYZ,x=:H(: h(jn>¥ Z ]C@| |Zw9faxCg5g,LZR޿1/y 1;D}4$vJʛp]V|דZZ? ߕ͓6q=4-d_9cl~oVw/3@r ~KOudfoo P#OYҟW7w=ze澘xnt5'Ƈ_!{;:*巆U O/;O{OLνr^+ cJu7ӦT E-?DM;,NtJ?sHtSG5h_PGyѵiʢ/Eۙÿ.5[v?] Zh6KN4W4sW}[LWZ,߿ Vð\{@3ϗ7E#OkW]^!h5Z.|sNS}@Jt_d0֟vELC=ˋA=]g(4QBT} T З:8=TQn"HY$$|}H)aG,F]-0J0l+r R q ڢKݬ0_,8#U,3j=-TGԬBP<5Ϲ ( '.U 4)ĤTG/ՁOڳ 9ĥ{ʧ{qs?bDlm7ޗE|+L%NTo|GՑSEeZ$Zǫ 硞WR" kW|z,B#nXR&>d| 97UD|?o:/N #8tϽ=Y-`RKnB~yWOuׅLDd$P@&,zbs'b2/PMC_,/g55Z;];RǀK!P¨ uDzfEov1`Gy"dPW oU~~w/9N0T"_Z<% _9I9QcwXyQWQaJ$qb+p`U6t6$kdNe1'HVXo58Rs\:k:iFb4X|RK^ y )UPL 8BeY 3\ iE'y»:Jݓ*=r`N H9b5AǛ!y"ƴHF'덊=0W0+jCg:MXGgm2!Lw*N0+,T=0>ƿJ,p>iLɤ#dQтv! M@^4h&JsRry5/ziX1Lh'T!K Θcc^^懄RMN/Qv= bst0]a-be4nɠ:"YR(sl|ʹLb' hP|/-OeD}t'"ţPwO) ՘b5'w^:"BM%,`OT[a?LUK"('^D@2XKYE~Ù[|=DC yCK&mtT`J'5=*#=H4I?p*4(A"l4%)pU! |*Vj=y҂E(7JE CJYXd8%h^=X ܅Wij@^Rl fUYFp10_0׃F݊w~c{7+XIi6k<7wK,$!^ HP=&+mǵR_qD@I6qtڇҥL,7ʫ9jҳot3<8yu$B"҂:y_MZT[P.?#NniYhEl:_FEotKeŜiS%C,Є +Ivo7VWzB`RDܒ |fI7{djzQ±ӖlyW 2CmWTk]teST[;}l\"!'KsɃL6XHLW~_^s|`Vv(G#Bp#ݴЍ n3*]5=$L'zʆ\?A(B:ݴoEj8t>2@M?k?ƊH &:g\/1u,0yF5 |]fCDb(j T!~qTt~lg8baqVKZd)(=eiS.*TM4ˋHG\& c}RbXK]GA: {ݔHY_^θq8CHp<[$yɾVM Ћ5ULo͌u6K#tAw!fD^*ASC %gn5()ܞ7&A[?`86Q|Q%{jc_&4eqem!mk"d>g`}2̯5߆͵KEVBwk=7tt(r婶39okjͩ' 8ỘbO3E֨da5]'5>yĨ3O\JykPXLc*Jrȱl̈́Na؈*5Gf8W7)%CH 2_q$=Ԇ\H;e/fZUPb2[3QS$)VCag7ӔQq,'F>i79 ̦8Dn=M+Ad' pLU5/KQD7VB`ݭ]'d{ֈHT~9py*im68dj0?l$)$so.3f h\\]1@gJsX=W HwDqYO`ks]%&GxZF.TJ:0pldoYH& Q=s\;UL3~zOg9~\ p쓚\;JL/eUվ޻o$i}mf&>Wȭt a+oH%nƻ7KWC#Q1)JѰйC\{(ء'Ҿ1,VW9Ff- (dX ZΊ2_m=Hn+ܳ y 7}?rS(JgZQJ?xMu`3Pej^\wKs}AoGc3zEEL Vh L^[M3V{~XG%uiygFნ D6ݥIer UGm%"~ȭ6U—mH0F84rIΰ O=%y ^ ^ƅE=hէnsa{J GrvFp [ Ih k6?j2:O%BmU*TMJib[3Ԍ1 +T77p5^ 7v0M(޳ypj-Y񇊴|1pZѲ;kƘ 56o`aZ`>6]B(L͸A/>5^/h^Je Q\)bnDӶ~!k.jHh8|  fPq\hk"`BuR?98݌>x"/Tiloخ$|z!1b^bSӷZ>j7'oQ&1n f!]콟qreʺi8M:f7i1iZq+`kY4+㇪[Z ވ|cn~_}ζACNKuBY 绀rmPa:Y%jZCT&g%$^Liy,e;A[ j}Ӄ y)xebb-NnNd訫üfJ7qGN c7F"Wۗ,EG;08*U:>weupE<=g'bAԷBЬGe6m9s/edSn>J)wXUz':8{A+?a!sGYʊ`w;i:5c7j;?ǺPc'4EgnZda<-@ W$ᑠO>VHVq)f{ A>"_Dڱ>Lv,NxMw#_Ŭ ؗvLNs)ZnPvGBLQ]2-^j# |ʝNY=*υiթK#T0Zn]=)zn5Ow懎1V}{ +}f^,UƯH+V = ҎFf~0MbWNPr7]5Y.ZTE8k) C5ɠ v/}Op$ʞܲ*(~X@-c}wƮ 6On%3%'`$+ ٌo!Ӻihn4'ÀG/$ɔ5OS)工eȝ>2Q%_:.om)Sk%ٙG PW&oN&QH@}M[]oQ*+^S>'BOg7haa2-S<8 Ei$C, . p\f$^\L^ljm'$-;Y&Jj6,ݏ}Uz<3i̯_F9wF釖Bl#Yyρ1mf ]j?Ղu7c?MM\P;=;OZh.khyB-_q2`s/z9_4eb3"3؂&+{J4(n5_n/Ng3&CjS ](7F ӘJ]Vr)&ޛk0BhP5 ɪmt;p\5/1=&pqˎ,gU"Ujqx%b0+w\caSl~RQ6JXj>kqFR: w9ÅYnӡ˜',NA"#ƙ:uAJWp?<")G'm2~JO*נ%t)( ;=<"(Z"Rw / 6czoZ7枿,[@ʩXBi[[h:k)WVoxLS37]!_zU{-MHn9vV;82#E1iKj6bd4(Kb$q8ϠY;3lX$=֝zDwwҲ(QA΋%sLODQbg 'pUVs'M5uwS3zpЁ.dq-,e2 :&KC&8/}a΀ wU=$Ѵͫ#LuM}_V("{I -܅γrUqe]'䗛'&n$ۜ['7J:y9G5_̢I!߭lNu>=7;갧^pD"7wCq;:(q"vaO-@an 9x I׈vOW&W&Vsf3/U8`1 N\T1@ἃ@HA:6W=`4Ԡh t1̛qKF! ,æVZEBm>}a(hu`C/t2U\R@쎯Ք7 ìg%$SIZ8Cn?TvVT%nȬkkbV!$]i4^ j'a)KDK‡@(q&,MZ,%B7=cY e/'b) 8^p:(A"V>Uvw~ uKë=-@TP6ֿ JRSgx99c ~03}; lfXrHES5"Dm,|ʺ&],e{@+|GR_H`tH:djq,#Oغ1oH?C)̹zvql!;a- nkj@) e|@ ֮ RHf9 AZT:GmХV9,ݩgŸP׻7AK{`GNƻ\zk MЋKǘ.eCesR$VOsO:4wݡX}Rj[8Jd\^Tt'CM^.+v15,ֱs^a 68{=~] P8hBi$`ÊD>.T )8| ZuǩiEg@|c"T@#Pܿ;U/o|HlI&1Ti(]7|_ց/6,$~KO{Yts D :!n1UZRL̳(/ x^4$qSFn!0c[k#mKl{NAMOaAkO)uhƀeϑ]biHɜ'~8Y|\69q F=Is>bl"M˖Ě~i[`\\:|MD6:˵$$Ȧף+!|k3#C^ceu?6M~w4ܯGy:Dт4 DٌM<Wlqscaה˪^:ګw*{Tg3Z)w+I+ 4AwiXӍQFn6xP,]=\<BZDRrBP9 :3Ϳh>!}<҉O _]M\HDHjy[Zc6w^/'rz,k%h uBnzL|&7Pny;n<+&-#vE!S6G;vV[q+?͗ n_ V cS([+z "e&tD.JIZW 9ْ⻁IMiXYo}7>႟,z{ DX5D1R&b=g,u[n!+:dw6Uu[fsGVd. )3_rSF7z5X_tiYOR){>$I&CT#O6Yڎt/(?5kD'[B9kþbhqb`OăC]ekNo [*'@lgf>+Oqde <%:# z]Ԣ&n 5Y5WHD"7IC@L8|r2sp͖,ZZ 0b>а\ F;Ku UBk/e2 gc{DϜkkUu/p-o|3w&U$YXv$WG0T,yԯ E+ }u(b1;߆rEg)[:gP CN/)Et X{Y=8+ÖK ϯ60Vu'Ug{ ;9?'9c:K7.`L $Vs?|B&*PZ 5[#wj?rqZh'),T×uhʹvb;ǘLa2/E]DB2*m+6ʿDȕAsBego $Ƈ+!#Ip+0OC=n\Nů*y >)'䯟4m("(n/I{0/x~sL? y9&sbEnɎyQ^xD_M5'4*m`iFgjS:ʘ./z+!*(dvgEW e.2`K/;EqgJ7 Q! P5% PF`4xd[WEuyN#02~)d0W9L%~_kv_lo4m+auDʼ,xJr λwcuOK/RC{X۴'/&^`9lrFb|CQtb F?T @;`tXy͋ pf|ADes!)k^ +۴,Ș沜{ ia3M UhnXS8r(1A M^% =7pNU%Ntl_=)^c[ձ ~`*Y9RnIQ9Y&6/>['!Ep@a=bH Iyw(+S%#aӛv Er?妵18 1m9Kذ!9l-@S|ȩYgdoJKkr.RWa4%ߩ.|kA7m&d#m<>?28b2#᳊+Uڴ|I1w9?( DyR.3.hսf|}&0"Ӵ\u_.QQllutQ649'pk 㾛 _Z[fn l,q_s},(s4Jcl8@,( $HʨCFzSm,Qwl*E-CT$Ime*LǓ'J"ɩq(VGY+NEa Q8d qӮlw .By5ԍR=V_BaIg@Ysjpƕb~PԢ@o&Sn;tbj}?r8mZ(DMq뼄.hqí93Fn8O8w 2H}?zXX^ 3I全kFڽ[w)~kgkh$o 5Gi+;gwʬI j eSy ,rmϺp k< pUP:љoUo.8,Ƀfh3tɏeV$,pT{ګ(n x`k~>0*N ȳ&rì kq,o=sdm`FEʾA .$t<-,}nh_-A-˙S{ު6 g6N!,$P䇿#F]yqR 5MwRR d4~#? ŭ1Wgz9 } 9}~# ԾG=&W*81{N9A-hEȖ>T> .;79ew2㭋MQlh7M|^ThF&tСSb ?2v䴬J7yt c boѡ1ST<Ʋek#GMRH3mk8"&m H8&~}O7Xb!nA&@$*{$dy[x.GkNei{br[nec⍆ 0%Rc_$:qxa &iU44^+jHYǸ" ,!C6yc ^̘| 1qZ M>?(r5qL^awzǵ .!Z[Ʀ&xí}gJa+׺eh >6tl` =sC4U満g[w@6q*[܁O ՟\`:FMut_2].Or'=Q# ?o8/L:z.=@s8"1L3 #}#:=<.UM4t&5[@);2Q[)}&+3Ƕ Nn@,1~.֗}zeK^drk̩1k[ý&ZVKXĴC=WvUNj PxiY@LR>f m>A  D_D|Y\.n4϶P72.(Qj>8r19 gV-7 1@b$zHӡFF2{, 鷁UH(K~uc% \ Z\@ e9X`{FQHGn=D hZʋl}6}:X(&h/]6 bgI &S'Ͳ}ui'89GPU)G`QtMKz|6(Z}U|cu1U&=WLV_kZ&W,FP_ O~P@1ZR&ީ6*'*W'uo= \):x IE؆KS zPnɃD!btE_HZ{PA`ߛ0ώQ?wuJ }ŧXTkM06 G ke@Vo/P~ nxf9FMyW}6 VE&nG>[2uTwDOXܶ<ˁ@- IXļ*xDFko'+UnϭgfC#6w 18ӡkN}YI ^J |=жo%Ѓ,}M݆UEr jjG+ fEov3۱d^tX),=k|w]J)sM0<8TYKʙʈ5 mdQ:35,HS[; Tad8]ᝰu8qe=aLx\t ЖRՐmtKg=pZ] LE ,ƞ@u]?=tqilw֙D3t̕SH26kJ2RseY(;-^sOEaY\rVf!񬏲 ZK] 4 _LG@Fgףjfu ̲ ] HYƐ޿-="iB6r |GcWq"?q4SNtEe4iSoMڵ,!s5^asQw[}6ԌB 2IiwzV򢮠b,%Di{ 2TfV;%CZh6Y,Pso·D 9%Dx Ixgv HFv9u{oqĦtc>y`'" WnED 6FO{4ԖHEK h]pRN7$ L5ÛG|IP%&8|b)3L_ĕ2$!=" ?ءagdA[>@@;+"on=- "' 5߉ͯWy335EF˅p Y 1ZAwZ|\ѬF[I:cr^~S"JSҷ1+8=!x&ުcZqCJ#M7>|VR@+S4 ܫ=L\Ս7K\H][̋3,j~T+=_"J#[fMm lI@lvj2@OG;ꖟ-臭Nq8ә?ot$~}9Xh Ů51p{fi36C9e e(s<`ETe˥ݛnSY L(%~Ҁpu<76tQ4QEˁƲw9xz3JAΙEtWBܿӎ\F3fO>@M}Ozl ح/ASuKg0͆_E%EaV H%VUu ڱ%2|bKDLYVޙ] j&Cbs,O|z o-xsPKS(x?&WMeHEϻtk8g,,j`I tvHǾz{̪yNyS`_DgƎ,4x}. o $LT8ܜ -EVRc\TQB{n@/ᶸu ﰩ"W93v4v2ȴ\ sD!d?-XUlĦz]DmpUS<JQp|'3pܴ\57 t&,uT4_$͂,Ofۀyی^I.){N)$ 06:|6ٮ`N7M*;^B42Q\U*v꺐!~=Hb$"sKC#\c7ek<#,3=H' ߘeAhc"ׄ*~"9y2CYa¨MG^Y[Bcct(\& m'U؀܋v:xX@4N,| e.rL04U]2T3)YPcdT%.}m%@ߌ+CX3QghD4fL`I?S*|z*5@Oy]ԖQAFrÃꏝ30qfK(Hi0*M赺Žr$)[DR“#pTq& vkiM;҆rUWsk ;ړ *`фhQ`I|g- v0Tb] ^"?Sѐ_1&l"w~g-g7O` _qXµh߈`HԎ(5mD X7 "e%}y#Or7^'1Z  .lFl;6C45膒&|ӑ\0v}Pq0ۆ.oIXWIMQ`.}+:1Д$ ?spk^Op"??q*ر3/Ej, UnR!ɼoRmfC<[v fGv-dDB), 5n0= (t3z!#UOX=}#nǛ{P9R5 plȴM?܅7 T(ĞQ2ѱqz^< Dt?RlQՍ&z9U?{Eas<<r6ƀ5WP }+&՗=CHzNmRTڔz& ~gJ_(f' ,Y)5f`4!Ċ)t hH(SLp0~Mj^L}45N,0:Q@qʀˑXhS{LqVJȘȵ yc L`" < 'v$\z= W6tkK4Wڝ81qJڠ`ma\tRdOץrS##?<&qAK]1<@{g{卾/L FY!ѣĂopގJ{%sWԊm8f~Y b5ʿ0} .KaD?/! ǹ}#Բ" -;4j5Im[86?pvI&K{jxSgp}?`qm-U$ .."2@Tu :!+nX$M.6Sd:oK( p%k @˭LFeޛO~)zІ%,Lt:> [{YSfsP^5&G ZIGaԦO%3\f.2/"ނo jzc rt}Y_yrc&7/@^<'wkUTnMX qfNXuƐ4Q$ cyHJU}MbG7]m\i3E^u-UVV1hӊxLʓJe-X+\KT&]jW\o0[9`ز{,LBC?eQ8 ^i}b:B;]:( >"Jva sc8ĻFUvZwjĻ/:u.ֶ;g'^Ǻ?9$2F8sUVz(Vӱ}@ycX0T z3'MI1sZXyK>L}1U+@2\x PmoX^R3ߔX&wȯa"d_iOvfyYRyߴ[-0U*(za4gvZsx ]7?78iQ}0>}f_oY&Y^EpHh)i:1#gGUo1?Ž!W rQKWFN9hLFms%^(lBO`1ToXY+sUrP&_%`ssi~jjZtD :ftL64Gؒu/Z )1K~X"⏞:2W0Y*狭 t_U_)v)eY) Gb{&$+L"clz=zs".pguhYMj{77Zn%ڵŘ}pEZg2 IբjCO(;4) wCt_GE mEco"TB”ttcS2&F 0,z#ꝝ(x,d+3%ܔevEqh{#Z9s ]磘ZoI>m]%f|Ս+5Ł%zחd>I'DaSޭً-&(gqȮP) U{ &k CFxql6:؈y)C{:℃uM37wdA!VQjF_)Vu6h0laϸiYpnDQ2-z"9-rxda0C@e.|I@ho梷ͼ}>]<*=%t~BebIVٚ:GA TQJ|.p1Jp5vѸ##O>θ߹X,&GY6n<:cif^~Q(&[7x+xue q<@ܕ=~"*?&fw["*8ϊFR:4 7ow v fpX6#IDN%wҼ+rdzVmSzG4<UF@ff]݊ [} |cIk,e"D9ˇLLG@bO"tgIGus!,(=Qzvj٠2ߐ>DW2ۦ-|*I>]s`ppg.(_|bUClc0 \,fFW=dηQmw6FD@h)58tLMgIis{ ,v~_m`u9@,|hdct)ABț)8؅)?WL''`bR{O4zcŜU(r-%ngT_(#<хj tI˔ǿCy^ +(h˰ =C4'㥋c6lJ4r{|a' K`kL/SYf6#G#j>u^]DcFֳA+FkGC؍~r:GX 5mǹ;ҳl%qu"ھLe^ BO.̓?݀i-"TJ0(g6U\Z,_#(;%mrLT.+4 ]Q{ R%cXq\02A! 9.P-.݄YrSJ_ UxzyǨ~lukqş:ZtA.xmVL35p񝲌`ct1̟XeDPCQ2Fx$t;8.Iyšfn')Qvߴv'5Y0r"?q"GEqx+FYEO'}+ǟSw*f7I#? \5TS96.FʐtG'UAp/.  ?|̬ҹD A>F.ܥ`frPkb{=C-q~pfI4,kFlYLY;gD*=!tNb0̠r&_mYw(;'~s=6>"{~(P4 7~ԉ! I%%E.gGHUWbGtVb\b۹j$1\2g+l Ff<`Oa-20<pq!8MHlII܌FZj*be'|<Y*`$Rk P==+ WG^>C ej) XmH4 K 9L m64<>F &ERt_O})eB5nbUbv2~V LE +#i,,*acĻTGwnYٕhlOo W_ui2X-Ȁ윷N󿎫t1]Ga |>I\|ԞAwcˮJnu}.QN3'x!#" (]wZ|+n.|ҷ.?n6 ǥ[5#:Z|)?Qwژ78Y%P}~ E;Nˋofj 7 ҭy0 :p'k&nӑb;"јyeuUm5`vl5޵M ->u`Mϩd?}E6K}i+-}eIJWv ʤK1C犜X]ibvR48,j=h2X_@&32)'K1[悅e|?.}?]9x $_ fqڬ'f#Xan*TFc2-p|kE픛zM}ӔGYi=vh;ǡ"7 5#i~Bm.#U_Jʵ*|: Q7[,WM{5J/E, G b!P^x}5bSE?rH2c194-˺eUq{Ѩ Y5%T-Yεe]v |7~LC! xuYW&FNPI+ϹN(SX)zBv^]C2+Dv&#yFfX7SQvi__ <tgi:ym_U5dol!m;ߚ!&^4aLڵ'z:r5FPݒC1d*x`=wgT`,JߢCp`9IqO $EX*9ʪC)@5)./wt\/[,gHTRt6mHe 'b@}l7oT g.,2s32 JcapCã{{@`p.sG ~"pc9[1wOk}偫 +U7T3Od4CK\4zC wTjЁ[x iɿfpx8Ҷ?hS8M"ЀlUگ/[Y=)ڙ>Oŀ'NJ)?X'IJ\,F#trQ6WJᑺukzVA!a40{l,X>~6MiƂ}F#Zͽ /P yȴ#Lkq3xp@٣2R8|\s ~qySQ$2ʻV([<=QY1;hQr䂑uw#MÆ$$Ҩ_ږi=ʊ݊oϗ9r*Qg]T`cߝf^_/Gg@ZT~F[hF[yUZ{8J^Dn' ^a^%A2IZN|:LutiƯ'+}% dRŷf>Ke1Ja.)3s35a'q׎zCt߮s{v? tѦC%2۱?ホ7_8yXK4UCyx10N% fl皺QQ$VQ2;G4iAsq,*D陭m:ۅxʰ< fݪ)v.k1g9Ud1 d#@R9!նJ(*qȁlΟrk(*:D}ԛr/ec`Q9^TE;T_Xyб'D?cY1a?l \#ZW o⯍B|hb{iY% bIm:Y#f_Ed ϭR{q+pf‘,2T]s0Di>ly)s_=#ɶPyĒL oWNd7k4W/K/@78Wvxgeg}ЃQ6 AtE9!3sCgNO"ԓY ˗_$c87 W`^g85Mlb 4P-Lܰһu{a ] 1PC" Ik1Μt@os~ޗ'0U L[/Q+J di0Z28hܕ&_XYJ~\ӾH'qiRD3Pg5Bj)$845iv6 [t9 FǥP8.*ɧo]3)' *UkV 2= c~W^RSinǠo j+Ԑ#e+oF [c6->VAqH)0ccT Я[Ѱ-k/ۅcnӂQR==dq\,Z'PCEcA<4tOk2t¼ 6-SZ#Uvde<'*#M!€F5&Z]YLx"7dϖq,MXKc>Ӽ7`TMno׈iKS@kexiO;d,/B#q>"lu}sٹډyVO$sJV3BQNȇ3Ǯ,t'w-1Jk7]bR'_IڠCJ^_.XjcJ6U'a(HEw42Ƈg=C̜OBFq^+ M>\<%w4]a0H-E%^< L"ɰ'Tj&Cg;b'vO#q:E'V\SgBڞ2Q2 zwF3PkSx_ЍLS2|TvUZApqZE=|*ply%oX"x(/C}fsJI!!S'G.Y B!~*3i8}3re2Zs`3^ 83 y*Y!'!div Z7O;p]yshNl$'ǀ5H^@3L!I>keijh%-L4?OLqM#389Y DZf7F_MYGr5?D C) =m*}\ߏ7(Xa9p{s#֖RERj.&!(CxH7n$PcA%Ҹ:`K>M' *{Q_e0kEwI*Nna?QÌ`0:[ *Yl[6=$9'N'4ؖU]oPD +-x"9-[Sk֘$NݹFW㣭yB+jn_JŐ)$e$n#!,.xy@RRaiܨõ;!]izN42Y'AqXPWrT)% EUFѴԆ8mf\J9#ϡZ20(!&p5_ד'}DOI{q7DInYlu֭Sa?B1&`ϟ _eŁH%ԉ74M"s*4Mc<^?Qc7=`1:>enKy4 n#lt2{r92G8+F/B ҜZbZp"j8Wb4=$kR钢2D  }o)1z_h'ѩ`w#/(GVέ4_DZb Г!oPheNydlz].{:Nd)d9< ˡVýfl7 ^oގ?:`̸ 2rѦ,+D6f:ڋ8ɩdzJ׼?Ul|ҕ&ÿT_{M};,2E\RmmL:ec&dfǙJ%)0IdL}JWsNUT* U]d.R''Ds!ar:. 2#hܪa i =bR}AQOe H#"J]N^ 8x5sMQBqK @ztHW:Vuov v/bvУE! sץ7,Y{mP}) ӮD.n# r  ]jb_%k#ƦH^ fYJ0jzl%o8n+|~_ L;d0+\JmJ {keAѸÌYi Ocgc;ľz9TW=yH/#& so6\|=WҟIBЈ 5hkjgn =JcWr'1+_}[8 $UJCKb~caCf (yvrqZ O $gj.}ΕAEߙjx -\eƯCeb~{o8uբ#L!.ܼcK%,݅9]64ޤٜ]~^Ja,iQ9ĹpRRQ`'z4j-%]f,2MeS3xi:B7'CʠF_xkZ ~q)I~Ewl&$#Պ)P<4>NC*Bz񈼄 T}Yàܱ[v܆?U?hӖueæarl2Htj-HzZT+0X, HJu_!6<ǣ˔Bز6y\K<&ƺQ Fܲ%}2 Fs-Kw O8`EBQXA|&V:Q/a.7'v&菐!A0{) P}drIo k;3|%` o1(˄1Rmed:4E9jdY1e> SER]B<^B.rRa\wH0•8jKJ_vOaoJB^>W0J 0[8{Eª~gZ&{/;t!XjGϴ􁝠s%zo_ܣV)#"Dʚ֕͂f;B p$SHηu9w,|!9_3i:OAщk]$Knk.H7/U 9vLinH_E;[ҏ!H 䑭x`V>,n3y]r IuoB9#EᅵUO H)3WS~kdx,[BU֎e ¸<ѯM}}_)XbrZɏ[ڍ|s*gidgJg[OpqoMGpRi 贏LXG3# liXo-s,%8hM.F vvH<"L^/.ΎJ7#ǘT։fNi$A}-nTD(ҹXQI/'0w~ D]%{w| ?:@o]֛;*%9?N%e[ Jf#)#8خ!Ȝ_hp|) 'w3o`}4d"$3Jb//T@# xהwY)7i,q*Lnݏ@q 5ATB\6~IE04tB fOP|R"/\_p싹av|oz("^nFl%Doуч2fp!yP'TKSGkfQ k/?T컅UjL.Br1[<pϐ}S-X0 YG-Vu7\5=Z@ʟG:r%[FCJyu#wՒK=3ok)ݪㅵ-%(n/+a0" nB ch@kWXi |zO69HcޚjBKOJDlş5~78RɃ^3жժzt>szBC]"#H f`qS5ܚ$c}zVŸ4)jYBNG:W gHi)Cn\F-*n/eG׽t|Im$N bEDr*h%7bVKJrR&;H89/5fX[-Ze:ŀ83՟ksur X{+!GN5bd4ERT[$ɶG7hICrY=wUEr[|H*r'"4"͹u(^@ ʯQrzrl&tժi@a߽®qFk4tr*締6 SxXl:JT aќg f2Ѧ ,Y L|üIZӦ0ʗ"@B"X&Į(P]35:A(yy5u+w_󝆬q r+6'?D8MPէ EpHMT " ʠ%+X1d{nҕ1Lv,C~*3+rN,"i % 9\RKMik⮼)WX~eZ8y2[oXg .] uZZ fjbՕ)~-T (㼼2G{U,c%jE~gxmڰBP T74pJRACɪqSv&8EO1l2~pѭy[ [OQ0NC+ccvm%wo!\)Sxw@4bKFӥQZTIW ^\fQԚyEy| ]J.1%]Yi\k~p؎{73[nwʄΝX)ԋ:vB]V-qJ%@9Gy8ܗй]Kpiч ]!;B So{ XaX5 ቩ5/.bFq6jg50pHъG`qpE\ܢh9_h )8X Wg<UB:B)*8̉k!fa Tb/YXp@E[ fq|q3D\Vx"p ٟ yAm'4Aj!0'y3 =鈉NEQ37!xag-Ҽr3aT-j,9S6B,^o!#§ɹ̈4Ocr-qs9NT_lbtҬL FeV't$*jz[Ϗ}C0.)K9TOKhKH?}Pb\XN 8H|SnC6`C2#[O;46ΟyI# H`Vz׆ pte͖4j7l%: ˫swI/hkwT,uc*[P`f䦧 av DMȬ:SϢٍVzXX/9mi3y|W fZQ"v@n64ZNn-nI.6Y|6ZCD%ß!-lft BI{fA\>Jz#>i !vEP gk0# 4\ĸޠS9%S)gݱI$Uл)S|:J4噃TBq͠l QkTu6 (QiuC>z"oSlHG7bҚHx:Yl+ͫ ktX2,ڣjOTexGIV\7We;i i6|kR <5틩ⱖꨩblg_hɁw[SOZN`A0Z#9P+DCCZ 3ؒ*4uΩ`H33CR~Ԣ ,,^DFi''/4%GP/Nʫ K|a`6ȼCcUn>ga/cg¤V?aFۊnDYٯ G< PTictiu|I:O;I\X.#WL*qKSC',&7"œ;(&r@T ]Zk(ߵ.q!CrvaVUmCgMhWvu3eoHTi"~ XR vլrv#ρn&LS^] ̏ܡ qAC޷엚l9o(8( Vʔ7g֝1;Fx$$'YNZ8941I@9!}ٕ=Qʻj,8 B0ҜΪyHdɨ?>(I<џFS<7c¼e4:kkiAriLU i;b^?J;{L,:Mf(`\DŽT$FN' 籥N~]LIs2RB\k%QͰ rC #$w)КA+ -r߼I]5nly^(HyK ]"sPanС"oCDtk`0+ܮrR}; P_gR]iSgEQ ܮg>JCn4a0L0. fJ4E(ڼf~}q]6{VKiIvRs˯rh~ٗC]{. 'bT#NEZ=Y k*WS!K5Ey\P[@v5|ok^] <m%E;ϔD$ *|ˡ_/FXs{$*ta\O ¨3.XY#m`:ЮkTO?x|YƸ)BȹvY}90el4g fewҘT# AJ-KxDn9$AqٷA%%mzݸe#0ds>z?LPCk7 7AF_Aslҟ\",ow-%Ca4h|FgfrftOC'7G#J8ںh#`so;@'rX.om?BrKH:jϣ (z¿8Z`e~}!%cVP zz>~6,eC je7&^|;ilTPn T} ]gЂeDƴDSBH=K)C8)Tf~!\wc-׎CӐ #\ZM܎sS'=`=:ׅ] B-k_7f";NO4ZkaPs[7俐̅.g@Ŭ 29[ I9 8v)&8cӝQ~$A 3/pgi1 Gx,7\" x(#*|{_ePu$&G?e;Y^VZ+9=X6%R2(r9{Uݾk"b7"sX|^m ^d=i\sIRGox_~_ Ȅa]yGj C #m10\{[$;tlLެD$LSGNS+zdn54*Yt}gqx<%!#t6\$wNsYԆt etjzU:`XwHy|%mh{T >*5'<3(BM2'(,jo!,[w1LKwT톋+'q,"0=gkŮc"}kOZH \/`6e\8(@yR5:JO'Q( &3Tfi @ 2-Ӈp:*q0 Й$=fZxՀtgDw;R  IbT: ˀ &88m%j܀+H"3l1XՄV5Ʒ,>S~W[ҺrJd|/mArcFja  =u304Vu2'*0f.[v3_u%bSㆱߧt-=\L؃"OxS+E 0EiB[e" mc /Ce8R -#TRFi^$Nє9zhpAY`1S_V{lTMC^.䓻)d~B Z嘪\{mfE0hfτ6)+6m,:e"AQ졇 oYu2g_e,&gXǦVkߦQƒV4(>pqu͵;%kd@y1ӥ/ab  sY8e0 97uA93  v[ &+:QQaLoy,wc ' -nfWdoAέcJHm"`Fzr6R rUHݍIn3q/_ UZ߻Z$Fu/*;Q\` !c^y#Oj_棨CK1FnĎ40QBbI04ҞiJy2Qa-xg'<<^Ϊ4j w'brQ-~μYŮ>bFÎM/zϳorA!|x;:~=VobS5 ȍEB8ٮLlUXݿ%AN"hjU 6ߌE(j<@1KxnܰC;mz;Aw:\WicCJ*6¿a{At\"A)wҗXҞD|;)}fER(*x++,/gNEG%}⼫wB$Ez%{k.УQ͢<l "-RM+CZxe:P٤5+7:Jw.E Wf9O@c-ye`VjҬoR`NQV$/&42:Fpԅ/c̹NR/-%z@Yζ4[-Ҭі C1ek焥Ml HK!2SPYYFXI3N5Gߠ^C-~F욠k2M@ 'HasFN˗R5k ssnxu8 W)\ 6:`g_QBB~jIX5 ( g-4ed!aC.@W@͉ȞYZR Q|ݍ:b Lɟ88STZKdXGh~[P[|2/oʗLvԎC-i 賶(ϜLY )nkz7b&OOS.r_z 7{eW?w 4"C@#C5Z S(%G 'a/ \}4Hq6#AfKdx[\G}iW jsE3FzT:p`! ~y61C&L?ym`4k[*9 =rx#]aF"-z ҳS~]![\rE0xyz-liY]TN$.?{cL\A#3~AkB%ý Ƶ8tJV(Gm.zރۧi釢UpBnOL ]U/?YdARr}Tr-Ω* Aot\BsXVfnPQhb8c= ҏcލ%>~ԵGxiy UR]u'k+$ _R]Y} lZWTRZn)Ix˪2(&k ɃA&>h'v~``ûrI0b2BbP>R$_u't@;!q.V qXC$lu)=Hd%p2uWͱKŸf]yv㍐,bu|dB ÛWfHqzJ}lI&bɻ%|HT.?ՁP"ɪ"=֜96\~=V+5)(f@Z<}.4b<`~@J(exS uK_c@ZȤmӪt [A W¥n^~U]ZKi6TGz?Q%oI:_}PHJ-uC*qV=%.-ޯ0Qs2Dc-wVJPu d M6 r)\֧᥈3K]1tWˠf 5̥ g!aǠm@^ $,>i L3G8g¶V>Օ(=UV r%1~8n)iW2o_6[@bls`݈ YqD5\z5`qfͫJk-P4 XCv ?TP-m+IYhW7*r*;܃3aLŸ>v+$e?,8 *TP|ig_B[׳׫-}ljU )%QV!s ctc*)8.Gw"I/ mޤ~CYf7r”7e?2~ (|LT݅B?nCC]_Lj2NzA"'lRI|7_\,G&|'o5}J2LU.PNAHgUzZaߌ@A:L2QD].!8q)DރWznOd3 \}?&G|ˍL bZw\]* Q#U2ú SE$޻D6!L'UPp 'si阦LU]U @a7Aͭ-n؞LMp0S<;jV#<-I^-sRΧx~^>VS"X"!uGǰV}<)ivG0 +r?=8Х#BVFT(8Y[YCX hA jXO&rh7hs[/l~Sav>Xؒ+Vay*"ҴKVAxV)Sz̮@=*BWƦ.L=~-Vj$ߤ|6&j}ˀ(Q!$ҘxYLosl7,r'ΰ#T;k.H|-R X8g)Ĥ6*WQ8٭}.` 6K&1r D,I7@tڅͺC?wH ~0lPӉ}A#`K5wuArQ,;sn53'Z>J7l7T 1>؟9JHɲDdW5{T`n߼J@ E  V6룠Mږ6M$<6^ʷ49',#!Eb$뮍{7,:9֬0$vrt_&٠z>k:,I8Q+^! )e+/\ F)X$6v< }Nh׬qƅnXZ Np x]7 ml=_B?HIԔ1ay1i|^?tHo;a ,b(ޒ0m}4.Q}">5Xxѵv!نeAig@8J/Bdiy-7a~ŁS~웻CrRLnO 2қn:J \Wp[n#Əi|r30Ђx$V Z-0+ Ras?I?K;ʭ L~k=0fMHFO`>_jf;~FUOgW">zXRBLJIxaKȶ ;[+q`KB\9ޣ"u.iԉ}U6Üw zҦ:k@E{[TyA+k7Vp;u4ѾrܵӏVuzhK`MyS/N,#x;cšaaJՔ)m>K%,cq53`%D:Ys::I={Q(~BIvOoGAS3XtFكzF`=@H'zy 3f,z8kv* ɡƘ1uwVTY8^ܴFj˂43Xxb"V3tV8?Acki:&`[.}7žO;CܯfJq6mkix=ktEųj}qEU-t+`5qpae`ˣ?"tO?cc>y0t4Ur1V % ;)Q|DRe&zl %ŝnEôs{)#OYC( q0[H3$SdGim>A 1R7'p;r@[@ޗ zA&-}rNP?w+N[,K$Vc*IMAt ,s\kHE2Wz'5O)fCķ7!|V S_ :k 5H16n5sxUִrʕ둁[B0" ᩃaUF!s +IWO7^x^f X=aaBأWo /e{T* +H-.[FG+LcQ]k0.N-O1b΀IͶ 8RTk(qZ(\"n;ɬ)dkXkm,nF6 ;gv8n#}Яe5w*K4ZNNVոQJPVpRC !v,2`fgƓGT3*sdT]\SSzJmϱn&P,kkSxa  2DyϙNuoÜ‘5] %ީd4xus-wMWL"4<$#kS$.+Qǘ;W(j#’>I]Us/vaQEm]g4ȔD0_3`KPʻ0NIx=;9V0bAzEX'D==jz,](xGRV(Օg\BoP/b>IJwq?qvKli oL+ovW6-zAI:TQʆԣGC:M`ηH&Q/x’)(n׷ݖ.NYnf` c3'@Can"֥ 'JX(EDZSfA$tlWq07g`!*ifn"n[d*956 cZOEmWE)kl>љTNLW'b6?(bA]I5'c7,g7"~3Xq&'Z/3{H?T;5}Q,_ K3mkːŚQ-{̗</睏F8X CWJbUFw kG@S'qJ^Mӵ,R@&1~jRtYKâXF,P]n"ߐeC&9Pˉ֓/p(#v{G4'Xڢvdܖt(-GlP*ȺuK }tlAƃQb&N3oFPUW\67;-_Pl{x$O_D!!^~2<A'=?~7$1lhn*Vֆ&$W<{^]_W92P b _`K'yuCV|֚C`H#w>.k5 w܀].tYEIbʊ7[ \9?=zj%CPsF;#-W!6u!1ؐ(ՇIR@U BO(5ZDĿ~"ƫ-@̝vLJT G~&1ϟ5#(nsO^BF Ds!rTbJc3'! A}$29I>]8Żdp$TNoXQ{h $g^80T2NNԾiϨAt^_}d'U&}I5#EF?#iR3"D)l0)9{)OahV p Iid@`G_Di$ZPL8@/.ap={tjN=0뒤,SSgkKNydD>x .r5cJXLv(n"E$h/uZQ CCA'ovyt7S@`aNom#OjF>j);9]$" &I=`":g#W> 4VN_S~!/DY8OUmM}l`nB=[Lޯ4s{a[0%QjAdT| HqzUg՟3^*9 kb(˾uqIv/TcLsgɹ㨑a˺u=oϤv6JYu$Ô"|?'ʬ,ǬyJBչ(@+*6o52!m %75à q,/*,1O NRrEQʛP34'$av">kyrk/ 6IB!Qơ CA:55Dˋ@w lxf1%QMG˹)v8%hEJ86Fuְ H 듢F֥ o&jQB=rKnTDZ| zIm:u V/"FPXz_tQ 8~7 JS]n\_b3bAKHy m-'`, mZ /KA+rEr1#Q`']͠L&R>] Hv)uLb W{FJ 8YeJDp bAC c5 Trym/lqsb&LC?(v 5b~`a"/EZs:. .Fij~U"In0$SA7-E(PɞdkCƃ΢I`rlʍTZ1vEv4"?ωG@ A:ˈnE7ӂ/HȦJ &t mUyS&v %Z8v&gWܯo JUTȓ'l@1):bpk#؛nVE`ŃmyjחGw2a#םjYvv_ 5 ZicC9YDF ʖ\ב ' x1D3)R(ٶ(F0qB8Eze.krw#޽^~?r:8OΏ*il(,LN-+O0% MgG^`̨KcO<~1(=J@HV(TMZTo_68cbe7*<4-!W4{">D䡲v55쬳pxe;4>ޗC @{sޝDL>)!Fti:w Ȭb4j#[*,,ԤK̯;l/yx;}'55&FS0 n> e܎~ j-A!wWRq?XFZGgPݰFocv;60>iB+~ ȥbPx2ycJ$kMάs'ZHИRO#k\1_(3;FXbѐp,C&ސqvU{-;n}//]>8az#50v279L3hsB }Nhdj%h ϧv-K{iĩkCdyٟmKhdTmncZQ>ARۇc"XI36 "E%-Zi1K}c1JFzJYfhרN8~(J2wM %=_E?#UY?GPԃ Ss%cg>,,p@ dX 5}SY{jYC70,;)[z̰yO"2-l 6hFsuqjF,h[PʭB퐋|w<g En f$ Y>ƞ)XZ9F|NXX¸H*DfrlS=(ץM7bdB~ZQ_]s rҦ}q$;·ɠ| }\y_kBWrŃT?]uGi/pA)! o\(+NC/;bK=YQdO"s1&vY:ܐꈷ@et;C>r="p-pL9l>YK80=k !Ȯ ِl:_Ġ:?\CR3L\Un§ 4hi4~w<SW+eN~ ;p˛A, >-;S"c[L| 6I.Ĝ56sxo+ GoSQm@hmBUO諪O&6S!,oB]Q1kJ#;{NTnPc4b N0#DEK߁vCuF{Gk>fJw=SaƲEha򳲟s/k1l9nEIT9$F8#`Mf79sAx~3YN|R\HQ4%lFC#bd(aT/\L]NECjSJ$uLiCFxZ=ި^#zaUYJ -'>1 9 v#,T\uʅ_*.+FֲlCvGmPaQ d #p>F:u]ae +V+Z6`ltԊG'xx.t"qrt/fg~S}8D!K@NzvPI@SN]XNvDoۓgN#?Zqiu4^ᛵ5Yc,Cɮ [Пmg2{IlOI`.t sͶ=Wa`Sgj[ l+h`i*(sڵN;Kϊ\ţ-kM6c6QW&c @KXw"zb1 :Q+.ʅ};Bq<t./aXVwb+lZ Xf搮iX`JјļҘڃhtIߐ4d\bm:>1x+ooiVin.6giןM]< Зߣ8<'dۖSn@\j/:ƿ&JM V:JDyN0,s<+p=J@`Z)֓)\"8Hk?WƐSl"ܱsXyO rt=6)덒|F (b\bU‚Tu|rZpݖ֖+Y.1؋zyZPP9Qc<b`pLRғG^QY E`)Y&PQ TVl]%$6N1+r1;=d`v\ o`1Z~. VC׶@Zzgm%[(ڹl1獛LT-IsSGPS1QT$ܨ r8aSp&VneP>;ذ<þS|ziHt8Vdnh3 8;g;dLfA+zy2E; w]ڢ\+t9zJZ!J9qVg wW:22}{Н%vc)?r_rj_rY52bΟJ%A29)g%HQ RŸQ&f,nApas]0t `S#f]wi3]$Y$s)ǣ60 bl0ky7Ւ6y\Y%]_1Gr7׶ *4MWla_^ϳ^uq@LMW$TMwNBt/K/$J; 2| 8AoNSa[ nlÁf8: CG9fgP-}C2%F>oZ.=EiZ se5[,8~2nv9k0X@f?8k<ìB~sWjVRoZAE'nI=KPQn~׀#Ҧuxl[F/ɷp'5 eh*EU`d1ǜe͎[RUs | 3%̳iJkB~tUKP˷sOinρ%m@aƦ]$oZ?bղnO8K&>1djd˪-b' BGu0HI`f UW9 :n*ruBB[ ;C.IkہLP..t~lM\!qݤfm\{ @3wIo<0DVI9%6.PxqN#,XDO66鍌eHD\0Ycͅ~p;\9mSo \s`4UC3̵J˜c#]+3Pws&lf f##eWڠO)b\a^ga y5T6_6zh46x7^"0x0YBq юGyo<0!Bn?ەF}|FU%ˬw"|o%R; 7MJ ;^*]\|2ׇD +Y v&7+oi!\"aJB@)ٖȝK|*]S.N^Qn9SB/G{<)(O~ݝk zS4BzRTv~'V?"W'SSlg@Z:{/Gi]KY&H\]MyJ?&E@~V k0չGiHcqJ-$+[[xt<@br- /8cy)5>Ÿnkzw,.ccSUjw[9R'pT,{:3ݞ1Uz&1u4Ij? Rr6=Kz Q5l]O^`e>kU%3fБ%/H9[Pobuk!X90n|É \W:^2 %JpN 2Ȫ1,2' {Ҝy(Sd563>wbIoGF%V=}Jw@CWHZvv4+: KFpdReu=U/35Dx0ZnP\ #UVgUSn-+vŸ|OyE@%5S.Fc/ƟзRwRo,_=;HZ\L@p&ѥnU|J!bVb(RFMY4JSHz:Jǫ?u"Bwo4|s9C %鍎VJ򑑸s(DR1ϭXGZ' '>'//R%\B td0ޓPxϬ Kԍ-ӟܷJK\R4>&nؗHլ49pyD/tB|'n3k 4 yi^@=؉_Uo piO({o3[hN(#L4xhrQ:>֨s>g"PYQCOpϨ!dxmVT ZQy8>*IwÙ-_d:ä6_('[҈0ZpyoRtcZ{V7x+~z`APP$x oӈ%K EsOD"7{ K8u`Z˲DfQ!(K$ժ'`v6Fxtȶ\gȡ@B7Sto#aL+1`g)Wfㅕ#n9N q7N1ӱ܍4¼'k;?%2#v|ПLEo9wvpu/9 YkfKo>C5HBuiѫC/Wࠅ(h "~ }cNʹuFh4--cv |`^޸Y53^X vsthpNs1Ho. HJA}g lL@PDTf$ey!=҅ &( ۤ4hM#V_3ة%Ŀq3tu7/Cpϕ/V".擕R5,ka!h}K {XNZ*̳uWRy$h-K,9vg WюĈ o y'mtPoXzrT1ē,<`FE]j*zon~&y!NS7q3 dx1:d_9cY|nO'S[տEj<{1,ݟLO'2_`3Wh5PmzySHHjiqAĜ^uX WEcHdyzl\vU#dU n;ڋ7^]6+ W,5q#bӺ \k!\̻&Y Bq9c[P(+\E\NIiP/-(_ie˨ BQ5 ~K !i1<ұ3e㷱? GTߒ 0@цi9$;\)EY&!>y\,uuw4r6N㻋׹z.|9AU[_ Z}MG{לM$z*"iS݂DT';dLGj7e^?5>4#DEV{o0՟(Ȗ&Rn[ĭQ[BA ]?, ku]ycYd(ڥ6Yް1r0B kHܝW=OҵZ] ~Ǔk 6;'lwt~ؑuDLPn*<^^+.R]|ep m#X6L``]<=+tZ{XQΟhroF}@}>~Iu%&9043t&f<=",qi~_Sg^bh y샢߸@4I~ IF:{G2\qDPԍ>tUpjL {8,+u0XԝF IW$kPo nw,AVKw#8m7Ǡqw稩ن12j-v4SXPC"(Q^ƍM:WBA"b_ؾ$f>Vm „'9AM<"]Xݙq$dkejLZFʢ^,5ͣ53,3Xz"I }vx+i~dF,rbU~z+ދrM#T;"p=<Ч@aͶӘnnsAHL(D`pAnn|2W_ִq \Uc~Γrge>\ߔ @RaM&rSLĻZbH%"ydxN&8φHPO٩!d!G|?>US &])޺GE΀}LY AzJQW~Hn"Dt JY1-F|VI+?F'/,=3KۢI :8y~v~rJv顨]sNr,|2q{C8p}>j@?&TX+e,>B!b(xC2'd/@tm{_R(e`&IomT @ BjxSwTz]g%ގF 590~Z6V=YPCόM#Ò1Ċ}u?ϏmX>4E`M݌NaAGe\x| Q%9Vi|=}| 8ζ)RiHdKVd&D&;Uxoނ6eI`,PåbvvX⑙$~Fە9MDc9%$-6'e$< ؾ"" S(~&zܧLAG8Pp\)cFExŁ\5xs߄> fÊVp$, +T5w *^>z;v2"mS$߼@˪^d1*5GOg@Qx۠Y=9ښB1剻&2rxuQw 7\=4&Q y?Є~ t43~QudU&\ 火oyuN%+-n`54MrdF4FSWj k@B"  -cO0ɩO35?6~~rPiϖBj;`~Sw3 31xi sOxՓ"~=f0zӆ&\t3zmKz=X\J9w" wUoKʃodD8R1ڮ0ҵ/p$h"cq~\W/m<3r=~`/<, Tgç +2 jz3gh^#$k Iu,:8&E!m+?!xۓ>B }ʘ*0[R[Vrӵ R2 aMZ5d,PG!fw:=拺&%]> 8׮'BY!ֶQc3*cE#XoFmRjI%-&]ȉKjˋ!M-ࣺr>Fzk1n?j%tub`Q , wd֫8bu&3qiPX_-WaDꃉT~ZPw7upBeɏ(b_k1r\9";]_<9N 1^,^7Jӌ&ٓ`3 9Bj~Y{r Iiah@6nkWKt'E6YCABk n]&E+ˎTz |%YN:]enH>k2Y{pv:o埐`V0Z%{0va|g2%8%MdfD0]ˆlˏeB^c3;[&C쵄:KZ zCK9\Hn7Ab5LS]yx`9&Qy6nڿ,vx)\q۽4 B>wJVe/闑1w((E>k\ʼn;Tb5d=5v;:Sto? |(E]Xǿ\ Qy IQN<- "@~" 5YB:|ӫ tꈝ]"4,MX9^͔Vk{,] T^ήL9Өh/ϳaK5*0w9 +^p"H9;T|xmhj7Oe6=.YT }P040U+f DepX`CmAn2T{Qڌ|m0O@K6*t(1A+4,wr&KIIt )ڀns5OF îL Զ[S;W|n TkO&k٨L9JpgVzSS#$ƀ>L5"k>-Ä́UDCFr?cgY+*. MRsIB-B-ؑ0ʮTX<յ6UAPMv-XFd~ 4xܷ ([uOAca<ʊ$~X7Hں'`SM!:PjG5hgP" ) ߋ[m9_{rͅSڙ\vU<]v Lנ<6Ww2M[`l1_GlF!&431{k00n-G*mUª=:g޿F]51„f[.vZkT]M:',sTR$YCKO_fs`)ߨJ`Dw&k7QЖ} %8ARjRS\D#<7ೞ7ǰd!tFƵ6D% &^r*tc\ ; 4̥H+dn?ac^8ldKz^Gp2GKC@ DtpGnC^ 6[*; B_΁Ns+kŔDm?KFi6~*;8 ٌ[.%ì 4J2{(Kg2 7WLxUg=>(`鄕ODЉcLjW㵆B pF׀BRɨ.ײ !*b b,PP̯C$,~X#M7GpvAH0`Hxp91 gyNqb"/(Q#eZ Bԧ>E~jH*Ip߷@Q"yow٪pF8Ug| 0#Ϟp'OSl,r=b2#pKSf˥!@H 2W֎pkBnk3S1K/Z Yp '`P,n]URsVsv5.yGGfv:;jgK]-X,^GQiʻv~5]ÄG, {Z8.SDA&d8p|_@۫#2KِC/W?p .R:U&u, Ď ilP@܅:W [*K`a9~ϓh|4 Mls؁T/Xz ||7ɲ9~ӴI䝄N`Mcp*_YH9$&e+Of2)(YgV&D𿶲o>u}3MV;, n0vVf7PWՠyPJ4 }<岺:si r BXtBiq% ־X?S[]R ́;$J{2G O97=:kkCSG L |F~?[06dPѨ5wn4AQ4:'27׻UEYd?k pbZ 5`!xJB lVꅹ E؏tqof9%.f!] HV%GZ٘rxGٻHvtm Y_zN7/+t@ ߈9y+PZn/ 4xLԝ`M.ݼw lUT}'E}y[˼x3b-:=a&-k%"4KYLQuYw"UVI,K#g~>sA۬rЏw^/a!O|db,(Fr~7DŽqPwqg B Vjh$E19_y?nh%9jܘTqSX<+@h]*zl_U4B~!dkL1`A{z`ť䡺q/Z[^^?>5wigxgK۫=12Y#l"(̱Lj0'nx$, AH"Q-SO$q;cSbK+J2u^6a1{{/_@e <[, }¾}9 @Z8N ?I RUN.GQXps84|!"me+9Qe ,zOK1 [ D)7hk_Cu8T个^ :#׻Xy=q#*TLXwxܭb)abcYe).ps LpYɒ31Vtxg #'Q00n\G7Uq;)Q%0#ʢX*֥ט5N;hP9{>_pe|4Lm01Av'C긳p1Z ,?gtf$6SՇ}e[2n,u a:*X xV͐QI.!@z6@aV߈o:1SoQvGoFm|$YPw w@o((Wgbګ饸򄞳p`ywtG+n7KviZuZNC~ᦢb'Aǿ%9qlɅziA,Y4$o\ݦɸGgb$CbPK>3`Н/jd 7 aJ7(ءDl(?$o. %OCAq;wB)K~eRDvިb =:ȣ9s>bbBmPȦb+sYVRx G860*CHq<⸼t-Rx=TIv3x[QvP%}αcwU r:sb@$6O~(28:~*]FDN:Wn^vg2z䜭R&S'rD5RLJiWo wFkl"5u; Ϫ|WG`[bg[x-23/|75Eי8UQ'˥h,#Ή"1sz Y?3fxrt)}zOB j@i^ k֙&甲2+;5XKϼ) I@U/ifRI.vXEV{S¯g*R$5ùu$O(^&ݺ˼su2 [c{ d8O-o{ǖ{,F8-SHV f؍%~=GgquspIb 􍵔b E"2|aAP8K/oIy}SMھgF{㺋Įiދ4DX9E$SlWfGxlv| ,Ғ q0^uv%?:䌅uuf7⡰$2a *` KuK|J@ߣ~MZp댷 }iUvt**?RoPcMV>+Mh {gy ./gEg+ȁ d4c';x(#$t>>b]tYv{9~']N]!`b nçe7ȿ!&ػ\d~5D4(K^g-*=QO7:i2w \M"Ĺ{ki ΦHuEn~;(3{Pð2B &.u?T cKw j"Zj`?cq(||j Zpk~k `h baEY~eO[FY [)9٭w!3$h9]LCeF]‘_f_KiЌ=WA3m5.$ҎAm(xQTZb8UFlp$橢 美9jYx:09/ T/PrMa*?0*.$vQ@ 'wH~yC5G0%#?V~ 6qDu hzO<%=W~Tb)-nedO/ErM&A6 tñuAȨ[ D".}7Di1|"W_6]ԍKת}vJP 7o2)[Dbߛʼn-;2 S.>|QUOỲ5l[葔lw^d3r9D!PA~nbbY9q;a"c=<'BK0cȆlibGkh@#ָ*nM SC{ u pE9;X8DOnaBu_a_b5m_:]nĕ j.YDk(4qɤU@NYGZ`|qx~_1(+KxkMJXf!*_:DI5^biJeBU&pm(s Q(;sƜyCR|k{ Κ%AAA 6p9rJQ#6Yc[Q$͂zӌ:Uh@Mnɚ ޡ>w@~<JOCvthv1)7!Ȕh7}?tJXNc Xp.'Q/h x84,0++ }2si6߀̻`i(\ht'O7\C)} غN8 oP"C?X~&ꈏ )u5m*R}w¤ !^GBZpD~pγbߜǮS}YIs{X{ĩ t^|RG*JBX*2I%QH=,"rbK3ڇ-ާ vR'hסz١ÊƸr2g+ubVwT =;- 9qa8<1:3:m@t^K.z3!-ʮb,IIy&juTMUTMTL+mo c)  F XTp7J?20$+щVIn*I2mc|ijJU鬭)ZOe/4!"+"ne{YHtњ%WW_uZ! d`3XRK[bKDi 6x}\Mcǹg6ӑ6huVu/x)[R׻2-1ۜ!S3*↦[ 9'{Hn賱Qc1#@߱ufãIo&7;ޱ3`dNol>٩ "ԋ.u3Syu Pӻ 3c9@4 ]tuucT3I$Gj&DPI(<30Ꭻsykҝ$sWt E{4pϤfL=^jPnj<Qa -`OC#bs)?X$xߛdI`T*aq2;F#8-,JzZvu}ķP|Kv&!G%RyݼR=4;5SR.@&3qE{/DfJ* #{YԇOxrn0c!\bɝАL'$V{&- k[Εzm>CZGTHg%}yֱWm0M'm ^yY'NFp#Biem`0O+[yRGw0?~@8f` ?-G :YyMHH4`z*A6}zJՠ۱3C1"cbz],N#5Kr'L>2Qq।ivة-hU Hg™f;s4=G*i\#^- Aq-gxQ~X|BoЀPWK*;ZSvBזiGf"02[oXB.beg YPMXη"Vo˫ S_39CBEжmFUl=7VT8Mź^g7o)u=ODN^BQGaLI,8̵oN}JM iXZ2y‰'pUp}w<xW VuƼP/ulp|HC0W:VҔg}M`(}L^Jޞ-y{=cׄR\(qkڗӗzU߽jSΈh#pYJ0n(=eIs~]G[)sGuYT f&pf|h߶iqZ冧 ͟R܋LP+c2w o NeZM_~=H?p?|p"cKVz# &3YTcrM371Cir ZjYutc9w0V[=>uxvlzyxN-R-iTAGCԤ?k $ƒ%}qC;:% ,u%oT4M,$%f4){ oH \(iSO8hPhwu|9[ .,6e ]rURoX՞ѐfs[2 C>eqBd W GΩV@:~2>뇘8o U0H!BUC{/͢kyTE^gÀ>TL+ϙի3E~geU ;G^L9 _Z s"eۊC'q<%FQ>L.)GsyRayi" $ S~~}k5FPA*LpXu<MWl .Bg`g&¾Ó؆@_rYt> aSESTq0 ¦d:9'g#{dd%9Ynf"7aS5(&29s]GIVJ5 SR#qvXn_^5@X"It;KvSBݸk#R(ݏP:,\v#E/k,(6"97AO)uPhv71r ä^C e^LVސ{\϶y=y{: -4qf_@(GQLkћ:*Fi~E?p^``BmYEL;\}ҠO?Qb</<s@ՆxKr#DnP yJ {= iw-c ;)հm5#0Z-nI䯪K pCd Yt_r<&ͺeJY|z/]hr Jx$;W ?qt+࢚Tp""у9ԳWF7ӈKḥ&딝p1e}u rksZ'rC1',.AL%w?YJX<Ț^0vbyAX o#3sUHADqTOc rbtUzke=QUNkV'AX<ގM QKo쾡N%ydo (wUA敂81{6[; 0_Fg`_A&zd :pV ؏`ǴNKP&Í065HW\`Z~C+uW8W*xB䱫Yp/{CRu!&z9zXs2qڣYVǸmOd{.3*wv"b"[&ḿ5alWe?s>>L)}7ݷfpOOWuP)k\ ~ @NafS![*'_R3By6ؾl^ I8'7ooB qk3nQ7gƒ5ZM'BGϫ|g] lwc*mC 3`ǑCl]rN n.%-<>2 K3#dxUV E6"o!TWrZh!i؅ywIig/CHث"ۮrkf`UӷC8fiuE|07%uK/Vv@*>u(Rk LҘD'Bn]n"(6|x_(|x$#-_T5HF1pP_R-߿mV|^ mSV/;N^kh1@Tv,ٲϦkmފl%**Cbϥf3_0ACB i T(2Tf,^ Y)w(} Dxw)%3RZު3q(*t l0d0qO&pS0Oef5DnD;Q?0a^=z!R B@൵^eU_iA=͒]]ϊ0!,#^4nbgRӔ-?6i9B͚O΋zE7PmPaB2Qn .G$i̖0{@/?6.A ,>X^BL-[j!<} 0.}a`]3֮J_UT"kCnY@ɸ;$V^}$/vҖ`c^>cΜ8GMs* yW}Vʎ B[ k~hMX鈃ǧ$ł'mr~vGԌ3Zv1QL4j"+OuV3b~^1?N'XOr\A}3܏P5|, 14_bs*O_6H[~3+]':(?6<԰<q^ImNShg493M¼ H@$ٹ.?NDt}UfAPrEU(4Ȕ5]RzWv)No`֠ww Qg 01TZdz(^̹\f&U].&5)\tyDȍ9r\!DqG̸!'!U2JvPQ H܎ |c@]~٭*yrJw/R%3=OcBgO>;({{^aXnp`pvhJQ5>/bxsu#=Sq2(hӂ%O߁qR '})f`ؚmGa#` 0@_?#O~]̠mCy7a1M4cIQH)W(̡3k{*JsXyLقKűPhZb0zgSgCWDp6apB?c154f!C%e{9IqЅ Ka]I`)YwsxQBSTȽk:U/$QNt8EvʎΧ@o*dK#`j@1/bkr3$"UP Njsp"adS^03-㱊|Hh ZUYN2z!)1mJ B*Lqyc_7:cGKOAuO&;D54ŻU h杋k}huL'Т`eFL١gN&`CZ۴ZaG3.X4a3aϙ.Rm Y6mUQ<|%M=)-4р,tuM1*^v32gCS{\-.|KQeh"T.tco %)AsAΐJa)wF uXmDA+즣]/9O,.6Xw8@isֶ2Ƀb^? %mQem1jn=VsUspCվ~,^BWƕ笲 o"\ J>ba tN'Mb2qߊO Hq/SU>k4A0V[e+lш%?xG83) `Kh:L[=C0YNs@o79+XMHw8U4,G73*i[ւb?)i'>f#t+f]&HGsa4t]L7`X*S L:P{~)3@e qK C6g:Z 8+8aN%9/++/WHUayUwկ?q𔃨5XE@Rۍ~ZB֪ M{b~A+ v̵Szr\לŔeXV%eSmQx>#C4.ؾ͗$uK} +1K1FqcɁq#3pɗVgI{Y=# ʊKC[ 4ӭ`,bo׿N lXZh֝:AѻU4 ָUJ C)vFQ7zx<B$Œs8EAo>'pB@nIR'ٛ80qq0E~/k+7f@@g=g/W}N@PѦIc*[gzC{ Jw2R%1לPXE::RDT*(h-K0%6N/W|:(Bh*ȌwM}ik^wv KwpOEEWUqΤ%1VbkC~ z+4 q@rwI\n1ypzxl(\?<9?׽8H+a$JNX5|}2ej 4d§C:{Owր1/CNZ˄9\Eɥ}$us0EP(p'q, `e:gjPqqbdYnAb̚cPCoy :+JS7 &B?3"xy0-{h=Nߒ^QZH߻Bsf3JAFq\?>66gSx8R}-@z/ຝ^bPpAV %Q7= ?Z@,z53B `n Q"? .~+S0rgqH]Ĉ|юa3PY:p8S( A}e ^\q3o1]ZGif3E&Rjy/@U|@{D~J+ut'.{tdj-v-9lDkloTeZ+#]x-&`?3N=b8[* bP>L /0Z9|s8O0hi  RP70΍# 뻲~Di+ /r%)OhE8 3VH/HXIpn0"QY:#]qΚpHeӭgabaSj,?:Fq-IͰ3*v*b[֨{UP`" |E~Іi--e;\DTOB_z{Au2~/;LB]`~Z%UCYnUuFj籸g$QwѧGU6)%zH.˯c ,n#W7;@d7sVrU2[mxuF @s] Dׄ}ǹ XP uc5%cm9^[Fs7  J~;EqP;ؗ;LjԎ ^ bպ2v|Rh>凍: Wz>"OV_'5or&Cə 2sM"4;g=!p3!-4yw̽(r4* &iA> z"q})e#'ٓƹDk*bG'y躭NLNݜw0W춹($F@ŗ, +TpDe$es=LHb6;]In½S@ ŌX*͚ 㧞F% ii5i+)ڗzFB#輪D@9m{Tc$[& wV;0(w׺CѢ V@kO'&#eM;*x8È ZX0%2= \&eMhvJ Y]IKcɉEd#\c\z@Ir'BML>Vz3>-j#(?CgTnurjHڕ/H4«&p>A犹 9܋AF'j__Zޯ%8i93JljV>5 yDrv+ND_(/GY}ܟ\+Z+'[pP)oϐ{ozwQ٘W'F * X~ח$r:Ct,qw<#HjRsl>WGtй[bKVKp@MOO|kx-q\zlY@JzaJҡR˭k ޯ{'Wud џ3 ՕoN~B~pPMtܘIךui\]ea;?L j5Y@;|/JE&r,})kʅ3ni{T@+ 9ZʪP4)n?7fBui/&%q{3T坔w ".jrުdhgGч4gw_yqm>` u`йyP~N wu8kL>Uڶ$wvMڃ(Hrmh>͟ȲgL AWG@_H&(x:<șԓ uP?H(^4uE 9;gv5n$/ꐰdƤ_!SEvTHm/Yn~nR ]k&صbqW4'Pj2- % O G[YScBwJh.?]RBR$N!`S:;S xURwB"tGa&th/>`43 &&V̀:lrrzjE)%𢡊D@A_fk_ Z}F{sgA!ҕv&e]hƔ0@OÔlCrK&/?7m9:tܽf29DRFF"χwAod18Ro*+M+l$dC71Xs @|?Sx7k)gЗnhd*H7s@?. BZػ%;B{ UjoyIߤU>Җ1‚zx;zMgtX3hDi*7~/mO)LҜkk,WV;E bϕfw?2G mW?xoӹ!QD;[P!$FرU^BE)7Vn[FJyQ팉$LlI9kOf;(1L#YlvEf'Nn1khxҘk0KHe`71f+vBQ9Z4(Pd",;e5e[X NWRIC*t0>\4~u2#Q52E 8pA1u`bI9ٚL~Ilؿ?vLs`G@6RbrL's7rx!ԍp@54BPrз59g`n+k"BwYB7LFLj?4NQNNWS@0\?;bs#|/[i@L.}m-DxxԲ0EA@Du3SXuhQO'<֊ǒ<iu.9V3ҋ9ѿm~__r+W֬~[`YVЂ5W:;\S} ep+>21\ UqI|D׊rBĎMAmpsJU|k}9 (~5R.#R aIoYC9wB&DN_O'Bυ{ _njjEIsyЋ : ) .Ȝbj*sh;& P 6Vm{|c%ɖSBe~D T˄6l@A |o{ ʚ a~EY_^k5PBQBu!WRg26WEgD!hsxkwVFGʀO]cX{ŎwCe 5;_lP?W?.%"I&flirçԅ6DUfKq\Ӽ2oҢڑҢx;[ok>TEݍECe:(<Bގyn k;|:4-4}xZ3% 粩@sOX+#5f$LJ Fw`,Y7 ʺ צ,4=|?vϚHyƯ>opWW ud:xq[mi'izDVP'ډ~z*G{ң 52Hx<-]~$q OuhZס| o'_Оh44?|癁EX , ylY"Ky$_B+H?qd*Hw=Ālwu,b#2^kou(4 do-gl+ H4 әPbyjU#9gf$h}/:sYX+ķ:"0Fck|= dTC?9=&*G;,G6y%_'^>4CYіe+5R7(4퐑 VSHx/ITJ 3@[Ҳ&=WA>8[Y~YBvq$( +ĵ~tTR[+j@ 2* h%eث 9RXLmvqzf` "'br䖉DZ Fg伹VԺ98 f1Qq65h | H*BkEo˙ak{Y#SctƤֵ N.B:q @CD‰ šK';#xJ%ڕ1;5F?6؄x+֚Qy*pjrFב\4sF$4hK uzuNZp&2(mQW{Ҷ>Tdirk*9dXU<,k)(E-".m6JA۰fId@HK}{,KJ_֐}r3n=j͐:aϵz(.uȩ}f߭R0,bۊj9kv^t-Yzpb&,14JtPC%俖g6&2LX?" rJ{P3snq:U$mVhJ/TϾ@4 !>3U" ^šzGOCR3CY2GfLbACHƃ\ >CcjF88Ekh1&O%{L9ToJg|$^/%3D%Nz1 1ƅw?W ZZפ(O>"Z# eb6֝z (Xgo%Dv 6:@. 9À[ۣ;,񷮰{g`(ΣBo/"G5X>$@sb`| oV^OQFwh+;i?9b^z_/[*\Z.g*m'l H$6_~!'0u*24IJD4cN{Y١u ]xpHvV*ccI,5<A@FyMߏN7з1kaIX2 m .JVwr ̟Z8AJ A_Yՠ^ߥ" F Tou#"S1z0.̞oI#Aq(=2jQ7M!T +>Cg4=n˗QhJB +E&ed_0fgDWKykc6[[9s>8 srn] }ӟg\+vsXf8bFiǬM* 5K6&s' My?}ɱN.]WE{R)+ԾS}IRt|ut*~ 57c's6@bEzg9v޹xxkqCsuYݱЀ.w{6'Yݴ/Ay5ɋ|ge 2}T"4Ǡ/Oy kP!ޒyx#l?㳝dAcfZ؛m?yND-"}~p>#*Xɤ$||6:_&*^kLOisG^*Y+M3cJŨx'>iXcr fˤ ,36>A`hk$T٘OZanJ\!)Fk1濑-4iDX ޏ[3o&,P`"Z6u0xvwYks&@vCk[.).*[n?8IX}Y#a\*kNɅsb <26đ<5vs;&u7c̗|˔KvpzoG#*Khiff4-aR45uӬ\/"l[ ;>^j |$PU5$|Ǟ/meES~DPx!:ɛZ?mB&*z^[Z!ĆKFvG&튂o]Z܃*0ndo;3~ &&6L{3`Oy3_piJIw] \Y 1k,'Nn[UR}bEHͬBJ>ލ}7%P3<=-6(}zl f%Diw@TyO iu4RE3Y-ke 5mTק+$P3?ղW;M$|NB<5밇ˣA[qIv6زț~DAu[xL5/"z }JnYO :ǡz[Jq /krM[/>*@ެྥ/NlDgcn#6CjyrX![<}12Q/>/1{MېrJ~U#0pKmsvʌyx涭kv;t,ܳ6m\ts*st=$FS0bT%nRȕ~qugmV۲ak5G(ꚰ\}}9lm GDa]mTrǡ%fS! :0qQ.|yB[|GH`Ew2>0ɆÝک#db_BJզsI eb r TIޗHvk@2\Ocn_V\_"aW^'tLؚ 㖊[2 hO7Vǝpv0P2e~cqhҔIyeW!. BFzb)m-%w4%/~!h^} ƌat i קܠ70, d~9l\4=l4H7sWCk]KiMh{Ԙ|y7)#q`l|\&wgbv+e(a: S>ֈ!jyTE $bԅ%! =eQ?{b~I~{ȖX)zć_ZUyǰDutMS3}{Tn2*k}o5bo3| S2wx/jV2賗MZj𙀀y{Wyl9hY=גDI; T!wXBq-.]Q{;$ek;Z(zZiq$]sk &,#|$\ D=݆jx>CpM56+ES?Doӈ23EiKhpPkDm:TT˨"{f~G8믵ŵ9;4OjvO7f9hMC#'$㤡ޮ$PNK5W6phXh!,2ra%S]"+=3gQ3Hv A>`2^FCG L2X*, H/F V0 (~ )6imO;@ 3׼DSbTMl}cYZlhN(֎ x#;ɣ! >R vhI"%m ٪V٭ %IV =@ZRo۷ řдg7koa$C W&sz[ 2c+F;ٷL>G#"Gyq5ϭz7dÞt_#kR 2;GS=~=~Uˉ½`E "p i鉐vl)70Pp˦0{u{Y`]ݺt/隮86Y E,ДMD=5_c)&X #;{yPn9Bjb(܏6͇j!@UtݗLC !F2ySRHU<5+sMιlU3*25|wM-+q*xVzEaMA2u ;:3v Ws]:;k5m%:I[8-9Byxo)Kݸp%-ŻA> ڿ yaٕvj ht]wtOgI/%*s 2G 9VU^:)Ё!}?_ς*PnD<-uHWz=M3(7y{({Yo_`d7 _ZFhj}PwؖR5Vfn"u^ru #|\f)a0_W|8s,,Yx]{OJo$;a{u5л 8R;{vSIutnq3-H1l=60>>Y88AL3Tm83x%&^5m @|ZJ<=Tuv~VϣFyu,1}QXQֈ uV JT"5EfَK,-F84spcxKcc=k<{0g 6X?5cofrE[:i;X@Ɣh )mz fGWUTډؒK7ZWItK)#eD@hLqLzP^g y3Xɺ_ؿŭK!Wy38S(g{eC8Af٘}Tg EEewv&~[^$M5LL=Mlfe`jv;)\e X0Lqo5 W_IVǣ]ݳ@pöKA{ڀ=N65Y;h_A V/0,1yQé7/!9h(v)Rnٍ2\L,xwc=Zl}ƴYq,)5b ԟND@[r~T$rnC*0[P  gԌ[iW@LQ:"RdOo(T3q 3"8gfCSJYs+m-tO&4!yOQu [BpD\XA䋈vV0#<KDYxzoI,X9w|Cԙ|V Xj.+)rZP鑁rM+T7V*%LL(2Bl|%Hk?m^E"D{KDČ{INW/ sJd{'~) mA<o3=QNTy6ɔ6&Usx.0V/`T貇͈Ӛe'tbȘnIͰt0 p5#/tOzwN gF"o }K0Ŧl:-;c!\7S,a+|ZL!*z5~tsaeþ8ī[mTo_t!$siPN Dfxo %c_rbq PeY͞h(yA)TL$4$s,F<):X&GFs7b8lyLL|M*'zJ)PP9 5uW]"8iy~sGkvZ&S#Gߐ%X.IJ*/>Klkdbwu7W_n&Uu>:Px[!qsٿb~I?Dak.2=>zseH,ȎT_Vp9in%RmfBC^}˨#\n%W|:THI,adsVXj^`>UvzҜ̅A>*ltFfÿIa x,A8_ꥨqF2MXqyH !9b؈(o.'|]&$TN uUn-/S&9Xm:) I ܄ uFfF[xEn6%*;B/1 sŊj %m[o)̻ gd/ .K|a0|}sЩkA ެ7b CNtҶUǫYr%Ɂsni'7*ЦD@ϴqw"@?kSu^BXem}1jc/t+ l 2']zS7oBߕ@1.d]ll'5ٟ܎e'o^|>EWe ߟF,ߖ(r_![p5W~+LñSn@U؝}hqb| gOc,^5I{Y&Vf62tROW?\~׼|@“۪ a<_ Zz=׃(,t(HğkvrW5A:*˙@w l<{sSԢ8)F`Ē/W 5<{ 﫾-T|ں/H,nxhWu8d\)_X9Yџs/,:ܑ, sZf":mk4h][pna8Aygܥ4\׺}̏Fc#w0z|)\ՀcjO5{SbeJ$,%+FE"+ 8E<*\wp³Zx= 4h ZL82mUG8t!;WcfAKXa|>$fo7rnM6N䱛xpN?>ɏ?EqIV:?|9Nxލ8*u^)/˩ziWّ)B|NyϬH^_`w34S9sHVEQEͯ23'|tN\`ϭ zDGy1ο'ΝwB1/̵́1O \~ P#Sz,]]xk]tW*ip&EYE2bE-L d) QZjqlr#^ɠm.!!RݼW{I8kSoH,xhzkPPyWqvҜnῚKa$HmO o܋k#p9>ܸr>X>犏:gk?J":˰&]I602K|b{ ;rа"yaRt,rL ߙ4hhm4۩wE# Guu0I%Vʐ 9FM2̈́ql↔ r;S]aa .+8C |U~cBg#E2nP?5*T ˰:( ^yr}ih4]'^T+Ʋ͒DD>bt wΒf/C?gQb #yAy_zif/2vXq {ɳL47 _u!ՉYX'>T 4W2X͗ Cd摒)dlaDR([e5Ta}EC*[lU{PJ?3H[y:êV ,"$;aM&/2@YP#r*KT:`!gUXR,d)'q}F6XDiČ۸C~["饰jf(f'' .4"HTm *m9u!V4 & ă&nx˦"PymXH#;c=׀I7+FP-pPk| \gVE2 7 ѕl;# csJТh!\FgD*s֥G׈E K@Y57;|>7:-msjj+?1WUR 33PlKHPXB?o]WÏC 5YrTƊ)Amǹ{3|)l᱘uke*`2OD]1 M<<(-o!Չ[&)aUl ΢,ǨxrHhE;Q[ & G~aEƄT:-H,8t:!rWKa*4J~Ehг>ş/EY @gJ1@J}62 M9eu Ez7q(rrRP'8!Z}n.>/F FQpFV|H> Qׇ-*u+t|}n S?XN>\8vb0#Oύ8A eE1x]x6w3c[VNgG+pPTaeSN:RЩ-̿RK=lTT? doym !4׏o*v]I)np_xG (#V*:UBZB(a%WLyZ/^:ZÂuVZ|I~&KL ,h$Ctn農PwFZ4wWY]GjO|>_!v1oGE4jkG"XeKayO4 ":HR4d],2i/5]TaF;כG}a{9 >Tr!0D2Яi*$ߎ,ƹ3q%8dSDYHV7öy-uh!>BhxZ_0)<@;4^glUØ(}5t]=|urm0A L889 )r'L#ZqlNHJˣX/ 4ʐ^=.I 2<)HT^1I4˷T%TJ 3- .t gAcq(~H .}=8. ~^w o(fgZ.P Ve`qׇNiC iEZ[uSy+^X7Z^iJ \6ZθlruϠ) ?4@`V23 tbĒ6{y,?Yϱd- [C/y}k|i zAV<Ƶ 7#MU@&C,;ʠh9D/=qBs62>6Y}㯯y  i{EM_]d%/!RL{xHg+]'ʜ{-%zBG,ˏAi{"ɓ֨r@"\cot =D@@oe2t"Xd?'JԨ`{$|{ʅrdtiFV3X9Nyr<.5# ścrl.!~kX5g[z @P^jU]RprH%61`R:A H1HCfݦU0qSr/>ᔉ4('  8_Dդ6K C)H%ľS|@J(Xc.Ƶv, U#w"+cnI6E}j kׂd܃qԴҐۥ!:D{9t('ȷwܪW%T4KĒT`; @:HIP(M_gy1Bc_yq,y / }BmA81fIj$:BՇu!i$Hd'Tj0n ,ZϹ;bы?G(.$lqRSE1N45+G Nc7xqnFsXշ5q(OEuV|0#ydUlxf|{7$+:|8SZRJnT,v,: F欳 ÌeZ8߂6g(=j*yԽ+mD4SJh57P4ԡ~Z7%ŚuŮxNBse.4 {by.ܣY7<:\ 57;ݧ/UC3.IɟwlQB:G`qD[KDwR&ė]/hFo>> h$Ɔ_:c礵nJ<B]ݑjpR4ʾ?>,[ͥvz\"Cߟ!]^hAQ;2p%{ wȨ!F43s<\p?3=<(@c=-hWg: 3Cwj0ݖYq/+Lшs5eg?7NTaEy])CPBJ| 1iyL}UٍNu3"sT3(܃"~f蹒BT}tZQ) IWup0&zpu6S/r2=y@Ťԏ%y}~$&rXO !% 9U$m9ƩV"D_E'XB'UӚF΍e4k3r, zN|E펷 1U pTz(ѹܩV{{QڳǧBH>W n!1z[.Z{k\ΛBMjxWY I${Q}k SٍGSTH;C!ꗏ\T -+(]A@A+}<5n}egXzřDq]7qVA?PBD}S;Ip@?יg$K+f&|.}ͭa9l6|k9 F%n \& Z(o-6S޶—r ^׾R{djF vHγ>C}ZF9yvxPEbc=94THeED><*^qրsW볌,r Η=ĺ ,ʰ;s:l٠S}m/ÿ'3 &4$ziT0I}IK4t~XdpU35V<8uqB{"&e aʜ{/F@zjXb?'05c3XOl}CMЀ- Εl}KVazک^pTXufxc8eK538atͽi/w":fV$0I(RM)a>LJ4Z{2ك)g8*4ݍ+wW*LBUo`C0@)/wXQc4Ȟ0ZtIh6Hxю$bX#}d)j-2Z>nNg^->l(A8+^ +e%Hqgj;ٔKhGEN}daK[ns*/#`6FF_q2D cN]!es= mD1a&c[ĥio-0ocIsyOa(cH"AY8ٗ ,x>/ףWX87m!yĩMW-x8'게/5M1Lp©vQK) J? EjE^v@ؑ#7 K2\ʼ e9*#z[eOdHR둠$.z~vA̡ʔ;~!9gTV-hՉVCc+w&LLHOiS ;I3BZMl7|~DKP-'[Ub*UH/5϶G#֭a!,q)v&45 = 5egN+?!!g~]χu~JZ{F&?a*4pX|̿W!W [ryhԘ Q=QK6fs/hŷ.I:xLhȃ;t b;cpΣ ?AfwDsu譄\wh5 an^#9=U y. c} ФIBDܴ@`M,t)4Y[:R6_pL: IKjvI}'9wER ^1,M_!5OL6^W|NZBpzp׹NMQFpovi?FMD ٣i Zc{ I4`K=7\Y/"!ܼ3bu@z>8:t.ScQ:(xIE7l^Sa{V$yLaWq{ji1jz˥| lxsywQmcԣ2E*Xc]4Gx*9=]A¹Re\9{d}K^E|t˯9>h&~ Z|uʇpKW3p@HGwGF)(~sm/B'"{_x/frk,CxP\U $%>)hbb?NAA+7ZGt™g;BKsT 2s]yY{0[' B 7XhTO%)F8 e2@V:cgmm[,#0~(?5xm)=mykg,~Ss"H{/%gָո\UyxLa _ډOm7˵|Mސ(((xmn/S>,G y@ld3e@#UmV(nxSJ߰"`<ҜrELI!L&%PȥEYm[Sn_ e^tVQȥG#B@~u.J~X1*XRFJ3|XU2W> d%fk6<1#7eU諑j‹.pZ#) k4NmTmNYVh8 ^AtiSR8YFVhqv A00pVlEЎ:ӍvaK ̸yefZQgI{ -@ M;  aO}*J:{v+f#z4;=/845/-v @ JB, "Vc1_;Aa4~'TSh">V2qB8[vBgS9<h'lG'tvҔڶ,$Di/Yfx1X(2jGZ/Q-%Ov=Q02*fyު rn#qUC -!YoQ'CW]mo^:I(2Q!Xb7x{9XT܎t&Pb,9#Ҟŵ1{J|iˊJ j?j|ﭬRLe cxrJ]I'Fx4 -.αXc$^'CWt`? 4i 4e~PbAtg85" ݪ~t-|_uZqfG 1w.K2Yi}#er>-Ru-g`K4ޓc t X)7u@/+brlD%rj0smQ|kM.Ujl/S)c'Yī5&MUS>]osw_3tU'?hvSRS5 =Y5K2@]#gcDĆl_%ueĵ%೉Top`*gۖh?.SNl%!g a:) ,jVJÉ-ے$;+-d eO_6FTߪL5KB?)II2xi߼_4#G ׾~)vZ pHf 0BOU9o_bR`&-AlyS_aMp==]JPxɽf6NanoŚbiXw$E7:JJOkgƿ3?PRlFې@Ι,QBp鑔BF dpkB`fV+ K߈>Mkb(GǠW z-8S7d<֥pC@7? ԉ38%3H ʿpUSͿL &KΌM̈bIju&w5)vIdYBrsLCA.& xB@P#0OrޛR03[A'=|t=uMM<@ r~lo6(KրWl~$9ݏ\@nc8*)qLm3WzYbr}F5 9-&6Rs9):~E <%W [sJ$vZjc,b~|+ *K|`Ù=I$Wqv~j7?E$*"dMh"H j&ˍwA<"QNdփgOwFKpC&0KvՍN?_Ň|G6>c *t^Zɂw#m~}jpFHx}Ǫ.y|%#<}i0Zp2A(YFG$ UY S^+Ppj5`4Jl7@z4ɓ^5Bq~[#r{Q؉ G}Fcnz֦Ʈc6f0LUKuv(VTP\MqCgA;92$y/0?ﻔm_PB?!C_ZiqV;$*y);9Ŕ?D"/y/fe}Ӹ6Ҷ tQ57Cͯ\Af!2V=ŗ@ W=&|P9lxutFXmi*%q ;Ϟ{اg޿hB/!LM[>HT[Ս-Ϯ+ؙڀ u@9{f0~WdA)1Nq&Gw74a7$ʳGeGj_ n`6BOW!üQ`2?k@~fF r )~WPOƎ" ɾN1tFԢ$D3.HAr HUm#fN#'|L0r#^`8!O}Ed`Ss[e.@!vH _*U*ŨZB p#(Àyѥ ~D"9]5 rsJzdI[WAeQ?Ņ}7Ժ 9IЩ,J*fr|: YdWDKȃ::Z)"é LCnXOY3 ~U9d_ #c6? 4qaQiHdFao_mnh2Cϴ=! @lӰ#ЁZ7ٗ- mdeAa㪁!?pR *{M1 #:d3;¶'Xh0=Xb#V ;W"e+1.r s_wj:{<4҅0JI!+K xAHhWuL)M(!ƖK6q|Yo Y?dzCK\{E K\(oE̜m<}J1@h`q VMsYX֧9L76in~d{'mؑH !ULbR9y Y^~1eXjn)6]qѕATor1EAmK л|ofp *A UZD^R^{d%rS+eixy բŕQ _7#sY NS&t(KNg:\YkC FOQ3xmhTkPa1 چ K_ qiZR  Օ˝@4n"ruIH_0 ,@?{T7"˳_|=Qp :W3J(}@Yelԁxe~>#,7w g JSgh^o,LC>wZ [gS򢰩"jE0Ds=?O$-w=An>{!u$qS(eȊo^ ۋ6{0悟wB){>c\)D/`yi4ijJy :ܚB"oc~cٕ̃ênJ*}iyКTཧXL2GKPeE x^t؞srűQx+|8)-&|>&{}$uqj(ٲ!8JoIDrU@zsU~/#\keB+.j^,N6ө*7dF!`V4{ݞX*<gL$gh9Wb^6~j}5+"RuP<.xf9Hԓ!OATbu_Kn08R-|Θ]22=9 po$ A|hBWvEmVBJ/"c8 ĥExJVVŌed@\{T~z>DwIYS(6ZFz4hT)M-Gq䆿go[tW9`W%. L~IK;)c VRd_ҞLҁ՟]Ie zL$ãߗXޔ!j0Y$m6֧?YTj*)qlyb6XR>B3*=g[#DCPiyl4DQ́gp@_IiiVC vOZb"Ngb|E[k%SیX?QfX-f@K?@s~Ds"u<'ȽuL:Wmfz+_vWWL?P,1a\0ki?qer̍ ]$_J#-lAWNeoJNCd"YgfҠ]K DwPT`:L{a}.ApDAϜRyS]$`*J.Uz,܎23ʘ %Y;1ĒDoRA‚i||%UuU2 e>\ßjJqER2cc=A2ofn09s:'>(>ԮA'K%}5WGo8U`f3B yN'+*ZYQQ4ߎU9ZemyM*C6֮BS#!NUE^ >a.Z1 I:hȦ!܇Ͽ3:š^+ `}死X?/NÅ̭MtCf,# 4Z:puAFEij8 PPU{ג\ƴY2 0 z> @~?cKcìXsfc?&MŌ$r1$LcV~0>dzJ#%āJžYQ2 GºݪF` Ob/ݢS *auٝ #`1F(UePf(ùw}CPՅ{.=KjwOl`Q:`Di胰g*uus@Gon ϲlEb~F p 5nM ⮮m",^!;[KBP9J٠i v 6xD> XṞhq{\k Ēz}&m奱́f)8 E7>Q7Q(2)Uou*xPXG# 8T>v"GbƸa%)ĿHK,6 I cg;r's` ;"^zOfpGc0Xgz-#`&{2 m̃eI bW.\SMXe 8D4mCT#{Wǟ$(}"c7(bZkm$k,!) ,㐮Y21{#"lW9a^b)gbXR&skd][N=+s}=hŏ9tL7r`*yu""qRFX[F>&̨r$(^Aet`t "G>qO;2nlRfPEr2\Ψf7,~;2w{zaQoUv=Bu.}޶ 5/8Ҋ‘G=AǍVڍubbVt-B|\vʬll*l&Jq|ء\no[U-3+g֞$nR`l8o+#-'GtXc++Frm?9a< nԾɗ.2i"sC?Դ_,dI=iZ$7c]{qGXZq/)ʼdsUfM}HTg0dܵT/p@s{D[g؈h 7ā=;3{e3N꒸l&C'P*\x4le,ly= ?𕮞ح=04F g.x'l.S#􁟫F%c9dJҭqCd(2/|#nOO#X$?pS.p̱ ¼857&,m W2>VDݛ+]Q}cͳ᪃S vvUNu0ne6%򐟖C5F]u*tO<Ө! |=I[\Do?Pҫ9j:w3K;-> TdBG-rxװč !uPXghZ&kF]Ա@ sET+_Huǹ]?XSըP 93z[ i̘(j7+'7}yt 5tΞTSӦ9<já*#&Z m`<aT?ۇ%^ cyAC% ]]Ci{'$ea(G̢`3LxH ZZ⸘9 6)a ey˓B7h^^t[ 4kйD'Eq7yk{5Tߌ]cW (5Q#Te]8mTIZc8:]gqnjZr^!k;*"31:PF[Tn`o]-њ^$p%Ўt 9mi0i䔽łzŽ-@P,0Z_;!G<됹խHޱq}UhpsV7V4E}7UPf&iCd#qQq@PA֪vs/7>8dJ{t6G#gdoHM6ndꭩsgУA}{XcC4- vq;Uo^y//E+SUrWDrdQ6FWĤ 2gĒp>bT:A6?M>Ӭ~r'wm$S00ٹoVY?_hqԢ=ԝx{¨ H"*&|6T~d]s=Yv'I7cNz7n?gtDX-6?9m}hY4̊iCWER6ʷmc( M;OSPŚFKK v ֌3[" k`( Ƒ)h(n2#ˍ)ga"ѺąFb0mޢ~ڦW^Dv1)V8AE0 Q:>beO`$9>0!nwvm eer-g+8SfI Ǭg3;WbGd6lJR|)?ZL^oBPW R/3)<>LK"!pRG7z)KC!/u+L,k%11nKwGlroyf2&VTmwҜܥb[3 I|+m3 `Irwso{6yIʿ9cDl!#FdDBzj_"h:tt\!_NA.D#NR@im!o*=혳dEl)ݲxcn@P֯+}#%[4bnk޽+. 5\PLjD;- ;5oFm?֋s(R…͚x U5ڝċl*oRfj‚)w _a4ٙ^1 ~)*.>|8({%Y9m$!ܶ_XD φ #KVP+(2FN1vvg ]6Gɨ>1X}uJt)FK^$y~SmG$LbQڤF[?LJuCM=z)WU,PjH Z9[63wUu㼍:[\ۜUc kS 9 s! L U\'>|?7@ f6ZŔW h*JI<>4ws]mQޛ!w-Ct6aA e*AMdh =6u,m{afyU* ƹ6&/|GPY_Aw1Vg{v2rVt?,%Q g тiuC[O]P3_[2G^h3v}W_+ŃP5#w5k%}ү/)& /V]#",+E.JQ%fXQ6i/bw~{|(tPc[Äe]+B@IJP8Ɔ2 T04 xO"/YB@C9%u8xB&AwtR8)X[2($*nL9B.-l[p1 ]$2Rqg`1Ne`(7}樥_`\/o^25kM`RUQnq56?~C*(Z9 9&ai \.jj8~ 5rUe"M4wj#J;kLg)%E`~F#z>oQu30iCuR7wĖ .QWs6--~؊dzǵıϠ4OU@Ygg '0Кcԧ{RTnUoiHOwJXBii$/:IõE 1RLwHW<⒑ i5iZ>a] *4Dݍ {Sb#u݂ :Sr޷d}yBְ\Dkh"-c\m$O n7xpl)y]nw/V=M8P;@T5 *S(1xh GeK߹d'loڢt<@[}$4t1M.,n!%2.]yAnX/ ra?x8UU5@-! mNva8 w-s{pcX k"MJ!g!yo sA'! Y!7>NJH@c(Jթ®:VChtPuxh"fMq6,l-g\x)6Z.$2x4oVİ$&/0mg~ ol(pxI}U[-x)8E$ǥI>[di(K]iN,6T.=Nj>Jcا=p W]E+9E>BF=5h/ʎקȑW!gt&&l =2}34Z_'j2'ДbB'WnnMKjfT3RYlOb~95=9Jl PԢ;cnί3XФ8P _%똲@(r cpa(\#$C3jb(%pp罅 >Ji|*P6.),du T) nc޸^5Qqz gE/eB] 1ͻY8Ւjsq0KvdƪrnKs\wK[', cBI Dsn{˃6FglXبV v,'&Gx̐6=hg.~&ѼvQ疇Rޯ:0VGwq[(yz͈֏V*m;ȷ "˗D68xKU]Ƭhy֬5jQ0B@D WW4c4ӎ"ŹGY[ijw0(aq (/ ;Z2JBbBٵ80~4|;|mcB 'rUI @}u 6XET9<t*y3c(JQ勷luC&yo "H{b6=3s+Ʋz -ƨXGVG };Bѓu\iц&2j8Dڱ#,GXe*]ucf}V iPYlgayɼr)q71QNU򙍛S:AωisENfcq!j!{dz=:xRzfGa~Yϖ ',BgjA=NJu8rה (B.c(Od/j psN_JĠ5um'Floe:qP݇ue\ hLjG(Dy"|z! TS՘ͺ  :w<fhaYI]M|M7Ug#NIźRȽ_pef(l`v=F,W8(v;4F"eQZ |פ]?Xg!3*8U,`hQ,\yНD5ř|N9^\jch7{C H\/h][ɶ\t̳/A(S07\K}{Wڄ`Kl(ؼ ƻ{ۨO%nT0%}8jg2$Xp1QLU&*L\OAJ?WEϮm5?:l39Ay#2ЯavD5p4eI|Pw$,-?J:B(~Wo(,rqg.p4lrGyc~`Q vцj/?v7#g\b"<{ZzwϩQD]ji^f3a?:NTaH0w[Ŭ6ҰP9ܢ~ `'J۫14)bz<hHHJY;EY0n K*; _藲r!'&Dz%l'e@ ,^`;B#.jzy>|`_DT ?]k5vz\M97F]a%[J"~ޛȠp{c^"5hjddL,֐]$r0/rdyqrayK} Ō&DV<-I:>BX0WVXiANwhF}*X;|}xbwXW)$6%h lO$U"RmB@gɯ&WtE൵OE$.qWoq~LH 'e WWpV}KU19_dvVP!){9fCXG9v>khפQLq_+Gc+[koRu>3(ۆ+ g5 [SMI~%+ExV!x^݀8cʈ-;eUM]aԂMKRRt4At+ 3?7ثvV))}w>OX qev(y+iSlVRq+OVz~CjQ-\Ŧ_"yj=b纮J vlI*Ǫ47n,c/%p486lQL*WIV /c"k8 <ղ+;Q듣'D6JXpBs[,}pnv뤦݊f񘦩C6!(5U>!O~lFv.^+u*%11ٹƧ}^{dbBwz^y](zϹx=@ hY_S]*1i]7<<ގ)qe M[ VINJzf, |_@l~xxj^`;q{15PKqW@*dqB}Ӄ06d.޶2|Xf0䚙M&e+$.3S8+HlE?ބx*,JD:G|؏d1:7ckGCK2آ5?>:5+|FյWlBS닺mtHodzG㢄U$,`|2U1\UÍ Ś0ڷ|Y j̡bn2ڪ'\]ֵ=\(ÒN}o;I z"1*똄K՟ߠ1uyYa،mKHa2=z̀ZsrDX^r9%pl4 yt`}7=GL~}2ж1i2˾ٟ"xvXMHT~bE֒mX*=}C.>0L.`q5w[ۣ۞y^Hnځ*zzHq e0}V\L8u ?ףJ)6گQ7X!~lp'TOO5t9!m\7=r峓ӭ]8p(IG`ıVVʃȋABѣĝxK=lNbc8ZдI(?M$]x\MnyϥG嗷˵90$=ܴ~lCy-o۳(v|s۪ç\.*cajQVgk{l4FV+"S^G`ze+߃˨VNUQ0㣒u zpV*$S0B'lAEw Uza ?o֗2~dNyo";m~M˪D?m1Q\$O?ݑ.Ʉs[N,_wtϝ GcY8 Ƽd/ysI<بQє5 j=?Ὴo7g9DvtܮLކOS]iU|@h$nwe8H~5=9TM%IUop?Pv&$D:M<0d2ՊC,cxrjL9(ٌ+mdO'ޘˏ:dܡ |W_dW,2{⶘ys溆/ D(ո!1Ae"i~0A/Ĵ4d"o@䎭 1ǼoNckjOw?q+IKLMz?Kx]ȭW XFK}*0X1kJ*srqDne=*I<$+EQ֨~l2ub !;LplobЅu`Quus4n>oy뵅^x 8d2Ԣ`_p`Y*1"@6AFeơ8E]%PnmHO6#YDvs7/-FnCה8 *#+y2UuǼ&'h昮h F9mi#/Xr=Yۢ(.5⠉V: l=4|6rP$gXA_Ga&МD[]!]?ٮlS.}pp.gS.}P]QhmDFL7RZ$/]TK!Q5RmҶ= `h͸%m@i֡C׆Wck] GF2йzRuDلp [gf8ZFu=P#{ni2(Doy(˾}C)!Nop 40sw ob Jpy^7\} JE#b2H%~5֋[D ɳTͣ}os/Cj`)$7P'v\%M!ߪmU qӇV淚  $a\KB_;lg籮 PJ G^-X{BS@sQk܇jԣ {=1[gZZ&s*o+– qqS٢Pz!~܅ 6s ]0$0.kJN+nԻY%߉ W 06+Ս%(%*|W}"K1~D;W^Sw-k,W[K24\meyޱ`H ԀgIǡ#_|H+z۴cLa"<0\2,I0ǬB8N?oMF17ppG/ 9o{mz52HLqXZv&S Du^'Zف?Q4tP* YZ