asterisk-ael-18.12.1-1.el8.2 > 6 6_6 3!y덏%!E/֡c !E/֡_:_܍*z3[S$hk"::h;Upj$M~j%.hFUqڠbЧ8{B!,}MVuGpz* 3n7?@S^8t7`ߤIGPVHM*]̺s1ooVaYvSMHżdƐ+U eܬF@HzO914210aee78dfe5b806108fb7d89374156323bf85e43534a6453edefcf7a787d018214fdb79374c4360e1d4b9e9eb1ff0aeddec14߄3!y덏%!E/֡c !E/֡elyJ)ϰx<8bYU&@T>5t#8Wtƞ{FELs/bE"#U: 1+_4jX!AO#`~pd u'(pcEdS(^?s W;Ø V~e)3!z7 ̔KϩkgZ\L)sŬ^#Ӻ&!?(©Q5D&2AŃdzbfMAj5Rv ïRȢ(\)Q|k\1fq\kMC.I R G${p:݈yzOJ"$yUB\M"S_z >8.ˢf?amn"vjǝ tޤo-b`Uig;%;}-O"?IToz1Iխ;]R.k[4`q,~(R1{3ܿOHɎۘ >p=?d  S $ H  Z  l      ( L }  ,t2(z89 :[Gٸ H I X Y\H ]l ^"bۼd;e@fClEt` u݄ vݨw x y$Casterisk-ael18.12.11.el8.2AEL (Asterisk Extension Logic) modules for AsteriskAEL (Asterisk Extension Logic) mdoules for 9Fedora ProjectFedora ProjectGPLv2Fedora ProjectUnspecified* AAccccccccc29c95ad4bfb16671c3a512aa520c4734e9bb23cd81c1c71a0f695684d8f088931e222d25ed9fd5b8ebf8daeddbe7641fe571f3fae7d7e1091b6439ef316e824176979b36ce84e9a9693a44c2f746f915925c887ae9b7a97f4173a14d702bc2d3df27d41bc4c7810ab15be2afb7d0c38ae1dd979177c27dd30c07438e00eba40d../../../../usr/sbin/aelparse../../../../usr/lib64/asterisk/modules/    @asteriskconfig(asterisk-ael)ױ@b@bbbbbbbbbbTa@a@` @`C` @`t6@`.V`!'`@` l_^@_/@_@_@_P_P_G@_^^ϧ^I^^^&@^j$@^B@^0"@^r^@]+]]Γ@]@]@]]rJ@]9]8H@],j\h\@\y\f\R@\]I>]I-I-I-I-IH,HCH@HWH@H@H@HkmHQHO@H1kH @Gu@GGG@G@G@G߮G΋@G@G@G@GG{|Gt@Gl@GiGiGg@GcGcG_@G_@G^{G]*@GO@GB@GAzG=@G9G G m@F%@FS@F^F^F @F@FF;@F;@FF@FtF#@F@FEF@F@Fzh@FvsFvsFvsFvsFvsFu"@Fu"@Fr@FAF1F@EWE@E@E8@E7hE6@E6@E6@E2"DDD(@DWIDLDGwDGwDF&@D - 18.12.1-1.2Fedora Release Engineering - 18.12.1-1.1Michal Josef Špaček - 18.12.1-1Michal Josef Špaček - 18.11.2-1Michal Josef Špaček - 18.10.1-1Michal Josef Špaček - 18.9.0-1Michal Josef Špaček - 18.8.0-1Michal Josef Špaček - 18.7.1-1Michal Josef Špaček - 18.6.0-1Michal Josef Špaček - 18.5.1-1Michal Josef Špaček - 18.4.0-1.6Jitka Plesnikova - 18.4.0-1.5Fedora Release Engineering - 18.4.0-1.4Sahana Prasad - 18.4.0-1.3Fedora Release Engineering - 18.4.0-1.2Jitka Plesnikova - 18.4.0-1.1Jared K. Smith - 18.4.0-1Jared K Smith - 18.3.0-1Jared K. Smith - 18.2.1-1Pavel Raiskup - 18.2.0-1.2Fedora Release Engineering - 18.2.0-1.1Jared K. Smith - 18.2.0-1Jared K. Smith - 18.1.0-1Jared K. Smith - 18.0.1-2Jared K. Smith - 18.0.1-1Jared K. Smith - 18.0.0-1Josef Řídký - 17.7.0-2Jared K. Smith - 17.7.0-1Josef Řídký - 17.5.0-2.3Fedora Release Engineering - 17.5.0-2.2Jitka Plesnikova - 17.5.0-2.1Jared K. Smith - 17.5.0-0.rc1.1Jared K. Smith - 17.4.0-2Jared K. Smith - 17.4.0-1Jared K. Smith - 17.4.0-0.rc2.1Jared K. Smith - 17.4.0-0.rc1.1Jared K. Smith - 17.3.0-1Jared K. Smith - 17.2.0-1Fedora Release Engineering - 17.2.0-0.rc1.2.1Tom Callaway - 17.1.0-2Jared K. Smith - 17.1.0-1Jared K. Smith - 17.1.0-0.rc1.1Jared K. Smith - 17.0.1-1Jared K. Smith - 17.0.0-2Jared K. Smith - 17.0.0-1Jared K. Smith - 16.6.1-1Jared K. Smith - 16.6.0-1Jared K. Smith - 16.5.1-1Jared K. Smith - 16.5.0-1Fedora Release Engineering - 16.4.1-2Jared K. Smith - 16.4.1-1Jitka Plesnikova - 16.4.0-2Jared K. Smith - 16.4.0-1Jared K. Smith - 16.2.1-1Jared K. Smith - 16.2.0-1Fedora Release Engineering - 16.1.0-4Björn Esser - 16.1.0-3Björn Esser - 16.1.0-2Jared Smith - 16.1.0-1Jared Smith - 16.0.1-1Jared Smith - 16.0.0-1Jared K. Smith - 15.5.0-1Jitka Plesnikova - 15.4.1-2Jared K. Smith - 15.4.1-1Jared K. Smith - 15.4.0-1jsmith - 15.3.0-1Jared Smith - 15.2.2-2Jared Smith - 15.2.2-1Jared Smith - 15.2.1-3Jared Smith - 15.2.1-2Jared Smith - 15.2.1-1Igor Gnatenko - 15.2.0-5Fedora Release Engineering - 15.2.0-4Jared Smith - 15.2.0-3Björn Esser - 15.2.0-2Jared Smith - 15.2.0-1Jared Smith - 15.1.5-1Jared Smith - 15.1.4-2Jared Smith - 15.1.4-1Jared Smith - 15.1.3-1Jared Smith - 15.1.2-1Jared Smith - 15.1.1-1Jared Smith - 15.1.0-1Jared Smith - 15.0.0-1Jared Smith - 14.6.2-1Jared Smith - 14.6.1-6Jared Smith - 14.6.1-5Jared Smith - 14.6.1-4Jared Smith - 14.6.1-3Jared Smith - 14.6.1-1Jared Smith - 14.6.0-2Jared Smith - 14.6.0-1Fedora Release Engineering - 14.5.0-4Fedora Release Engineering - 14.5.0-3Till Maas - 14.5.0-2Jared Smith - 14.5.0-1Jitka Plesnikova - 13.11.2-1.2Fedora Release Engineering - 13.11.2-1.1Jared Smith - 13.11.2-1Jared Smith - 13.11.1-1Jitka Plesnikova - 13.9.1-1.1Jared Smith - 13.9.1-1Jared Smith - 13.7.2-2.1Michal Toman - 13.7.2-2Jared Smith - 13.7.2-1Jared Smith - 13.7.1-2Jared Smith - 13.7.1-1Fedora Release Engineering - 13.3.2-3.1Jared Smith - 13.3.2-3Robert Scheck - 13.3.2-2Fedora Release Engineering - 13.3.2-1.2Jitka Plesnikova - 13.3.2-1.1Jeffrey C. Ollie - 13.3.2-1:Jeffrey C. Ollie - 13.3.1-1:Jeffrey C. Ollie - 13.3.0-1:Jeffrey C. Ollie - 13.2.0-1:Jeffrey C. Ollie - 13.1.1-1:Jeffrey C. Ollie - 13.1.0-1Peter Robinson 13.0.2-3Tom Callaway - 13.0.2-2Jeffrey C. Ollie - 13.0.2-1Jeffrey C. Ollie - 13.0.1-1Jeffrey C. Ollie - 13.0.0-1Tom Callaway - 11.13.1-2Jeffrey C. Ollie - 11.13.1-1Jeffrey C. Ollie - 11.13.0-1Jeffrey C. Ollie - 11.12.1-1Jeffrey C. Ollie - 11.12.0-1Jeffrey C. Ollie - 11.11.0-1Jitka Plesnikova - 11.10.2-2.2Fedora Release Engineering - 11.10.2-2.1Jeffrey Ollie - 11.10.2-2:Jeffrey Ollie - 11.10.2-1:Jeffrey Ollie - 11.10.1-1:Jeffrey Ollie - 11.10.0-1:Fedora Release Engineering - 11.9.0-2.1Dennis Gilmore - 11.9.0-2Jeffrey Ollie - 11.9.0-1:Jeffrey Ollie - 11.8.1-1:Jeffrey Ollie - 11.8.0-1:Jeffrey Ollie - 11.7.0-1:Jeffrey Ollie - 11.6.1-1:Jeffrey Ollie - 11.6.0-1:Jeffrey Ollie - 11.5.1-3:Jeffrey Ollie - 11.5.1-2:Jeffrey Ollie - 11.5.1-1:Fedora Release Engineering - 11.4.0-2.2Petr Pisar - 11.4.0-2.1Rex Dieter 11.4.0-2Jeffrey Ollie - 11.4.0-1:Tom Callaway - 11.3.0-2:Jeffrey Ollie - 11.3.0-1:Jeffrey Ollie - 11.2.2-1:Jeffrey Ollie - 11.2.1-1:Jeffrey Ollie - 11.2.0-1:Jeffrey Ollie - 11.1.2-1:Jeffrey Ollie - 11.1.1-1:Jeffrey Ollie - 11.1.0-1:Jeffrey Ollie - 11.0.2-1:Dan Horák - 11.0.1-3Dennis Gilmore - 11.0.1-2Jeffrey Ollie - 11.0.1-1Jeffrey Ollie - 11.0.0-1:Jeffrey Ollie - 11.0.0-0.7.rc2:Jeffrey Ollie - 11.0.0-0.6.rc1Jeffrey Ollie - 11.0.0-0.5.beta2Jeffrey Ollie - 11.0.0-0.4.beta2Jeffrey Ollie - 10.8.0-1Dan Horák - 11.0.0-0.3.beta1Dan Horák - 10.7.1-2Jeffrey Ollie - 10.7.1-1Jeffrey Ollie - 10.7.0-1Jeffrey Ollie - 10.6.1-1Jeffrey Ollie - 10.6.0-1Jeffrey Ollie - 11.0.0-0.2.beta1Fedora Release Engineering - 10.5.2-1.2Petr Pisar - 10.5.2-1.1Jeffrey Ollie - 10.5.2-1:Petr Pisar - 10.5.1-1.1Jeffrey Ollie - 10.5.1-1Jeffrey Ollie - 10.5.0-1Petr Pisar - 10.4.2-1.1Jeffrey Ollie - 10.4.2-1Jeffrey Ollie - 10.4.1-1Jeffrey Ollie - 10.4.0-1Jeffrey Ollie - 10.3.1-1Russell Bryant - 10.3.0-1Russell Bryant - 10.2.1-1Jeffrey C. Ollie - 10.1.2-2Jeffrey C. Ollie - 10.1.2-1Jeffrey C. Ollie - 10.1.1-1Jeffrey C. Ollie - 10.1.0-1Russell Bryant - 10.0.0-2Fedora Release Engineering - 10.0.0-1.1Jeffrey C. Ollie - 10.0.0-1Jeffrey C. Ollie - 10.0.0-1Jeffrey C. Ollie - 10.0.0-0.7.rc3Jeffrey C. Ollie - 10.0.0-0.6.rc2Jeffrey C. Ollie - 10.0.0-0.5.rc1Jeffrey C. Ollie - 10.0.0-0.4.beta2Jeffrey C. Ollie - 10.0.0-0.3.beta2Jeffrey C. Ollie - 10.0.0-0.2.beta2Jeffrey C. Ollie - 10.0.0-0.1.beta1Petr Sabata - Sabata - C. Ollie - C. Ollie - 1.8.5-0.2Jeffrey C. Ollie - 1.8.5-0.1.rc1Jeffrey C. Ollie - 1.8.5-0.1.rc1Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - Mašláňová - Mašláňová - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - - 1.8.3-1 - 1.8.3-0.7.rc3Jeffrey C. Ollie - 1.8.3-0.6.rc2Jeffrey C. Ollie - 1.8.3-0.5.rc2Jeffrey C. Ollie - 1.8.3-0.4.rc2Fedora Release Engineering - 1.8.3-0.3.rc2Jeffrey C. Ollie - 1.8.3-0.2.rc2Jeffrey C. Ollie - 1.8.3-0.1.rc1Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.8.2-1Jeffrey C. Ollie - C. Ollie - 1.8.1-1Dennis Gilmore - 1.8.0-6Dennis Gilmore - 1.8.0-5Dennis Gilmore - 1.8.0-4Jeffrey C. Ollie - 1.8.0-3Jeffrey C. Ollie - 1.8.0-2Jeffrey C. Ollie - 1.8.0-1Jeffrey C. Ollie - 1.8.0-0.8.rc5:Jeffrey C. Ollie - 1.8.0-0.7.rc3Jeffrey C. Ollie - 1.8.0-0.6.rc2Jeffrey C. Ollie - 1.8.0-0.5.beta5Jeffrey C. Ollie - 1.8.0-0.4.beta4Jeffrey C. Ollie - 1.8.0-0.3.beta3Jeffrey C. Ollie - 1.8.0-0.2.beta2Jeffrey C. Ollie - 1.8.0-0.1.beta2Jeffrey C. Ollie - C. Ollie - Maslanova - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.6.1-0.26.rc1Tomas Mraz - 1.6.1-0.25.rc1Fedora Release Engineering - 1.6.1-0.24.rc1Jeffrey C. Ollie - 1.6.1-0.23.rc1Fedora Release Engineering - 1.6.1-0.22.rc1Jeffrey C. Ollie - 1.6.1-0.21.rc1Tomas Mraz - 1.6.1-0.13.beta4Jeffrey C. Ollie - 1.6.1-0.12.beta4Jeffrey C. Ollie - 1.6.1-0.10.beta4Jeffrey C. Ollie - 1.6.1-0.9.beta4Jeffrey C. Ollie - 1.6.1-0.8.beta4Jeffrey C. Ollie - 1.6.1-0.7.beta3Alex Lancaster - 1.6.1-0.6.beta2Jeffrey C. Ollie - 1.6.1-0.5.beta2Jeffrey C. Ollie - 1.6.1-0.4.beta2Jeffrey C. Ollie - 1.6.1-0.3.beta2Jeffrey C. Ollie - 1.6.1-0.2.beta2Jeffrey C. Ollie - C. Ollie - C. Ollie - 1.6.0-1- Bastien Nocera - 1.6.0-0.22.beta9Jeffrey C. Ollie - 1.6.0-0.21.beta9Jeffrey C. Ollie - 1.6.0-0.20.beta9Jeffrey C. Ollie - 1.6.0-0.19.beta9Jeffrey C. Ollie - 1.6.0-0.18.beta9Jeffrey C. Ollie - 1.6.0-0.17.beta9Jeffrey C. Ollie - 1.6.0-0.16.beta9Jeffrey C. Ollie - 1.6.0-0.15.beta9Jeffrey C. Ollie - 1.6.0-0.14.beta9Jeffrey C. Ollie - 1.6.0-0.13.beta8Jeffrey C. Ollie - 1.6.0-0.12.beta7.1Jeffrey C. Ollie - 1.6.0-0.11.beta7.1Jeffrey C. Ollie - 1.6.0-0.10.beta7Jeffrey C. Ollie - 1.6.0-0.9.beta6Jeffrey C. Ollie - 1.6.0-0.8.beta6Jeffrey C. Ollie - 1.6.0-0.6.beta6Tom "spot" Callaway - 1.6.0-0.5.beta5Jeffrey C. Ollie - 1.6.0-0.4.beta5Jeffrey C. Ollie - 1.6.0-0.3.beta4Jeffrey C. Ollie - 1.6.0-0.2.beta4Jeffrey C. Ollie - 1.6.0-0.1.beta4Jeffrey C. Ollie - 1.4.18-1Jeffrey C. Ollie - 1.4.17-1Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.4.16-2Jeffrey C. Ollie - 1.4.16-1Jeffrey C. Ollie - 1.4.15-7Jeffrey C. Ollie - 1.4.15-6Jeffrey C. Ollie - 1.4.15-5Jeffrey C. Ollie - 1.4.15-4Jeffrey C. Ollie - 1.4.15-3Jeffrey C. Ollie - 1.4.15-2Jeffrey C. Ollie - 1.4.15-1Jeffrey C. Ollie - 1.4.14-2Jeffrey C. Ollie - 1.4.14-1Jeffrey C. Ollie - 1.4.13-7Jeffrey C. Ollie - 1.4.13-6Jeffrey C. Ollie - 1.4.13-1Jeffrey C. Ollie - C. Ollie - 1.4.11-1Jeffrey C. Ollie - C. Ollie - 1.4.10-1Jeffrey C. Ollie - 1.4.9-7Jeffrey C. Ollie - 1.4.9-6Jeffrey C. Ollie - 1.4.9-5Jeffrey C. Ollie - 1.4.9-4Jeffrey C. Ollie - 1.4.9-3Jeffrey C. Ollie - 1.4.9-2Jeffrey C. Ollie - 1.4.9-1Jeffrey C. Ollie - 1.4.8-1Jeffrey C. Ollie - C. Ollie - 1.4.7-1Jeffrey C. Ollie - 1.4.6-4Jeffrey C. Ollie - 1.4.6-3Jeffrey C. Ollie - 1.4.6-2Jeffrey C. Ollie - 1.4.6-1Jeffrey C. Ollie - 1.4.5-10Jeffrey C. Ollie - 1.4.5-9Jeffrey C. Ollie - 1.4.5-8Jeffrey C. Ollie - 1.4.5-7Jeffrey C. Ollie - 1.4.5-6Jeffrey C. Ollie - 1.4.5-5Jeffrey C. Ollie - 1.4.5-4Jeffrey C. Ollie - 1.4.5-3Jeffrey C. Ollie - 1.4.5-1Jeffrey C. Ollie - 1.4.4-2Jeffrey C. Ollie - 1.4.4-1Jeffrey C. Ollie - 1.4.2-1Jeffrey C. Ollie - 1.4.1-2Jeffrey C. Ollie - 1.4.1-1Jeffrey C. Ollie - 1.4.0-6.beta4Jeffrey C. Ollie - 1.4.0-5.beta3Jeffrey C. Ollie - 1.4.0-4.beta3Jeffrey C. Ollie - 1.4.0-3.beta3Jeffrey C. Ollie - 1.4.0-2.beta3Jeffrey C. Ollie - 1.4.0-1.beta3Jeffrey C. Ollie - 1.4.0-0.beta2Jeffrey C. Ollie - 1.2.10-1Jeffrey C. Ollie - C. Ollie - 1.2.8Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.2.7-1Jeffrey C. Ollie - 1.2.6-3Jeffrey C. Ollie - 1.2.6-2Jeffrey C. Ollie - 1.2.6-1Jeffrey C. Ollie - 1.2.5-1Jeffrey C. Ollie - 1.2.4-4Jeffrey C. Ollie - 1.2.4-3Jeffrey C. Ollie - 1.2.4-2Jeffrey C. Ollie - 1.2.4-1Jeffrey C. Ollie - 1.2.3-4Jeffrey C. Ollie - 1.2.3-3Jeffrey C. Ollie - 1.2.3-2Jeffrey C. Ollie - 1.2.3-1- Rebuilt to change Python shebangs to /usr/bin/python3.6 on EPEL 8- Rebuilt for Update to upstream 18.12.1 release.- Update to upstream 18.11.2 release.- Update to upstream 18.10.1 release.- Update to upstream 18.9.0 release.- Update to upstream 18.8.0 release.- Update to upstream 18.7.1 release.- Update to upstream 18.6.0 release.- Update to upstream 18.5.1 release.- Fix build (#1977579)- Perl 5.36 rebuild- Rebuilt for Rebuilt with OpenSSL 3.0.0- Rebuilt for Perl 5.34 rebuild- Update to upstream 18.4.0 release for bug fixes- Update to upstream 18.3.0 release for security updates and bug fixes- Update to upstream 18.2.1 release for security updates, related to: - AST-2021-001/CVE-2020-35776: Remote crash in res_pjsip_diversion - AST-2021-002/CVE-2021-26717: Remote crash possible when negotiating T.38 - AST-2021-003/CVE-2021-26712: Remote attacker could prematurely tear down SRTP calls - AST-2021-004/CVE-2021-26714: An unsuspecting user could crash Asterisk with multiple hold/unhold requests - AST-2021-005/CVE-2021-26906: Remote Crash Vulnerability in PJSIP channel driver- rebuild for libpq ABI fix rhbz#1908268- Rebuilt for Update to upstream 18.2.0 release for security fixes, bug fixes, and features- Update to upstream 18.1.0 release for bug fixes and features- Add dependency on sox- Update to 18.0.1 release for AST-2020-001 and AST-2020-002 security fixes- Update to upstream 18.0.0 release for new features- Rebuilt for new net-snmp release- Update to upstream 17.7.0 release- Rebuilt for new net-snmp release- Rebuilt for Perl 5.32 rebuild - Add missing source files- Update to upststream 7.5.0-rc1 release for testing- app_page no longer depends on app_meetme- Update to upstream 7.4.0 release for bug fixes- Update to upstream 7.4.0-rc2- Update to upstream 7.4.0 RC 1- Update to upstream 7.3.0 release for bug fixes- Update to upstream 7.2.0 release for bug fixes- Rebuilt for rebuild for libsrtp2- Update to upstream 17.1.0 release for security and bug fixes- Update to upstream 17.1.0 pre-release for security and bug fixes- Update to upstream 17.0.1 release for AST-2019-006, AST-2019-007, AST-2019-008 security updates- Move from python2 to python3- Update to upstream 17.0.0 release for new features- Update to upstream 16.6.1 for bug fixes - Work on building in EPEL-7 and EPEL-8- Update to upstream 16.6.0 for security and bug fixes - Update to using bundled pjproject release 2.9- Update for upstream security release 16.5.1, with AST-2019-004 and AST-2019-005- Update to upstream 16.5.0 release for security and bug fixes- Rebuilt for Update to upstream 16.4.1 release for security updates AST-2019-002 and AST-2019-003 related to remote crash vulnerabilities- Perl 5.30 rebuild- Update to upstream 16.4.0 release for bug fixes- Update to upstream 16.2.1 release for security / CVE-2019-7251 / AST-2019-001- Update to upstream 16.2.0 release for bug fixes- Rebuilt for Rebuilt for (#1666033)- Add patch to explicitly use python2 shebangs- Update to upstream 16.1.0 security release- Update to upstream 16.0.1 security release- Update to upstream 16.0.0 release- Update to upstream 15.5.0 release for security and bug fixes- Perl 5.28 rebuild- Update to upstream 15.4.1 release for AST-2018-007 and AST-2018-008 security issues- Update to upstream 15.4.0 release- Update to upstream 15.3.0 release- Update asterisk.service to wait for the network to come up- Update to upstream 15.2.2 release for security updates - This update addresses security alerts AST-2018-001 through AST-2018-006 - Upstream changelog at Verify GPG signatures on source packages- Add missing BuildRequires on gcc/gcc-c++- Update to upstream 15.2.1 release- Escape macros in %changelog- Rebuilt for Update requirements for systemd- Rebuilt for switch to libxcrypt- Update to upstream 15.2.0 release - Upstream changelog at Update to upstream 15.1.5 release for AST-2017-014/CVE-2017-17850 security issue- Require mariadb-connector-c-devel, see RHBZ#1488483- Update to upstream 15.1.4 release for AST-2017-012 security issue- Update to upstream 15.1.3 release for security issue AST-2017-013- Update to upstream 15.1.2 release- Update to upstream 15.1.1 release for AST-2017-09, AST-2017-010, and AST-2017-011 security updates- Update to upstream 15.1.0 release- Update to upstream 15.0.0 release- Update to upstream 14.6.2 release- Re-enable corosync, see RHBZ#1478089- Add dependency on unbound-devel for res_resolver_unbound- Disable corosync modules until corosync works in ppc64le again- Fix MySQL header path (due to change in mariadb-devel patckage)- Update to upstream 14.6.1 release - Solves AST-2017-005, AST-2017-006, and AST-2017-007 security issues- Add perl to BuildRequires- Update to upstream 14.6.0 release - Re-enable radius sub-packages- Rebuilt for Rebuilt for Excludearch s390x- Update to upstream 14.5.0 release- Perl 5.26 rebuild- Rebuilt for Update to upstream 13.11.2 bug-fix release- Stop building the -radius subpackage, due to orphaned freeradius-client dependency - Update to upstream 13.11.1 security release for AST-2016-006 and AST-2016-007- Perl 5.24 rebuild- Update to upstream 13.9.1 release - Use instead of calling autoconf tools manually - Fix up shifting pjproject submodules - Fix up requires on speexdsp-devel for EPEL7 (RHBZ#1310444)- Fix alembic requirement- Do not use -m32/-m64 on MIPS- Update to upstream release 13.7.2 to fix ASTERISK-25702- Create sub-package for alembic scripts- Update to upstream 13.7.1 release for security fixes - Resolves AST-2016-001: BEAST vulnerability in HTTP server - Resolves AST-2016-002: File descriptor exhaustion in chan_sip - Resolves AST-2016-003: Remote crash vulnerability receiving UDPTL FAX data - Full changelog at - Also build the 'radius' sub-package against freeradius-client-devel, as the radiusclient-ng project is dead- Rebuilt for Remove %defattr macro invocations, as they are no longer needed- Rebuild for libical 2.0.0- Rebuilt for Perl 5.22 rebuild- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28, 11.6, and 13.1 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28.cert-5,, 11.6-cert11, - 11.17.1, 12.8.2, 13.1-cert2, and 13.3.2. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerability: - - * AST-2015-003: TLS Certificate Common name NULL byte exploit - - When Asterisk registers to a SIP TLS device and and verifies the server, - Asterisk will accept signed certificates that match a common name other than - the one Asterisk is expecting if the signed certificate has a common name - containing a null byte after the portion of the common name that Asterisk - expected. This potentially allows for a man in the middle attack. - - For more information about the details of this vulnerability, please read - security advisory AST-2015-003, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - - The security advisory is available at: - - * The Asterisk Development Team has announced the release of Asterisk 13.3.1. - This release is available for immediate download at - - - The release of Asterisk 13.3.1 resolves an issue reported by the - community and would have not been possible without your participation. - Thank you! - - The following is the issue resolved in this release: - - * --- pjsip: resolve compatibility problem with ast_sip_session - (Closes issue ASTERISK-24941. Reported by Matt Jordan) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 13.3.0. - This release is available for immediate download at - - - The release of Asterisk 13.3.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - New Features made in this release: - ----------------------------------- - * ASTERISK-24703 - ARI: Add the ability to "transfer" (redirect) a - channel (Reported by Matt Jordan) - * ASTERISK-17899 - Handle crypto lifetime in SDES-SRTP negotiation - (Reported by Dwayne Hubbard) - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24616 - Crash in res_format_attr_h264 due to invalid - string copy (Reported by Yura Kocyuba) - * ASTERISK-24748 - res_pjsip: If wizards explicitly configured in - sorcery.conf false ERROR messages may occur (Reported by Joshua - Colp) - * ASTERISK-24769 - res_pjsip_sdp_rtp: Local ICE candidates leaked - (Reported by Matt Jordan) - * ASTERISK-24742 - [patch] Fix ast_odbc_find_table function in - res_odbc (Reported by ibercom) - * ASTERISK-24479 - Enable REF_DEBUG for module references - (Reported by Corey Farrell) - * ASTERISK-24701 - Stasis: Write timeout on WebSocket fails to - fully disconnect underlying socket, leading to events being - dropped with no additional information (Reported by Matt Jordan) - * ASTERISK-24772 - ODBC error in realtime sippeers when device - unregisters under MariaDB (Reported by Richard Miller) - * ASTERISK-24752 - Crash in bridge_manager_service_req when bridge - is destroyed by ARI during shutdown (Reported by Richard - Mudgett) - * ASTERISK-24741 - dtls_handler causes Asterisk to crash (Reported - by Zane Conkle) - * ASTERISK-24015 - app_transfer fails with PJSIP channels - (Reported by Private Name) - * ASTERISK-24727 - PJSIP: Crash experienced during multi-Asterisk - transfer scenario. (Reported by Mark Michelson) - * ASTERISK-24771 - ${CHANNEL(pjsip)} - segfault (Reported by - Niklas Larsson) - * ASTERISK-24716 - Improve pjsip log messages for presence - subscription failure (Reported by Rusty Newton) - * ASTERISK-24612 - res_pjsip: No information if a required sorcery - wizard is not loaded (Reported by Joshua Colp) - * ASTERISK-24768 - res_timing_pthread: file descriptor leak - (Reported by Matthias Urlichs) - * ASTERISK-24685 - "pjsip show version" CLI command (Reported by - Joshua Colp) - * ASTERISK-24632 - install_prereq script installs pjproject - without IPv6 support (Reported by Rusty Newton) - * ASTERISK-24085 - Documentation - We should remove or further - document the 'contact' section in pjsip.conf (Reported by Rusty - Newton) - * ASTERISK-24791 - Crash in ast_rtcp_write_report (Reported by - JoshE) - * ASTERISK-24700 - CRASH: NULL channel is being passed to - ast_bridge_transfer_attended() (Reported by Zane Conkle) - * ASTERISK-24451 - chan_iax2: reference leak in sched_delay_remove - (Reported by Corey Farrell) - * ASTERISK-24799 - [patch] make fails with undefined reference to - SSLv3_client_method (Reported by Alexander Traud) - * ASTERISK-22670 - Asterisk crashes when processing ISDN AoC - Events (Reported by klaus3000) - * ASTERISK-24689 - Segfault on hangup after outgoing PRI-Euroisdn - call (Reported by Marcel Manz) - * ASTERISK-24740 - [patch]Segmentation fault on aoc-e event - (Reported by Panos Gkikakis) - * ASTERISK-24787 - [patch] - Microsoft exchange incompatibility - for playing back messages stored in IMAP - play_message: No - origtime (Reported by Graham Barnett) - * ASTERISK-24814 - asterisk/lock.h: Fix syntax errors for non-gcc - OSX with 64 bit integers (Reported by Corey Farrell) - * ASTERISK-24796 - Codecs and bucket schema's prevent module - unload (Reported by Corey Farrell) - * ASTERISK-24724 - 'httpstatus' Web Page Produces Incomplete HTML - (Reported by Ashley Sanders) - * ASTERISK-24499 - Need more explicit debug when PJSIP dialstring - is invalid (Reported by Rusty Newton) - * ASTERISK-24785 - 'Expires' header missing from 200 OK on - REGISTER (Reported by Ross Beer) - * ASTERISK-24677 - ARI GET variable on channel provides unhelpful - response on non-existent variable (Reported by Joshua Colp) - * ASTERISK-24797 - bridge_softmix: G.729 codec license held - (Reported by Kevin Harwell) - * ASTERISK-24812 - ARI: Creating channels through /channels - resource always uses SLIN, which results in unneeded transcoding - (Reported by Matt Jordan) - * ASTERISK-24800 - Crash in __sip_reliable_xmit due to invalid - thread ID being passed to pthread_kill (Reported by JoshE) - * ASTERISK-17721 - Incoming SRTP calls that specify a key lifetime - fail (Reported by Terry Wilson) - * ASTERISK-23214 - chan_sip WARNING message 'We are requesting - SRTP for audio, but they responded without it' is ambiguous and - wrong in some cases (Reported by Rusty Newton) - * ASTERISK-15434 - [patch] When ast_pbx_start failed, both an - error response and BYE are sent to the caller (Reported by - Makoto Dei) - * ASTERISK-18105 - most of asterisk modules are unbuildable in - cygwin environment (Reported by feyfre) - * ASTERISK-24828 - Fix Frame Leaks (Reported by Kevin Harwell) - * ASTERISK-24751 - Integer values in json payload to ARI cause - asterisk to crash (Reported by jeffrey putnam) - * ASTERISK-24838 - chan_sip: Locking inversion occurs when - building a peer causes a peer poke during request handling - (Reported by Richard Mudgett) - * ASTERISK-24825 - Caller ID not recognized using - Centrex/Distinctive dialing (Reported by Richard Mudgett) - * ASTERISK-24830 - res_rtp_asterisk.c checks USE_PJPROJECT not - HAVE_PJPROJECT (Reported by Stefan Engström) - * ASTERISK-24840 - res_pjsip: conflicting endpoint identifiers - (Reported by Kevin Harwell) - * ASTERISK-24755 - Asterisk sends unexpected early BYE to - transferrer during attended transfer when using a Stasis bridge - (Reported by John Bigelow) - * ASTERISK-24739 - [patch] - Out of files -- call fails -- - numerous files with inodes from under /usr/share/zoneinfo, - mostly posixrules (Reported by Ed Hynan) - * ASTERISK-23390 - NewExten Event with application AGI shows up - before and after AGI runs (Reported by Benjamin Keith Ford) - * ASTERISK-24786 - [patch] - Asterisk terminates when playing a - voicemail stored in LDAP (Reported by Graham Barnett) - * ASTERISK-24808 - res_config_odbc: Improper escaping of - backslashes occurs with MySQL (Reported by Javier Acosta) - * ASTERISK-24807 - Missing mandatory field Max-Forwards (Reported - by Anatoli) - * ASTERISK-20850 - [patch]Nested functions aren't portable. - Adapting RAII_VAR to use clang/llvm blocks to get the - same/similar functionality. (Reported by Diederik de Groot) - * ASTERISK-24872 - [patch] AMI PJSIPShowEndpoint closes AMI - connection on error (Reported by Dmitriy Serov) - * ASTERISK-19470 - Documentation on app_amd is incorrect (Reported - by Frank DiGennaro) - * ASTERISK-21038 - Bad command completion of "core set debug - channel" (Reported by Richard Kenner) - * ASTERISK-18708 - func_curl hangs channel under load (Reported by - Dave Cabot) - * ASTERISK-16779 - Cannot disallow unknown format '' (Reported by - Atis Lezdins) - * ASTERISK-24876 - Investigate reference leaks from - tests/channels/local/local_optimize_away (Reported by Corey - Farrell) - * ASTERISK-24882 - chan_sip: Improve usage of REF_DEBUG (Reported - by Corey Farrell) - * ASTERISK-24817 - init_logger_chain: unreachable code block - (Reported by Corey Farrell) - * ASTERISK-24880 - [patch]Compilation under OpenBSD (Reported by - snuffy) - * ASTERISK-24879 - [patch]Compilation fails due to 64bit time - under OpenBSD (Reported by snuffy) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24745 - [patch]Add no_answer to ARI hangup causes - (Reported by Ben Merrills) - * ASTERISK-24811 - asterisk-publication sorcery object does not - use realtime (Reported by Matt Hoskins) - * ASTERISK-24790 - Reduce spurious noise in logs from voicemail - - Couldn't find mailbox %s in context (Reported by Graham Barnett) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 13.2.0. - This release is available for immediate download at - - - The release of Asterisk 13.2.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24342 - PJSIP: Qualifying endpoints attempts to do them - all at the same time. (Reported by Richard Mudgett) - * ASTERISK-24514 - res_pjsip_outbound_registration: stack overflow - when using non-default sorcery wizard (Reported by Kevin - Harwell) - * ASTERISK-24472 - Asterisk Crash in OpenSSL when calling over WSS - from JSSIP (Reported by Badalian Vyacheslav) - * ASTERISK-24607 - res_pjsip_session: re-INVITE with declined - media streams results in 488 (Reported by Matt Jordan) - * ASTERISK-24563 - Direct Media calls within private network - sometimes get one way audio (Reported by Kevin Harwell) - * ASTERISK-24604 - res_rtp_asterisk: Crash during restart due to - race condition in accessing codec in stored ast_frame and codec - core (Reported by Matt Jordan) - * ASTERISK-24614 - Deadlock when DEBUG_THREADS compiler flag - enabled (Reported by Richard Mudgett) - * ASTERISK-24449 - Reinvite for T.38 UDPTL fails if SRTP is - enabled (Reported by Andreas Steinmetz) - * ASTERISK-24619 - [patch]Gcc 4.10 fixes in r413589 (1.8) wrongly - casts char to unsigned int (Reported by Walter Doekes) - * ASTERISK-24536 - AMI redirect with PJSIP fails to move extra - channel (Reported by Niklas Larsson) - * ASTERISK-24459 - bridge_native_rtp: Native RTP bridging is - chosen for RTP compatible channels when the DTMF mode is not - compatible (Reported by Yaniv Simhi) - * ASTERISK-24337 - Spammy DEBUG message needs to be at a higher - level - 'Remote address is null, most likely RTP has been - stopped' (Reported by Rusty Newton) - * ASTERISK-24513 - Local channel apparently leaked in off-nominal - DTMF attended transfer (Reported by Mark Michelson) - * ASTERISK-23733 - 'reload acl' fails if acl.conf is not present - on startup (Reported by Richard Kenner) - * ASTERISK-24628 - [patch] chan_sip - CANCEL is sent to wrong - destination when 'sendrpid=yes' (in proxy environment) (Reported - by Karsten Wemheuer) - * ASTERISK-23841 - DTMF atxfer doesn't set CallerID for the recall - calls to the transferrer. (Reported by Richard Mudgett) - * ASTERISK-24376 - res_pjsip_refer: REFER request for remote - session attempts to direct channel to external_replaces - extension instead of context, without providing for the - Referred-To SIP URI (Reported by Matt Jordan) - * ASTERISK-24591 - Stasis() side of an ARI originated channel - cannot be Redirected (Reported by Kinsey Moore) - * ASTERISK-24049 - Asterisk Manager Interface: A number of list - type responses aren't using astman_send_listack (Reported by - Jonathan Rose) - * ASTERISK-24637 - Channel re-enters Stasis() when it should not - (Reported by John Bigelow) - * ASTERISK-24474 - lacks documentation and does - not function (Reported by John Kiniston) - * ASTERISK-24672 - [PATCH] Memory leak in func_curl CURLOPT - (Reported by Kristian Høgh) - * ASTERISK-20744 - [patch] Security event logging does not work - over syslog (Reported by Michael Keuter) - * ASTERISK-24665 - Configure check required for - pjsip_get_dest_info() (Reported by Mark Michelson) - * ASTERISK-23850 - Park Application does not respect Return - Context Priority (Reported by Andrew Nagy) - * ASTERISK-23991 - [patch]asterisk.pc file contains a small error - in the CFlags returned (Reported by Diederik de Groot) - * ASTERISK-24655 - res_pjsip_outbound_publish: Hang on shutdown - while attempting to publish (Reported by Kevin Harwell) - * ASTERISK-24485 - res_pjsip cannot be unloaded or shutdown - (Reported by Corey Farrell) - * ASTERISK-24663 - [patch] Unnamed semaphore autoconf check fails - on cross compilation (Reported by abelbeck) - * ASTERISK-24624 - Transfer to invalid extension results in hung - channel. (Reported by Zane Conkle) - * ASTERISK-24615 - When Multiple Transports Exist in pjsip.conf, - Incorrect External Addresses is Used in SIP Packets When - Responding to INVITE (Reported by David Justl) - * ASTERISK-24288 - [patch] - ODBC usage with app_voicemail - - voicemail is not deleted after review, hangup (Reported by LEI - FU) - * ASTERISK-24048 - [patch] contrib/scripts/install_prereq selects - 32-bit packages on 64-bit hosts (Reported by Ben Klang) - * ASTERISK-24600 - Stuck IAX channels, Asterisk stops responding - to most traffic, potential deadlock (Reported by Jeff Collell) - * ASTERISK-24560 - Creating a named ARI bridge twice causes a - crash (Reported by Kinsey Moore) - * ASTERISK-24682 - app_dial: Multiple DialEnd events emitted when - MACRO_RESULT or GOSUB_RESULT are an unexpected value (Reported - by Matt Jordan) - * ASTERISK-24640 - Registration pending stays forever after sip - reload (Reported by Max Man) - * ASTERISK-24673 - outgoing sip registers cannot be removed or - modified without doing restart (or doing module unload - (Reported by Stefan Engström) - * ASTERISK-24709 - [patch] msg_create_from_file used by MixMonitor - m() option does not queue an MWI event (Reported by Gareth - Palmer) - * ASTERISK-24649 - Pushing of channel into bridge fails; Stasis - fails to get app name (Reported by John Bigelow) - * ASTERISK-24355 - [patch] chan_sip realtime uses case sensitive - column comparison for 'defaultuser' (Reported by - HZMI8gkCvPpom0tM) - * ASTERISK-24693 - Investigate and fix memory leaks in Asterisk - (Reported by Kevin Harwell) - * ASTERISK-24626 - Voicemail passwords not being stored in ARA - (Reported by Paddy Grice) - * ASTERISK-24539 - Compile fails on OSX because of sem_timedwait - in bridge_channel.c (Reported by George Joseph) - * ASTERISK-24544 - Compile fails on OSX Yosemite because of - incorrect detection of htonll and ntohll (Reported by George - Joseph) - * ASTERISK-24723 - confbridge: CLI command 'confbridge list XXXX' - no longer displays user menus (Reported by Matt Jordan) - * ASTERISK-24721 - manager: ModuleLoad action incorrectly reports - 'module not found' during a Reload operation (Reported by Matt - Jordan) - * ASTERISK-24719 - ConfBridge recording channels get stuck when - recording started/stopped more than once (Reported by Richard - Mudgett) - * ASTERISK-24715 - chan_sip: stale nonce causes failure (Reported - by Kevin Harwell) - * ASTERISK-24728 - tcptls: Bad file descriptor error when - reloading chan_sip (Reported by Kevin Harwell) - * ASTERISK-24729 - Outbound registration not occuring on new - registrations after reload. (Reported by Richard Mudgett) - * ASTERISK-24676 - Security Vulnerability: URL request injection - in libCURL (CVE-2014-8150) (Reported by Matt Jordan) - * ASTERISK-24666 - Security Vulnerability: RTP not closed after - sip call using unsupported codec (Reported by Y Ateya) - * ASTERISK-24711 - DTLS handshake broken with latest OpenSSL - versions (Reported by Jared Biel) - * ASTERISK-24646 - PJSIP changeset 4899 breaks TLS (Reported by - Stephan Eisvogel) - * ASTERISK-24736 - Memory Leak Fixes (Reported by Mark Michelson) - * ASTERISK-24635 - PJSIP outbound PUBLISH crashes when no response - is ever received (Reported by Marco Paland) - * ASTERISK-24737 - When agent not logged in, agent status shows - unavailable, queue status shows agent invalid (Reported by - Richard Mudgett) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24552 - ARI: Allow associating a channel as an - initiator of an Origination for record keeping purposes - (Reported by Matt Jordan) - * ASTERISK-24553 - ARI/AMI: Include language in standard channel - snapshot output (Reported by Matt Jordan) - * ASTERISK-24643 - res_pjsip: Add user=phone option (Reported by - Matt Jordan) - * ASTERISK-24644 - res_pjsip_keepalive: Add keepalive module for - connection-oriented transports. (Reported by Matt Jordan) - * ASTERISK-24412 - [patch]Incomplete channel originate/continue - handling with ARI (Reported by Nir Simionovich (GreenfieldTech - - Israel)) - * ASTERISK-24678 - [PATCH] Added atxfer* settings to - features.conf.sample (Reported by Niklas Larsson) - * ASTERISK-24575 - [patch]Make capath work for res_pjsip (Reported - by cloos) - * ASTERISK-24671 - Missing docs for the CDR AMI Event (Reported by - Dan Jenkins) - * ASTERISK-24316 - For httpd server, need option to define server - name for security purposes (Reported by Andrew Nagy) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28 and 11.6 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28.cert-4,, 11.6-cert10, - 11.15.1, 12.8.1, and 13.1.1. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerabilities: - - * AST-2015-001: File descriptor leak when incompatible codecs are offered - - Asterisk may be configured to only allow specific audio or - video codecs to be used when communicating with a - particular endpoint. When an endpoint sends an SDP offer - that only lists codecs not allowed by Asterisk, the offer - is rejected. However, in this case, RTP ports that are - allocated in the process are not reclaimed. - - This issue only affects the PJSIP channel driver in - Asterisk. Users of the chan_sip channel driver are not - affected. - - * AST-2015-002: Mitigation for libcURL HTTP request injection vulnerability - - CVE-2014-8150 reported an HTTP request injection - vulnerability in libcURL. Asterisk uses libcURL in its - module (the CURL() dialplan function), as well - as its (cURL realtime backend) modules. - - Since Asterisk may be configured to allow for user-supplied - URLs to be passed to libcURL, it is possible that an - attacker could use Asterisk as an attack vector to inject - unauthorized HTTP requests if the version of libcURL - installed on the Asterisk server is affected by - CVE-2014-8150. - - For more information about the details of these vulnerabilities, please read - security advisory AST-2015-001 and AST-2015-002, which were released at the same - time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 13.1.0. - This release is available for immediate download at - - - The release of Asterisk 13.1.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - New Features made in this release: - ----------------------------------- - * ASTERISK-24554 - AMI/ARI: Generate events on connected line - changes (Reported by Matt Jordan) - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24436 - Missing header in res/res_srtp.c when compiling - against libsrtp-1.5.0 (Reported by Patrick Laimbock) - * ASTERISK-24455 - func_cdr: CDR_PROP leaks payload (Reported by - Corey Farrell) - * ASTERISK-24454 - app_queue: ao2_iterator not destroyed, causing - leak (Reported by Corey Farrell) - * ASTERISK-24430 - missing letter "p" in word response in - OriginateResponse event documentation (Reported by Dafi Ni) - * ASTERISK-24437 - Review implementation of ast_bridge_impart for - leaks and document proper usage (Reported by Scott Griepentrog) - * ASTERISK-24453 - manager: acl_change_sub leaks (Reported by - Corey Farrell) - * ASTERISK-24457 - res_fax: fax gateway frames leak (Reported by - Corey Farrell) - * ASTERISK-24458 - chan_phone fails to build on big endian systems - (Reported by Tzafrir Cohen) - * ASTERISK-21721 - SIP Failed to parse multiple Supported: headers - (Reported by Olle Johansson) - * ASTERISK-24304 - asterisk crashing randomly because of unistim - channel (Reported by dhanapathy sathya) - * ASTERISK-24190 - IMAP voicemail causes segfault (Reported by - Nick Adams) - * ASTERISK-24462 - res_pjsip: Stale qualify statistics after - disablementation (Reported by Kevin Harwell) - * ASTERISK-24465 - audiohooks list leaks reference to formats - (Reported by Corey Farrell) - * ASTERISK-24466 - app_queue: fix a couple leaks to struct - call_queue (Reported by Corey Farrell) - * ASTERISK-24432 - Install when REF_DEBUG is enabled - (Reported by Corey Farrell) - * ASTERISK-24411 - [patch] Status of outbound registration is not - changed upon unregistering. (Reported by John Bigelow) - * ASTERISK-24476 - main/app.c / app_voicemail: ast_writestream - leaks (Reported by Corey Farrell) - * ASTERISK-24480 - res_http_websockets: Module reference decrease - below zero (Reported by Corey Farrell) - * ASTERISK-24482 - func_talkdetect: Fix stasis message leak in - audiohook callback (Reported by Corey Farrell) - * ASTERISK-24487 - configuration: sections should be loadable as - template even when not marked (Reported by Scott Griepentrog) - * ASTERISK-20127 - [Regression] Config.c config_text_file_load() - unescapes semicolons ("\;" -> ";") turning them into comments - (corruption) on rewrite of a config file (Reported by George - Joseph) - * ASTERISK-24438 - blocks Asterisk reload - when DNS settings invalid (Reported by Melissa Shepherd) - * ASTERISK-24307 - Unintentional memory retention in stringfields - (Reported by Etienne Lessard) - * ASTERISK-24491 - Memory leak in res_hep (Reported by Zane - Conkle) - * ASTERISK-24492 - main/file.c: ast_filestream sometimes causes - extra calls to ast_module_unref (Reported by Corey Farrell) - * ASTERISK-24447 - Bridge DTMF hooks: Audio doesn't pass when - waiting for more matching digits. (Reported by Richard Mudgett) - * ASTERISK-24257 - agent must dial acceptdtmf twice to bridge to - queue caller (Reported by Steve Pitts) - * ASTERISK-24504 - chan_console: Fix reference leaks to pvt - (Reported by Corey Farrell) - * ASTERISK-24250 - [patch] Voicemail with multi-recipients To: - header fix (Reported by abelbeck) - * ASTERISK-24468 - Incoming UCS2 encoded SMS truncated if SMS - length exceeds 50 (roughly) national symbols (Reported by - Dmitriy Bubnov) - * ASTERISK-24500 - Regression introduced in chan_mgcp by SVN - revision r227276 (Reported by Xavier Hienne) - * ASTERISK-24505 - manager: http connections leak references - (Reported by Corey Farrell) - * ASTERISK-24502 - Build fails when dev-mode, dont optimize and - coverage are enabled (Reported by Corey Farrell) - * ASTERISK-24444 - PBX: Crash when generating extension for - pattern matching hint (Reported by Leandro Dardini) - * ASTERISK-24489 - Crash: Asterisk crashes when converting RTCP - packet to JSON for res_hep_rtcp and report blocks are greater - than 1 (Reported by Gregory Malsack) - * ASTERISK-24498 - Segmentation fault in res_hep_rtcp on attended - transfer (Reported by Beppo Mazzucato) - * ASTERISK-24501 - ARI: Moving a channel between bridges followed - by a hangup can cause an ARI client to not receive an expected - ChannelLeftBridge event before StasisEnd (Reported by Matt - Jordan) - * ASTERISK-24336 - PJSIP timer_min_se value under 90 causes crash - (Reported by Leon Rowland) - * ASTERISK-23651 - Reloading some modules that are loaded already, - results in 'No such module' before a successful reload (Reported - by Rusty Newton) - * ASTERISK-24522 - ConfBridge: delay occurs between kicking all - endmarked users when last marked user leaves (Reported by Matt - Jordan) - * ASTERISK-15242 - transmit_refer leaks sip_refer structures - (Reported by David Woolley) - * ASTERISK-24508 - pjsip - REFER request from SNOM is rejected - with "400 bad request" - DEBUG shows "Received a REFER without a - parseable Refer-To" (Reported by Beppo Mazzucato) - * ASTERISK-24535 - stringfields: Fix regression from fix for - unintentional memory retention and another issue exposed by the - fix (Reported by Corey Farrell) - * ASTERISK-24471 - Crash - assert_fail in libc in - pjmedia_sdp_neg_negotiate from /usr/local/lib/ - (Reported by yaron nahum) - * ASTERISK-24528 - res_pjsip_refer: Sending INVITE with Replaces - in-dialog with invalid target causes crash (Reported by Joshua - Colp) - * ASTERISK-24531 - res_pjsip_acl: ACLs not applied on initial - module load (Reported by Matt Jordan) - * ASTERISK-24469 - Security Vulnerability: Mixed IPv4/IPv6 ACLs - allow blocked addresses through (Reported by Matt Jordan) - * ASTERISK-24542 - [patch]Failure showing codecs via 'core show - channeltype ' (Reported by snuffy) - * ASTERISK-24533 - 2 threads created per chan_sip entry (Reported - by xrobau) - * ASTERISK-24516 - [patch]Asterisk segfaults when playing back - voicemail under high concurrency with an IMAP backend (Reported - by David Duncan Ross Palmer) - * ASTERISK-24572 - [patch]App_meetme is loaded without its - defaults when the configuration file is missing (Reported by - Nuno Borges) - * ASTERISK-24573 - [patch]Out of sync conversation recording when - divided in multiple recordings (Reported by Nuno Borges) - * ASTERISK-24537 - Stasis: StasisStart/StasisEnd events are not - reliably transmitted during transfers (Reported by Matt Jordan) - * ASTERISK-24556 - Asterisk 13 core dumps when calling from pjsip - extension to another pjsip extension (Reported by Abhay Gupta) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24279 - Documentation: Clarify the behaviour of the CDR - property 'unanswered' (Reported by Matt Jordan) - * ASTERISK-24283 - [patch]Microseconds precision in the eventtime - column in the cel_odbc module (Reported by Etienne Lessard) - * ASTERISK-24530 - [patch] app_record stripping 1/4 second from - recordings (Reported by Ben Smithurst) - * ASTERISK-24577 - Speed up loopback switches by avoiding unneeded - lookups (Reported by Birger "WIMPy" Harzenetter) - - For a full list of changes in this release, please see the ChangeLog: - - Add speexdsp as build dep as speex_echo.h has moved - rhbz 1181021- update for lua 5.3- The Asterisk Development Team has announced security releases for Certified - Asterisk 11.6 and Asterisk 11, 12, and 13. The available security releases are - released as versions 11.6-cert9, 11.14.2, 12.7.2, and 13.0.2. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerability: - - * AST-2014-019: Remote Crash Vulnerability in WebSocket Server - - When handling a WebSocket frame the res_http_websocket module dynamically - changes the size of the memory used to allow the provided payload to fit. If a - payload length of zero was received the code would incorrectly attempt to - resize to zero. This operation would succeed and end up freeing the memory but - be treated as a failure. When the session was subsequently torn down this - memory would get freed yet again causing a crash. - - For more information about the details of this vulnerability, please read - security advisory AST-2014-019, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - The security advisory is available at: - - * The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28 and 11.6 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28-cert3, 11.6-cert8,, - 11.14.1, 12.7.1, and 13.0.1. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerabilities: - - * AST-2014-012: Unauthorized access in the presence of ACLs with mixed IP - address families - - Many modules in Asterisk that service incoming IP traffic have ACL options - ("permit" and "deny") that can be used to whitelist or blacklist address - ranges. A bug has been discovered where the address family of incoming - packets is only compared to the IP address family of the first entry in the - list of access control rules. If the source IP address for an incoming - packet is not of the same address as the first ACL entry, that packet - bypasses all ACL rules. - - * AST-2014-018: Permission Escalation through DB dialplan function - - The DB dialplan function when executed from an external protocol, such as AMI, - could result in a privilege escalation. Users with a lower class authorization - in AMI can access the internal Asterisk database without the required SYSTEM - class authorization. - - In addition, the release of 11.6-cert8 and 11.14.1 resolves the following - security vulnerability: - - * AST-2014-014: High call load with ConfBridge can result in resource exhaustion - - The ConfBridge application uses an internal bridging API to implement - conference bridges. This internal API uses a state model for channels within - the conference bridge and transitions between states as different things - occur. Unload load it is possible for some state transitions to be delayed - causing the channel to transition from being hung up to waiting for media. As - the channel has been hung up remotely no further media will arrive and the - channel will stay within ConfBridge indefinitely. - - In addition, the release of 11.6-cert8, 11.14.1, 12.7.1, and 13.0.1 resolves - the following security vulnerability: - - * AST-2014-017: Permission Escalation via ConfBridge dialplan function and - AMI ConfbridgeStartRecord Action - - The CONFBRIDGE dialplan function when executed from an external protocol (such - as AMI) can result in a privilege escalation as certain options within that - function can affect the underlying system. Additionally, the AMI - ConfbridgeStartRecord action has options that would allow modification of the - underlying system, and does not require SYSTEM class authorization in AMI. - - Finally, the release of 12.7.1 and 13.0.1 resolves the following security - vulnerabilities: - - * AST-2014-013: Unauthorized access in the presence of ACLs in the PJSIP stack - - The Asterisk module res_pjsip provides the ability to configure ACLs that may - be used to reject SIP requests from various hosts. However, the module - currently fails to create and apply the ACLs defined in its configuration - file on initial module load. - - * AST-2014-015: Remote crash vulnerability in PJSIP channel driver - - The chan_pjsip channel driver uses a queue approach for relating to SIP - sessions. There exists a race condition where actions may be queued to answer - a session or send ringing after a SIP session has been terminated using a - CANCEL request. The code will incorrectly assume that the SIP session is still - active and attempt to send the SIP response. The PJSIP library does not - expect the SIP session to be in the disconnected state when sending the - response and asserts. - - * AST-2014-016: Remote crash vulnerability in PJSIP channel driver - - When handling an INVITE with Replaces message the res_pjsip_refer module - incorrectly assumes that it will be operating on a channel that has just been - created. If the INVITE with Replaces message is sent in-dialog after a session - has been established this assumption will be incorrect. The res_pjsip_refer - module will then hang up a channel that is actually owned by another thread. - When this other thread attempts to use the just hung up channel it will end up - using a freed channel which will likely result in a crash. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-012, AST-2014-013, AST-2014-014, AST-2014-015, - AST-2014-016, AST-2014-017, and AST-2014-018, which were released at the same - time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * - * - * - * - * - * The Asterisk Development Team is pleased to announce the release of - Asterisk 13.0.0. This release is available for immediate download at - - - Asterisk 13 is the next major release series of Asterisk. It is a Long Term - Support (LTS) release, similar to Asterisk 11. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 13, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * Asterisk security events are now provided via AMI, allowing end users to - monitor their Asterisk system in real time for security related issues. - - * Both AMI and ARI now allow external systems to control the state of a mailbox. - Using AMI actions or ARI resources, external systems can programmatically - trigger Message Waiting Indicators (MWI) on subscribed phones. This is of - particular use to those who want to build their own VoiceMail application - using ARI. - - * ARI now supports the reception/transmission of out of call text messages using - any supported channel driver/protocol stack through ARI. Users receive out of - call text messages as JSON events over the ARI websocket connection, and can - send out of call text messages using HTTP requests. - - * The PJSIP stack now supports RFC 4662 Resource Lists, allowing Asterisk to act - as a Resource List Server. This includes defining lists of presence state, - mailbox state, or lists of presence state/mailbox state; managing - subscriptions to lists; and batched delivery of NOTIFY requests to - subscribers. - - * The PJSIP stack can now be used as a means of distributing device state or - mailbox state via PUBLISH requests to other Asterisk instances. This is - analogous to Asterisk's clustering support using XMPP or Corosync; unlike - existing clustering mechanisms, using the PJSIP stack to perform the - distribution of state does not rely on another daemon or server to perform the - work. - - And much more! - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file: - - - - For a full list of changes in the current release, please see the ChangeLog: - - rebuild for new libsrtp- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28 and 11.6 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28-cert2, 11.6-cert7,, - 11.13.1, 12.6.1, and 13.0.0-beta3. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerability: - - * AST-2014-011: Asterisk Susceptibility to POODLE Vulnerability - - Asterisk is susceptible to the POODLE vulnerability in two ways: - 1) The res_jabber and res_xmpp module both use SSLv3 exclusively for their - encrypted connections. - 2) The core TLS handling in Asterisk, which is used by the chan_sip channel - driver, Asterisk Manager Interface (AMI), and Asterisk HTTP Server, by - default allow a TLS connection to fallback to SSLv3. This allows for a - MITM to potentially force a connection to fallback to SSLv3, exposing it - to the POODLE vulnerability. - - These issues have been resolved in the versions released in conjunction with - this security advisory. - - For more information about the details of this vulnerability, please read - security advisory AST-2014-011, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisory is available at: - - * The Asterisk Development Team has announced the release of Asterisk 11.13.0. - This release is available for immediate download at - - - The release of Asterisk 11.13.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24032 - Gentoo compilation emits warning: - "_FORTIFY_SOURCE" redefined (Reported by Kilburn) - * ASTERISK-24225 - Dial option z is broken (Reported by - dimitripietro) - * ASTERISK-24178 - [patch]fromdomainport used even if not set - (Reported by Elazar Broad) - * ASTERISK-22252 - res_musiconhold cleanup - REF_DEBUG reload - warnings and ref leaks (Reported by Walter Doekes) - * ASTERISK-23997 - chan_sip: port incorrectly incremented for RTCP - ICE candidates in SDP answer (Reported by Badalian Vyacheslav) - * ASTERISK-24019 - When a Music On Hold stream starts it restarts - at beginning of file. (Reported by Jason Richards) - * ASTERISK-23767 - [patch] Dynamic IAX2 registration stops trying - if ever not able to resolve (Reported by David Herselman) - * ASTERISK-24211 - testsuite: Fix the dial_LS_options test - (Reported by Matt Jordan) - * ASTERISK-24249 - SIP debugs do not stop (Reported by Avinash - Mohod) - * ASTERISK-23577 - res_rtp_asterisk: Crash in - ast_rtp_on_turn_rtp_state when RTP instance is NULL (Reported by - Jay Jideliov) - * ASTERISK-23634 - With TURN Asterisk crashes on multiple (7-10) - concurrent WebRTC (avpg/encryption/icesupport) calls (Reported - by Roman Skvirsky) - * ASTERISK-24301 - Security: Out of call MESSAGE requests - processed via Message channel driver can crash Asterisk - (Reported by Matt Jordan) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24171 - [patch] Provide a manpage for the aelparse - utility (Reported by Jeremy Lainé) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 11.6 and Asterisk 11 and 12. The available security releases are - released as versions 11.6-cert6, 11.12.1, and 12.5.1. - - These releases are available for immediate download at - - - Please note that the release of these versions resolves the following security - vulnerability: - - * AST-2014-010: Remote Crash when Handling Out of Call Message in Certain - Dialplan Configurations - - Additionally, the release of Asterisk 12.5.1 resolves the following security - vulnerability: - - * AST-2014-009: Remote Crash Based on Malformed SIP Subscription Requests - - Note that the crash described in AST-2014-010 can be worked around through - dialplan configuration. Given the likelihood of the issue, an advisory was - deemed to be warranted. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-009 and AST-2014-010, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 11.12.0. - This release is available for immediate download at - - - The release of Asterisk 11.12.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-23911 - URIENCODE/URIDECODE: WARNING about passing an - empty string is a bit over zealous (Reported by Matt Jordan) - * ASTERISK-23985 - PresenceState Action response does not contain - ActionID; duplicates Message Header (Reported by Matt Jordan) - * ASTERISK-23814 - No call started after peer dialed (Reported by - Igor Goncharovsky) - * ASTERISK-24087 - [patch]chan_sip: sip_subscribe_mwi_destroy - should not call sip_destroy (Reported by Corey Farrell) - * ASTERISK-23818 - PBX_Lua: after asterisk startup module is - loaded, but dialplan not available (Reported by Dennis Guse) - * ASTERISK-18345 - [patch] sips connection dropped by asterisk - with a large INVITE (Reported by Stephane Chazelas) - * ASTERISK-23508 - Memory Corruption in - __ast_string_field_ptr_build_va (Reported by Arnd Schmitter) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-21178 - Improve documentation for manager command - Getvar, Setvar (Reported by Rusty Newton) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.11.0. - This release is available for immediate download at - - - The release of Asterisk 11.11.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-22551 - Session timer : UAS (Asterisk) starts counting - at Invite, UAC starts counting at 200 OK. (Reported by i2045) - * ASTERISK-23792 - Mutex left locked in chan_unistim.c (Reported - by Peter Whisker) - * ASTERISK-23582 - [patch]Inconsistent column length in *odbc - (Reported by Walter Doekes) - * ASTERISK-23803 - AMI action UpdateConfig EmptyCat clears all - categories but the requested one (Reported by zvision) - * ASTERISK-23035 - ConfBridge with name longer than max (32 chars) - results in several bridges with same conf_name (Reported by - Iñaki Cívico) - * ASTERISK-23824 - ConfBridge: Users cannot be muted via CLI or - AMI when waiting to enter a conference (Reported by Matt Jordan) - * ASTERISK-23683 - #includes - wildcard character in a path more - than one directory deep - results in no config parsing on module - reload (Reported by tootai) - * ASTERISK-23827 - autoservice thread doesn't exit at shutdown - (Reported by Corey Farrell) - * ASTERISK-23609 - Security: AMI action MixMonitor allows - arbitrary programs to be run (Reported by Corey Farrell) - * ASTERISK-23673 - Security: DOS by consuming the number of - allowed HTTP connections. (Reported by Richard Mudgett) - * ASTERISK-23246 - DEBUG messages in sdp_crypto.c display despite - a DEBUG level of zero (Reported by Rusty Newton) - * ASTERISK-23766 - [patch] Specify timeout for database write in - SQLite (Reported by Igor Goncharovsky) - * ASTERISK-23844 - Load of pbx_lua fails on sample extensions.lua - with Lua 5.2 or greater due to addition of goto statement - (Reported by Rusty Newton) - * ASTERISK-23818 - PBX_Lua: after asterisk startup module is - loaded, but dialplan not available (Reported by Dennis Guse) - * ASTERISK-23834 - res_rtp_asterisk debug message gives wrong - length if ICE (Reported by Richard Kenner) - * ASTERISK-23790 - [patch] - SIP From headers longer than 256 - characters result in dropped call and 'No closing bracket' - warnings. (Reported by uniken1) - * ASTERISK-23917 - res_http_websocket: Delay in client processing - large streams of data causes disconnect and stuck socket - (Reported by Matt Jordan) - * ASTERISK-23908 - [patch]When using FEC error correction, - asterisk tries considers negative sequence numbers as missing - (Reported by Torrey Searle) - * ASTERISK-23921 - uses excessive ram for large refs - files (Reported by Corey Farrell) - * ASTERISK-23948 - REF_DEBUG fails to record ao2_ref against - objects that were already freed (Reported by Corey Farrell) - * ASTERISK-23916 - [patch]SIP/SDP fmtp line may include whitespace - between attributes (Reported by Alexander Traud) - * ASTERISK-23984 - Infinite loop possible in ast_careful_fwrite() - (Reported by Steve Davies) - * ASTERISK-23897 - [patch]Change in SETUP ACK handling (checking - PI) in revision 413765 breaks working environments (Reported by - Pavel Troller) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-23492 - Add option to safe_asterisk to disable - backgrounding (Reported by Walter Doekes) - * ASTERISK-22961 - [patch] DTLS-SRTP not working with SHA-256 - (Reported by Jay Jideliov) - - For a full list of changes in this release, please see the ChangeLog: - - Perl 5.20 rebuild- Rebuilt for Drop the 389 directory server schema (1061414)- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security - releases are released as versions 1.8.15-cert7, 11.6-cert4,, 11.10.2, - and 12.3.2. - - These releases are available for immediate download at - - - These releases resolve security vulnerabilities that were previously fixed in - 1.8.15-cert6, 11.6-cert3,, 11.10.1, and 12.3.1. Unfortunately, the fix - for AST-2014-007 inadvertently introduced a regression in Asterisk's TCP and TLS - handling that prevented Asterisk from sending data over these transports. This - regression and the security vulnerabilities have been fixed in the versions - specified in this release announcement. - - The security patches for AST-2014-007 have been updated with the fix for the - regression, and are available at - - Please note that the release of these versions resolves the following security - vulnerabilities: - - * AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe - Framework - - * AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized - Shell Access - - * AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP - Connections - - * AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008, - which were released with the previous versions that addressed these - vulnerabilities. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * - * The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security - releases are released as versions 1.8.15-cert6, 11.6-cert3,, 11.10.1, - and 12.3.1. - - These releases are available for immediate download at - - - The release of these versions resolves the following issue: - - * AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP - Connections - - Establishing a TCP or TLS connection to the configured HTTP or HTTPS port - respectively in http.conf and then not sending or completing a HTTP request - will tie up a HTTP session. By doing this repeatedly until the maximum number - of open HTTP sessions is reached, legitimate requests are blocked. - - Additionally, the release of 11.6-cert3, 11.10.1, and 12.3.1 resolves the - following issue: - - * AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized - Shell Access - - Manager users can execute arbitrary shell commands with the MixMonitor manager - action. Asterisk does not require system class authorization for a manager - user to use the MixMonitor action, so any manager user who is permitted to use - manager commands can potentially execute shell commands as the user executing - the Asterisk process. - - Additionally, the release of 12.3.1 resolves the following issues: - - * AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe - Framework - - A remotely exploitable crash vulnerability exists in the PJSIP channel - driver's pub/sub framework. If an attempt is made to unsubscribe when not - currently subscribed and the endpoint's “sub_min_expiry” is set to zero, - Asterisk tries to create an expiration timer with zero seconds, which is not - allowed, so an assertion raised. - - * AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions - - When a SIP transaction timeout caused a subscription to be terminated, the - action taken by Asterisk was guaranteed to deadlock the thread on which SIP - requests are serviced. Note that this behavior could only happen on - established subscriptions, meaning that this could only be exploited if an - attacker bypassed authentication and successfully subscribed to a real - resource on the Asterisk server. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008, - which were released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * - * The Asterisk Development Team has announced the release of Asterisk 11.10.0. - This release is available for immediate download at - - - The release of Asterisk 11.10.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-23547 - [patch] app_queue removing callers from queue - when reloading (Reported by Italo Rossi) - * ASTERISK-23559 - app_voicemail fails to load after fix to - dialplan functions (Reported by Corey Farrell) - * ASTERISK-22846 - testsuite: masquerade super test fails on all - branches (still) (Reported by Matt Jordan) - * ASTERISK-23545 - Confbridge talker detection settings - configuration load bug (Reported by John Knott) - * ASTERISK-23546 - CB_ADD_LEN does not do what you'd think - (Reported by Walter Doekes) - * ASTERISK-23620 - Code path in app_stack fails to unlock list - (Reported by Bradley Watkins) - * ASTERISK-23616 - Big memory leak in logger.c (Reported by - ibercom) - * ASTERISK-23576 - Build failure on SmartOS / Illumos / SunOS - (Reported by Sebastian Wiedenroth) - * ASTERISK-23550 - Newer sound sets don't show up in menuselect - (Reported by Rusty Newton) - * ASTERISK-18331 - app_sms failure (Reported by David Woodhouse) - * ASTERISK-19465 - P-Asserted-Identity Privacy (Reported by - Krzysztof Chmielewski) - * ASTERISK-23605 - res_http_websocket: Race condition in shutting - down websocket causes crash (Reported by Matt Jordan) - * ASTERISK-23707 - Realtime Contacts: Apparent mismatch between - PGSQL database state and Asterisk state (Reported by Mark - Michelson) - * ASTERISK-23381 - [patch]ChanSpy- Barge only works on the initial - 'spy', if the spied-on channel makes a new call, unable to - barge. (Reported by Robert Moss) - * ASTERISK-23665 - Wrong mime type for codec H263-1998 (h263+) - (Reported by Guillaume Maudoux) - * ASTERISK-23664 - Incorrect H264 specification in SDP. (Reported - by Guillaume Maudoux) - * ASTERISK-22977 - chan_sip+CEL: missing ANSWER and PICKUP event - for INVITE/w/replaces pickup (Reported by Walter Doekes) - * ASTERISK-23709 - Regression in Dahdi/Analog/waitfordialtone - (Reported by Steve Davies) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-23649 - [patch]Support for DTLS retransmission - (Reported by NITESH BANSAL) - * ASTERISK-23564 - [patch]TLS/SRTP status of channel not currently - available in a CLI command (Reported by Patrick Laimbock) - * ASTERISK-23754 - [patch] Use var/lib directory for log file - configured in asterisk.conf (Reported by Igor Goncharovsky) - - For a full list of changes in this release, please see the ChangeLog: - - Rebuilt for build against gmime-devel not gmime22-devel - do not use -m64 on aarch64- The Asterisk Development Team has announced the release of Asterisk 11.9.0. - This release is available for immediate download at - - - The release of Asterisk 11.9.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-22790 - check_modem_rate() may return incorrect rate - for V.27 (Reported by Paolo Compagnini) - * ASTERISK-23034 - [patch] manager Originate doesn't abort on - failed format_cap allocation (Reported by Corey Farrell) - * ASTERISK-23061 - [Patch] 'textsupport' setting not mentioned in - sip.conf.sample (Reported by Eugene) - * ASTERISK-23028 - [patch] Asterisk man pages contains unquoted - minus signs (Reported by Jeremy Lainé) - * ASTERISK-23046 - Custom CDR fields set during a GoSUB called - from app_queue are not inserted (Reported by Denis Pantsyrev) - * ASTERISK-23027 - [patch] Spelling typo "transfered" instead of - "transferred" (Reported by Jeremy Lainé) - * ASTERISK-23008 - Local channels loose CALLERID name when DAHDI - channel connects (Reported by Michael Cargile) - * ASTERISK-23100 - [patch] In chan_mgcp the ident in transmitted - request and request queue may differ - fix for locking (Reported - by adomjan) - * ASTERISK-22988 - [patch]T38 , SIP 488 after Rejecting image - media offer due to invalid or unsupported syntax (Reported by - adomjan) - * ASTERISK-22861 - [patch]Specifying a null time as parameter to - GotoIfTime or ExecIfTime causes segmentation fault (Reported by - Sebastian Murray-Roberts) - * ASTERISK-17837 - extconfig.conf - Maximum Include level (1) - exceeded (Reported by pz) - * ASTERISK-22662 - Documentation fix? - queues.conf says - persistentmembers defaults to yes, it appears to lie (Reported - by Rusty Newton) - * ASTERISK-23134 - [patch] res_rtp_asterisk port selection cannot - handle selinux port restrictions (Reported by Corey Farrell) - * ASTERISK-23220 - STACK_PEEK function with no arguments causes - crash/core dump (Reported by James Sharp) - * ASTERISK-19773 - Asterisk crash on issuing Asterisk-CLI 'reload' - command multiple times on cli_aliases (Reported by Joel Vandal) - * ASTERISK-22757 - segfault in on reload when - mapping "module reload" command (Reported by Gareth Blades) - * ASTERISK-17727 - [patch] TLS doesn't get all certificate chain - (Reported by LN) - * ASTERISK-23178 - devicestate.h: device state setting functions - are documented with the wrong return values (Reported by - Jonathan Rose) - * ASTERISK-23232 - LocalBridge AMI Event LocalOptimization value - is opposite to what's expected (Reported by Leon Roy) - * ASTERISK-23098 - [patch]possible null pointer dereference in - format.c (Reported by Marcello Ceschia) - * ASTERISK-23297 - Asterisk 12, segfaults if - is not loaded, or if res_parking.conf has no - configuration (Reported by CJ Oster) - * ASTERISK-23069 - Custom CDR variable not recorded when set in - macro called from app_queue (Reported by Bryan Anderson) - * ASTERISK-19499 - ConfBridge MOH is not working for transferee - after attended transfer (Reported by Timo Teräs) - * ASTERISK-23261 - [patch]Output mixup in - ${CHANNEL(rtpqos,audio,all)} (Reported by rsw686) - * ASTERISK-23279 - [patch]Asterisk doesn't support the dynamic - payload change in rtp mapping in the 200 OK response (Reported - by NITESH BANSAL) - * ASTERISK-23255 - UUID included for Redhat, but missing for - Debian distros in install_prereq script (Reported by Rusty - Newton) - * ASTERISK-23260 - [patch]ForkCDR v option does not keep CDR - variables for subsequent records (Reported by zvision) - * ASTERISK-23141 - Asterisk crashes on Dial(), in - pbx_find_extension at pbx.c (Reported by Maxim) - * ASTERISK-23336 - Asterisk warning "Don't know how to indicate - condition 33 on ooh323c" on outgoing calls from H323 to SIP peer - (Reported by Alexander Semych) - * ASTERISK-23231 - Since 405693 If we have res_fax.conf file set - to minrate=2400, then res_fax refuse to load (Reported by David - Brillert) - * ASTERISK-23135 - Crash - segfault in ast_channel_hangupcause_set - - probably introduced in 11.7.0 (Reported by OK) - * ASTERISK-23323 - [patch]chan_sip: missing p->owner checks in - handle_response_invite (Reported by Walter Doekes) - * ASTERISK-23406 - [patch]Fix typo in "sip show peer" (Reported by - ibercom) - * ASTERISK-23310 - bridged channel crashes in bridge_p2p_rtp_write - (Reported by Jeremy Lainé) - * ASTERISK-22911 - [patch]Asterisk fails to resume WebRTC call - from hold (Reported by Vytis Valentinavičius) - * ASTERISK-23104 - Specifying the SetVar AMI without a Channel - cause Asterisk to crash (Reported by Joel Vandal) - * ASTERISK-21930 - [patch]WebRTC over WSS is not working. - (Reported by John) - * ASTERISK-23383 - Wrong sense test on stat return code causes - unchanged config check to break with include files. (Reported by - David Woolley) - * ASTERISK-20149 - Crash when faxing SIP to SIP with strictrtp set - to yes (Reported by Alexandr Gordeev) - * ASTERISK-17523 - Qualify for static realtime peers does not work - (Reported by Maciej Krajewski) - * ASTERISK-21406 - [patch] chan_sip deadlock on monlock between - unload_module and do_monitor (Reported by Corey Farrell) - * ASTERISK-23373 - [patch]Security: Open FD exhaustion with - chan_sip Session-Timers (Reported by Corey Farrell) - * ASTERISK-23340 - Security Vulnerability: stack allocation of - cookie headers in loop allows for unauthenticated remote denial - of service attack (Reported by Matt Jordan) - * ASTERISK-23311 - Manager - MoH Stop Event fails to show up when - leaving Conference (Reported by Benjamin Keith Ford) - * ASTERISK-23420 - [patch]Memory leak in manager_add_filter - function in manager.c (Reported by Etienne Lessard) - * ASTERISK-23488 - Logic error in callerid checksum processing - (Reported by Russ Meyerriecks) - * ASTERISK-23461 - Only first user is muted when joining - confbridge with 'startmuted=yes' (Reported by Chico Manobela) - * ASTERISK-20841 - fromdomain not honored on outbound INVITE - request (Reported by Kelly Goedert) - * ASTERISK-22079 - Segfault: INTERNAL_OBJ (user_data=0x6374652f) - at astobj2.c:120 (Reported by Jamuel Starkey) - * ASTERISK-23509 - [patch]SayNumber for Polish language tries to - play empty files for numbers divisible by 100 (Reported by - zvision) - * ASTERISK-23103 - [patch]Crash in ast_format_cmp, in ao2_find - (Reported by JoshE) - * ASTERISK-23391 - Audit dialplan function usage of channel - variable (Reported by Corey Farrell) - * ASTERISK-23548 - POST to ARI sometimes returns no body on - success (Reported by Scott Griepentrog) - * ASTERISK-23460 - ooh323 channel stuck if call is placed directly - and gatekeeper is not available (Reported by Dmitry Melekhov) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-22980 - [patch]Allow building cdr_radius and cel_radius - against libfreeradius-client (Reported by Jeremy Lainé) - * ASTERISK-22661 - Unable to exit ChanSpy if spied channel does - not have a call in progress (Reported by Chris Hillman) - * ASTERISK-23099 - [patch] WSS: enable ast_websocket_read() - function to read the whole available data at first and then wait - for any fragmented packets (Reported by Thava Iyer)- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security - releases are released as versions 1.8.15-cert5, 11.6-cert2,, 11.8.1, - and 12.1.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * AST-2014-001: Stack overflow in HTTP processing of Cookie headers. - - Sending a HTTP request that is handled by Asterisk with a large number of - Cookie headers could overflow the stack. - - Another vulnerability along similar lines is any HTTP request with a - ridiculous number of headers in the request could exhaust system memory. - - * AST-2014-002: chan_sip: Exit early on bad session timers request - - This change allows chan_sip to avoid creation of the channel and - consumption of associated file descriptors altogether if the inbound - request is going to be rejected anyway. - - Additionally, the release of 12.1.1 resolves the following issue: - - * AST-2014-003: res_pjsip: When handling 401/407 responses don't assume a - request will have an endpoint. - - This change removes the assumption that an outgoing request will always - have an endpoint and makes the authenticate_qualify option work once again. - - Finally, a security advisory, AST-2014-004, was released for a vulnerability - fixed in Asterisk 12.1.0. Users of Asterisk 12.0.0 are encouraged to upgrade to - 12.1.1 to resolve both vulnerabilities. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-001, AST-2014-002, AST-2014-003, and AST-2014-004, - which were released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * - * The Asterisk Development Team has announced the release of Asterisk 11.8.0. - This release is available for immediate download at - - - The release of Asterisk 11.8.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-22544 - Italian prompt vm-options has advertisement in - it (Reported by Rusty Newton) - * ASTERISK-21383 - STUN Binding Requests Not Being Sent Back from - Asterisk to Chrome (Reported by Shaun Clark) - * ASTERISK-22478 - [patch]Can't use pound(hash) symbol for custom - DTMF menus in ConfBridge (processed as directive) (Reported by - Nicolas Tanski) - * ASTERISK-12117 - chan_sip creates a new local tag (from-tag) for - every register message (Reported by Pawel Pierscionek) - * ASTERISK-20862 - Asterisk min and max member penalties not - honored when set with 0 (Reported by Schmooze Com) - * ASTERISK-22746 - [patch]Crash in chan_dahdi during caller id - read (Reported by Michael Walton) - * ASTERISK-22788 - [patch] main/translate.c: access to variable f - after free in ast_translate() (Reported by Corey Farrell) - * ASTERISK-21242 - Segfault when T.38 re-invite retransmission - receives 200 OK (Reported by Ashley Winters) - * ASTERISK-22590 - BufferOverflow in unpacksms16() when receiving - 16 bit multipart SMS with app_sms (Reported by Jan Juergens) - * ASTERISK-22905 - Prevent Asterisk functions that are 'dangerous' - from being executed from external interfaces (Reported by Matt - Jordan) - * ASTERISK-23021 - Typos in code : "avaliable" instead of - "available" (Reported by Jeremy Lainé) - * ASTERISK-22970 - [patch]Documentation fix for QUOTE() (Reported - by Gareth Palmer) - * ASTERISK-21960 - ooh323 channels stuck (Reported by Dmitry - Melekhov) - * ASTERISK-22350 - DUNDI - core dump on shutdown - segfault in - sqlite3_reset from /usr/lib/ (Reported by Birger - "WIMPy" Harzenetter) - * ASTERISK-22942 - [patch] - Asterisk crashed after - Set(FAXOPT(faxdetect)=t38) (Reported by adomjan) - * ASTERISK-22856 - [patch]SayUnixTime in polish reads minutes - instead of seconds (Reported by Robert Mordec) - * ASTERISK-22854 - [patch] - Deadlock between cel_pgsql unload and - core_event_dispatcher taskprocessor thread (Reported by Etienne - Lessard) - * ASTERISK-22910 - [patch] - REPLACE() calls strcpy on overlapping - memory when is empty (Reported by Gareth Palmer) - * ASTERISK-22871 - cel_pgsql module not loading after "reload" or - "reload" command (Reported by Matteo) - * ASTERISK-23084 - [patch]rasterisk needlessly prints the - AST-2013-007 warning (Reported by Tzafrir Cohen) - * ASTERISK-17138 - [patch] Asterisk not re-registering after it - receives "Forbidden - wrong password on authentication" - (Reported by Rudi) - * ASTERISK-23011 - [patch] and pbx_lua don't support - lua 5.2 (Reported by George Joseph) - * ASTERISK-22834 - Parking by blind transfer when lot full orphans - channels (Reported by rsw686) - * ASTERISK-23047 - Orphaned (stuck) channel occurs during a failed - SIP transfer to parking space (Reported by Tommy Thompson) - * ASTERISK-22946 - Local From tag regression with - (Reported by Stephan Eisvogel) - * ASTERISK-23010 - No BYE message sent when sip INVITE is received - (Reported by Ryan Tilton) - * ASTERISK-23135 - Crash - segfault in ast_channel_hangupcause_set - - probably introduced in 11.7.0 (Reported by OK) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-22728 - [patch] Improve Understanding Of 'Forcerport' - When Running "sip show peers" (Reported by Michael L. Young) - * ASTERISK-22659 - Make a new core and extra sounds release - (Reported by Rusty Newton) - * ASTERISK-22919 - core show channeltypes slicing (Reported by - outtolunc) - * ASTERISK-22918 - dahdi show channels slices PRI channel dnid on - output (Reported by outtolunc) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.7.0. - This release is available for immediate download at - - - The release of Asterisk 11.7.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- app_confbridge: Can now set the language used for announcements - to the conference. - (Closes issue ASTERISK-19983. Reported by Jonathan White) - - * --- app_queue: Fix CLI "queue remove member" queue_log entry. - (Closes issue ASTERISK-21826. Reported by Oscar Esteve) - - * --- chan_sip: Do not increment the SDP version between 183 and 200 - responses. - (Closes issue ASTERISK-21204. Reported by NITESH BANSAL) - - * --- chan_sip: Allow a sip peer to accept both AVP and AVPF calls - (Closes issue ASTERISK-22005. Reported by Torrey Searle) - - * --- chan_sip: Fix Realtime Peer Update Problem When Un-registering - And Expires Header In 200ok - (Closes issue ASTERISK-22428. Reported by Ben Smithurst) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.2, and Asterisk 1.8, 10, and 11. The available security - releases are released as versions 1.8.15-cert4, 11.2-cert3,, 10.12.4, - 10.12.4-digiumphones, and 11.6.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * A buffer overflow when receiving odd length 16 bit messages in app_sms. An - infinite loop could occur which would overwrite memory when a message is - received into the unpacksms16() function and the length of the message is an - odd number of bytes. - - * Prevent permissions escalation in the Asterisk Manager Interface. Asterisk - now marks certain individual dialplan functions as 'dangerous', which will - inhibit their execution from external sources. - - A 'dangerous' function is one which results in a privilege escalation. For - example, if one were to read the channel variable SHELL(rm -rf /) Bad - Things(TM) could happen; even if the external source has only read - permissions. - - Execution from external sources may be enabled by setting 'live_dangerously' - to 'yes' in the [options] section of asterisk.conf. Although doing so is not - recommended. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-006 and AST-2013-007, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 11.6.0. - This release is available for immediate download at - - - The release of Asterisk 11.6.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Confbridge: empty conference not being torn down - (Closes issue ASTERISK-21859. Reported by Chris Gentle) - - * --- Let Queue wrap up time influence member availability - (Closes issue ASTERISK-22189. Reported by Tony Lewis) - - * --- Fix a longstanding issue with MFC-R2 configuration that - prevented users - (Closes issue ASTERISK-21117. Reported by Rafael Angulo) - - * --- chan_iax2: Fix saving the wrong expiry time in astdb. - (Closes issue ASTERISK-22504. Reported by Stefan Wachtler) - - * --- Fix segfault for certain invalid WebSocket input. - (Closes issue ASTERISK-21825. Reported by Alfred Farrugia) - - For a full list of changes in this release, please see the ChangeLog: - - Disable hardened build, as it's apparently causing problems loading modules.- Enable hardened build BZ#954338 - Significant clean ups- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.2, and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.15-cert2, 11.2-cert2,, 10.12.3, 10.12.3-digiumphones, - and 11.5.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an ACK with SDP is received after the channel has been terminated. The - handling code incorrectly assumes that the channel will always be present. - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an invalid SDP is sent in a SIP request that defines media descriptions before - connection information. The handling code incorrectly attempts to reference - the socket address information even though that information has not yet been - set. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-004 and AST-2013-005, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * - - The Asterisk Development Team has announced the release of Asterisk 11.5.0. - This release is available for immediate download at - - - The release of Asterisk 11.5.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix Segfault In app_queue When "persistentmembers" Is Enabled - And Using Realtime - (Closes issue ASTERISK-21738. Reported by JoshE) - - * --- IAX2: fix race condition with nativebridge transfers. - (Closes issue ASTERISK-21409. Reported by alecdavis) - - * --- Fix The Payload Being Set On CN Packets And Do Not Set Marker - Bit - (Closes issue ASTERISK-21246. Reported by Peter Katzmann) - - * --- Fix One-Way Audio With auto_* NAT Settings When SIP Calls - Initiated By PBX - (Closes issue ASTERISK-21374. Reported by Michael L. Young) - - * --- chan_sip: NOTIFYs for BLF start queuing up and fail to be sent - out after retries fail - (Closes issue ASTERISK-21677. Reported by Dan Martens) - - For a full list of changes in this release, please see the ChangeLog: - - Rebuilt for Perl 5.18 rebuild- rebuild (libical)- The Asterisk Development Team has announced the release of Asterisk 11.4.0. - This release is available for immediate download at - - - The release of Asterisk 11.4.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix Sorting Order For Parking Lots Stored In Static Realtime - (Closes issue ASTERISK-21035. Reported by Alex Epshteyn) - - * --- Fix StopMixMonitor Hanging Up When Unable To Stop MixMonitor On - A Channel - (Closes issue ASTERISK-21294. Reported by daroz) - - * --- When a session timer expires during a T.38 call, re-invite with - correct SDP - (Closes issue ASTERISK-21232. Reported by Nitesh Bansal) - - * --- Fix white noise on SRTP decryption - (Closes issue ASTERISK-21323. Reported by andrea) - - * --- Fix reload skinny with active devices. - (Closes issue ASTERISK-16610. Reported by wedhorn) - - For a full list of changes in this release, please see the ChangeLog: - - fix build with lua 5.2- The Asterisk Development Team has announced the release of Asterisk 11.3.0. - This release is available for immediate download at - - - The release of Asterisk 11.3.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix issue where chan_mobile fails to bind to first available - port - (Closes issue ASTERISK-16357. Reported by challado) - - * --- Fix Queue Log Reporting Every Call COMPLETECALLER With "h" - Extension Present - (Closes issue ASTERISK-20743. Reported by call) - - * --- Retain XMPP filters across reconnections so external modules - continue to function as expected. - (Closes issue ASTERISK-20916. Reported by kuj) - - * --- Ensure that a declined media stream is terminated with a '\r\n' - (Closes issue ASTERISK-20908. Reported by Dennis DeDonatis) - - * --- Fix pjproject compilation in certain circumstances - (Closes issue ASTERISK-20681. Reported by Dinesh Ramjuttun) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15 and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.15-cert2,, 10.12.2, 10.12.2-digiumphones, - and 11.2.2. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * A possible buffer overflow during H.264 format negotiation. The format - attribute resource for H.264 video performs an unsafe read against a media - attribute when parsing the SDP. - - This vulnerability only affected Asterisk 11. - - * A denial of service exists in Asterisk's HTTP server. AST-2012-014, fixed - in January of this year, contained a fix for Asterisk's HTTP server for a - remotely-triggered crash. While the fix prevented the crash from being - triggered, a denial of service vector still exists with that solution if an - attacker sends one or more HTTP POST requests with very large Content-Length - values. - - This vulnerability affects Certified Asterisk 1.8.15, Asterisk 1.8, 10, and 11 - - * A potential username disclosure exists in the SIP channel driver. When - authenticating a SIP request with alwaysauthreject enabled, allowguest - disabled, and autocreatepeer disabled, Asterisk discloses whether a user - exists for INVITE, SUBSCRIBE, and REGISTER transactions in multiple ways. - - This vulnerability affects Certified Asterisk 1.8.15, Asterisk 1.8, 10, and 11 - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-001, AST-2013-002, and AST-2013-003, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * The Asterisk Development Team has announced the release of Asterisk 11.2.1. - This release is available for immediate download at - - - The release of Asterisk 11.2.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Fix astcanary startup problem due to wrong pid value from before - daemon call - (Closes issue ASTERISK-20947. Reported by Jakob Hirsch) - - * --- Update init.d scripts to handle stderr; readd splash screen for - remote consoles - (Closes issue ASTERISK-20945. Reported by Warren Selby) - - * --- Reset RTP timestamp; sequence number on SSRC change - (Closes issue ASTERISK-20906. Reported by Eelco Brolman) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.2.0. - This release is available for immediate download at - - - The release of Asterisk 11.2.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- app_meetme: Fix channels lingering when hung up under certain - conditions - (Closes issue ASTERISK-20486. Reported by Michael Cargile) - - * --- Fix stuck DTMF when bridge is broken. - (Closes issue ASTERISK-20492. Reported by Jeremiah Gowdy) - - * --- Add missing support for "who hung up" to chan_motif. - (Closes issue ASTERISK-20671. Reported by Matt Jordan) - - * --- Remove a fixed size limitation for producing SDP and change how - ICE support is disabled by default. - (Closes issue ASTERISK-20643. Reported by coopvr) - - * --- Fix chan_sip websocket payload handling - (Closes issue ASTERISK-20745. Reported by Iñaki Baz Castillo) - - * --- Fix pjproject compilation in certain circumstances - (Closes issue ASTERISK-20681. Reported by Dinesh Ramjuttun) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced a security release for Asterisk 11, - Asterisk 11.1.2. This release addresses the security vulnerabilities reported in - AST-2012-014 and AST-2012-015, and replaces the previous version of Asterisk 11 - released for these security vulnerabilities. The prior release left open a - vulnerability in res_xmpp that exists only in Asterisk 11; as such, other - versions of Asterisk were resolved correctly by the previous releases. - - This release is available for immediate download at - - - The release of these versions resolve the following two issues: - - * Stack overflows that occur in some portions of Asterisk that manage a TCP - connection. In SIP, this is exploitable via a remote unauthenticated session; - in XMPP and HTTP connections, this is exploitable via remote authenticated - sessions. The vulnerabilities in SIP and HTTP were corrected in a prior - release of Asterisk; the vulnerability in XMPP is resolved in this release. - - * A denial of service vulnerability through exploitation of the device state - cache. Anonymous calls had the capability to create devices in Asterisk that - would never be disposed of. Handling the cachability of device states - aggregated via XMPP is handled in this release. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-014 and AST-2012-015. - - For a full list of changes in the current release, please see the ChangeLog: - - - - The security advisories are available at: - - * - * - - Thank you for your continued support of Asterisk - and we apologize for having - to do this twice!- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.11-cert10,, 10.11.1, 10.11.1-digiumphones, - and 11.1.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following two issues: - - * Stack overflows that occur in some portions of Asterisk that manage a TCP - connection. In SIP, this is exploitable via a remote unauthenticated session; - in XMPP and HTTP connections, this is exploitable via remote authenticated - sessions. - - * A denial of service vulnerability through exploitation of the device state - cache. Anonymous calls had the capability to create devices in Asterisk that - would never be disposed of. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-014 and AST-2012-015, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 11.1.0. - This release is available for immediate download at - - - The release of Asterisk 11.1.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix execution of 'i' extension due to uninitialized variable. - (Closes issue ASTERISK-20455. Reported by Richard Miller) - - * --- Prevent resetting of NATted realtime peer address on reload. - (Closes issue ASTERISK-18203. Reported by daren ferreira) - - * --- Fix ConfBridge crash if no timing module loaded. - (Closes issue ASTERISK-19448. Reported by feyfre) - - * --- Fix the Park 'r' option when a channel parks itself. - (Closes issue ASTERISK-19382. Reported by James Stocks) - - * --- Fix an issue where outgoing calls would fail to establish audio - due to ICE negotiation failures. - (Closes issue ASTERISK-20554. Reported by mmichelson) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.0.2. - This release is available for immediate download at - - - The release of Asterisk 11.0.2 resolves an issue reported by the - community and would have not been possible without your participation. - Thank you! - - The following is the issue resolved in this release: - - * --- chan_local: Fix local_pvt ref leak in local_devicestate(). - (Closes issue ASTERISK-20769. Reported by rmudgett) - - For a full list of changes in this release, please see the ChangeLog: - - simplify LDFLAGS setting- clean up things to allow building on arm arches- The Asterisk Development Team has announced the release of Asterisk 11.0.1. - This release is available for immediate download at - - - The release of Asterisk 11.0.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- chan_sip: Fix a bug causing SIP reloads to remove all entries - from the registry - (Closes issue ASTERISK-20611. Reported by Alisher) - - * --- confbridge: Fix a bug which made conferences not record with - AMI/CLI commands - (Closes issue ASTERISK-20601. Reported by Vilius) - - * --- Fix an issue with res_http_websocket where the chan_sip - WebSocket handler could not be registered. - (Closes issue ASTERISK-20631. Reported by danjenkins) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the release of - Asterisk 11.0.0. This release is available for immediate download at - - - Asterisk 11 is the next major release series of Asterisk. It is a Long Term - Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for DTLS-SRTP in chan_sip. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - The Asterisk Development Team has announced the second release candidate of - Asterisk 11.0.0. This release candidate is available for immediate - download at - - The release of Asterisk 11.0.0-rc2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release candidate: - - * --- Fix an issue where outgoing calls would fail to establish audio - due to ICE negotiation failures. - (Closes issue ASTERISK-20554. Reported by mmichelson) - - * --- Ensure Asterisk fails TCP/TLS SIP calls when certificate - checking fails - (Closes issue ASTERISK-20559. Reported by kmoore) - - * --- Don't make chan_sip export global symbols. - (Closes issue ASTERISK-20545. Reported by kmoore) - - For a full list of changes in this release candidate, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the first release candidate - of Asterisk 11.0.0. This release is available for immediate download at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 11 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - All Asterisk users are invited to participate in the #asterisk-testing channel - on IRC to work together in testing the many parts of Asterisk. - - Asterisk 11 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for DTLS-SRTP in chan_sip. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - Don't forget format_ilbc module- The Asterisk Development Team is pleased to announce the second beta release of - Asterisk 11.0.0. This release is available for immediate download at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 11 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - All Asterisk users are invited to participate in the #asterisk-testing channel - on IRC to work together in testing the many parts of Asterisk. - - Asterisk 11 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for DTLS-SRTP in chan_sip. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - The Asterisk Development Team has announced the release of Asterisk 10.8.0. - This release is available for immediate download at - - - The release of Asterisk 10.8.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- AST-2012-012: Resolve AMI User Unauthorized Shell Access through - ExternalIVR - (Closes issue ASTERISK-20132. Reported by Zubair Ashraf of IBM X-Force Research) - - * --- AST-2012-013: Resolve ACL rules being ignored during calls by - some IAX2 peers - (Closes issue ASTERISK-20186. Reported by Alan Frisch) - - * --- Handle extremely out of order RFC 2833 DTMF - (Closes issue ASTERISK-18404. Reported by Stephane Chazelas) - - * --- Resolve severe memory leak in CEL logging modules. - (Closes issue AST-916. Reported by Thomas Arimont) - - * --- Only re-create an SRTP session when needed - (Issue ASTERISK-20194. Reported by Nicolo Mazzon) - - For a full list of changes in this release, please see the ChangeLog: - - fix build on s390- fix build on s390- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8 and 10. The available security releases are - released as versions 1.8.11-cert7,, 10.7.1, and 10.7.1-digiumphones. - - These releases are available for immediate download at - - - The release of Asterisk 1.8.11-cert7,, 10.7.1, and 10.7.1-digiumphones - resolve the following two issues: - - * A permission escalation vulnerability in Asterisk Manager Interface. This - would potentially allow remote authenticated users the ability to execute - commands on the system shell with the privileges of the user running the - Asterisk application. Please note that the README-SERIOUSLY.bestpractices.txt - file delivered with Asterisk has been updated due to this and other related - vulnerabilities fixed in previous versions of Asterisk. - - * When an IAX2 call is made using the credentials of a peer defined in a - dynamic Asterisk Realtime Architecture (ARA) backend, the ACL rules for that - peer are not applied to the call attempt. This allows for a remote attacker - who is aware of a peer's credentials to bypass the ACL rules set for that - peer. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-012 and AST-2012-013, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 10.7.0. - This release is available for immediate download at - - - The release of Asterisk 10.7.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix deadlock potential with ast_set_hangupsource() calls. - (Closes issue ASTERISK-19801. Reported by Alec Davis) - - * --- Fix request routing issue when outboundproxy is used. - (Closes issue ASTERISK-20008. Reported by Marcus Hunger) - - * --- Set the Caller ID "tag" on peers even if remote party - information is present. - (Closes issue ASTERISK-19859. Reported by Thomas Arimont) - - * --- Fix NULL pointer segfault in ast_sockaddr_parse() - (Closes issue ASTERISK-20006. Reported by Michael L. Young) - - * --- Do not perform install on existing directories - (Closes issue ASTERISK-19492. Reported by Karl Fife) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 10.6.1. - This release is available for immediate download at - - - The release of Asterisk 10.6.1 resolves an issue reported by the - community and would have not been possible without your participation. - Thank you! - - The following is the issue resolved in this release: - - * --- Remove a superfluous and dangerous freeing of an SSL_CTX. - (Closes issue ASTERISK-20074. Reported by Trevor Helmsley) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 10.6.0. - This release is available for immediate download at - - - The release of Asterisk 10.6.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- format_mp3: Fix a possible crash in mp3_read(). - (Closes issue ASTERISK-19761. Reported by Chris Maciejewsk) - - * --- Fix local channel chains optimizing themselves out of a call. - (Closes issue ASTERISK-16711. Reported by Alec Davis) - - * --- Re-add LastMsgsSent value for SIP peers - (Closes issue ASTERISK-17866. Reported by Steve Davies) - - * --- Prevent sip_pvt refleak when an ast_channel outlasts its - corresponding sip_pvt. - (Closes issue ASTERISK-19425. Reported by David Cunningham) - - * --- Send more accurate identification information in dialog-info SIP - NOTIFYs. - (Closes issue ASTERISK-16735. Reported by Maciej Krajewski) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the first beta release of - Asterisk 11.0.0. This release is available for immediate download at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 11 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - All Asterisk users are invited to participate in the #asterisk-testing channel - on IRC to work together in testing the many parts of Asterisk. - - Asterisk 11 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the caller/callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - Rebuilt for Perl 5.16 rebuild- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8 and 10. The available security releases are - released as versions 1.8.11-cert4,, 10.5.2, and 10.5.2-digiumphones. - - These releases are available for immediate download at - - - The release of Asterisk 1.8.11-cert4,, 10.5.2, and 10.5.2-digiumphones - resolve the following two issues: - - * If Asterisk sends a re-invite and an endpoint responds to the re-invite with - a provisional response but never sends a final response, then the SIP dialog - structure is never freed and the RTP ports for the call are never released. If - an attacker has the ability to place a call, they could create a denial of - service by using all available RTP ports. - - * If a single voicemail account is manipulated by two parties simultaneously, - a condition can occur where memory is freed twice causing a crash. - - These issues and their resolution are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-010 and AST-2012-011, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - The security advisories are available at: - - * - * Perl 5.16 rebuild- The Asterisk Development Team has announced a security release for Asterisk 10. - This security release is released as version 10.5.1. - - The release is available for immediate download at - - - The release of Asterisk 10.5.1 resolves the following issue: - - * A remotely exploitable crash vulnerability was found in the Skinny (SCCP) - Channel driver. When an SCCP client sends an Off Hook message, followed by - a Key Pad Button Message, a structure that was previously set to NULL is - dereferenced. This allows remote authenticated connections the ability to - cause a crash in the server, denying services to legitimate users. - - This issue and its resolution is described in the security advisory. - - For more information about the details of this vulnerability, please read - security advisory AST-2012-009, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - The security advisory is available at: - - * The Asterisk Development Team has announced the release of Asterisk 10.5.0. - This release is available for immediate download at - - - The release of Asterisk 10.5.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Turn off warning message when bind address is set to any. - (Closes issue ASTERISK-19456. Reported by Michael L. Young) - - * --- Prevent overflow in calculation in ast_tvdiff_ms on 32-bit - machines - (Closes issue ASTERISK-19727. Reported by Ben Klang) - - * --- Make DAHDISendCallreroutingFacility wait 5 seconds for a reply - before disconnecting the call. - (Closes issue ASTERISK-19708. Reported by mehdi Shirazi) - - * --- Fix recalled party B feature flags for a failed DTMF atxfer. - (Closes issue ASTERISK-19383. Reported by lgfsantos) - - * --- Fix DTMF atxfer running h exten after the wrong bridge ends. - (Closes issue ASTERISK-19717. Reported by Mario) - - For a full list of changes in this release, please see the ChangeLog: - - Perl 5.16 rebuild- The Asterisk Development Team has announced the release of Asterisk 10.4.2. - This release is available for immediate download at - - - The release of Asterisk 10.4.2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Resolve crash in subscribing for MWI notifications - (Closes issue ASTERISK-19827. Reported by B. R) - - * --- Fix crash in ConfBridge when user announcement is played for - more than 2 users - (Closes issue ASTERISK-19899. Reported by Florian Gilcher) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8 and 10. The available security releases are - released as versions 1.8.11-cert2,, and 10.4.1. - - These releases are available for immediate download at - - - The release of Asterisk 1.8.11-cert2,, and 10.4.1 resolve the following - two issues: - - * A remotely exploitable crash vulnerability exists in the IAX2 channel - driver if an established call is placed on hold without a suggested music - class. Asterisk will attempt to use an invalid pointer to the music - on hold class name, potentially causing a crash. - - * A remotely exploitable crash vulnerability was found in the Skinny (SCCP) - Channel driver. When an SCCP client closes its connection to the server, - a pointer in a structure is set to NULL. If the client was not in the - on-hook state at the time the connection was closed, this pointer is later - dereferenced. This allows remote authenticated connections the ability to - cause a crash in the server, denying services to legitimate users. - - These issues and their resolution are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-007 and AST-2012-008, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 10.4.0. - This release is available for immediate download at - - - The release of Asterisk 10.4.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Prevent chanspy from binding to zombie channels - (Closes issue ASTERISK-19493. Reported by lvl) - - * --- Fix Dial m and r options and forked calls generating warnings - for voice frames. - (Closes issue ASTERISK-16901. Reported by Chris Gentle) - - * --- Remove ISDN hold restriction for non-bridged calls. - (Closes issue ASTERISK-19388. Reported by Birger Harzenetter) - - * --- Fix copying of CDR(accountcode) to local channels. - (Closes issue ASTERISK-19384. Reported by jamicque) - - * --- Ensure Asterisk acknowledges ACKs to 4xx on Replaces errors - (Closes issue ASTERISK-19303. Reported by Jon Tsiros) - - * --- Eliminate double close of file descriptor in manager.c - (Closes issue ASTERISK-18453. Reported by Jaco Kroon) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Asterisk 1.6.2, - 1.8, and 10. The available security releases are released as versions, -, and 10.3.1. - - These releases are available for immediate download at - - - The release of Asterisk,, and 10.3.1 resolve the following two - issues: - - * A permission escalation vulnerability in Asterisk Manager Interface. This - would potentially allow remote authenticated users the ability to execute - commands on the system shell with the privileges of the user running the - Asterisk application. - - * A heap overflow vulnerability in the Skinny Channel driver. The keypad - button message event failed to check the length of a fixed length buffer - before appending a received digit to the end of that buffer. A remote - authenticated user could send sufficient keypad button message events that the - buffer would be overrun. - - In addition, the release of Asterisk and 10.3.1 resolve the following - issue: - - * A remote crash vulnerability in the SIP channel driver when processing UPDATE - requests. If a SIP UPDATE request was received indicating a connected line - update after a channel was terminated but before the final destruction of the - associated SIP dialog, Asterisk would attempt a connected line update on a - non-existing channel, causing a crash. - - These issues and their resolution are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-004, AST-2012-005, and AST-2012-006, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - The security advisories are available at: - - * - * - * Update to 10.3.0- Update to 10.2.1 from upstream. - Fix remote stack overflow in app_milliwatt. - Fix remote stack overflow, including possible code injection, in HTTP digest authentication handling. - Disable asterisk-corosync package, as it doesn't build right now. - Resolves: rhbz#804045, rhbz#804038, rhbz#804042- * Add patch extracted from upstream to build with Corosync since - OpenAIS is no longer available. - * Add PrivateTmp=true to systemd service file (#782478) - * Add some macros to make it easier to build with fewer dependencies - (with corresponding less functionality) (#787389) - * Add isa macros in a few places plus a few other changes to make it - easier to cross-compile. (#787779)- The Asterisk Development Team has announced the release of Asterisk 10.1.2. This - release is available for immediate download at - - - The release of Asterisk 10.1.2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Fix SIP INFO DTMF handling for non-numeric codes --- - (Closes issue ASTERISK-19290. Reported by: Ira Emus) - - * --- Fix crash in ParkAndAnnounce --- - (Closes issue ASTERISK-19311. Reported-by: tootai) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 10.1.1. This - release is available for immediate download at - - - The release of Asterisk 10.1.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fixes deadlocks occuring in chan_agent --- - (Closes issue ASTERISK-19285. Reported by: Alex Villacis Lasso) - - * --- Ensure entering T.38 passthrough does not cause an infinite loop --- - (Closes issue ASTERISK-18951. Reported-by: Kristijan Vrban) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the release of - Asterisk 10.1.0. This release is available for immediate download at - - - The release of Asterisk 10.1.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * AST-2012-001: prevent crash when an SDP offer - is received with an encrypted video stream when support for video - is disabled and res_srtp is loaded. (closes issue ASTERISK-19202) - Reported by: Catalin Sanda - - * Allow playback of formats that don't support seeking. ast_streamfile - previously did unconditional seeking on files that broke playback of - formats that don't support that functionality. This patch avoids the - seek that was causing the problem. - (closes issue ASTERISK-18994) Patched by: Timo Teras - - * Add pjmedia probation concepts to res_rtp_asterisk's learning mode. In - order to better handle RTP sources with strictrtp enabled (which is the - default setting in 10) using the learning mode to figure out new sources - when they change is handled by checking for a number of consecutive (by - sequence number) packets received to an rtp struct based on a new - configurable value called 'probation'. Also, during learning mode instead - of liberally accepting all packets received, we now reject packets until a - clear source has been determined. - - * Handle AST_CONTROL_UPDATE_RTP_PEER frames in local bridge loop. Failing - to handle AST_CONTROL_UPDATE_RTP_PEER frames in the local bridge loop - causes the loop to exit prematurely. This causes a variety of negative side - effects, depending on when the loop exits. This patch handles the frame by - essentially swallowing the frame in the local loop, as the current channel - drivers expect the RTP bridge to handle the frame, and, in the case of the - local bridge loop, no additional action is necessary. - (closes issue ASTERISK-19095) Reported by: Stefan Schmidt Tested - by: Matt Jordan - - * Fix timing source dependency issues with MOH. Prior to this patch, - res_musiconhold existed at the same module priority level as the timing - sources that it depends on. This would cause a problem when music on - hold was reloaded, as the timing source could be changed after - res_musiconhold was processed. This patch adds a new module priority - level, AST_MODPRI_TIMING, that the various timing modules are now loaded - at. This now occurs before loading other resource modules, such - that the timing source is guaranteed to be set prior to resolving - the timing source dependencies. - (closes issue ASTERISK-17474) Reporter: Luke H Tested by: Luke H, - Vladimir Mikhelson, zzsurf, Wes Van Tlghem, elguero, Thomas Arimont - Patched by elguero - - * Fix RTP reference leak. If a blind transfer were initiated using a - REFER without a prior reINVITE to place the call on hold, AND if Asterisk - were sending RTCP reports, then there was a reference leak for the - RTP instance of the transferrer. - (closes issue ASTERISK-19192) Reported by: Tyuta Vitali - - * Fix blind transfers from failing if an 'h' extension - is present. This prevents the 'h' extension from being run on the - transferee channel when it is transferred via a native transfer - mechanism such as SIP REFER. (closes issue ASTERISK-19173) Reported - by: Ross Beer Tested by: Kristjan Vrban Patches: ASTERISK-19173 by - Mark Michelson (license 5049) - - * Restore call progress code for analog ports. Extracting sig_analog - from chan_dahdi lost call progress detection functionality. Fix - analog ports from considering a call answered immediately after - dialing has completed if the callprogress option is enabled. - (closes issue ASTERISK-18841) - Reported by: Richard Miller Patched by Richard Miller - - * Fix regression that 'rtp/rtcp set debup ip' only works when a port - was also specified. - (closes issue ASTERISK-18693) Reported by: Davide Dal Reviewed by: - Walter Doekes - - For a full list of changes in this release candidate, please see the ChangeLog: - - Remove asterisk-ais. OpenAIS was removed from Fedora.- Rebuilt for Don't build API docs as the build never finishes- The Asterisk Development Team is proud to announce the release of - Asterisk 10.0.0. This release is available for immediate download at - - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - - With the release of the Asterisk 10 branch, the preceding '1.' has been removed - from the version number per the blog post available at - - - - - The release of Asterisk 10 would not have been possible without the support and - contributions of the community. - - You can find an overview of the work involved with the 10.0.0 release in the - summary: - - - - A short list of available features includes: - - * T.38 gateway functionality has been added to res_fax. - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - * Support for defining hints has been added to pbx_lua. - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - Also, when upgrading a system between major versions, it is imperative that you - read and understand the contents of the UPGRADE.txt file, which is located at: - - The Asterisk Development Team has announced the third release candidate of - Asterisk 10.0.0. This release candidate is available for immediate download at - - - The release of Asterisk 10.0.0-rc3 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Add ASTSBINDIR to the list of configurable paths - - This patch also makes astdb2sqlite3 and astcanary use the configured - directory instead of relying on $PATH. - - * Don't crash on INFO automon request with no channel - - AST-2011-014. When automon was enabled in features.conf, it was possible - to crash Asterisk by sending an INFO request if no channel had been - created yet. - - * Fixed crash from orphaned MWI subscriptions in chan_sip - - This patch resolves the issue where MWI subscriptions are orphaned - by subsequent SIP SUBSCRIBE messages. - - * Fix a change in behavior in 'database show' from 1.8. - - In 1.8 and previous versions, one could use any fullword portion of - the key name, including the full key, to obtain the record. Until this - patch, this did not work for the full key. - - * Default to nat=yes; warn when nat in general and peer differ - - AST-2011-013. It is possible to enumerate SIP usernames when the general and - user/peer nat settings differ in whether to respond to the port a request is - sent from or the port listed for responses in the Via header. In 1.4 and - 1.6.2, this would mean if one setting was nat=yes or nat=route and the other - was either nat=no or nat=never. In 1.8 and 10, this would mean when one - was nat=force_rport and the other was nat=no. - - In order to address this problem, it was decided to switch the default - behavior to nat=yes/force_rport as it is the most commonly used option - and to strongly discourage setting nat per-peer/user when at all - possible. - - * Fixed SendMessage stripping extension from To: header in SIP MESSAGE - - When using the MessageSend application to send a SIP MESSAGE to a - non-peer, chan_sip stripped off the extension and failed to add it back - to the sip_pvt structure before transmitting. This patch adds the full - URI passed in from the message core to the sip_pvt structure. - - For a full list of changes in this release candidate, please see the ChangeLog: - - The Asterisk Development Team has announced the second release candidate of - Asterisk 10.0.0. This release candidate is available for immediate download at - - - The release of Asterisk 10.0.0-rc2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Ensure that a null vmexten does not cause a segfault - - * Fix issue with ConfBridge participants hanging up during DTMF feature - menu usage getting stuck in conference forever - (closes issue ASTERISK-18829) - Reported by: zvision - - * Fix app_macro.c MODULEINFO section termination - (closes issue ASTERISK-18848) - Reported by: Tony Mountifield - - For a full list of changes in this release candidate, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the first release candidate - of Asterisk 10.0.0. This release candidate is available for immediate download - at - - All Asterisk users are encouraged to participate in the Asterisk 10 testing - process. Please report any issues found to the issue tracker, - It is also very useful to see successful test - reports. Please post those to the asterisk-dev mailing list. - - All Asterisk users are invited to participate in the #asterisk-testing - channel on IRC to work together in testing the many parts of Asterisk. - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more - information about support time lines for Asterisk releases, see the Asterisk - versions page: - - A short list of features includes: - - * T.38 gateway functionality has been added to res_fax. - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - (More information available at - ) - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - * Support for defining hints has been added to pbx_lua. - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - Add patch from upstream SVN to fix AST-2011-012- Patch cleanup day- The Asterisk Development Team is pleased to announce the second beta release of - Asterisk 10.0.0. This release is available for immediate download at - - - With the release of the Asterisk 10 branch, the preceding '1.' has been removed - from the version number per the blog post available at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 10 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - - All Asterisk users are invited to participate in the #asterisk-testing - channel on IRC to work together in testing the many parts of Asterisk. - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more - information about support time lines for Asterisk releases, see the Asterisk - versions page: - - A short list of features includes: - - * T.38 gateway functionality has been added to res_fax. - - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - - * Support for defining hints has been added to pbx_lua. - - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - - The Asterisk Development Team is pleased to announce the first beta release of - Asterisk 10.0.0-beta1. This release is available for immediate download at - - - With the release of the Asterisk 10 branch, the preceding '1.' has been removed - from the version number per the blog post available at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 10 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - - All Asterisk users are invited to participate in the #asterisk-testing - channel on IRC to work together in testing the many parts of Asterisk. - Additionally users can make use of the RPM and DEB packages now being built for - all Asterisk releases. More information available at - - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more - information about support time lines for Asterisk releases, see the Asterisk - versions page: - - A short list of included features includes: - - * T.38 gateway functionality has been added to res_fax. - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - * Support for defining hints has been added to pbx_lua. - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - Perl mass rebuild- Perl mass rebuild- The Asterisk Development Team announces the release of Asterisk This - release is available for immediate download at - - - The release of Asterisk resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * Fix Deadlock with attended transfer of SIP call - (Closes issue #18837. Reported, patched by alecdavis. Tested by Irontec, ZX81, - cmaj) - - * Fixes thread blocking issue in the sip TCP/TLS implementation. - (Closes issue #18497. Reported by vois. Patched by dvossel. Tested by vois, - rossbeer, kowalma, Freddi_Fonet) - - * Be more tolerant of what URI we accept for call completion PUBLISH requests. - (Closes issue #18946. Reported by GeorgeKonopacki. Patched by mmichelson) - - * Fix a nasty chanspy bug which was causing a channel leak every time a spied on - channel made a call. - (Closes issue #18742. Reported by jkister. Tested by jcovert, jrose) - - * This patch fixes a bug with MeetMe behavior where the 'P' option for always - prompting for a pin is ignored for the first caller. - (Closes issue #18070. Reported by mav3rick. Patched by bbryant) - - * Fix issue where Asterisk does not hangup a channel after endpoint hangs up. If - the call that the dialplan started an AGI script for is hungup while the AGI - script is in the middle of a command then the AGI script is not notified of - the hangup. - (Closes issue #17954, #18492. Reported by mn3250, devmod. Patched by rmudgett) - - * Resolve issue where leaving a voicemail, the MWI message is never sent. The - same thing happens when checking a voicemail and marking it as read. - (Closes issue ASTERISK-18002. Reported by Leif Madsen. Resolved by Richard - Mudgett) - - * Resolve issue where wait for leader with Music On Hold allows crosstalk - between participants. Parenthesis in the wrong position. Regression from issue - #14365 when expanding conference flags to use 64 bits. - (Closes issue #18418. Reported by MrHanMan. Patched by rmudgett) - - For a full list of changes in this release, please see the ChangeLog: - - Rebuild for net-snmp 5.7- Fix systemd dependencies in EL6 and F15- The Asterisk Development Team has announced the first release candidate of - Asterisk 1.8.5. This release candidate is available for immediate download at - - - The release of Asterisk 1.8.5-rc1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Fix Deadlock with attended transfer of SIP call - (Closes issue #18837. Reported, patched by alecdavis. Tested by Irontec, ZX81, - cmaj) - - * Fixes thread blocking issue in the sip TCP/TLS implementation. - (Closes issue #18497. Reported by vois. Patched by dvossel. Tested by vois, - rossbeer, kowalma, Freddi_Fonet) - - * Be more tolerant of what URI we accept for call completion PUBLISH requests. - (Closes issue #18946. Reported by GeorgeKonopacki. Patched by mmichelson) - - * Fix a nasty chanspy bug which was causing a channel leak every time a spied on - channel made a call. - (Closes issue #18742. Reported by jkister. Tested by jcovert, jrose) - - * This patch fixes a bug with MeetMe behavior where the 'P' option for always - prompting for a pin is ignored for the first caller. - (Closes issue #18070. Reported by mav3rick. Patched by bbryant) - - * Fix issue where Asterisk does not hangup a channel after endpoint hangs up. If - the call that the dialplan started an AGI script for is hungup while the AGI - script is in the middle of a command then the AGI script is not notified of - the hangup. - (Closes issue #17954, #18492. Reported by mn3250, devmod. Patched by rmudgett) - - * Resolve issue where leaving a voicemail, the MWI message is never sent. The - same thing happens when checking a voicemail and marking it as read. - (Closes issue ASTERISK-18002. Reported by Leif Madsen. Resolved by Richard - Mudgett) - - * Resolve issue where wait for leader with Music On Hold allows crosstalk - between participants. Parenthesis in the wrong position. Regression from issue - #14365 when expanding conference flags to use 64 bits. - (Closes issue #18418. Reported by MrHanMan. Patched by rmudgett) - - * Fix timerfd locking issue. - (Closes ASTERISK-17867, ASTERISK-17415. Patched by kobaz) - - For a full list of changes in this release candidate, please see the ChangeLog: - - Fedora Directory Server -> 389 Directory Server- The Asterisk Development Team has announced the release of Asterisk - versions,, and, which are security - releases. - - These releases are available for immediate download at - - - The release of Asterisk,, and resolves the - following issue: - - AST-2011-011: Asterisk may respond differently to SIP requests from an - invalid SIP user than it does to a user configured on the system, even - when the alwaysauthreject option is set in the configuration. This can - leak information about what SIP users are valid on the Asterisk - system. - - For more information about the details of this vulnerability, please - read the security advisory AST-2011-011, which was released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisory AST-2011-011 is available at: - - Don't forget stereorize- Move /var/run/asterisk to /run/asterisk - Add comments to systemd service file on how to mimic safe_asterisk functionality - Build more of the optional binaries - Install the tmpfiles.d configuration on Fedora 15- The Asterisk Development Team has announced the release of Asterisk versions -,, and, which are security releases. - - These releases are available for immediate download at - - - The release of Asterisk,, and resolves several issues - as outlined below: - - * AST-2011-008: If a remote user sends a SIP packet containing a null, - Asterisk assumes available data extends past the null to the - end of the packet when the buffer is actually truncated when - copied. This causes SIP header parsing to modify data past - the end of the buffer altering unrelated memory structures. - This vulnerability does not affect TCP/TLS connections. - -- Resolved in and - - * AST-2011-009: A remote user sending a SIP packet containing a Contact header - with a missing left angle bracket (<) causes Asterisk to - access a null pointer. - -- Resolved in - - * AST-2011-010: A memory address was inadvertently transmitted over the - network via IAX2 via an option control frame and the remote party would try - to access it. - -- Resolved in,, and - - The issues and resolutions are described in the AST-2011-008, AST-2011-009, and - AST-2011-010 security advisories. - - For more information about the details of these vulnerabilities, please read - the security advisories AST-2011-008, AST-2011-009, and AST-2011-010, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisories AST-2011-008, AST-2011-009, and AST-2011-010 are available - at: - - - - Convert to systemd- Perl mass rebuild- Perl 5.14 mass rebuild- - The Asterisk Development Team has announced the release of Asterisk - version, which is a security release for Asterisk 1.8. - - This release is available for immediate download at - - - The release of Asterisk resolves an issue with SIP URI - parsing which can lead to a remotely exploitable crash: - - Remote Crash Vulnerability in SIP channel driver (AST-2011-007) - - The issue and resolution is described in the AST-2011-007 security - advisory. - - For more information about the details of this vulnerability, please - read the security advisory AST-2011-007, which was released at the - same time as this announcement. - - For a full list of changes in the current release, please see the ChangeLog: - - - - Security advisory AST-2011-007 is available at: - - - - The Asterisk Development Team has announced the release of Asterisk - This release is available for immediate download at - - - The release of Asterisk resolves several issues reported by the - community. Without your help this release would not have been possible. - Thank you! - - Below is a list of issues resolved in this release: - - * Fix our compliance with RFC 3261 section 18.2.2. (aka Cisco phone fix) - (Closes issue #18951. Reported by jmls. Patched by wdoekes) - - * Resolve a change in IPv6 header parsing due to the Cisco phone fix issue. - This issue was found and reported by the Asterisk test suite. - (Closes issue #18951. Patched by mnicholson) - - * Resolve potential crash when using SIP TLS support. - (Closes issue #19192. Reported by stknob. Patched by Chainsaw. Tested by - vois, Chainsaw) - - * Improve reliability when using SIP TLS. - (Closes issue #19182. Reported by st. Patched by mnicholson) - - - For a full list of changes in this release candidate, please see the ChangeLog: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.4. This - release is available for immediate download at - - - The release of Asterisk 1.8.4 resolves several issues reported by the community. - Without your help this release would not have been possible. Thank you! - - Below is a sample of the issues resolved in this release: - - * Use SSLv23_client_method instead of old SSLv2 only. - (Closes issue #19095, #19138. Reported, patched by tzafrir. Tested by russell - and chazzam. - - * Resolve crash in ast_mutex_init() - (Patched by twilson) - - * Resolution of several DTMF based attended transfer issues. - (Closes issue #17999, #17096, #18395, #17273. Reported by iskatel, gelo, - shihchuan, grecco. Patched by rmudgett) - - NOTE: Be sure to read the ChangeLog for more information about these changes. - - * Resolve deadlocks related to device states in chan_sip - (Closes issue #18310. Reported, patched by one47. Patched by jpeeler) - - * Resolve an issue with the Asterisk manager interface leaking memory when - disabled. - (Reported internally by kmorgan. Patched by russellb) - - * Support greetingsfolder as documented in voicemail.conf.sample. - (Closes issue #17870. Reported by edhorton. Patched by seanbright) - - * Fix channel redirect out of MeetMe() and other issues with channel softhangup - (Closes issue #18585. Reported by oej. Tested by oej, wedhorn, russellb. - Patched by russellb) - - * Fix voicemail sequencing for file based storage. - (Closes issue #18498, #18486. Reported by JJCinAZ, bluefox. Patched by - jpeeler) - - * Set hangup cause in local_hangup so the proper return code of 486 instead of - 503 when using Local channels when the far sides returns a busy. Also affects - CCSS in Asterisk 1.8+. - (Patched by twilson) - - * Fix issues with verbose messages not being output to the console. - (Closes issue #18580. Reported by pabelanger. Patched by qwell) - - * Fix Deadlock with attended transfer of SIP call - (Closes issue #18837. Reported, patched by alecdavis. Tested by - alecdavid, Irontec, ZX81, cmaj) - - Includes changes per AST-2011-005 and AST-2011-006 - For a full list of changes in this release candidate, please see the ChangeLog: - - - - Information about the security releases are available at: - - - The Asterisk Development Team has announced security releases for Asterisk - branches 1.4, 1.6.1, 1.6.2, and 1.8. The available security releases are - released as versions,,, and - - These releases are available for immediate download at - - - The releases of Asterisk,,, and resolve two - issues: - - * File Descriptor Resource Exhaustion (AST-2011-005) - * Asterisk Manager User Shell Access (AST-2011-006) - - The issues and resolutions are described in the AST-2011-005 and AST-2011-006 - security advisories. - - For more information about the details of these vulnerabilities, please read the - security advisories AST-2011-005 and AST-2011-006, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - - Security advisory AST-2011-005 and AST-2011-006 are available at: - - - Bump release and rebuild for mysql 5.5.10 soname change.- The Asterisk Development Team has announced security releases for Asterisk - branches 1.6.1, 1.6.2, and 1.8. The available security releases are - released as versions,, and - - These releases are available for immediate download at - - - ** This is a re-release of Asterisk, and which - contained a bug which caused duplicate manager entries (issue #18987). - - The releases of Asterisk,, and resolve two issues: - - * Resource exhaustion in Asterisk Manager Interface (AST-2011-003) - * Remote crash vulnerability in TCP/TLS server (AST-2011-004) - - The issues and resolutions are described in the AST-2011-003 and AST-2011-004 - security advisories. - - For more information about the details of these vulnerabilities, please read the - security advisories AST-2011-003 and AST-2011-004, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisory AST-2011-003 and AST-2011-004 are available at: - - - The Asterisk Development Team has announced security releases for Asterisk - branches 1.6.1, 1.6.2, and 1.8. The available security releases are - released as versions,, and - - These releases are available for immediate download at - - - The releases of Asterisk,, and resolve two issues: - - * Resource exhaustion in Asterisk Manager Interface (AST-2011-003) - * Remote crash vulnerability in TCP/TLS server (AST-2011-004) - - The issues and resolutions are described in the AST-2011-003 and AST-2011-004 - security advisories. - - For more information about the details of these vulnerabilities, please read the - security advisories AST-2011-003 and AST-2011-004, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisory AST-2011-003 and AST-2011-004 are available at: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.3. This - release is available for immediate download at - - - The release of Asterisk 1.8.3 resolves several issues reported by the community - and would have not been possible without your participation. Thank you! - - The following is a sample of the issues resolved in this release: - - * Resolve duplicated data in the AstDB when using DIALGROUP() - (Closes issue #18091. Reported by bunny. Patched by tilghman) - - * Ensure the ipaddr field in realtime is large enough to handle IPv6 addresses. - (Closes issue #18464. Reported, patched by IgorG) - - * Reworking parsing of mwi => lines to resolve a segfault. Also add a set of - unit tests for the function that does the parsing. - (Closes issue #18350. Reported by gbour. Patched by Marquis) - - * When using cdr_pgsql the billsec field was not populated correctly on - unanswered calls. - (Closes issue #18406. Reported by joscas. Patched by tilghman) - - * Resolve memory leak in iCalendar and Exchange calendaring modules. - (Closes issue #18521. Reported, patched by pitel. Tested by cervajs) - - * This version of Asterisk includes the new Compiler Flags option - BETTER_BACKTRACES which uses libbfd to search for better symbol information - within both the Asterisk binary, as well as loaded modules, to assist when - using inline backtraces to track down problems. - (Patched by tilghman) - - * Resolve issue where no Music On Hold may be triggered when using - res_timing_dahdi. - (Closes issues #18262. Reported by francesco_r. Patched by cjacobson. Tested - by francesco_r, rfrantik, one47) - - * Resolve a memory leak when the Asterisk Manager Interface is disabled. - (Reported internally by kmorgan. Patched by russellb) - - * Reimplemented fax session reservation to reverse the ABI breakage introduced - in r297486. - (Reported internally. Patched by mnicholson) - - * Fix regression that changed behavior of queues when ringing a queue member. - (Closes issue #18747, #18733. Reported by vrban. Patched by qwell.) - - * Resolve deadlock involving REFER. - (Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.) - - Additionally, this release has the changes related to security bulletin - AST-2011-002 which can be found at - - - For a full list of changes in this release, please see the ChangeLog: - - - The Asterisk Development Team has announced the third release candidate of - Asterisk 1.8.3. This release candidate is available for immediate download at - - - The release of Asterisk 1.8.3-rc3 resolves the following issues in addition to - those included in 1.8.3-rc1 and 1.8.3-rc2: - - * Fix regression that changed behavior of queues when ringing a queue member. - (Closes issue #18747, #18733. Reported by vrban. Patched by qwell.) - - * Resolve deadlock involving REFER. - (Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.) - - For a full list of changes in this release candidate, please see the ChangeLog: - - Bump release to build for F15- Remove isa macros- Make library dependencies architecture specific- Rebuilt for Asterisk Development Team has announced the second release candidate of Asterisk 1.8.3. This release candidate is available for immediate download at The release of Asterisk 1.8.3-rc2 resolves the following issues in addition to those included in 1.8.3-rc1: * Resolve issue where no Music On Hold may be triggered when using res_timing_dahdi. (Closes issues #18262. Reported by francesco_r. Patched by cjacobson. Tested by francesco_r, rfrantik, one47) * Resolve a memory leak when the Asterisk Manager Interface is disabled. (Reported internally by kmorgan. Patched by russellb) * Reimplemented fax session reservation to reverse the ABI breakage introduced in r297486. (Reported internally. Patched by mnicholson) For a full list of changes in this release candidate, please see the ChangeLog: - The Asterisk Development Team has announced the first release candidate of - Asterisk 1.8.3. This release candidate is available for immediate download at - - - The release of Asterisk 1.8.3-rc1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Resolve duplicated data in the AstDB when using DIALGROUP() - (Closes issue #18091. Reported by bunny. Patched by tilghman) - - * Ensure the ipaddr field in realtime is large enough to handle IPv6 addresses. - (Closes issue #18464. Reported, patched by IgorG) - - * Reworking parsing of mwi => lines to resolve a segfault. Also add a set of - unit tests for the function that does the parsing. - (Closes issue #18350. Reported by gbour. Patched by Marquis) - - * When using cdr_pgsql the billsec field was not populated correctly on - unanswered calls. - (Closes issue #18406. Reported by joscas. Patched by tilghman) - - * Resolve memory leak in iCalendar and Exchange calendaring modules. - (Closes issue #18521. Reported, patched by pitel. Tested by cervajs) - - * This version of Asterisk includes the new Compiler Flags option - BETTER_BACKTRACES which uses libbfd to search for better symbol information - within both the Asterisk binary, as well as loaded modules, to assist when - using inline backtraces to track down problems. - (Patched by tilghman)- - The Asterisk Development Team has announced the release of Asterisk - This release is available for immediate download at - - - The release of Asterisk resolves the following issue: - - * Reimplemented fax session reservation to reverse the ABI breakage introduced - in r297486. - (Reported by Jeremy Kister on the asterisk-users mailing list. Patched by - mnicholson) - - For a full list of changes in this release, please see the ChangeLog: - - Build with SRTP support- - The Asterisk Development Team has announced a release for the security issue - described in AST-2011-001. - - Due to a failed merge, Asterisk which should have included the security - fix did not. Asterisk contains the the changes which should have been - included in Asterisk - - This releases is available for immediate download at - - - The releases of Asterisk,,,,, -, and resolve an issue when forming an outgoing SIP request while - in pedantic mode, which can cause a stack buffer to be made to overflow if - supplied with carefully crafted caller ID information. The issue and resolution - are described in the AST-2011-001 security advisory. - - For more information about the details of this vulnerability, please read the - security advisory AST-2011-001, which was released at the same time as this - announcement. - - For a full list of changes in the current release, please see the ChangeLog: - - - - Security advisory AST-2011-001 is available at: - - - The Asterisk Development Team has announced security releases for the following - versions of Asterisk: - - * - * - * - * - * - * - * - - These releases are available for immediate download at - - - The releases of Asterisk,,,,, -, and resolve an issue when forming an outgoing SIP request while - in pedantic mode, which can cause a stack buffer to be made to overflow if - supplied with carefully crafted caller ID information. The issue and resolution - are described in the AST-2011-001 security advisory. - - For more information about the details of this vulnerability, please read the - security advisory AST-2011-001, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - - - - - Security advisory AST-2011-001 is available at: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.2. This - release is available for immediate download at - - - The release of Asterisk 1.8.2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * 'sip notify clear-mwi' needs terminating CRLF. - (Closes issue #18275. Reported, patched by klaus3000) - - * Patch for deadlock from ordering issue between channel/queue locks in - app_queue (set_queue_variables). - (Closes issue #18031. Reported by rain. Patched by bbryant) - - * Fix cache of device state changes for multiple servers. - (Closes issue #18284, #18280. Reported, tested by klaus3000. Patched, tested - by russellb) - - * Resolve issue where channel redirect function (CLI or AMI) hangs up the call - instead of redirecting the call. - (Closes issue #18171. Reported by: SantaFox) - (Closes issue #18185. Reported by: kwemheuer) - (Closes issue #18211. Reported by: zahir_koradia) - (Closes issue #18230. Reported by: vmarrone) - (Closes issue #18299. Reported by: mbrevda) - (Closes issue #18322. Reported by: nerbos) - - * Fix reloading of peer when a user is requested. Prevent peer reloading from - causing multiple MWI subscriptions to be created when using realtime. - (Closes issue #18342. Reported, patched by nivek.) - - * Fix XMPP PubSub-based distributed device state. Initialize pubsubflags to 0 - so res_jabber doesn't think there is already an XMPP connection sending - device state. Also clean up CLI commands a bit. - (Closes issue #18272. Reported by klaus3000. Patched by Marquis42) - - * Don't crash after Set(CDR(userfield)=...) in ast_bridge_call. Instead of - setting peer->cdr = NULL, set it to not post. - (Closes issue #18415. Reported by macbrody. Patched, tested by jsolares) - - * Fixes issue with outbound google voice calls not working. Thanks to az1234 - and nevermind_quack for their input in helping debug the issue. - (Closes issue #18412. Reported by nevermind_quack. Patched by dvossel) - - For a full list of changes in this release, please see the ChangeLog: - - - The Asterisk Development Team has announced the release of Asterisk - This release is available for immediate download at - - - The release of Asterisk resolves two issues reported by the community - since the release of Asterisk 1.8.1. - - * Don't crash after Set(CDR(userfield)=...) in ast_bridge_call. Instead of - setting peer->cdr = NULL, set it to not post. - (Closes issue #18415. Reported by macbrody. Patched, tested by jsolares) - - * Fixes issue with outbound google voice calls not working. Thanks to az1234 - and nevermind_quack for their input in helping debug the issue. - (Closes issue #18412. Reported by nevermind_quack. Patched by dvossel) - - For a full list of changes in this release candidate, please see the ChangeLog: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.1. This - release is available for immediate download at - - - The release of Asterisk 1.8.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * Fix issue when using directmedia. Asterisk needs to limit the codecs offered - to just the ones that both sides recognize, otherwise they may end up sending - audio that the other side doesn't understand. - (Closes issue #17403. Reported, patched by one47. Tested by one47, falves11) - - * Resolve issue where Party A in an analog 3-way call would continue to hear - ringback after party C answers. - (Patched by rmudgett) - - * Fix playback failure when using IAX with the timerfd module. - (Closes issue #18110. Reported, tested by tpanton. Patched by jpeeler) - - * Fix problem with qualify option packets for realtime peers never stopping. - The option packets not only never stopped, but if a realtime peer was not in - the peer list multiple options dialogs could accumulate over time. - (Closes issue #16382. Reported by lftsy. Tested by zerohalo. Patched by - jpeeler) - - * Fix issue where it is possible to crash Asterisk by feeding the curl engine - invalid data. - (Closes issue #18161. Reported by wdoekes. Patched by tilghman) - - For a full list of changes in this release, please see the ChangeLog: - - dont package up the ices bits on el the client doesnt exist for us- dont build the 389 directory server package its not available on rhel6- dont always build AIS modules we dont have the BuildRequires on epel- Rebuild for new net-snmp.- Always build AIS modules- The Asterisk Development Team is proud to announce the release of Asterisk - 1.8.0. This release is available for immediate download at - - - Asterisk 1.8 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.4. For more information about - support time lines for Asterisk releases, see the Asterisk versions page. - - - - The release of Asterisk 1.8.0 would not have been possible without the support - and contributions of the community. Since Asterisk 1.6.2, we've had over 500 - reporters, more than 300 testers and greater than 200 developers contributed to - this release. - - You can find a summary of the work involved with the 1.8.0 release in the - sumary: - - - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - - - Thank you for your continued support of Asterisk!- - The release of Asterisk 1.8.0-rc5 was triggered by some last minute platform - compatibility IPv6 changes. In addition, the availability of the English sound - prompts with Australian accents has been added. - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - - - This release candidate contains fixes since the last release candidate as - reported by the community. A sampling of the changes in this release candidate - include: - - * Additional fixups in chan_gtalk that allow outbound calls to both Google - Talk and Google Voice recipients. Adds new chan_gtalk enhancements externip - and stunaddr. - (Closes issue #13971. Patched by dvossel) - - * Resolve manager crash issue. - (Closes issue #17994. Reported by vrban. Patchd by dvossel) - - * Documentation updates for sample configuration files. - (Closes issues #18107, #18101. Reported, patched by lathama, lmadsen) - - * Resolve issue where faxdetect would only detect the first fax call in - chan_dahdi. - (Closes issue #18116. Reported by seandarcy. Patched by rmudgett) - - * Resolve issue where a channel that is setup and torn down *very* quickly may - not have the right call disposition or ${DIALSTATUS}. - (Closes issue #16946. Reported by davidw. Review - - - * Set TCLASS field of IPv6 header when SIP QoS options are set. - (Closes issue #18099. Reported by jamesnet. Patched by dvossel) - - * Resolve issue where Asterisk could crash on shutdown when using SRTP. - (Closes issue #18085. Reported by st. Patched by twilson) - - * Fix issue where peers host port would be lost on a SIP reload. - (Closes issue #18135. Reported, tested by lmadsen. Patched by dvossel) - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - This release candidate contains fixes since the release candidate as reported by - the community. A sampling of the changes in this release candidate include: - - * Still build chan_sip even if res_crypto cannot be built (use, but not depend) - (Reported by a user on the mailing list. Patched by tilghman) - - * Get notifications for call files only when a file is closed, not when created - (Closes issue #17924. Reported by mkeuter. Patched by abeldeck) - - * Fixes to chan_gtalk to allow outbound DTMF support to work correctly. Gtalk - expects the DTMF to arrive on the RTP stream and not via jingle DTMF - signalling. - (Patched by dvossel. Tested by malcolmd) - - * Fixes to allow chan_gtalk to communicate with the Gmail web client. - (Patched by phsultan and dvossel) - - * Fix to GET DATA to allow audio to be streamed via an AGI. - (Closes issue #18001. Reported by jamicque. Patched by tilghman) - - * Resolve dnsmgr memory corruption in chan_iax2. - (Closes issue #17902. Reported by afried. Patched by russell, dvossel) - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - This release candidate contains fixes since the last beta release as reported by - the community. A sampling of the changes in this release candidate include: - - * Add slin16 support for format_wav (new wav16 file extension) - (Closes issue #15029. Reported, patched by andrew. Tested by Qwell) - - * Fixes a bug in manager.c where the default configuration values weren't reset - when the manager configuration was reloaded. - (Closes issue #17917. Reported by lmadsen. Patched by bbryant) - - * Various fixes for the calendar modules. - (Patched by Jan Kalab. - Reviewboard: - Closes issue #17877. Review: - Closes issue #17776. Review: - - * Add CHANNEL(checkhangup) to check whether a channel is in the process of - being hung up. - (Closes issue #17652. Reported, patched by kobaz) - - * Fix a bug with MeetMe where after announcing the amount of time left in a - conference, if music on hold was playing, it doesn't restart. - (Closes issue #17408, Reported, patched by sysreq) - - * Fix interoperability problems with session timer behavior in Asterisk. - (Closes issue #17005. Reported by alexcarey. Patched by dvossel) - - * Rate limit calls to fsync() to 1 per second after astdb updates. Astdb was - determined to be one of the most significant bottlenecks in SIP registration - processing. This patch improved the speed of an astdb load test by 50000% - (yes, Fifty-Thousand Percent). On this particular load test setup, this - doubled the number of SIP registrations the server could handle. - (Review: - - * Don't clear the username from a realtime database when a registration - expires. Non-realtime chan_sip does not clear the username from memory when a - registration expiries so realtime probably shouldn't either. - (Closes issue #17551. Reported, patched by: ricardolandim. Patched by - mnicholson) - - * Don't hang up a call on an SRTP unprotect failure. Also make it more obvious - when there is an issue en/decrypting. - (Closes issue #17563. Reported by Alexcr. Patched by sfritsch. Tested by - twilson) - - * Many more issues. This is a significant upgrade over Asterisk 1.8.0 beta 5! - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - This release contains fixes since the last beta release as reported by the - community. A sampling of the changes in this release include: - - * Fix issue where TOS is no longer set on RTP packets. - (Closes issue #17890. Reported, patched by elguero) - - * Change pedantic default value in chan_sip from 'no' to 'yes' - - * Asterisk now dynamically builds the "Supported" header depending on what is - enabled/disabled in sip.conf. Session timers used to always be advertised as - being supported even when they were disabled in the configuration. - (Related to issue #17005. Patched by dvossel) - - * Convert MOH to use generic timers. - (Closes issue #17726. Reported by lmadsen. Patched by tilghman) - - * Fix SRTP for changing SSRC and multiple a=crypto SDP lines. Adding code to - Asterisk that changed the SSRC during bridges and masquerades broke SRTP - functionality. Also broken was handling the situation where an incoming - INVITE had more than one crypto offer. - (Closes issue #17563. Reported by Alexcr. Patched by twilson) - - Asterisk 1.8 contains many new features over previous releases of Asterisk. - A short list of included features includes: - - * Secure RTP - * IPv6 Support in the SIP Channel - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - This release contains fixes since the last beta release as reported by the - community. A sampling of the changes in this release include: - - * Fix parsing of IPv6 address literals in outboundproxy - (Closes issue #17757. Reported by oej. Patched by sperreault) - - * Change the default value for alwaysauthreject in sip.conf to "yes". - (Closes issue #17756. Reported by oej) - - * Remove current STUN support from chan_sip.c. This change removes the current - broken/useless STUN support from chan_sip. - (Closes issue #17622. Reported by philipp2. - Review: - - * PRI CCSS may use a stale dial string for the recall dial string. If an - outgoing call negotiates a different B channel than initially requested, the - saved original dial string was not transferred to the new B channel. CCSS - uses that dial string to generate the recall dial string. - (Patched by rmudgett) - - * Split _all_ arguments before parsing them. This fixes multicast RTP paging - using linksys mode. - (Patched by russellb) - - * Expand cel_custom.conf.sample. Include the usage of CSV_QUOTE() to ensure - data has valid CSV formatting. Also list the special CEL variables that are - available for use in the mapping. There are also several other CEL fixes in - this release. - (Patched by russellb) - - Asterisk 1.8 contains many new features over previous releases of Asterisk. - A short list of included features includes: - - * Secure RTP - * IPv6 Support in the SIP Channel - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - - This release contains fixes since the last beta release as reported by the - community. A sampling of the changes in this release include: - - * Fix a regression where HTTP would always be enabled regardless of setting. - (Closes issue #17708. Reported, patched by pabelanger) - - * ACL errors displayed on screen when using dynamic_exclude_static in sip.conf - (Closes issue #17717. Reported by Dennis DeDonatis. Patched by mmichelson) - - * Support "channels" in addition to "channel" in chan_dahdi.conf. - ( - - * Fix parsing error in sip_sipredirect(). The code was written in a way that - did a bad job of parsing the port out of a URI. Specifically, it would do - badly when dealing with an IPv6 address. - (Closes issue #17661. Reported by oej. Patched by mmichelson) - - * Fix inband DTMF detection on outgoing ISDN calls. - (Patched by russellb and rmudgett) - - * Fixes issue with translator frame not getting freed. This issue prevented - g729 licenses from being freed up. - (Closes issue #17630. Reported by manvirr. Patched by dvossel) - - * Fixed IPv6-related SIP parsing bugs and updated documention. - (Reported by oej. Patched by sperreault) - - * Add new, self-contained feature FIELDNUM(). Returns a 1-based index into a - list of a specified item. Matches up with FIELDQTY() and CUT(). - (Closes #17713. Reported, patched by gareth. Tested by tilghman) - - Asterisk 1.8 contains many new features over previous releases of Asterisk. - A short list of included features includes: - - * Secure RTP - * IPv6 Support - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - Rebuild against libpri 1.4.12- Update to 1.8.0-beta2 - Disable building chan_misdn until compilation errors are figured out ( - Start stripping tarballs again because Digium added MP3 code :(- - The following are a few of the issues resolved by community developers: - - * Allow users to specify a port for DUNDI peers. - (Closes issue #17056. Reported, patched by klaus3000) - - * Decrease the module ref count in sip_hangup when SIP_DEFER_BYE_ON_TRANSFER is - set. - (Closes issue #16815. Reported, patched by rain) - - * If there is realtime configuration, it does not get re-read on reload unless - the config file also changes. - (Closes issue #16982. Reported, patched by dmitri) - - * Send AgentComplete manager event for attended transfers. - (Closes issue #16819. Reported, patched by elbriga) - - * Correct manager variable 'EventList' case. - (Closes issue #17520. Reported, patched by kobaz) - - In addition, changes to res_timing_pthread that should make it more stable have - also been implemented. - - For a full list of changes in the current release, please see the - ChangeLog: - - Add patch to remove requirement on latex2html- Mass rebuild with perl-5.12.0- * Fix building CDR and CEL SQLite3 modules. - (Closes issue #17017. Reported by alephlg. Patched by seanbright) - - * Resolve crash in SLAtrunk when the specified trunk doesn't exist. - (Reported in #asterisk-dev by philipp64. Patched by seanbright) - - * Include an extra newline after "Aliased CLI command" to get back the prompt. - (Issue #16978. Reported by jw-asterisk. Tested, patched by seanbright) - - * Prevent segfault if bad magic number is encountered. - (Issue #17037. Reported, patched by alecdavis) - - * Update code to reflect that handle_speechset has 4 arguments. - (Closes issue #17093. Reported, patched by gpatri. Tested by pabelanger, - mmichelson) - - * Resolve a deadlock in chan_local. - (Closes issue #16840. Reported, patched by bzing2, russell. Tested by bzing2)- Update to Update to Update to final - - The following are a few of the issues resolved by community developers: - - * Make sure to clear red alarm after polarity reversal. - (Closes issue #14163. Reported, patched by jedi98. Tested by mattbrown, - Chainsaw, mikeeccleston) - - * Fix problem with duplicate TXREQ packets in chan_iax2 - (Closes issue #16904. Reported, patched by rain. Tested by rain, dvossel) - - * Fix crash in app_voicemail related to message counting. - (Closes issue #16921. Reported, tested by whardier. Patched by seanbright) - - * Overlap receiving: Automatically send CALL PROCEEDING when dialplan starts - (Reported, Patched, and Tested by alecdavis) - - * For T.38 reINVITEs treat a 606 the same as a 488. - (Closes issue #16792. Reported, patched by vrban) - - * Fix ConfBridge crash when no timing module is loaded. - (Closes issue #16471. Reported, tested by kjotte. Patched, tested by junky) - - For a full list of changes in this releases, please see the ChangeLog: - Update to Add a patch that fixes CLI history when linking against external libedit.- Update to - - * AST-2010-002: Invalid parsing of ACL rules can compromise security- Update to - - * AST-2010-002: This security release is intended to raise awareness - of how it is possible to insert malicious strings into dialplans, - and to advise developers to read the best practices documents so - that they may easily avoid these dangers.- Update to - - * AST-2010-001: An attacker attempting to negotiate T.38 over SIP can - remotely crash Asterisk by modifying the FaxMaxDatagram field of - the SDP to contain either a negative or exceptionally large value. - The same crash occurs when the FaxMaxDatagram field is omitted from - the SDP as well.- Update to final: - - * CLI 'queue show' formatting fix. - (Closes issue #16078. Reported by RoadKill. Tested by dvossel. Patched by - ppyy.) - - * Fix misreverting from 177158. - (Closes issue #15725. Reported, Tested by shanermn. Patched by dimas.) - - * Fixes subscriptions being lost after 'module reload'. - (Closes issue #16093. Reported by jlaroff. Patched by dvossel.) - - * app_queue segfaults if realtime field uniqueid is NULL - (Closes issue #16385. Reported, Tested, Patched by haakon.) - - * Fix to Monitor which previously assumed the file to write to did not contain - pathing. - (Closes issue #16377, #16376. Reported by bcnit. Patched by dant.- Update to Released version of Update to Update to Change the logrotate and the init scripts so that Asterisk doesn't try and write to / or /root- Make dependency on uw-imap conditional and some other changes to make building on RHEL5 easier.- Update to Update to Update to Add patch from upstream to fix how res_http_post forms paths.- Add an AST_EXTRA_ARGS option to the init script - have the init script to cd to /var/spool/asterisk to prevent annoying message- Compile against gmime 2.2 instead of gmime 2.4 because the patch to convert the API calls from 2.2 to 2.4 caused crashes.- Require latex2html used in static-http documents- Change ownership and permissions on config files to protect them.- Update to Merge firmware subpackage back into the main package.- Package internal help. - Fix up some more paths in the configs so that everything ends up where we want them.- Update to - We no longer need to strip the tarball as it no longer includes non-free items.- Enable building of API docs. - Depend on version 1.2 or newer of speex- Update to - Drop patches that are too troublesome to maintain anymore or have been integrated upstream.- Add a patch from Quentin Armitage and rebuld.- rebuilt with new openssl- Rebuilt for Rebuild to pick up new AIS and ODBC deps. - Update script that strips out bad content from tarball to do the download and to check the GPG signature.- Rebuilt for Update to 1.6.1-rc1 - Add backport of conference bridging that is slated for 1.6.2 - Add patches to conference bridging that implement CLI apps- rebuild with new openssl- Fedora Directory Server compatibility patch/subpackage.- Fix up paths. BZ#477238- Update patches- Update to 1.6.1-beta4- Update to 1.6.1-beta3- Rebuild for new gmime- Add patch to fix missing variable on PPC.- Update PPC systems don't have sys/io.h patch.- PPC systems don't have sys/io.h- Update to 1.6.1 beta 2- Fix issue with init script giving wrong path to config file.- Explicitly require dahdi-tools-libs to see if we can get this to build.- Update to final release.- Rebuild- Replace app_rxfax/app_txfax with app_fax taken from upstream SVN.- Bump release and rebuild with new libpri and zaptel.- Add patch pulled from upstream SVN that fixes AST-2008-010 and AST-2008-011.- Add patch for LDAP extracted from upstream SVN (#442011)- Add patch that unbreaks cdr_tds with FreeTDS 0.82. - Properly obsolete conference subpackage.- Disable building cdr_tds since new FreeTDS in rawhide no longer provides needed library.- Bump release and rebuild to fix libtds breakage.- Update to 1.6.0-beta9. - Update patches so that they apply cleanly. - Temporarily disable app_conference patch as it doesn't compile - config/scripts/postgres_cdr.sql has been merged into realtime_pgsql.sql - Re-add the script as a source file.- Update to 1.6.0-beta8 - Contains fixes for AST-2008-006 / CVE-2008-1897- Return to stripped tarballs since there's more non-free content in the Asterisk tarballs than I thought.- Update to 1.6.0-beta7.1 - Update patches - Back out some changes that were made because beta7 was tagged from the wrong branch.- Update to 1.6.0-beta7 - The Asterisk tarball no longer contains the iLBC code, so we can directly use the upstream tarball without having to modify it. - Get rid of the script since it's no longer needed. - Diable build of codec_ilbc and format_ilbc (these do not contain any legally suspect code so they can be included in the tarball but it's pointless building them). - Update chan_mobile patch to fix API breakages. - Add a patch to chan_usbradio to fix API breakages.- Add Postgresql schemas from contrib as documentation to the Postgresql subpackage.- Update patches. - Add patch to compile against external libedit rather than using the in-tree version. - Add -Werror-implicit-function-declaration to optflags. - Get rid of hashtest and hashtest2 binaries that link to unfortified versions of *printf functions. They are compiled with -O0 which somehow pulls in the wrong versions. These programs aren't necessary to the operation of the package anyway.- Update to 1.6.0-beta6 to fix some security issues. - - AST-2008-002 details two buffer overflows that were discovered in - RTP codec payload type handling. - * - * All users of SIP in Asterisk 1.4 and 1.6 are affected. - - AST-2008-003 details a vulnerability which allows an attacker to - bypass SIP authentication and to make a call into the context - specified in the general section of sip.conf. - * - * All users of SIP in Asterisk 1.0, 1.2, 1.4, or 1.6 are affected. - - AST-2008-004 Logging messages displayed using the ast_verbose - logging API call are not displayed as a character string, they are - displayed as a format string. - * - - AST-2008-005 details a problem in the way manager IDs are caculated. - * add Requires for versioned perl ( Update to 1.6.0-beta5 - Remove upstreamed patches.- Package the directory used to store monitor recordings.- Add patch from David Woodhouse that fixes building on PPC64.- Update to 1.6.0 beta 4- Update to 1.4.18. - Use -march=i486 on i386 builds for atomic operations (GCC 4.3 compatibility). - Use "logger reload" instead of "logger rotate" in logrotate file (#432197). - Don't explicitly specify a group in in the init script to prevent Zaptel breakage (#426629). - Split app_ices out to a separate package so that the ices package can be required. - pbx_kdeconsole has been dropped, don't specifically exclude it from the build anymore. - Update app_conference patch. - Drop upstreamed libcap patch.- Update to 1.4.17 to fix AST-2008-001.- Update to Bump release and rebuild to fix broken dep on uw-imap.- Update to the real Add patch to bring source up to version which will be released shortly to fix some crasher bugs introduced by 1.4.16.- Update to 1.4.16 to fix security bug.- Really, really fix the build problems on devel.- Tweaks to get to build on x86_64- Exclude PPC64- Don't build apidocs by default since there's a problem building on x86_64.- Really get rid of zero length map files.- Get rid of zero length map files. - Shorten descriptions of voicemail subpackages- Update to 1.4.15- Fix license and other rpmlint warnings.- Update to 1.4.14- Add chan_mobile- Don't build cdr_sqlite because sqlite2 has been orphaned. - Rebase local patches to latest upstream SVN - Update app_conference patch to latest from upstream SVN - Apply post-1.4.13 patches from upstream SVN- Update to 1.4.13- Update to Update to 1.4.11- Update to Update to 1.4.10 (security update).- Add a patch that allows alternate extensions to be defined in users.conf- Update app_conference patch. Enter/leave sounds are now possible.- Update patches so we don't need to run auto* tools, because autoconf 2.60 is required and FC-6 and RHEL5 only have autoconf 2.59.- Don't build app_mp3- Add app_conference- Use plain useradd/groupadd rather than the fedora-usermgmt - Clean up requirements - Clean up build requirements by moving them to package sections- Update to 1.4.9- Update to 1.4.8 - Drop ixjuser patch.- Update to Update to 1.4.7 - RxFAX/TxFAX applications- It's "sbin", not "bin" silly.- Add patch that lets us change TOS bits even when running non-root- voicemail needs to require /usr/bin/sox and /usr/bin/sendmail- Update to 1.4.6 - Remove upstreamed patch.- Build the IMAP and ODBC storage options of voicemail and split voicemail out into subpackages. - Apply patch so that the system UW IMAP libray can be linked against. - Patch modules.conf.sample so that alternal voicemail modules don't get loaded simultaneously. - Link against system GSM library rather than internal copy. - Patch the Makefile so that it doesn't add redundant/wrong compiler options. - Force building with the standard RPM optimization flags. - Install the Asterisk MIB in a location that net-snmp can find it. - Only package docs in the main package that are relevant and that haven't been packaged by a subpackage. - Other minor cleanups.- Move sounds- Update some more ownership/permissions- Fix some permissions.- Update init script patch - Move pid file to subdir of /var/run- Update init script patch to run as non-root- Build modules that depend on FreeTDS. - Don't build voicemail with ODBC storage.- Have the build output the commands executing, rather than covering them up.- Update to 1.4.5 - Remove upstreamed patch.- Add a patch to fix CVE-2007-2488/ASA-2007-013- Update to 1.4.4- Update to 1.4.2- Package the IAXy firmware - Minor clean-ups in files- Update to 1.4.1 - Don't build/package codec_zap (zaptel 1.4.0 doesn't support it)- Update to 1.4.0-beta4 - Various cleanups.- Don't package IAXy firmware because of license - Don't build app_rpt - Don't BR lm_sensors on PPC - Better way to prevent download/installation of sound archives - Redo tarball to eliminate non-free items- Remove explicit dependency on glibc-kernheaders. - Build jabber modules on PPC- *Really* update to beta3 - chan_jingle has been taken out of 1.4 - Move misplaced binaries to where they should be- Remove requirement on asterisk-sounds-core until licensing can be figured out.- Update to 1.4.0-beta3- Update to 1.4.0-beta2- Update to 1.2.10.- Update to Update to 1.2.8 - Add misdn.conf to list of configs. - Drop chan_bluetooth patch for now...- Zaptel subpackage shouldn't obsolete the sqlite subpackage. - Remove mISDN until build issues can be figured out.- Build mISDN channel drivers, modelled after spec file from David Woodhouse- Update chan_bluetooth patch with some additional information as to it's source and comment out more in the configuration file.- Add chan_bluetooth- Split off more stuff into subpackages.- Update to 1.2.7- Fix detection of libpri on 64 bit arches (taken from Matthias Saou's rpmforge package) - Change sqlite subpackage name to sqlite2 (there are sqlite3 modules in development).- Don't build GTK 1.X console since GTK 1.X is being moved out of core...- Update to 1.2.6- Update to 1.2.5. - Removed upstreamed MOH patch. - Add full urls to the app_(r|t)xfax.c sources. - Update spandsp patch.- Actually apply the patch.- Add patch to keep Asterisk from crashing when using MOH inside a MeetMe conference.- BR sqlite2-devel- Update to 1.2.4.- Took some tricks from Asterisk packages by Roy-Magne Mo. - Enable gtk console module. - BR gtk+-devel. - Add logrotate script. - BR sqlite2-devel and new sqlite subpackage. - BR doxygen and graphviz for building duxygen documentation. (But don't build it yet.)- Completely eliminate the "asterisk" user from the spec file. - Move more config files to subpackages. - Consolidate two patches that patch the init script. - BR curl-devel - BR alsa-lib-devel - alsa, curl, oss subpackages- Do not run as user "asterisk" as that prevents setting of IP TOS (which is bad for quality of service). - Add patch for setting TOS separately for SIP and RTP packets.- First version for Fedora Extras. -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protection -Werror-implicit-function-declaration -DLUA_COMPAT_MODULE -fPICcpioxz2ppc64le-redhat-linux-gnuASCII textdirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=dca8dafa4c0b7d07f5127dd56803962124bce549, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=b4657b9d0863755cf0a52bde753d3e8344bbc2bc, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/, for GNU/Linux 3.10.0, BuildID[sha1]=607d7b4d6a2ee8e18b8b4fc64600bfd0a6e3d123, stripped  RR RRRRR RRRR RRRRRR RRR R RRR R !#,N] b2u Y9N4@=d0IVz';Rޟ*y+p#KH!W#>06uxHH?h8@?i&2}A>qN磄9v+qO@Okl昺$B*qF|VOL,N)w`~x8)#Ɵm&O$]yDMޜQ<t=rϥ@6ҿ1: :TI Vۤo]«m Ss^@LNk& 2KW[IFut.Rw ö'9}_UޠJ{SE _˝yVq^w}k0n:h$;6 ӫ8 @b91)QLABl̸M\B=&<\7SvgXRW|n8ߧz ȂP]i W CUP5s_q{-^A̶w;\Y޷Ş74d >|duNe%33mDB~0#G&W矝Sݚ(oY#M`gٜ-}Ik}ym:9x8ZKG@ =ݴJDYO7|4`있Ayý *Ldw..\~fSN \Z|s{bv5𨨾VYɢrw|oo ]SvZC5m^x-Vf?\o\O+YYzIX3{ 3S)!IM`B!sr~w]O$xͰ1f5>'҄mSQp'n%/R\|>#;҅.f%т?Zi;gyMέo~$܋a   s~cH6d^ؑpĜ%>7+m+$WF jBUZ"fUl[\`@AG[c!,C-_:C)u>R Ð\>KӎM銌Y#<]ʪZeZ1xw z$OO騩g9,sYëS rUTl]g _wR/k܋mȸ_)Vb9Adz&cA ;GpGl/ pZ\8Ti';d LÁz TA~ }mH׭[_LF?a~m`B$q]1=]6?uRl*\Bܵ٬GvDϐ = ~}k95x^YJJw9 !gVNN3Q̼,gG4"F1֠HĤaG񑘘hxKԪxL;V\x'{Uϵ#n2ngۥHF˦ejKs{l::4+_"kU3X9&kb!;|9{EVgq8L~s_Rk$5 $נV Չ/9b&ݩ?bwœ8^8Aj$4sTM(!{Sz/Z9V>4B#D'*iG2Eso9h^g_UPEu'rƿj¡f-f (%p_. B=:B#\7G1ЌwB`w&3GmwtD73>jM7۶5wK=:J҂u\)|GLζJv,o @0F$lQ4 kQDB"Զ>@폄D|C4m\lda!R5BKTL}yvFTZDFW^}8@c9,0(~R~3HlFl.x&Ό 3K%x?n9 G19vL!!1߯ang=S\=*?Ww&06 CM9,@馉g4gF:ܷB^rLa{_u/ez *Yq^Ȝ*EivxS{-3[əq:dE;, {&>Y-Ek9Vidw$CB}y хmIJ YeNp豽Ͷ82KzZ*n1qx$;'B =u,/.0O9`ev"O#$3{HfTScx#>+Y#zUl+Y'6 vi3>Vw$6v~-KwCJ^8'>fUnuu JW> g$nr@ BH֭;Tꑘt`mGeقΔC9mVl:6sĮ':L7FZ>MğWS({Ol'.Ly4YEQAfrwQws"E7stV1rB{'pP\ĊQNrK #ҠuM#9Z ̕xoR LB}k` ":ͯڏW"裂@`S6u&<ڕVd D~D;AeNiZDj7z;\LL˚V^u^٬{n +\J:5# fJpErʮcW| |rZ9GyTo7t>I;p:)V9Z-/? .EO+C[mgx4^au;]^ii\M9h] 3 W|@O1>9A"3m&訄tPܢ4aIJT3ځ?v|1?_W?ږMAun.K6=bTv/B&3ϱpt# UCpJV{,#VFF3O>g\s缭m{3wjTuiYvGӳ*j;FJtaDgRf d\]o)Cb)f~\,K5Brh~F`IjhXo2Ð|@3%ܻ@ѷs|7;ی"M'B?6|.Ί'}k\>RQ^ZE:kл^M=I0\6PºKF(k$*PaADïYF0MKGlZ3: AT:IPCq&&o .hsrXުmuV18 t{+|̋k?T7q|A8<9Bpt-dP!|@5+- M4zw- hDvɭnURժԤqzkmL k j^ɾ'E*1%AlKr3rf! y2W!}M>iw5%6hq 1C% D"EwOHw@ŜZ]tCfO53s)LTu0hGm7O` ! 9Og$eq3[clgWQJQq!1%9KqP ^-qd =ק(Lƹ@΀ 4)WԹz椕w&MfF3Z9/m=Zv Tu. <2{x;eS_SD(m9ֺ]Jz=: ӑ\gQ$upѤǦFW#'CKxUbiM-<T|9L窛!O -џ:pCc.@#˯!ԤwD/p) bZ jK+蝵,h)/6⹵Bs7GECt .Bb䉬dmgc*ų ڎOЁ}5$ͺw/7؄Z >f{H[B_IsMivsB)r(-J\m$%ǧԿKGs$uiPT߇}l?m+{J|g=0 5'QLI?bja!;)ZÇqd zPX&?k/":S[tg/uk=#NkҢ혓xsѱ!p:  +lkin*,tf>33R.YlY-G]$DrT''BN٘].(e(~[Gq+dB0|)Z,'D75} бhL`JhSja`4Rvz_=pXë?( %F)`i# H*Hix;hqO)m~/2P[fe^\qC{ٙ{tY, ;_Dy|ȩD :Ѷm{y\p8uK0_5jBk\8O33v'lǎ[$.WU+))9YB nA+0 K/5x}3`i}XpeS5r5DbNB sn]g@O%oN1X7ed}ZcrrA*!3ɷ1ud^J v)R2"ł0l_&UFJd:b݈TzGi9 S$"C{HQ o*V|a 3RIϲ˾d[;;TUR8^}T,9G#l]z2˖Jk6غȜIΚSn-8' eI&+$f֙-VwH }qjWXjK\4-i`|3XuEFJtİ'&{~U>H Z9'!ӗ8w0Ug1sI|/KUݼĸ5l>v8mHam:IxFCΆ㐏ξ;~<ݗf2PN;癢F7y)z.]+bwP&9l7Z$ BZjcv6R+ M} AOR__-+I2Ⱦ Lپ-AKW쏤bI/Jr*A>MQ몦Q` 2 u0! jc,X ޔG*/%[`8):y4 .3%E7\i[We!k+M櫇ub; hb%!۪So/S k6EにQ\hJ;󅩒/SEG)3;ޭ-2uet?Wv5"NW  EZSMQ.|኏Gx e?#>F\6 !%`cF[ܒŨ6GsD8OS]XΖ_:DFx8%s9<ش@Pn0x[,f}Ç^daЭyAFxfer'9<]rV~fgWޗkU]:-n&,E(dܾ>X,Geew` d޿&|h3. z0Y&p 'eF Xa6 ᧟KRL:O ĺ.'7JVm3+iՙ2!=Q+aw аK/P‘_9.cVTΘ-ǯ9~bSZӸRn~XrK(iK|gG˘䔱Ғ< t(-l`k: )u `!Ϻ'S{,F,oHޫkһl>l0B_ [,ZŰϔ<ǵwȘiшY;HͿn[Siˏ4KÌP{5zxj!qwlr>p&S^ռ.\ i^/E&|ҽcL:IT|1{&1N+ن8N/OSY}ˆS+Ehm h0Bⱀf<.jS绣~Q{\{Vv&1g\Hd=֋1!48 ?V6spALwK+6QTBZ&4 <*4~ny[w%GK?)qFc(svISMN,0qJB"@KcU~i2kzV2F"-1]. ъP9hkk|{yWW[.;\&\pC TYT}̍4 u?iNk8&4#4z!|dv$9%m)Z2}p@uz}i赐#3JY0=BaBԊJ1ixC[56i"BNn< +Uؚ x"bukIrHw!`8*.졢d>5Ea3EvK~O"q1~ r!:;3b bݓ1X|$YS2<9+X W^4N6G4;OYm"ʞ;`+`9-rͼaE 8zΠ)oH^ m5ΧRSM`Cb>z#zpz`q]u]vODno_DIrZg-r3(>з†$I $)PWh\/9փqw)w里_1N,&i&aZ. ?\ %3.AA6Z|'1qɻeóD~Tly?fup1?Q%Rm6n">>1D-R:߸]J,>I0dJ:0e]7o#4o]Z^\zlߕWf g`L]9 :¨@vaIątYPKB'`x2Vs(>a""zDQF .1=~ד8gb1@^b1uLp)ߤzh"k ? 񚻌=揖;KNkBmop&Fl`\?S>dƑ`ܛ=s GЬH'_E&a[`,ڦ"g׷EqGN<㌭1cpfQ–@nQfIS1;/~K\#[TU^T|>9 ؍Eƽq2d6`ˏzw`WB?C[i56VKʣTR1 [/])0Z<0'#5;AvD{ n-xd&\mKnCvxmLBL/!7ӭqh3DϽ}:Cɳ6E]pucjVY|yMb)MDYQ 1B =ȋ1fԤ~3J᭺Ct7~k``Nx"@FJZdHC͚͓WŹ lCD܁t7g}AbrC݃(LWyTʘQ-Kl/`ၟ<^EMG*w+d' Nhd<I|O^~׭1-/oՄ<2:V“zL}zߜ*+iknܭ'I!Ld5j܈$Աʶ:×@")d&8'w"Srd N#{W K4 sy.T%b5:n0?ٌ~ |vY+L+VZh5+ }$>f&U 9 Μ#>YeUH{Mǟ7%c՗҂w>|gvAK }fL[vIVjBCηRT^7 0Fmyq>dW7 =GnQ_҇g͎r SΒح9 6MpmcVʀyK ѽAq 2vpeII)]IrVUrǚ5%F⩒L1E8~+%LnvPKn VXNw0H0qp)ef&G{$XK0_<ϹxʄGQ@r+\`[z9_r[{KZl_[#"#yQbkP*.֝>OE@f_}j9^,G@67o-!d(?nx?&E:k߶CbmTUN*cRXA,02e!Jm1„ n6d,2d0FM%Ld65eLCRLi/I> אp`W3$"{?1z{i40\56 2PF[/ǞQ4zOЊWۤi{uخ}Ьʻp!J2O߀}0K^xWvl8Hlt^)0K2Is.<~u;dp+9FO 2r*g(XnYr !1\H97>˥^La_UCuVAs^H˾(-*'K.V!4'%Y Qz!(Hӻ@1n4H dCtmMM<hcW n;Qm@ 9Q7,M_[C$Q@ۛSBi`&iêgw^4ZTt2PTHUרFJAH[M<&-(/~&zpZJ\ y{SVzSj\hA(K4wTŁp3>ɺEFQۍk)1t6ҴV8Gk{xyLj8xU!N+ Wf"DSZ}a'Y΋4[vz!zԭХQyِ:8Wj*3-BQG=&d^E+lk:D2T:43ߒL~(&((R"׀q@phFKjweIVy#u$qx L|+^A7_@rJ3J響G sS ֆͭQω$K\H,3p(LzFm2X𨞕Fo . Q9egbmjaH~~2X˲sv8SiIҴ,n\M7]s cz>3csm81JU,<^hV 2͘گ@n L"<6_}  ;U\Qn+_ZH8ɨ9I*J+Zs1֑gt:=%醐S$h!zQ..3f:8|Qgn:PVE‚r]! /@+zgx\hf NQ<:k]ui6*| u`Ψ̼MPRl\Q4<=RLjH@_MWxD鵿vj} 5PEej$Pn/Ttq U!hS˰`zek1=Oe\x *@&!}&'6T ܳ{G&'vsGkTe0Dػj#ՊI;L̥KZ? b`5h!i- .w); ӓ()s϶ \/ܬy99[`6v6 :R\x7#OLӃ؆w ?wϳ=)qԞzEk,kZ_N#RE&;23*SzfNfLkvF"暬p/\x^RC%INW6кY#unƽ(Đ:J 3)q,\j޳i95d΄aPdY`Hɍ8`6\*¤ҋ7T 2Wqbl I=3eJEWojx+t,Ҝit>t !&WW9vA*<_Z`JJg*$ڏK/L PoaDW:ts^qc;ƩĚ;JpѠd8$:ٜ )bx7 1)6VD$;UCGfp P.}"pyhZDKʷxiD]V@2PΔ[ϗRT2yY -^4U|1| ]/L_ ϥ;ՙR߳s`U˙X)CMΐѹ"TYFWb ϋ )²[#o*t ෦] E\\}'n.L։afFvQ3kLXG 2C)+1hAt}>uɨ)Z:cSU'w}57dm-Di(QӂsQ:D[d9Z&-z:5Shnq7%_*[-SJ2 ŽV0:u sq $fI=L*kuu({}*V28׹jxQ[`0@}@AdXp]R"kLq/g&p*aE[U/^MIM k%90D7 nY3>2zz9_:g/owAF>9򘮿v *!o^QtqZ+VFSNd^CtbU_Zյ"\ '/uϾc/ &jzJ3jbe] MnaAN^"]/pSB9'E`K3hҤ !%[%?{e(y_2 :hpV9cS jBZq fF`-HZ 'HTMI†-!ӂIy_8T&tZWM{F%߾T./ޟҠ2 fE{@ !\NH< YaN72$-ۈm7. EUb[Bv4WـWAϗ.ѐy Km+}S>x,d[Le,D\&'x?>R7C.Jx'$-/9QT% | \'߃jm5>:1-v^G+(ДM5?ⓛr57s\V|0EFӴJ|*,^,)It}SEyc"];J)d/chYu , 21g}ϣbw>PM 9s=b ?8E#v$KJC!Ջ;5_d?.՞^}]W?** 0": 'A; %{X'k^en݉I8_E4J)I~U_ (oGzx|j91 03#V%xa t X Xyl풶  ykǒ*Â3 X9pa>R8'+5V[>pꁄ ݋'z :n'2VHeͨ VU@mG5 p{}x0 .ID݌;~"1YE?I T΋rݤ; 96c9 *^ל?;N5@*X/0޽];" T`QwG]d|1qVˍ״Wdh)Yx|qly_QҒcQ! mͺ쾧#M?P4 s aVfDV$@af%U cey@F\eOs/tt65)ڧ d[}a81{\gPH?yz!ӱE:Bc؊WM?tqDQ7'-r*3AFˢU\ +8gB2(sVF"i¾^Lk@̨xGhD_HЗ19]$@D{LNSR>}q;Uq5)r6ZљXhݽ>@]au{T닅!DK/E dǑ>VNF, yiJxѨkΈE#TR*Bi\s=Hl2NEO"8CT۪7A| WuĊ/!/E6ET 0Gh(G.wt5:zpZ{a.-r մ9*@X ] uzW$X- G%7Ã"m88}ڢ(W<0n~oW{]=})ę2foZ'麬FxNd,ܧO )SS@sf6\HD6V5I:?PAј'gi6')!yriZLbףX-c.iD'V$ 4G2LSٻIs j4=&NC|'JEK8>V<%2Plͥ79q>N,)r0ns=+X,l;kfyEn>`יi"`V;,Vn;HN\~oٮ3PΝ$nB.| ! G|eveb62+ .OFZw)I秊q3X%A)aSiZs2c66a{H)1Xo{xL["/lmANB7,: w[!q2>ʸ' 7K{u2 MKa;7νbAU:h.ePDJuD\'cf5R&(nu'F3'3 EXJCԓ>% -lNWGB[6ikʈ@:)]OqчIWl}qxۓV>}!{ޝju3[YWbe5| ƭ@U7e̾IhOye,uuxGRFN$qd"M@SL/]֨{3MݣHv/~֖d\]'F˦9I}d gq涬)`O3G {W<| k#4WvfqőJ0}\mjנa} .1aOLJH--+[M:ia1L+b-m+Ӂn+0ެҽ78UP.~"?%Dط ̈́ZGo7ΡnG쫟4՞V& (r)4k0 IRF4 YݗàӸ5n}1H9ْ),(Hu".G3K{B{qasavڰ{7=`A.Ft@S X>BoѨBI\)^"lڝGv&I>HrO#'.A#5i1I:q*E{P?O!ޭ ) :=jE1A=TB2 :}YB{V`jBuv{ƥ@ː5'azLH v̍N^&`\3xCj!^#k3<ܮ"4D.L>'ё Qaug4!T:9pPQhBaWIaw'oVRg u?(ݩ4JTͬI!ic dhMBNg=1PQX@R:hHGA] >?_J^j[^v>ƏxT rI|}"3_4(KT#7h }L[UV,c*kMP:͟P͕vyIS5_A3虱kdՠ"eQ$vlOn`8khp> LXU F},^Uğ_f RT^?/.J`V. z(; ZEZ}hg#·MIbClO s,z\ ~E H([*&wԁ{&i̎kxs-ty)vv;.fdWUfy.vCdO Oy5('ί,r!xzYE?9/V\q:XrZi|Sx)p|ג|O} Avҟ !ٙ@X5l`ĒWJ^Wkkl( ")POm/(0G.XDYmGy a4 q*1:"e co;mJJk@^[#U+0_t߸N`O24SNjv/ar7+q_I' kG8?ore<@ MDmg C-MF_JeUBvfZ5i bg־DK C[s%=i"}h~a[o7BIa@VeЏ*dWp965+\,h`]N5T!M2u2]_a_S)j~S4%#6' %ϴfai!fnC5 8 K*[9@⃀du‰a /#=.m1]A43ęt wsHFE&e K^2M h*eXFP@*axݟĞL)i+dAcC"٭@T#Ci<A.3i]A}׸@tToTӶgȔŽYBKmNn*BX\J7؅g,9,KB, Ӏ[VIahY02ꉓH G@{Wsָ?5?׃"fY&1֪ $ðUf!fmz$=#u%}DrW{eo>? ˢgkp?5VaOU_x9{ĥ{,91_dʧa&K=ܚv>}.Mb `}pR'$1Ib>N![49K`j·@ V=1/W_ljl %rD)y')Ğ6͆0d#ֱ `-Y}Rd'B ^Q1Thkf ")GюMֺf0hsfII|FCrX[/K; a/:31Ӛ=sEcD#\\T9'llN?P{)`QR"5򀁄m[tH&r$e:Mu/)<Vkm4Lb/M@QaiZHNNǖ\ʶ˨R;UXόa\LΤaCB|ĠHk)e5Ʀk*1A;l \]eiUKtf|L5nvz_i^:1PW난&&;|܀B!ª 2 QF;yOH&KL_kMWՆ.tP*bgDSkCqΤڧ%3@pM[y7|EK߶(y6|&{XF5.9{̊ I/)q e N(hu=Aj7dzI?G0^׽ce})Gv :Nv"#A*6|BhJbXړ;izh_#pmKZ.h WkKIkI+0/KW3ߑhqi/cҴr޶*h"M]mubw DZ!dvuӒ5>]<(YάW<c}tHP.n5׊J'sfgoR-$bʩU*Wa<U/~$͛J M]%15$>jf07˃{UC^P"Y_"kfu>+lf'H)/:[‹%u~&6hwNE0c7_t'̋6;zW-|)6gGlȂ?%@Dq$M^@Nt)7#/wK[:4\`#ې>uJx 6}^sנx2i"L"Yœ9@dR¼et/ت3 虪Jcdn/S,A@Dqp,ޢۗ qp_S]ߙvVW2ܝf9][W\~<ƺ c}VŤm0toB/&Lgbn|xu}R|'oUH.!Я\)M8k1W#Q̔ n gn]`yOivNZc1n#7. "(k* !`E I3̣((͢)2^]v@ák"Y(h옟mA  uvJa;S6(O>kǓ0>|Af&EaX45*1 "-  $XfEAr dd H:?6gj tw.1*pi掂֜gu1myHQyƺQt >HaM@o'kûA}rzKbhJ2:MαḌ e?*1l*N:nTWY<&'û)@N4uR|9 d}u;zi&| Ցž:dTEO_Ok]B}m=mxF!i=1̮2L~d9&]}/| @fL^7_9SR O\;LM\06^ pP6sPӁ93Vb9ޗwbkR'k:;/iٞ`ߔ6G&şǒPaXe(h\{-MZ~e__4z7Af`u6TU;]Xn3Mi^j!p {-:xg˲4a#'^*@Џ_Hn5/=Lvń|FC8L %E@ mŨa ӣJ#D5\~y>M-}4PE8A̷ٶnW5Rՙt%VZ $'NYBx@_9O[1vl0JRX@/uV~ ;m5D1;lc+ Ķ4T05}HF2;-\if|,11 =`yBwRGI,ׯ 6vTZH\^vu9w' g5gvI7V"^&7""#oz=?MMLp./1Lj+ymWGq"N%/j),ͦ0l!0crJڕQ~tA38@t2@ƚZdc9sK|u9SV1AS#}jaH]"}D;+aR@% ĩ2Y|ƒ;.g-Pf0Ѧoqb򑟦pIdP%qQɡW"YB)q5&,'{9 tҤ{/<'ouG(4kO k!3P m"`C%Lcn(Fhl*ϒŠx)Vqb%a5,3OݏL:C*C"+e-K]GAAXjZNBI?m!=PRt]cֻ;'y_mlb)TbgX|ˡGZ3 B1Ef|SƴZyz;Dzį4 @0WxE"Q0UkkX8P4R?ǭE\˿&N=bq&"`zJAp,!n![׬;בIejlz>Nw`} `/V犔eߦY5Iସ8p黦)kR SPlV%`eUv*=S!@n͏Q OEs=^N=D*hl^ -tػGq'/xw6p+W7x5`Yg;on=bT$[3O7z]zX#*qN V%=pwur÷wC'̉Ka%az֛C܇80\g݉gA? !fE0U2 \*’t#rCۋ5[j!{ACab 15Ha\o^7ɓ_z^/Z2[%rA~2Ai{K]칰ѯ:/7}j$0 /BUWX=`w,oؾZzBM9^_I;@]&Gm| 4~ZJ=naߎ 6ǸsS 4?y& +,{C5J-4Fi55~W4Hx@2Չ(6( #L4u;Zi.)IS+(;/}a'4  jIc/}gOخcˎh%([c=ss("6Pl tRA'j( -gܒc:*[D)G+#2z 2#5+" ` FM'"U;A oJ!fXF>@{eMRs?"^>@E]50G:B qK+qc@%#X}Þ?Ku_y ތ|ˉ϶eLCz7́4ymIw"G2 B〥DZBı4jƔ3 9QpoDPTW PĢDkbMG3!L法u@X|r7ѝ8>׶"Cm-!H>i )<*EEzZsݟ\VG)4B9={UȯdCxoB=q$%or٣WPۢ3WJe!/ճjن]cͮԯNZKc==γ涽03] n# ΝWLVqAތTBs_#BV0 ŦL.[_$uB=zrn󴌌ȹ dw!j^Mq"8Ĉ6.].CG:Лbvj@9dL'&?@FmZ䅁+t&KAZl e5I|Pۘ n7+AaX"G p: >{θ&M!ڍfGJ1/i;/9] iYRR8(Լ}GkÂ8jTJ+Ğdpz.r!ee'G CًVygcM Z~I\T0EHfUY@n_Q(f$wb],FmNel뷮XDf\Ho8_h aǭS2uͱ{㗐͠*yfGPDi˱A^ bdx1@`0Ep)`Dɽ@Yó4XDEo;k#T_\]LC -HnGP_ 4P"3I,D Pvͪ*J1{ڷDە^찖)VCTZ/ϛluɏ!x4m@,ިL6?}`)<|%>dD 'ڷތm_Ove|]QB΄5cwA7\h囦006ߢnM]Ef%.X J#ueS_Dr#lqM/L `\f?0/z b] RC&ܽs.x(YwG =Tnӿb(-Vډ,?uv=kfL4ք :I%0C{֯px\ӥqE134ܫ]TezeX>'(ez3nʇC5`=A2U2yEq$NKaJ6I*j.w[ ybL3Er W{j!Vۋ;>sPdK;}hY7[v^m'-OntDBrCi\ ]|$J\(qOLS!B023i/ {5#6q:bxઅqk]TxjI㎹Dr޹ꬊ{[S]ʛi3\pr5Pyj*Zq69iEC}k)O#Lo'+BwO!Zٞy{Y޵ [dəfBiu<៳䁋L~TWCFAamy+Fi@}ζY)H-{x\͚b־-Fe L`w>0a Ȓ¢τ4 d,+ 82S?ȡ &pB0ϼ{qP:O 5aĘ@t),, PѐCQ1QRFk\SEJ+'=$ugzx<ǎq9ʐZ[(4iw>th%=4r~VԇԊaAhhx|"!$ʰDKhCMn@'#^ o{NcoiGAPz](0HQ$ƅ^ !?8*j1L6j=Lê7T0ug&x1a>/}w\!pPlR&F 4 9RU=߽[՜=B `gmZj5&$e2+FF)u,|x'rR 8+Dni@fCٽozrtoM+ y0?6C,C slxZQN*Ehhq8Sﻢw»LV R̸jF..J箣{C:obBB֞7Ĵ*  AIjD$O/+Kxr!U0^wZX xUdkTՙs{Goh8R W?j0{"u?0p`f8әЗɉ-tEI.";zgb%-P (~2!W KCa?@n۾~zI J pjqƞ|Ho:Cr[TeU0 XWjDϬȺPIHy ܭւ3B/pغ#?#m=s_!ڿ> D|+|(`"CRZc_YQpgہ]^B_z.ƙ]?}&?fo UXiJp^(7f1N?z+mKNʼnjJF$b1ڮ` *m1*|;d؁T!b}Cdcf[AYʹc]<u+G:;wK>F"-bxGqdif ]cb#/̜v56f*gl.~8ֵ]NՋxW_HYJo[ke)9SGW'+ʁG/ÚOصA1Xzajg X3 bWr"EHe2+k0#bzσ $0ǶRxjrqhJ$.OacZhru> 'j}mBmfdA^u X}v^۟UZ BfxmF@fEL9 mhրnYÉP lKRLF V3)MMjr/^r{'ݙR<4ߣtY"_=3.akXnbÄ'Gپ=HWO݉Ȣ'1g yݦ1s=^.z]lCF>ƙx_\;57w 8\BD+]#ځa]Qb Ygަ>>N$c@5.[qwS;ƚF=sZ~Z/A!I ĵp%!3sI*_tE35#@OGyfB{xX;1qPn|⨉‹ ,uxL$/1Ei2_ič,[gva ~Rj~ 1Wà%wd9xz(7)h֜)`J[W*lp%4귛E鿵oPŜF=W{Oڬ?|Yq/? =#v\ĉURs1 ]kS$Hn(C9jױ?XÄ5ŐrK ɾy-asZ00uU||Y_{31 E$syA9[JXԥ$Q\*K)7vs"{(!Vn V9;QK al}RXY'V[^">/:pd.5p&w^ujH2k[7I$7U{G,m|q'C.c._&ddaz*|xX17_մ"::9#^αibMJ '!z[ٰ^~m8xN6?&VaDAdmv~cF>"ŗ܊LsD#]\7a.~jC.U99kS' ;`QP-KXӣԤ准= _d_B*9nm8D.>1W CSPr[Yi߻CU`xM/CnXHYB6(8;.Eu\!͗?|1)7w٫u[Փq()w}0ٌ7lns3S7KMRxY[Mn|HM7# %[mԁ,9I!}t6A>@ňq zg cf;ۊvMM"b¯o xY^8O1UYR(@ZKVn6O:OҀSPx,FALp NKÕYHmQ80{rZ]E1WOjk}/PMLZk3]#?8J d*D/QŒgYĸ 3L+?, v@LS _lxC}O4H2NʉVJJm,+M}ﬗE"._zX!|irFx*#lrnr ]\˘s;|c-8+__Itd`岡VzHKJۉ.ޕw|(IF,,*j%Bd1EvX) pT7;xB\lńM nڧnZqMDsmӎeVC4@lX}DK-]Cg FZ$GBm<݆X _ky|#%jU`2v8l7>micF: ]̲Z_!mzf}3Qt2f3Qh$u\8t<)=ќ eZ#jcL_oid[+fT.wdL~;XPlw .rW$)#N@E QٙAPC#BN\] /knTƦk^5<߾X]H`-Jp rdTv}|ʖ3.`L35 DP x7І!tr`J1RQ_"$AD\\.W^*hRnA` 4L[ᦤ#@ŦƵ̧N8 UQXzHʸr}VіRݮn;|Pr;zLb&2ӭ,LQ@MҒŰs*@ՄM %ƣu,bov"V?ZoQO_5o8 ړk|}TڰΞ hsq;WN}H#[iG+,n{q=xIB2M*COtju] @!'pX& :3e طO5Gd 7ZA(6ڀ1KN'Mj|V|/@(Kw"W.28. 8nv<3X XɄ&TB,G?o ӈst2qeyT69J2apV8V]ɴ) 7nͣdBonWiQ\ U'`D*V܎2Ij0vvuDg s\NJC[M)wް"K)ԫYwy:BYure]G7BwB hq+N_L،%5^M+FM7/C25eGזD!q?*-%¹6l|k/Ǚ;IPJۺq Ǜ\[ ChB49<нnЪ4m`ѯUh@^ uʿ5nN̼Ⲍ;b{ko0ҽE3D|_pwlskt HA;óRJ_*FԋHH!%)tndf>ڧoO'M0huA-nrwNb%|r/TOPMg-ǪT,kO&Պ;7W >_nDFUc<'-2Vg 5L|:%q쐗/9occs9c6aM^ݨģ\dD㰏ИSIzwAgDo 6(" P5T ZZw=zvJhIiU[#sYN!3dDΧy+pLK%\(7䟇48H;>gI<?u*k$c4rAm֫>ZR{Sf1ǛPx'Q2,w\״>ҫƨO UߊJ'*}],AXhWy:eeLxI'U̖0Fn}WNat$+n%v'7+VQsM[ ȭO/{W$t~$qNgVh<'t YaNGE^&_ n$>ݩa0Z3ĹﵠP~wJ+:Q z h(&͗8ceO(8t ŀ$1Sr 16bJEDLcFo9f˜6/h]L @) y;qOin*Ǣ'0!!Q\𨾮[Oc?%>HMwx&l3#nGL*+(!J4"Yp:"{[d@@@C>'GҎ ᇒdk&vD\/dPʄH܅#zӽ^VQZ['iuZe= Ҏp" >8JEm6d5 8BKl;l_/|+؍@YmQO- êQɟi+֦9oۅ{ X3'ehᓅi|~cӏ^|!YW|.K΄f\`E6:i@BI5$sB2:%k0"U)4Q]ĺ<4 TaAe03:"0p5J*2~k*42߫{@W^ʓ*săSABX:y%U'X72 ֱ }L x Rm]4>O`ٟB{5XU kBvƄqa[]zCAi%wDmt[1SO|:~\VS7# &fi6T RνgJޢ5jy11D:iNur\n)![': g+ݛޡ' XOԽN> D)Yq[ڬ68G=v \ pL+¬5mo1-0q>E9(itĶ3Po 6j}m?X #Ϝ@/jQ mU0Xˢ~̉!-BFV`Q߷ 5*?˅xcx _~vQ" X}̆})6?H9A%W=82Qyu9j YnSsA۪]{l{J)J: 'nY>i7M'oNԜ"]˱GШi'{vvm7Ngj*Uˮ ܴ8<:(OT%BMs[GUc.? MmW)}#_ōC+ztzj08ÃkuȼfGOެhS$dw,݅e T Yc؟ 5.5\Ac_yU\Vc @8CmQ:&|ַUŭ莇C AD5o*>s\BOO.plk+IXVĬboJ321DĈi<6ikPIJA1j!m[بm^M]{ >ln`e5" $u/Ƽ1K+pϡd.of?;+R9LXmn6m!4Z$|ѣMw1qcsFBl4e3mA_(k[Mɞ`uJy~,)C1'8%~(8Ζ29E|.I=?$&ֱ*vm%٨VI(:5Ѭ.ut-ޞ4e `"L6G#L ZqPکi's) IwNSrF,q:'̖z졫+b 72H[y '"k FRQ%aӇQsW~X̸oCąt+j2Q3_i?٤ XTC>ݓ$a*$Ml!up8ϘU?#ww,7vw $s]Nĺ QG-/2cUc^gYdGtlubBŴO5S<CK~HQk(^4OUC˒RT|vs$[ر~?%w%D_dz} 0=t!Y71 /FiJOWKajr KJꯇBvNLW<4RmA B=gk1)ox[&gͣdI76{W7?6^fI!fJIYT]#GwJDT$ԟ-͚QT{q7HX֫0^#νV`'؁>G:6+N9C#gƃƦZ9ԛΙ֡ \(+.8 UֵPCaR2 LfEDLU'j3O\]YU X:bLܓTr6;_JBEB3N6.+]~w'5ID*=eDA|T#04&@ ^k~<{ >SKJ,_rY:${"7C7)4oy2+̇+ TҮ` Fa$'oٝռ@45DX/ؒ [x'WbbS1~j8]͈0.AE*U'V%G*[ 7X5>x-KZ)US *#Jz\Q-&ډ!x{)hl]5Za P8A ޟ2Qu%0O pX64NG'y~=Dy҄Q @ 0V>Z闽Nɥ9S*P `2Liv`'d#v`V[~)fhA͏A;b8#CkkcE7%F3H0ˏ F`V^6;BzdH(~-bҁJHED j;VnDFfzXG#&}CW0.b12Uxqpcj䄳f8笠uhtLλu*\8$b 5"+'}+:u<b}`ݫp/[ԩqZ"H&$)K6Y㥗7K&W:,T1He:CRf GnN +r6Wwn5v jX-_j~T,=2 q VPb%Ap/sO <-qCNҡd)/NbY&4:0}0l#SK w"c'lBE(֡tcQa֔|0{o!^~¹Z&yHb)A*ʚqo od ]냁֊y4T1g\]l.ڌHne:b(q?Pub#/>D/dLg;~ m }!~\ZŅMA!3[lO'.AÙXs`vs{Ԕ+}*a't|MHqhl :?Uێ[/-C+ 2{ssHO>urU ?u\L>~zGGa K9=asƛn m" ȌȘItrA@&G#"FQξ7jyڗyr6ܴIhKOnF7SNt(gA̔wà*;_JSR rkHmzg{!)$|)6/w0wBI0f|vZV"D%ja`j@trpK)o?"3{h=NebDn'vε*bڗir"jK([gJ_1cbHS +Kƀץ5:Eoe'> &ӢsH?y^ %tr_};IO+PN:SͣKxC+gya D7<]傾Wjm-y?G%"ڈm AGPx_QI1 %:?cv)'S#W<tzfXDaULFVȑ`UJZ'̍WwaBDV3PT-?`+-Za[X!Y4tq6#!Q_Ȱ,Ӈgewp3#f܄yYGU/V3=aGnM,U\v3*C wz_/6N; xFJ5%Ԋwl/t]NjU+[t<pC & wŔULZ $\0Gr(I$lkzF.;#Kc{:w$ٰ(+5PZ*C=̴D"e뵨RLQ4o[[S8}VY43c^Y˸LS36<˔i {~3fߓADM B#D,#OrP7v@DrwuF܋t@ĹA-Aʒ#z5Α';v Hj ; %#jWzeSq@I G#M=II չxsƘz :-WLm]۱v"Bc@d< &6k3J?~h@ض[(wUG"9pI/)*]u dW:FJQ)z` ~m^f= t5z*p\Īb3=^w݇=/ E%ݴ,<4KlV*g&qkx>6({S&e*< άҗߚ Be=Fb g>6m dzX:Ҽ,- *Q~Mnk*?-̍5;ixj搑[tMus`Г\G]mSaFdӬNI HI#mL0훋բӪg9(|˥&?ҢF?4oa(&\d!}j-~)ziSRL@؇Ez|"|AyJ ! M 09(VH%8m_r@O 8P1f_ftJϹfCxS"`& ;\Ծ%|=!,J_fهb_JC+>>?rݲyUeGTFGFۥ.R49ĩM[n4Y#f ( |QC\V-o^>v 5jBklSSAr%R_ W?i41ʟC">'0A~! `5/fM`SQbaηmT3;Ñl 2>nFng]LiN=%h|RY:f` ĉ)ga>{G#mAH|wEIq 1/oQcYU6D 0$MYhxs)4YPZ(NZNy֠gW0uߗZl3`K;b7$N@0UJg\C hM4[ .(C=(vsI ΄ p3DhVi,L!]A$M<+ .痆PI\1LI: boҰ` TTkǑd4yVЇ\rc̿ &m tv$APک ŧ:kL<,e `@܌yÆW<*_:d;KhãPV>,-jGul3؆}>IqI}!mtr9.^Z1 tAK7hqL񥦣e>TRL2%5oF.Uhm4Nk&E^DrMEԎ,Bc4xiLP!Ь I0Lᴀp ҍf)@:n` 9D,8=Oc̾;KFԑqQfwS=l3n30W(^9) LJ}: d #.MqgF 76gqF>M<bjX/λA4%R\>b`YzL}hn]=Fؚ[^Dw.r2x l8^;ܮ\`0dܦ{W9檿!1ol緌,UK isVJ?/*I'0J-bz5ig l,ԦLS@ŰKR=^sHO vŊdαܸ4EUZ&˹ ܰg3fkVzBiJp7nv.lN- :51SW@cͥ&ƈ*]|_' ?@W&0gMρtejG,zc$1|$QҮN<1T+_ 騡D"Wlp*a.khRYD GkV>S{ctKť$Pq3!`<^d_Ӆ(v_fO< x)ĵD7<#j,@ o%I73iIcf}EU]'9_ ue5$trU0ɄZz3Ikw/[*#Io(؊,s2JɍY- pRܩ*yL( ~ƈbcZ,q[PYyDm#lGOT~U n~NEkl lobRes?pWw[9MII *N9Z l4^OT 6(:؛Zr^Gh9ɾO`/eޖLr?t- _GF6R: iesЕ!xOUb1\F9S&Mg #2\b1P<9LIVc;jz~bX f䨫PwnJ⅏ ٟUӳX{/˝E RJ$ ݌^ҁ~g_8}і!I l7g>FJܛ yOǹL%%XN:s7BIj%+ȇ f;cv;žgh _` r!LK<L3Q_,-^ae (T=O1x!(]iƧYKx;}Ȏ&ցb#4"u3M徶>7Q۪C{-MGH~fؙ&>/TLUrM-:"ThDdK8qqUvֶJjR6f3jn6ư0.DI˫xcş7EY\*-*|бAǝErbhrR&{6y+K? 81 eΈ¼E )ݼa ժ]ܜ.l,qdz* _l;ݬM@Sthc_z^ tYgϔT.a{q\ՃPAkM0 i]ERr@(41>i̻.@ sTa#1F.Z{cDT~Az4w `^D 1iȉǩʴSkP: ʧa+I(EqL_49qNRk o@Z3&t`|^Dpon v=}@י`0FGhP\CtoIU mTDI( ėwP z <7K7ҩb[aY;f6vf$}9R0LE3LQ$މ;M-c /ӑ%@;)I`Dwkh9bJe=C g%3wݥ[h蚤bc΁[[/Ǽ t^'4g* +jVv**VBv%ӅQm^%I-HI%$4ǠE<P[.Hnfgp,=P89M_ ] 'D!茔v>%9\U@LLh1fĝ/xBh% 2>:P=C:_rϞH'%,0ChYK)Wx2̦RX}'i5W}Ɠ:Hհdprroj M.͹G?k  sޝmDzLฎG_Ϯ Z6DS_g7zB/CWVۻOr}˔nk$z]|nۣQ^\+|0~Be9]&֠&ŷ.F>)Y W;Uy+.CkI%1Uk!;Esy,ѭ&j.SÈ P:0S 6yHhBy?o ;$_.CITR0pg;wNU'@wPtH]맭E=wudOBQHTF7[rZ38%sg.=&_I40RH!k HC&P\l[} z bၖR1bjއ)CXLŗ}@a&R =60B{^ܓFW9|)# *KX KvwM :nQG!Rq*eޯat뀉4IjjG9⌛gao#U\#l ,u63a45)LOFm5G{?rD1&07Z7I-kmB\ZLK'v Ɓ`OX6LC--qkKgD~xTSᘣR̎'mUX2ek/y~Rm__Q&R^wgpw\DTWty1?w?J RAyóhfʐXEDAÕt[\n8kע+w^0^2, nsI GkY:K@m-'{xɌ2G_JF&Kr?==¬a4 5Na5&:.vɏFcȃA/0/e }dZZ(ÙNiRvßI/8|x6E 6*e)pGܯm@,gǑy/ 5**F|_Q>Uhʹ*\;[4|B)G|{t!\p[ <nʾ+ATBj+$%;k)n@2mS7F>ėeAKKe.||8H]Eo~,d3 Mmɵ6O\$m*їZllt`p7Cu _zt:tLH'.ZFL# h4.#d*D{mQY=C锒KL|_[ І#yK3wy(_a_F 4s1uy_%X,pCG8~qcZy7ztT2" yz/dKH^cEcŋI80n|k )6oL<ݦs? 1JWprPq驲 BztDI&M!sLҜ5.eJ g̿}dj/66ۉf3;n9YPv d%chVY ӮoR z >cntv82\(3wѷϤ+4Z N. 0VQSU;I4?{3s,S䝬z͌@_$k#yx4N_YIM8Pâz~m\+9G4KFIe@L'/XByfEk"z_m5|Q;h=M1"iTp64_[OVQajTK `?bـEilBȆRU "K}d%! Ugij͂ _ODLs7Y|,l? uD&so7[3v\Kח( Qf9y@pd b2LG.ORʭ٣S9{IfSVF<^dyeqy;ȇO(05<&s{عt\Z{]Bl&;F胈xÃѭah(|'NXЂ\(!3xG2Wݜנ9&4_~r$ ПR)3N"e6!NV~U `?Ro('1V )2ڥ%ͥ0bxQrK(Ó@+`Mr̂mckMF paj kW:_Xf"Wґi~>yJh(TN݃Usj#nl[z}qEF^#`Oj[с][uWY z#bL6׻\G 7v(-u?u*|[ ӨzBW#bupwm#)Bفz;u)vAFs5w'J N4m~6|w:rK鐮;?*᎝AF{ܸ"A\LS ~6k0_Dh'DTxt; w|pBf{~+^~3ʰ?hG _a]|w9q* "_/%UAba͚Jh(n;gWTO=+(ʊl `4U!8ն5nbGs¸w^tV6yiUM&yvS|SsAq Rds;3o`ч4dg;S0N^y5P Ye ͋xt]Yϟ7H٨*= fR@!2'e8ɤ ;3؎0 mcIQˣm{J*@) Lhŷ& [֋֗vobbgD`b( m݀F%;>o.}5ԦU} JԜzg0ƕ:yм.@ZŠzy:4D kMx2rC1D^;p gœXS'S\EJC6k:0^)ۛV{ }nU0M|A{fm9/*u107SUDZi.RX=t($csSNz`lx_@GB%;k JhW5<vG_-y#Q9Q#BvL,$BOoo\dy{ n A NK!c@nQ:%RCӛb^6<65]i+9QxXl  h>?^ˇ(z ;Q޽(w$NݖS,ThƩuW쨱m"=O|IHlٶ+Xw pnx"TwSO)A[ xgQA8&x37br5%wxאnխ&WN(~7O@@$y;UX E{6n[|$3}I.q'Js0 fxDظcgk|60ٳ|o8ⳁI9qwXQbNp9>P>Uw;u8QmQ+zsF!1m[#& 򉄔&goY6 KU_A`bJ@LGku9A ߜt0^G]}?GL.]UJ X:_ik4!eNuvx:>MAcϪ٢k3oPȦ9N  l${] ͠2ߧ61"C1U[Ɉ0gNQ.9ܕ_βJ1@w0ťne5ڠvͩǛ{Ϻ6!잹lY*4lΓhvI|M )`XJ`s;C<4"kdCq,^(f"! R5ʸ0Xk=/jTIX\_JEnb eX}NCEc&RrHpv)%O]u$::I؃𙑵TlTq(Vr7lT|y/ol3>!~CzɃyv:X3?~jk߂|Z ]%X݊uKf4Nsznꉭ{ )jCD2rI4SNytW^ <xδ D ۾#Mb |OH`ˁ+-^>Jܖ}Iɳ!F8TLݖ&oU&*܉_5` W{4 ~> ra+1Ip0<6Za=W"I@yU:³n|KH Sf#`etnbc gT,FٔB#>^:2- ބ40 |ؠ^ :Frr8?ӖPL8 g\ign#A{{}`q'W>#bpEk`-\xGY FW9e9XoEmnq}LXaħ3 ;cR͔J n0 :>h )!yXz=P Vx*fM0T@i'`K}|_ VC{lSdu7&F~a DW+4kIg}(!^@TƷV80fkg]i|+Pؕbb/}ْp F|,A=ij+DW &P|Ԯq;.l9cJ:\AtP_+"Kd>mVs,Lm8\QMZdml9/Ya Dh GicPi) 鄹qSW{,+ }L$aCR6u$ Qj4t|0H_SDNnXe}yif$!YK@ގݱ^&_\SEpS~/Y!F"":\͕JlxlJ|hn;dsiL 7͠jO/gXE+¤g_'7`o0&EowXʋ7*UZ>P0yBgræTU BhZV=㩯4O'M-g? ]:-WV-k6TIRiuRz̴߁u&a o⅕W][+"4/BrX;a T2H"܏n+Ÿh aFOr\.qqrMEFLEjD= sEq/n{]]";}\̇ۗ+l]OLAjDTo39%uW?S3H{o!(c)Bd]cw }[ Kj" g2rYeyN;&&U[і3u#K)ɏv!_1hMA-Lp=ȷ;o_t!]פ% ?q}ٵ^:S |jN$-?/T/aSSi*/pGnRھ+^SG R،/, =%;;0"p\W`!+[$r/hl xQѷ&2E jok"49 D.əm?H`;V/"z`ޢ/c`@kݻDT諢9I]K3̮3  :4>*476l 1=^vT&JXt;HC4(*YRY;SDL w|)dFD7@tS$0SDo1/xQnwlD_.HU parQsG1AB~/ۭEW*9"7 6I܋LfCUE*׶ypѠlv~:$Ȑ_։ ϞW]LGr#/iCV77<4!#yVTV4Gx![ӻ"Sl'I63-~]qCg)aET6Q:^3*qD }i]>:~ƀ7!ڋVḭ+}"`ց%IYĩLx|tTR|2COYq4 7;>ܬ}7%q ?@%W&blc/bVP<[B݃h/qs A<wkgN&6 `~ݔrK&B8a9] bA)151,[J2D=v 69À0@h%̹ LQqR%|,dޔ|PQ)!IxfoJ2Jg2/f^ȵPX:7e9BM2$iswK&nFe:5N:\|a`JP82SsQ쁍wqOtpXz7fAj7>ɠ7lIp{Zey,|N Hmc/Ѡ ;S٤qD9)׆nV;@ggz8HtT2̕ni&ɞD1Fd*/n,QU~\9꛿Ϊ8S廦UzrNE4Ω.Ha+7"uN9cB}i1JLy)t Xx#+*2 7?>^iSXMkAq<ٞ;JIOԓA$%gl4z}u}P2(ɣky;L~ֱcx k`%lbFY@jVFw ]on͝C iM .6OSN^NċJr1}3S^X 3Qq*V답z\{b \ߨC/x)L'B{=MGX8a7j4B=pt*jج9>onд,\D׏Ly-p30~2q9JW Lʬۧ#}ݣкxqt8PmpܡL{//>4+85.jJ]߸k:+SrY zxK\|WK{~l),4ѥ}PIۄv݉Cu4I-IhAr/P IpחuRP9M T}d[i+^lD+-g$buK{R3R^qg"B+aWvEQ/[TԷ<{Xev\-(S_/zNwI%*J9F0\^w0r9Ε"Y]v'H6~xTqUq'B{,CinK/V;zgjܠB5ڤ;2n5m+T ?TSM5U= ]9x":sy9ZĺTP=X@& V*~m#/]? "^C_OeFf+^sϦ6i[ -oߠ73FϓA|կ_̰D{*/M#=MCErk?Un"'+bWx[y+/wCv$r@^ =@P)p )rO+5LBE UP": $p=t6X \] T%SK³5G5͈AtX!12q+FTnWNơH+00(`f 9 93?jcqt9p{bRAb)A*0E7lOCS>ӱaO%D,pz[c(#1SsNDe 05+rC9{{Ϩ-|EDUSz7uKT w|9jgz 7x}ȝsG+vc,̒''-7`34ǯ oT m 8gL+ \+{0`4ic~E22T!{ a<'wC.x,]'ܫBaXADO*7?݃˻jΊ-KbTqd4yHdP{mGW$"!iH}]UHv-!ZInWLY}s"BgVy)]PqZv=c1 K߈KHw4F.(W珣EC< 6K-mf00yWs`u #q[h#\6:H@գ^ed ,qX7!b*-π* +0JdӬ{`'Vͪ'$V"-5T+`4ڍ1x1Lɥւ.ɦ0WB^ۿ #:Z\2_֤~}%ӱUxXn 5q&87tH_Vs{Fn"D tHs(}:!XpԴPa؉p$u ^!;iƽS ( 1 /p6;&acw]@Ӈo_vE.v"-" f̨Pdq`u'͹XB Ra}s(HMRx~RHWFJ@A*uwqtYxrӬAUlb[ٌA9`hP3>֜&sLdZ~+:.}0{~!5p+V&kcQ6-FyvwXS17$͆KdexY&Ok8ro]V:y8Z;[AH5<BN֣fF[r@ھj iƩNHkj;Hy P&2{ɓi/G\dϔK]~T?.ꎄ>NY&8bqJ-?(V/Q6E8=d S!%"Nj'T}P!gU/w/dc^8)Ĵsf̢~ ٽreH,|n%d q}K''ۣr$*!@!^0'^&E&q{UŜfIB"GHG4Ž.}?F~oHG.%:MQ!c#W [!e%й r n``xb4%EU/B~|$ B&<|~|=¼*ZFnwDGL2|(ZO{ 7 |wZ_>Vw0['%N?}bkHh>H@ܬ$6q? }O!LP\Mٖ.|2@9Z}6G 7y mGmoWiz#3%VD+ͷ3C ]D]kV3?rb;yA8rW{V1% *xPZhoA0NyUNvp4uِܔD?DR~:).hJN)A`tE@{STZAMbyLü=qNsp£9Zl!'8m..xJqS~0 V9-=E2Բem"D:0yWh'aoH؏ұA)|jOC K~^֙kwcIC3ܦKY:] SR w[v,#njS}~\y Axӈ3]Q6\&)Lw7oό>nH1|R*z9dDּ)eW~i3bAGj yDw3aۖ|$"ŏD. %;h 0gXa j@Hm";-'b#>pnnY%VnàOBfhr-~Re}F?yց΄u^0q5;`w"N=YhW8lALK DlT' gꎩ; e*eٮzf}3N0̢'8w7gy; p?r()PT:WٳWOP`_BD2?<;xSdO."4l)u3yd;o/ix ԯMMHԕ\ܗlf;-}j''1vRL6< ^ TEuO54P0>@0ՙelPdqȎ}EWi:w?湒/jγgE0[iWv{mﴠ郊y:o2u>%ʑZ=q%\h^`@ܫR]X, h*HEw }QiVqk@4$vxUCRs\dJ|sivś؁n.{ǃHd=yU%Cr^ ;5M팼a_'A8"Hq(pJJ^IZkY+LV} Ib3ncfK.ģXWˣ4"\-z$&IG{F+&ɥxMVsMoRG5BM謳ټUWtgr$@0[@&ءZ+ X) ZR-(f+"Ī p< uP,ǫGLHQ} {D~7o5nDDmM翌eJ\vI&Nʌaͪ4f>xQIA`vCZyYWfQϓX"Qɦ s?t~ )q qN)-i~ǚ(i ~W׫gQ8Kۉ/r}7C|,K]&E 9'OokEhUûC.xNrEe_^4LHZ)2ƏD_:k}AcNY\-q9/v(kb L^#MIUf?=0oqVL H=<8|?~4#ƨmI)+ Ftd2/^,Ȏ\n}JqrHMZ9k(Ajlxc샼4bܭt /O%^X?-!,@׵Dz)S29.*c)e^yQf2 'ۆO,ڨEoX$?%}%^,.{|]v-!׆$]M)p#3{_VAΥ )YfȐ51Mv=)큳˨@Uhjv[H b;aA CJx:"T`x;HxOa̕tmF?յ57k_AZID[{~׷CoF+"LJb/EkUnB*隘"B)-',dfG*(Wi~^6@;pD`B \%@wH0DHYL5e뾞?dʁ';52XMcs9nQ#1vt'9)Cˣ6ee'|etE+g\lM+VDõp8Qe3flH`ͨxi%jɠE㢤lysdR΂ C;f@d葽m 'N H/0δآ zN:Ǜ.Mj5o-k!P;ÞE fË!6DWGᒂNU2$!O0)!GO|ٱ &:<x O*idl,XO`ٚ]~kO{z145AE3"(_װv(ߵPuꮜ/7IadTqCYnXOs=h&(Fߧ<۝P,!R<鷀,H7\oeSFɐ֝gܙKCV^/*ʃފ%)taGٍ)0YMJtߟB!B\tP;MS0#A1;0`=4\[#̶wz6A C?&Ep:P4 XCSϤ|j٘"rކ]utL]b[cAK W9p rQMP@&?aF"xK-?7B/8ow^ }n]8(K)rѹ_ؠ=W*uVkK%Ő@}`UCs6;ITP?ᡥH:}ب嶴T `2YԷY"|d>.V+ǴbLeh[HUhovke*H!M2wor O0^&Zvq Ӗw&V<߻{@A-M % zq\nEA̢2"$'ڠ4߫b-U$=b6 Zɒ[ ~v['}jfh9מCE0/1w5xP 㒻lϴC'μP<>ᅵ‹a*ʏspUk&Fp"zl̰=`D$bx錌}kSsB N:utY5>5Tjtl1M=`tԹB+t3XE;R^u ilߝՍZqސ^EE Mbp 5SCK"=KJq`j!aŌ @[_e+ml]%'uGU~*uЄM&bv^~7BI P"M[FSuYDrd+ív[Ҵibē5*)opcR`ͪߧ}Kr70T.kUhL By}_@D1 ^p$Nf;F(8(FO6#.!_]J\yB2[ X-/kv˒ӈp,g9do{pP+:UBwݤ._Rqy_R&േ, & 2ig`z</8Вƺ:M($]n}{PUݖ` 2Wg y\>sNcu לzcEZG#{Ւ+?=L@pJ22_ՍX®4@9X_5IM*"z^DS n+=by/I+t,A5V[FɞBB GrXÁ=Q&ff(Rfh"veǁCcDe(t~7 bz-op2uao ^zlJ`#o] PoڤrPS|nŊ֢pS(n7-J+VR)wߝWs Y_Hr3J4qafMSXVhyd9,^ 'ȯȡLE g+p+gE)hn2jH_^0sTCR_8n0{M \'5t{|K0x.#dh 3lqoDt[~dF@ ''%P}$!nX>5pͨ9oNxh~rp[N;``œ?c8MRŦx:8f O$l\&J݂ LMmpˆJ">4%t tiHϓrhtkYiӦ!C10,)Q)61B S_>n*j բ0A^.:a,L ?|DR56<|1͢6~ YkI}Hibc\-=j[<1>6s=ݎw쟫5"7j&[h8T2L K )I?;58BjsijUEe붖0$&m:ط#|vUy RAMGؽ%\ auBK<9ˣϒ=zwIڈPܛ-%=J aRpxumbaY.?돧z ~[=訆QT].r2+8Fȓw@e²< mQ~aO0CSc)Jg*pOKB!q2 $F^*.uPv睾 &4S0_$FpV*PFRpb jvT#3t/oȑǏt c$n$.#3NNxu~H-9mZ@\Cf{nHoiSZ1t'N' % ;6[|hit VءI5f8Z5#~TՌ% ]D'ٮ!e9ojmZERI2 ~D($PH_D{QXwIgES;1+ w*lۤ'2qq.1Ŀŋ].iBgXUMfڛ²EQy}˺ȴXKv4͟@h ym!+Hv]ABBbuGe2 ֵ~S?ùH`Dw:N6Zao(D77a]J`ѷ7)*㣟OzAcb-~ɚ7ǚ)_z,jGb:Te }>fH{ߤ9]a^]WP:a,4I'pS q {Ӆf"ŵv,օ G7LLv>tXu:?;7sJ6 P'# xZJkKJ|(Ʌ5g ֈ6rE w, b V?E'LGVIP aїZT@m56W@ÏC@AwHAf1=]ᵔ6v1%&5 ˍQ_ fyt`ImùoNY4nߠwV_d3'F]*GeXMR@VJ }. g('H}E߳Ӯ*me(I@:i~h]*Ӎ_Vbh! ?SG@oeM'A1~,>ZuAP|iҍ51~芤G^: bKs})gtu.1=TUɃºkbE)6x S%+SlSpD%waa4s:KfZ.HEs/ .uEԝh i?G_IT-#$ lw2P%zo71Tڒ~9}I_=Z-yߪj1-+%B7/[k?%Edq}ǯrжd j$5*!XLU/RiͤZ~Cd6œUh -)t=iG:U] V sɧ*7W5@ M {xS㮚螶b@틂6M;fv٪$@j(S=5E 뿽,;ʁh%2uVJ_I6L1&N))05,3wioD%?eJֶbS~}j43> J50- }ڳփ8^ƯaDq=cUCu>!Fwa3 Cm4s܌ţ63zGcve lݯi^r{zXي#E֎3 ԁ׃˶f'u6& y ǞC;WNb05<*-=n8wLrON2.>BԠeW+Q|{4ݠFf(G/$!^Ĩ5-Ndj!~c ^X "i?7ZuU각~ E! 5;y'ˇ\_;D:>"y)M&rvκShy L!Sxg': y4[<֓/s_zl->vJxas=n!a5"7iohWn?Qa۝֗54D=v)66n#PewW/L٬~W]ꗌo,dgۧC:2QMVqȝݐWu4θ%|-GsoV@ ٩ !5J\}J;([MʄIUE=7>"8բ3\qGh4*kwb+NrY|Wt>fI(>Es jLl8MyfzM#r[bbZ0ΛPUsf".>Ö 2C~9ʍ7HD2C*u"ZT3$(hBl`D} T ^=E+O K cC#.>W$Wk9ok 8 \@Pm(W|zfg>|X A~WI,W4rȔ2}1FPi[Ƣ̣ s].jBD񵺠KiNΆG XiP Dcg>φ1౪hkp ĴAQ(oT6yd09o 2];^>v~jtvNZƥ4ԛr Guuu9iD/zXÚϞwul`v)DDMXt"{UxnMHI4+]RiD$ "Ƙb9l Ⱦ6ڎs &whSBd&]T9J;QOs6*~"?"b9A+L"*RO"bz`-qNCb< @6=?iB^WN{ݖ\Z{RG- ;АSƬI}͕T6='=Sj/ٌw3Iw[D+xPc=_WZ%%z(o2BbrqչJiɍǬNyExwiq*,|bۥm eQj9‹C!@3bnh`e٫.FYԁ=N8ú@`n|cO@UtN76gwls71"0^+-/釦7X@cFX-lk_O_yޘYŒi(4yPL䛅EiR[ssZ=o="PnHʿB-y?_uRݙײ4nn(?l*B@~Mq:s(,`#p&w|WPɑ<<݃W,ժWN]>Ff EQX@1ܫ&Q9WՉֺq;=Hp@\ڜUp}#G끣z"TndTK܀̙6f,ӤX3F2CDƤ L2uv qJ7BrY]֥È_k)D;' nyS 8G;2;4)G= ^Eaݦ_f1}vV vnoPC4{{*41YU3p?&x2nnsgxTi*>#~$w!:ϗ{w_יS8ko ph/{ VCFО7򎿨PiP%Gѯe,(0FUI\֪ χV\?O!GJujD/:OaO@q͊Wnʏ')C@0nt߫-ϔep̗)UqHբU82ǖ"[2($UCڡai a%S4dчkh?B0]#d)AZ foQҴ(,͙iTi ^&.0?R; .%)b&^g@ºjDAꀜKv)lکz&1(~ܨ؟H>+L4K\Q税ylS S*wֵߪlx뒣+;7-țBu$[Jh<ob[i;C&3+=r7 7jIEX.GdI.8H$b q6悟">w;KfFJ3cnS:+UkݷnЉ`W,ӃGK*V 7:s(TcVOc_e<0c^)yqvwkǴ/'ϋOۛڻE6-Pa yzhmoм^-i7OLXKw `gz ,I+hn;O2ۥtw(oH0:zh7c4BȔ 8u,uĚCK@(7 Vi;BτGCl#R*Dl)g1?7G+ۏ0PX- 9Qt-fȖǝ6pmDCNK`W;7@)=IYJi+SՕ&c98)]:/36&)?P"#yKA .n'1qSo4.!I- O9+Vo6K.jlw}PPA◾7DmIV#J V0P"{ B]Ɵf!D>G~%2*Im?6rouh/~G)u,]9]7 ŕٽ=ԇC9)pд8%)غu+aq<3;X^,btr&XiNJėMlA!)-'O j B}.J#H<CuEs(#wET񊳛iAH13T ~MEn8Uq ;ADȘy[eb\v23&\HEG95S$BiFѦ<7;7"0A+ߨu6dPq0Twe@O’;f[ܬH5MŽ=#zH.$[mhn˧~IQ}VHǖ|wGБ9o%$'(*٭%wRQA'|f/gS yMd}QA=g 94BmX6>fʢz%Qe 06Q8n '(QUY nG^g@ΜĽ갉$"C^ =u0_mvn'o y< r.޹͞۵+JR!R\)g;E$te-2<'3hYҥtq$ ~7$_vQ#&I?}b/faMD߃dt9!WEw?tTLk/4^m%J;xp/8JoZ5}XCлcy 9{gӟjazrUG`?؈"lB`^&Bhdd"pt3ޕ{鵾 )X.%^pY |&]TXeo:V$n:AbV} /= }IPlķ$y"b vC[-uk2z:%O>wlu*y'latX~*K.>ZL$uzʙ/Jni(m 5\y(þN+T1ʁ̘8:NwF~L[rB* rN(`E Yw6m6Ky!橦+>ń :dӺ)OlSPP'dQDS޽$ "/WFsu]z_2ޤR#w\Q`O{k oڋ { l/ " A,v 8bK ;42q` Z~9gʻݝN2觐}}cہsa{j3QHDi*Q}<:oO*(~]Q&$nƑELtGfUENrt@0tas޽lt =;h1vK$c^4ݠynZ""v <91ێ $(1t^>pUJ?VRD!qSd94bqΉ؂/JcEA͸C/3BEQYl4gCѬ {X$FvcsΫ q޲ц-;\|gmVo2|`aVu&v;J+Ö4k 8/h U  @ԧh0%LrSQEԶ'}%mLdp=m4iƍOd>:s]"&Էgzk_ьK=iA 1Hw ophGxJY߮TWl&iR U0-ܻTx78֕v^p#?"cқoI=Co ''}<˚ =٭M}Y%õο&Ay>ċWOD`|.9 rm~Tѵ^$ޤTߩ o]蓠/.Hމw36.'g|%,yiI䈚?vsޱMb: TEm/Q-=7PX~"jL݁Kjavk]`:XcŞR7{Lj֗9Sc~^M+,(z4^W*/ 5QȸBҕ:aR/DP={3l>ȸ;ޟx>Axuu,މxeHRQ*Cu2ELa_@nof SϫۡâBxw%Cmpn)[{ }B9E8DE#tz4ꪶRm8N}"?-댣mc7WFj"H-*:Qc`&rt{JnjQRixQzlxÐ>/#_2\#9%Ԥz)0/$A0`$kV=vBnZbXId /bfRtRYA@}K 79u1Z0.bYdRi-( w /$*)5~.#\wtIW{f$-G|qlYR uU-S¿]ZCg #x]?HB#R]'0)ؓZxFr& |^ys}c&nyO.tAN :|G4[QA[˂!uNWd>E1P([lbws b^s˰X9I>w~E& &mv|\KYQu7P-;+tk+ 2ʏv_hTd1LkgC'A 4ϺeMnl4kDc˶!Aj: [mLUg^֗cc8B2nE\u^& "+SM56:4-)`//CuD,Tm,Y$霹B>(o sT)bCvEW٭838e$35 j*17E+ H!GEJ2J+>qB~i̬;512qM8d Xl "Bh'!bXKh\տ4ԡJ5](uW >!@|kl+>%Ovs+>7=QWjxceR_ulz87u1~VڐXSP恱z ^s;@ݩ@NY5(;5%^$)y&~ҒAK86֠t?'d.R@3Pk_B`c h ~ 6-ts*M8[JzeX'Η#hm9n v DZȢ% N|Qx?Ʀ߬4&ԡt uf1V-P^(SlmRKT[yZ_r.mb=NoZ1z2Ö}GC>GcTqK 0CU 6pk,`:F]&b>STKzsﻀV#E.g"toe*ŭ9 ѽHsi9̇ʦv¬ a+r,q_HFOK2My4#-ÚüSP\ul7$YZ*0/gJ\fpIYa!)쌅WBpW^j vKqgDO<׊ BS>eGW;'3>u[ H's_rk1D#2%n?_}Myv>fǎm|:dZku1ŐpO hXEB}y`x?3p# 'iBi%{nT*Yzs*^cbmj!/PMs$# qCzb@+ a 5HDWk5Өo뿭(+H *fG3K.-+ԀIJޘKM"Nq܇DI|-8_]bqf0Aupk8k+AX P}o'!@YB2̚{BrP.:H7`!O`d䣷ב ɱVˋ絕/bD U4]\/ߤEw S-V<2KyG]@>k,6>3ƒrMYg$U7iܷׄ;J,U E)q2cS(+5`;( [ F;VF!PN@I=jJLRu H@uDžc6"-vնM̼ a -Ցϼ?9Aqi- $JeQjCDŽ^>Ӆ;HW쥂fb[Sb4F8}񒀝%Eš5:ŃHC>Dzm|5 X,>,rKzyku9LB,)` /Q5su"YNX#fP_y=my% }N/9( Qw=B8~ZwXz-v٨_cq%!?`)&j_>0!~$yIB#Ը]Si5wZ6eճӜm!׬9uC)l!Y&-%UM p+1QU_&4: Psbo4ȔUFjD;j[Zb؁4ژY6]snEb1Y~Qwө ]  71OI};^iY\ &s-M7PmjX#YPHMEK)XceMm:u5D,dMs}Ѯ_?VԡrR^ *b' UBm8O;[Gzy9$|{Qu\MO7+L]͡М C{u|dߊenwMkK|#r=ckJs]kGOdⳳ˂`]`l ^xa;26[9DC %140Þ/F@m# )zi䣄 BW1݋ EcOt& |&Z,Ю+/;]OtדZyTrΝ7]04²jqnW-BОN2gT'?TpXvrE\xM?lu% ?6UVٯ#'{#;MXW܄sGo W,7 (VN.ٹ7nT77#jtLQ8^Kmڠ9oc _ߢ#u8L0vkT 6iyL+7@|qMV(A(S mt n-lBsB9aS8*)la~=.WV0S+.#֖6=܎ZhiWZC.qIE;D~q5nI-c)ɹx!%,0$DLlbw n*$,͞U]H_'WdahJ%d2Zcn睳LPX@R5;j} T?O$y5Lb1y=- 9N,ȷ$np~Ϯxi!%A:@:*JPSt ޽+eIލݗ  fXarXh`oU,Njeh1kqEL ]tTP" OqV`X$dVnF}pg>PΧ|uvw_Ě{~6OƇ 7٦ں/5fXx²$g%EO[HGT;၂نq _4B~v%R ~W/,#P,o :Js{È\[z[dg(w2[p[\ic1eW1쩀QI FC@-ŝ6-o<0Х )ݨ@| yXfGɫk3}P}@⃔Y1;a$tOt.+ RSݘ@mmcUK7F* \!2ÓK]F˅+3@3R/ *|L䷬鞨ܺČY_(SrX]t *ly* hn~'|+V) UCf9`]goxX]9,KѤַC$8~#ʋ8)\3cfk-\Tj\GlYLOǽx9'ҩd0^3GI R1aH"I15#}'tLWgh"m8N`LOBp+AaMNqwJ~ 0ϺW_*7WL"ҿ`9{mnFKDiMzϤ@WiJ%&-ek]|AE ©VݧPѬ| .Ԁdtȃ Yڕ%8sTq~)ʑ~Q& b!I;|G1U lv5Fs D u/l_|wdNЪثLި:&-vƢSAo`lXE {[%ʿ,AW +EU^zTD` (q?S$&Taц39w>3ˏ 9D#[ȦHSL-.(CxeH"6'iCd\0/%λr"׬KYj\R]M Aymxz& ~8` LK)$qR)‚/#=7j=&Gۦ\s %0/@L-3ꏈ6mD—*.K(M58iK)d\eGVDgn^Ne=֤Œ\sX%[0. oo'LEAYf{1gw;D0hPŒepY37 O7)6J8AY;g[ qcŦxw/2[gwUOScsE 'f&6_LI!A⒨~[v+^烽z+]:Frm ogVMZz"uo19uFN 5~=2\@|wgTQ,e6E…F3O9U Q)쓛48!vXrdžA5 ܋qp1y@tyVCi^X<{7|"[RfJKդ^ǢA]MCD,E%D$uw7Yd-q&W9~IF|9l5'7GP*yttTZRy; ?-v1/ ir FT~4? <^͙}VPU ~7#2ApWg2Ju[^LiHˆWj=DI&fGӷ\==e#\('akut(ufV% "$ EF>c E<W+7<\{E =ø#lCG1I?蓀sBu)1nm0h3i~29f.6u73t䟺_*R?Vl>S.Ukhʌ>̔Mm0-&)]nZDF~)}7tSҙ62ڛ%LZ)_t㍍dX? ~lø)U J"D4+9Ɩd ߸CQǃ?Af5# xWu֫ yW>$<dH y)01 9e*|}mzFAk0W1 HſJ2 B_W r[l@RT+3]m>ͰH; p]Ri)6)-Gw_YĢHh"SI}Kxd4ܟHhá[ WA;rbEiz#dggs1 4N- Α"֞9.Ti`H c1}"0$$[4mS$(V?1!|`Rwhj$p1L8I%[(@)Az2bI0jGxxl*̣GoH]}!h5{vIZ9g*5ͧvbyL eʐO֞䢶k|+SAEy0)/==Uߣ'{xS,Vj2 eز`%cGhEWψ̾ryoOr:C7cܿ]IoB^T*a\ի:>,~=ji䠢\a#@DOb<=tK ݃UPGc~Q%dlh! !|Gˁ#6: sL _#9F>'$eWawݚm!܂q(y:`o& gJkS$2>Wi#N r qÏC0_ޤbĕ70U7gGCqX<_yYDݓ~^rEFZ.,J9h-ZFA!Y]Nǚ&rP6G<ܼ9ѲؙcЌmՃtZzb]5Qoݸ#+%=ڬ^ G)6*v_J>gy@ɕyx,\M‡iޤ& {L%*)Ğ4,F~e`jǁS2\)"q 9Jb14>qz +ؼ^i՞?H1Pqx49 nՒH3&]AE'y"nfz !ɴt`"R:k.D.H~(^*0ŘHr̜c"v-&1'Y<5lL9[.ޖ'̵]U.'ݓR1:-ot|T1gZ`A'C쓢 qnC]e-aAõN^4aBz}mKm¹g%[?sEhԺFUQbrǜ#TxH??ig@@*ڔ"sʼnɔ)M9J.^!>znvPGk i)ĢzCvfL6fÙ% q#7 .;dS4hlmЭ ptsch+}nפ} ȝHt6ڿ爑Zo̊*,\tjDclx9v .FΌPg,+[XRy6#o_Sy=+^ ycI'|~ h2U0lO,~\ gF7 Q&nIWRiA@u rE)\m ,Ǣda h4X?z%Jc4{>>^zI%=:BM{3%>ERn$nx\"j_âdLs?i(% =I}qޝ(SɂRU^nJXR9ɃyeEp:>)e5?t :,"o K7.qY<[=-|4c/s@>TUYE@F+)#0;.թCQc7#j, gfgO݋(r#=Vx?N034M(5C!׽lٖA&,M7ur|+l6’}_U HNݿw&hNoaLMA[6؄2/? [|taj OﮁlLXQUv%7s6rgC⤙ۮ*V1& 9oqip뗟c 4 l%vN~RfLGϚ Dtj}Z)Gmڼk?%[&D|ޜEsMRIONgLfgA3y=Mo\K`)i9Vq5#N?̍+.IX!d %ˏ= d(H8i{@W]Rm "v6F?fڇq Q4Vz"pL sP$:D8?xEwM 2uBUo^!vyPm/w~|5WxR6M J'Y*:isL|g +gGE=NUUv{tihN#7SlEN؈lyedՃHƍ3vEbT^x\zUa=J~^}]Ioi x ~ڂaA}j̑|foi6? ehB֬cѰxKt& yP S̛a4֋!T㒻_H1.}xלGG.p|v)@wb*a > cXRgGagN׏xgp:12oA7`4j'p׽oµW$%{)3T? B?+Y.牂VӚq/DZG'wWV 5v"Ld#n\=vq!K\uhe0x;g6:{Ēހ0:1{,-YMn32(GIʹ4Jo hwrbXC9bLr0,GANp'vړOՇ"3U: |tp2 z)YYD,4O7i=\7 N"{,, גl)\8G:FqeB^3-骱'=nr@,4 3-\ /D{{i;|ˈi-f%ȯ%a< #j)~DҦ1biGC >523Qҵ|u;契ʮfZnD>%+PSۮG#E` 뮫9^d3m)yT)s bL@#d=;4A_n0YnxQB[h6ͯ:;Fu!τ5вt'g7(9Ӄ-PqS=gVE*" RPuJ-6I3W jxHt$Bұ^nQE2ʴtDW3z6v؃} b]m—~Y(ݵ R/xͭ\X@tNJ)3\5G 9r3ij{gP':{~Oʲ,M!cksr~P2rpvga g)pY%uMO/\> LAFB b2KbP%c*|GL_b9Uc_|̇jE>U5krqJ-/Hg? _ڞpevqW]+{WU#+L|=U\SSfAd,ɛ)d"^ry$|pXv\ rqt$ta]TeokJ׀R9̛Z6]R#{ҡoxn&>PA2(>L.Kkɡ ky 84"(+au~u4!VI\|tl(Hy'p[Nwz&,QO*̊U`ԏst<rRQO]Y~Yz x%pD<(O'h8nr{kβeby;nJYaMjV(*=M^DfXa'Χep[C2璕V8)!确 OG/ٵ[ؿwWBb~Ħ/<_&yœDf[7ew b_\̹> E_<FRƱLLYl*SNP߾UIg_tuZdLOk9׵o ݯ^FVtvLxlsh5z(Y蛽tx&b'qEϕwk?m1ۗ8:FazaӬ+5ʫ׾[ޕEFv! $prY߱ {t{G {js*txB~s$yjM8_,wP"pW |BC$,K1^E(e_D>י/#>.)LZ9P`ĖτudR >@MZi[lV<n D,jmپN ; &N?>]Hs@*0iGKP+Ԩgrz;ڞ@ZiHiơs5$)10V?s*2=6AVzX7-#+H+Ku;W)8&v!+_@khʑԿ)tE9yP .p1'5k5ʍ*[U,Yͱb>,ۡ6uA d2BF[܈ AyGGHhgg61NIBfJ,`VY `FHCBWő$aD?,JJ]o6yM m 8] 9Y^*",sg᷁?uDU(GfO)-;$R}A"f tp- "җӞɑD:Bv²ӝ c3i"y`YՆG.v6/_ .=/͍@C9+MlG@dhEȋG<HcbB˒ա+=(/>xt  gbine{a ƈ]X Rـ/iA֌G2 "7=" ɨD^-H=7!ƨL:mc,˭pO}rChjbL=X劉[oRh$:'r}1k *NA/k.Y2ˁ,?Ej~jD|2Olc}v0 t':f^X"9$%Du-Ig<+1v*5vuNg!0j.W?eA[uLXK&! ]lԻ0/G\^io&g°RN&]O^8􍡌рTxNu{UDZ ^XqEBULx 6:G*QՖ:==Q^1;xrmtx_fOylq5Bo9Kl l84擜w6(dh{ݚR'( c%lu]hDeSj&@gHZq @ ].g=m)>Myjɨ\+p4e"*et CVZifCh2씷 ^4}Ѻ-i\%,̋{yp-<Q R:nU_%<5kPL!6V5RTcG%2?[5T(TX=Fڰ'[PqBvGc^Bg8-9ChU^Y,qQo=XGzuKٖ@R 'Ɩ+vf '&HYDAZc3|rM@';`R=^tx;c@zfLf7Mб RDҩs,%QG"qx ɓ;oVQ_?uͽthħGPi$5*xw9i?1wSb?AF -ѠHPrF"KϨg r-<3,l7Y2<];A?KXU@CU,/@P{x:h_y^.'ײ1\,`ӸtvƥB*]_D9 X|/Njn~R%oI3t#`Dw'6Ir\bV|x+VȌ׭ha0 tZ5C?Zd %TX3 &am1Z;||67 KEᣘKM6A;Q5YGWbc"KQ_bɱIfMtF(Ɯ#|_Ϫ1W=!%yc$iu']J h&OBuI/u+zXFp\mPPF HiYuk=L${#G7 ħUH0q8 ŧ^NHh}0t>t@%$`El ! zӛHw r(dh=G\MyLDG#\@ ۡ#9>%s:sl)9`B*H4脁CW@G8lMHoR"/ !ܝ RC1'`ݯvC}&q2;Z˟Esu#Q~.kl*v6bpP(Ƕa_C$tsR7I}̮d<^uX!'e I{ CH0oȞf%ºn&`.,e^P"-NM-t=Mt>cO\zFhzZHoO^xIȶ(+ bky)P mSڜh-D֙W HxR3`16DiZn>OFxZ;t&v6)YD O Dv̛Ƞ E%,#b]DZVefZ(zBnC;qG<",n.I2tpHaV# _*xpȲCPbRX l J.?<>r6qȞbԥsX ( P!mjVRGKxe|8nV 5 ],pdא'zQU};BQz،3KiamhmvJi.~/N[Ok#SQ7 `nɐ0÷H@i%Sgc{Pd)k9 4=F:6t2:SM`3T5ݚ7{6yyI~=U9kT*>#>|R/."g-@Hb?L 6 W 88|bbU"8*D/ZN뭋(/:|Eh .nE 6pr suP|of"l%s Je!/enK|S=&~_J5%seS ~]1HLшϑX~˳n;=l.<5mcI^>o~#V\[!T֥~' Hu^6g% ?V|T?k,ds SC.}jL'?:>./uQ3-Cl̮OG׻>+8zrˆ㰰]TC+!u%hFnjVAt'W4iy؊hA)m?-0]*q`|0r4ՀO\ڂߊƖ;'"^Rȕ/+@q dT((n(ٜ:Q ]y rbG@@I1p-(R;7}𽊛LӬe-g8 Ikv}QwU~9@<1}n:χ젹eACWOA¥@Kgs^UIQc akQ "Pܤb6-g]h S+(t@wCo b 4J}H}WMkY]q&kru[M.EKR!;E\y|/ =D:ft`d UD$Δ@;) !)&@w_tJ͏Ncg5JE8sK/;, {[PVeXMByt]"߮NS^θ3ԁِJ@b@, [\JhAx\략ۄ/?i)!{Mhù |M_RC;C*Z6L:Ǧ r>r]ה&_m֊-L8MarGƖƝXX]dӼ`[brat!5^͠iJ %dʬ_>+jz6 ETo S'Ҹ,y'+N#-ֺ:FZ^A|?ps`+o.S*(A MΒ@zCRf.qdJ^Sڵ nҥ [Z]DzKB[vBPo`=m?6Ld}w[M6)IA3\Bj 8'rc)jŷ 63O^oy BQZU=JU#WeebZq Z'U \2}QhN~3{j\ p/[R8p:/ttb)cdCnҋ[wJqҭ0RF?Ď^tʻOVp:=&-Q2{ 8# lvѻ~!HiE2׵< hSεNGߖ7;p@@ ɹ,PjŸJ4/mM3,i-jLedFiMEY佼(4N_=6^~jol]gJa/^[ 'D;#Yzpa,pFl /3r@=_\t'5:{B!㳤8,he,oȆ&7gY^D{=Ko$A.TOw@&?ec(ZX94!@a6x ~ư76޿s` Vd ?*}'=p1vмvj7ږ$YPm 7."7hvK ;kJRX%T]1_SY፣^Y)2%N OhdxڿV؜x&\"̌KpKD8W?̃\+pA;]5t@1kP+n#$e#Vn,C\j:60?u;W d2e<i %dպf>Pq")A.xCN ]Y:Fo(;fub;j&B_vq? X,7f.5PN`b1gj' =4/ ?EvTIy$ `b_BXE6y:ऽc0l9v}3~ 67>G}9#VnՌkMñBs;/(YCXw_LG;p0Bwt8)C$ Sݿ+=V,C_ccvXAkjk5sZF_Ǔ#-zIs5OO>"o "Cue&HO̴gngWQ.r86.sfZ $p ܪx]zt$ykK+eVH$ݟ6,<{+LuKRZuV9E/;T]SEۄ<Jͪ`` ktvV[iWA#ַ\SU֜njϥ/NrZNxWD% GY_5֥hC_--w`W m]gѧǏh w0J{ߕ&{Θ5lr?`W@z3" nKE/&de/zdVJ|Cm?Ƈ*X  ܽ|589B7eJoDGO8ԙt眢AUZeOręfK~2^E:VF %/3- zq#5炼T_n`H%^>}<yd u>X(Kܒ[΀VK wـ \i.pLADh=sd)qVusFO0&xӊBwl.Y=u'fnqݎ/-Q1OZ䌂M!҃U|#Y2Ga=inϻ O(xo\|ރ/ވhsG#{z侏9z5͒EV3wAE@f .Jr5zz+}BqX 2*9e>'4fƨ6F ѴtY0i ZLiUS& xN+u^}+eqȉ[&$, @_?T]:ewxZwE|yms9KcgJ$g)A}yEm]^{ӻWJķjx 7CH?W._YVK?I/8gat '|~4d˴Q?0;mx>gH甶švtAs2ԛJo&e`vRYu_GTreDPZM&֢VET'էxsA QKCv"<6ʲ}Xd')i馵suq{1LANq]w1n48PTL'eaF=mܫrJwBgO:sRpJΣ˥Jg\ptW1S8ˠ/B"lX~y+sBVWXq}.1d֦*G[$!z><ڙ-G'AVHYkjQwc=3#50$ 3)9tqC_bW)bYE=iTHGHЖ mtŔQ' ?W6P2(iF\`Ο< /18VZHҹ7HJh`3{ hBx&i_.RPL @؎HZvT08 ,Dnv&~E09 yCjCTɅӃGa C8 jJKU[+ ~=G$<+KQWQ;t Y0?8<^1#J_}kہo )%kf ġ?e[2;̻3 4$ѰO$5m6V^:.7,ct$r8fGݚ8`/2/_BBs{95Z*_CahA87*5Xqs'L(i gHZ|p [y_vXUŒmk(nz N2㎧? o+x/Fkݴ)>~_f`K zuԹrL6BaЖj"/?B**_tw\0Ǣi9#&"VPE 9Cv)kEN3li/JTHD5r2 Wz߭[\F'pQʘxnI{/I)e4Xxodok/?b@K`_xgHܖvQN{+@z.mNeHo"Aۛ'xhb֚ufD]b0B,xԷ$maS1;,P,wE< 0ěOGt}l `UHvSkx׳JRsmp/t*l&58_tzwFgFBC>1ܑ@1 y-Tюd= EGBPxa̳3ʍlRn*<q _PGQ- *-ӄ&x5Uxbj9}׫k`DtUiU%~&-R#X@~AP\#w}/͡C^>]̚(M FJ"U㒛i 3\" !)m"4tuB{ZǪP3z(z[)؎KJIjCjuVY1 {"LjL Üik+?ӳW]JjMi0T// Kyi4;Ǯ<'ZGxALZ*PŻ<}dJYbbvYca=bxlz{\}>ӽv$9SCZ;~}G K=kl_Uڼ- ܍pčOȂvWݴS,g__Ƥ?XtJOk{b1lP0!0 VmsGFiʧX\dL>xKv! OԢdԇP={wg lކ!5٬&~Jb=#i6Ef0T/R 3};ZO"ׁK(u=_ΤEaK1 rZphCh6^ezGLt;vp֥NA Mnۃ㠟3-b3Rs(Jv0 RisIUgbkb+QM%[c.v엵/Z)pά`*uڌ@a .7T؍{n`{àUXcYd[~TYLC|ݒ yTg.M=R6ٿ$\cwi(BfW W+v%% %~k*"n" +aT]Qy&!Yk_Das-pc=|Süe+^z}})j*:g̹ك'N 'Ϫ/XcHݹSN޲]mlgjP)j=/nAc @};5ؕRśx);G z fԤz 0Žދqjd!ͫ&TJ}sWbꬕƨN?+@«T+{ImU3h9b4ܸH17LanBΊHcYKx#nFHcHy"`Md]k ѹ"n?Ƙ)jIST`mOaX@ ҖM>?K_97BaEбJY "\ iȀUYǢl"w xpgdսe[e "^çdF9i.E}z!ǯ{~@|=H>sB pf&v4 酣jRKCj rx67&8A:8kB,X/-V"z hMA>u|@Y}f .? VMA@Y$ 'P;UIC?oxUmU}͊(K맰.G/5 aM]M_k#}nN$sG~wT.B8 i &J*vDSU1LrE1Mij2 봄5b#1DP%A;(P|x:ly%)*uF^"~G!98NrSX'*vRU8r a<˗@ Xj$]U2A#NXI]h~w9E%N.߭:];b9CS־='ʕ 8]SaYn .KS+D{HsXb&=:eOjX/(Xy>>yS(Hdqb3ȞO) mXl鑃Ar j4ȟ$[l|{KXl #If(q.Cq %O}(ux =-H'āD 3:E|˲lp^E0QJmdfPTI vůCɬuPA =Hwg}F5EgHs]n<?m=i!j-. * XUXV!m')i֠1[0n-yK?󐻃&t'm ^SHzc?B=z>) L@zZEIZt *yM~nw03k&P3/۷W8ܠEV̮|̎`zyf8Փra`'g-w߅cx$VX)&Il|Fp]Ø_u~LXC6z4PAH_fNlCI@^6}ECh,jගM[1Ѣ'Er-7?k]@Wo\;62%*}y!<*& "o,Q[zyPd/rǰ:?oH-lB6K5r߇xkNO_k4887XqP(cDEONtc7Zh P7OD]GŰK(#"Vߕ%dM渟k6(էrHU av}_*8" 1U倜 Pr5`,YpH/=TIv}Ϫք{|Nߘag66uc ܊4U3HIڴwzmRDOz9M)?0vzFFOmw 3en*AsB /nº=lT7Towhh!@yMg5"k&?țu[ŃI{g=kaT9^0s@X%\܉1F`bnT;#aCa/:=;U5ؐ }F(${"|/c:;(ꁰI5ϻ!r]Cȁ'fyIM$b{0X*D{p:s S8Oz@eB_B-_8||Do Ik@SAPv_7Hgzj\t.dzHelXOXAoY"6o2.ہSqjrnDea SDx79\UҘ^o I |._^hiAl"oG}eRwetNbrfl \ c2&u;ťRc&,zu֥?>1$k sL$ybYbZv0KbK %pcv Y׭Gհ}W]%YfP5CBؙCPs}ND IFrRz5J2+RM0SLfypEnJMt;OMsbN--gyf -jN:Nx輣W&_T {@j̟[T'{,OC} ,,qF"Qϱ T3[.¦a8P+mlIL}2U fٕ:bZA xHZv!ahj20}mc_T6ב1d&"/ac˥G l9MsKA%kPˡP!Y_w)eJ;d9 d Ǒ/KckdT|4,W51j,&(h\(Jup@h ߦAP5d/!5٦("uCQDW5ӕƔ ?=$]lQ4Aff b]b|u{ ~lpr3n$8ueK<828V`O䶛uzA u ؟qdҫK2xJ4ύ_7?t O8fE=R~ I(,GmVZA=0y轹6X*:Jǩ*z^ľkR*~h'{ospv6YC^W ,@mh?\`qP$-)Kw$MT<oK͂0۴9'#G]m{??Vޏ)I:c{4c^ m=Tѧ}SP<(4HWlי?'os AaJq>M׌8e74w.sxp tx\qoނ}g>4!Z^@CoY2I]gr􈌲9F2,cDǃ_aì??[j o}_nZȾ#yWMTO[) `KN8ѹW=ļ|^sأU+CQ0LڅD7הK!OB+ ٛǺp_ku$$xv|5F΂vb!mF]  B/.I ؀[;TP⼼#ϭɘky%t)@egzWH[zZv)V>Q7E!BLT?lyN[|G}=b*"y'l=I!G@ӲyŃI ȭ1B#>cz{,{zj #R$p d\yvXLEtA dᥰaJ+@= b!9Z΁YL$k}i]RK ?4O)lm*ԃIf] pS5 Y`C,{PJ[Zm n k/Uخu1l]0Qpas{n늅l m5+B#7Ui\D%CxI:AѭV@Wb?LҘ6S a\s&9dp dPb)$},&NDL1h`p^0Xw80p᾵"0y` O5tS5&^ UqY2}P?֭ /0nrƪ0)9|-e{yby\i.yZDP?\;"uyX@Hݻјj:!JIFڧ؇!t]ۻ.!N7%cߎwSͅ[Z [ l`L {OB 8DECg={ي(@CYV 6 p#>>®~7IE%LFK怆y=ݏ6Xx=j &\`1uHk|D,!jځヺ#b~0"jãeFekPT mkĢ5K\B?EZԧ: AQѸJfyk}M #p:P9Xl>{Qr מ(ğ(4cNΕ`i6u0>}Y;P.YuA5[7X}(5L-;:OGZv~?_#5T jNx1 DŽ3޽1r|֪yT^r'$)0]3LD]yHO lb] yRl!X\hRui,6[k)rث;ROx#tt9]:sP ֔.aF\ʹʚZ,'{P_u20yYcmְRfHއLGHQLN`_XF:H ]D(;hn|ȿ մ5Ss@F%g4Y/(^k40;~xO 5@]9BQwK0{eC=Vp@ x}t^B EK@b{%yq=jqVH:3QjMP2s7n ք?16E]rqL5X_8ȭCXB(f"ѽV,FZ)i a2 6ŃVzYS(5˷?s@3~zG߫) Bq+: \,LtS(GwI6Ep  nMRUt}wp%"-szoK8ʴ~fN΀ DKxHkF8\4fK&>-.MȐ%8,,o<-!OƁdK4nHquΚ-"8u,*޾_]T+̵H9oZR?6 m'lF^ty n:/ 9rV) ut)!$uK+UfKn ؛ x(,G!b`egd0-4U8hk!ץ'tw:Zg?ş"T 5oҖͧQZÀI_Q=3 KGiBŃN~C43IA_m cel0Qm;yٽ㺩Yp݆;(ڎ G1#A6 2 p,hWM*̎?&J. p_txߓM`*ìU~-L57潀Ĝ^YvG/Q'NJeߏB Rxy{˃S+Xzj0JF(x:?Ǯ~ZE#}k%i@?"*hkL.0CIh}>MVWEJejdGt峫R]ͭ`5MQֺ^nWRJJ×Pin᱿Ź3Ǐ` vyh|EbbV,ër HhiOqPeEB.3o b+;Kaֹ "Xy!VSuN{,o>JEi@y,(AVQ,0,>k:`!~s"!}c^?"~{2+!^0szSq1K2dq1nT8iY-Dp;!b*SG"C?g4GL"S:av69:jS.<ϷIeU%ל\hEaZFfg4 ,1lΤZILU/'t0 RS)hο'p[& zo$PL~p L}e93\?H ʬԶ|HpyTo%_63rb0:" {q4I:.2+"\[=|M+RZF A,R,Lnf\:ZG?f+A"^7B' ԴSz=K)+\^Kpiam㍁!"@*+loC8nPCmˀ+iJ*nزA0ɟAn=aN"-8y cןYwr^c`&NN+rq ޅe5"2 7mߘ+ Z{GYHnA}xQ@PbjMY%uќiB+3x?R)Be:1Ǿ1:nr-ߞ.BU%=9(,Q`bk]Bm)^ k ǣjG±Bi|[OZ {. M W>ͽe3wͤRڀZhSuOd3<9Vy*p#P+?[qn#gK;j |VYxRkd (3IcYUAq__-&1`Msch%,Mo6P>Gڑa?o\D(҆n| IR9+ oԷRj}Hj9=ģjk; 6:|QΞP,[Hr`<؛x}x~əMScW/2"4'6} jԧ!>67QPW(Y@ˌQeCQg s:& &G[q:͡3Q;j,lAExHe!z esYWȂލLT͏8g0<,~f UA|}.>D81wƌmrCa x=2HZ\ Gi6h2donG*޽zbqNhal%":75ʀ2GnyQþ³ݦ맺C/׶R+6{k$NM4E$sU"7[Kq3b[ oI՛~8jBIURnޜV oS.G£}STTO)IV2gf0֪Td! ߚvoݬ -^~vGM- AU̹Em)KآihT>nvf# +eJ,%CvWHZ3˸: 94̀dE>'G]=6 m2]pJgnRq~98P *l %Ţhʖz޻)K͘ucX ʐ.vo&=6ܬ*κ->{ٹ2}DQ{=$bJ|e1qW \}oH u㉕[B?⸄m//MKj/ز!-auCyCGHP qD Ԫ&V)fEX N9|Cw "8*Ҹ>u{m.V8jqI8-ӃJQO$\Fv6Ql6&n3@//%kvRiFneDD$U}B}yMZJܬMfYa;#Xfafꅄ;,c!~a948qEl9R?1$( YXj5ֱxy'$Doc5v=3qj5 h C 6A8(ngPbZ[V$WUn\{utR>p):4+~feȻe!l՗^کM+4*}:2E#NOm iN'g1BXJyv vLU;@GWPc\>y@1W҇NZDl4O|.8_s:-vqW)9GUsI[ ^<|dbpvͪ**}Nc5)(^cX!й{ie)#zLI3m䷽hiHq<B3D.&Ce ŠTn[+p;Xz9>Oٲpay~( olXSy")z[lwa ݣ!\//Ҏ4/iaZANB<20 G7qωA.t jU  Q #a,5όΩc'OzsnD6`HmFWĠbq{81СݶE %B<,^8IEOU%N`_ZJ,F`)Vy ȰdSA'ϨxͩݡWP@ <䑼yi~[bqFk[L 4^ *xdNO0.gz|ed 0R61MTm94w,%>ɲ -6S|8B4eM̭|Æodٛ~BN0X!c7HpF/wCKoݟsNu Vtx_MgIYH}Hؗ;VRS]jE>Z<>96-\*%@ db$˼Rizw̽*!,B}؆oh3ʞ3ն٭rRH@u|FJLMPϜ`Frb3}_@FvV}W6 bOb9&Xk0_V[ ̇qB0rN+麓c9)>o=̰i(cRgDt[?D]̤OjkPD4.v~S*WKH7~S|"cEUs1u\-~ZR4|<݂YRPh5>Gםi 4)ZqP 'tw"&̖tىT~yu#$1?|)H lԒsM:ǥ-bpXRssK3U*g\BL '#Q`/xU9+,wWO0ӖWvpLH,K4rRZT4ķU,zxw?^t;Vѭ%8ӷ)Rѣ .89!+tz$œK9ZT$M ;^{[UZӌυ9JcEJ{KDȕn>sis~#xv9 TWj<Od2fĻ!5Tks\GWe0UsG|c~h܄/`+.%?L5p$%`W$"'BN |]>gvz%/ ͟{cq sP);[tjWRkm1YE:J]iE3>a[ nu5p+B~L PB(4 ZiiC< V9lgj|۠DRUauRmISYO 3n.ݢ;o-LNUoK`{b B$e%ze%{ HH%Ym'XI&g|(}EM"7BJ TkPM/*{~-j~3x'#)׺톈t:և٢ rI175 :0b_ܓ 9$)N&X<G3iJy CoR/!89GE0(?G(lDj0堩ӟ2^Ts{nz9 xc5t9f諁ѫ#_ p1Kn&, i3 qU"6 6vDفٰ}c`Oo2kP̛)ZBYAOV&0?~"d,sTѩt[<cWXo4&!G;#QE˨չVocdq~K7oݬ}&xg{ Tx>{ˊ*=#p&^;̍DX=GV^tDClk;#ZL{e;'8,/T7-OQREu2)}@M,])cq , ef~ ¡xSAaG]Jżv/ y0f]6ζA~+mN;G+wѳҭ)9"n6;4!enP7<I cea> u:AQ=söc?6:uL_(ff?rp#PPH(30ۘl>̚+j؉G1yMM_oW8CyWtBlpFA9nJrf YB`k2;Zp{zm$R^c g oo2Ȣ7W̄xFP\;ڍ?qV*;,A}b+7(d7q Z17F$a1f-GOPi]@ڇ5d>U%ہ4S$/gREv`#ΕAw .:HL`5>NGT܍AqVe 6*|6BPK I-B%,ASZK. ކg}!Qyzl1٨qWWcs=aFPu+ztA^p%ۄpd=jUzZ_WdAkF?v}מ";ε#=mҿ[4jz3x)܄Oה,SnELЌib82q6r'4"=Zhqv(Ξ8X}Dd<]W7zX|īXFty4hIm_.0fi!42bi7 R{N)!ѯޙ&arzf%_Tô}F@w7M&x_v@)$kdҒa񌛭?줕h`SaCz*>Y}@ab_,F%8G8XMۆlRC|@ ;oG%N|WDz鈑PVag;DU°STZGV6 J(͍) ~&2]fhy[6r]D]L?j9yq þ#X_,gl:4>Q?Y=LꜾU G)ǹﴩhEv`d'bgYT]h>@ӊ$Ai/ V$s Y(e3+= ;/*\϶cߘu(P]̶'ƠTGep5{2jB"AB-{e#Lx ,N?;]@<cGEP#P9X *MVJ+"ceX%gәQ6nًr[G--^4LkLUxE<7B{6"(qN{"(e/T;Fޮr#G 6öG{n~Tiy%7( a%M 8ZE´HZh'dcQ};bajH2X j͆]߀z1cA:F:d- :KƁ@QsRBuZO-lv& XL (-} r]Y" ?uX.2GݼO$Vm8? !^O)b.+tGrmtzw_lT6<#G,!,L`쮮~y; V$_{apWyt>Yӏ hAmu}*aؤm^4<:!-Q]@ 2xh7bfqQ_xy nvuOL+2~ Pg2y" dPUMZ3B<:BīfB 8_ufF6ZdK^Ғy7oDƨF};osӐʆ[ahvށAn 3@M:])`4y#X^2:^d &A"q4-p);Qg &5gFyU6ʾSDjb|0Yδ4-aܬS^~r|sX&ܳޒ2/ Qa2H%z;oeȜDb[a[LGm>֯_&Hکf ,b1v/= ی; v.;a^boDU+ksQ͛,J5yZA]U^Ye، "rKx.)NbxsDYNQKmv(g[k2x4 =lWgm=<9${Gkl0mjA)OYZ]I;7#Rv`Ƃ7,:(] 34cӊ蛠'G٨$MJxg$!9z/$KԀN) 9)u}(b9u|Q%OqJ%$VucG8] ,p]m"J8&.S ٞL0+凉F} }t::-tԌO5&Ϣ,9GD$~o2 3Sp.VnO2F`;fǺؿհDɢP8G/NȼH+NxOYͱy򣾊Ioi{kCd4G& :2e1 1xE2}gH {V,Flo.Ճ;r20G!v؇Acu[$ַ3tS)=DP)fKct% 6zF#M_`+Q=yY*>%@d$/(-8P Ю :v2?h3^Zc!XI+!K(ݧ^Etp!VK4Иgr B%dUbs&6<8.CW%(}JUc3&\U5xTx VWӧ,5#Je7ѩ¡/UIky@qo{z"風Q'y}=S6}fgmm<.{{E>cOܜ&>lB &lQT :QD3 JpOOJ05QfYFЬNN MU+Dh|6:WU ^2|6ȗ1i43kRԥ<V"#&)Y(ȽZ4p$GgV.[]b lB~vm5j2_ )G۩I@mŮ8 G^8ǒ[Z2؋`,{SaH2Gg*2v:r&k1ag$xۚ72P( ƤGam̤ rZ:07ĴGr{m$+A<ć>-N)'߀XnȚ7ȍ[Yqp /~9P+nXIfrq 1=8X ٢*OGS/ҔR̼̒ul<2Pˉ٩+,ܖc24B)dŚj(ՌWr(RoW["7-pF+t6NBi*tF2fJPT'α6`O&PQ77݆F nr=-m!9Z)X>N hZj匰A@ZwdR0缡gR>+i/+dqFjW -rKֱSp' tQ SGu>u`3+Qaҋ]t;3V ϧ{/KJLFI #֑nwqE\[bEo^.6f%UT(SiEֽJiJO'bwJ? IsV?is87~9+uU{@yH_{;lZa2 PM|۠,lsy4fijq>XX fM*tUXMj%>sGb4v67vt[V1<}y!0 jx_ؤ Yh"tJkR kjb:OCYBFb tȻ40nȿL=v*]xhYt*1 +as]uϙru>|; eʝnF.9# 0ӟ+ә1 4dMߤw8G&DwZs/jh4Q<{ΎX6қ (nX5C´3*`_uTOZ<`lfvuR%'UY;Խ2͆vlSt[c!|p_H &FG?j8TYa.ۄQ'C3)[fz],\ ̀uOwV n=Bs#D˟*0S5l)di [BkhOcd V.a'bi|G2qyũЫٳ %H'I(܄Zdp ̣Qw-Yk[[+*dUN?)H?&x\e&⓿JdG-ksa0o5WcXۡJJ6 zH0HVV"@ڲkp=LRVMՉT3)=;Cℐ1г: {Aon:ȤӠ'X~klcktR7v%.71j#uVë)LXcJPJYe-3LحQ.)eiaW1 &8ܮ~'@MV'}4k_EB'"i?*`Z`BeX)U4xz=Θa`avFt[#qmȴ9 {K@Ѭ^D\)p;N^NEYIP^dhp;;ϝpM"):3pm%ք1G6ؖon)!DuE 1;\Þ+C(?~@ 8Y}ĤO! CZ0 pB:h8s ˻ṁO\G@'lƧmPn^ӯ Ϊ4K-2A5iY*Օvdɞ.,@2bU-FЄӞ= {Ƈ'||`gVK% TFXfw=ޞU0k^c=Y' l?YwU!yX(csV&eXYx^N66T[5gO2*IaȵLW\?#uF݊Ǭy0 kFö́Z'}w=Q"[TPWВA>]0=h݁@/qfo؜cN46D7n5WVS~TnڡYK/91js7ґ-rbRRM2;}Sݑd9:߆E9#u x!A&c$-W xY!=Gκ!E19nnC5^Nͣc~*"Q.O45M ChdJGW(e"ʳ=GJZd_7E¤〦+̬7x JE [ .Y =Lz$E-K u@_SfBH^{'uz646ɣ-Qrb_>Tς hU9;-x"mx'P]ˍU uv&*,\"< GXhSd PvC:ݮ 3%zJt@eCqW^pBK/Usm_Ko,gÑs`3i?CS~O1 3U&uB,xԏ[&E YZ