nss-3.16.1-14.el6$>"pP?h@Ko[>??d   .hl !o <  P  d          :  l  M 99X9(89:G8>@G H0 IX XdMYM\ ]4 ^bdqevfyl{t u vw x yCnss3.16.114.el6Network Security ServicesNetwork Security Services (NSS) is a set of libraries designed to support cross-platform development of security-enabled client and server applications. Applications built with NSS can support SSL v2 and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3 certificates, and other security standards.T?System Environment/Librarieshttp://www.mozilla.org/projects/security/pki/nss/linuxi686# If we upgrade, and the shared filename is a regular file, then we must # remove it, before we can install the alternatives symbolic link. if [ $1 -gt 1 ] ; then # when upgrading or downgrading if ! test -L /usr/lib/libnssckbi.so; then rm -f /usr/lib/libnssckbi.so fi fi # Install the symbolic link # FYI: Certain other packages use alternatives --set to enforce that the first # installed package is preferred. We don't do that. Highest priority wins. /usr/sbin/update-alternatives --install /usr/lib/libnssckbi.so \ libnssckbi.so /usr/lib/nss/libnssckbi.so 10 /sbin/ldconfigif [ $1 -eq 0 ] ; then # package removal /usr/sbin/update-alternatives --remove libnssckbi.so /usr/lib/nss/libnssckbi.so else # upgrade or downgrade # If the new installed package uses a regular file (not a symblic link), # then cleanup the alternatives link. if ! test -L /usr/lib/libnssckbi.so; then /usr/sbin/update-alternatives --remove libnssckbi.so /usr/lib/nss/libnssckbi.so fi fi /sbin/ldconfig@@LwʸqA큤큤T?*KLKLKLfT?,T?*T?,T?,T?,T?,e45105a21696a26c834cfaa3f664c42426c99546094e22fbe3a5e1dd3fbc1f336115cab6d646a05dd6b63e21c488da6bc36975f6e5ad8d6371c30a166c41cddc3790a5404f6b7edb652544eb75bfaa8f1c515f41ef14369248151d7c52cd249edce3cd6a1bc5478156b01d299595822b1edb2ec98924035905a636259883106ce3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b85585812c1a87cd3b379bbe6637e1624cff6c9fb51048580557bd9d7f7e25b9aebceecb7d2ae0c9cb1192ee4426af2ae337995abdac2ea4e6c570373b842056ed4dd9321eb7eee2189dd1555f630675b00f1500774d20b764d86f005c0a4fc87297f8c79c5409be302ad853ad57abacb48f7175a4034c1f6b618b3215782edfdb4d@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootnss-3.16.1-14.el6.src.rpmconfig(nss)libnss3.solibnss3.so(NSS_3.10)libnss3.so(NSS_3.10.2)libnss3.so(NSS_3.11)libnss3.so(NSS_3.11.1)libnss3.so(NSS_3.11.2)libnss3.so(NSS_3.11.7)libnss3.so(NSS_3.11.9)libnss3.so(NSS_3.12)libnss3.so(NSS_3.12.1)libnss3.so(NSS_3.12.10)libnss3.so(NSS_3.12.3)libnss3.so(NSS_3.12.4)libnss3.so(NSS_3.12.5)libnss3.so(NSS_3.12.6)libnss3.so(NSS_3.12.7)libnss3.so(NSS_3.12.9)libnss3.so(NSS_3.13)libnss3.so(NSS_3.13.2)libnss3.so(NSS_3.14)libnss3.so(NSS_3.14.1)libnss3.so(NSS_3.14.3)libnss3.so(NSS_3.15)libnss3.so(NSS_3.15.4)libnss3.so(NSS_3.16.1)libnss3.so(NSS_3.2)libnss3.so(NSS_3.2.1)libnss3.so(NSS_3.3)libnss3.so(NSS_3.3.1)libnss3.so(NSS_3.4)libnss3.so(NSS_3.5)libnss3.so(NSS_3.6)libnss3.so(NSS_3.7)libnss3.so(NSS_3.7.1)libnss3.so(NSS_3.8)libnss3.so(NSS_3.9)libnss3.so(NSS_3.9.2)libnss3.so(NSS_3.9.3)libnssckbi.solibnssckbi.so(NSS_3.1)libnsspem.solibnsspem.so(NSS_3.1)libsmime3.solibsmime3.so(NSS_3.10)libsmime3.so(NSS_3.12.10)libsmime3.so(NSS_3.12.2)libsmime3.so(NSS_3.13)libsmime3.so(NSS_3.15)libsmime3.so(NSS_3.16)libsmime3.so(NSS_3.2)libsmime3.so(NSS_3.2.1)libsmime3.so(NSS_3.3)libsmime3.so(NSS_3.4)libsmime3.so(NSS_3.4.1)libsmime3.so(NSS_3.6)libsmime3.so(NSS_3.7)libsmime3.so(NSS_3.7.2)libsmime3.so(NSS_3.8)libsmime3.so(NSS_3.9)libsmime3.so(NSS_3.9.3)libssl3.solibssl3.so(NSS_3.11.4)libssl3.so(NSS_3.11.8)libssl3.so(NSS_3.12.10)libssl3.so(NSS_3.12.6)libssl3.so(NSS_3.13)libssl3.so(NSS_3.13.2)libssl3.so(NSS_3.14)libssl3.so(NSS_3.15)libssl3.so(NSS_3.15.4)libssl3.so(NSS_3.2)libssl3.so(NSS_3.2.1)libssl3.so(NSS_3.4)libssl3.so(NSS_3.7.4)nssnss(x86-32)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @ /bin/sh/bin/sh/usr/sbin/update-alternatives/usr/sbin/update-alternativesconfig(nss)libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libdl.so.2libfreebl3.solibnspr4.solibnss3.solibnss3.so(NSS_3.10)libnss3.so(NSS_3.11)libnss3.so(NSS_3.11.1)libnss3.so(NSS_3.11.2)libnss3.so(NSS_3.12)libnss3.so(NSS_3.12.6)libnss3.so(NSS_3.14)libnss3.so(NSS_3.14.3)libnss3.so(NSS_3.15)libnss3.so(NSS_3.2)libnss3.so(NSS_3.3)libnss3.so(NSS_3.3.1)libnss3.so(NSS_3.4)libnss3.so(NSS_3.6)libnss3.so(NSS_3.7)libnss3.so(NSS_3.8)libnss3.so(NSS_3.9)libnssdbm3.solibnssutil3.solibnssutil3.so(NSSUTIL_3.12)libnssutil3.so(NSSUTIL_3.12.3)libnssutil3.so(NSSUTIL_3.12.5)libnssutil3.so(NSSUTIL_3.13)libnssutil3.so(NSSUTIL_3.14)libnssutil3.so(NSSUTIL_3.15)libnssutil3.so(NSSUTIL_3.17.1)libplc4.solibplds4.solibpthread.so.0libpthread.so.0(GLIBC_2.0)libsoftokn3.solibz.so.1nsprnss-softokn(x86-32)nss-system-initnss-utilrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rtld(GNU_HASH)rpmlib(PayloadIsXz)3.16.1-14.el64.10.63.14.33.16.13.0.4-14.6.0-14.0-15.2-1curl7.19.7-26.el64.8.0T"@SS@S@S׌SSQ@S@S-S@S@S@S!@SSU@SFS2@S2@Rb@R߲RƦ@RR$RR;R].@R].@RR@RQPRNREs@R@-@R:@R:@R9R2@R2@R+@R)R)R R@RR@Q@Q@Qzl@QR@QQQNP@P[PqPM@PM@Pd@P@P@PPx@Px@PvO@O O@Ọ@O Oc+@O`@O_6O_6OTOLOLOLOB5O&@O#@O@NU@NNGNN@N@NNw.N`@N`@N`@N^"@N\NGNENNN*N*M@M@MUMMlMfH@M] M:M4/@LL@LwLvW@LvW@LvW@LvW@L @K[KKKO@KK]KUKRKRKMKMKLd@KD{@KD{@KD{@K4@K,@K*@K@KJ@J1@JSJSJ@Jv@J@JG@JG@JJJ@JRJ J@JiJiJ@J@JJJu@Ju@Ju@Ju@Ju@J#J#J@J@JJJJ/@J:J:JzJjJ?r@J?r@J,@J)J)J@J{IzIzIIIԨIԨIIII2HHH+H@H@HoH@H`HCHG@GQG]@G@G@G~G-@G-@G-@G}G@G_@GSG1G FFFޚ@F@F@FvsFkF` @EE(EEl$E D@E D@D@D@D@D@DvCC@CC@C@CZCZCZCZBϼ@Elio Maldonado - 3.16.1-14Elio Maldonado - 3.16.1-13Elio Maldonado - 3.16.1-12Elio Maldonado - 3.16.1-11Elio Maldonado - 3.16.1-10Elio Maldonado - 3.16.1-9Elio Maldonado - 3.16.1-8Elio Maldonado - 3.16.1-7Elio Maldonado - 3.16.1-6Elio Maldonado - 3.16.1-5Elio Maldonado - 3.16.1-4Elio Maldonado - 3.16.1-3Elio Maldonado - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.15.3-11Elio Maldonado - 3.15.3-10Elio Maldonado - 3.15.3-9Elio Maldonado - 3.15.3-8Elio Maldonado - 3.15.3-7Elio Maldonado - 3.15.3-6Elio Maldonado - 3.15.3-5Elio Maldonado - 3.15.3-4Elio Maldonado - 3.15.3-3Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.1-15Elio Maldonado - 3.15.1-14Elio Maldonado - 3.15.1-13Elio Maldonado - 3.15.1-12Elio Maldonado - 3.15.1-11Elio Maldonado - 3.15.1-10Elio Maldonado - 3.15.1-9Elio Maldonado - 3.15.1-8Kai Engert - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.14.3-37Elio Maldonado - 3.14.3-36Elio Maldonado - 3.14.3-35Elio Maldonado - 3.14.3-34Kai Engert - 3.14.3-33Elio Maldonado - 3.14.3-5Elio Maldonado - 3.14.3-4Elio Maldonado - 3.14.3-3Elio Maldonado - 3.14.3-2Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.0.0-12Elio Maldonado - 3.14.0.0-11Elio Maldonado - 3.14.0.0-10Elio Maldonado - 3.14.0.0-9Elio Maldonado - 3.14.0.0-8Elio Maldonado - 3.14.0.0-7Elio Maldonado - 3.14.0.0-6Elio Maldonado - 3.14.0.0-5Elio Maldonado - 3.14.0.0-4Kai Engert - 3.14.0.0-3Bob Relyea - 3.14.0.0-2Elio Maldonado - 3.14.0.0-1Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.3-7Elio Maldonado - 3.13.3-6Elio Maldonado Batiz - 3.13.3-5Elio Maldonado Batiz - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Elio Maldonado Batiz - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado - 3.13.1-4Elio Maldonado - 3.13.1-4Martin Stransky 3.13.1-3Elio Maldonado Batiz - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.12.10-17Elio Maldonado - 3.12.10-16Elio Maldonado - 3.12.10-15Elio Maldonado - 3.12.10-14Elio Maldonado - 3.12.10-13Elio Maldonado - 3.12.10-12Elio Maldonado - 3.12.10-11Elio Maldonado - 3.12.10-10Elio Maldonado - 3.12.10-9Elio Maldonado - 3.12.10-8Elio Maldonado - 3.12.10-7Elio Maldonado - 3.12.10-6Elio Maldonado - 3.12.10-5Elio Maldonado - 3.12.10-4Elio Maldonado - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado Batiz - 3.12.9-9Elio Maldonado - 3.12.9-8Elio Maldonado - 3.12.9-7Elio Maldonado - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Kai Engert - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5.99-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-7.3Elio Maldonado - 3.12.5-7.2Elio Maldonado - 3.12.5-7.1Elio Maldonado - 3.12.5-7Elio Maldonado - 3.12.5-6Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-2Elio Maldonado - 3.12.5-1.14Elio Maldonado - 3.12.5-1.12.1Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.10Elio Maldonado - 3.12.5-1.8Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-1.2Elio Maldonado - 3.12.4-15Elio Maldonado - 3.12.4-14Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Resolves: Bug 1145432 - CVE-2014-1568- Fix pem deadlock caused by previous version of a fix for a race condition - Fixes: Bug 1090681- Add references to bugs filed upstream - Related: Bug 1090681, Bug 1104300- Resolves: Bug 1090681 - RHDS 9.1 389-ds-base-1.2.11.15-31 crash in PK11_DoesMechanism- Replace expired PayPal test certificate that breaks the build - Related: Bug 1099619- Fix defects found by coverity - Resolves: Bug 1104300- Backport nss-3.12.6 upstream fix required by Firefox 31 - Resolves: Bug 1099619- Update nspr-version to 4.10.6- Update pem sources to the same ones used on rhel-7 - Remove no longer needed patches on account of this update - Resolves: Bug 1002205- Move removal of directories to the end of the %prep section - Resolves: Bug 689919 - build without any softoken or util sources in the tree- Remove unused patches rendered obsolete- Fix pem module trashing of private keys on failed login - Resolves: Bug 1002205 - PEM module trashes private keys if login fails- Restore use of indentation patch until another bug is resolved - Resolves: Bug 606022 - nss security tools lack man pages- Update to nss-3.16.1 - Resolves: Bug 1099619 - Rebase nss in RHEL 6.6 to NSS 3.16.1- Resolves: Bug 689919 - build without any softoken or util sources in the tree - Add define-uint32.patch to deal with using older version of nss-softokn - Fix suboptimal test failure detection shell code in the %check unset DISPLAY section- Prevent users from disabling the internal crypto module - Resolves: Bug 1059176 - nss segfaults with opencryptoki module- Improve support for ECDSA algorithm via pluggable ECC - Document the purpose of the iquote.patch - Resolves: Bug 1057224 - Pluggable ECC in NSS not enabled on RHEL 6 and above- Install man pages for the nss security tools - Resolves: Bug 606022 - nss security tools lack man pages- Fix the numbering and naming of the patches - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- make derEncodingsMatch work with encrypted keys - rename a patch, dropped the experimental moniker from it - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Revoke trust in one mis-issued anssi certificate - Resolves: Bug 1042686 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) [rhel-6.6]- Disable hw gcm on rhel-5 based build environments where OS lacks support - Rollback changes to build nss without softokn until Bug 689919 is approved - Cipher suite was run as part of the nss-softokn build- Build nss without softoken, freebl, or util sources in the build source tree - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741- Update to NSS_3_15_3_RTM - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 - Resolves: Bug 1031238 - deadlock in trust domain lock and object lock- Using export NSS_DISABLE_HW_GCM=1 to deal with some problemmatic build systems - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add s390x and ia64 to the %define multilib_arches list used for defining alt_ckbi - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add zero default value to DISABLETEST check and fix the TEST_FAILURES check and reporting - Resolves: rhbz#990631 - file permissions of pkcs11.txt/secmod.db must be kept when modified by NSS - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Add a zero default value to the DISABLETEST and TEST_FAILURES checks - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix the test for zero failures in the %check section - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Restore a mistakenly removed patch - Resolves: rhbz#961659 - SQL backend does not reload certificates- Rebuild for the pem module to link with freel from nss-softokn-3.14.3-6.el6 - Related: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0] - Related: rhbz#1010224 - NSS 3.15 breaks SSL in OpenLDAP clients- Don't require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Additional syntax fixes in nss-versus-softoken-test.patch - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix all.sh test for which application was last build by updating nss-versus-softoken-test.path - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Disable the cipher suite already run as part of the nss-softokn build - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nspr-4.10.0 - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix relative path in %check section to prevent undetected test failures - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Rebase to NSS_3.15.1_RTM - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x) - Update patches on account of the shallow tree with the rebase to 3.15.1 - Update the pem module sources nss-pem-20130405.tar.bz2 with latest patches applied - Remove patches rendered obsolete by the nss rebase and the updated nss-pem sources - Enable the iquote.patch to access newly introduced types- Do not hold issuer certificate handles in the crl cache - Resolves: rhbz#961659 - SQL backend does not reload certificates- Resolves: rhbz#977341 - nss-tools certutil -H does not list all options- Resolves: rhbz#702083 - dont require unique file basenames- Fix race condition in cert code related to smart cards - Resolves: rhbz#903017 - Firefox hang when CAC/PIV smart card certificates are viewed in the certificate manager- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement. Please ensure that older packages that don't use the alternatives system for libnssckbi.so have a smaller n-v-r.- Syncup with uptream changes for aes gcm and ecc suiteb - Enable ecc support for suite b - Apply several upstream AES GCM fixes - Use the pristine nss upstream sources with ecc included - Export NSS_ENABLE_ECC=1 in both the build and the check sections - Make failed requests for unsupoprted ssl pkcs 11 bypass non fatal - Resolves: rhbz#882408 - NSS_NO_PKCS11_BYPASS must preserve ABI - Related: rhbz#918950 - rebase nss to 3.14.3- Revert to accepting MD5 on digital signatures by default - Resolves: rhbz#918136 - nss 3.14 - MD5 hash algorithm disabled- Ensure pem uses system freebl as with this update freebl brings in new API's - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue- Install sechash.h and secmodt.h which are now provided by nss-devel - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Remove unsafe -r option from commands that remove headers already shipped by nss-util and nss-softoken- Update to NSS_3.14.3_RTM - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Update expired test certificates (fixed in upstream bug 852781) - Sync up pem module's rsawrapr.c with softoken's upstream changes for nss-3.14.3 - Reactivate the aia tests- Recreate the distrust patch by backporting the upstream one - Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Remove a patch that caused a regression - Resolves: rhbz#883620- Fix locking issue causing curl hangs and authenticate to the correct session - Resolves: rhbz#872838- PEM peminit returns CKR_CANT_LOCK when needed to inform caller module isn't thread safe - Resolves: rhbz#555019 - [PEM] invalid writes in multi-threaded libcurl based application- Add dummy sources file to test for and prevent breaking rhpkg commands - Enable testing for 'rhpk upload' and 'rhpk new-sources' breakage such as hangs - Related: rhbz#837089- Update the license to MPLv2.0 - turn off the aia tests - Resolves: rhbz#837089- Resolves: rhbz#702083 - NSS pem module should not require unique base file names- turn on the aia tests - update nss-589636.patch to apply to httpdserv- turn off aia tests for now- turn off ocsp tests for now- Rebase to nss-3.14.0.0-1 - Resolves: rhbz#837089 - Update ssl-cbc-random-iv patch for new sources - Remove patches rendered obsoleted by rebase to 3.14 - Add a patch to enforce no pkcs11 bypass- Resolves: rhbz#830302 - require nspr 4.9.1- Resolves: rhbz#830302 - revert unwanted changes to nss.pc.in- Resolves: rhbz#830302 - Update RHEL 6.x to NSS 3.13.5 and NSPR 4.9.1 for Mozilla 10.0.6- Resolves: rhbz#827351 invalid read and free on invalid cert load failure- Resolves: #rhbz#805232 PEM module may attempt to free uninitialized pointer- Resolves: rhbz#717913 - [PEM] various flaws detected by Coverity - Require nss-util 3.13.3- Resolves: rhbz#772628 nss_Init leaks memory- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Use completed patch per code review- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Resolves: rhbz#768669 - PEM unregistered callback causes SIGSEGV- Update to 3.13.3 - Resolves: rhbz#798539 - Distrust MITM subCAs issued by TrustWave - Remove builtins-nssckbi_1_88_rtm.patch which the rebase obsoletes- Resolves: rhbz#746632 - Adjust the patch for new sources- Resolves: rhbz#746632 - pem_CreateObject() leaks memory given a non-existing file name- Resolves: 784674 - Protect NSS_Shutdown from clients that fail to initialize nss- Add two needed patches - Resolves: rhbz#783315 - Need nss workaround for freebl bug that causes openswan to drop connections - Resolves: rhbz#747387 - Unable to contact LDAP Server during winsync- Rebuild- Resolves: Bug 784490 - CVE-2011-3389 - Activate a patch that was left out in previous build- Resolves: Bug 744070 - Update to 3.13.1 - Resolves: Bug 784674 - nss should protect against being called before nss_Init - Resolves: Bug 784490 - CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)- Resolves: Bug 761086 - Fix nss-735047.patch to not revert the nss-bz689031.patch- Update builtins certs to those from NSSCKBI_1_88_RTM- Bug 747387 - Unable to contact LDAP Server during winsync- Add to the spec file the patch for Bug 671266- More coverity related fixes in the pem module- Coverity related fixes- Add relro support for executables and shared libraries- Add partial RELRO support- Fix the name of the last patch file- Retagging to pick up two missing commits- Update builtins certs to those from NSSCKBI_1_87_RTM- Update builtins certs to those from NSSCKBI_1_86_RTM- Update builtins certs to those from NSSCKBI_1_85_RTM- Fix CMS to verify signed data when SignerInfo indicates signer by subjectKeyID- Fix pem logging to deal with files originally created by root- Retagging for updated patch missing from previous tag- Update to 3.12.10- Resolves: rhbz# 703658 - Fix crmf hard-coded maximum size for wrapped private keys- Resolves: rhbz#688423 - Enable NSS support for pluggable ECC- Add "Conflicts: curl < 7.19.7-26.el6" to fix Bug 694663- Construct private key nickname based on the full pathname of the pem file- Update expired PayPayEE.cert test certificate - Conditionalize some database tests on user not being root- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Fix memory leaks caused by SECKEY_ImportDERPublicKey- Short-term fix for ssl test suites hangs on ipv6 type connections- Add requires for pkcs11-devel on nss-softokn-freebl devel - Run the test suites in check section per packaging guidelines- Prefer user database ca cert trust settings system's ones - Swap internal key slot on fips mode switches- Update to 3.12.9 - Fix libnsspem to test for and reject directories- Add suppport for pkcs8 formatted keys in the pem module - Add verify(not md5 size mtime) to configuration files attributes - Prevent nss-sysinit disabling on package upgrade - Create pkcs11.txt with correct permissions regardless of current umask - Add option to setup-nsssysinit.sh to report nss-sysinit status - Update test certificate which had expired- Update to 3.12.8- Increase release version number, no code changes- Update to 3.12.7- Rebuilt- Appying the changes in previous log - Changing some BuildRequires to >= as well - Temporarily disabling all tests for faster builds- Change some = to >= in Requires to enable a rebase next- Fix SIGSEGV within CreateObject (#596783) - Update expired test certificate- Fix nss.pc to not require nss-softokn- rebuilt using nss-util 3.2.6- rebuilt using nspr-devel 4.8.4- Update to 3.12.6- Update to NSS_3_12_6_RC1- Fix curl related regression and general patch code clean up- Resolves: #551784 rebuilt after nss-softokn and nss-util builds - this will generate the coorect nss.spec- rebuilt for RHEL-6 candidate, Resolves: #551784- Updated to 3.12.5 from CVS import from Fedora 12 - Moved blank legacy databases to the lookaside cache - Reenabled the full test suite - Retagging for a RHEL-6-test-build- Retagged- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- bump release number and rebuild- Fix nsssysinit to allow root to modify the nss system database (#547860)- Temporarily disabling the ssl tests until Bug 539183 is resolved- Fix an error introduced when adapting the patch for 546211- Remove some left over trace statements from nsssysinit patching- Fix nsssysinit to set the default flags on the crypto module (#545779) - Fix nsssysinit to enable apps to use the system cert store, patch contributed by David Woodhouse (#546221) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387) - Sysinit requires coreutils for post install scriplet (#547067) - Remove redundant header from the pem module- Remove unneeded patch- Update to 3.12.5 - CVE-2009-3555 TLS: MITM attacks via session renegotiation- Require nss-softoken of same arch as nss (#527867)- Fix bug where user was prompted for a password when listing keys on an empty system database (#527048) - Fix setup-nsssysinit to handle more general flags formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build/bin/sh/bin/sh 3.16.1-14.el63.16.1-14.el63.16.1-14.el6nssdbcert8.dbkey3.dbsecmod.dblibnss3.solibnssckbi.solibnsspem.solibsmime3.solibssl3.solibnssckbi.so/etc/pki//etc/pki/nssdb//usr/lib//usr/lib/nss/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnuBerkeley DB 1.85 (Hash, version 2, native byte-order)ELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked, strippeddirectoryempty:Mx:+0 PPPPPPPPP P P P P PPPPPPPPPPPPPPPPPPP P!P"P#P$P%P&RRRRR R R R RR"R#R$R%R&R'R)R*R+R,R7P)P*RRRR R R R R RR!R"R#R*R+R,R.R7P+P,P-P.P/P0P1P2P3P4P5P6P7P8P9P:P;PP?P@PAPBPCPDPEPFPGPHPIPJRRRRR R R RRRRRRRRRRRRRRRRR R"R#R%R(R*R+R,R-R/R7P'P(RRRR RR*R+R,R7?7zXZ !PH6bz`]"k%UJCÍv4sbl0vs>h(rrw6vj[0X(yӂj^YcFtM桱KX#=0ci8jJ Q׫ ܞ't{$tɊZqJ^uU a <9+kQfy7CsW?$U9J: mu `DH-)gW V Q\(J݁\@u^ $ iHC 7NÕ:1ɞ%b{|S=|]B5e&rΟx7oIHyl1u?pOCaCTk tIKib03)C-}"J ,7~1 /\ktTe/jQz(睄l}X\F`y+}lzUV~j#gB'5KF/s#>pQCmB*ZRV5%pY5C$UC]?s6k6n_&;/ji3VMiFOKh1^yxH7-68T%SKd~S0w n9tYVOQ[\YVvO4V(x6}U>FVj'vT% Lή)ˑfN4y9CLԘ}Φ6N1ylb2$Tvᮥsx[?[wdݜ3Q9JL뎑;FV<3^R"&bq(!TV HJ,պYN䔗$w5+<7򘖵ڀƣ sA31OLd#J(g,MRAj1H ~wnjx}BjD\jr0o8cpL(ѫ/{B6Ҙy V{d!Pygӡ~}/1AVf96ze\3NM0 ""_h 0ArE#\o$ԡ6w`w.Ӥ!:~/Sƃ_ X.S:[$WMN7wdeE\(P☟Z mDu֐]oO rp;x3WMc(ϲuX`,ݰ*jjkObv*Jx>piZ9L g0lP=щ(>R4;,a0ZY q讥'"ǒ|MsLugN}܍\GHjI W(+J~Nhz$dCM춌?-v :.ﻑyԕ4sI" ؞`L*cpRHGxRZ: /#WQ24*~q|rܵԚYŧR͏%lu$6`V 3";eė8hE?j#-]RjN q*b8A(TMm<3P(.v{UHK+΢TSfG2lN_(JE H蝱{ `X4UTExӡ&i%O:ԠOd.*uw"N^&uVq?Y%cvjuSVi]$zc|aԩ>ݦN/w7 T:}l?u#[Q7"p>1+"3"R 3-`W흏و  XB)eKusc gC9*b !Zs.q>6{UaIwV[ԃ-NZ<#V>>VՉW?R40V5 B5d;Ut]՞4ʂK%z,a3"u-x`+І5MWO7?z[ćqX-hG-N0S?ٝE뀏_9, AҼjQZ, A9g6o&qAKdHI c<$xg.XGFeQ> -I 9hfPѶ I!9f'^eQo,)ĝ uwx_-{gDp',鋚1``b9)XֻWLzFuWy:EJҁH30 >xɫiX;EjQ9aֻ|˃8}IŸ49߼QE`MAOJ.)f_Q `/D Pt(Ӕz:fj$':!ER*TyjJć[v3D[^ðm!Un=KԒ2fOQ ՇZ~dro:\.L:|C%X٨ӀVDP_grVqM( CvOAA[KVbz_N;^HbCd`L ?mj6<&k %/s+6QKp$Ii /lpl)oy?4M#F445}]/$=\ @MfI~/E,TM~i\N0 1G/?(b>^_l]t+A.Ʉ}[iōI ]#ôp]Ě.Xe[kglފaXMO [Xh6cH Iy7tgW{1 l~*bM$`w6J.ݎYK5l\\?]Vj|y+Сlf?Ppe±CvS#Db;RYV'p1$eڬVyIFH5Zoܮp7cN(4KCxu ?*Q&QAbF޼@}Bi]I[<,4)3Bz}p6< e;Cp\ܔv]u57V1}鯎>$4Yiu\ڗ@.8TZĻ7z^A04+`""VWJv3u H!1Z*P)~PeQ5qL5`X:Hfl>c<} V&嶎VV fˡNJx%"W.‰3T N:B3߾"(mR4ӳ&J^ẅ/(",0vAS&^`޼c<׷1?>1_ 5bͣ#F }BMü1!6{5Qo~%/Ӕ2$}xykT12fvIez q6%<ϩt.[  .oV,Qeh%T7Ǧh<8+8c%͑oEU6Lx"ҺiA A^T j?難G7{ Em TĴG!Yirq=א:,]m vWJPaIrr5⧱~PhEHF~: pYG7$ۗњ#nP X؜l.BI!@ȠXu]>̧$4֮BwJ^[]z^&5g#hқFnldSy^D/W~DdnXvW7ThENf9K¸~;a!FkO#<_왳CKtCvP5 +.J㴔뵖 C]usP$*-o{ך^%:5-р Vqn8M"u`x7Pfn?@iI` 8:64pVEYį6'+ʖxAq-̽ͯѳŭs*\N}y0A"gtp)$cJfﺂ8i ) @f{'0vBlZ6fvTQ+ݣ[ g8ٖJFW_m ݭT,~ B7(p%Z ŲFNRLN+@@﹃äH5i4 61&] wD.ڲisuz IeX #αw\ =OC~>AsF &YM1Y_7KF5=q>V$c|8YB2s569,}N;Y%sQX|0zF(sscNtֱ{&r1;$~bWDBQ?I)Ƅ(ޡ>`<×[eIOZXC,pD 5c$6"O}"B@چf.AG)\fʝWTpG4d1[0|UHMymY853UyozJ(zJKìHQ;C\+&UAHD|O: t$(祈9$p(2&Hkix蒑H?cB֧5ͮ uԲ@m*QsCP*?lQ|Ks駘K`c 2ܸP-jܺ4=#Gӌ2 ү󏸬dǖ֢׈:YJذ;kfQ^en|lVV:7QQ̇u՟t{*e*HoI௏6<5hJ@gW@~j<@UԘ4tM$Jna)ſ0}ˆ5R3{fكD!bkQݑ!t0 qT1q-g0egi@{*j[SU#V܄ ө59*woM(5 jQɚaNp4c-KD/3arsz+.5E^gM2ʜ\ǥi$7#La$*JOAJj<._ BQ^+și;ߺD媦0H=VپU䗉S@:GGFZqC idߠEm+'N mRH+ZT <3.p,B2Μ#;>fe|i>oJސdUC&?#AWCHA?X3w *So&-fu ΰJTŊVbrS7X: j!bU>$)c>{ %^)5k^BN!]2[io;d kxrnfPF^ Z|#IM{váhݑn Qb. Z U4hÊMER?T|3HFmV3"_VF r`8#~)*QKWC,)veIQHՅyr4[TϰGYVWUp }TIފ嗈#'ޥzQW$wDi ^rc{w7?>" Xy @fQ-mE$衳6g恇csSQ}'JIۤKaŸejA'Ag]Ѯ2<ohURK:gm&Z/5E`'ە17?7L:ՠ-B48d+}oWeJ!0^լ,=Nk1 q54# \Q٨]b5F/+u"JԐaLWTnz; ϟ^Q_U(>[N+&V58I4]}e}IM$M~GcjPA~$,[CpkEHG ۞ʑ-.dDn'(6t6^2o*f?Mi Zr Ƕ>̚Mbe%$8yt"֛sx^tHIO_^yYhO";?V(Gvb޻nj}ks 0V(|3? ܯ7MCx,Ph0"bJgO~㦻)zv 6 uSdK(/mJvI~r[V~Dab4g^;#Gz'|rU,8kP&=H6Y}JiM2e0mzX5.E9șxҦP3'ok n)g>O`:͵툷0R5AگQ8"[ ت[;wqMjvڠL{\hMxW[xI]x}5ơ0Ӆ\FF+)5(ZqORހG@?yw\/J(>_l~n{%}4ދc6'7/[h"jJJ,w%/XAѳ -d< "M?UB@/i2m?3/C'_5?2 ƒo:(5dOK̤ JYaӬMmz/ d*ϟ`i1虎+'[Bq4ʛ.Ɉ/6b'Ll~Hʁfy,&LHf~g):.|}~߹Tw /81NFK̞C͉Úgu̪Ƒ',Xؾ)ևry2/ۆY<;gQֵ7""|uঘlR{-Dw'^qUfy) oo!d}m$ h\MDXJ)dM8ճi %K1z 5⃰sO'77̃8}6}]%YN{C,k&˨9}/KΡ]VSJ0!|Fz <m*\a?֬Ng 9ʞn{"ڈGXNwz[r;vҲcE"QNB̬ H)(gPaUd ġ* ycʋ͕uJ96]BR{`q NpvA!}RFrwI%6p-Y_Ux$ֽy^dBOH ha5c).;+0y$vRDGV!0@Ogҏ%%,.^2Q&bo{)L}3&\iSY%#arrd_)F7:x}8pTevvL1X\|/j;bXkcI*A~9\: G|Z٘kD K#{SP;8 2nOIzEeޗ,JF1ј7UDNCdx F7Q;\KGh9᣺]̋a_XsLj)%x|,-d7lT3f R:cHv6JlN~H./ӮKO94mIxg"" %0 &HIc5y1<ُ|] ļÞ_5q3J"/ o$Dw8xmѹpk%@.F.X4j90g ox:R$V[YgLypTџ #l^0M2N,D}'}{ M̍'J* 9 CN&{V6(w~sr6IlY`TFce=(&AzKFv9cnADtL8YXe꒻Do-Q,x]A-Q-؈teو`lδ^ܛc呏p&(ɷJb26<ِg+iL 'G{P4h8x*՚ŵt.KY/ln$Z A~r2nz'RY6\7ʂ? T'O h_+"/ pu?c2;ˋ"GWemP2)W`hݟ.~Y%qkڝm2'YFKhRTJΙC4ƃ^3A.5!&:88w>?H+c;a-V 36v'L}C'h[]1X&@#[&nl}.xvh]eC&lu /NY@DoQt;IT . %\z'J|uM&xBxG89(YK#8к}ޒǞxE@nyFɘ;Čq՗߸'Bfw0* kG:'E,ÿ޲YmƔ8 7NG`;e\34m3 ldNP)Rں Qt8hu T瀔 n+ue:QGS]2Hu{8V>v&YNt!EAAp2\]1c{1']@)tm jZ8\ͽqQ?4(59M"@L,陾 ӂgrS&9DbŤ.˳0cfgLmk˪/J#.jP.zv~v$P$8:F 8@kZMOzbQ$X D4`zu' KAg@0ckQFDKDdrc۴W]Q'җm ?дƶXC=,7 Ioq"aPCcQgmٸn"yz;g.7ANOC`Ux>yQY!?hu^|\OjtHݨ|\_  R^0`;f#tBZm6(\A]k+T4VeNDW@m)KdvZ{<}tC; rIEͤKowӵThތyfҕFaT6HB~eEd;$GeeJt4u,0%14eZM\~MW;5g=k3PzN_>qpe'0J :h[:lI$2ߦl@@(D3\j!,#),>1 ~gu<VctMaq__jkW @meX>#Jv4 z@W,H KlӃ2~n#1j A7*Lc)ms6&̆}5}w+^U96{y3qi2U~Q3I,Tᗮ[Jogr2U@0J@ xOإI7 $D΃W\P럁c~.W ג)cHԖ\=7MQ>) }YtSilp&k bIB%v(-_bvym@]A7C-mGs_ q<"6bD}"bf6*/6_R +N^W3/P['HcAe$U-wgyڧ^zjt- 1?w Lb|:\*PK2W)cO;mef .t?Z(*:wy(jGTuEv24wF-NFH?Wki1~ Ngȁn i׈@d=3kW3;`( -I':#cr}z;i!qj#?)0Tĕ4Iid{zVUoCrm-˖cWB҅ tm[3ˆ5]B/%ߟO b]iY>B|?"g7 =fL`3ϫ٪+XI„RҤvyYKBKLRLEH]@-b $Akw; x`ťk{^ l۩vo. =zXi?4\GQ)3/Yu H/΃;R?(ïH{F|"*1 r)*$4ߪO8._;~Sl!D7)Dg<⫲_ V25* egr^v.@YQOtKuAf%:FzHoB*'/Fbϧ30dM> N!X*ؚXAzg| ϩ)TC&idDJAs-N!o20Јk_j-=3gdr 6 O_3A C#a .Շs+,ye~{Y˭pI`=h m@U@L:u4^ԣP n\_qmQQ;v -R( Pd߫.Zq-[*YxK6*,̛ɚ$oeڈ6ޕg$[ņZQ US;86/vJC^ oQ}:9xӂoPwb>T8<ԖiHvi6x:$%XK>=~őD {L Nܝ@2ۉy?6 ASQu1%BM& hNQj7 0Рm9*4vz@JoUo"o5pQ]﮻L%c's %M̭.)kt zdz|PqcD:E# bre--ԝCZ!i;'gYya º5_bgk&ca y'luc&Zkh*iR1^fHYK^bXV6|Ҧ>vs?sL4Tc n=𦳷a7Im7Ď&̡ǘ~$o'xx6EF^insfDbv;ŵ(U>uI-ΝzYM <$Bvwnhs% %lpts°z-Grbet 2g /iR E2$ɏi}'<km#(?#m7)BHrt^i)8}SX)2d]WOC(6H-qc]`+ug?{|(+QƏs l[Zw7,5x$N[S}fnx ]&{`GhϧkE;ZWZң UdjΫ%Eyl@E:X˩3n@nj8sb +8 (|N.Ē=IF,(ɖ!9¾NƳTh E fJjITŸ8<<7}+-UR)]*URrݖOk r`߀R}oi|đþ;R҇zEqP[@WdP^ңs=x-/?"u)1qʳՌPAQ s<.r?Վ:GA5(-SKs~,6$I" Yvա:4OoR ,6X!c&y (3^فس%0OYNzV ]HmzF4#$QƩ0Ay#Gھo5 r77X* E 9&Δ!] 4(0*hUċ\,wɊj[.u:-. isjv/]`МTf${Zog|!zwYYxQC7q< i^Z.YKjb- ]p{;@wz/&wFb4?Y(-ZV4LYSbf4Iأ&rŘL3E1Ca&Ig/wSȭ[&ɔ]c:ߞ~J4&|Vs1v%CݶȆ HnOv MjIy$ռU tn%eC^ wZbE~n~Q=L a&ð|=BI=۷;V_i Y=ū8ߴTaGYep'Xvz1QS8?Nw!RH4kAǢd( ԔWpqqXNVNGjf YcRZ(B-B,}=\aѓ?6j9vDv${ɡW/pypG"Ъ+񤏛XO ⽉D)°?u7)SLB.U7 H$ǖn~qo^B,(֋e F)B"8pqVҲزV+\;OzY)K,Z+r{JCMn:8MY9 t{0E1#qWuﶙ†7z c|$VC$ӰۑG62Rܚܤfs O[[GKR]ϢݷX-2%$tδ;jPz^j!P, (z݉r%qS]!ϷmK>G130lӍ{F^6eJg~.r Z.wZ⭔^6Σ\3~% Ilq)xZ[ VRS-$d.ىjEˏS{ y0=AHKZθàk  ~I[?ɮ=?;eslck [EӴhmkh!Tl2?*{Z>}qr(⯪* jjWX3`hHu 7q9S}.=g?PxF9onZ^$W5&70@1{܉sܻZAXR~̍ZZ8q$r8HNQpMy6|R&4ϧ^wl=qzaM=W9@wD\քBI* [UEL&ξ,1{ N(fhǸOu6M;uJt^ZBԞXx d4 A)q+ZYW}[Gޖu*z<گ-bn%VHf %yY޺[nIV|<{b|<BJQ8$&QM }'@C4rYC|#շ2(қ}d:d*Hg;Ϝ4LwŨ{3m6_o6\"ZݩM69!/ vNbgY3?ʢ,`,:>?%o@LfpFn$W: oۧg%q e,@brpVa8&G{:?S4[o'm <ް&c$|~&u"[1U%?u~|D"d yJ.gňse`Tޭ0ҊMr* }TQM%rug|aNdB4M8锷A6U2^lIܗ~u|,`ޮ5U.|Bk~ [)!~]B,kJY6'z lr׈ro[/|Orc463WÐ%d=%ydXm?>75d3S.;YHCgܶ|?&pj5*y6"&L\|͇d{M]mIo"Ġk<:Lo8 ˪;JwCu4OSj(H^Pens%oB<=F&|=>אּ&Ls՚r'iG} XU[-wnYh2Eal@Pyw~.ŧňk]k( @mԚԘW^XpL64]R1b>p܄~X[S,{Cq60CXmľTδ@tbJR(ZQCUg[`t[Ho3̨K^r4GZ7]+|DuW֠/{l՘ 3=UK'شٞ-ضìZd J[ Jk>lg\/P=AԌMKnpc]J'IjQ+y=1mk# ҵncEO'"‰QBr y 悼*N]5M@#(W?{=\.irQǠX( r䯟"c=ѭ=Bd2]w0TРQDut{ 0@PqAfxW 9awr:?P7#6sy .D/%6áXU\Xefc26P2Hϱ7Gt^UTs3Q6?ĥ#gOy"λ+5m&_]*sFTƨ(z4ϐdmY?AOD{[ܑ"/;a"X@eA~U I?`[wն]#֟_ 2Ʌ55*ٰu)"lozz) Hvwo_:?ۻyr7"tf~ewmvMkEZ,ˇoaDe;j]_(_HҡZJ%4j rDx/9{,+7C`aCF ЋȕW3TrG ڐRჍk􂈹kbHL:Iڲ~&<=pJ(b1{( V]Zz9X޺dLex}b`a{0eG׀#6FL!ܲ!n<y=e3Z`?>l(pp#cRѺtډ{/ߧNqe93XFd,vlyxdթND,KtZAxb&]d"pe|(8qCoule<z1 ,)"|Xe1aE85&pl |l0ڊt $ڨ1UwTʛ ?.ޖ.UYHXt.CQ[v̉ ׬( 99̵qURͨg-55o4.b G.oDEcz[·扁0fn r(J w52g h ,ٲLubK @u&G58HQHoP/0ֹ_o=J) =n(}p"I=n˩]oj=%˰ $yr.W8=rXJe!z항2[,;^՟wޭ L(o@amE󙍱fbSlMfì;X\CuWV}Zx>RWeRdvBFi}R2w3 iB"|Pac(TbYC?Jx!=*芊+GsE]~jߓJ(N ܹ=OB oSp:i.WsBhgV8QIb[]oҏvAv,?Ɣ=IO%s&;{ϵrO[YݴgZ&pDN׷^ brJ0zt 5Ϥ搚τ eUV wc(w"$ #);f~#駄7[sC/:?oUy~PJ9RT7dk!V&JioҌT^ěKVWĐAqJ\M=[{OYG V̢$`aqpjr[ Dݯb8mqQY:i׋]bKߊҬ괴C^g/ fntf9C+Ygs'Vly⅗>de6:ژvL5 a rÐ!ouI 3UY}-)F{ZXZwI^q_l%0DOt^[F5K gix2@]̙VXƕf$}M^_+4ZzD9a(*S9,v箁/#݀Z2k7Dr*1PoZ%eG l c>b:nD,Wk i Q>8UPJ JB3*_ź_q= 57$D`0I)+^)yֶ!}#u偁u_sP C^vGdQTLoo0<ܫ:3uA1A5|DU=`|M+!AKM^my<.t/Gd e#K4RC-^w6s[b#O!R4LVNHmeϤ\;/O˺ w0;LđƒQ0ycd Pc'qReZY֙ :g[GJ#92DYuTkCE-Un/6UBMq 2#-f, 6cLL74v!Ţ=T-zTZJRCI:䓭3E*<՛`sȻ(J9ͼHu_H߈ YHOPȧ( @7".p *7-4Xk (/$n"x!sQt}ŷAk F,?ҥY&QDmrEO4dMhRm[L ]`a?9YkerK (TJ0bnmM@l_RAA۸~R䈧7STGʜ@,?$86֮jpl$RvُЬ]BNiNOZd6e "(D{R+*n w#Jȵӹ,z]H2:7!?̿Vv&9 ,A[PfF( foS=4#:}E߾BVکKRlF1w3<3i8v?=OexTH?C2+"%zgWCmō&@::Gc# ? N@Meʾ-Q\]؆=5pTdzFP 8\NJF0T+cŚ=Dc*a)e#e9v<$L(,QKWYvi5liVk|xv} q\ iWU!EfsY5lתdnL (0+W76'%Z9GtB9FckB渀9"7GAGih+Zy "*aݙ9*Kl+ .hо]4"xC[ZPT]gMtP mD"*٘߱xTR[˿;o>W=j5K[>2cĺ) Z|[}T1_P8 0\n=[ ‘cdwuK@H1:D4MC*En)XN9O& 71ҹ PN{`['}\MXmmrRo0.86H[oa]/*ɺyhn3ũ2Hexc'rhyͪ2[\?zϑME%k=(LEzsQO1(;&P1Os RawAUavg@W]&~VV8}Kdhnr-&TV)>4v;R+PeZgϠ(VBZBhhd+]w*y*谖"d^_w]' /\O wPl\3ߗTf!.hL$7+rzdfo::/(0fh,ILQ^q;^@JԨj (w߿ H mizsT<5je>>l!|HI~ȕ&hO{9t,s98_{Cy>#2v @@ޥ3;PZPU5ԳUVj,=C0;]NDgX%|D P P- ]ExĊ]JU/H,(bM2\NYJ/s# hr,=ӱB/4Z:g-ïE. 9%f W=}$>4sQ>1CLρ(yq+ }~(#t/W5LzgԝfdLu_ Va7?\O0̇: k0󳺹P9BmRt^7к|:vuzs E.q0:CS_yg^QJ7wiP쥳M#g -̱_=a;zPbt>yō >:w(`M-Bl,^Fiκ+aRP.ѷ8h/MGfar%2qB~GMI24\O0B>O;6M'4 ic|ƆhH6(o{]=gG,d#=YMk2^ZC݄uH?.o_{v;@\@=.1ySc6i?$Ţ*u X-k5,z f@VDKPw%amWNnh^GBӎ򞦀j߽?:zV֒N?pZ1?rH*$yH/ZIۋN=7Ioo"Rz,qw!HfL15%ZMxZ% cӝިUF-4Nvtn fCG9OffzEt|@0x=)\Gb{J99{Jٕr '`USJY9f!Ov'tZ&TC}%Ӯ2TF!g-=048ѳ`fw!dYLMoFI Q4$s8t)e?dU*Ĩߵ+ |D.AϧUڸiVy 媉NDS^n\/d_Ԛഎ+OzkFy( kΛ93]ztIk=wAB]&{E.qۜqG 'c I`:vHvI"t~T(G 39\j-Wiv8^g*tޕlܘ{ۺҰI..qATEs^ gmmoc"^DEԖp3$Z7z_V,y3F U [1t/Ln^ &([ cwM)J?>rNr;(ͅ2v./es*L^q1C]`>}o5Iߔz$CQ}c|5❲5zI ']*6> Ko