asterisk-dahdi-18.12.1-1.el8.2 > 6 6_6 3!y덏%!E/֡c !E/֡^^ȾHq5Mm LڒpK#.ّv7CiX$#Wm n/̍'3/Mz)ߴɘ)7G*oN!ydxUhk>@x8RX+n|k8ƪI̒uYfqU#)tV>VnueqW="BP8ڦ:(+ZE\ B6\6d*ܯ,?BqҴ;ҥdGP4Fk= kN]v6YdfY7ae oNI@- ;yOJ2yxrpPMŸw1rz6<$ c cAj"e IÉTDj䂣k{n7 J#6$+]8m?b| "&i>{e$pe)I'GH[zRxf`4 :lTٓS@T#Edw p(1d4b9a182aa24c3d51872457047fbfb0f8bf60fd00933a874e41b4fc597409914032cb4f7b1a3ab2c498c227934677585a9d13f7@3!y덏%!E/֡c !E/֡kPͤ IooW`z .oרC(\TS)12ǣy!zCڜC ).K~"Rb*ʥ_ BȒ\Nv̈́ F>yň^Hy|"u:i\Ȗɹlpl ,'mI9ȓوE5 ׌Y;y,mJ,PbtmC 񍸅[1p9LO10-&}1UOy9)lkL {OĸΕʾP,]âX}[Yf1:EcSr,-+.sN tB>8MEtEƍp^zmA>E hZ?K~cAN gJE97?{2!ˆ^m:Tu3 F':W=E*Ś&\ٗ}llZqߟ`3[8,uk ͸s앬8YA_c³OT BE{>p??d ! Elp 0x    Z x&H Y( 8 9:^=GH4I|XݐYݠ\](^ bpdefltu\v wx\y $LRCasterisk-dahdi18.12.11.el8.2Modules for Asterisk that use DAHDIModules for Asterisk that use DAHDI.cbuildvm-ppc64le-35.iad2.fedoraproject.orgeFedora ProjectFedora ProjectGPLv2Fedora ProjectUnspecified -a -G dahdi asterisk:5634 MH(AAAA큤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../../../../usr/lib64/asterisk/modules/ @@@@@@@@@@    @/bin/sh/usr/sbin/usermodasteriskconfig(asterisk-dahdi)ױ@b@bbbbbbbbbbTa@a@` @`C` @`t6@`.V`!'`@` l_^@_/@_@_@_P_P_G@_^^ϧ^I^^^&@^j$@^B@^0"@^r^@]+]]Γ@]@]@]]rJ@]9]8H@],j\h\@\y\f\R@\]I>]I-I-I-I-IH,HCH@HWH@H@H@HkmHQHO@H1kH @Gu@GGG@G@G@G߮G΋@G@G@G@GG{|Gt@Gl@GiGiGg@GcGcG_@G_@G^{G]*@GO@GB@GAzG=@G9G G m@F%@FS@F^F^F @F@FF;@F;@FF@FtF#@F@FEF@F@Fzh@FvsFvsFvsFvsFvsFu"@Fu"@Fr@FAF1F@EWE@E@E8@E7hE6@E6@E6@E2"DDD(@DWIDLDGwDGwDF&@D - 18.12.1-1.2Fedora Release Engineering - 18.12.1-1.1Michal Josef Špaček - 18.12.1-1Michal Josef Špaček - 18.11.2-1Michal Josef Špaček - 18.10.1-1Michal Josef Špaček - 18.9.0-1Michal Josef Špaček - 18.8.0-1Michal Josef Špaček - 18.7.1-1Michal Josef Špaček - 18.6.0-1Michal Josef Špaček - 18.5.1-1Michal Josef Špaček - 18.4.0-1.6Jitka Plesnikova - 18.4.0-1.5Fedora Release Engineering - 18.4.0-1.4Sahana Prasad - 18.4.0-1.3Fedora Release Engineering - 18.4.0-1.2Jitka Plesnikova - 18.4.0-1.1Jared K. Smith - 18.4.0-1Jared K Smith - 18.3.0-1Jared K. Smith - 18.2.1-1Pavel Raiskup - 18.2.0-1.2Fedora Release Engineering - 18.2.0-1.1Jared K. Smith - 18.2.0-1Jared K. Smith - 18.1.0-1Jared K. Smith - 18.0.1-2Jared K. Smith - 18.0.1-1Jared K. Smith - 18.0.0-1Josef Řídký - 17.7.0-2Jared K. Smith - 17.7.0-1Josef Řídký - 17.5.0-2.3Fedora Release Engineering - 17.5.0-2.2Jitka Plesnikova - 17.5.0-2.1Jared K. Smith - 17.5.0-0.rc1.1Jared K. Smith - 17.4.0-2Jared K. Smith - 17.4.0-1Jared K. Smith - 17.4.0-0.rc2.1Jared K. Smith - 17.4.0-0.rc1.1Jared K. Smith - 17.3.0-1Jared K. Smith - 17.2.0-1Fedora Release Engineering - 17.2.0-0.rc1.2.1Tom Callaway - 17.1.0-2Jared K. Smith - 17.1.0-1Jared K. Smith - 17.1.0-0.rc1.1Jared K. Smith - 17.0.1-1Jared K. Smith - 17.0.0-2Jared K. Smith - 17.0.0-1Jared K. Smith - 16.6.1-1Jared K. Smith - 16.6.0-1Jared K. Smith - 16.5.1-1Jared K. Smith - 16.5.0-1Fedora Release Engineering - 16.4.1-2Jared K. Smith - 16.4.1-1Jitka Plesnikova - 16.4.0-2Jared K. Smith - 16.4.0-1Jared K. Smith - 16.2.1-1Jared K. Smith - 16.2.0-1Fedora Release Engineering - 16.1.0-4Björn Esser - 16.1.0-3Björn Esser - 16.1.0-2Jared Smith - 16.1.0-1Jared Smith - 16.0.1-1Jared Smith - 16.0.0-1Jared K. Smith - 15.5.0-1Jitka Plesnikova - 15.4.1-2Jared K. Smith - 15.4.1-1Jared K. Smith - 15.4.0-1jsmith - 15.3.0-1Jared Smith - 15.2.2-2Jared Smith - 15.2.2-1Jared Smith - 15.2.1-3Jared Smith - 15.2.1-2Jared Smith - 15.2.1-1Igor Gnatenko - 15.2.0-5Fedora Release Engineering - 15.2.0-4Jared Smith - 15.2.0-3Björn Esser - 15.2.0-2Jared Smith - 15.2.0-1Jared Smith - 15.1.5-1Jared Smith - 15.1.4-2Jared Smith - 15.1.4-1Jared Smith - 15.1.3-1Jared Smith - 15.1.2-1Jared Smith - 15.1.1-1Jared Smith - 15.1.0-1Jared Smith - 15.0.0-1Jared Smith - 14.6.2-1Jared Smith - 14.6.1-6Jared Smith - 14.6.1-5Jared Smith - 14.6.1-4Jared Smith - 14.6.1-3Jared Smith - 14.6.1-1Jared Smith - 14.6.0-2Jared Smith - 14.6.0-1Fedora Release Engineering - 14.5.0-4Fedora Release Engineering - 14.5.0-3Till Maas - 14.5.0-2Jared Smith - 14.5.0-1Jitka Plesnikova - 13.11.2-1.2Fedora Release Engineering - 13.11.2-1.1Jared Smith - 13.11.2-1Jared Smith - 13.11.1-1Jitka Plesnikova - 13.9.1-1.1Jared Smith - 13.9.1-1Jared Smith - 13.7.2-2.1Michal Toman - 13.7.2-2Jared Smith - 13.7.2-1Jared Smith - 13.7.1-2Jared Smith - 13.7.1-1Fedora Release Engineering - 13.3.2-3.1Jared Smith - 13.3.2-3Robert Scheck - 13.3.2-2Fedora Release Engineering - 13.3.2-1.2Jitka Plesnikova - 13.3.2-1.1Jeffrey C. Ollie - 13.3.2-1:Jeffrey C. Ollie - 13.3.1-1:Jeffrey C. Ollie - 13.3.0-1:Jeffrey C. Ollie - 13.2.0-1:Jeffrey C. Ollie - 13.1.1-1:Jeffrey C. Ollie - 13.1.0-1Peter Robinson 13.0.2-3Tom Callaway - 13.0.2-2Jeffrey C. Ollie - 13.0.2-1Jeffrey C. Ollie - 13.0.1-1Jeffrey C. Ollie - 13.0.0-1Tom Callaway - 11.13.1-2Jeffrey C. Ollie - 11.13.1-1Jeffrey C. Ollie - 11.13.0-1Jeffrey C. Ollie - 11.12.1-1Jeffrey C. Ollie - 11.12.0-1Jeffrey C. Ollie - 11.11.0-1Jitka Plesnikova - 11.10.2-2.2Fedora Release Engineering - 11.10.2-2.1Jeffrey Ollie - 11.10.2-2:Jeffrey Ollie - 11.10.2-1:Jeffrey Ollie - 11.10.1-1:Jeffrey Ollie - 11.10.0-1:Fedora Release Engineering - 11.9.0-2.1Dennis Gilmore - 11.9.0-2Jeffrey Ollie - 11.9.0-1:Jeffrey Ollie - 11.8.1-1:Jeffrey Ollie - 11.8.0-1:Jeffrey Ollie - 11.7.0-1:Jeffrey Ollie - 11.6.1-1:Jeffrey Ollie - 11.6.0-1:Jeffrey Ollie - 11.5.1-3:Jeffrey Ollie - 11.5.1-2:Jeffrey Ollie - 11.5.1-1:Fedora Release Engineering - 11.4.0-2.2Petr Pisar - 11.4.0-2.1Rex Dieter 11.4.0-2Jeffrey Ollie - 11.4.0-1:Tom Callaway - 11.3.0-2:Jeffrey Ollie - 11.3.0-1:Jeffrey Ollie - 11.2.2-1:Jeffrey Ollie - 11.2.1-1:Jeffrey Ollie - 11.2.0-1:Jeffrey Ollie - 11.1.2-1:Jeffrey Ollie - 11.1.1-1:Jeffrey Ollie - 11.1.0-1:Jeffrey Ollie - 11.0.2-1:Dan Horák - 11.0.1-3Dennis Gilmore - 11.0.1-2Jeffrey Ollie - 11.0.1-1Jeffrey Ollie - 11.0.0-1:Jeffrey Ollie - 11.0.0-0.7.rc2:Jeffrey Ollie - 11.0.0-0.6.rc1Jeffrey Ollie - 11.0.0-0.5.beta2Jeffrey Ollie - 11.0.0-0.4.beta2Jeffrey Ollie - 10.8.0-1Dan Horák - 11.0.0-0.3.beta1Dan Horák - 10.7.1-2Jeffrey Ollie - 10.7.1-1Jeffrey Ollie - 10.7.0-1Jeffrey Ollie - 10.6.1-1Jeffrey Ollie - 10.6.0-1Jeffrey Ollie - 11.0.0-0.2.beta1Fedora Release Engineering - 10.5.2-1.2Petr Pisar - 10.5.2-1.1Jeffrey Ollie - 10.5.2-1:Petr Pisar - 10.5.1-1.1Jeffrey Ollie - 10.5.1-1Jeffrey Ollie - 10.5.0-1Petr Pisar - 10.4.2-1.1Jeffrey Ollie - 10.4.2-1Jeffrey Ollie - 10.4.1-1Jeffrey Ollie - 10.4.0-1Jeffrey Ollie - 10.3.1-1Russell Bryant - 10.3.0-1Russell Bryant - 10.2.1-1Jeffrey C. Ollie - 10.1.2-2Jeffrey C. Ollie - 10.1.2-1Jeffrey C. Ollie - 10.1.1-1Jeffrey C. Ollie - 10.1.0-1Russell Bryant - 10.0.0-2Fedora Release Engineering - 10.0.0-1.1Jeffrey C. Ollie - 10.0.0-1Jeffrey C. Ollie - 10.0.0-1Jeffrey C. Ollie - 10.0.0-0.7.rc3Jeffrey C. Ollie - 10.0.0-0.6.rc2Jeffrey C. Ollie - 10.0.0-0.5.rc1Jeffrey C. Ollie - 10.0.0-0.4.beta2Jeffrey C. Ollie - 10.0.0-0.3.beta2Jeffrey C. Ollie - 10.0.0-0.2.beta2Jeffrey C. Ollie - 10.0.0-0.1.beta1Petr Sabata - Sabata - C. Ollie - C. Ollie - 1.8.5-0.2Jeffrey C. Ollie - 1.8.5-0.1.rc1Jeffrey C. Ollie - 1.8.5-0.1.rc1Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - Mašláňová - Mašláňová - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - - 1.8.3-1 - 1.8.3-0.7.rc3Jeffrey C. Ollie - 1.8.3-0.6.rc2Jeffrey C. Ollie - 1.8.3-0.5.rc2Jeffrey C. Ollie - 1.8.3-0.4.rc2Fedora Release Engineering - 1.8.3-0.3.rc2Jeffrey C. Ollie - 1.8.3-0.2.rc2Jeffrey C. Ollie - 1.8.3-0.1.rc1Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.8.2-1Jeffrey C. Ollie - C. Ollie - 1.8.1-1Dennis Gilmore - 1.8.0-6Dennis Gilmore - 1.8.0-5Dennis Gilmore - 1.8.0-4Jeffrey C. Ollie - 1.8.0-3Jeffrey C. Ollie - 1.8.0-2Jeffrey C. Ollie - 1.8.0-1Jeffrey C. Ollie - 1.8.0-0.8.rc5:Jeffrey C. Ollie - 1.8.0-0.7.rc3Jeffrey C. Ollie - 1.8.0-0.6.rc2Jeffrey C. Ollie - 1.8.0-0.5.beta5Jeffrey C. Ollie - 1.8.0-0.4.beta4Jeffrey C. Ollie - 1.8.0-0.3.beta3Jeffrey C. Ollie - 1.8.0-0.2.beta2Jeffrey C. Ollie - 1.8.0-0.1.beta2Jeffrey C. Ollie - C. Ollie - Maslanova - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.6.1-0.26.rc1Tomas Mraz - 1.6.1-0.25.rc1Fedora Release Engineering - 1.6.1-0.24.rc1Jeffrey C. Ollie - 1.6.1-0.23.rc1Fedora Release Engineering - 1.6.1-0.22.rc1Jeffrey C. Ollie - 1.6.1-0.21.rc1Tomas Mraz - 1.6.1-0.13.beta4Jeffrey C. Ollie - 1.6.1-0.12.beta4Jeffrey C. Ollie - 1.6.1-0.10.beta4Jeffrey C. Ollie - 1.6.1-0.9.beta4Jeffrey C. Ollie - 1.6.1-0.8.beta4Jeffrey C. Ollie - 1.6.1-0.7.beta3Alex Lancaster - 1.6.1-0.6.beta2Jeffrey C. Ollie - 1.6.1-0.5.beta2Jeffrey C. Ollie - 1.6.1-0.4.beta2Jeffrey C. Ollie - 1.6.1-0.3.beta2Jeffrey C. Ollie - 1.6.1-0.2.beta2Jeffrey C. Ollie - C. Ollie - C. Ollie - 1.6.0-1- Bastien Nocera - 1.6.0-0.22.beta9Jeffrey C. Ollie - 1.6.0-0.21.beta9Jeffrey C. Ollie - 1.6.0-0.20.beta9Jeffrey C. Ollie - 1.6.0-0.19.beta9Jeffrey C. Ollie - 1.6.0-0.18.beta9Jeffrey C. Ollie - 1.6.0-0.17.beta9Jeffrey C. Ollie - 1.6.0-0.16.beta9Jeffrey C. Ollie - 1.6.0-0.15.beta9Jeffrey C. Ollie - 1.6.0-0.14.beta9Jeffrey C. Ollie - 1.6.0-0.13.beta8Jeffrey C. Ollie - 1.6.0-0.12.beta7.1Jeffrey C. Ollie - 1.6.0-0.11.beta7.1Jeffrey C. Ollie - 1.6.0-0.10.beta7Jeffrey C. Ollie - 1.6.0-0.9.beta6Jeffrey C. Ollie - 1.6.0-0.8.beta6Jeffrey C. Ollie - 1.6.0-0.6.beta6Tom "spot" Callaway - 1.6.0-0.5.beta5Jeffrey C. Ollie - 1.6.0-0.4.beta5Jeffrey C. Ollie - 1.6.0-0.3.beta4Jeffrey C. Ollie - 1.6.0-0.2.beta4Jeffrey C. Ollie - 1.6.0-0.1.beta4Jeffrey C. Ollie - 1.4.18-1Jeffrey C. Ollie - 1.4.17-1Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.4.16-2Jeffrey C. Ollie - 1.4.16-1Jeffrey C. Ollie - 1.4.15-7Jeffrey C. Ollie - 1.4.15-6Jeffrey C. Ollie - 1.4.15-5Jeffrey C. Ollie - 1.4.15-4Jeffrey C. Ollie - 1.4.15-3Jeffrey C. Ollie - 1.4.15-2Jeffrey C. Ollie - 1.4.15-1Jeffrey C. Ollie - 1.4.14-2Jeffrey C. Ollie - 1.4.14-1Jeffrey C. Ollie - 1.4.13-7Jeffrey C. Ollie - 1.4.13-6Jeffrey C. Ollie - 1.4.13-1Jeffrey C. Ollie - C. Ollie - 1.4.11-1Jeffrey C. Ollie - C. Ollie - 1.4.10-1Jeffrey C. Ollie - 1.4.9-7Jeffrey C. Ollie - 1.4.9-6Jeffrey C. Ollie - 1.4.9-5Jeffrey C. Ollie - 1.4.9-4Jeffrey C. Ollie - 1.4.9-3Jeffrey C. Ollie - 1.4.9-2Jeffrey C. Ollie - 1.4.9-1Jeffrey C. Ollie - 1.4.8-1Jeffrey C. Ollie - C. Ollie - 1.4.7-1Jeffrey C. Ollie - 1.4.6-4Jeffrey C. Ollie - 1.4.6-3Jeffrey C. Ollie - 1.4.6-2Jeffrey C. Ollie - 1.4.6-1Jeffrey C. Ollie - 1.4.5-10Jeffrey C. Ollie - 1.4.5-9Jeffrey C. Ollie - 1.4.5-8Jeffrey C. Ollie - 1.4.5-7Jeffrey C. Ollie - 1.4.5-6Jeffrey C. Ollie - 1.4.5-5Jeffrey C. Ollie - 1.4.5-4Jeffrey C. Ollie - 1.4.5-3Jeffrey C. Ollie - 1.4.5-1Jeffrey C. Ollie - 1.4.4-2Jeffrey C. Ollie - 1.4.4-1Jeffrey C. Ollie - 1.4.2-1Jeffrey C. Ollie - 1.4.1-2Jeffrey C. Ollie - 1.4.1-1Jeffrey C. Ollie - 1.4.0-6.beta4Jeffrey C. Ollie - 1.4.0-5.beta3Jeffrey C. Ollie - 1.4.0-4.beta3Jeffrey C. Ollie - 1.4.0-3.beta3Jeffrey C. Ollie - 1.4.0-2.beta3Jeffrey C. Ollie - 1.4.0-1.beta3Jeffrey C. Ollie - 1.4.0-0.beta2Jeffrey C. Ollie - 1.2.10-1Jeffrey C. Ollie - C. Ollie - 1.2.8Jeffrey C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - C. Ollie - 1.2.7-1Jeffrey C. Ollie - 1.2.6-3Jeffrey C. Ollie - 1.2.6-2Jeffrey C. Ollie - 1.2.6-1Jeffrey C. Ollie - 1.2.5-1Jeffrey C. Ollie - 1.2.4-4Jeffrey C. Ollie - 1.2.4-3Jeffrey C. Ollie - 1.2.4-2Jeffrey C. Ollie - 1.2.4-1Jeffrey C. Ollie - 1.2.3-4Jeffrey C. Ollie - 1.2.3-3Jeffrey C. Ollie - 1.2.3-2Jeffrey C. Ollie - 1.2.3-1- Rebuilt to change Python shebangs to /usr/bin/python3.6 on EPEL 8- Rebuilt for Update to upstream 18.12.1 release.- Update to upstream 18.11.2 release.- Update to upstream 18.10.1 release.- Update to upstream 18.9.0 release.- Update to upstream 18.8.0 release.- Update to upstream 18.7.1 release.- Update to upstream 18.6.0 release.- Update to upstream 18.5.1 release.- Fix build (#1977579)- Perl 5.36 rebuild- Rebuilt for Rebuilt with OpenSSL 3.0.0- Rebuilt for Perl 5.34 rebuild- Update to upstream 18.4.0 release for bug fixes- Update to upstream 18.3.0 release for security updates and bug fixes- Update to upstream 18.2.1 release for security updates, related to: - AST-2021-001/CVE-2020-35776: Remote crash in res_pjsip_diversion - AST-2021-002/CVE-2021-26717: Remote crash possible when negotiating T.38 - AST-2021-003/CVE-2021-26712: Remote attacker could prematurely tear down SRTP calls - AST-2021-004/CVE-2021-26714: An unsuspecting user could crash Asterisk with multiple hold/unhold requests - AST-2021-005/CVE-2021-26906: Remote Crash Vulnerability in PJSIP channel driver- rebuild for libpq ABI fix rhbz#1908268- Rebuilt for Update to upstream 18.2.0 release for security fixes, bug fixes, and features- Update to upstream 18.1.0 release for bug fixes and features- Add dependency on sox- Update to 18.0.1 release for AST-2020-001 and AST-2020-002 security fixes- Update to upstream 18.0.0 release for new features- Rebuilt for new net-snmp release- Update to upstream 17.7.0 release- Rebuilt for new net-snmp release- Rebuilt for Perl 5.32 rebuild - Add missing source files- Update to upststream 7.5.0-rc1 release for testing- app_page no longer depends on app_meetme- Update to upstream 7.4.0 release for bug fixes- Update to upstream 7.4.0-rc2- Update to upstream 7.4.0 RC 1- Update to upstream 7.3.0 release for bug fixes- Update to upstream 7.2.0 release for bug fixes- Rebuilt for rebuild for libsrtp2- Update to upstream 17.1.0 release for security and bug fixes- Update to upstream 17.1.0 pre-release for security and bug fixes- Update to upstream 17.0.1 release for AST-2019-006, AST-2019-007, AST-2019-008 security updates- Move from python2 to python3- Update to upstream 17.0.0 release for new features- Update to upstream 16.6.1 for bug fixes - Work on building in EPEL-7 and EPEL-8- Update to upstream 16.6.0 for security and bug fixes - Update to using bundled pjproject release 2.9- Update for upstream security release 16.5.1, with AST-2019-004 and AST-2019-005- Update to upstream 16.5.0 release for security and bug fixes- Rebuilt for Update to upstream 16.4.1 release for security updates AST-2019-002 and AST-2019-003 related to remote crash vulnerabilities- Perl 5.30 rebuild- Update to upstream 16.4.0 release for bug fixes- Update to upstream 16.2.1 release for security / CVE-2019-7251 / AST-2019-001- Update to upstream 16.2.0 release for bug fixes- Rebuilt for Rebuilt for (#1666033)- Add patch to explicitly use python2 shebangs- Update to upstream 16.1.0 security release- Update to upstream 16.0.1 security release- Update to upstream 16.0.0 release- Update to upstream 15.5.0 release for security and bug fixes- Perl 5.28 rebuild- Update to upstream 15.4.1 release for AST-2018-007 and AST-2018-008 security issues- Update to upstream 15.4.0 release- Update to upstream 15.3.0 release- Update asterisk.service to wait for the network to come up- Update to upstream 15.2.2 release for security updates - This update addresses security alerts AST-2018-001 through AST-2018-006 - Upstream changelog at Verify GPG signatures on source packages- Add missing BuildRequires on gcc/gcc-c++- Update to upstream 15.2.1 release- Escape macros in %changelog- Rebuilt for Update requirements for systemd- Rebuilt for switch to libxcrypt- Update to upstream 15.2.0 release - Upstream changelog at Update to upstream 15.1.5 release for AST-2017-014/CVE-2017-17850 security issue- Require mariadb-connector-c-devel, see RHBZ#1488483- Update to upstream 15.1.4 release for AST-2017-012 security issue- Update to upstream 15.1.3 release for security issue AST-2017-013- Update to upstream 15.1.2 release- Update to upstream 15.1.1 release for AST-2017-09, AST-2017-010, and AST-2017-011 security updates- Update to upstream 15.1.0 release- Update to upstream 15.0.0 release- Update to upstream 14.6.2 release- Re-enable corosync, see RHBZ#1478089- Add dependency on unbound-devel for res_resolver_unbound- Disable corosync modules until corosync works in ppc64le again- Fix MySQL header path (due to change in mariadb-devel patckage)- Update to upstream 14.6.1 release - Solves AST-2017-005, AST-2017-006, and AST-2017-007 security issues- Add perl to BuildRequires- Update to upstream 14.6.0 release - Re-enable radius sub-packages- Rebuilt for Rebuilt for Excludearch s390x- Update to upstream 14.5.0 release- Perl 5.26 rebuild- Rebuilt for Update to upstream 13.11.2 bug-fix release- Stop building the -radius subpackage, due to orphaned freeradius-client dependency - Update to upstream 13.11.1 security release for AST-2016-006 and AST-2016-007- Perl 5.24 rebuild- Update to upstream 13.9.1 release - Use instead of calling autoconf tools manually - Fix up shifting pjproject submodules - Fix up requires on speexdsp-devel for EPEL7 (RHBZ#1310444)- Fix alembic requirement- Do not use -m32/-m64 on MIPS- Update to upstream release 13.7.2 to fix ASTERISK-25702- Create sub-package for alembic scripts- Update to upstream 13.7.1 release for security fixes - Resolves AST-2016-001: BEAST vulnerability in HTTP server - Resolves AST-2016-002: File descriptor exhaustion in chan_sip - Resolves AST-2016-003: Remote crash vulnerability receiving UDPTL FAX data - Full changelog at - Also build the 'radius' sub-package against freeradius-client-devel, as the radiusclient-ng project is dead- Rebuilt for Remove %defattr macro invocations, as they are no longer needed- Rebuild for libical 2.0.0- Rebuilt for Perl 5.22 rebuild- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28, 11.6, and 13.1 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28.cert-5,, 11.6-cert11, - 11.17.1, 12.8.2, 13.1-cert2, and 13.3.2. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerability: - - * AST-2015-003: TLS Certificate Common name NULL byte exploit - - When Asterisk registers to a SIP TLS device and and verifies the server, - Asterisk will accept signed certificates that match a common name other than - the one Asterisk is expecting if the signed certificate has a common name - containing a null byte after the portion of the common name that Asterisk - expected. This potentially allows for a man in the middle attack. - - For more information about the details of this vulnerability, please read - security advisory AST-2015-003, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - - The security advisory is available at: - - * The Asterisk Development Team has announced the release of Asterisk 13.3.1. - This release is available for immediate download at - - - The release of Asterisk 13.3.1 resolves an issue reported by the - community and would have not been possible without your participation. - Thank you! - - The following is the issue resolved in this release: - - * --- pjsip: resolve compatibility problem with ast_sip_session - (Closes issue ASTERISK-24941. Reported by Matt Jordan) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 13.3.0. - This release is available for immediate download at - - - The release of Asterisk 13.3.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - New Features made in this release: - ----------------------------------- - * ASTERISK-24703 - ARI: Add the ability to "transfer" (redirect) a - channel (Reported by Matt Jordan) - * ASTERISK-17899 - Handle crypto lifetime in SDES-SRTP negotiation - (Reported by Dwayne Hubbard) - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24616 - Crash in res_format_attr_h264 due to invalid - string copy (Reported by Yura Kocyuba) - * ASTERISK-24748 - res_pjsip: If wizards explicitly configured in - sorcery.conf false ERROR messages may occur (Reported by Joshua - Colp) - * ASTERISK-24769 - res_pjsip_sdp_rtp: Local ICE candidates leaked - (Reported by Matt Jordan) - * ASTERISK-24742 - [patch] Fix ast_odbc_find_table function in - res_odbc (Reported by ibercom) - * ASTERISK-24479 - Enable REF_DEBUG for module references - (Reported by Corey Farrell) - * ASTERISK-24701 - Stasis: Write timeout on WebSocket fails to - fully disconnect underlying socket, leading to events being - dropped with no additional information (Reported by Matt Jordan) - * ASTERISK-24772 - ODBC error in realtime sippeers when device - unregisters under MariaDB (Reported by Richard Miller) - * ASTERISK-24752 - Crash in bridge_manager_service_req when bridge - is destroyed by ARI during shutdown (Reported by Richard - Mudgett) - * ASTERISK-24741 - dtls_handler causes Asterisk to crash (Reported - by Zane Conkle) - * ASTERISK-24015 - app_transfer fails with PJSIP channels - (Reported by Private Name) - * ASTERISK-24727 - PJSIP: Crash experienced during multi-Asterisk - transfer scenario. (Reported by Mark Michelson) - * ASTERISK-24771 - ${CHANNEL(pjsip)} - segfault (Reported by - Niklas Larsson) - * ASTERISK-24716 - Improve pjsip log messages for presence - subscription failure (Reported by Rusty Newton) - * ASTERISK-24612 - res_pjsip: No information if a required sorcery - wizard is not loaded (Reported by Joshua Colp) - * ASTERISK-24768 - res_timing_pthread: file descriptor leak - (Reported by Matthias Urlichs) - * ASTERISK-24685 - "pjsip show version" CLI command (Reported by - Joshua Colp) - * ASTERISK-24632 - install_prereq script installs pjproject - without IPv6 support (Reported by Rusty Newton) - * ASTERISK-24085 - Documentation - We should remove or further - document the 'contact' section in pjsip.conf (Reported by Rusty - Newton) - * ASTERISK-24791 - Crash in ast_rtcp_write_report (Reported by - JoshE) - * ASTERISK-24700 - CRASH: NULL channel is being passed to - ast_bridge_transfer_attended() (Reported by Zane Conkle) - * ASTERISK-24451 - chan_iax2: reference leak in sched_delay_remove - (Reported by Corey Farrell) - * ASTERISK-24799 - [patch] make fails with undefined reference to - SSLv3_client_method (Reported by Alexander Traud) - * ASTERISK-22670 - Asterisk crashes when processing ISDN AoC - Events (Reported by klaus3000) - * ASTERISK-24689 - Segfault on hangup after outgoing PRI-Euroisdn - call (Reported by Marcel Manz) - * ASTERISK-24740 - [patch]Segmentation fault on aoc-e event - (Reported by Panos Gkikakis) - * ASTERISK-24787 - [patch] - Microsoft exchange incompatibility - for playing back messages stored in IMAP - play_message: No - origtime (Reported by Graham Barnett) - * ASTERISK-24814 - asterisk/lock.h: Fix syntax errors for non-gcc - OSX with 64 bit integers (Reported by Corey Farrell) - * ASTERISK-24796 - Codecs and bucket schema's prevent module - unload (Reported by Corey Farrell) - * ASTERISK-24724 - 'httpstatus' Web Page Produces Incomplete HTML - (Reported by Ashley Sanders) - * ASTERISK-24499 - Need more explicit debug when PJSIP dialstring - is invalid (Reported by Rusty Newton) - * ASTERISK-24785 - 'Expires' header missing from 200 OK on - REGISTER (Reported by Ross Beer) - * ASTERISK-24677 - ARI GET variable on channel provides unhelpful - response on non-existent variable (Reported by Joshua Colp) - * ASTERISK-24797 - bridge_softmix: G.729 codec license held - (Reported by Kevin Harwell) - * ASTERISK-24812 - ARI: Creating channels through /channels - resource always uses SLIN, which results in unneeded transcoding - (Reported by Matt Jordan) - * ASTERISK-24800 - Crash in __sip_reliable_xmit due to invalid - thread ID being passed to pthread_kill (Reported by JoshE) - * ASTERISK-17721 - Incoming SRTP calls that specify a key lifetime - fail (Reported by Terry Wilson) - * ASTERISK-23214 - chan_sip WARNING message 'We are requesting - SRTP for audio, but they responded without it' is ambiguous and - wrong in some cases (Reported by Rusty Newton) - * ASTERISK-15434 - [patch] When ast_pbx_start failed, both an - error response and BYE are sent to the caller (Reported by - Makoto Dei) - * ASTERISK-18105 - most of asterisk modules are unbuildable in - cygwin environment (Reported by feyfre) - * ASTERISK-24828 - Fix Frame Leaks (Reported by Kevin Harwell) - * ASTERISK-24751 - Integer values in json payload to ARI cause - asterisk to crash (Reported by jeffrey putnam) - * ASTERISK-24838 - chan_sip: Locking inversion occurs when - building a peer causes a peer poke during request handling - (Reported by Richard Mudgett) - * ASTERISK-24825 - Caller ID not recognized using - Centrex/Distinctive dialing (Reported by Richard Mudgett) - * ASTERISK-24830 - res_rtp_asterisk.c checks USE_PJPROJECT not - HAVE_PJPROJECT (Reported by Stefan Engström) - * ASTERISK-24840 - res_pjsip: conflicting endpoint identifiers - (Reported by Kevin Harwell) - * ASTERISK-24755 - Asterisk sends unexpected early BYE to - transferrer during attended transfer when using a Stasis bridge - (Reported by John Bigelow) - * ASTERISK-24739 - [patch] - Out of files -- call fails -- - numerous files with inodes from under /usr/share/zoneinfo, - mostly posixrules (Reported by Ed Hynan) - * ASTERISK-23390 - NewExten Event with application AGI shows up - before and after AGI runs (Reported by Benjamin Keith Ford) - * ASTERISK-24786 - [patch] - Asterisk terminates when playing a - voicemail stored in LDAP (Reported by Graham Barnett) - * ASTERISK-24808 - res_config_odbc: Improper escaping of - backslashes occurs with MySQL (Reported by Javier Acosta) - * ASTERISK-24807 - Missing mandatory field Max-Forwards (Reported - by Anatoli) - * ASTERISK-20850 - [patch]Nested functions aren't portable. - Adapting RAII_VAR to use clang/llvm blocks to get the - same/similar functionality. (Reported by Diederik de Groot) - * ASTERISK-24872 - [patch] AMI PJSIPShowEndpoint closes AMI - connection on error (Reported by Dmitriy Serov) - * ASTERISK-19470 - Documentation on app_amd is incorrect (Reported - by Frank DiGennaro) - * ASTERISK-21038 - Bad command completion of "core set debug - channel" (Reported by Richard Kenner) - * ASTERISK-18708 - func_curl hangs channel under load (Reported by - Dave Cabot) - * ASTERISK-16779 - Cannot disallow unknown format '' (Reported by - Atis Lezdins) - * ASTERISK-24876 - Investigate reference leaks from - tests/channels/local/local_optimize_away (Reported by Corey - Farrell) - * ASTERISK-24882 - chan_sip: Improve usage of REF_DEBUG (Reported - by Corey Farrell) - * ASTERISK-24817 - init_logger_chain: unreachable code block - (Reported by Corey Farrell) - * ASTERISK-24880 - [patch]Compilation under OpenBSD (Reported by - snuffy) - * ASTERISK-24879 - [patch]Compilation fails due to 64bit time - under OpenBSD (Reported by snuffy) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24745 - [patch]Add no_answer to ARI hangup causes - (Reported by Ben Merrills) - * ASTERISK-24811 - asterisk-publication sorcery object does not - use realtime (Reported by Matt Hoskins) - * ASTERISK-24790 - Reduce spurious noise in logs from voicemail - - Couldn't find mailbox %s in context (Reported by Graham Barnett) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 13.2.0. - This release is available for immediate download at - - - The release of Asterisk 13.2.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24342 - PJSIP: Qualifying endpoints attempts to do them - all at the same time. (Reported by Richard Mudgett) - * ASTERISK-24514 - res_pjsip_outbound_registration: stack overflow - when using non-default sorcery wizard (Reported by Kevin - Harwell) - * ASTERISK-24472 - Asterisk Crash in OpenSSL when calling over WSS - from JSSIP (Reported by Badalian Vyacheslav) - * ASTERISK-24607 - res_pjsip_session: re-INVITE with declined - media streams results in 488 (Reported by Matt Jordan) - * ASTERISK-24563 - Direct Media calls within private network - sometimes get one way audio (Reported by Kevin Harwell) - * ASTERISK-24604 - res_rtp_asterisk: Crash during restart due to - race condition in accessing codec in stored ast_frame and codec - core (Reported by Matt Jordan) - * ASTERISK-24614 - Deadlock when DEBUG_THREADS compiler flag - enabled (Reported by Richard Mudgett) - * ASTERISK-24449 - Reinvite for T.38 UDPTL fails if SRTP is - enabled (Reported by Andreas Steinmetz) - * ASTERISK-24619 - [patch]Gcc 4.10 fixes in r413589 (1.8) wrongly - casts char to unsigned int (Reported by Walter Doekes) - * ASTERISK-24536 - AMI redirect with PJSIP fails to move extra - channel (Reported by Niklas Larsson) - * ASTERISK-24459 - bridge_native_rtp: Native RTP bridging is - chosen for RTP compatible channels when the DTMF mode is not - compatible (Reported by Yaniv Simhi) - * ASTERISK-24337 - Spammy DEBUG message needs to be at a higher - level - 'Remote address is null, most likely RTP has been - stopped' (Reported by Rusty Newton) - * ASTERISK-24513 - Local channel apparently leaked in off-nominal - DTMF attended transfer (Reported by Mark Michelson) - * ASTERISK-23733 - 'reload acl' fails if acl.conf is not present - on startup (Reported by Richard Kenner) - * ASTERISK-24628 - [patch] chan_sip - CANCEL is sent to wrong - destination when 'sendrpid=yes' (in proxy environment) (Reported - by Karsten Wemheuer) - * ASTERISK-23841 - DTMF atxfer doesn't set CallerID for the recall - calls to the transferrer. (Reported by Richard Mudgett) - * ASTERISK-24376 - res_pjsip_refer: REFER request for remote - session attempts to direct channel to external_replaces - extension instead of context, without providing for the - Referred-To SIP URI (Reported by Matt Jordan) - * ASTERISK-24591 - Stasis() side of an ARI originated channel - cannot be Redirected (Reported by Kinsey Moore) - * ASTERISK-24049 - Asterisk Manager Interface: A number of list - type responses aren't using astman_send_listack (Reported by - Jonathan Rose) - * ASTERISK-24637 - Channel re-enters Stasis() when it should not - (Reported by John Bigelow) - * ASTERISK-24474 - lacks documentation and does - not function (Reported by John Kiniston) - * ASTERISK-24672 - [PATCH] Memory leak in func_curl CURLOPT - (Reported by Kristian Høgh) - * ASTERISK-20744 - [patch] Security event logging does not work - over syslog (Reported by Michael Keuter) - * ASTERISK-24665 - Configure check required for - pjsip_get_dest_info() (Reported by Mark Michelson) - * ASTERISK-23850 - Park Application does not respect Return - Context Priority (Reported by Andrew Nagy) - * ASTERISK-23991 - [patch]asterisk.pc file contains a small error - in the CFlags returned (Reported by Diederik de Groot) - * ASTERISK-24655 - res_pjsip_outbound_publish: Hang on shutdown - while attempting to publish (Reported by Kevin Harwell) - * ASTERISK-24485 - res_pjsip cannot be unloaded or shutdown - (Reported by Corey Farrell) - * ASTERISK-24663 - [patch] Unnamed semaphore autoconf check fails - on cross compilation (Reported by abelbeck) - * ASTERISK-24624 - Transfer to invalid extension results in hung - channel. (Reported by Zane Conkle) - * ASTERISK-24615 - When Multiple Transports Exist in pjsip.conf, - Incorrect External Addresses is Used in SIP Packets When - Responding to INVITE (Reported by David Justl) - * ASTERISK-24288 - [patch] - ODBC usage with app_voicemail - - voicemail is not deleted after review, hangup (Reported by LEI - FU) - * ASTERISK-24048 - [patch] contrib/scripts/install_prereq selects - 32-bit packages on 64-bit hosts (Reported by Ben Klang) - * ASTERISK-24600 - Stuck IAX channels, Asterisk stops responding - to most traffic, potential deadlock (Reported by Jeff Collell) - * ASTERISK-24560 - Creating a named ARI bridge twice causes a - crash (Reported by Kinsey Moore) - * ASTERISK-24682 - app_dial: Multiple DialEnd events emitted when - MACRO_RESULT or GOSUB_RESULT are an unexpected value (Reported - by Matt Jordan) - * ASTERISK-24640 - Registration pending stays forever after sip - reload (Reported by Max Man) - * ASTERISK-24673 - outgoing sip registers cannot be removed or - modified without doing restart (or doing module unload - (Reported by Stefan Engström) - * ASTERISK-24709 - [patch] msg_create_from_file used by MixMonitor - m() option does not queue an MWI event (Reported by Gareth - Palmer) - * ASTERISK-24649 - Pushing of channel into bridge fails; Stasis - fails to get app name (Reported by John Bigelow) - * ASTERISK-24355 - [patch] chan_sip realtime uses case sensitive - column comparison for 'defaultuser' (Reported by - HZMI8gkCvPpom0tM) - * ASTERISK-24693 - Investigate and fix memory leaks in Asterisk - (Reported by Kevin Harwell) - * ASTERISK-24626 - Voicemail passwords not being stored in ARA - (Reported by Paddy Grice) - * ASTERISK-24539 - Compile fails on OSX because of sem_timedwait - in bridge_channel.c (Reported by George Joseph) - * ASTERISK-24544 - Compile fails on OSX Yosemite because of - incorrect detection of htonll and ntohll (Reported by George - Joseph) - * ASTERISK-24723 - confbridge: CLI command 'confbridge list XXXX' - no longer displays user menus (Reported by Matt Jordan) - * ASTERISK-24721 - manager: ModuleLoad action incorrectly reports - 'module not found' during a Reload operation (Reported by Matt - Jordan) - * ASTERISK-24719 - ConfBridge recording channels get stuck when - recording started/stopped more than once (Reported by Richard - Mudgett) - * ASTERISK-24715 - chan_sip: stale nonce causes failure (Reported - by Kevin Harwell) - * ASTERISK-24728 - tcptls: Bad file descriptor error when - reloading chan_sip (Reported by Kevin Harwell) - * ASTERISK-24729 - Outbound registration not occuring on new - registrations after reload. (Reported by Richard Mudgett) - * ASTERISK-24676 - Security Vulnerability: URL request injection - in libCURL (CVE-2014-8150) (Reported by Matt Jordan) - * ASTERISK-24666 - Security Vulnerability: RTP not closed after - sip call using unsupported codec (Reported by Y Ateya) - * ASTERISK-24711 - DTLS handshake broken with latest OpenSSL - versions (Reported by Jared Biel) - * ASTERISK-24646 - PJSIP changeset 4899 breaks TLS (Reported by - Stephan Eisvogel) - * ASTERISK-24736 - Memory Leak Fixes (Reported by Mark Michelson) - * ASTERISK-24635 - PJSIP outbound PUBLISH crashes when no response - is ever received (Reported by Marco Paland) - * ASTERISK-24737 - When agent not logged in, agent status shows - unavailable, queue status shows agent invalid (Reported by - Richard Mudgett) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24552 - ARI: Allow associating a channel as an - initiator of an Origination for record keeping purposes - (Reported by Matt Jordan) - * ASTERISK-24553 - ARI/AMI: Include language in standard channel - snapshot output (Reported by Matt Jordan) - * ASTERISK-24643 - res_pjsip: Add user=phone option (Reported by - Matt Jordan) - * ASTERISK-24644 - res_pjsip_keepalive: Add keepalive module for - connection-oriented transports. (Reported by Matt Jordan) - * ASTERISK-24412 - [patch]Incomplete channel originate/continue - handling with ARI (Reported by Nir Simionovich (GreenfieldTech - - Israel)) - * ASTERISK-24678 - [PATCH] Added atxfer* settings to - features.conf.sample (Reported by Niklas Larsson) - * ASTERISK-24575 - [patch]Make capath work for res_pjsip (Reported - by cloos) - * ASTERISK-24671 - Missing docs for the CDR AMI Event (Reported by - Dan Jenkins) - * ASTERISK-24316 - For httpd server, need option to define server - name for security purposes (Reported by Andrew Nagy) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28 and 11.6 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28.cert-4,, 11.6-cert10, - 11.15.1, 12.8.1, and 13.1.1. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerabilities: - - * AST-2015-001: File descriptor leak when incompatible codecs are offered - - Asterisk may be configured to only allow specific audio or - video codecs to be used when communicating with a - particular endpoint. When an endpoint sends an SDP offer - that only lists codecs not allowed by Asterisk, the offer - is rejected. However, in this case, RTP ports that are - allocated in the process are not reclaimed. - - This issue only affects the PJSIP channel driver in - Asterisk. Users of the chan_sip channel driver are not - affected. - - * AST-2015-002: Mitigation for libcURL HTTP request injection vulnerability - - CVE-2014-8150 reported an HTTP request injection - vulnerability in libcURL. Asterisk uses libcURL in its - module (the CURL() dialplan function), as well - as its (cURL realtime backend) modules. - - Since Asterisk may be configured to allow for user-supplied - URLs to be passed to libcURL, it is possible that an - attacker could use Asterisk as an attack vector to inject - unauthorized HTTP requests if the version of libcURL - installed on the Asterisk server is affected by - CVE-2014-8150. - - For more information about the details of these vulnerabilities, please read - security advisory AST-2015-001 and AST-2015-002, which were released at the same - time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 13.1.0. - This release is available for immediate download at - - - The release of Asterisk 13.1.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - New Features made in this release: - ----------------------------------- - * ASTERISK-24554 - AMI/ARI: Generate events on connected line - changes (Reported by Matt Jordan) - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24436 - Missing header in res/res_srtp.c when compiling - against libsrtp-1.5.0 (Reported by Patrick Laimbock) - * ASTERISK-24455 - func_cdr: CDR_PROP leaks payload (Reported by - Corey Farrell) - * ASTERISK-24454 - app_queue: ao2_iterator not destroyed, causing - leak (Reported by Corey Farrell) - * ASTERISK-24430 - missing letter "p" in word response in - OriginateResponse event documentation (Reported by Dafi Ni) - * ASTERISK-24437 - Review implementation of ast_bridge_impart for - leaks and document proper usage (Reported by Scott Griepentrog) - * ASTERISK-24453 - manager: acl_change_sub leaks (Reported by - Corey Farrell) - * ASTERISK-24457 - res_fax: fax gateway frames leak (Reported by - Corey Farrell) - * ASTERISK-24458 - chan_phone fails to build on big endian systems - (Reported by Tzafrir Cohen) - * ASTERISK-21721 - SIP Failed to parse multiple Supported: headers - (Reported by Olle Johansson) - * ASTERISK-24304 - asterisk crashing randomly because of unistim - channel (Reported by dhanapathy sathya) - * ASTERISK-24190 - IMAP voicemail causes segfault (Reported by - Nick Adams) - * ASTERISK-24462 - res_pjsip: Stale qualify statistics after - disablementation (Reported by Kevin Harwell) - * ASTERISK-24465 - audiohooks list leaks reference to formats - (Reported by Corey Farrell) - * ASTERISK-24466 - app_queue: fix a couple leaks to struct - call_queue (Reported by Corey Farrell) - * ASTERISK-24432 - Install when REF_DEBUG is enabled - (Reported by Corey Farrell) - * ASTERISK-24411 - [patch] Status of outbound registration is not - changed upon unregistering. (Reported by John Bigelow) - * ASTERISK-24476 - main/app.c / app_voicemail: ast_writestream - leaks (Reported by Corey Farrell) - * ASTERISK-24480 - res_http_websockets: Module reference decrease - below zero (Reported by Corey Farrell) - * ASTERISK-24482 - func_talkdetect: Fix stasis message leak in - audiohook callback (Reported by Corey Farrell) - * ASTERISK-24487 - configuration: sections should be loadable as - template even when not marked (Reported by Scott Griepentrog) - * ASTERISK-20127 - [Regression] Config.c config_text_file_load() - unescapes semicolons ("\;" -> ";") turning them into comments - (corruption) on rewrite of a config file (Reported by George - Joseph) - * ASTERISK-24438 - blocks Asterisk reload - when DNS settings invalid (Reported by Melissa Shepherd) - * ASTERISK-24307 - Unintentional memory retention in stringfields - (Reported by Etienne Lessard) - * ASTERISK-24491 - Memory leak in res_hep (Reported by Zane - Conkle) - * ASTERISK-24492 - main/file.c: ast_filestream sometimes causes - extra calls to ast_module_unref (Reported by Corey Farrell) - * ASTERISK-24447 - Bridge DTMF hooks: Audio doesn't pass when - waiting for more matching digits. (Reported by Richard Mudgett) - * ASTERISK-24257 - agent must dial acceptdtmf twice to bridge to - queue caller (Reported by Steve Pitts) - * ASTERISK-24504 - chan_console: Fix reference leaks to pvt - (Reported by Corey Farrell) - * ASTERISK-24250 - [patch] Voicemail with multi-recipients To: - header fix (Reported by abelbeck) - * ASTERISK-24468 - Incoming UCS2 encoded SMS truncated if SMS - length exceeds 50 (roughly) national symbols (Reported by - Dmitriy Bubnov) - * ASTERISK-24500 - Regression introduced in chan_mgcp by SVN - revision r227276 (Reported by Xavier Hienne) - * ASTERISK-24505 - manager: http connections leak references - (Reported by Corey Farrell) - * ASTERISK-24502 - Build fails when dev-mode, dont optimize and - coverage are enabled (Reported by Corey Farrell) - * ASTERISK-24444 - PBX: Crash when generating extension for - pattern matching hint (Reported by Leandro Dardini) - * ASTERISK-24489 - Crash: Asterisk crashes when converting RTCP - packet to JSON for res_hep_rtcp and report blocks are greater - than 1 (Reported by Gregory Malsack) - * ASTERISK-24498 - Segmentation fault in res_hep_rtcp on attended - transfer (Reported by Beppo Mazzucato) - * ASTERISK-24501 - ARI: Moving a channel between bridges followed - by a hangup can cause an ARI client to not receive an expected - ChannelLeftBridge event before StasisEnd (Reported by Matt - Jordan) - * ASTERISK-24336 - PJSIP timer_min_se value under 90 causes crash - (Reported by Leon Rowland) - * ASTERISK-23651 - Reloading some modules that are loaded already, - results in 'No such module' before a successful reload (Reported - by Rusty Newton) - * ASTERISK-24522 - ConfBridge: delay occurs between kicking all - endmarked users when last marked user leaves (Reported by Matt - Jordan) - * ASTERISK-15242 - transmit_refer leaks sip_refer structures - (Reported by David Woolley) - * ASTERISK-24508 - pjsip - REFER request from SNOM is rejected - with "400 bad request" - DEBUG shows "Received a REFER without a - parseable Refer-To" (Reported by Beppo Mazzucato) - * ASTERISK-24535 - stringfields: Fix regression from fix for - unintentional memory retention and another issue exposed by the - fix (Reported by Corey Farrell) - * ASTERISK-24471 - Crash - assert_fail in libc in - pjmedia_sdp_neg_negotiate from /usr/local/lib/ - (Reported by yaron nahum) - * ASTERISK-24528 - res_pjsip_refer: Sending INVITE with Replaces - in-dialog with invalid target causes crash (Reported by Joshua - Colp) - * ASTERISK-24531 - res_pjsip_acl: ACLs not applied on initial - module load (Reported by Matt Jordan) - * ASTERISK-24469 - Security Vulnerability: Mixed IPv4/IPv6 ACLs - allow blocked addresses through (Reported by Matt Jordan) - * ASTERISK-24542 - [patch]Failure showing codecs via 'core show - channeltype ' (Reported by snuffy) - * ASTERISK-24533 - 2 threads created per chan_sip entry (Reported - by xrobau) - * ASTERISK-24516 - [patch]Asterisk segfaults when playing back - voicemail under high concurrency with an IMAP backend (Reported - by David Duncan Ross Palmer) - * ASTERISK-24572 - [patch]App_meetme is loaded without its - defaults when the configuration file is missing (Reported by - Nuno Borges) - * ASTERISK-24573 - [patch]Out of sync conversation recording when - divided in multiple recordings (Reported by Nuno Borges) - * ASTERISK-24537 - Stasis: StasisStart/StasisEnd events are not - reliably transmitted during transfers (Reported by Matt Jordan) - * ASTERISK-24556 - Asterisk 13 core dumps when calling from pjsip - extension to another pjsip extension (Reported by Abhay Gupta) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24279 - Documentation: Clarify the behaviour of the CDR - property 'unanswered' (Reported by Matt Jordan) - * ASTERISK-24283 - [patch]Microseconds precision in the eventtime - column in the cel_odbc module (Reported by Etienne Lessard) - * ASTERISK-24530 - [patch] app_record stripping 1/4 second from - recordings (Reported by Ben Smithurst) - * ASTERISK-24577 - Speed up loopback switches by avoiding unneeded - lookups (Reported by Birger "WIMPy" Harzenetter) - - For a full list of changes in this release, please see the ChangeLog: - - Add speexdsp as build dep as speex_echo.h has moved - rhbz 1181021- update for lua 5.3- The Asterisk Development Team has announced security releases for Certified - Asterisk 11.6 and Asterisk 11, 12, and 13. The available security releases are - released as versions 11.6-cert9, 11.14.2, 12.7.2, and 13.0.2. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerability: - - * AST-2014-019: Remote Crash Vulnerability in WebSocket Server - - When handling a WebSocket frame the res_http_websocket module dynamically - changes the size of the memory used to allow the provided payload to fit. If a - payload length of zero was received the code would incorrectly attempt to - resize to zero. This operation would succeed and end up freeing the memory but - be treated as a failure. When the session was subsequently torn down this - memory would get freed yet again causing a crash. - - For more information about the details of this vulnerability, please read - security advisory AST-2014-019, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - The security advisory is available at: - - * The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28 and 11.6 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28-cert3, 11.6-cert8,, - 11.14.1, 12.7.1, and 13.0.1. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerabilities: - - * AST-2014-012: Unauthorized access in the presence of ACLs with mixed IP - address families - - Many modules in Asterisk that service incoming IP traffic have ACL options - ("permit" and "deny") that can be used to whitelist or blacklist address - ranges. A bug has been discovered where the address family of incoming - packets is only compared to the IP address family of the first entry in the - list of access control rules. If the source IP address for an incoming - packet is not of the same address as the first ACL entry, that packet - bypasses all ACL rules. - - * AST-2014-018: Permission Escalation through DB dialplan function - - The DB dialplan function when executed from an external protocol, such as AMI, - could result in a privilege escalation. Users with a lower class authorization - in AMI can access the internal Asterisk database without the required SYSTEM - class authorization. - - In addition, the release of 11.6-cert8 and 11.14.1 resolves the following - security vulnerability: - - * AST-2014-014: High call load with ConfBridge can result in resource exhaustion - - The ConfBridge application uses an internal bridging API to implement - conference bridges. This internal API uses a state model for channels within - the conference bridge and transitions between states as different things - occur. Unload load it is possible for some state transitions to be delayed - causing the channel to transition from being hung up to waiting for media. As - the channel has been hung up remotely no further media will arrive and the - channel will stay within ConfBridge indefinitely. - - In addition, the release of 11.6-cert8, 11.14.1, 12.7.1, and 13.0.1 resolves - the following security vulnerability: - - * AST-2014-017: Permission Escalation via ConfBridge dialplan function and - AMI ConfbridgeStartRecord Action - - The CONFBRIDGE dialplan function when executed from an external protocol (such - as AMI) can result in a privilege escalation as certain options within that - function can affect the underlying system. Additionally, the AMI - ConfbridgeStartRecord action has options that would allow modification of the - underlying system, and does not require SYSTEM class authorization in AMI. - - Finally, the release of 12.7.1 and 13.0.1 resolves the following security - vulnerabilities: - - * AST-2014-013: Unauthorized access in the presence of ACLs in the PJSIP stack - - The Asterisk module res_pjsip provides the ability to configure ACLs that may - be used to reject SIP requests from various hosts. However, the module - currently fails to create and apply the ACLs defined in its configuration - file on initial module load. - - * AST-2014-015: Remote crash vulnerability in PJSIP channel driver - - The chan_pjsip channel driver uses a queue approach for relating to SIP - sessions. There exists a race condition where actions may be queued to answer - a session or send ringing after a SIP session has been terminated using a - CANCEL request. The code will incorrectly assume that the SIP session is still - active and attempt to send the SIP response. The PJSIP library does not - expect the SIP session to be in the disconnected state when sending the - response and asserts. - - * AST-2014-016: Remote crash vulnerability in PJSIP channel driver - - When handling an INVITE with Replaces message the res_pjsip_refer module - incorrectly assumes that it will be operating on a channel that has just been - created. If the INVITE with Replaces message is sent in-dialog after a session - has been established this assumption will be incorrect. The res_pjsip_refer - module will then hang up a channel that is actually owned by another thread. - When this other thread attempts to use the just hung up channel it will end up - using a freed channel which will likely result in a crash. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-012, AST-2014-013, AST-2014-014, AST-2014-015, - AST-2014-016, AST-2014-017, and AST-2014-018, which were released at the same - time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * - * - * - * - * - * The Asterisk Development Team is pleased to announce the release of - Asterisk 13.0.0. This release is available for immediate download at - - - Asterisk 13 is the next major release series of Asterisk. It is a Long Term - Support (LTS) release, similar to Asterisk 11. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 13, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * Asterisk security events are now provided via AMI, allowing end users to - monitor their Asterisk system in real time for security related issues. - - * Both AMI and ARI now allow external systems to control the state of a mailbox. - Using AMI actions or ARI resources, external systems can programmatically - trigger Message Waiting Indicators (MWI) on subscribed phones. This is of - particular use to those who want to build their own VoiceMail application - using ARI. - - * ARI now supports the reception/transmission of out of call text messages using - any supported channel driver/protocol stack through ARI. Users receive out of - call text messages as JSON events over the ARI websocket connection, and can - send out of call text messages using HTTP requests. - - * The PJSIP stack now supports RFC 4662 Resource Lists, allowing Asterisk to act - as a Resource List Server. This includes defining lists of presence state, - mailbox state, or lists of presence state/mailbox state; managing - subscriptions to lists; and batched delivery of NOTIFY requests to - subscribers. - - * The PJSIP stack can now be used as a means of distributing device state or - mailbox state via PUBLISH requests to other Asterisk instances. This is - analogous to Asterisk's clustering support using XMPP or Corosync; unlike - existing clustering mechanisms, using the PJSIP stack to perform the - distribution of state does not rely on another daemon or server to perform the - work. - - And much more! - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file: - - - - For a full list of changes in the current release, please see the ChangeLog: - - rebuild for new libsrtp- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.28 and 11.6 and Asterisk 1.8, 11, 12, and 13. The available - security releases are released as versions 1.8.28-cert2, 11.6-cert7,, - 11.13.1, 12.6.1, and 13.0.0-beta3. - - These releases are available for immediate download at - - - The release of these versions resolves the following security vulnerability: - - * AST-2014-011: Asterisk Susceptibility to POODLE Vulnerability - - Asterisk is susceptible to the POODLE vulnerability in two ways: - 1) The res_jabber and res_xmpp module both use SSLv3 exclusively for their - encrypted connections. - 2) The core TLS handling in Asterisk, which is used by the chan_sip channel - driver, Asterisk Manager Interface (AMI), and Asterisk HTTP Server, by - default allow a TLS connection to fallback to SSLv3. This allows for a - MITM to potentially force a connection to fallback to SSLv3, exposing it - to the POODLE vulnerability. - - These issues have been resolved in the versions released in conjunction with - this security advisory. - - For more information about the details of this vulnerability, please read - security advisory AST-2014-011, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisory is available at: - - * The Asterisk Development Team has announced the release of Asterisk 11.13.0. - This release is available for immediate download at - - - The release of Asterisk 11.13.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-24032 - Gentoo compilation emits warning: - "_FORTIFY_SOURCE" redefined (Reported by Kilburn) - * ASTERISK-24225 - Dial option z is broken (Reported by - dimitripietro) - * ASTERISK-24178 - [patch]fromdomainport used even if not set - (Reported by Elazar Broad) - * ASTERISK-22252 - res_musiconhold cleanup - REF_DEBUG reload - warnings and ref leaks (Reported by Walter Doekes) - * ASTERISK-23997 - chan_sip: port incorrectly incremented for RTCP - ICE candidates in SDP answer (Reported by Badalian Vyacheslav) - * ASTERISK-24019 - When a Music On Hold stream starts it restarts - at beginning of file. (Reported by Jason Richards) - * ASTERISK-23767 - [patch] Dynamic IAX2 registration stops trying - if ever not able to resolve (Reported by David Herselman) - * ASTERISK-24211 - testsuite: Fix the dial_LS_options test - (Reported by Matt Jordan) - * ASTERISK-24249 - SIP debugs do not stop (Reported by Avinash - Mohod) - * ASTERISK-23577 - res_rtp_asterisk: Crash in - ast_rtp_on_turn_rtp_state when RTP instance is NULL (Reported by - Jay Jideliov) - * ASTERISK-23634 - With TURN Asterisk crashes on multiple (7-10) - concurrent WebRTC (avpg/encryption/icesupport) calls (Reported - by Roman Skvirsky) - * ASTERISK-24301 - Security: Out of call MESSAGE requests - processed via Message channel driver can crash Asterisk - (Reported by Matt Jordan) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-24171 - [patch] Provide a manpage for the aelparse - utility (Reported by Jeremy Lainé) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 11.6 and Asterisk 11 and 12. The available security releases are - released as versions 11.6-cert6, 11.12.1, and 12.5.1. - - These releases are available for immediate download at - - - Please note that the release of these versions resolves the following security - vulnerability: - - * AST-2014-010: Remote Crash when Handling Out of Call Message in Certain - Dialplan Configurations - - Additionally, the release of Asterisk 12.5.1 resolves the following security - vulnerability: - - * AST-2014-009: Remote Crash Based on Malformed SIP Subscription Requests - - Note that the crash described in AST-2014-010 can be worked around through - dialplan configuration. Given the likelihood of the issue, an advisory was - deemed to be warranted. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-009 and AST-2014-010, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 11.12.0. - This release is available for immediate download at - - - The release of Asterisk 11.12.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-23911 - URIENCODE/URIDECODE: WARNING about passing an - empty string is a bit over zealous (Reported by Matt Jordan) - * ASTERISK-23985 - PresenceState Action response does not contain - ActionID; duplicates Message Header (Reported by Matt Jordan) - * ASTERISK-23814 - No call started after peer dialed (Reported by - Igor Goncharovsky) - * ASTERISK-24087 - [patch]chan_sip: sip_subscribe_mwi_destroy - should not call sip_destroy (Reported by Corey Farrell) - * ASTERISK-23818 - PBX_Lua: after asterisk startup module is - loaded, but dialplan not available (Reported by Dennis Guse) - * ASTERISK-18345 - [patch] sips connection dropped by asterisk - with a large INVITE (Reported by Stephane Chazelas) - * ASTERISK-23508 - Memory Corruption in - __ast_string_field_ptr_build_va (Reported by Arnd Schmitter) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-21178 - Improve documentation for manager command - Getvar, Setvar (Reported by Rusty Newton) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.11.0. - This release is available for immediate download at - - - The release of Asterisk 11.11.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-22551 - Session timer : UAS (Asterisk) starts counting - at Invite, UAC starts counting at 200 OK. (Reported by i2045) - * ASTERISK-23792 - Mutex left locked in chan_unistim.c (Reported - by Peter Whisker) - * ASTERISK-23582 - [patch]Inconsistent column length in *odbc - (Reported by Walter Doekes) - * ASTERISK-23803 - AMI action UpdateConfig EmptyCat clears all - categories but the requested one (Reported by zvision) - * ASTERISK-23035 - ConfBridge with name longer than max (32 chars) - results in several bridges with same conf_name (Reported by - Iñaki Cívico) - * ASTERISK-23824 - ConfBridge: Users cannot be muted via CLI or - AMI when waiting to enter a conference (Reported by Matt Jordan) - * ASTERISK-23683 - #includes - wildcard character in a path more - than one directory deep - results in no config parsing on module - reload (Reported by tootai) - * ASTERISK-23827 - autoservice thread doesn't exit at shutdown - (Reported by Corey Farrell) - * ASTERISK-23609 - Security: AMI action MixMonitor allows - arbitrary programs to be run (Reported by Corey Farrell) - * ASTERISK-23673 - Security: DOS by consuming the number of - allowed HTTP connections. (Reported by Richard Mudgett) - * ASTERISK-23246 - DEBUG messages in sdp_crypto.c display despite - a DEBUG level of zero (Reported by Rusty Newton) - * ASTERISK-23766 - [patch] Specify timeout for database write in - SQLite (Reported by Igor Goncharovsky) - * ASTERISK-23844 - Load of pbx_lua fails on sample extensions.lua - with Lua 5.2 or greater due to addition of goto statement - (Reported by Rusty Newton) - * ASTERISK-23818 - PBX_Lua: after asterisk startup module is - loaded, but dialplan not available (Reported by Dennis Guse) - * ASTERISK-23834 - res_rtp_asterisk debug message gives wrong - length if ICE (Reported by Richard Kenner) - * ASTERISK-23790 - [patch] - SIP From headers longer than 256 - characters result in dropped call and 'No closing bracket' - warnings. (Reported by uniken1) - * ASTERISK-23917 - res_http_websocket: Delay in client processing - large streams of data causes disconnect and stuck socket - (Reported by Matt Jordan) - * ASTERISK-23908 - [patch]When using FEC error correction, - asterisk tries considers negative sequence numbers as missing - (Reported by Torrey Searle) - * ASTERISK-23921 - uses excessive ram for large refs - files (Reported by Corey Farrell) - * ASTERISK-23948 - REF_DEBUG fails to record ao2_ref against - objects that were already freed (Reported by Corey Farrell) - * ASTERISK-23916 - [patch]SIP/SDP fmtp line may include whitespace - between attributes (Reported by Alexander Traud) - * ASTERISK-23984 - Infinite loop possible in ast_careful_fwrite() - (Reported by Steve Davies) - * ASTERISK-23897 - [patch]Change in SETUP ACK handling (checking - PI) in revision 413765 breaks working environments (Reported by - Pavel Troller) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-23492 - Add option to safe_asterisk to disable - backgrounding (Reported by Walter Doekes) - * ASTERISK-22961 - [patch] DTLS-SRTP not working with SHA-256 - (Reported by Jay Jideliov) - - For a full list of changes in this release, please see the ChangeLog: - - Perl 5.20 rebuild- Rebuilt for Drop the 389 directory server schema (1061414)- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security - releases are released as versions 1.8.15-cert7, 11.6-cert4,, 11.10.2, - and 12.3.2. - - These releases are available for immediate download at - - - These releases resolve security vulnerabilities that were previously fixed in - 1.8.15-cert6, 11.6-cert3,, 11.10.1, and 12.3.1. Unfortunately, the fix - for AST-2014-007 inadvertently introduced a regression in Asterisk's TCP and TLS - handling that prevented Asterisk from sending data over these transports. This - regression and the security vulnerabilities have been fixed in the versions - specified in this release announcement. - - The security patches for AST-2014-007 have been updated with the fix for the - regression, and are available at - - Please note that the release of these versions resolves the following security - vulnerabilities: - - * AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe - Framework - - * AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized - Shell Access - - * AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP - Connections - - * AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008, - which were released with the previous versions that addressed these - vulnerabilities. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * - * The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security - releases are released as versions 1.8.15-cert6, 11.6-cert3,, 11.10.1, - and 12.3.1. - - These releases are available for immediate download at - - - The release of these versions resolves the following issue: - - * AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP - Connections - - Establishing a TCP or TLS connection to the configured HTTP or HTTPS port - respectively in http.conf and then not sending or completing a HTTP request - will tie up a HTTP session. By doing this repeatedly until the maximum number - of open HTTP sessions is reached, legitimate requests are blocked. - - Additionally, the release of 11.6-cert3, 11.10.1, and 12.3.1 resolves the - following issue: - - * AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized - Shell Access - - Manager users can execute arbitrary shell commands with the MixMonitor manager - action. Asterisk does not require system class authorization for a manager - user to use the MixMonitor action, so any manager user who is permitted to use - manager commands can potentially execute shell commands as the user executing - the Asterisk process. - - Additionally, the release of 12.3.1 resolves the following issues: - - * AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe - Framework - - A remotely exploitable crash vulnerability exists in the PJSIP channel - driver's pub/sub framework. If an attempt is made to unsubscribe when not - currently subscribed and the endpoint's “sub_min_expiry” is set to zero, - Asterisk tries to create an expiration timer with zero seconds, which is not - allowed, so an assertion raised. - - * AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions - - When a SIP transaction timeout caused a subscription to be terminated, the - action taken by Asterisk was guaranteed to deadlock the thread on which SIP - requests are serviced. Note that this behavior could only happen on - established subscriptions, meaning that this could only be exploited if an - attacker bypassed authentication and successfully subscribed to a real - resource on the Asterisk server. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008, - which were released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * - * The Asterisk Development Team has announced the release of Asterisk 11.10.0. - This release is available for immediate download at - - - The release of Asterisk 11.10.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-23547 - [patch] app_queue removing callers from queue - when reloading (Reported by Italo Rossi) - * ASTERISK-23559 - app_voicemail fails to load after fix to - dialplan functions (Reported by Corey Farrell) - * ASTERISK-22846 - testsuite: masquerade super test fails on all - branches (still) (Reported by Matt Jordan) - * ASTERISK-23545 - Confbridge talker detection settings - configuration load bug (Reported by John Knott) - * ASTERISK-23546 - CB_ADD_LEN does not do what you'd think - (Reported by Walter Doekes) - * ASTERISK-23620 - Code path in app_stack fails to unlock list - (Reported by Bradley Watkins) - * ASTERISK-23616 - Big memory leak in logger.c (Reported by - ibercom) - * ASTERISK-23576 - Build failure on SmartOS / Illumos / SunOS - (Reported by Sebastian Wiedenroth) - * ASTERISK-23550 - Newer sound sets don't show up in menuselect - (Reported by Rusty Newton) - * ASTERISK-18331 - app_sms failure (Reported by David Woodhouse) - * ASTERISK-19465 - P-Asserted-Identity Privacy (Reported by - Krzysztof Chmielewski) - * ASTERISK-23605 - res_http_websocket: Race condition in shutting - down websocket causes crash (Reported by Matt Jordan) - * ASTERISK-23707 - Realtime Contacts: Apparent mismatch between - PGSQL database state and Asterisk state (Reported by Mark - Michelson) - * ASTERISK-23381 - [patch]ChanSpy- Barge only works on the initial - 'spy', if the spied-on channel makes a new call, unable to - barge. (Reported by Robert Moss) - * ASTERISK-23665 - Wrong mime type for codec H263-1998 (h263+) - (Reported by Guillaume Maudoux) - * ASTERISK-23664 - Incorrect H264 specification in SDP. (Reported - by Guillaume Maudoux) - * ASTERISK-22977 - chan_sip+CEL: missing ANSWER and PICKUP event - for INVITE/w/replaces pickup (Reported by Walter Doekes) - * ASTERISK-23709 - Regression in Dahdi/Analog/waitfordialtone - (Reported by Steve Davies) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-23649 - [patch]Support for DTLS retransmission - (Reported by NITESH BANSAL) - * ASTERISK-23564 - [patch]TLS/SRTP status of channel not currently - available in a CLI command (Reported by Patrick Laimbock) - * ASTERISK-23754 - [patch] Use var/lib directory for log file - configured in asterisk.conf (Reported by Igor Goncharovsky) - - For a full list of changes in this release, please see the ChangeLog: - - Rebuilt for build against gmime-devel not gmime22-devel - do not use -m64 on aarch64- The Asterisk Development Team has announced the release of Asterisk 11.9.0. - This release is available for immediate download at - - - The release of Asterisk 11.9.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-22790 - check_modem_rate() may return incorrect rate - for V.27 (Reported by Paolo Compagnini) - * ASTERISK-23034 - [patch] manager Originate doesn't abort on - failed format_cap allocation (Reported by Corey Farrell) - * ASTERISK-23061 - [Patch] 'textsupport' setting not mentioned in - sip.conf.sample (Reported by Eugene) - * ASTERISK-23028 - [patch] Asterisk man pages contains unquoted - minus signs (Reported by Jeremy Lainé) - * ASTERISK-23046 - Custom CDR fields set during a GoSUB called - from app_queue are not inserted (Reported by Denis Pantsyrev) - * ASTERISK-23027 - [patch] Spelling typo "transfered" instead of - "transferred" (Reported by Jeremy Lainé) - * ASTERISK-23008 - Local channels loose CALLERID name when DAHDI - channel connects (Reported by Michael Cargile) - * ASTERISK-23100 - [patch] In chan_mgcp the ident in transmitted - request and request queue may differ - fix for locking (Reported - by adomjan) - * ASTERISK-22988 - [patch]T38 , SIP 488 after Rejecting image - media offer due to invalid or unsupported syntax (Reported by - adomjan) - * ASTERISK-22861 - [patch]Specifying a null time as parameter to - GotoIfTime or ExecIfTime causes segmentation fault (Reported by - Sebastian Murray-Roberts) - * ASTERISK-17837 - extconfig.conf - Maximum Include level (1) - exceeded (Reported by pz) - * ASTERISK-22662 - Documentation fix? - queues.conf says - persistentmembers defaults to yes, it appears to lie (Reported - by Rusty Newton) - * ASTERISK-23134 - [patch] res_rtp_asterisk port selection cannot - handle selinux port restrictions (Reported by Corey Farrell) - * ASTERISK-23220 - STACK_PEEK function with no arguments causes - crash/core dump (Reported by James Sharp) - * ASTERISK-19773 - Asterisk crash on issuing Asterisk-CLI 'reload' - command multiple times on cli_aliases (Reported by Joel Vandal) - * ASTERISK-22757 - segfault in on reload when - mapping "module reload" command (Reported by Gareth Blades) - * ASTERISK-17727 - [patch] TLS doesn't get all certificate chain - (Reported by LN) - * ASTERISK-23178 - devicestate.h: device state setting functions - are documented with the wrong return values (Reported by - Jonathan Rose) - * ASTERISK-23232 - LocalBridge AMI Event LocalOptimization value - is opposite to what's expected (Reported by Leon Roy) - * ASTERISK-23098 - [patch]possible null pointer dereference in - format.c (Reported by Marcello Ceschia) - * ASTERISK-23297 - Asterisk 12, segfaults if - is not loaded, or if res_parking.conf has no - configuration (Reported by CJ Oster) - * ASTERISK-23069 - Custom CDR variable not recorded when set in - macro called from app_queue (Reported by Bryan Anderson) - * ASTERISK-19499 - ConfBridge MOH is not working for transferee - after attended transfer (Reported by Timo Teräs) - * ASTERISK-23261 - [patch]Output mixup in - ${CHANNEL(rtpqos,audio,all)} (Reported by rsw686) - * ASTERISK-23279 - [patch]Asterisk doesn't support the dynamic - payload change in rtp mapping in the 200 OK response (Reported - by NITESH BANSAL) - * ASTERISK-23255 - UUID included for Redhat, but missing for - Debian distros in install_prereq script (Reported by Rusty - Newton) - * ASTERISK-23260 - [patch]ForkCDR v option does not keep CDR - variables for subsequent records (Reported by zvision) - * ASTERISK-23141 - Asterisk crashes on Dial(), in - pbx_find_extension at pbx.c (Reported by Maxim) - * ASTERISK-23336 - Asterisk warning "Don't know how to indicate - condition 33 on ooh323c" on outgoing calls from H323 to SIP peer - (Reported by Alexander Semych) - * ASTERISK-23231 - Since 405693 If we have res_fax.conf file set - to minrate=2400, then res_fax refuse to load (Reported by David - Brillert) - * ASTERISK-23135 - Crash - segfault in ast_channel_hangupcause_set - - probably introduced in 11.7.0 (Reported by OK) - * ASTERISK-23323 - [patch]chan_sip: missing p->owner checks in - handle_response_invite (Reported by Walter Doekes) - * ASTERISK-23406 - [patch]Fix typo in "sip show peer" (Reported by - ibercom) - * ASTERISK-23310 - bridged channel crashes in bridge_p2p_rtp_write - (Reported by Jeremy Lainé) - * ASTERISK-22911 - [patch]Asterisk fails to resume WebRTC call - from hold (Reported by Vytis Valentinavičius) - * ASTERISK-23104 - Specifying the SetVar AMI without a Channel - cause Asterisk to crash (Reported by Joel Vandal) - * ASTERISK-21930 - [patch]WebRTC over WSS is not working. - (Reported by John) - * ASTERISK-23383 - Wrong sense test on stat return code causes - unchanged config check to break with include files. (Reported by - David Woolley) - * ASTERISK-20149 - Crash when faxing SIP to SIP with strictrtp set - to yes (Reported by Alexandr Gordeev) - * ASTERISK-17523 - Qualify for static realtime peers does not work - (Reported by Maciej Krajewski) - * ASTERISK-21406 - [patch] chan_sip deadlock on monlock between - unload_module and do_monitor (Reported by Corey Farrell) - * ASTERISK-23373 - [patch]Security: Open FD exhaustion with - chan_sip Session-Timers (Reported by Corey Farrell) - * ASTERISK-23340 - Security Vulnerability: stack allocation of - cookie headers in loop allows for unauthenticated remote denial - of service attack (Reported by Matt Jordan) - * ASTERISK-23311 - Manager - MoH Stop Event fails to show up when - leaving Conference (Reported by Benjamin Keith Ford) - * ASTERISK-23420 - [patch]Memory leak in manager_add_filter - function in manager.c (Reported by Etienne Lessard) - * ASTERISK-23488 - Logic error in callerid checksum processing - (Reported by Russ Meyerriecks) - * ASTERISK-23461 - Only first user is muted when joining - confbridge with 'startmuted=yes' (Reported by Chico Manobela) - * ASTERISK-20841 - fromdomain not honored on outbound INVITE - request (Reported by Kelly Goedert) - * ASTERISK-22079 - Segfault: INTERNAL_OBJ (user_data=0x6374652f) - at astobj2.c:120 (Reported by Jamuel Starkey) - * ASTERISK-23509 - [patch]SayNumber for Polish language tries to - play empty files for numbers divisible by 100 (Reported by - zvision) - * ASTERISK-23103 - [patch]Crash in ast_format_cmp, in ao2_find - (Reported by JoshE) - * ASTERISK-23391 - Audit dialplan function usage of channel - variable (Reported by Corey Farrell) - * ASTERISK-23548 - POST to ARI sometimes returns no body on - success (Reported by Scott Griepentrog) - * ASTERISK-23460 - ooh323 channel stuck if call is placed directly - and gatekeeper is not available (Reported by Dmitry Melekhov) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-22980 - [patch]Allow building cdr_radius and cel_radius - against libfreeradius-client (Reported by Jeremy Lainé) - * ASTERISK-22661 - Unable to exit ChanSpy if spied channel does - not have a call in progress (Reported by Chris Hillman) - * ASTERISK-23099 - [patch] WSS: enable ast_websocket_read() - function to read the whole available data at first and then wait - for any fragmented packets (Reported by Thava Iyer)- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security - releases are released as versions 1.8.15-cert5, 11.6-cert2,, 11.8.1, - and 12.1.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * AST-2014-001: Stack overflow in HTTP processing of Cookie headers. - - Sending a HTTP request that is handled by Asterisk with a large number of - Cookie headers could overflow the stack. - - Another vulnerability along similar lines is any HTTP request with a - ridiculous number of headers in the request could exhaust system memory. - - * AST-2014-002: chan_sip: Exit early on bad session timers request - - This change allows chan_sip to avoid creation of the channel and - consumption of associated file descriptors altogether if the inbound - request is going to be rejected anyway. - - Additionally, the release of 12.1.1 resolves the following issue: - - * AST-2014-003: res_pjsip: When handling 401/407 responses don't assume a - request will have an endpoint. - - This change removes the assumption that an outgoing request will always - have an endpoint and makes the authenticate_qualify option work once again. - - Finally, a security advisory, AST-2014-004, was released for a vulnerability - fixed in Asterisk 12.1.0. Users of Asterisk 12.0.0 are encouraged to upgrade to - 12.1.1 to resolve both vulnerabilities. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2014-001, AST-2014-002, AST-2014-003, and AST-2014-004, - which were released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * - * The Asterisk Development Team has announced the release of Asterisk 11.8.0. - This release is available for immediate download at - - - The release of Asterisk 11.8.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - Bugs fixed in this release: - ----------------------------------- - * ASTERISK-22544 - Italian prompt vm-options has advertisement in - it (Reported by Rusty Newton) - * ASTERISK-21383 - STUN Binding Requests Not Being Sent Back from - Asterisk to Chrome (Reported by Shaun Clark) - * ASTERISK-22478 - [patch]Can't use pound(hash) symbol for custom - DTMF menus in ConfBridge (processed as directive) (Reported by - Nicolas Tanski) - * ASTERISK-12117 - chan_sip creates a new local tag (from-tag) for - every register message (Reported by Pawel Pierscionek) - * ASTERISK-20862 - Asterisk min and max member penalties not - honored when set with 0 (Reported by Schmooze Com) - * ASTERISK-22746 - [patch]Crash in chan_dahdi during caller id - read (Reported by Michael Walton) - * ASTERISK-22788 - [patch] main/translate.c: access to variable f - after free in ast_translate() (Reported by Corey Farrell) - * ASTERISK-21242 - Segfault when T.38 re-invite retransmission - receives 200 OK (Reported by Ashley Winters) - * ASTERISK-22590 - BufferOverflow in unpacksms16() when receiving - 16 bit multipart SMS with app_sms (Reported by Jan Juergens) - * ASTERISK-22905 - Prevent Asterisk functions that are 'dangerous' - from being executed from external interfaces (Reported by Matt - Jordan) - * ASTERISK-23021 - Typos in code : "avaliable" instead of - "available" (Reported by Jeremy Lainé) - * ASTERISK-22970 - [patch]Documentation fix for QUOTE() (Reported - by Gareth Palmer) - * ASTERISK-21960 - ooh323 channels stuck (Reported by Dmitry - Melekhov) - * ASTERISK-22350 - DUNDI - core dump on shutdown - segfault in - sqlite3_reset from /usr/lib/ (Reported by Birger - "WIMPy" Harzenetter) - * ASTERISK-22942 - [patch] - Asterisk crashed after - Set(FAXOPT(faxdetect)=t38) (Reported by adomjan) - * ASTERISK-22856 - [patch]SayUnixTime in polish reads minutes - instead of seconds (Reported by Robert Mordec) - * ASTERISK-22854 - [patch] - Deadlock between cel_pgsql unload and - core_event_dispatcher taskprocessor thread (Reported by Etienne - Lessard) - * ASTERISK-22910 - [patch] - REPLACE() calls strcpy on overlapping - memory when is empty (Reported by Gareth Palmer) - * ASTERISK-22871 - cel_pgsql module not loading after "reload" or - "reload" command (Reported by Matteo) - * ASTERISK-23084 - [patch]rasterisk needlessly prints the - AST-2013-007 warning (Reported by Tzafrir Cohen) - * ASTERISK-17138 - [patch] Asterisk not re-registering after it - receives "Forbidden - wrong password on authentication" - (Reported by Rudi) - * ASTERISK-23011 - [patch] and pbx_lua don't support - lua 5.2 (Reported by George Joseph) - * ASTERISK-22834 - Parking by blind transfer when lot full orphans - channels (Reported by rsw686) - * ASTERISK-23047 - Orphaned (stuck) channel occurs during a failed - SIP transfer to parking space (Reported by Tommy Thompson) - * ASTERISK-22946 - Local From tag regression with - (Reported by Stephan Eisvogel) - * ASTERISK-23010 - No BYE message sent when sip INVITE is received - (Reported by Ryan Tilton) - * ASTERISK-23135 - Crash - segfault in ast_channel_hangupcause_set - - probably introduced in 11.7.0 (Reported by OK) - - Improvements made in this release: - ----------------------------------- - * ASTERISK-22728 - [patch] Improve Understanding Of 'Forcerport' - When Running "sip show peers" (Reported by Michael L. Young) - * ASTERISK-22659 - Make a new core and extra sounds release - (Reported by Rusty Newton) - * ASTERISK-22919 - core show channeltypes slicing (Reported by - outtolunc) - * ASTERISK-22918 - dahdi show channels slices PRI channel dnid on - output (Reported by outtolunc) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.7.0. - This release is available for immediate download at - - - The release of Asterisk 11.7.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- app_confbridge: Can now set the language used for announcements - to the conference. - (Closes issue ASTERISK-19983. Reported by Jonathan White) - - * --- app_queue: Fix CLI "queue remove member" queue_log entry. - (Closes issue ASTERISK-21826. Reported by Oscar Esteve) - - * --- chan_sip: Do not increment the SDP version between 183 and 200 - responses. - (Closes issue ASTERISK-21204. Reported by NITESH BANSAL) - - * --- chan_sip: Allow a sip peer to accept both AVP and AVPF calls - (Closes issue ASTERISK-22005. Reported by Torrey Searle) - - * --- chan_sip: Fix Realtime Peer Update Problem When Un-registering - And Expires Header In 200ok - (Closes issue ASTERISK-22428. Reported by Ben Smithurst) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.2, and Asterisk 1.8, 10, and 11. The available security - releases are released as versions 1.8.15-cert4, 11.2-cert3,, 10.12.4, - 10.12.4-digiumphones, and 11.6.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * A buffer overflow when receiving odd length 16 bit messages in app_sms. An - infinite loop could occur which would overwrite memory when a message is - received into the unpacksms16() function and the length of the message is an - odd number of bytes. - - * Prevent permissions escalation in the Asterisk Manager Interface. Asterisk - now marks certain individual dialplan functions as 'dangerous', which will - inhibit their execution from external sources. - - A 'dangerous' function is one which results in a privilege escalation. For - example, if one were to read the channel variable SHELL(rm -rf /) Bad - Things(TM) could happen; even if the external source has only read - permissions. - - Execution from external sources may be enabled by setting 'live_dangerously' - to 'yes' in the [options] section of asterisk.conf. Although doing so is not - recommended. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-006 and AST-2013-007, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 11.6.0. - This release is available for immediate download at - - - The release of Asterisk 11.6.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Confbridge: empty conference not being torn down - (Closes issue ASTERISK-21859. Reported by Chris Gentle) - - * --- Let Queue wrap up time influence member availability - (Closes issue ASTERISK-22189. Reported by Tony Lewis) - - * --- Fix a longstanding issue with MFC-R2 configuration that - prevented users - (Closes issue ASTERISK-21117. Reported by Rafael Angulo) - - * --- chan_iax2: Fix saving the wrong expiry time in astdb. - (Closes issue ASTERISK-22504. Reported by Stefan Wachtler) - - * --- Fix segfault for certain invalid WebSocket input. - (Closes issue ASTERISK-21825. Reported by Alfred Farrugia) - - For a full list of changes in this release, please see the ChangeLog: - - Disable hardened build, as it's apparently causing problems loading modules.- Enable hardened build BZ#954338 - Significant clean ups- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.2, and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.15-cert2, 11.2-cert2,, 10.12.3, 10.12.3-digiumphones, - and 11.5.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an ACK with SDP is received after the channel has been terminated. The - handling code incorrectly assumes that the channel will always be present. - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an invalid SDP is sent in a SIP request that defines media descriptions before - connection information. The handling code incorrectly attempts to reference - the socket address information even though that information has not yet been - set. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-004 and AST-2013-005, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - - The security advisories are available at: - - * - * - - The Asterisk Development Team has announced the release of Asterisk 11.5.0. - This release is available for immediate download at - - - The release of Asterisk 11.5.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix Segfault In app_queue When "persistentmembers" Is Enabled - And Using Realtime - (Closes issue ASTERISK-21738. Reported by JoshE) - - * --- IAX2: fix race condition with nativebridge transfers. - (Closes issue ASTERISK-21409. Reported by alecdavis) - - * --- Fix The Payload Being Set On CN Packets And Do Not Set Marker - Bit - (Closes issue ASTERISK-21246. Reported by Peter Katzmann) - - * --- Fix One-Way Audio With auto_* NAT Settings When SIP Calls - Initiated By PBX - (Closes issue ASTERISK-21374. Reported by Michael L. Young) - - * --- chan_sip: NOTIFYs for BLF start queuing up and fail to be sent - out after retries fail - (Closes issue ASTERISK-21677. Reported by Dan Martens) - - For a full list of changes in this release, please see the ChangeLog: - - Rebuilt for Perl 5.18 rebuild- rebuild (libical)- The Asterisk Development Team has announced the release of Asterisk 11.4.0. - This release is available for immediate download at - - - The release of Asterisk 11.4.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix Sorting Order For Parking Lots Stored In Static Realtime - (Closes issue ASTERISK-21035. Reported by Alex Epshteyn) - - * --- Fix StopMixMonitor Hanging Up When Unable To Stop MixMonitor On - A Channel - (Closes issue ASTERISK-21294. Reported by daroz) - - * --- When a session timer expires during a T.38 call, re-invite with - correct SDP - (Closes issue ASTERISK-21232. Reported by Nitesh Bansal) - - * --- Fix white noise on SRTP decryption - (Closes issue ASTERISK-21323. Reported by andrea) - - * --- Fix reload skinny with active devices. - (Closes issue ASTERISK-16610. Reported by wedhorn) - - For a full list of changes in this release, please see the ChangeLog: - - fix build with lua 5.2- The Asterisk Development Team has announced the release of Asterisk 11.3.0. - This release is available for immediate download at - - - The release of Asterisk 11.3.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix issue where chan_mobile fails to bind to first available - port - (Closes issue ASTERISK-16357. Reported by challado) - - * --- Fix Queue Log Reporting Every Call COMPLETECALLER With "h" - Extension Present - (Closes issue ASTERISK-20743. Reported by call) - - * --- Retain XMPP filters across reconnections so external modules - continue to function as expected. - (Closes issue ASTERISK-20916. Reported by kuj) - - * --- Ensure that a declined media stream is terminated with a '\r\n' - (Closes issue ASTERISK-20908. Reported by Dennis DeDonatis) - - * --- Fix pjproject compilation in certain circumstances - (Closes issue ASTERISK-20681. Reported by Dinesh Ramjuttun) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15 and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.15-cert2,, 10.12.2, 10.12.2-digiumphones, - and 11.2.2. - - These releases are available for immediate download at - - - The release of these versions resolve the following issues: - - * A possible buffer overflow during H.264 format negotiation. The format - attribute resource for H.264 video performs an unsafe read against a media - attribute when parsing the SDP. - - This vulnerability only affected Asterisk 11. - - * A denial of service exists in Asterisk's HTTP server. AST-2012-014, fixed - in January of this year, contained a fix for Asterisk's HTTP server for a - remotely-triggered crash. While the fix prevented the crash from being - triggered, a denial of service vector still exists with that solution if an - attacker sends one or more HTTP POST requests with very large Content-Length - values. - - This vulnerability affects Certified Asterisk 1.8.15, Asterisk 1.8, 10, and 11 - - * A potential username disclosure exists in the SIP channel driver. When - authenticating a SIP request with alwaysauthreject enabled, allowguest - disabled, and autocreatepeer disabled, Asterisk discloses whether a user - exists for INVITE, SUBSCRIBE, and REGISTER transactions in multiple ways. - - This vulnerability affects Certified Asterisk 1.8.15, Asterisk 1.8, 10, and 11 - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-001, AST-2013-002, and AST-2013-003, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * - * The Asterisk Development Team has announced the release of Asterisk 11.2.1. - This release is available for immediate download at - - - The release of Asterisk 11.2.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Fix astcanary startup problem due to wrong pid value from before - daemon call - (Closes issue ASTERISK-20947. Reported by Jakob Hirsch) - - * --- Update init.d scripts to handle stderr; readd splash screen for - remote consoles - (Closes issue ASTERISK-20945. Reported by Warren Selby) - - * --- Reset RTP timestamp; sequence number on SSRC change - (Closes issue ASTERISK-20906. Reported by Eelco Brolman) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.2.0. - This release is available for immediate download at - - - The release of Asterisk 11.2.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- app_meetme: Fix channels lingering when hung up under certain - conditions - (Closes issue ASTERISK-20486. Reported by Michael Cargile) - - * --- Fix stuck DTMF when bridge is broken. - (Closes issue ASTERISK-20492. Reported by Jeremiah Gowdy) - - * --- Add missing support for "who hung up" to chan_motif. - (Closes issue ASTERISK-20671. Reported by Matt Jordan) - - * --- Remove a fixed size limitation for producing SDP and change how - ICE support is disabled by default. - (Closes issue ASTERISK-20643. Reported by coopvr) - - * --- Fix chan_sip websocket payload handling - (Closes issue ASTERISK-20745. Reported by Iñaki Baz Castillo) - - * --- Fix pjproject compilation in certain circumstances - (Closes issue ASTERISK-20681. Reported by Dinesh Ramjuttun) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced a security release for Asterisk 11, - Asterisk 11.1.2. This release addresses the security vulnerabilities reported in - AST-2012-014 and AST-2012-015, and replaces the previous version of Asterisk 11 - released for these security vulnerabilities. The prior release left open a - vulnerability in res_xmpp that exists only in Asterisk 11; as such, other - versions of Asterisk were resolved correctly by the previous releases. - - This release is available for immediate download at - - - The release of these versions resolve the following two issues: - - * Stack overflows that occur in some portions of Asterisk that manage a TCP - connection. In SIP, this is exploitable via a remote unauthenticated session; - in XMPP and HTTP connections, this is exploitable via remote authenticated - sessions. The vulnerabilities in SIP and HTTP were corrected in a prior - release of Asterisk; the vulnerability in XMPP is resolved in this release. - - * A denial of service vulnerability through exploitation of the device state - cache. Anonymous calls had the capability to create devices in Asterisk that - would never be disposed of. Handling the cachability of device states - aggregated via XMPP is handled in this release. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-014 and AST-2012-015. - - For a full list of changes in the current release, please see the ChangeLog: - - - - The security advisories are available at: - - * - * - - Thank you for your continued support of Asterisk - and we apologize for having - to do this twice!- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.11-cert10,, 10.11.1, 10.11.1-digiumphones, - and 11.1.1. - - These releases are available for immediate download at - - - The release of these versions resolve the following two issues: - - * Stack overflows that occur in some portions of Asterisk that manage a TCP - connection. In SIP, this is exploitable via a remote unauthenticated session; - in XMPP and HTTP connections, this is exploitable via remote authenticated - sessions. - - * A denial of service vulnerability through exploitation of the device state - cache. Anonymous calls had the capability to create devices in Asterisk that - would never be disposed of. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-014 and AST-2012-015, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 11.1.0. - This release is available for immediate download at - - - The release of Asterisk 11.1.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix execution of 'i' extension due to uninitialized variable. - (Closes issue ASTERISK-20455. Reported by Richard Miller) - - * --- Prevent resetting of NATted realtime peer address on reload. - (Closes issue ASTERISK-18203. Reported by daren ferreira) - - * --- Fix ConfBridge crash if no timing module loaded. - (Closes issue ASTERISK-19448. Reported by feyfre) - - * --- Fix the Park 'r' option when a channel parks itself. - (Closes issue ASTERISK-19382. Reported by James Stocks) - - * --- Fix an issue where outgoing calls would fail to establish audio - due to ICE negotiation failures. - (Closes issue ASTERISK-20554. Reported by mmichelson) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 11.0.2. - This release is available for immediate download at - - - The release of Asterisk 11.0.2 resolves an issue reported by the - community and would have not been possible without your participation. - Thank you! - - The following is the issue resolved in this release: - - * --- chan_local: Fix local_pvt ref leak in local_devicestate(). - (Closes issue ASTERISK-20769. Reported by rmudgett) - - For a full list of changes in this release, please see the ChangeLog: - - simplify LDFLAGS setting- clean up things to allow building on arm arches- The Asterisk Development Team has announced the release of Asterisk 11.0.1. - This release is available for immediate download at - - - The release of Asterisk 11.0.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- chan_sip: Fix a bug causing SIP reloads to remove all entries - from the registry - (Closes issue ASTERISK-20611. Reported by Alisher) - - * --- confbridge: Fix a bug which made conferences not record with - AMI/CLI commands - (Closes issue ASTERISK-20601. Reported by Vilius) - - * --- Fix an issue with res_http_websocket where the chan_sip - WebSocket handler could not be registered. - (Closes issue ASTERISK-20631. Reported by danjenkins) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the release of - Asterisk 11.0.0. This release is available for immediate download at - - - Asterisk 11 is the next major release series of Asterisk. It is a Long Term - Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for DTLS-SRTP in chan_sip. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - The Asterisk Development Team has announced the second release candidate of - Asterisk 11.0.0. This release candidate is available for immediate - download at - - The release of Asterisk 11.0.0-rc2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release candidate: - - * --- Fix an issue where outgoing calls would fail to establish audio - due to ICE negotiation failures. - (Closes issue ASTERISK-20554. Reported by mmichelson) - - * --- Ensure Asterisk fails TCP/TLS SIP calls when certificate - checking fails - (Closes issue ASTERISK-20559. Reported by kmoore) - - * --- Don't make chan_sip export global symbols. - (Closes issue ASTERISK-20545. Reported by kmoore) - - For a full list of changes in this release candidate, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the first release candidate - of Asterisk 11.0.0. This release is available for immediate download at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 11 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - All Asterisk users are invited to participate in the #asterisk-testing channel - on IRC to work together in testing the many parts of Asterisk. - - Asterisk 11 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for DTLS-SRTP in chan_sip. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - Don't forget format_ilbc module- The Asterisk Development Team is pleased to announce the second beta release of - Asterisk 11.0.0. This release is available for immediate download at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 11 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - All Asterisk users are invited to participate in the #asterisk-testing channel - on IRC to work together in testing the many parts of Asterisk. - - Asterisk 11 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for DTLS-SRTP in chan_sip. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - The Asterisk Development Team has announced the release of Asterisk 10.8.0. - This release is available for immediate download at - - - The release of Asterisk 10.8.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- AST-2012-012: Resolve AMI User Unauthorized Shell Access through - ExternalIVR - (Closes issue ASTERISK-20132. Reported by Zubair Ashraf of IBM X-Force Research) - - * --- AST-2012-013: Resolve ACL rules being ignored during calls by - some IAX2 peers - (Closes issue ASTERISK-20186. Reported by Alan Frisch) - - * --- Handle extremely out of order RFC 2833 DTMF - (Closes issue ASTERISK-18404. Reported by Stephane Chazelas) - - * --- Resolve severe memory leak in CEL logging modules. - (Closes issue AST-916. Reported by Thomas Arimont) - - * --- Only re-create an SRTP session when needed - (Issue ASTERISK-20194. Reported by Nicolo Mazzon) - - For a full list of changes in this release, please see the ChangeLog: - - fix build on s390- fix build on s390- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8 and 10. The available security releases are - released as versions 1.8.11-cert7,, 10.7.1, and 10.7.1-digiumphones. - - These releases are available for immediate download at - - - The release of Asterisk 1.8.11-cert7,, 10.7.1, and 10.7.1-digiumphones - resolve the following two issues: - - * A permission escalation vulnerability in Asterisk Manager Interface. This - would potentially allow remote authenticated users the ability to execute - commands on the system shell with the privileges of the user running the - Asterisk application. Please note that the README-SERIOUSLY.bestpractices.txt - file delivered with Asterisk has been updated due to this and other related - vulnerabilities fixed in previous versions of Asterisk. - - * When an IAX2 call is made using the credentials of a peer defined in a - dynamic Asterisk Realtime Architecture (ARA) backend, the ACL rules for that - peer are not applied to the call attempt. This allows for a remote attacker - who is aware of a peer's credentials to bypass the ACL rules set for that - peer. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-012 and AST-2012-013, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 10.7.0. - This release is available for immediate download at - - - The release of Asterisk 10.7.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix deadlock potential with ast_set_hangupsource() calls. - (Closes issue ASTERISK-19801. Reported by Alec Davis) - - * --- Fix request routing issue when outboundproxy is used. - (Closes issue ASTERISK-20008. Reported by Marcus Hunger) - - * --- Set the Caller ID "tag" on peers even if remote party - information is present. - (Closes issue ASTERISK-19859. Reported by Thomas Arimont) - - * --- Fix NULL pointer segfault in ast_sockaddr_parse() - (Closes issue ASTERISK-20006. Reported by Michael L. Young) - - * --- Do not perform install on existing directories - (Closes issue ASTERISK-19492. Reported by Karl Fife) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 10.6.1. - This release is available for immediate download at - - - The release of Asterisk 10.6.1 resolves an issue reported by the - community and would have not been possible without your participation. - Thank you! - - The following is the issue resolved in this release: - - * --- Remove a superfluous and dangerous freeing of an SSL_CTX. - (Closes issue ASTERISK-20074. Reported by Trevor Helmsley) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 10.6.0. - This release is available for immediate download at - - - The release of Asterisk 10.6.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- format_mp3: Fix a possible crash in mp3_read(). - (Closes issue ASTERISK-19761. Reported by Chris Maciejewsk) - - * --- Fix local channel chains optimizing themselves out of a call. - (Closes issue ASTERISK-16711. Reported by Alec Davis) - - * --- Re-add LastMsgsSent value for SIP peers - (Closes issue ASTERISK-17866. Reported by Steve Davies) - - * --- Prevent sip_pvt refleak when an ast_channel outlasts its - corresponding sip_pvt. - (Closes issue ASTERISK-19425. Reported by David Cunningham) - - * --- Send more accurate identification information in dialog-info SIP - NOTIFYs. - (Closes issue ASTERISK-16735. Reported by Maciej Krajewski) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the first beta release of - Asterisk 11.0.0. This release is available for immediate download at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 11 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - All Asterisk users are invited to participate in the #asterisk-testing channel - on IRC to work together in testing the many parts of Asterisk. - - Asterisk 11 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.8. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - For important information regarding upgrading to Asterisk 11, please see the - Asterisk wiki: - - - - A short list of new features includes: - - * A new channel driver named chan_motif has been added which provides support - for Google Talk and Jingle in a single channel driver. This new channel - driver includes support for both audio and video, RFC2833 DTMF, all codecs - supported by Asterisk, hold, unhold, and ringing notification. It is also - compliant with the current Jingle specification, current Google Jingle - specification, and the original Google Talk protocol. - - * Support for the WebSocket transport for chan_sip. - - * SIP peers can now be configured to support negotiation of ICE candidates. - - * The app_page application now no longer depends on DAHDI or app_meetme. It - has been re-architected to use app_confbridge internally. - - * Hangup handlers can be attached to channels using the CHANNEL() function. - Hangup handlers will run when the channel is hung up similar to the h - extension; however, unlike an h extension, a hangup handler is associated with - the actual channel and will execute anytime that channel is hung up, - regardless of where it is in the dialplan. - - * Added pre-dial handlers for the Dial and Follow-Me applications. Pre-dial - allows you to execute a dialplan subroutine on a channel before a call is - placed but after the application performing a dial action is invoked. This - means that the handlers are executed after the creation of the caller/callee - channels, but before any actions have been taken to actually dial the callee - channels. - - * Log messages can now be easily associated with a certain call by looking at - a new unique identifier, "Call Id". Call ids are attached to log messages for - just about any case where it can be determined that the message is related - to a particular call. - - * Introduced Named ACLs as a new way to define Access Control Lists (ACLs) in - Asterisk. Unlike traditional ACLs defined in specific module configuration - files, Named ACLs can be shared across multiple modules. - - * The Hangup Cause family of functions and dialplan applications allow for - inspection of the hangup cause codes for each channel involved in a call. - This allows a dialplan writer to determine, for each channel, who hung up and - for what reason(s). - - * Two new functions have been added: FEATURE() and FEATUREMAP(). FEATURE() - lets you set some of the configuration options from the general section - of features.conf on a per-channel basis. FEATUREMAP() lets you customize - the key sequence used to activate built-in features, such as blindxfer, - and automon. - - * Support for named pickupgroups/callgroups, allowing any number of pickupgroups - and callgroups to be defined for several channel drivers. - - * IPv6 Support for AMI, AGI, ExternalIVR, and the SIP Security Event Framework. - - More information about the new features can be found on the Asterisk wiki: - - - - A full list of all new features can also be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog. - - Rebuilt for Perl 5.16 rebuild- The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8 and 10. The available security releases are - released as versions 1.8.11-cert4,, 10.5.2, and 10.5.2-digiumphones. - - These releases are available for immediate download at - - - The release of Asterisk 1.8.11-cert4,, 10.5.2, and 10.5.2-digiumphones - resolve the following two issues: - - * If Asterisk sends a re-invite and an endpoint responds to the re-invite with - a provisional response but never sends a final response, then the SIP dialog - structure is never freed and the RTP ports for the call are never released. If - an attacker has the ability to place a call, they could create a denial of - service by using all available RTP ports. - - * If a single voicemail account is manipulated by two parties simultaneously, - a condition can occur where memory is freed twice causing a crash. - - These issues and their resolution are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-010 and AST-2012-011, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - - The security advisories are available at: - - * - * Perl 5.16 rebuild- The Asterisk Development Team has announced a security release for Asterisk 10. - This security release is released as version 10.5.1. - - The release is available for immediate download at - - - The release of Asterisk 10.5.1 resolves the following issue: - - * A remotely exploitable crash vulnerability was found in the Skinny (SCCP) - Channel driver. When an SCCP client sends an Off Hook message, followed by - a Key Pad Button Message, a structure that was previously set to NULL is - dereferenced. This allows remote authenticated connections the ability to - cause a crash in the server, denying services to legitimate users. - - This issue and its resolution is described in the security advisory. - - For more information about the details of this vulnerability, please read - security advisory AST-2012-009, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - The security advisory is available at: - - * The Asterisk Development Team has announced the release of Asterisk 10.5.0. - This release is available for immediate download at - - - The release of Asterisk 10.5.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Turn off warning message when bind address is set to any. - (Closes issue ASTERISK-19456. Reported by Michael L. Young) - - * --- Prevent overflow in calculation in ast_tvdiff_ms on 32-bit - machines - (Closes issue ASTERISK-19727. Reported by Ben Klang) - - * --- Make DAHDISendCallreroutingFacility wait 5 seconds for a reply - before disconnecting the call. - (Closes issue ASTERISK-19708. Reported by mehdi Shirazi) - - * --- Fix recalled party B feature flags for a failed DTMF atxfer. - (Closes issue ASTERISK-19383. Reported by lgfsantos) - - * --- Fix DTMF atxfer running h exten after the wrong bridge ends. - (Closes issue ASTERISK-19717. Reported by Mario) - - For a full list of changes in this release, please see the ChangeLog: - - Perl 5.16 rebuild- The Asterisk Development Team has announced the release of Asterisk 10.4.2. - This release is available for immediate download at - - - The release of Asterisk 10.4.2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Resolve crash in subscribing for MWI notifications - (Closes issue ASTERISK-19827. Reported by B. R) - - * --- Fix crash in ConfBridge when user announcement is played for - more than 2 users - (Closes issue ASTERISK-19899. Reported by Florian Gilcher) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.11 and Asterisk 1.8 and 10. The available security releases are - released as versions 1.8.11-cert2,, and 10.4.1. - - These releases are available for immediate download at - - - The release of Asterisk 1.8.11-cert2,, and 10.4.1 resolve the following - two issues: - - * A remotely exploitable crash vulnerability exists in the IAX2 channel - driver if an established call is placed on hold without a suggested music - class. Asterisk will attempt to use an invalid pointer to the music - on hold class name, potentially causing a crash. - - * A remotely exploitable crash vulnerability was found in the Skinny (SCCP) - Channel driver. When an SCCP client closes its connection to the server, - a pointer in a structure is set to NULL. If the client was not in the - on-hook state at the time the connection was closed, this pointer is later - dereferenced. This allows remote authenticated connections the ability to - cause a crash in the server, denying services to legitimate users. - - These issues and their resolution are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-007 and AST-2012-008, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - The security advisories are available at: - - * - * The Asterisk Development Team has announced the release of Asterisk 10.4.0. - This release is available for immediate download at - - - The release of Asterisk 10.4.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Prevent chanspy from binding to zombie channels - (Closes issue ASTERISK-19493. Reported by lvl) - - * --- Fix Dial m and r options and forked calls generating warnings - for voice frames. - (Closes issue ASTERISK-16901. Reported by Chris Gentle) - - * --- Remove ISDN hold restriction for non-bridged calls. - (Closes issue ASTERISK-19388. Reported by Birger Harzenetter) - - * --- Fix copying of CDR(accountcode) to local channels. - (Closes issue ASTERISK-19384. Reported by jamicque) - - * --- Ensure Asterisk acknowledges ACKs to 4xx on Replaces errors - (Closes issue ASTERISK-19303. Reported by Jon Tsiros) - - * --- Eliminate double close of file descriptor in manager.c - (Closes issue ASTERISK-18453. Reported by Jaco Kroon) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced security releases for Asterisk 1.6.2, - 1.8, and 10. The available security releases are released as versions, -, and 10.3.1. - - These releases are available for immediate download at - - - The release of Asterisk,, and 10.3.1 resolve the following two - issues: - - * A permission escalation vulnerability in Asterisk Manager Interface. This - would potentially allow remote authenticated users the ability to execute - commands on the system shell with the privileges of the user running the - Asterisk application. - - * A heap overflow vulnerability in the Skinny Channel driver. The keypad - button message event failed to check the length of a fixed length buffer - before appending a received digit to the end of that buffer. A remote - authenticated user could send sufficient keypad button message events that the - buffer would be overrun. - - In addition, the release of Asterisk and 10.3.1 resolve the following - issue: - - * A remote crash vulnerability in the SIP channel driver when processing UPDATE - requests. If a SIP UPDATE request was received indicating a connected line - update after a channel was terminated but before the final destruction of the - associated SIP dialog, Asterisk would attempt a connected line update on a - non-existing channel, causing a crash. - - These issues and their resolution are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2012-004, AST-2012-005, and AST-2012-006, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - - - - - The security advisories are available at: - - * - * - * Update to 10.3.0- Update to 10.2.1 from upstream. - Fix remote stack overflow in app_milliwatt. - Fix remote stack overflow, including possible code injection, in HTTP digest authentication handling. - Disable asterisk-corosync package, as it doesn't build right now. - Resolves: rhbz#804045, rhbz#804038, rhbz#804042- * Add patch extracted from upstream to build with Corosync since - OpenAIS is no longer available. - * Add PrivateTmp=true to systemd service file (#782478) - * Add some macros to make it easier to build with fewer dependencies - (with corresponding less functionality) (#787389) - * Add isa macros in a few places plus a few other changes to make it - easier to cross-compile. (#787779)- The Asterisk Development Team has announced the release of Asterisk 10.1.2. This - release is available for immediate download at - - - The release of Asterisk 10.1.2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following are the issues resolved in this release: - - * --- Fix SIP INFO DTMF handling for non-numeric codes --- - (Closes issue ASTERISK-19290. Reported by: Ira Emus) - - * --- Fix crash in ParkAndAnnounce --- - (Closes issue ASTERISK-19311. Reported-by: tootai) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team has announced the release of Asterisk 10.1.1. This - release is available for immediate download at - - - The release of Asterisk 10.1.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fixes deadlocks occuring in chan_agent --- - (Closes issue ASTERISK-19285. Reported by: Alex Villacis Lasso) - - * --- Ensure entering T.38 passthrough does not cause an infinite loop --- - (Closes issue ASTERISK-18951. Reported-by: Kristijan Vrban) - - For a full list of changes in this release, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the release of - Asterisk 10.1.0. This release is available for immediate download at - - - The release of Asterisk 10.1.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * AST-2012-001: prevent crash when an SDP offer - is received with an encrypted video stream when support for video - is disabled and res_srtp is loaded. (closes issue ASTERISK-19202) - Reported by: Catalin Sanda - - * Allow playback of formats that don't support seeking. ast_streamfile - previously did unconditional seeking on files that broke playback of - formats that don't support that functionality. This patch avoids the - seek that was causing the problem. - (closes issue ASTERISK-18994) Patched by: Timo Teras - - * Add pjmedia probation concepts to res_rtp_asterisk's learning mode. In - order to better handle RTP sources with strictrtp enabled (which is the - default setting in 10) using the learning mode to figure out new sources - when they change is handled by checking for a number of consecutive (by - sequence number) packets received to an rtp struct based on a new - configurable value called 'probation'. Also, during learning mode instead - of liberally accepting all packets received, we now reject packets until a - clear source has been determined. - - * Handle AST_CONTROL_UPDATE_RTP_PEER frames in local bridge loop. Failing - to handle AST_CONTROL_UPDATE_RTP_PEER frames in the local bridge loop - causes the loop to exit prematurely. This causes a variety of negative side - effects, depending on when the loop exits. This patch handles the frame by - essentially swallowing the frame in the local loop, as the current channel - drivers expect the RTP bridge to handle the frame, and, in the case of the - local bridge loop, no additional action is necessary. - (closes issue ASTERISK-19095) Reported by: Stefan Schmidt Tested - by: Matt Jordan - - * Fix timing source dependency issues with MOH. Prior to this patch, - res_musiconhold existed at the same module priority level as the timing - sources that it depends on. This would cause a problem when music on - hold was reloaded, as the timing source could be changed after - res_musiconhold was processed. This patch adds a new module priority - level, AST_MODPRI_TIMING, that the various timing modules are now loaded - at. This now occurs before loading other resource modules, such - that the timing source is guaranteed to be set prior to resolving - the timing source dependencies. - (closes issue ASTERISK-17474) Reporter: Luke H Tested by: Luke H, - Vladimir Mikhelson, zzsurf, Wes Van Tlghem, elguero, Thomas Arimont - Patched by elguero - - * Fix RTP reference leak. If a blind transfer were initiated using a - REFER without a prior reINVITE to place the call on hold, AND if Asterisk - were sending RTCP reports, then there was a reference leak for the - RTP instance of the transferrer. - (closes issue ASTERISK-19192) Reported by: Tyuta Vitali - - * Fix blind transfers from failing if an 'h' extension - is present. This prevents the 'h' extension from being run on the - transferee channel when it is transferred via a native transfer - mechanism such as SIP REFER. (closes issue ASTERISK-19173) Reported - by: Ross Beer Tested by: Kristjan Vrban Patches: ASTERISK-19173 by - Mark Michelson (license 5049) - - * Restore call progress code for analog ports. Extracting sig_analog - from chan_dahdi lost call progress detection functionality. Fix - analog ports from considering a call answered immediately after - dialing has completed if the callprogress option is enabled. - (closes issue ASTERISK-18841) - Reported by: Richard Miller Patched by Richard Miller - - * Fix regression that 'rtp/rtcp set debup ip' only works when a port - was also specified. - (closes issue ASTERISK-18693) Reported by: Davide Dal Reviewed by: - Walter Doekes - - For a full list of changes in this release candidate, please see the ChangeLog: - - Remove asterisk-ais. OpenAIS was removed from Fedora.- Rebuilt for Don't build API docs as the build never finishes- The Asterisk Development Team is proud to announce the release of - Asterisk 10.0.0. This release is available for immediate download at - - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more information about - support time lines for Asterisk releases, see the Asterisk versions page: - - - - With the release of the Asterisk 10 branch, the preceding '1.' has been removed - from the version number per the blog post available at - - - - - The release of Asterisk 10 would not have been possible without the support and - contributions of the community. - - You can find an overview of the work involved with the 10.0.0 release in the - summary: - - - - A short list of available features includes: - - * T.38 gateway functionality has been added to res_fax. - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - * Support for defining hints has been added to pbx_lua. - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - Also, when upgrading a system between major versions, it is imperative that you - read and understand the contents of the UPGRADE.txt file, which is located at: - - The Asterisk Development Team has announced the third release candidate of - Asterisk 10.0.0. This release candidate is available for immediate download at - - - The release of Asterisk 10.0.0-rc3 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Add ASTSBINDIR to the list of configurable paths - - This patch also makes astdb2sqlite3 and astcanary use the configured - directory instead of relying on $PATH. - - * Don't crash on INFO automon request with no channel - - AST-2011-014. When automon was enabled in features.conf, it was possible - to crash Asterisk by sending an INFO request if no channel had been - created yet. - - * Fixed crash from orphaned MWI subscriptions in chan_sip - - This patch resolves the issue where MWI subscriptions are orphaned - by subsequent SIP SUBSCRIBE messages. - - * Fix a change in behavior in 'database show' from 1.8. - - In 1.8 and previous versions, one could use any fullword portion of - the key name, including the full key, to obtain the record. Until this - patch, this did not work for the full key. - - * Default to nat=yes; warn when nat in general and peer differ - - AST-2011-013. It is possible to enumerate SIP usernames when the general and - user/peer nat settings differ in whether to respond to the port a request is - sent from or the port listed for responses in the Via header. In 1.4 and - 1.6.2, this would mean if one setting was nat=yes or nat=route and the other - was either nat=no or nat=never. In 1.8 and 10, this would mean when one - was nat=force_rport and the other was nat=no. - - In order to address this problem, it was decided to switch the default - behavior to nat=yes/force_rport as it is the most commonly used option - and to strongly discourage setting nat per-peer/user when at all - possible. - - * Fixed SendMessage stripping extension from To: header in SIP MESSAGE - - When using the MessageSend application to send a SIP MESSAGE to a - non-peer, chan_sip stripped off the extension and failed to add it back - to the sip_pvt structure before transmitting. This patch adds the full - URI passed in from the message core to the sip_pvt structure. - - For a full list of changes in this release candidate, please see the ChangeLog: - - The Asterisk Development Team has announced the second release candidate of - Asterisk 10.0.0. This release candidate is available for immediate download at - - - The release of Asterisk 10.0.0-rc2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Ensure that a null vmexten does not cause a segfault - - * Fix issue with ConfBridge participants hanging up during DTMF feature - menu usage getting stuck in conference forever - (closes issue ASTERISK-18829) - Reported by: zvision - - * Fix app_macro.c MODULEINFO section termination - (closes issue ASTERISK-18848) - Reported by: Tony Mountifield - - For a full list of changes in this release candidate, please see the ChangeLog: - - The Asterisk Development Team is pleased to announce the first release candidate - of Asterisk 10.0.0. This release candidate is available for immediate download - at - - All Asterisk users are encouraged to participate in the Asterisk 10 testing - process. Please report any issues found to the issue tracker, - It is also very useful to see successful test - reports. Please post those to the asterisk-dev mailing list. - - All Asterisk users are invited to participate in the #asterisk-testing - channel on IRC to work together in testing the many parts of Asterisk. - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more - information about support time lines for Asterisk releases, see the Asterisk - versions page: - - A short list of features includes: - - * T.38 gateway functionality has been added to res_fax. - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - (More information available at - ) - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - * Support for defining hints has been added to pbx_lua. - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - Add patch from upstream SVN to fix AST-2011-012- Patch cleanup day- The Asterisk Development Team is pleased to announce the second beta release of - Asterisk 10.0.0. This release is available for immediate download at - - - With the release of the Asterisk 10 branch, the preceding '1.' has been removed - from the version number per the blog post available at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 10 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - - All Asterisk users are invited to participate in the #asterisk-testing - channel on IRC to work together in testing the many parts of Asterisk. - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more - information about support time lines for Asterisk releases, see the Asterisk - versions page: - - A short list of features includes: - - * T.38 gateway functionality has been added to res_fax. - - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - - * Support for defining hints has been added to pbx_lua. - - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - - The Asterisk Development Team is pleased to announce the first beta release of - Asterisk 10.0.0-beta1. This release is available for immediate download at - - - With the release of the Asterisk 10 branch, the preceding '1.' has been removed - from the version number per the blog post available at - - - All interested users of Asterisk are encouraged to participate in the - Asterisk 10 testing process. Please report any issues found to the issue - tracker, It is also very useful to see - successful test reports. Please post those to the asterisk-dev mailing list. - - All Asterisk users are invited to participate in the #asterisk-testing - channel on IRC to work together in testing the many parts of Asterisk. - Additionally users can make use of the RPM and DEB packages now being built for - all Asterisk releases. More information available at - - - Asterisk 10 is the next major release series of Asterisk. It will be a - Standard support release, similar to Asterisk 1.6.2. For more - information about support time lines for Asterisk releases, see the Asterisk - versions page: - - A short list of included features includes: - - * T.38 gateway functionality has been added to res_fax. - * Protocol independent out-of-call messaging support. Text messages not - associated with an active call can now be routed through the Asterisk - dialplan. SIP and XMPP are supported so far. - * New highly optimized and customizable ConfBridge application capable of mixing - audio at sample rates ranging from 8kHz-192kHz - * Addition of video_mode option in confbridge.conf to provide basic video - conferencing in the ConfBridge() dialplan application. - * Support for defining hints has been added to pbx_lua. - * Replacement of Berkeley DB with SQLite for the Asterisk Database (AstDB). - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - Perl mass rebuild- Perl mass rebuild- The Asterisk Development Team announces the release of Asterisk This - release is available for immediate download at - - - The release of Asterisk resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * Fix Deadlock with attended transfer of SIP call - (Closes issue #18837. Reported, patched by alecdavis. Tested by Irontec, ZX81, - cmaj) - - * Fixes thread blocking issue in the sip TCP/TLS implementation. - (Closes issue #18497. Reported by vois. Patched by dvossel. Tested by vois, - rossbeer, kowalma, Freddi_Fonet) - - * Be more tolerant of what URI we accept for call completion PUBLISH requests. - (Closes issue #18946. Reported by GeorgeKonopacki. Patched by mmichelson) - - * Fix a nasty chanspy bug which was causing a channel leak every time a spied on - channel made a call. - (Closes issue #18742. Reported by jkister. Tested by jcovert, jrose) - - * This patch fixes a bug with MeetMe behavior where the 'P' option for always - prompting for a pin is ignored for the first caller. - (Closes issue #18070. Reported by mav3rick. Patched by bbryant) - - * Fix issue where Asterisk does not hangup a channel after endpoint hangs up. If - the call that the dialplan started an AGI script for is hungup while the AGI - script is in the middle of a command then the AGI script is not notified of - the hangup. - (Closes issue #17954, #18492. Reported by mn3250, devmod. Patched by rmudgett) - - * Resolve issue where leaving a voicemail, the MWI message is never sent. The - same thing happens when checking a voicemail and marking it as read. - (Closes issue ASTERISK-18002. Reported by Leif Madsen. Resolved by Richard - Mudgett) - - * Resolve issue where wait for leader with Music On Hold allows crosstalk - between participants. Parenthesis in the wrong position. Regression from issue - #14365 when expanding conference flags to use 64 bits. - (Closes issue #18418. Reported by MrHanMan. Patched by rmudgett) - - For a full list of changes in this release, please see the ChangeLog: - - Rebuild for net-snmp 5.7- Fix systemd dependencies in EL6 and F15- The Asterisk Development Team has announced the first release candidate of - Asterisk 1.8.5. This release candidate is available for immediate download at - - - The release of Asterisk 1.8.5-rc1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Fix Deadlock with attended transfer of SIP call - (Closes issue #18837. Reported, patched by alecdavis. Tested by Irontec, ZX81, - cmaj) - - * Fixes thread blocking issue in the sip TCP/TLS implementation. - (Closes issue #18497. Reported by vois. Patched by dvossel. Tested by vois, - rossbeer, kowalma, Freddi_Fonet) - - * Be more tolerant of what URI we accept for call completion PUBLISH requests. - (Closes issue #18946. Reported by GeorgeKonopacki. Patched by mmichelson) - - * Fix a nasty chanspy bug which was causing a channel leak every time a spied on - channel made a call. - (Closes issue #18742. Reported by jkister. Tested by jcovert, jrose) - - * This patch fixes a bug with MeetMe behavior where the 'P' option for always - prompting for a pin is ignored for the first caller. - (Closes issue #18070. Reported by mav3rick. Patched by bbryant) - - * Fix issue where Asterisk does not hangup a channel after endpoint hangs up. If - the call that the dialplan started an AGI script for is hungup while the AGI - script is in the middle of a command then the AGI script is not notified of - the hangup. - (Closes issue #17954, #18492. Reported by mn3250, devmod. Patched by rmudgett) - - * Resolve issue where leaving a voicemail, the MWI message is never sent. The - same thing happens when checking a voicemail and marking it as read. - (Closes issue ASTERISK-18002. Reported by Leif Madsen. Resolved by Richard - Mudgett) - - * Resolve issue where wait for leader with Music On Hold allows crosstalk - between participants. Parenthesis in the wrong position. Regression from issue - #14365 when expanding conference flags to use 64 bits. - (Closes issue #18418. Reported by MrHanMan. Patched by rmudgett) - - * Fix timerfd locking issue. - (Closes ASTERISK-17867, ASTERISK-17415. Patched by kobaz) - - For a full list of changes in this release candidate, please see the ChangeLog: - - Fedora Directory Server -> 389 Directory Server- The Asterisk Development Team has announced the release of Asterisk - versions,, and, which are security - releases. - - These releases are available for immediate download at - - - The release of Asterisk,, and resolves the - following issue: - - AST-2011-011: Asterisk may respond differently to SIP requests from an - invalid SIP user than it does to a user configured on the system, even - when the alwaysauthreject option is set in the configuration. This can - leak information about what SIP users are valid on the Asterisk - system. - - For more information about the details of this vulnerability, please - read the security advisory AST-2011-011, which was released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisory AST-2011-011 is available at: - - Don't forget stereorize- Move /var/run/asterisk to /run/asterisk - Add comments to systemd service file on how to mimic safe_asterisk functionality - Build more of the optional binaries - Install the tmpfiles.d configuration on Fedora 15- The Asterisk Development Team has announced the release of Asterisk versions -,, and, which are security releases. - - These releases are available for immediate download at - - - The release of Asterisk,, and resolves several issues - as outlined below: - - * AST-2011-008: If a remote user sends a SIP packet containing a null, - Asterisk assumes available data extends past the null to the - end of the packet when the buffer is actually truncated when - copied. This causes SIP header parsing to modify data past - the end of the buffer altering unrelated memory structures. - This vulnerability does not affect TCP/TLS connections. - -- Resolved in and - - * AST-2011-009: A remote user sending a SIP packet containing a Contact header - with a missing left angle bracket (<) causes Asterisk to - access a null pointer. - -- Resolved in - - * AST-2011-010: A memory address was inadvertently transmitted over the - network via IAX2 via an option control frame and the remote party would try - to access it. - -- Resolved in,, and - - The issues and resolutions are described in the AST-2011-008, AST-2011-009, and - AST-2011-010 security advisories. - - For more information about the details of these vulnerabilities, please read - the security advisories AST-2011-008, AST-2011-009, and AST-2011-010, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisories AST-2011-008, AST-2011-009, and AST-2011-010 are available - at: - - - - Convert to systemd- Perl mass rebuild- Perl 5.14 mass rebuild- - The Asterisk Development Team has announced the release of Asterisk - version, which is a security release for Asterisk 1.8. - - This release is available for immediate download at - - - The release of Asterisk resolves an issue with SIP URI - parsing which can lead to a remotely exploitable crash: - - Remote Crash Vulnerability in SIP channel driver (AST-2011-007) - - The issue and resolution is described in the AST-2011-007 security - advisory. - - For more information about the details of this vulnerability, please - read the security advisory AST-2011-007, which was released at the - same time as this announcement. - - For a full list of changes in the current release, please see the ChangeLog: - - - - Security advisory AST-2011-007 is available at: - - - - The Asterisk Development Team has announced the release of Asterisk - This release is available for immediate download at - - - The release of Asterisk resolves several issues reported by the - community. Without your help this release would not have been possible. - Thank you! - - Below is a list of issues resolved in this release: - - * Fix our compliance with RFC 3261 section 18.2.2. (aka Cisco phone fix) - (Closes issue #18951. Reported by jmls. Patched by wdoekes) - - * Resolve a change in IPv6 header parsing due to the Cisco phone fix issue. - This issue was found and reported by the Asterisk test suite. - (Closes issue #18951. Patched by mnicholson) - - * Resolve potential crash when using SIP TLS support. - (Closes issue #19192. Reported by stknob. Patched by Chainsaw. Tested by - vois, Chainsaw) - - * Improve reliability when using SIP TLS. - (Closes issue #19182. Reported by st. Patched by mnicholson) - - - For a full list of changes in this release candidate, please see the ChangeLog: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.4. This - release is available for immediate download at - - - The release of Asterisk 1.8.4 resolves several issues reported by the community. - Without your help this release would not have been possible. Thank you! - - Below is a sample of the issues resolved in this release: - - * Use SSLv23_client_method instead of old SSLv2 only. - (Closes issue #19095, #19138. Reported, patched by tzafrir. Tested by russell - and chazzam. - - * Resolve crash in ast_mutex_init() - (Patched by twilson) - - * Resolution of several DTMF based attended transfer issues. - (Closes issue #17999, #17096, #18395, #17273. Reported by iskatel, gelo, - shihchuan, grecco. Patched by rmudgett) - - NOTE: Be sure to read the ChangeLog for more information about these changes. - - * Resolve deadlocks related to device states in chan_sip - (Closes issue #18310. Reported, patched by one47. Patched by jpeeler) - - * Resolve an issue with the Asterisk manager interface leaking memory when - disabled. - (Reported internally by kmorgan. Patched by russellb) - - * Support greetingsfolder as documented in voicemail.conf.sample. - (Closes issue #17870. Reported by edhorton. Patched by seanbright) - - * Fix channel redirect out of MeetMe() and other issues with channel softhangup - (Closes issue #18585. Reported by oej. Tested by oej, wedhorn, russellb. - Patched by russellb) - - * Fix voicemail sequencing for file based storage. - (Closes issue #18498, #18486. Reported by JJCinAZ, bluefox. Patched by - jpeeler) - - * Set hangup cause in local_hangup so the proper return code of 486 instead of - 503 when using Local channels when the far sides returns a busy. Also affects - CCSS in Asterisk 1.8+. - (Patched by twilson) - - * Fix issues with verbose messages not being output to the console. - (Closes issue #18580. Reported by pabelanger. Patched by qwell) - - * Fix Deadlock with attended transfer of SIP call - (Closes issue #18837. Reported, patched by alecdavis. Tested by - alecdavid, Irontec, ZX81, cmaj) - - Includes changes per AST-2011-005 and AST-2011-006 - For a full list of changes in this release candidate, please see the ChangeLog: - - - - Information about the security releases are available at: - - - The Asterisk Development Team has announced security releases for Asterisk - branches 1.4, 1.6.1, 1.6.2, and 1.8. The available security releases are - released as versions,,, and - - These releases are available for immediate download at - - - The releases of Asterisk,,, and resolve two - issues: - - * File Descriptor Resource Exhaustion (AST-2011-005) - * Asterisk Manager User Shell Access (AST-2011-006) - - The issues and resolutions are described in the AST-2011-005 and AST-2011-006 - security advisories. - - For more information about the details of these vulnerabilities, please read the - security advisories AST-2011-005 and AST-2011-006, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - - Security advisory AST-2011-005 and AST-2011-006 are available at: - - - Bump release and rebuild for mysql 5.5.10 soname change.- The Asterisk Development Team has announced security releases for Asterisk - branches 1.6.1, 1.6.2, and 1.8. The available security releases are - released as versions,, and - - These releases are available for immediate download at - - - ** This is a re-release of Asterisk, and which - contained a bug which caused duplicate manager entries (issue #18987). - - The releases of Asterisk,, and resolve two issues: - - * Resource exhaustion in Asterisk Manager Interface (AST-2011-003) - * Remote crash vulnerability in TCP/TLS server (AST-2011-004) - - The issues and resolutions are described in the AST-2011-003 and AST-2011-004 - security advisories. - - For more information about the details of these vulnerabilities, please read the - security advisories AST-2011-003 and AST-2011-004, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisory AST-2011-003 and AST-2011-004 are available at: - - - The Asterisk Development Team has announced security releases for Asterisk - branches 1.6.1, 1.6.2, and 1.8. The available security releases are - released as versions,, and - - These releases are available for immediate download at - - - The releases of Asterisk,, and resolve two issues: - - * Resource exhaustion in Asterisk Manager Interface (AST-2011-003) - * Remote crash vulnerability in TCP/TLS server (AST-2011-004) - - The issues and resolutions are described in the AST-2011-003 and AST-2011-004 - security advisories. - - For more information about the details of these vulnerabilities, please read the - security advisories AST-2011-003 and AST-2011-004, which were released at the - same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - Security advisory AST-2011-003 and AST-2011-004 are available at: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.3. This - release is available for immediate download at - - - The release of Asterisk 1.8.3 resolves several issues reported by the community - and would have not been possible without your participation. Thank you! - - The following is a sample of the issues resolved in this release: - - * Resolve duplicated data in the AstDB when using DIALGROUP() - (Closes issue #18091. Reported by bunny. Patched by tilghman) - - * Ensure the ipaddr field in realtime is large enough to handle IPv6 addresses. - (Closes issue #18464. Reported, patched by IgorG) - - * Reworking parsing of mwi => lines to resolve a segfault. Also add a set of - unit tests for the function that does the parsing. - (Closes issue #18350. Reported by gbour. Patched by Marquis) - - * When using cdr_pgsql the billsec field was not populated correctly on - unanswered calls. - (Closes issue #18406. Reported by joscas. Patched by tilghman) - - * Resolve memory leak in iCalendar and Exchange calendaring modules. - (Closes issue #18521. Reported, patched by pitel. Tested by cervajs) - - * This version of Asterisk includes the new Compiler Flags option - BETTER_BACKTRACES which uses libbfd to search for better symbol information - within both the Asterisk binary, as well as loaded modules, to assist when - using inline backtraces to track down problems. - (Patched by tilghman) - - * Resolve issue where no Music On Hold may be triggered when using - res_timing_dahdi. - (Closes issues #18262. Reported by francesco_r. Patched by cjacobson. Tested - by francesco_r, rfrantik, one47) - - * Resolve a memory leak when the Asterisk Manager Interface is disabled. - (Reported internally by kmorgan. Patched by russellb) - - * Reimplemented fax session reservation to reverse the ABI breakage introduced - in r297486. - (Reported internally. Patched by mnicholson) - - * Fix regression that changed behavior of queues when ringing a queue member. - (Closes issue #18747, #18733. Reported by vrban. Patched by qwell.) - - * Resolve deadlock involving REFER. - (Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.) - - Additionally, this release has the changes related to security bulletin - AST-2011-002 which can be found at - - - For a full list of changes in this release, please see the ChangeLog: - - - The Asterisk Development Team has announced the third release candidate of - Asterisk 1.8.3. This release candidate is available for immediate download at - - - The release of Asterisk 1.8.3-rc3 resolves the following issues in addition to - those included in 1.8.3-rc1 and 1.8.3-rc2: - - * Fix regression that changed behavior of queues when ringing a queue member. - (Closes issue #18747, #18733. Reported by vrban. Patched by qwell.) - - * Resolve deadlock involving REFER. - (Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.) - - For a full list of changes in this release candidate, please see the ChangeLog: - - Bump release to build for F15- Remove isa macros- Make library dependencies architecture specific- Rebuilt for Asterisk Development Team has announced the second release candidate of Asterisk 1.8.3. This release candidate is available for immediate download at The release of Asterisk 1.8.3-rc2 resolves the following issues in addition to those included in 1.8.3-rc1: * Resolve issue where no Music On Hold may be triggered when using res_timing_dahdi. (Closes issues #18262. Reported by francesco_r. Patched by cjacobson. Tested by francesco_r, rfrantik, one47) * Resolve a memory leak when the Asterisk Manager Interface is disabled. (Reported internally by kmorgan. Patched by russellb) * Reimplemented fax session reservation to reverse the ABI breakage introduced in r297486. (Reported internally. Patched by mnicholson) For a full list of changes in this release candidate, please see the ChangeLog: - The Asterisk Development Team has announced the first release candidate of - Asterisk 1.8.3. This release candidate is available for immediate download at - - - The release of Asterisk 1.8.3-rc1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release candidate: - - * Resolve duplicated data in the AstDB when using DIALGROUP() - (Closes issue #18091. Reported by bunny. Patched by tilghman) - - * Ensure the ipaddr field in realtime is large enough to handle IPv6 addresses. - (Closes issue #18464. Reported, patched by IgorG) - - * Reworking parsing of mwi => lines to resolve a segfault. Also add a set of - unit tests for the function that does the parsing. - (Closes issue #18350. Reported by gbour. Patched by Marquis) - - * When using cdr_pgsql the billsec field was not populated correctly on - unanswered calls. - (Closes issue #18406. Reported by joscas. Patched by tilghman) - - * Resolve memory leak in iCalendar and Exchange calendaring modules. - (Closes issue #18521. Reported, patched by pitel. Tested by cervajs) - - * This version of Asterisk includes the new Compiler Flags option - BETTER_BACKTRACES which uses libbfd to search for better symbol information - within both the Asterisk binary, as well as loaded modules, to assist when - using inline backtraces to track down problems. - (Patched by tilghman)- - The Asterisk Development Team has announced the release of Asterisk - This release is available for immediate download at - - - The release of Asterisk resolves the following issue: - - * Reimplemented fax session reservation to reverse the ABI breakage introduced - in r297486. - (Reported by Jeremy Kister on the asterisk-users mailing list. Patched by - mnicholson) - - For a full list of changes in this release, please see the ChangeLog: - - Build with SRTP support- - The Asterisk Development Team has announced a release for the security issue - described in AST-2011-001. - - Due to a failed merge, Asterisk which should have included the security - fix did not. Asterisk contains the the changes which should have been - included in Asterisk - - This releases is available for immediate download at - - - The releases of Asterisk,,,,, -, and resolve an issue when forming an outgoing SIP request while - in pedantic mode, which can cause a stack buffer to be made to overflow if - supplied with carefully crafted caller ID information. The issue and resolution - are described in the AST-2011-001 security advisory. - - For more information about the details of this vulnerability, please read the - security advisory AST-2011-001, which was released at the same time as this - announcement. - - For a full list of changes in the current release, please see the ChangeLog: - - - - Security advisory AST-2011-001 is available at: - - - The Asterisk Development Team has announced security releases for the following - versions of Asterisk: - - * - * - * - * - * - * - * - - These releases are available for immediate download at - - - The releases of Asterisk,,,,, -, and resolve an issue when forming an outgoing SIP request while - in pedantic mode, which can cause a stack buffer to be made to overflow if - supplied with carefully crafted caller ID information. The issue and resolution - are described in the AST-2011-001 security advisory. - - For more information about the details of this vulnerability, please read the - security advisory AST-2011-001, which was released at the same time as this - announcement. - - For a full list of changes in the current releases, please see the ChangeLog: - - - - - - - - - - Security advisory AST-2011-001 is available at: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.2. This - release is available for immediate download at - - - The release of Asterisk 1.8.2 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * 'sip notify clear-mwi' needs terminating CRLF. - (Closes issue #18275. Reported, patched by klaus3000) - - * Patch for deadlock from ordering issue between channel/queue locks in - app_queue (set_queue_variables). - (Closes issue #18031. Reported by rain. Patched by bbryant) - - * Fix cache of device state changes for multiple servers. - (Closes issue #18284, #18280. Reported, tested by klaus3000. Patched, tested - by russellb) - - * Resolve issue where channel redirect function (CLI or AMI) hangs up the call - instead of redirecting the call. - (Closes issue #18171. Reported by: SantaFox) - (Closes issue #18185. Reported by: kwemheuer) - (Closes issue #18211. Reported by: zahir_koradia) - (Closes issue #18230. Reported by: vmarrone) - (Closes issue #18299. Reported by: mbrevda) - (Closes issue #18322. Reported by: nerbos) - - * Fix reloading of peer when a user is requested. Prevent peer reloading from - causing multiple MWI subscriptions to be created when using realtime. - (Closes issue #18342. Reported, patched by nivek.) - - * Fix XMPP PubSub-based distributed device state. Initialize pubsubflags to 0 - so res_jabber doesn't think there is already an XMPP connection sending - device state. Also clean up CLI commands a bit. - (Closes issue #18272. Reported by klaus3000. Patched by Marquis42) - - * Don't crash after Set(CDR(userfield)=...) in ast_bridge_call. Instead of - setting peer->cdr = NULL, set it to not post. - (Closes issue #18415. Reported by macbrody. Patched, tested by jsolares) - - * Fixes issue with outbound google voice calls not working. Thanks to az1234 - and nevermind_quack for their input in helping debug the issue. - (Closes issue #18412. Reported by nevermind_quack. Patched by dvossel) - - For a full list of changes in this release, please see the ChangeLog: - - - The Asterisk Development Team has announced the release of Asterisk - This release is available for immediate download at - - - The release of Asterisk resolves two issues reported by the community - since the release of Asterisk 1.8.1. - - * Don't crash after Set(CDR(userfield)=...) in ast_bridge_call. Instead of - setting peer->cdr = NULL, set it to not post. - (Closes issue #18415. Reported by macbrody. Patched, tested by jsolares) - - * Fixes issue with outbound google voice calls not working. Thanks to az1234 - and nevermind_quack for their input in helping debug the issue. - (Closes issue #18412. Reported by nevermind_quack. Patched by dvossel) - - For a full list of changes in this release candidate, please see the ChangeLog: - - - The Asterisk Development Team has announced the release of Asterisk 1.8.1. This - release is available for immediate download at - - - The release of Asterisk 1.8.1 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * Fix issue when using directmedia. Asterisk needs to limit the codecs offered - to just the ones that both sides recognize, otherwise they may end up sending - audio that the other side doesn't understand. - (Closes issue #17403. Reported, patched by one47. Tested by one47, falves11) - - * Resolve issue where Party A in an analog 3-way call would continue to hear - ringback after party C answers. - (Patched by rmudgett) - - * Fix playback failure when using IAX with the timerfd module. - (Closes issue #18110. Reported, tested by tpanton. Patched by jpeeler) - - * Fix problem with qualify option packets for realtime peers never stopping. - The option packets not only never stopped, but if a realtime peer was not in - the peer list multiple options dialogs could accumulate over time. - (Closes issue #16382. Reported by lftsy. Tested by zerohalo. Patched by - jpeeler) - - * Fix issue where it is possible to crash Asterisk by feeding the curl engine - invalid data. - (Closes issue #18161. Reported by wdoekes. Patched by tilghman) - - For a full list of changes in this release, please see the ChangeLog: - - dont package up the ices bits on el the client doesnt exist for us- dont build the 389 directory server package its not available on rhel6- dont always build AIS modules we dont have the BuildRequires on epel- Rebuild for new net-snmp.- Always build AIS modules- The Asterisk Development Team is proud to announce the release of Asterisk - 1.8.0. This release is available for immediate download at - - - Asterisk 1.8 is the next major release series of Asterisk. It will be a Long - Term Support (LTS) release, similar to Asterisk 1.4. For more information about - support time lines for Asterisk releases, see the Asterisk versions page. - - - - The release of Asterisk 1.8.0 would not have been possible without the support - and contributions of the community. Since Asterisk 1.6.2, we've had over 500 - reporters, more than 300 testers and greater than 200 developers contributed to - this release. - - You can find a summary of the work involved with the 1.8.0 release in the - sumary: - - - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - - - Thank you for your continued support of Asterisk!- - The release of Asterisk 1.8.0-rc5 was triggered by some last minute platform - compatibility IPv6 changes. In addition, the availability of the English sound - prompts with Australian accents has been added. - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - - - This release candidate contains fixes since the last release candidate as - reported by the community. A sampling of the changes in this release candidate - include: - - * Additional fixups in chan_gtalk that allow outbound calls to both Google - Talk and Google Voice recipients. Adds new chan_gtalk enhancements externip - and stunaddr. - (Closes issue #13971. Patched by dvossel) - - * Resolve manager crash issue. - (Closes issue #17994. Reported by vrban. Patchd by dvossel) - - * Documentation updates for sample configuration files. - (Closes issues #18107, #18101. Reported, patched by lathama, lmadsen) - - * Resolve issue where faxdetect would only detect the first fax call in - chan_dahdi. - (Closes issue #18116. Reported by seandarcy. Patched by rmudgett) - - * Resolve issue where a channel that is setup and torn down *very* quickly may - not have the right call disposition or ${DIALSTATUS}. - (Closes issue #16946. Reported by davidw. Review - - - * Set TCLASS field of IPv6 header when SIP QoS options are set. - (Closes issue #18099. Reported by jamesnet. Patched by dvossel) - - * Resolve issue where Asterisk could crash on shutdown when using SRTP. - (Closes issue #18085. Reported by st. Patched by twilson) - - * Fix issue where peers host port would be lost on a SIP reload. - (Closes issue #18135. Reported, tested by lmadsen. Patched by dvossel) - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - This release candidate contains fixes since the release candidate as reported by - the community. A sampling of the changes in this release candidate include: - - * Still build chan_sip even if res_crypto cannot be built (use, but not depend) - (Reported by a user on the mailing list. Patched by tilghman) - - * Get notifications for call files only when a file is closed, not when created - (Closes issue #17924. Reported by mkeuter. Patched by abeldeck) - - * Fixes to chan_gtalk to allow outbound DTMF support to work correctly. Gtalk - expects the DTMF to arrive on the RTP stream and not via jingle DTMF - signalling. - (Patched by dvossel. Tested by malcolmd) - - * Fixes to allow chan_gtalk to communicate with the Gmail web client. - (Patched by phsultan and dvossel) - - * Fix to GET DATA to allow audio to be streamed via an AGI. - (Closes issue #18001. Reported by jamicque. Patched by tilghman) - - * Resolve dnsmgr memory corruption in chan_iax2. - (Closes issue #17902. Reported by afried. Patched by russell, dvossel) - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - This release candidate contains fixes since the last beta release as reported by - the community. A sampling of the changes in this release candidate include: - - * Add slin16 support for format_wav (new wav16 file extension) - (Closes issue #15029. Reported, patched by andrew. Tested by Qwell) - - * Fixes a bug in manager.c where the default configuration values weren't reset - when the manager configuration was reloaded. - (Closes issue #17917. Reported by lmadsen. Patched by bbryant) - - * Various fixes for the calendar modules. - (Patched by Jan Kalab. - Reviewboard: - Closes issue #17877. Review: - Closes issue #17776. Review: - - * Add CHANNEL(checkhangup) to check whether a channel is in the process of - being hung up. - (Closes issue #17652. Reported, patched by kobaz) - - * Fix a bug with MeetMe where after announcing the amount of time left in a - conference, if music on hold was playing, it doesn't restart. - (Closes issue #17408, Reported, patched by sysreq) - - * Fix interoperability problems with session timer behavior in Asterisk. - (Closes issue #17005. Reported by alexcarey. Patched by dvossel) - - * Rate limit calls to fsync() to 1 per second after astdb updates. Astdb was - determined to be one of the most significant bottlenecks in SIP registration - processing. This patch improved the speed of an astdb load test by 50000% - (yes, Fifty-Thousand Percent). On this particular load test setup, this - doubled the number of SIP registrations the server could handle. - (Review: - - * Don't clear the username from a realtime database when a registration - expires. Non-realtime chan_sip does not clear the username from memory when a - registration expiries so realtime probably shouldn't either. - (Closes issue #17551. Reported, patched by: ricardolandim. Patched by - mnicholson) - - * Don't hang up a call on an SRTP unprotect failure. Also make it more obvious - when there is an issue en/decrypting. - (Closes issue #17563. Reported by Alexcr. Patched by sfritsch. Tested by - twilson) - - * Many more issues. This is a significant upgrade over Asterisk 1.8.0 beta 5! - - A short list of available features includes: - - * Secure RTP - * IPv6 Support in the SIP channel driver - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release candidate, please see the - ChangeLog: - - This release contains fixes since the last beta release as reported by the - community. A sampling of the changes in this release include: - - * Fix issue where TOS is no longer set on RTP packets. - (Closes issue #17890. Reported, patched by elguero) - - * Change pedantic default value in chan_sip from 'no' to 'yes' - - * Asterisk now dynamically builds the "Supported" header depending on what is - enabled/disabled in sip.conf. Session timers used to always be advertised as - being supported even when they were disabled in the configuration. - (Related to issue #17005. Patched by dvossel) - - * Convert MOH to use generic timers. - (Closes issue #17726. Reported by lmadsen. Patched by tilghman) - - * Fix SRTP for changing SSRC and multiple a=crypto SDP lines. Adding code to - Asterisk that changed the SSRC during bridges and masquerades broke SRTP - functionality. Also broken was handling the situation where an incoming - INVITE had more than one crypto offer. - (Closes issue #17563. Reported by Alexcr. Patched by twilson) - - Asterisk 1.8 contains many new features over previous releases of Asterisk. - A short list of included features includes: - - * Secure RTP - * IPv6 Support in the SIP Channel - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - This release contains fixes since the last beta release as reported by the - community. A sampling of the changes in this release include: - - * Fix parsing of IPv6 address literals in outboundproxy - (Closes issue #17757. Reported by oej. Patched by sperreault) - - * Change the default value for alwaysauthreject in sip.conf to "yes". - (Closes issue #17756. Reported by oej) - - * Remove current STUN support from chan_sip.c. This change removes the current - broken/useless STUN support from chan_sip. - (Closes issue #17622. Reported by philipp2. - Review: - - * PRI CCSS may use a stale dial string for the recall dial string. If an - outgoing call negotiates a different B channel than initially requested, the - saved original dial string was not transferred to the new B channel. CCSS - uses that dial string to generate the recall dial string. - (Patched by rmudgett) - - * Split _all_ arguments before parsing them. This fixes multicast RTP paging - using linksys mode. - (Patched by russellb) - - * Expand cel_custom.conf.sample. Include the usage of CSV_QUOTE() to ensure - data has valid CSV formatting. Also list the special CEL variables that are - available for use in the mapping. There are also several other CEL fixes in - this release. - (Patched by russellb) - - Asterisk 1.8 contains many new features over previous releases of Asterisk. - A short list of included features includes: - - * Secure RTP - * IPv6 Support in the SIP Channel - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - - This release contains fixes since the last beta release as reported by the - community. A sampling of the changes in this release include: - - * Fix a regression where HTTP would always be enabled regardless of setting. - (Closes issue #17708. Reported, patched by pabelanger) - - * ACL errors displayed on screen when using dynamic_exclude_static in sip.conf - (Closes issue #17717. Reported by Dennis DeDonatis. Patched by mmichelson) - - * Support "channels" in addition to "channel" in chan_dahdi.conf. - ( - - * Fix parsing error in sip_sipredirect(). The code was written in a way that - did a bad job of parsing the port out of a URI. Specifically, it would do - badly when dealing with an IPv6 address. - (Closes issue #17661. Reported by oej. Patched by mmichelson) - - * Fix inband DTMF detection on outgoing ISDN calls. - (Patched by russellb and rmudgett) - - * Fixes issue with translator frame not getting freed. This issue prevented - g729 licenses from being freed up. - (Closes issue #17630. Reported by manvirr. Patched by dvossel) - - * Fixed IPv6-related SIP parsing bugs and updated documention. - (Reported by oej. Patched by sperreault) - - * Add new, self-contained feature FIELDNUM(). Returns a 1-based index into a - list of a specified item. Matches up with FIELDQTY() and CUT(). - (Closes #17713. Reported, patched by gareth. Tested by tilghman) - - Asterisk 1.8 contains many new features over previous releases of Asterisk. - A short list of included features includes: - - * Secure RTP - * IPv6 Support - * Connected Party Identification Support - * Calendaring Integration - * A new call logging system, Channel Event Logging (CEL) - * Distributed Device State using Jabber/XMPP PubSub - * Call Completion Supplementary Services support - * Advice of Charge support - * Much, much more! - - A full list of new features can be found in the CHANGES file. - - - - For a full list of changes in the current release, please see the ChangeLog: - - Rebuild against libpri 1.4.12- Update to 1.8.0-beta2 - Disable building chan_misdn until compilation errors are figured out ( - Start stripping tarballs again because Digium added MP3 code :(- - The following are a few of the issues resolved by community developers: - - * Allow users to specify a port for DUNDI peers. - (Closes issue #17056. Reported, patched by klaus3000) - - * Decrease the module ref count in sip_hangup when SIP_DEFER_BYE_ON_TRANSFER is - set. - (Closes issue #16815. Reported, patched by rain) - - * If there is realtime configuration, it does not get re-read on reload unless - the config file also changes. - (Closes issue #16982. Reported, patched by dmitri) - - * Send AgentComplete manager event for attended transfers. - (Closes issue #16819. Reported, patched by elbriga) - - * Correct manager variable 'EventList' case. - (Closes issue #17520. Reported, patched by kobaz) - - In addition, changes to res_timing_pthread that should make it more stable have - also been implemented. - - For a full list of changes in the current release, please see the - ChangeLog: - - Add patch to remove requirement on latex2html- Mass rebuild with perl-5.12.0- * Fix building CDR and CEL SQLite3 modules. - (Closes issue #17017. Reported by alephlg. Patched by seanbright) - - * Resolve crash in SLAtrunk when the specified trunk doesn't exist. - (Reported in #asterisk-dev by philipp64. Patched by seanbright) - - * Include an extra newline after "Aliased CLI command" to get back the prompt. - (Issue #16978. Reported by jw-asterisk. Tested, patched by seanbright) - - * Prevent segfault if bad magic number is encountered. - (Issue #17037. Reported, patched by alecdavis) - - * Update code to reflect that handle_speechset has 4 arguments. - (Closes issue #17093. Reported, patched by gpatri. Tested by pabelanger, - mmichelson) - - * Resolve a deadlock in chan_local. - (Closes issue #16840. Reported, patched by bzing2, russell. Tested by bzing2)- Update to Update to Update to final - - The following are a few of the issues resolved by community developers: - - * Make sure to clear red alarm after polarity reversal. - (Closes issue #14163. Reported, patched by jedi98. Tested by mattbrown, - Chainsaw, mikeeccleston) - - * Fix problem with duplicate TXREQ packets in chan_iax2 - (Closes issue #16904. Reported, patched by rain. Tested by rain, dvossel) - - * Fix crash in app_voicemail related to message counting. - (Closes issue #16921. Reported, tested by whardier. Patched by seanbright) - - * Overlap receiving: Automatically send CALL PROCEEDING when dialplan starts - (Reported, Patched, and Tested by alecdavis) - - * For T.38 reINVITEs treat a 606 the same as a 488. - (Closes issue #16792. Reported, patched by vrban) - - * Fix ConfBridge crash when no timing module is loaded. - (Closes issue #16471. Reported, tested by kjotte. Patched, tested by junky) - - For a full list of changes in this releases, please see the ChangeLog: - Update to Add a patch that fixes CLI history when linking against external libedit.- Update to - - * AST-2010-002: Invalid parsing of ACL rules can compromise security- Update to - - * AST-2010-002: This security release is intended to raise awareness - of how it is possible to insert malicious strings into dialplans, - and to advise developers to read the best practices documents so - that they may easily avoid these dangers.- Update to - - * AST-2010-001: An attacker attempting to negotiate T.38 over SIP can - remotely crash Asterisk by modifying the FaxMaxDatagram field of - the SDP to contain either a negative or exceptionally large value. - The same crash occurs when the FaxMaxDatagram field is omitted from - the SDP as well.- Update to final: - - * CLI 'queue show' formatting fix. - (Closes issue #16078. Reported by RoadKill. Tested by dvossel. Patched by - ppyy.) - - * Fix misreverting from 177158. - (Closes issue #15725. Reported, Tested by shanermn. Patched by dimas.) - - * Fixes subscriptions being lost after 'module reload'. - (Closes issue #16093. Reported by jlaroff. Patched by dvossel.) - - * app_queue segfaults if realtime field uniqueid is NULL - (Closes issue #16385. Reported, Tested, Patched by haakon.) - - * Fix to Monitor which previously assumed the file to write to did not contain - pathing. - (Closes issue #16377, #16376. Reported by bcnit. Patched by dant.- Update to Released version of Update to Update to Change the logrotate and the init scripts so that Asterisk doesn't try and write to / or /root- Make dependency on uw-imap conditional and some other changes to make building on RHEL5 easier.- Update to Update to Update to Add patch from upstream to fix how res_http_post forms paths.- Add an AST_EXTRA_ARGS option to the init script - have the init script to cd to /var/spool/asterisk to prevent annoying message- Compile against gmime 2.2 instead of gmime 2.4 because the patch to convert the API calls from 2.2 to 2.4 caused crashes.- Require latex2html used in static-http documents- Change ownership and permissions on config files to protect them.- Update to Merge firmware subpackage back into the main package.- Package internal help. - Fix up some more paths in the configs so that everything ends up where we want them.- Update to - We no longer need to strip the tarball as it no longer includes non-free items.- Enable building of API docs. - Depend on version 1.2 or newer of speex- Update to - Drop patches that are too troublesome to maintain anymore or have been integrated upstream.- Add a patch from Quentin Armitage and rebuld.- rebuilt with new openssl- Rebuilt for Rebuild to pick up new AIS and ODBC deps. - Update script that strips out bad content from tarball to do the download and to check the GPG signature.- Rebuilt for Update to 1.6.1-rc1 - Add backport of conference bridging that is slated for 1.6.2 - Add patches to conference bridging that implement CLI apps- rebuild with new openssl- Fedora Directory Server compatibility patch/subpackage.- Fix up paths. BZ#477238- Update patches- Update to 1.6.1-beta4- Update to 1.6.1-beta3- Rebuild for new gmime- Add patch to fix missing variable on PPC.- Update PPC systems don't have sys/io.h patch.- PPC systems don't have sys/io.h- Update to 1.6.1 beta 2- Fix issue with init script giving wrong path to config file.- Explicitly require dahdi-tools-libs to see if we can get this to build.- Update to final release.- Rebuild- Replace app_rxfax/app_txfax with app_fax taken from upstream SVN.- Bump release and rebuild with new libpri and zaptel.- Add patch pulled from upstream SVN that fixes AST-2008-010 and AST-2008-011.- Add patch for LDAP extracted from upstream SVN (#442011)- Add patch that unbreaks cdr_tds with FreeTDS 0.82. - Properly obsolete conference subpackage.- Disable building cdr_tds since new FreeTDS in rawhide no longer provides needed library.- Bump release and rebuild to fix libtds breakage.- Update to 1.6.0-beta9. - Update patches so that they apply cleanly. - Temporarily disable app_conference patch as it doesn't compile - config/scripts/postgres_cdr.sql has been merged into realtime_pgsql.sql - Re-add the script as a source file.- Update to 1.6.0-beta8 - Contains fixes for AST-2008-006 / CVE-2008-1897- Return to stripped tarballs since there's more non-free content in the Asterisk tarballs than I thought.- Update to 1.6.0-beta7.1 - Update patches - Back out some changes that were made because beta7 was tagged from the wrong branch.- Update to 1.6.0-beta7 - The Asterisk tarball no longer contains the iLBC code, so we can directly use the upstream tarball without having to modify it. - Get rid of the script since it's no longer needed. - Diable build of codec_ilbc and format_ilbc (these do not contain any legally suspect code so they can be included in the tarball but it's pointless building them). - Update chan_mobile patch to fix API breakages. - Add a patch to chan_usbradio to fix API breakages.- Add Postgresql schemas from contrib as documentation to the Postgresql subpackage.- Update patches. - Add patch to compile against external libedit rather than using the in-tree version. - Add -Werror-implicit-function-declaration to optflags. - Get rid of hashtest and hashtest2 binaries that link to unfortified versions of *printf functions. They are compiled with -O0 which somehow pulls in the wrong versions. These programs aren't necessary to the operation of the package anyway.- Update to 1.6.0-beta6 to fix some security issues. - - AST-2008-002 details two buffer overflows that were discovered in - RTP codec payload type handling. - * - * All users of SIP in Asterisk 1.4 and 1.6 are affected. - - AST-2008-003 details a vulnerability which allows an attacker to - bypass SIP authentication and to make a call into the context - specified in the general section of sip.conf. - * - * All users of SIP in Asterisk 1.0, 1.2, 1.4, or 1.6 are affected. - - AST-2008-004 Logging messages displayed using the ast_verbose - logging API call are not displayed as a character string, they are - displayed as a format string. - * - - AST-2008-005 details a problem in the way manager IDs are caculated. - * add Requires for versioned perl ( Update to 1.6.0-beta5 - Remove upstreamed patches.- Package the directory used to store monitor recordings.- Add patch from David Woodhouse that fixes building on PPC64.- Update to 1.6.0 beta 4- Update to 1.4.18. - Use -march=i486 on i386 builds for atomic operations (GCC 4.3 compatibility). - Use "logger reload" instead of "logger rotate" in logrotate file (#432197). - Don't explicitly specify a group in in the init script to prevent Zaptel breakage (#426629). - Split app_ices out to a separate package so that the ices package can be required. - pbx_kdeconsole has been dropped, don't specifically exclude it from the build anymore. - Update app_conference patch. - Drop upstreamed libcap patch.- Update to 1.4.17 to fix AST-2008-001.- Update to Bump release and rebuild to fix broken dep on uw-imap.- Update to the real Add patch to bring source up to version which will be released shortly to fix some crasher bugs introduced by 1.4.16.- Update to 1.4.16 to fix security bug.- Really, really fix the build problems on devel.- Tweaks to get to build on x86_64- Exclude PPC64- Don't build apidocs by default since there's a problem building on x86_64.- Really get rid of zero length map files.- Get rid of zero length map files. - Shorten descriptions of voicemail subpackages- Update to 1.4.15- Fix license and other rpmlint warnings.- Update to 1.4.14- Add chan_mobile- Don't build cdr_sqlite because sqlite2 has been orphaned. - Rebase local patches to latest upstream SVN - Update app_conference patch to latest from upstream SVN - Apply post-1.4.13 patches from upstream SVN- Update to 1.4.13- Update to Update to 1.4.11- Update to Update to 1.4.10 (security update).- Add a patch that allows alternate extensions to be defined in users.conf- Update app_conference patch. Enter/leave sounds are now possible.- Update patches so we don't need to run auto* tools, because autoconf 2.60 is required and FC-6 and RHEL5 only have autoconf 2.59.- Don't build app_mp3- Add app_conference- Use plain useradd/groupadd rather than the fedora-usermgmt - Clean up requirements - Clean up build requirements by moving them to package sections- Update to 1.4.9- Update to 1.4.8 - Drop ixjuser patch.- Update to Update to 1.4.7 - RxFAX/TxFAX applications- It's "sbin", not "bin" silly.- Add patch that lets us change TOS bits even when running non-root- voicemail needs to require /usr/bin/sox and /usr/bin/sendmail- Update to 1.4.6 - Remove upstreamed patch.- Build the IMAP and ODBC storage options of voicemail and split voicemail out into subpackages. - Apply patch so that the system UW IMAP libray can be linked against. - Patch modules.conf.sample so that alternal voicemail modules don't get loaded simultaneously. - Link against system GSM library rather than internal copy. - Patch the Makefile so that it doesn't add redundant/wrong compiler options. - Force building with the standard RPM optimization flags. - Install the Asterisk MIB in a location that net-snmp can find it. - Only package docs in the main package that are relevant and that haven't been packaged by a subpackage. - Other minor cleanups.- Move sounds- Update some more ownership/permissions- Fix some permissions.- Update init script patch - Move pid file to subdir of /var/run- Update init script patch to run as non-root- Build modules that depend on FreeTDS. - Don't build voicemail with ODBC storage.- Have the build output the commands executing, rather than covering them up.- Update to 1.4.5 - Remove upstreamed patch.- Add a patch to fix CVE-2007-2488/ASA-2007-013- Update to 1.4.4- Update to 1.4.2- Package the IAXy firmware - Minor clean-ups in files- Update to 1.4.1 - Don't build/package codec_zap (zaptel 1.4.0 doesn't support it)- Update to 1.4.0-beta4 - Various cleanups.- Don't package IAXy firmware because of license - Don't build app_rpt - Don't BR lm_sensors on PPC - Better way to prevent download/installation of sound archives - Redo tarball to eliminate non-free items- Remove explicit dependency on glibc-kernheaders. - Build jabber modules on PPC- *Really* update to beta3 - chan_jingle has been taken out of 1.4 - Move misplaced binaries to where they should be- Remove requirement on asterisk-sounds-core until licensing can be figured out.- Update to 1.4.0-beta3- Update to 1.4.0-beta2- Update to 1.2.10.- Update to Update to 1.2.8 - Add misdn.conf to list of configs. - Drop chan_bluetooth patch for now...- Zaptel subpackage shouldn't obsolete the sqlite subpackage. - Remove mISDN until build issues can be figured out.- Build mISDN channel drivers, modelled after spec file from David Woodhouse- Update chan_bluetooth patch with some additional information as to it's source and comment out more in the configuration file.- Add chan_bluetooth- Split off more stuff into subpackages.- Update to 1.2.7- Fix detection of libpri on 64 bit arches (taken from Matthias Saou's rpmforge package) - Change sqlite subpackage name to sqlite2 (there are sqlite3 modules in development).- Don't build GTK 1.X console since GTK 1.X is being moved out of core...- Update to 1.2.6- Update to 1.2.5. - Removed upstreamed MOH patch. - Add full urls to the app_(r|t)xfax.c sources. - Update spandsp patch.- Actually apply the patch.- Add patch to keep Asterisk from crashing when using MOH inside a MeetMe conference.- BR sqlite2-devel- Update to 1.2.4.- Took some tricks from Asterisk packages by Roy-Magne Mo. - Enable gtk console module. - BR gtk+-devel. - Add logrotate script. - BR sqlite2-devel and new sqlite subpackage. - BR doxygen and graphviz for building duxygen documentation. (But don't build it yet.)- Completely eliminate the "asterisk" user from the spec file. - Move more config files to subpackages. - Consolidate two patches that patch the init script. - BR curl-devel - BR alsa-lib-devel - alsa, curl, oss subpackages- Do not run as user "asterisk" as that prevents setting of IP TOS (which is bad for quality of service). - Add patch for setting TOS separately for SIP and RTP packets.- First version for Fedora Extras./bin/sh 18.12.1-1.el8.218.12.1-1.el8.218.12.1-1.el8.218.12.1-1.el8.2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protection -Werror-implicit-function-declaration -DLUA_COMPAT_MODULE -fPICcpioxz2ppc64le-redhat-linux-gnuASCII textdirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=8350d0b8cd07d606323f9c390d1dbd339ebbc361, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=95153f2bfccd5109b20f5813e26f26ef34ecf57e, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=eced55e2f59d32f052e6c3df2e50033155d0f6b8, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=377755fc47a48f8dd66682fe4a42efc1a310839b, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=3173419b2f010cced62fcca94cdec7beebcfa560, strippedPOSIX shell script, ASCII text executable  R RR RRR RR RRRR R RRR R RR RRR RR RRR RR RR !#,3] b2u Y9N4@=F*Iu1t jHBScIl'󶼎z|(框,þHE\\;B CGN~皵Jh9I\)ݎ!:[dv3PE~CYRbc|m/,9 S:'"#1#yV L"`KFUYתhsYJ;A\f*Ơ5첎7OAֽ@@ 0ij] v1=po#*H,kda5TԻpyKu-E-ZH)*QN#Z5y%w*Cz1ı"%7lH?\y9-s5p+޸bcZ̺œ! w<* ^3h~h=Ѭ01%gAlg"$-4ڗ|zPJBa  !x0_ ,SW[DWڟϮ<:bxK]nSn \" @OEtx`C & ;AxcLR[W,s5zg֯Ц,珷>s}Ȁ{( RMkX"39ERqfqp{gat)2>MDWX"VJam#hxmWju{[>r^lySF~u %w?s2iZ8 TSLڲ;ύgCPM k bN&+ĚSJ>PPзL (f~׋yF~ud:mᎽ~]z:0R}qבoH߱;YS$q8wIXwzuxup,SWm[K(fB,3eGrS/yd? 0 y(3|?Pl4=-*é|1#tBኚHo}6xM|h›B- |b<@0<y`Gi:g[5CG_zyN G(:[f}. Ԅd֕P :EUA3p2Q5Xcw0CKٺ߱"Ə}WI&KOlK8/X.o1gğt/VU Iѝtao=blVk޶wCϓA=2T8ኦbOmW -0OUr`.P6H&F^Mr:Z>U.c%=8Ў1$gT\ -ţD7P LЙlDg^:w#;s\j>B?-xk- $M;&m?&7aP{z2pSH:N.%ZSOс$Bvio 72s}lZϑYWX5ey ̻&:֫z겍WZ1tR6OaecTzD R3,]xBB;![Ɓ ,mRFOP ){G`iܔ3f..Ge,G){kYu!>#5@NGF\\ҭh)} 4E7[7 vydE .MoPPљZĤ ܛK_ǯwmtݴ`!πJ[T֙@j&6忠V87ipi"9]|)CY6[^K&H?ܟl;#b{=sf"`?P ffz{zOMHMY"]z}St'Eʦ EWVJ F{SgSCPHhMMBQp:g8ynY3IQudl)_:N955p؏c`w[BAӼc>KT?/Xn"$S+37đMn3h˜e? ZB5j<rnhN/[ jڻ]aeR$5#{+lnޘ+bCDvY{yd1'wЁkl$ee!;Zf;d;?77Io`c foLuE`{WWi n$ }_3/Nev99qh36M$%(ښ1X퍃IlĊ͖b|eO~@1呠n:Wy)Czniޒxy^,|alv.T&Vzٛ]Bi1r 5Fwkc']U1l֟[<,+$vp>]| Xqg1`.Bya6͔irC&;,!S /]SqT]h[N瓁}#jYð%1,M#*B'~X(/\ùrݏWgUS'=l`LllC Ąm٢yϸ]_լ:`̭IR^"J g䡥oLVӁs3a븣~KwH1ekyjٺ.+b@/kHim?NTvn+s1Fa-dfR(צڱV_AjR8Ԫvω"v(˂UY#%"k] &[Cޯp"ƻ;~`(x9۸*531[]ѳ;)c_%/3ߖ\p`hnyKTlo^r*7{_eb|*nԎ嚖_Q0 чVێg!# A߬WniE)],k G)0+9ߎ{ˆp׮uu?t=:aSsWL4eu'44WV) DleAra .l hǜydHA+}1߾^xb1`D%]5 $)Ee  Wp^r6_rq>:OsȜU[F@c_Ќ.PԻ\&OU?C@kpzԎP'TчwٰSbEBWyH=ȫC% 0Ib?^ 1pg.J(,>` 2E ,ƴy.Ve 2,[[z$Dk p' )Ѫ.kn8+%| 1i3zu7(/ 0`Q)RuUӻ>1o6LI. e?贙C1{1>Dc?__ B#hq|0Xi` 5gԫzqתȦ/0[o7oA &۳` TͰ#0m ++ZFSf@xۿߢZ.Qo(7S ФF2 Լ͞}U׎CvWe<&$GOx(weA~-9rL:9RTQ=b5k{ KѲ3W~NڷpLq:S‚S#yAZ<,I%,\-ގ7j7 hz8W;[(hmKDkRќd E|~vS:jSFEuJІY@CC1hs^dwaB3\w;@y?O7@v46->yZDοB*Lr7G8HT~O ycm h3+Lp>T(jyOٙ0u!]G /%mas7 ?Y僂Rb4GTrI\G,i pM,lh *bo90W[|\90}x(a/c5tf]h!u 7#FmqU]V&-=tHZ.s}2^Rɀ3n0ܗDS9GET|Ϟnn4nW E7@W]>SvkY#agBMϨӲ&/:B/"vs.ָT,dR +>8 \U⛷h 4$Y-H#ј%lkςug&Aԯ,?Ȟl*Yj/E _^JW`ƒ2.C"3}c[vc-S>ӕ8[ۮ<cw\ ^KT3,[=|TLڦouJAڝѷ(! V-.^¾cil +vo$G/9JЪQv Qoл3jq`fvZPSPK(BP ǽu]͉-3PDX .F'8)aS#x n<4D{G47T6dbGB)JkH"󺮂OxƩ]8^Wͬuᅸ$~ Ew(z'GGCKrJ)H,ؿ$Py'`C{m?ȝ& ~Q>[{a:gTY~BLGzu*nUwaXЎ$t>8D 3lQ%yl`K] 薯2O-;ԜDojgo12a}"Hbk-ߜʨW:)U?-%}1L C[ـ# ow$A)< XM|:Te^N|u:MioJ|#?Bޢ"-`jnz3v+>U a6㇤)Z,';3! V71=G M*j=Wv- Q{:Bs~[ /E8kWG6SO+ l@2չ"9poĤw4?^!YW'UrH'Sle !1ycHʎh1>tf8Rc"^G+k40J7AWù#;w>\ȧ޹=ak)=A-.Q ݁HYOoS8ݳvԀsM[(ƶ75k: Qj@9xc3o =ATB!}_Y5ʓD/Ȉ!XBz_w6z5X-8H1{n&QH\7[D`\#淓ȭ+40#u-d!XՖOMP77S=£na+8%1nB){7S?/>>(08/pQT]i}WZk˺QMJjYzpAΧsl<f=:j\|1 ]m0˞1ӋKhGǿ {S!`9{B׵3^F01+srHD`g$VdT\)tR4\C+oxc>k6S*}rʪԛ?*B"oIțߗ~!A9)%#D|+A tr >Gѫבc ~y;'N.aθ,~q +[k&bߩI{890=nϯx }k@n2'k3J#tuREJ#eUΙX?z8oEDW%]; 8Z 'e1q(w%At#_&KAhaKQK?yǔ^u#Qp*bscD$zpd_H*{GL,܃{r*3Թ =/pabhiU9F5oaZ<@}Jӑ0Ƭ@L֧MwDa)(JP\`*;rIiyn~ ?0{<>sowbA `md7ΞKII@#%4ȭ̠MNCKSqJNL /t.ޢv?ܩ7%/vEXw )aeSDd:|pʣXJK1I!{XPGѹ~ohl-Ϥ(mj,FKx5y1td9{sb̒l$FCLḂSG aH+Gsn.5, -˖<-TUAxk}~CWW UAT.*+z{uqe%<PE&iI9? B.G'?kMqPe:G׿4iO?L%;sP3jupD0Mf 9̈́уEDݍ7ЎNOr[*%(_f@rWp)#& ;Y׼CaPA4(CnTNDU B_FǷ H^o6:i^߸D%@O६twI5uze֜+,O/Heh+{peSWQ ~,;ѐE5>>Ӟ!oB՘DSq9hN`lژQ u$|"Jyp*B+{">yPL֥ Uu6u ²QRM~dflQ&5cqp8 k X(8=ɸ9,n;Ny ]"G͚O8.$w-VEo$so GСbz>rAx%ŷ0NbWWW ᯝx~ 6lh ֑uCB%IWsxl!>h|`Z-2*4p}vW@rQt!z[8=Թ+w$qQEfYyWAf;Çxԗ%7 SdaA\cM<6lɞչ0/0}c`}_-dg&tMD(^.?QQi_ }Q,!:bL[!s_>\c,hNG@믰ɝF}"N'\&E3L " N&o, X̞T-3A7AWIUn|Q>8soJp\ r(MﹰgTWGkG1=ցz@r'e?v ) 16eec|qLl}d&+_U+>.m2 /0Ya֛͜1bQRXcN)ᑷ,Do=l< dQ., %ʃ2%c)](:T]p#f%jYu)\Ib׺in?iD~% Ht"8;N?n:#e8ߗRgJ 3[;2#_4@ocU\PJTkrV} {hf*4pˎ/D<.vAfΚ~GͿ}_W"xki=޷hJS<@ j{; E9d}G+CR )|De ĆIu!7 B)%`;ЫiFn)u=ZY\n|s8%s2ė8ʎc[O14f\bTh]o`[W&CmXsp_?Q:Ҵ=n2pdO7_Ϣ,x|@^; &}56]| #^y)R6/f·ɹ_WxlZGttq8IUb6v7J_.Օ㗦SG9ȚAyh5c,!,j*1B?;Ta t /XJnG *7*,¢9j_Srs y&[#O-m1 Tz|#Zɏ[82|g]!LR_\;ַJs5?5CEc'9!edR4}DjX37#[ok@?#dx䧋^Cs=ڃYk-Wui4mm,PbyME qO]"`=6f}]0nrz<4uL]*zP[ߝ84ߪ@esB. C+A ;oj': X(|e,ţ7~QM %d?-:lFD.B5VȼZ{I!F&+|vQ,.իE -͏iEpym d%1[qٸ\\ȨfBQ4q!0y:}wb`phFmfY;vH({?u">r S:˘aȭ8LآTJड़ϼkT˯9 y2@*4h!YA"M%#ODliL"Ŗj#>ӟ2>O_& YT]-ugO`_A 3Ҳe )hgj1 YkR عs>Q^XUP%"t+,!{Sg9AOvrF\ Kdko 4>kbt67+8[TO`#֫TQ}\+9ҍR$7%mhO{w^ei1 Z\Aah9Av4EcA{]: 8,Kp' 2kӆӳNrCG's],^AG"tSɽ:0&kXZ@`㗁+{O+cK+1*Km1rC=Zuw!7ˊ19EѺSStw5iA^:4O?@LBk|EQt۹𵁓u zQs1{q{bx9lo*he^]Tpd==LL Eڋѱ chPP/C'9#9fjJjp}†ݼIT.;OgH1ȈY G).vZL)qHL㰔kpg#;񜂌rYYb3|~B7r@1G99UXuY6fўK,9I09 >lЅ*ͳuVm)880Ru$)qPaC<:֩"i0co W ॒PGMX+UI[`L-{L`T=X+;6ۣ*M$YjkR _rd3{Xa9aǮ̻gA6cҳLeИm IXG'!7tDaqKgt;[W(Z5髜@F&lHs8chUbZwrL)s:奙?5޸SIe %'6ͥ!U aA[Inᣗy֤J ,0#kX[>n=P;#QnYp-FmN(+-&&Y"y$;aY^/|GYV\{\ι*Ni>k1ZPef7cljq=#DPOҳҧ_?س E^3H&S.ލ}v0<:&941 *rU lݶ/7u iS:'U–3E&OJQ0ѿ"n6X=o@&/FZ\EO {iNST]6=|Y["<1j`_᥯fk{2G u[ցfBNg; UDgKƀvThTcvQ($MTJvL?c]-"Z_璄 )uΑ]wr lSHɺLۋ!\גF'vs2gÓhE)j(nWpz?SA:r+RοOÌQo2;F(-!vGWpB畷+YXvH*U6ι ]JEQfɚUd"R'wd7RN#4n _*KF.XV2нpP3/<}I*:αOOtVCrE + S+kJ3hl q G7QB?x %k:G8nO0doXiё$mO*b<|Cō`0A dyZivm+BRw(]~x*M@/"?"$TF~ZXG)R}&_8rh{a@Թ2G_1ǐj8qr k^oZczѣ@rG4ZE=z.5 4wJ{x8`|447.E [Ќ=W 7u#Ǔ·./ko &EC`S3wl0%L?-ptќTiƁ߁gS[ڟwQf{*vpTNXF(!a$ yσ\n2\Q%( ^ -߆W~'ǒy7lW8`Q%S< ww}@@;mW0( P\4S_J^gؔQL߹6K5TEEJqB󘾨]Ri%I[$ɝA6n_4لNXf3w4B vj9/pb;.7;j@РQ^69T]oH tXH҅g9!tݾ^ VύJwUAZ G?oY/[]iy.U`.'m"-H=ľ](Ow [!|r8O >=3sض^ϕ&j Yּf)NQ1#g^k%9X{4^yUcuJͥ*[%׫V?Ű1+:U%ҕ3_JQ`v`6ZGQp`q:S¼FhX8C֎.VК8j(}&tX+H0we{C(94FUwTnoJQoIR9Sn2)M*Mx7~lUǞn#HRmS@Y:'hfB;/Fܫ%g/US}E_] pUBbxZ;b'I!O8d +&=N|*{V:4Avf89d<g@ܷG"@-)aZhIe^yu5D!$/|>1Ȉ=')h'ƜC,@-[X]Cn[W,nr8#fz"c kZ.h)ѐLTVġCf(M~ӟa*pۀO3cf,!םA|@k:('/iOaT"=\C^`'XS8٨pŊ7j_RvJ)L(r=K-.$XczM];_\;h^obA?!ayoy?ݸQ6|lfG-֓#)#H)eSxs:Ɲ&nZj*IS־{n ^İ5j~gu~F_NvS_9C1NXh& ܈~0E=w~Q R۩T^ǢkZl!_g  q#ETx g_ʒ ̊ I7h[Pl> TG`;jkPϋGN9oGhVj4o/ZQꈿ]ʴl> yƮN{Lr^ԱDm9<}%KFB2{Q3.NVxa*HjA De$9O)Zu| X(l~v$Tu\հ"88k77L O_Jq8> PZm-o%ie )ԇ, ))[}" ף,&HUzR v+M(-1X[4 Ew7[kS 5*Q"qPi @u0 ǠEqX3r*ҝ mcaQ.@Ϛ3 *lɞHRI_?A.X@T `2q74˔(W3U: =K' GI0Svx8= ׉s٢eMiT*t'掗Ziӥ*R W-HN(eKԄQ{*od1,6qލ~xD䢋gKNq7?@c|!H>ӹ d)H+X2g^ddCy A-n#񾫉B ʾwgHکH Ik9xhf>\.4317Òd+ #on#+ځwad$Rfu=̨<φD-q#e $Q- #˒ }ρ(sJrv+5,Uzϲ}y$5QaHI*Ɋw•,h fv4AN>N' %GvEweٞ+t Ml@,w"6)x+ 0}ܒ~ۇ _j_PäkDm-ľ%8 4!1jA)ߞ~MȾd{ 9Dp֫z*`כyejڋ~1Urw*ji; DC Aڞ/${]ĎDT:g 2"1(V>pJsX̪kFb)Ze\5 9²쉹Ђe]OP+>/#7|#"NPۣ&'E#4W;2{C^(`U qKAH i~$Y$ЮW{Dmm=!& ^Jά򚾶SCY|B3^ɿ=wP`C Pj'{̪.B#X$Ciq$x2~NnT/r[vG)?iMpZW96Si)@3<*@O L 1Տ]ᒩHT!_ļO̽PH.4$mte-Ft`,V`6.yBFwhAͶ%&/VW4t#%+,P!>]+4l]fc 1nn^LE9@ڪ\hCDe—b6>W7+3?-vi/ͫq3[iRdyCzqU3 (ޱbeK-ka?Sc&?}_7R-OhO%BNt03 A.|TiuNĠwɠ"eN7WSu"O}Mzռ6X;a"\S͜W(oTB=_`0r6#7reY ct `BLf؞ZH ҩ'# Tb/Lت/+֯bQ=`Mz9>K#ҠgNM ;EQv&"4QX+O*б4%_[^40y. jnzXG:n{cF9Z~9<# SpY`bduR M9{CNs_{Ęq#POk(G2Fl "b80k]%SRw7] {;YGdufℕSa&ESkSNN  vHiKdƥ2IwnB _DoQ@rn$C 9Iоt :ۏB C1N21fmUOMe!%(:KeaP|E TY8 M/-&!*I  k|8G+xDTFDkbC!~6 PQǞzKE1Z,UQ'je&XU&+7-tZ+(/ F|yO}7ScH(\cpd'+Gh@uKޡ**?9LWYnA#fPq|WQ3 w!}4܌sJ=; Ll ״Qզ%A>xB+̇6~0/a2G⇾AFyKH Y^52H$.g,PN5fAͮ8M1LS|?QU#ufD?' )eciXd1;6!/?p1-Wji%c;[.ɾTKpa3jcy[A"piľmN$t($ S4΁ˇC\O,h>ؓ\"㊨!߅`ݖ *GmbL;Ғ 5d]QG|/}z}xrOj>근v}ӛC[:RZkzOxӢk Q1, &@! 81D?zpxߖ6z6epAK[DKڧvgx|U]PqxOBCSj йy8uZƜI% ҋ@~q9Yܥ@{Vږ 9/0. }[1Dh>D {[$ԃ7R?ΒS3e{xJ q,-ݗr44֕ aldR˸|ԩ`AG*Zd#q(ƬU2{gaLgPX3FHZc u^Рq^P"מLulLv0Zp^k.[/c"Ranaېbe?r h_zg0tJR!Gmd@(2#k'G"-27lPOPT7D+Ȧ=з^U7>)>pan\݊ꆹӵ,b?k4Nk7:XvaVN~(>cZEg"?#7GL.lPXav=Id9JbէtiOȱE~!V>[I1Zo ؟QH1</鬧 u˵eHվר Pqu>Dtv <󪬤pKgٔBLvN }#2& x$Ot'k05C "k:O ! %2bϤ rspnCf3?_GܓxtHsՐ9q(7Ҹ>^0gyо:R^ -jlUQsh&]H5u8;)u,qڍ`xF5m-нﯕP,k0[pSL"!ts-z>.5vVg_yZpt Aw1L:qO^M٣gks <ֿ!ODOx'nleFwN {IE@PG:bȫpq 8ZujqV{r`V ߱Аf__C?㞪t[У!@Ӧ^P`eoi ֘?Gkׯ"\A, qG{ӭu?sG,̄mF>jeG FZf#g枽8 QGm)Aܮ%.XpJ*s~iۀ/ ]ෟfeM|=q.e]B9~zQn%ZȽ%2o6$ҩ[zuvxoy]ٿM4ύ焲{S3&Rbԩ۸kBl@r@ZA$ bM٥,CZ#x웰\y&MO]b").'Ƕ- :{|ڱt{pbT*3CoAIp~y1lē"zes$c^`9Oաc]uP'{ܠ4v81\>!g: }ƕ ̥MyD4<+@Xu$?봢!zƉV;v½$W@1]ڒw5nFXd_ @yRn1mh3O=H$R\%6>J=$\/4f@^i+Л)Ly z:>afD<^51&fQTf{#Pbo tFXݔ+a{)"ޙ DυY!@}qEM0fHD/!uovv8S٬Ւ6dȂLS) 2j~M{*Ȝ>BWceQ'#Y.iӈ0{9sG& ۩/GMY\| 4T0*ƘfO L3ȯ?J]a?_ 7ѬNY6DEXƥnM;uʸ-~?sC [G2ԶMw}F*k%Vt7@rSu(stJ5P] unIʴт'#$W'*4V$d 3H{pѹƘE#x&6Eflo i-nÁv f7hq uz*%({9_8{诮T]"j%gn\9?E\E{ks~v!B1+m`V+Z CݨTdϠfyRJ1Y{}T=]Mrym:YPbQW ytw]鮔&Q0!A~(40vճ[i \ n #H&O!~a{&#Q4y'9"KM&76ת-ZL բܥ$}kg|Qv!@R/0qkORw]}g2uIedK`({-i;z75ek+h-RуcjBӯ|0h|i|v|(  rSJmHi>u3X? s:΃^47܃AUE딡 ۑpp~!7:ۯSB:(rݔeu;KD\3Rܓ&2"fr|E Dztպx+o'ɤ9;=)oJHwҢ&HŇ OF;?ȼ]1P*1Zy7YH&HM7d=riX'(jDjZu;e½ZOb.Npp1 d)`9bcS(Z(<,܂ b_bMy[2dW NfinjdDepa,l$ljZwrFd83á\zN̅@lʂ*~ /%Y%\ORxǖ"՜|tl~;:ME'\}3^xU3AO#-/óog#o>Cw۸-r9.!-dxpMb5h`%I fV l@@9*Y 22n/vj]zax?T?h2&x S8K@0@ c"/SL=Y yBMB4ƞ|` 1"hڼBOTٙ*K!}ԀTm EÇ ZBndoZ%#q"a)D$_™Tu0"H2&X<)/61 V k{c46\Wy?LEL9m[+. Ã+61q-ֿj(CAa]deďl>,w5'&G2.T ٪Ρcy\YKyhӅ&>z_$Gx]EsۏLw,52X4 nDҡ?bfH’ѕf`,"|`EkXNֱO ɹ&;hI9/7ϣ<ˏ΄p;j~v: ʋn"ڌoGW'E艴Ѱkb[놮1kB}G6lswPĮ`؍D 2; ˴kbGH^i5%{1My͌\l~iѪ[\#nK)ϫr NZ 3jKelXеW%*'jPE8tu)~cۆzAwV^m(lJBoLXd;Y%+TZSV}u&DW?D*^Sz (#6^YNx_.Q#= 4@@`8'_oWP-_N譚|x'ۄ e1nԱiEFC烃%|`gXIW5 éC﫣LQ냸#E2I=)ut>{[Ko[͜8 jkBVp>jTI-J'OBtބث5NBf/&Թ [GH31znN!$;Og/B$eosSo?_cQO8cl]h:eo+JGLeQFg%-lED+\)QFN`sU4N!+5Wώ45lupǮrlqdGhQr$\ݜ`J[ZR kVPJԹ{$AsEZ oz&^acƭ etPgGRBJ}&h"T^S?k~{a֣PՄ,zK joL\$BUO ý[Ӱ<ff`< |h;5 \% 7f~Be3!xӆ#s,`¸Ⱥ:P@M(Fx-3sDIc;%I@"eGz [#kHHB#R$b#Ym&.F6j'$GK#6'CXƠ4369n/1u%cE'r7rO՘G 72ǽ(\Ljt6Bb]nT&cvtݒO +5k( \[ [@l{hї+2ȚsiyoZ*Wc܋WAeWvT _Y8ʃy5Cߔ/>}^kϗ4`6yUQ7Vض4Y1 \y2~9j\6~(tJ4VR~DYZ2N])l*&@!;bM]2c⹢ȻB }<lಟ$fZR*+XI Al tK d ;>&:[uB%!/0èP$|njqJ& OhwF BtSw' iބ3ԠQ|JW.h0$jy+v5rIzv(Wme?_QQd)_;Dt'Β 7 #3û5\$#b4;}(D]qSl 9:ˆol\ ^/b䭽^ ڌ=x3 ||p}JVEf_u"toJ_ojz'^/y?VȮjKĂ[̠g94Zql敢>Agg .f/<|Q^+9FDX[pV1'&arj[A37h˩Mw1ʙb̆[(O&Pդ)C78 #FbI4 Yq "w 0VT-Vxe+Gt$[LED`.ޟ8^p6K`#ʶ"FӒ*GF;\$%y*pCu*aх ')9aHAξb4-{q֘o)O; [Xٰݸu[B+Zka{[Z'Za#bR.zi<8!yZg.0cmhFqJ.tfbc(:1P̨M>ͰY /jgNR^J!,Ͻ#¦L:wx ?ZV@k9 X(ЪB?Qw-D&Ma{0MCSޓ?F%ߗqct0IE@1St~z3[ [} nQ'mwO5` ?fb}so4ċ0k.>=ϵ0.Qb)09qG 7& h j4d7U64Y6ѕ5dZ_0_ۿlo<oF Zӹj\D?#]wP%GOxJ yeyʢqxPXF, O s<6r7$^e%v 8:!F7}*:OĞ⧺ U5+wX||>3toN~$D O9VYIsORŋ:~w+.eLe,.po%;rdq5^oJ4vVhku82 nV /{VמC=8uwPYf8%# `LeaDg-iQ7(>MH& $9IP %)D8 &G(%MކyޢۯieT;ӟ[Fk9ƯT!i<ږ7ٰ O_p$ ;x9&vmWln]jq<-t)0WOW.3:AқdOGJ ZPm&zD* <ԏ|"5|c q +HNQNZ0M!VMRN\8мܗsXvWO7V ͵,+&'ht?},FoDpo7jj!QQ6׷#6C>];Ƒ پ adD+_wm6n?p3 LJta58}-P`";+ZZ=$91|(GKK&ERD&6// _}ןGz"o@ M*CJ8VFBgò)8 H $7"թL$)p1w63!7jB=e41IK.DwKEovOWn eiy3dg@HIB8G1O=Vݓb<[Mm%_fcx;7 rIiN #5\zIϧ]u0d5DM 6cnpۇP_IjO&.r:55P89~K󁳟BcsFS5#(ձL1q(6ΛڴhV~ynZF$A|'I7Sb: ~Vc;1@g*tç,B^lztACksc2A92Wi9ۙח}'ݭGEFD }UmϪ" ~}k&yRdLِܜmo'i6y'ɊZ C[']ɲK BxF64X!+ pd.":,DW>ȶW$𲠒H |ckV8V6p4$%V-GBԄx)AJO L"a<2O )k= PˆP&rny$; Kⲧ&ss8!OeŒ^ ,ޅQis)3HDcp  !=Jڨ Ar `̐J<1Cm %q9޻N;%BAkj X3~s8֬?6s/b?=y ~O*CXHe9q{sj֗C$; S~[xG2D#-Z_]C{v em#Н4 gh׃9o6:jN 1B-ܒ:r:us:q VQSMjJ-TS! -~Dߴ]C 4EEªϺV;PT>CFf2PB9nd! Nvks*dkVU_â X$.Z\X.aƒ$ 6ұI {O=N[t@Wt'5oT.(}`D5FY`nk,Zْ: K[*+ W>^A=T༗_3tt5@ï%o(tU&\2*o40&`UprGϛ`87fl|hS~מPXaт,< 1ŮIfWeril QXq&nTx7>_#J6~碜﷐xe3c(-3594(*"]9dz5ԃ1_vF/+]tmzj#U O0:_q+r7ZIrd(^x3j0UC2gc. `XO~DJDP yf/Ǜוczq K9O 3~!7{[P1k`JmQ߱x8l?+Dt&x@/B_9]HEVZ֑(ѯvC1;z:gE)I!a?uG̯dyٙeAuIk'Rӫ ^~t`'J ˙i::0Н?܈ã0շ0NgX"ďq޷iJӭ$׆IYy4OT> >VHӿru0B|[wH7RSRa5*^`&";3IQ0rM Tf|:v .Whva!‚ۯbG;q&72G.A)5&,9 ,&" eƊs(gcg%LtAcCާ>,ffY tQcP4dBs3csfՅ?N[w\ſBhƖA> tw!(<3? j ^8[?N2yLL#gmDnme;옼p1K|zl2_Q: +g);TCf n9.`qR3~=ay~;l9>E{b19n8Ŏh 0[~z5z{HrO)+67 HE5OzВqG&2ܠi15!@O.m}tcts7<Q$! c]-5Cb[`შ4upu} ~]la[qן:fB/(աwp~M4NWˢʆ=>4+,wM =?bsGAG[.y-+"03MjtU0\՜Li>č]Z[ßu"JvƔ?w>tYƂ Jq̻_\rc)Ÿ{$ok,-d=c[!8G}$W%,Oa'@o+<. d2JiG/nBZE;.߫~ٓR# # c}Np1g$Ɲ=z/[P"{b7WJK2Ul 530=TIhE+cܮ.I>ÏW].}w!FV LMuz#t^YZ(g^~if8uW][|5HR<ݜ-%kqzE( ʙ#،=ikr" JO%xc.) vlFqy;\qnGO Cp%`*m(3 OȂq4DqO\p34N+ S-OTVFan 2|܍:U-h7l##jx!W =>Ԝf᥍ hۜ\˵ FAj +]UQ֮U/ILKL8l%ic%:j5:5~l)YI#yl텯ם=m>8qq aUYj!4B0ĕ^QcJfΨYuw\!7.S9!-qMT3[J  kz+j~.y#zRڏKnWS3nZzy)scȃPT7KZ#: f3Aa2h&*O-ŽR#HgwBu/ B4EGXiAM*[P# s"/6&otmX{3 ,!%R66CKH=_qO@\.oHXґ'.d!!<޲1tzVjGN?[bZA:Qʁfyt?tn!qVq7YX =tT=Dx6Q$u<gaދi^i-)J[xV%0|TGd!{X“sw?p5ubSġAnBT,>uI&Y4%"=ba e5z SÏ5de*ի̩ t`ްšUXGq Z2%" >{Nb ӛE:7OY \fqPC'%qvCK촧Kf a~ v`(G'MtmgUL2=EQ BO#?̤~|Sgo݈`~\z2Ή'(ٞ{s;@;! `@.XSK u?ɷF1$ oQ1A1,v93@ ^Y]es_Eo/…тcɈy80JdT [Qm wF&(JqIε#!cr_^,\PkzGv*lG,lbe:_4˓]E\aLdx9/{hXcVCאy KNURwǿdK3Mq+fDsvThE]bV^)yepҩnj$ (]rr̍uq8tM+HsBNok}L&5+Kr}=9`+*X<7\CY⏼8L lk߭ ji~rֹ݂K%\)B`<LEDO3KsL|t2'C6kmb.@q ]\d5!F{ı瞨S<E& =#]bKϮrq#&kijS}QM:6=+fcfNR>]FA$*9q2[{|RT{$9m&RM=nvZAȊWxq/4!|r?nm"{g^r-By4*}+Cp0AjZ[ ,lkCZi`poƄа"3#of|G1βYdhW"Awi6nn,kKvk+@xv Ѵc@ٽ.3&JL֟? 4f:Ҳ!l[64IW>yIןW)G!5QN+_Lݢ99,YQ7zv-Lp;J̒nh*@hVM ቸhP\m-ؿpN鏑]^Ys֖0nfkN{gxɄA Aj%`ɝey?zzKS+PWE|٣h9< 7!\$DA RFJ~S&+eRC䚚ݨnCtW5d/:p[>j)dPšWR5ȪP&|^B۰gLM񒤪cWm`PN,DIm(J\A 7d bk LmZ>cDLD%$U.Hq| gj^ ta)G׷f9&P >M?F2hH~{`)ɴfSד4v5ndE=!fWŅcKY/`0GEW?j![ Y( 8 [y7D' cn{W]Iކ{LQ{zKO^*(AY:}<3 y6*Yt |3^!TT2uRy<6DWn\ J!retemE*ƻ,c$A"a3 &R,r8QxkYHb,bY9霍h..H HЀ/#v('Mg!Hc=l ozpr?x-rΒHraacܻTE_dxάaՏzu<]@lIqJ6N?<@hn1lݧFoV&t f >$e=r+b,egRĞ?"6?HƢ $Z)krHeU? ^ N:Z"өOsm uiq6YU2[4hE,K5ʜҕXYNW$iB|]bxTz@eLt#Z# % G0ν(~;0}0A3a!q",|!w;\?.&`W>ǝo9a, `?˽KR(r;BG^Pz֟Fӂ nPv@u.3u%h8\bvz|@wT ]:֓Rj=?}1}ct=pǼEN3|4 RmA8Lh-9R\Q]ty Y.րC+X>G6wG_z:b #@2$as |8]ؿe6LLt(f8 d@"g4LEu&W{c (T ufv.!wOdH.ʴ<HJ.)ǃg- `mxo7Flq޴`**.+BhPl,ps${lP`P - pVG mLn gFRR+Q`_#L-Yy"oD7Bk,)jweF^5X"3z: 5Z↵qђ~"*57m? #ڊ{ Y^'E[fMx5詘:uxSVy#A1E%)ڢ&g <.CuK y{_plqĵ2 -t3k!r\a^YMTԟF d k\ڛV-õ.dZsui=g6=y9o 8˩~!s_HÆ`R$Y3.ܢT59=- 2I0˄RW.o.׍9;uAq%oЅ0n @dRЕsN7TR|PQ7@nJ0 = ;ReM rV-ynVlZ lWO6F'm 7@\\*Y`|OEga՟pTg[';K-{S1\/eGqdFEqͰ9835U2Ekj_ q^,]|~n?P1IO;Kiy=Ț&"M İ*PM͞x7>kW !jf5z+C\V^%yJMK%0gON&1} R[$b{+$zJ a5LW_I4@6 PC& #xi8et3V9' `\D=~ !IFS@Wo/F9aDzPm?еW`ZT-eJkpCqw@"]68yW/H͉1 J,kTXˤ]n?]U9)b*~˛pK;\+ŕ(emvXs|+ *mv\P](+]~@pf'{S.@ JS zυ" FrkYwz}c0F"O}ġBo"ApS.|ڱ&}<\5ܲL^%(_Xb!eBQܹw䋛[:&r.0Fŗl@|{#Wr%Aw e vcjx%<J45%nu&f>zܬ ɕ(?Uy~eҟ@,hs!I#ˍŀo` ԃՄ.7YBJ٘ lL>DAnȑNMqI8m0]sAB x@l (hz8){R?P= ntM sjz!"D<\K'g>d$ F-c8F(xGc l" e4݆ ./?$ ~tߌcb%Bii 36H@,Y&&bC\LX04;ċnA8{gN27 ֪୹J< }(/mFL34An̹Hk8t8&]SWi5JƘgw0>hY zxWI5bJ7z^×ҤnWgob!6t!F9N|H,5u,;{U zF$cð=n7As!^팺:Ut5k ?Y(U0#Hp2jtMV G.6s^5+Eﶹd@b|YnV:^p5p6QrWdhJ8c[ĎW s[4>:sE,~YL z4嶆9 b(yE<:~ਁcٹtE:b#:in+.U15\V8ŝm6KB{&R4 ?U_Ǵ"NvU^+-lq1NF}:Y@@ ;8b#g/$C4@\ Rc/Ul_RٽN{Ӈ/+BlF~:QeD}Dҭ̡DIrZm PQ(l|ʎP |SS{ƪ׽L9Ʋ#\!؂ה78 ||t hBH` bSj2=㿅ޙ^ObFPt 0 Ұn^ o\y5%:* $4o|^czQI_TOprp-?ӊIJx(:ʎF:QlA tp%$8 Z'[] l5B;{\!;/duhpy)NؼiJE&5m#fto*m /!%i:5LS#i-&>S !a (~ϧ$brE'L *eL1wR(sg 9!~_hS}![–9Z } ^f"ÆX~Ƨ-y*97RrrE Sx 0FjǦÿK;MkIܽ%(L歓0Qn1EnԔ#L'(q3D.ד`JNb.s+%3w.< 'VS܆NzLPoF0 j7JC3TMgH[ A&񑷬 6q<(` *."W6taOE;ApU ՋJz˜o<ڌo0_%E :Y92/6xf!cx.EuU+!a4rK CE=67F;4ggмJW?GM3EyТ.PD܉=DWڮ#MqZ!)rsyK[ R+$jk#d۴ ř]6>em>b崚_$ bIn2u:={Ta4NP̦u}ܴƓvY8pͲ.-Dŧt2V hXBZNtG8wږ Y9n$ñ Z#.~I-l?CKnd%#zϩ.G`r=O JYw~[^vj6 v_sWɲugD)'PL81x6!5 q11+M9Sήu\iCA 6^^CzN=\̏˭oEg9Á 2!n$0༝zw2ٱP4YdzIF3dlv;9n5b/3!·]H'ʧEI2%-Z(VxnKmeQu/ʵFmcD#,c@7\ÆREXC̸^GP7ЃŠxCK  ]?W σ(66q}kWIcr-s":F z;793vIu HpRn!5,7ZOw^沬;tA:EKDml7Zv͠17(w,vNgT#8ɾZNUhW_v~nu66&xAW'dOj c`>ѽbyPhb̐kS\6<<d\YehJ[[\4Af$C Vz.e#ݹ6Q#5=] 6# 2 7w+Q/b>M*޻:n^K$k|2:$S]j^2[qTGNLA5h,DZ'xiS4/=[Q|}C:|pN7l/Yp Jd B"2=Q=6֕m' aH: NHYD }QQ/ 4b056veco#^ NS05y3[l .e?AtIr#f+հT$_#B}Gk۱ BL '7ebr\Mp2:`* v8do~g&0?脇'(3^~Ay?& L2o'hj͛-y(LOZ@T^d>@LtoY6Ud:4SFߔO1O.=l3@Ńr}-MdWuu2 G-{yP=WXag)2rV^%$7&:]ˮm7.W(~\TGn~*e@Ox:iYv(c+B /w>Kg'Qm!K>cҘ!1 wc6/J-d1}[+-FH: x`"Wq: =q2{C34Nxu国AzRP T\ AE;eGףQtS P ]_u3;=ͨ"u`_=笢28AҥǂV71Oה[$^$ǰqȕ1BK!$&^.:8Zb RVlo tg~DΈÝ kzhbu--O;I똟,O~T(^?Ly ׃˾e^ 3B0pIR;0Fc_I2kmV ;B!Nԟobi8|Cʹ#{吱gBx)pl<&T)(w͂2K:SVR j<\.m5A#wYu8\<_~}(Tކ2Lz&+uQ$£Qi >FLoN)%K[לmU/ ~q5!E'sB)r]1^7XD],? lu/vk[wRtt$+uy̏>inWэ`yreB.CYGzJ3+ts[r,3j -^)b!&?]V5,2=\Db_LlŘҒRX]cx~Kdx0 ZL#,/' %D Mda)u%Ǩ9=!=;_|whnV-T4lLZC2ٰi%He536p ja2e2˿g4T]E;ROOrh!8*Y؛cbٱ @$M!,Qixe\Q1jN^*G`ƁH r3^n>zeULF#4}:0J}QR]!G(5rk]K=0Ye ۫7p |,qsWKϱo#{GߡNJ+R9Ao;p#?Z3Td4S]ٛa]|@&_:u^]Xymy͡O 4&$g@&$B .F~eFn`pu4@'sn ,$N4;)cx"z&BsF_ԑ(xjo0PSQ ~5H->X# . }S^Zf+J`]u_2;<t|+sT q)/o_%BIHG芽リ p0\S[,CBkjI*^ըh\urxbJOs+L*,uA6EcEg#%0H.2Wsm:'KG`;ńo1j\Ju} K6J]yt3ZЗ[/m#*?d{Jb Iw^*9ňf-ih )YY'G(׬ ΰX\T1F*{Kb)6!dg@7%',a_A3a*WGt1Ϻ;J9ǩn@?ʭa !. S&!= dmDѶS+wnXh:abŧv K+J¦bf.eic KZ6=nzλR9͌uɻI[_<-P#C#h5ŠA~9(ePߠ8gdlZgyZXKXCI$ h%,MCy-Ef=KSJ۰je @*uZ4HY^~05-[ L֒2unm$N"gSpXWbUPP3l0#CL~d_gE40d_%clT@]jN~ePGTr II%e2A2:arCsK)Dsm"S2ƗxkxQkI(SXm?Kg%ߝt`}$gm}=dwʒZ2gy1J_̰ a2֎ъ'n6nI"1SA5aM9j}'ÚzACke Δwʗzհoךk74x&rAY8X\)R3׉DG8>ϲiC*:CzyC~|/h^ŕ-\C5%!my/=,'_@;͘ӺJ6&p?a i]&S*)Ӟ&Z9'E-gyp*χCc4tjJs+Еh62mVY04;n`,G{W% F {/PqeЎrnp=/q,j}TTG3usx~X-ߤVWn4YR =K"p3K$hDKsO@oT^" V䊖$qiZ:Ge4fi#|Jq.n^G8f*Du5/4:ێ &C&] 7.mBM x&Ј D͑ S^֕ՄRCNo"F#;"qy7)NrQ#"S߸@1urb=~ -]#hq=a/FvW0GW4(vZgWY0>Wqj]raOy9> !z2BBGzcE|RF(ݽx]&f(*Hg]z@g :3XmQ~ޠe[be*q|\b^Z\W(<.E^Nֱ x`M]H`DXB<!*-p2 170eIc I PerMqr+=Yq99r/D2;zb:HmPz[q0^[ pD1:`7+G`l6|"ދdHieSmr .G8XMt *s3X;G[b/̗d5%]躋Za:+.uhE&qhWq[&9I3OsT:rtY?#ٖ -_,%IL N{{sPr':( GIkmDZ5)F"?LYRoǙ݌?쩍vH(\NZsXĤ-̃skݢzDCYq>˖jGQY4j}9"I.ʬϗ'| +=u "n{ZjB_ LE Z,1n_)cM@Űq6=RK"yyO5 Y勑IaڌPb?7AStg{, v_1GWS֎z~jFA&$}ezy (vNgx.MVeT'򗚋o#%Tl኎_}Mc{`r=5D+E x α!F-" xTQJzlٌ>4[kA(vO9xzGf}8"n\ҧr%w2p}1H`w<)sʦ;C?%'JI(Ve,X¥q: F֓3$y;ƒ a%.ˇZ_~Hkd˸RbN3 a\#tG gw% P3uBPI^o:.s_1wÈORl/=S|MhS^t%U|1 ?Ĩʫ <Wdo&$#  /y^4;WaUHl» 1/7l"`5|xuGl+TJ9m=iD36)Z rob^v+̔Z<`@6!W⌯Ψ1VbK4njcuݿy0BSҨIvjZA 4s=Q0qrΟJJ9`L-2"vn}8ݙ;{ԉ; 4rd! 9%\ox_(4 +(:iufNMjfY8obZ_^`᭧ߓ,;{Se"0OBQ|SԈ}Xeأ9) kt?Fa(b:T+^qu4aqήk!63h>EDUTtri\}EI5T2EIOSԚN#2 Xr2%) FN7Ď=˼3cF\!}>WR0jGq_,PkI/OTҲĩ}PpT۸u<1fjGʳODŽ!#dy`HM-pﯼO@guqJGew?V}XpҾ߿ri<,K:!͔t O" w"hD(P$h5^yX& 5F{e< j6=D#lڇᮡ{`vFS"q-9-hM#Ca"1q9NHշ!i%-@8"qaLGx=֐mu~$%zq3`=$J}u qP\p+/ԣ]CÐ˲Qo*_k: ᝀ8XSdVf. A$IJW wxs66lڱGiґ!:bp֑IO Z¿Y `vߋ6Ug*rDZ5*ȣCb\8 sg{>x`.bY/[;qgN K%20&ɜkgRM[/ x:hƅ.y"ż"Iu欣-DWmnR]3 +1!a_Ƿ˂$Ϟ$Zϟ9/~$p3SNID-S:gOӄy bjC2\ZuH>AԚEw)fss*25$0N8QQ*W ۏuO|!~e%P{@&Lʁ /7Z81^'\"qHYדsrtat)$G};*a7ޫje^Τ@wi }E3qi9ȓ4z4LirЇ=}M|/BWPs dCUR\r>P=`+fwfL-D^nΟ6L _93!4sD\oCw˺n4o:(CO?Xz 6@UI9>HUcGB w3!Ȟ:yr<+Sj sYV;wy0d}lg-za[m+9S\>3ǽO6S*``%S*UcF;~xvͳM>]C%Ӎ۶ufzqt'*&SAv MXBWojE-eSz^opر*&;t[N/1Dj}qq+l.>ªtނNhD"C XyRcv/ &Z<y aD9! #Ȩiֶ~ E?c(n0uiAroBTQ5Va ?xSJt[UlډM9 d<Ą@tZlT@BT&pz€WHk*4hPqҠ٪S#!\/A| n x.fa ̼ʽ"otAf=;ך@{ THIpǵZ~=(ҨwhR¯)3@p[02Ad%85~$*[rvn4{,aoS1E$2 /VWq1Ԑ/h*Boe iFJe`K1#hA/jHBrvxqˈn@0A3*zvBG`qXh0ϯM LE]d }a"CIL\K+&E8clTO'EP&Ƒ)9(0|ː<*kotLփ:λLۜ4˒l7 [[,Ѫё3e3 k9T{KVRٚ VJBJnUV{:BmqֱT kXHfO5 MPvExfdCъzXa]2uL2N:kܞ, 2_).=@'{M%*_s~݁dK5K׾x2[)_|&EmMI.s(z:GqUWt#h[RImHErj[nFż? 䵡+=&7e_ Km8h᮹L"u!zg[rKj0>k 4^IF ƜbopSuu <#r쥺-8ӡU}~I<0&FmiOel+ܑpgm`lO3KȕWiPk!UU]wIhf9\x7S)EU|p9{ڷYt }t$TjZAE4eq4V /i~'NhCtT%e @q^f e(F,i rgSk姢jo='whyV\~UʉeݡvTj5"-S(,bQYRњ{pݷ9Rnt>5K1e!t$8z%]3,4/L tlLiMJY,ey$&KrTċ$N6[_ :mR@`gsQ[Ej"|"@DIbk|2+Oz  z7x*WhZh+BVܓH=j)gfsv1aQ7L+,aVN0y}՜׶S3~9$"|[4ϖM.2l+а 2eTvԹ8g)7cXGӘ欔 !3RCh@es}~P\@=%MbsErZS *]80 (*d-O^E$cdjLٸe\/(m/O=Ra|:tQrJ; ]á:CA7:(qM 4sb:1]w.x. z%sA՗JaJwhdZŒgεzrFe"lGpp`i2(]{I#swC=%aaX@dA4pmƒױ^($y:oj3/J$7jC:EtJ㟱;_ü'Mcp{ұq6.S"lD'\t,:URV;+wWؐ[. ʶO5kI#VQ=q9ftJUq/Wޑ@I賻]qUMB^ K7A7jg.j-xc%m3ٌM0m\(Vm.>Cm׊1I, O6L'-߁!K[LyIʖ.[K`ShHN^~pyNul͑43S)Y>i}Ϥ&uF}S: +*Rԭ{ђ0Ph^e lWVh[.mTy?I>po+C5J MÅ6kqk ŢKQC*Ѐ%e:DtLrѭx֏%R#jz:t,!Wl%Q#:NwƘdž!bgWyY߱vGLNpUQ %go}ѯ7w{j?8iM' -ln֮l \vI/14=4yiɥb3N%' qP};oہdR)(R所E0;JCfJ} `ْ-VTfhtD̓t/Nj"wb7Y/:WyuV b<]4Od#0B6ABۛ%M[ͨtjTQ;*5T[4<\2.nk8OB߲^\X:餡]\򷡩etMvP3HJgymAs*M|& raek퟾lOΫd d#iՙ]96*@QM5~r#E^]@Ș ɽ fD6_)N!vxQ [u^՝/4S\릋\[LK|~kۘe'X]4W ̲exKN|,)>DF+v}Fwe@N61H|`QCnDŽ % 45 Es䥯 "^ j4ܚ/㻝 QQy(B FX$X 4@^#{L0ʡ7`σk{фTGːxվl!%/oC=Ο%ur`,Wym2ZmXYG 4MS^h{޳_8(~}]w&/˜C8Nਖ਼ :# g482V:,$-~& |zװH>( fdkUa;fyº㬃@C`$c<'"OmFݲ,::~ێ @b2Fu=uJ(Ti'V$7`f{]Iq[AH{W˜xX"Jk;`D7"<{2C 3r`M2IX[*vp. HL6M3'ŢCNOH.s53Vrbqۺ.Ec\l 6>ɜNjP3bݟϦ]$*Vq'9[ф es8Ft-"pWUa' ljDkj\ !wS=ǼaA/> NivN@;>r E \_jX\v#z&7 qQ &4*8Ǧ!ĔWhH uGG J})/&v0 &@o*3{0!Jל{=^ޢkÍNd0Kc?\ #9iy|Ӳ(8RB6zv9q\982>GIV&_x &G]w`;|SmqlF%:ţнcW)_ןoMq[.(k&$[6WH6ݍ-rh'5EƾOdUCڝP 8ui]F)W! ހ-W y>UHVrU6兆jFFݿ[uݺeYE u7~,J^ƍ 1Q5y=KƟ1-C^ LY'+td2 ŤHnJ7*tVP8wi 2-LW~-x.Fp+'VIe}qY%aʒġQg̱췶1%89EZ]X:U3]t@G;aO9HgAhBH`@cx\= -k./6ЙZRh~lֹ)|ROCb9gK:_OÜu|H8hBEU8<N)ƲyWyd[Z X~%E-Ck ܀,x6"WnXgi žC $ijf`L>Yw GhF~u*$@j2'`M|ʰ "9P$o(cYg,Lh6&fSx]cVlYzfIrkwQBOSMXJ;zZ]j^a2GT αy_WL]Q-kf&5zٱ3a(a+cC-Tηz~8bU .۫:{xB$)Vt0[ 0x~fCPY/(Ơm5 *;>DF8>k#J]'Ӥz ^mBAיx߉ox?T1v[>kiz$Yv[S-vH2!:wq|Nix>M\rڴc;8S;i4Z7t߻Pg͑S[C5?Sry[M)z=C r/Y &xdS6v!W2} ;mhyfv3۬feTgAl(mYE W`ãGMw5?3-,{4H91l5|5GSs? C\)=d 2Ƃ!_)SDD웽}rS5FB s ]YzPffL'dbAMn[ԡtw["SFTD :¯FHj7 +'ʁ}=e|C)ũ9ʍ'?(j=\O 'JӉaAh.p`W]~v?ւd?#t+ŗafWTq>i ]tbP@ Oo(KSs U:^O T'xh9Zqyl4զ/ueP1{^wqeckZ8|L$@ +aFCM Il=Y.9l @*Na75Ɵ90(*("d[$V 65N5qE™ƷMe0^"p,mu}Dx a7.Q0iarV:+fjtPp NGiH#fY]Ah~C=jdAPޫWU[Y:1JQP`ƙNd-%h U d+t.vO!7(8=ܕ|Ę$]σRfba2fXbfم*J >&ԍ`WsZk#= W˜N@?zʄ*f'^EPq{7VuE/hj#~,iф4UȮowmA =M<5h9v4<`Kؔ'Ze*Qķ0O:Ϻvd0y RDY.8aC1><۹a i! Hnhۗ[UP9iw)"4'JqTU4򛬵x^ .1űc3 ydN zMH.HKZ_!AugϤB8Xx]5_n;-~Ԕ&W]mx&K$Oٟ<-ssO5-QYQqniTPCx"jnT{q0<kmʢd]3 rdmh—F@G@̫84%C⿢LߍA'(CnD`x}|3㕪`0Z% oJid-r H)9D܄2=Yg']U :7rU YP!J%v;QͣUaimӠìGˆ} Z"<mfv"Ԭ-R @:} ԯɁŖ&j)(ОP1(xZ.FvjCUxWˬc+<.9_Q5 Jɉ.($?mOfgF|_h5Rw,5-` [q=8 30#F/+\-)u0P %]=&zv8<"=8 _).]7/Ԍԍl[M tM`/m+3?P0 Z"riƶ0kfaD6O Xo2р#^te޾RPrH x#vE7QE[HGV*ҁ kpY~o0JE@!彿`fLB^[$}ydv&]!??Vd (ʖUc^.$0C`czqs3)rxMo$ԟم.W&n`goL\\1hYu[mw$fy\aRhp@޿mC_8UWDj;@#][l}T&@6!1k}=ma\y^5|DSn_ƀXLGFX:y.ĿV6}@)TIS׍їa gqV > ݔdHE*DgL-\<_d? ͔W"?P%7]$K'h1s[Bٍza\eb^`_{jɛZR(z^cu"0ƺG&f44/R> !_A/{Jً6OTiuҨ=v|g]5ђa,eN-I>Įk&9; F, A s-ZրAa-3Nc;|20:#ށT/b(lBf;IFGu.QJBL7-˜e0HzFىoG[ S_76\dh);HG^B4ƫJx|j(LL)T@ /5JHGRX`)HǴ~w4(w0y# \nK?*KOv>k"Hc\ 0G ~pA*Ohu>hLip?OtBvȽjLC~<͈c*S(!}~]վ3ȁ!aSu`3QP#Y=]ɢ6Yp.c;C5N)7o'Zv1C.#Tea#=k$TjܭθԪP lV[ÞB|uH/BԿcu!l6*%%YObA KMm ӇhjbҵG6lN8Rq-Vy=SO'bA(4lD2 -BiZ~n>#NeV3GA((9 xg!sGmsOᱛqS0"2.۪ٱk=j{TEqaAыidVSG(V۱K\Vlrgg8ʔ{=-#LBs'e;Ves\RѶgz_p}YcW ͫSBI9&y [ON3: p.Ϟ[x dqyS56{|do>#.u0F*Uqxd?H հTGHk,l:P% /gLѸ0<Ɯu;5X1ܔopH'@~W >jlL>R!N@"φtwXrQǽPUC~u/)3TS ,4eB|diH:?Y{X;)[^ 1Fd0@鶽:_8[$Q #詩c,,(Jp ,p(ҽ?0/V\v( 9gD+?JJ~AOs6fQܥd$t]]&s O` AEBZD6i,KFkPYUon@Q 8)>xZJhUhHPWЗ$IȨd^fH ^THC ז6y*C \7389oua*kHthGls~ "tx͖=F0d$QM2 M̨jv=F[{', g+_:.0d_ - 8ӼV)j%CPxrNP2c;,ez'mTERhsMwbkO eɞ!'w2$[@uα%}9)Ãϸ_~c[p!)JD'>N2hu9 c C^|!|@4uOCJʫ>D Q,1&g$ɺy{#5k\Sw $b G%X(@}}:n$ П㝋OF#g+̩e-7{^5!7UAAmnހLʛ_ᄓ4ҾĶ.B+,Kv" MbkWs); lX@b{*{H.ז5-*<9E\:o -:hi]a;Ӎ`鮃Њh*:8Zlۃh /.\WQ훸n~ov[X _HMpPkbSFN-e@z맧#EvJor!DuD6u)zN4aIX8}xqаLv>xogylKPW_KCgBrܓ\LEHɾˬe;\\E[i"/C;wdUd \* -dP5ßoǚD] UQJX*MJsV@Fs&b#/&.>8j*g( f'j:O#/zNL2]!j0`7iǔe*?yaBЈ&1GmD\wl"V#V-=7벳VU(ChilqbuI/1vk;wf-Z|Mڨ9D|fksLK! j̭wxS b4M O-;j6q> 8Xİ# 1^ A9Vi),Lr+ ^s1{&9yeAѭв\gC,:N^椫Ռs8oC j +䑷,6Nzn*,Ճa`bi(KSGVE׷RWÈ - g \o3hXCo*ZZtE |%Ԝ~D02P ҉~m ՖqP:K0{f[1Sg(qJ^7ڇթ>Ē3 ~e%;LЍY_<\߻!u+rTaYy4}P^Y ԤA]|?4>ǹP7khީM%lQG0Zg՝l^^}tٯgfzBYFDܥJ$85pYӵώ;"`m1hˤ8[]wg'cOcLiv=sQ=I en5f3S!W|2gIqV6z"^XH24[XqU`^L_EAOVsSk` 0+K\Bivv;B5B'5rf)P-`lJ6?Z"¦@+>LA$w=s+dUy *`?MY&]AkdhSLgPQcH>g4XTUb_}j`V~7ٕ7 8 xoXZNo˘ڂOf ?K1`^x"+$vF[WC_Up!;FN}nxo1CضE2Wz<ےM)C{!-&((s=2כI<9,"iZ]28+ +$ʐu0Z*A%YiԐ\ḋZ_ؿ>:uzQ_׺`ɗ'h!HE X^Mj%i:Ϳ.Kٓ5T-;o4Xt; W֣KwsQ?zj#fI-A^nN0s@T*Q.)-@, (,ɺ#$W`gI:>Q9-yEN>6r HSh3#QicFyM7|ضKC̾ ^)_yA`ؤUWM؂X}Be@̀8nd߻-'7¿~ͿNW>HmM!XϾ->N8~~o"Lr}]Ȏ@5fb0CzB^H2|abwٟ[$ڸP lA9n]9gX3 V|5a9JcV]|C|EFө*BdDBc9 x:*RT.SZ+U NBܟi̖͑]bÈ J刽rIJ5a8` Zo*ˋpG)g"/V%E)+ _hq mקl@vo߫E" 'HG a+&j1w_Y¦9n#};Zv]I_I.iDs\a<f⧝CT\lpx=s+R@ϘXhnƤDiÄ6*K)JX.|tiYwTTkvYzE@-~z cq:e 5uj v .|a۩ s%890s5d5,gzU ]/H/xڤvC;ϊ^xeS0fj=2W7LY Qi*V֠WO@ ~7SߔjQgLBf*bmߕGS:So-/ԬRJܳsq֬Êb@#3=I N/*L8͈k%$Coo PB%zJޖaNk_z |'L7S if%G5seo5lֹdACʸkaE {$=QZ 9>I|Vx܈gbiӵ@7UILJ?"IɦIh|1.aX[}3[>u5jgq_iOw`|!itFbuijձ)!rS!\W. 7mؤC5F5f`z_AwA\ s],k4Y _*M"Χ;l,XQ+]>Nemm‘6 N侊gD孄fF|OY5HKP^UбJ Fn1e:>vZ]-Ip@h5E=dzFx7ƻ#qArPR.[b'ɺv k#"=7jF-#~e1Nqag{:~ @`s?ZYBRElQϺ\\[Ӑ1gyD.ʴpL庨 =P `7nm{ VGSb(w  m?Prœ7[ܴ,kR c*B}Ο6*&rL2kh@7f2Xjl5#I>ee jBZь{\GL fc_}j%~ h6Ђx PÌ (] ۳JF@l4N𞅢.\L<˾ ؁M;lk +5-ڋ߂L[:B hē%hsW9@>.z yIcX xỂ Mh mVu|wQg?R7ᤑ] O3ObC VzQe(ïG%DV;G&ywK Dlz"sc^ǵn{'K50tf̗skVfV lD:>\kNi]_> -oʴ:j5PxC4nYXt!LeG`-#,9UDX2 UB#Bך$Ex+Wtz?õ`^-exz3)$+ݚk UzA?C͸tːq0w)w+ .ͅ6tۊ9B>U/uWƫZ^N9<+ɹ#:\ġV RBWė +5%_@F!7A Nds,-\t5]mNk_9l`>ڪh1ft}f|-j 41Q @L>5ܲ7R`=O@ CrWܢL]1'._ˆ@:RK_|{H#Zb즐ud!=$\>F8xiDT/RAnib=l=kKψs=KSx=d9d}v_pZ p3ϓsތN+-#P=`V;jC>Bg%?g1(LZWq:Ƶ:w[B 1:] bɕRGICV{p%FYYdz5 i!_ߥW iX7 4u+"t,+bSW,,?Ȍ:,h1\rTq0_x~I;5G '؊0GZN璟"U؀ PmWUbߧ*M,% lF ztKL@Xɱ,jߐe43W5|}āPrB][`yxQly7痎0v*$btU8Ost̅iэPe8^&+^9;׏ <2 }va4mɫ6x:ڜke_.B;Ah)h {P'ы,yv_E6}J5 'rBVA UFʔj%tOS,ONar򕡊P7աRy 0d(Vu #HbvEFomÖ)'y_\ Պr}=MZ5#Vx7%隱ۡ*0~U}SnƠɰ#Z~g ",0ٚoLȒBt~]@x~Lc}^ n1 j2"mΪypwoE%/LlT?~Gvyd0 *ZvKZL9S=UϹ,Oum2˸Xzd>4|/m.s՛N}/$ZOjNa|W3$l0p#&}r05_KjdK֊=8+Z;->O;%kNKrۑiKz

rQ3rYZ)mԇ{gȌyiLB0GI\B:)HN*pqI᧫"z~"`gu x0 ZqץeXA٬gf(yu{^u=(<ǙOx:ܢ2hkHT1 ӏĔH[zt)G*OPq{N3|XKL-+y.+H'&Ђ{~s}pUT)-׌̈́u}T oDj$Yb;fЀj. q@F[H dž>`Mt+.ȧەJ%uOFF#BYU[OeP,8zI0$SDR=RnFH஖,/Ur2Pmd)UE*5CxȖV[DSr93I0CIGU"fI ȁZ]s V7wyЍ51KxΙ<_l-bO# KU$@dJܯ[reiW^5N!_?3Tw=A/6ʒxS>b@N6 r()8ZwS1^C63Pyܦi_^^ò0it}t% Ri75V4: ͡MFTx4kw,l^Jo(^ D\"\({r7]ĩA9tCt{:UAr-3?U>(oM}X,1 UaJjfʕT㫕*ceO/pAF̢=#Amrf p| [Knv,-@4kA|OFws *Xi&@S[y!,E6ґONus5[Iw& ~ȑj让HM346e 8w:5'jC,)wջ"t4Κ#ty 8Wg M/%vRGMdLL)9ZK~* ([z{x)3ӧilg |/| ~>Zw >cV9RAYewJmQ֍4_g)gY;+#(4bC_2c6]c|? =%#J%オ〪'_W?-A uye/n"ǛlG$T@UuS-Io-giicb]/r%UeXӘ[4ٸbƌB;ܯkul 㵁N-:"ӊqeX=cSlř3:QΕx9m#ߠے`߫_~#o98;4K.w ASC K?r9̌kI7-tQ6رazO޺9^G1c˴Y JWS VU<3.'!YItQE2w_sJR Sk~5,4~ze|7ME6iq@,j*6h}TQ>TAZCm.N߈rƛ ٶa[53R'nV-F>i iS]Qq.XC^dK!\ rUˊ`W~Eyδ,MZRђ d@{F2nlfMXST%~ߒ=)ݰ\v[m%tc,[k(}ץ^xl>'35O%ofc:Gr~}o=5Rlݭ֨ʑ3b4-J,v R{VX'o.Czc/)ړ \9q9#oأ `O]($e%Uv_%AooށDy O57'|]Ϟ=]ΘT U^1w[+ dٛQ .X\p0KZ,\+6OlƆX_YܛYo(ރۢ~!b&rq!vD(WX2QX>ze: !Ot.mDT* /]cXȒ]w iVDIcmZY29(VYp Jzπ ͇ Ƙ1t/|<p2듲;|k+Bhb{-^5(dyLcĬM6# zۼed BA!R IkXI}9`kFvL8|UwD٣ht!+*|tC^M+f%2eMIA/*9ҭ˜=rUE$3#}B3"9rzuswEȔ_B-7 &R0 EZ~1= "b'K8 &FC#v8Vcاx;^)-`ss1Vw؀vio~z!fg%#mhۆ (2{FܲYH- pU/VW@ٌB|mQ T"h )g{dž Ew})>KFS`ԫZ cc ře3YRR(Vȹb/U;! J_e/D}nq }('8уr):|Jƹ"m<%s6k}1g0=f9yIh@h#z轶c2H*'SCLW?q#Jт>$n:h~cwZHy5=r1'jcኇ8NS3+5PN-Hlj횶sNϒY-˔ᬢ~Y'bF}ZGsYKS0C׶ueb`,@5M0 )@W*@F-@?@ombֹn[KcR[ɔE<$:2|T^ԼaAPn=χ};\s]ewh vSq|{!ܽY;8y"S1$JN3/&qklrGhLdVgjuvԼgG"?*Ayf;DʐvhЬ2*hER:O1Ucn]GM͝s(#:'u,S{)LT-9g!Ux.3j(o@bU:doRxsy=&j1+Œ6wJUYϳt﮳SpV̙ NFVʭ;J28xn+8IE.]C3sYpNYkď+9rs@%X{ E|J+&ҁy">m^z`:X%c%0MobM I(_#&mLpٽ^ : NxJM'8p -qB/8yX6N>Gx ~4cJ)ݫׄ3~ESEIP|jej~(W\1bz {B9qgQĢh׌ɮ,I=fB Y/ďMX 0N dBb^^rɈB`*!Tyڂ#gKRqUip9b8@cv,}oˠOf".!^ 5y~M,LӉDM` L˻8 {{,t*kn?N߮7Pf0d'%VMYA`T Y,A-M*iGؖ]f a.z5f#.oiqQ-Yuײ榄Xsq3ͨp8.eQ󮗺4@#LjF3e3*JQ4S-_t8R89W{WBlkhb >cPbDT[zk+^&B_kݯ8, 2pcUց>G3$k)Yr&rmD q,;KXqC qsФFaܰHTsH Hf/-Hš{zGpzx(3y܊ċ:оxmat>^PsL9h6[jeWobjN"|&tmpS%`$v#VϊjG=ԋl%Wr, _fb:'g/d]5LN8{;!t`bt[<}rTsyaPrPR㨯'uftSH/*ҕ)n*WP/btL ^jҊLMT5Cu+6t[mRvq}rr\Ym'C ǧ%Ǒ ɑ!|.1}-Q b|TkϙLǛS5jF_y~h6Yc09_R 3Z'|UJk /v]qP_d_an^_8wFpy~ R<}N{V=DV=)"(I}%Hdi*!@"g#i[Cɋy8/X+(+*I I?@cYs;(I%pM2xc*kBԴH,ьz:wB~'O}Ჷ" |Q6P1e/Mռ9e^F8+ljXfGr*, ,PʵgFb{CpxS')q7&g{rtw1:׺9!52HW{ DRAd$6F U8"ul7GhQ5Ov'pi]SVص$ rF EI&O </$1͚=m!QU)6Y(VVrEDv2I`l)a9r/O S!Oi8IHA7u8-!W[$rm/f'F|~kv[r'KEp6* n:JNam?BT$ >X aޥ0a_9qK9kо Q'42hЗ|D@,@4557lƦ~ &Fhx^zkL DAhYe5Όv׃郩koմTm1ZC.GD.Zl+tJfD&t1O\=I6PzI~bAU]4[ ̶ݸU۱8VUgge.}OW!)3:,r!bj_/_"q BhJ3BI NóbiԀrTݫ1/K<+>> l%DX*< $̭2^1-Kԃdϒ{sA6s0x^؛ed7zna +0)C/Е`bSQ}l*`?+ËA,S2TST쁨bAXqjG ̀\O+VT*nh_i,ߠ @gF6⊕O9QtQ 7S - H-FV~ϊcCCт+;vq $?m:­w\8J+aoDt8]2Ne=D)(şz Gmd\HkJY'V_<ڥ#DJ6wXOuiU}X(^-o u;8G^nLq!wO1mN#m ՙjŻb66n(U;t?y q74 EI9zB#U77[ q P Ɠ`2YRAҽBS ,#^b$ Qm=%ieENH@,{^k* 8{ r UF9yNڒ$$c,!\;}O (Ze8š:;6oěY. 6xfFy,@tho%"zW8-~]GՊpEyy`\ Bq 0 #a<)mܸ5 ԰pev(qq8תg?Fˣ?c.}_F(tufly'%=뎙ZC=[\XZ*voӪkzF7%A]bΖ|wXߏ_>< "-bjw|p~fNr)32s _zѽ/.n @vTN+˷M|P :w&:9mqP .s'لw3p2 B@c>9R]#(_qttg,w6 /xYh' "[x=F~NH$J77>f/I'5)PZ:z'g&m\ C =4De&qjVB1OF3K`-dw&"lG Gz&M*`ݤ~F0fb޲K=7-ƻ'ϥ5Ͻlt8r oV(f'yYMw<5Rd(R2&~?&75F叟饎@ wCuF[s:zWf|u22_ 0I (1$i}ϣ 輈4ld5br09zU*cFJv0]HY"y}x`y;$]ULv=qR# Aيu,۽G$XN곁%PTl-ҙeKJWъ47F.O(Jxj,v!V.A?#q4m1)"R\/5N7HH@d)_l 1 *NsNl[Z2lUT*uE4Og6D MYry[گbp&,d9Llz ."ߌ {Pk+&Ä/Oq)6.RX|{4/G#d.ʣ319Rj*^zSWqMмiAV5s8AbT 4&{<ۃ*ecB*V@46KEc6\q 4C P{Z):/-n{W"s,8kv{Ex^ :-?Azdkqw"pR(_;Kp0_F;N+&#Yܣ>QqϡQU`ԬpFŪٜS hD,(gs͌ ۮ-%.Vb L/)smQS_\E(ՙ@i-*]*+C&zY+|N~^ljoڞ,JZ[UR4+\GNӆ5q!yT7K(M$݌4~0v:*~" BmSsٟ+zV¾@ޒHT8_2f4}c9.iaz+澀0V)̘ϟ') 8whVܦZTP2YK&(]Ё9@u\ĭKqh-Ps]{q1z\>c>Gn=8p='uk/ژplCmStDT xx+W'dQdWQÎBlh~c`t=OmHrp'9P"Po e|0e5.sBC+Bm.0ޏv=hhM,{"\=Ӄ]5nE?mN?I3NtX-]RCnA r 9ǔ5D۵k:&FrI4_vv29F66d}= KDAѭ3A1g6[A.+Y % <@"YEzsq]h?N:a^9D`'/t-q/c'v%9ɃX J}ɡatUutLR/fH}0ے|gxny ^6+Msdؘu~k/tO${1DhݶWi{n4Pq{Jhzf=|^7 Ou@~ 8XoԮv Kwnk@;f4|" MR4# 1k: xc^Ddн=(#~'l |xP2uyaUoFq!| k"yѢȿ*DI[Ñ%zBIҘޮ(|T@?FRY_"Y `zVLIvP|Ӫxy} G*0.! wt!ψM/85Xa_lZZPb%| B #"TA:~f]7oizlݲo91T3+jZg4(tSéU0gU+n_ؐw2?Vxa%)MQ# ~C폳 qx^,n(/Jcjf.7߁d7N2břDֽ7%7TaR+'dI{z #Y&7ISp)xz/3[MMS_OgGGEizP_{T8.f*2+ٌ6Ƈ{+Uswz\DpxA( oe|T \a#O1$4/qq2"V"ej%bKl}nVz(7.F> X0d1ԯf~Oώb 3DMWf0i6~VO6ۄkxl!HH vjؔbeewfYaHU@I򋻚k|jNKʜ) E]Ւ1XFYW H54ԤTԔKlR5=Q%4[<7X7)[We5Ysg]HBF 1af?0,a6Ŧ:~#_Dw; 'v~yes n.eCH!tM?P"%6'$o+zp,rp ˕ORb*!'>A=eNP<ڀd^Y[ٹ䇼 ^wsLS'=z7Qx9|xʮHf'fǩjʒnnZ$ ` Y'iRhY=/ﰋMVoZQ;X4Yӓ=V^,Le9+!f>y4EE6S#4LûDaʮE98.0Yd\*`IɆvӾS<\ bL\FhgQ$TH!3[^ >:i#U)`r(Y#(DEnYT7%шu0#^Jѩv( ,#(,pT:Ek{ilxM8'&"l.:p6TgR=9 Sw*_KXƕ&L(? ,5^nD!:j_ڦ~R,h)eu4.'Ü|(N=lW3n? @]թ[jMn(4l:htUV82j5qmS<~%cZvG$_V{Fg 5I}f,UTXGU9Cbo"vƹz 9g9;bsj.^..璃"2@ryHK`˙/C-Vhp,x7riqӭx36d(ή2"@2~3*00w\%jfӍ'vVNKɚl@R4;Nɻ_5pz9!iEzSe(#G` MF Gz`& 2Z=PMW;/ITx㰞s\qi2\5zᒹʏ |veѸUEܱ%7E`$冽ZvlD\Xe*K?GWMG mʸ척rd:I;1N7QJ$Tr>5ܝHk>_.G';ͼ{qKR+Ze>f挑}`\S)A_K<H-XJ:R7/*=H'.rw[\]6݊9P> PT赥PBZW7J|z`xT--vawCZ{ie8MYky\/x:Ձd/OȇA.=pl(`f$l]{1H|[ $[sTqsH97US/gPli|X nTq~^s$DQآg217K!)Fp}Rk.K& GΊ[T&:d;*HJ?\n8'1yOP$ro^Fa%@WBoS``Upq\Uwq} njGUZ/`9d'3> F%[9 / Vrjqmؚ`|8mʢQT_ KKe_2/DXǹ>3Csp>ⶀHf9`LSQݤxuXh$ϻ_2\6ۺNY8\|X2jo@l|iQ[1BMy[1XRKqqxH+q>W}ߪj>8BH]muD =dHcoȽ,|d2Ȱ,p 0D%<>uYkܟ~϶Ⱥ)R:6YOh\u;my n ڏYbƐシ7dzZ26޳nms% 6Cq/SND^*|ҾYvB{o)!$Kb(Su/vO;^w?El< h.'J[Gv iSs4t<j4$(Џ!48ɑ[(֩X::r6-HE:y}N7kaėI֋^nA6P#=ƒ+~p}vpL {s֫{b)q:S{KNȠlx@P(Ū. fe]JOVcqX$Q!DBFHOe]oȽwzKEΔ)8Fګ+Fh"'wt*Z,JY/ǵ4$x | ]2Q 2udn=͛T&%>1ߑZx4.~|){ͻ) ,Jd~SSTI?]N U d q*O]JM2\!Pl3{g Jgf{3֞e=T%Qj(Kd0urP~!.z?T-.k%R!Dd~\Ggޫo//. D*.o5hH׀`^lJx ÔkbQ`d)-.GKFlK\*a`:&:/=yQ8Z _\N1/̝~ 5ۇ</i.,T5ؿ*[ΕmQ0nb:yŒ᫧y3’]KJ.^*!}F:XDSNPt3({I¨rz~oAL$0bPrwzEp ʅptmAa5gI.2Ǿ!h7٢|Nދ 8h*~WI$q-HY]yEkXv]e(W49/īUpfOk|IX,S֍8g-3,{=kN:hh)9Js_i> [ie3drrS#wiZ+ ߇Yo/,[ emƄ‡3@4" nW5[S6@"4Feݬ R{JM! L$IYv_&]'tc)1nHvKhd3®ݗ޿,Ie#vQ"CY 15r`=QOb/=V B>?LbAfű'#, l.h|ü 0]ƺPV&=F|L $(ֻ|@)Գ)w5> BF,*ijVe #U''@tЗr;UnICYu96蚫KFD)aۜ"~VZ]h ௚*ccnMa/DϿ?B؃s9bted3h?m:6+%_Wed hT,/_QYNL_+{ǘܗ?0h%(R>E ˙k8e_urxa`"AG|7eX i+0QqaHL4CԆumNM6m֓u&f."_*~eQwqRa;]O,{l?؁ p>[v`OE"LWH6.o+硟 poc}Zkq$`Mxe2/p)-Y0ٖ$:ч/yld2s>_H2\uWQ+WL|9^j$$喿 =Dk5 tKc[?[hv%b- '{bk*L aDl#ԭ 7r<ǨQM̐dY4o#1&c@(Nce|+oF`M ASUg{qgzSW g#Bk-cf)nȖw\c?S-+*A"7`W85Ml \:BpY]lL:;@0X~E~WH7,bnqC A쁭g{~U7YbRsQWSow#t-Wo^rO=GSF=@┏3^:ecΖ/qʪ|=O{U @$xC,E䛜1[kP K)5 [9`]jޤ`O@EF~_bDkix-Փ1LK.p@?`~^G2\&XEUQ0£>Mbkx*͕HbEB yѺjyq4mfy ~<`L9}u?\ 퍂c[ۂSJ*mSPIr\xlXqNjpU5?c_3dѴ1z8 +hZ)f 53&b"l0y4% Yoà|L˧(><~:ǎ3:cNHwJhG]ճ-'")5OOr<GͷAG/T1~OI3{g9А*ֳ{G2|a)ʀv,ص~&W_^Pηϕ0R3'a7~K$mh9Xo~v^ . ^(w>Af:&:O:;b%pVp~hgýq#β7u$8.ә T[hO ѡwҙm* ,Ϯp~^A|3Z~,y2?/x<RlF;{@<ؒ۟" ^Z" *ܤcYNILzN3)cM8) 7=ba)3:M7Bڗ[^pbԙPfCf-BRT͔9"ف R L[@lթxV{WC$\ͺJ9WhCc[[_njW'=&?z3[u 2v'ob. +mճZhG26-#8CIz!S:-TSoิGڱ"p#v2M1\oOٜ̍'EY |ias d`GKjw3maDڴv7iCvv( wxc<:VD\w"8"ql/|C`ӱ;qV,d/z!1vS]ŀ;$,u # ~vGǐ-#мm! 4 A ŖQП8HpR9$u\(낪0tԟo$cL&[hQ031g\ihekߊ~J@]޾M0 Mll ͏6ڮhe> !8V9(sKGջNjgc=9V)3ywnu( qF3aPO^nj3#庌w#P/%+b8=+mEjAg*3:c"5΢?{x<1ҙE) =#)]Ϳ0 BgH(Py'?@#!7=:4) I-AIШdpC2"@9jCFƃD*%T<. "'U+%خhy)P =2%+j7])iw+ ƣ>1)R)k]_U/T$fTҥ/'.-&$-CDi˭H| GDJ]KS/|Ԍ7N/2&$Gp>1,W/5SܒuٙƝ}[d8A~ZJփLu1fRT J+7z<065NOJ":U{K;'EpWuO:UMZqPfе4[ fCP-Q ˱w(*YBE[JHͣL'{{0ؒqJzD6+Υ6:'XwXn!e/4bM*tՎ-q&ͱ ܎zb/%Ed!A)6`Y 4V$'pÕie^VdA-n3-4dV٥⦎ "B-u}VL /?xߣl'as<_ɯlkɪtЎzDÇwj"Ѕ n`;Mܯ<"7M2xxIkeqPr\l*'Dq-\ +X_֗,ų>O {ṿV9`v|-mv; 1nYL&B}Mܑ  wZ i aVGB[A'{Q!U8Q*8p;ydO5jii3|DGZdJ5wchŔ:u.Jv,&]A(P67FXE rVUzOk0l(M\`6\*[8AHR=57ro\PgPP{@%bnu\ITݝL`TtZv\gB'13l @bZ6-1Z-|0%[F6fN[Pa01$K>?Bl/&Qpn_ Wf5_-(:[$]zq,wQ$jB3`t=|hޏgcz@@__)D^R>O|)jMB9c2G:WRurAH<;PmZ s1tvJކ~<;G):>.ObshRdFI+Nhue4VRʪvxx0`bzNѥA,F92{ ~f7XDf#D e nHֳʌu֓ ,0wQb(o7 \ɹ}9Wp v$ s8^Ӯ9#c+ =KBԂLA% gp(1*W$ †tjrq46ߕ.$Г P|ML.lK&ӜcJl$x$(s50xol&NI! v9-S)35N}hM! vApjyoxn}~[P?ꝛK/11V-GOݢܠQ311>BSR=1}0zZ0] +&c> 4mnSNM[<*~<^aqVAr@YdSP<UϢ">J3.WVbh_?Ut =:Y\-סU˶kDK1 O页mӐOkd ҁFBڃҺז& 5kq^ᱨ&"0\ueÅ ^QXe!7~=ޕ^&ay.+w)ߟH bj͛HxD)>>sחWUҀ?^$.o|g7 T ~AB W_65nf;cb.7qf9DuGJ9jro1Ry rsK#_ HzEU)dE38jAcKwI+i,MnKд;`%Ø^IL3*SM 4϶ zdf9RGARӘQ覯0At&(~ kߙGWdxN #e86ͪ Zq0}.5Ds]UW`ɘD;JPW rI#"a)Wػ2hmqnJ IANʥcR7 C<; ǟh,~ψ5\".U g_?Qض}OSU)!0>]Kv &Sz)|';9Jl4.Haׇ+@X*>0*N[8YB'|UaU5ZA6%F=`г'nfH6)7. -LǼϦ;&L3^/3R*DP%iUr ؑ&r89N)5Iﵜ5$ ra$שfD4[tLޯ߼qn+׼ZHhzߘPh8>8.}Y\s$X& 'z;eT>>"8%&;ȼ?N*yPP$@j\ArPrpT$Gt;f<; ~.E2FEb Cs 91GP?1VV&O{K;MlBŜm1%xݥdpz4i"%Wm`T3Z㼨Ҹef$>lp}8qd.W` o$EM^?:/L?3Ԧ$z%aK&+BZpӦvE"%zhYT$q4Ewu~>Okp몡'pN.ez07 |&X{o o# Ek~aヮK7,#M6.LBfׇIN'"&q!w&3!)I`l)QmEWG'с?qCl 轡"uLZ[4M]JJ5\?O3$d`K#Q{X.nekR_KG/ Wt8B3[F_]yzI*\%3Xf̠@v0oqF".[UYEDrTT$y7ADgqA$nk,1,MȌPQQoy_QraPȜoɚZ@wJ D9B?]QEM{w9h&|\fsv8m8( 섲yd-TLSw'3DQ8fh?[yһg|-V8>D#Uy\|$Y:ꍟJ(Wz[r2MΖk Kh3VӘ<ڠfu?R=GzD -À ktی$pLt_lU7$\udlxaR&@DmfW+Lar?]?ΫaPTQ IGV/po{ iSRBk $2w8 ox'sj;c /bXt7VBw7\@6ׂElNJkz2L@OZM9^1'Y$Sp&,ymV!?U+Vf/%z\5kd ;CɀDgy۫dn{gj)M=COiK6@/ơ~DpԼN0/'imȠ`̢[d<i͙/wX$-T53Z.[jpwZבYwSdY\D8&<^b1=;M^Wļ%rUxLEzck$QSrKt)N+3ԏ=4Gp Cd4"j3".u.'Fp0.r4XC? $$t0vҼz} Ck[0)-jG ΛY|%̧f݊$vGx`j(Gt\OF9Ä.+ 3T/;U JXI E ө,l /ARMFL .{xGJe6~ Ȋ)Y "uiRjH.%q[jOƚM[@~g@6 XK%q}*I2Ly"<+m*}f0D֖&5r\ tYNzS ]U )(%tIKO@ I UCN]u>>I,Hj4lK@ s̩[L)Û?\Z[/@ ^ zx8Cn$ZixɱTLbjaԌhR.\[n}0;)B(I2{C\3#s2 YTLm}nܨϓ7]([iq50iqY?o?ՆY`>0C>.x XShS.նW{~2Y3rsZAOيV6W{M O+4ibOlŊ @_<-i5}D"W 6YJbOBf=>nkʩ"`ۙ6H,Մ0TsdeP'? B 4TUtM4 Tf<[""6N~ydH~xWKAuuM&ڲ6ou^ODr8)H{X&2+>7(λuTbl^xWv`4>=}nr՗WЉSڐ|`a7i=#g3K 1$4x}Z1ywھ$.u;reBJpp'dK{cpzR7)>VLY2C:Qe2=aLP ("D2 % ٕ yR8JjEz҉![AO$`0 l[79תWdkN19m+,}HIz1C}׿+kPpR*luMxFuqX ݡUuB'i=a4oJ0uNp!=< i ~ք[XdITdOM /qm;"C͖S 9t `eATd&51`y V#aǙKw';s8UiI*.GiGIWJ˱NʟbJV;ZiS+Š)+-*"=AH5QFL:?,Dd9܂MB/T'lŒ҇H_lbXA\CQD6ޡOD"UX}3djZlCVkW *YḠdRs3Apnc!iYD1u/]%9`$Hh "*+[}]&AΛ\Vs#:; r)aWԉ;M6R08M: ϛé8! ^ԷkU%-~90eϲ=7|Ft@+&^Б?#'`5KcYkoPAE GH3(8@ֱBWP ʥhneJc]Kx;5收Vڑx(?eW?"OܹtJ]w!zԆڱp*/ z C¢TzY?/- GY-\q=)^fp~1sT|R[s-WC=ɉfTex1YZ>?|0;jۘi3XUO8.u`ZTs~= ! ɉ+=8Yd  wlaN#8=20ly?TVZyze2N?VqMC An{mAXC"vϨ*'ÆiJypdLaՂBd6vA2K.ҀU9 j1CK4e C93bS'/p<*=ltm ^Դ|0'2Cu ff{0J2G7oaz4MD9o &{tVͬoF%yl]+Pn +URw/Tyy77tU>]uQT CgRַ'bq'P%;>#}:a쳥o!Mb_`3 JO]s_?-"GR+QXzn {(=(DڞHm?nmI; !ӗXIֵavI_A-kpȸ^Jcͯ@c&00%-hWGH:IXb Y8HmXoცMшzMkY6  qF4GJz [jVdp^ qh&UQ (~f# K&G(ŮIMq3qtbeG!mjEqv&H(WJKLy 91[yqlO6vȢ$]enmsaBV#x0ja}, ;OSSQy;yh5hS8#6Tvcmjʚbȸ8˻l#;mP vVcw! t~VXչu`yWbӞ_F:x7-Wt @L.yPC15ډRy>_LJ>ٔ gqucbw]{%gRm ,flPrsbF ;zuu/%glBbNu7 j~>hgJS:Hmh[IqCo{m iU؝JZ4woΏIT]IҾ+͆oM]=N.ƔSoQNe: dq,Қ&A^+Udbw #S-ý}uߟS([1v12Y1mЮG!JxyvH< x(֨{kYT¯gjo x<$NË? e>lROm<ܹc*:VL`e1]J x[>{Ӿ[q2}NM;RBx)fM S&3/=Tl[,T&,( ;S☰yMO`0mv5NP8g- _B*.nZdza*%+wqkZBՀ_5C5LD+>ΖZUWx4|hwa piDHsJ|xre[',A#;eh.#p&I/ l <'b&NJNSSĮ(+ %ʓ3ϲF?œ4~/ f{Tم]@_A \_WDޗ !Z9NB4{pL:dD3go!?IXF~yMkj2{ot?:(0 nbu9y ӵ&Xe0+"{{W#I8{] V'+>>$IqSCѐNG/*uwG3!mCIh: ~Ա>c d;T{Ŗהu'"G=`+y,K;T,ehN0Kh0[70V {c@8cHѧV<L<9gS|q\EcCk_DbŨ]p%^mz>Lǐ7ǠFXTHtΛ&_kH^`}%šNƷ>P@a\M"u$ 2[s]I;D/*mŴPԛTLé7 YH6tzk89"nw1+D\ƹXce T¨\*\ЈoQ^ [i>D;æ5Rk]u$edt] 07JF8YXguOR)@'u=E!F.+Pk"UdK]8rݴq3w6UVszHDNXޔI[tyKY꯯ok{rw4`Pc+o΃*٫FScMGૄ9@pD渿W?剝_p3]֏J%Z q!{)܃fAz,wTn5 HV~?=t!P/`Nˌ0Y|VAN %:]c4 -`x-n&xlo,?:9csC]I7@(gw$@.{2'_nX@$gUUWyygg[/R@ҌPǤ U #{P];M=vku~"\j& `"~N[m*=Eݿ=?ӟL,. l?u,e{̃TI> :M*ю02o񌥱4 ~yt1 0yBCj :a5\قm~=(7Fo_R(& :oOMZ'R[n|55 q#7 y;;# #3 w%qZOΩҞ;Ȋ `Μb |竍S㣷h*y[YeE|GTd6Ey)=f3OfjJ s7jmG. 0ʧqξ):ѱ6C`kڸDܸ&PZZ%s˼L?/ĂL0Fpa@gQt2=2ߣ[<*2^5 6|c%S gxe+ L[qHʹfcŴl2K_;%!75P4 Nkv~4X"hlB̌.2(Zh*<&U(y0zČ p+eOY/MWR]* ǿ&8`1)7M1|@m{ $z7<иK_m`E֎c uZ`6Q9w/} Կl76JaX#Tdsك!a^DhT R71 +Z""䗋DCex͇i*& F;mf+p bIE4ߘ{DW0,;4t́~LYJuU|4`WvpPͣ#@EQ5kzxf,AQlQ Ah!< 0sɞVͲ/TE* 4 \Ck~?6#Y=y3Q 5T.ΟӟO2e*Y/A5?|wϵylK84?##~P'mXuD|m`R+6&˰wǟFB]9o>=}>f ۉCHVZɕAe)߮梺p_il2m>ڊ~߃֩V^p+&Wbw[pFn +oJr.dCS,zP4wES{TZYƙa-$6Ķ4T5Ծv>G(4x&03*>aQW/ O8T=ic]9Sxezb6#r"a|w}%q t`#P+؎eZSv3pD3|mYg t 6˟Y΋U\'^~MAmJa:l^xK[>XbƄ% [ԭZak7CPp~Pz:N=H¤ 10ufCnk6#`OHyt:+;!1{2ғvC6(ooСPp\4]ȵ_EG/q XL9rPt͵ӣ5[r*o^*|]`ut >ֲ^aśõBJ(PQDKXOD́t}4ŃH𓁚h `d3eL0: '| }Xq0ֱz@:&)` Ɖb$\k׼ oaTE?5(!H>cv(1DK’J 8eZqtZĖ-|\h@&1\Hq_!.;Zw]P-݅z:\|dCIfRn,)RGBLK+"gzhYYp|xmZ9(F}̔ SjZnLo`0G>JK\a< o.lOlʫ&=Of„0GؼŮiP(Px6§FL%^փN'նlm'c <%j=T !eE>1,O-[D<^*ՋH;y' I̳zz O=^{ҡק0-.~a)}jRȡopASR&kuF8g9@Ϟr2ZiΤ/6yFup$v@o3 pA>_-뱻U@J0ݶ ưh:.:د8U9a?= > IЭLtE/Lb)U5f&a9ѽ%Ո֝nAa nU4@!I,{(ՄUw܏[ق⧢MJ%ѰJP cvڵg**/fN8鬕Hە\fBq6幗ɦw7``=6'zcU˜B;9$CbFǗD>*-N,cyp_-U :!J[&ĭɓD׳3U1\Z@vu`a!c LKj/S*o}z#̈X .eA-(2glLV,⡭c'n!?Oq=%Ccn ZO6}}5x:ff,i{|QN*O>&9%74RVrYlSa,큩KwDZ9';B +PEjwXQ;q1uT߇DR8݆ c 0ڃRBf۝*EVp3Ҧl3ENEЍ[>3[q $ʼ,>>C~}B7Z WGK#ή(>uI\_;M'xѿIH"0`n0W`V ޗ[Ob?(WTDJ=-`1u8J Ad|U%\K3}w NeT! 2WXilEP}"Ŝs~$v5B*x9lR-]㖵GB).4`ClhXo>\~-{+:I[L*.Y}]؀j4RnvS֜+FS.M|n܋Sء8)5Sc [Q^w$ER翫ʯwt_ `r"_dO#| S0g5~ er `1!S?.R͞@OO&vk#Eӻp *VDJ<HO^Qiֶu.UqW8&hEj?3X)S78_Yڔzb\PU:bw]Ji 9@(-ԴſزvELgFǤij! -raK3"/d\wvuݦ *nƅ_!$Pp$Fg9G苉Lř@70W5cƌn=P}q1e_أB&_d-#= P;^ vLЫ'2ڌ?0\ CF@ nQTZc>Ywͧԁwdm,BXKv:-oHMJ,Rߐ#f N1&fx L ˛ox:LӕB6Z}!=Q%dRuZ,cRᙬ{Gy'Xo(KԸFVA-ϗʀa_OO()N oLVcQIv6X!VNG_Ћ9!~0kAfm~=R]םvJ%Ri)Ckbx(u)|҈PUUNDc`+f8ԫ,\)CL#j쑧<+QAOf񻃼)7xjĢ p | sw@I}5[\B_P4*L•?zAgԚU]Cw* U͢8P|V%Z Ĺ!`8P]jSs%f;]6Œ'dA1$C錂D+]L1B O*~_w^kǰ;`@[bjLWUr)BZhG G ɋs>ASͅcEI_1~cׯAlWqn1&4>,Ɋʄma'e6m_̤%y?eG;1T%r JTJe세q/,P1GqA|ZB8`dLץ!fA* 3ꟃύ7t6oj ;zyC̵QQ !pn.BS]A7TS<(!QBXꥅ/[G]%~rZ1Z(~4 Vj 2 ^kN\P4Ź$c;,>>6Q# c(PA+Lujl͘M}}u!zS~tVx3]lz=?kE[St1π$Jt,ʽgKо}F IvLڪ廖xc_>bǽkn QS}G*TsMmq_L Q:K?w,P3M#IܼJ`&ei֛QW E(A vHn1H-sYnZÒ3,B~MG.PxG+W\/O:M 9@"kHU M)( [y;N32,X /^ ~\y. vuhG@) ר 5|U.3% 4ChI|B8vOb7Hmk̰5d:(|{f ;n"Ә>\bZbF(~3loAbkO: 6Z`vO0>=1w-T9"9 ɰRB J5\jn=zPx@^J'YjCQp(Tlb(,e}Y[{YelhJpC,f|Sui pFt! nV%/g t'lԶn?6țo.[)򾱽m13- >U/뒷Ǜ'ar -A-QHUL >mЂwdQ@;ncPu`oa!T*3vStcVj/G hwZi{J3tLpyRuw="ϭ /[.L_=}cwۚ:-"6j{&?sA\{7J1B;a6K+M 9#PƲ?I.A? aKx:&3j7&z/zdA/R4}j Pd%[1BQ,mCiC*1n[s"Glֺao'`*〙ʒCvm[ tlp~yxQ9A|*O_NNc]d5l9DNN„уuvrlS6ԅkVP!: Vxv C|j~)TOr~et(7lerЧC#h/sNk3zn^T_ȼ:ziN꾭V\ʳgw ܸB9y!)<# Y ]؃- H`~uܢ_C̗!IE)D BW(rn(1REDB G?QB8G7Of ĬkΏҹԶPf|K1pET}^G< a}(*ODi}\nu,<ą`7'n2n^t{Iq$9KXO&“=gf09F{^n1,λ)q4 {:_'0"V䘤z 52Mu&[hٷi@ Wr0xw2LXWsCmSR`-v"m x qgKx ;48J OvdncyARÇӡ|e ζ/&IUK\kB"}5ҡJALA(RF-=$ޘb}fs<f;b61|zV.-K܏kW3K3RVsgeXJsa#ywlvILٚA7!Djk>` .М頜9{|zA)5'GIZOgTV 0 !22:|t.gO*éTfj4!̢o:"~XEN.Nu(;i*읣`0-{)νѰLIM`|Z$rD_ƷuRhRkKXñrّͼ` ZGMO,gMCJTp2>UH!(!Sr*v NF8x\wG_P&^ tȘ ߁5 ^k--<- PL=gi|$2{O,mϿ7-a}!L;0#BS#f:h>]٣|# Q氮v߅՛$b21^ -TFET?P[e ax %F1 ՋJ{\J<ǡm"{*-hoW0[Uw_9* ނ"n$`LA(\m5:OK'^p vOT >X ="P<ˑE)8ɭ/'* 󽲡9o}AƘi cnXܦa gYmӦ O.E)1vk`WSVz͛m( JjܓHUXOAEez&?G ՜8f ` 6e}#`pbr)*/̒l&?6膕*d!ޏh}PsWnp|Ą;/PЄ膣DŽf鐷Pڣ,rxg(nazL\CF{ipEF1~;K%-Ílv?ebd3>'&SIA¿`'*g5 ϬDITfQ[1::Dֳ14ו`ʖ}Km ke_f^pb}zEz_V4Z(MPΩ*+do,׹e纲ͨ`ήbv-/*ՇLq!#\ $U?Gi_3**he9/gj=D1MYͺ%Gi;a7:J"#WqdsX€gP=ݔʂ.w[},DdbXF_l ʡPp~?!n{O Zj~Eqo\fp5ˇh~Å_PΞycn4g*Qِ%O[ =tlpT ڢF q.DV{koʹ#ӣ, )BHu[ )D@N`ąP=8@9A״\ UXQ =@sW4X.#K^]K1c4TN:wޞ55wãVߙþ*/caB 38z{=0QXyLQ|c{`Z.jȣ|a8ɇ^]2vv("?pRJWg̯2 OTdDyIҢ`vcb2D9Y1降%^1ʛW7ͤȪK"(gAoJf*5Y~j0rzFuSO1}&Ҳ?^+~c|r77 `Ԧ W8_Zhğy$fDc:{^ c0e NBG ҽENk-xEFMfA53+Gi"%]d&K@%}JM~ ӟd"Mqy}.lA`]&[6Ž`9d֘b Lpcm)aN0v47"(ZäpkS͡9 ?J\ Ln{C=1斘Jn5! .T u]LYZ+M>,^&G~qxbu;xO㠗N78֨4^lGSoQP5:InC0S>; @t 'E]RR9Vg2t*yqHu8P2|U pGkWSH[e^JMZdt_tK~·肮SOcX׾GrV6p{HfwWw3d_A!\0ٕK`  S,%Άx\ 0qeECɩv8e i@+'k,8v?4R~wAZ (/Jpc5 *0hexn\Fn e]ha-Lc8s0OM@͝,=ε<)#(Vr2j9P  m|k="KQ;!k$PADṈgL9ɘ5H3o4Ŗ tj49R~/,FSM#.jte20Y_57m0ϻ2LȊC fNk+$@7]R YŒc-B%?DӈUՕ6 !$3^N}ϷZ\ oЊR7J;ܫôtqH)K(k&jJ$aE? les UV,BgZŦPd"VƫnCv?;|xNrcmL:Ai CXPA+53; G$4{_ky4Q7F^t\ h/uV`yšsZYG!jA/sm†wI RIeOtFG+1NC6Tt3WIͺހjtsD =,7]nn*@ :pC#X߸iZTāʠZ?t=_$ɉ=YY+:hIQ.Y%>}|r !NT%]:2 :Yb)_of9 `Qs4 X40dV=#9=UWKXZFCo`nr9 Divdi$jBnocqQGF#`X3ͧ(y%Sv%! "pl8 [?T,q2"1Ή8^ {<_P2e { /gY%6伡Cg㦪[Dh`%`ᤖSSZ2lE 8k܈'Tp/AA+@?N;4gSB0O ~aLH?Π?=tuOYl8(N6 ]JDnGgڜR _ d!+Q L@!,T-H y_Z?:Qc<$r.ɒ:l+?窉xh%y@7xL},]BYf-+P^ ,pD5JY < B-_Jw~ne'_Μ@y OD=y !6$`(mMGxF؅\e,C[ЗeȲ\6Tܚ3U *t+޶ᤢFA)dl2O07 .;ynfXcbrxatE-ղ T=Aj1+DJD ƢB>5b uՎ>l8QjēA/.4`TRnf~YRvԁx#_2%FŽq̱ ϠDԚvfz~]Y[ v@nE U^9fSip4JBgbEpF_oQȩ4?u5XvNlbObx^&vnfXL|Qh uёh\)uP."cXah1>F< 9,Q ]5~ avɥgl}#=sծ<ZL &Lj?4flȮ2r4ʲ܌ ش0:.Sy Gz/?EDװ {gh2aR tkkײ]жFr_^eVDi1w̕4e `tW7͋R>舃2h/?ei0*^޷Fݔ, BX&7~A,n`\Bq5~qcҮ|~eCLn~ GppzO&NIxy SZJѪIP/DFx1/0DD9 һBKvsÙID?tPy R-s*Ӈ_AK(VI/z)5jJ !Q3xzs++ZE<)#Mvv rQv?zWM-c٫&WS(wNʊg f8q^*:p4ޜXrZ)#W}~CSpBŻl$ӭ |A:ɋ|}w0 uzQ+ʔ_wasMjxtres ƚٚt b1IS,&v|( 2J[$ .R\X)8^ "H5M(%NkJ< VMF B 1KʥTeT['lz, 2ĞZpYOd '풿gѢl^,MmVwܙc \*g+sOgNnJ6,N-d+УSёNג2o9U_hoEնt3b\y{dz:h_CVߺ"1ntΩsCjN_YLJzURhUΜ%9Z]FՓ6N~MqR9G%#R t\xp|ő 9j8%}6iUH"ۋL$`9=ӻnB/0nV3_P5'|AMx9W<3+R.T ٪.w8:=vΘ~BUR{CLq4Mdº poNae7v 41>B~(~>|ꂜ5"J/]P1]7[(Hu.5DUh YZ:d'XHt>q#7⾧9w4Y7[ed `iUD+VDs^a~t-b<9H8vKsÔsh-|Ѓo 8g6$.oy/ 2G빔g$mz1)AZs UjZ6N:\ 8ָ+m^s֡a'+yԽWo)kEb5S|Jj9~#IsH8 DIS$ng d5>Zx9-Q_8}`CtC!4wc^а44:6V_#'6ΐ\4ZG X@VIWAmN)ula 0el5rķ:DadHLF|+G8jrv'ݝdA5d];zy߷L=w0N箱x:(:ăWHN6H1J &ebv.x  _PHac04!47ol'oՊ<9l[H}l99t)V+l:MaimL_xz=jn=Fl!7Sz뮃zId;gN~/g60{eV\1F% k $al b` I#.0D'}~ N{z"tD,?|TEhV%T*6"i!`;K}e@Os$# 3>1SKt0j$_`eWuEW/! hi201yvtj䬡-Fj|-_Ráǿ( ~OZpBXE%G?mx]sw,$MFg&S>t2^8Es? +fPMnl2*XVxpOJ.o?'f-aT}ڄl[q6sAMd M-1O1(L)D6Ή/̰,{=$-oʈ\-;\<Ü6°K63Т2'<ÃR~Ȑo'W ?eᥒui Z!kE+wX?ȧKF`PvⴠV#E{ %<5i& ާ X1d،|"5) VtB@ȅJGI4\2ZarD%V&( 1 I]Pp-滫7RոHe: 0A3WKhvs,TRu^oY&.z3HՉMW[N^ϜLGPz7EoQ&2 q@g8f?0//8 llF'; 'ϑ/}dU1uQ]HTڥ$5${$+3:ic\XSMݾ@ 6\BRI#`ҝ.dpz&3%.ߴML ׍D#{Ncï/~g+y?sWMh ~w*YӊxFl4s@G tj\{0e ?ɛש7sGƂ7 VA_,A/%UɂݔI)dgIF'^=x Yp(fAz5뜥4l-Hz99fpےojk ʏa us;e0};K(FHE?ShĬIk 30nHVWnBt@wGa!MPTpBҽoysFObn=¢?Re*r_cІv&;2#]l==2@#}, wyDnX񷇤xCLQDjq{vvTa;V{a`nYOD @o"} 1񎖶ѢIBYlnd~*&xCakś\zX*I.1 Y $^&(K^fa0gZƮ7^/{Dӣ+aҹF\-zkY4)}%Ul$oHʹ4Ϟ&lV)ɜȴ#Vۖ#hM'g E*܋s\Ǟm4`*~^9+#y&lU?js'@ZJp: ښ쐴l "uԵ[=SG*4ƒ|) ϶;q鹍!4zu\:3b+k)lw˱.?D D&_rݐP7͡TbE-6J`.=;fMqwmv}u6yIR(qL-t0̉ 7墳gu歧`rmI"C| ^o֊5^ hUL!#Y9:rKI7dzUUʙh}٤5Sp )FaDGGo$7Jzp%DY#Ьs>}?X;ˢw29n5 oeZ,ˊy:Df^ɖJg6ZzgOZotgT$ʻ hEAT]Ocm(ڡ=,ŤL <20/r<ïpB͊`v~|fGN6Ur ~hfzRFxS./'j})Ov&ŒezUG_uFT C9`x`jk4gG}B@uց>E.yWp~@T g[}@⟆&fJTw wH ch6m8l6Lvu~*>iTT̓+MsuG>nDc Æ?Jf/ ku$7lo;o[UZ,航sOtYZ~mRj AFuOT2Hݴ#/A3반Ԁg?6eբ؃Dpt0N*ⅱսIMs(YWmM&}zA(T T 1 QO(^ւﮖ \!5P#VJ}n~K{GԆ8t]{GhcVXRl}Z9pm "4`OYP rq`ųkBG'$Qq 6Bm5l_b/ (SDj&Ip8̳@[w=ӎ(nYO!)5Y^b^Q=3_=OԪ Ц<߱ [hLNq?kH?a淚$<Bn;Jmq%c|UK ]*|XZ` r2TWs(@ 5! sǗiK}̏ CVd|3khhvUHK]dO$BMAHݞ:Qa, ]vr(.ݐQY{.pF^0Z,HrfZ*7-/aY~\!!Hqoh1A䧢}c[4Q^y0ET^H7dDwHmsPHZmu9AiR>"kq PwS{ͪc>| XR͡WrBO&zbAWDl.Y )k 2Hx4oGXM7<uɥXG[@J4Oe%U;/[77fPmx{9+Ź7Z^OSLPoyX,۱S745*?I!imG|=jUV  Ӗ*]NjlP*bHTѹDIlp.!|@4T'pz8惤!'3sTiVZV:^Sd8Q z|!.Aed`UݚqEvyVaI'LLlO̢H$6uK~sCL_l:v߄9nI4d3]kDXqA5vuqnZ ?XL$0#aVFͯ,ome<)WL?56+>y 5jxB{,YGmLJ"c!Kvwd,X8 Vr mkWӄ6?0~?K4]mPClND In')YsL0A FAɺm9GfQ#]/;tU,]i U΀o%W"TFٴkW~`*e&fd撴yH4?]C`U5tɓ+> Aa OHҔl5%NfJfYbl,@_=hi]&|>]oE ~XJ%!A8fn]~?_qxQe [/>Xj_K㳠&\4U IM=W <Lj`S@LK3=IG\-]j-|U=:XLТӪ/cʔY"ΦJdU}sDr?M) Ndd:w_,a0 F8\' &.vf  v+YV]|51ʞ}Ēݱ\kp Xx9z脤v=~"s+3)WoTَ&M_gx/Q}w4?EvJ/itœ7ӑ\4/'QĞ.߳eG_YsR+!2BDO,PLVNagbp q Q-$&!Gɰ!6oCC*;Ci5-vf,k:#Х3] B4~=n?UET"?>+n#;\6 lCjqq96)j_c \ lЦ G\Fc-_t?12Ƹ 3s/oAsqt@C#E($a07ۻEjQGH1GBNl=\UV`XឯdO9b]#խuM_^y̬xM h4MdFu%Wr+aPexBctr`(00J(":rl#FÔa+у b`{1~?7(OerBph;ɞ̕.I? +*E vw.4&r?A!lBI ,;ZY.S6×Jk@-{OND*r,KUÑ}'^ @ 6o0falߧQ77Vf5D]ac_,~g@?lHٜ_qJaʇ5A"?KEZr?jn\. UHYUt62 Y݉-Ӷo:A* `PO 3 E>w0r$[Ռ# U򩜼#j&.#ab{L{M  ,$䗈 _1$N3IJN*C!"V3Ω6gf"Wiihޭ2̷u`_kZ@D;Ѹ Ft/@N,)CxA"+` vVgG(p+%8!.ߍ^- kAјd(/\lEOpc%%rUO$3c+!h{~1d.|J Q]TO>w_m#s5Z <@ ʁt]R̥\ пS#|rvQkhw{)ncv#.Zx. $?xKa$yn*,@Qz>UۘaAޅX8qMlR"r=̶QZuIzEåF ̼Y@0ՐvoRtZђߜ^B3pJ:&$MN6^ԫ ]CjJzřXשdn1^oXx@fgm 9EW ~y0oG~$a( ) a&Ro)nhȳ}"g鼋QLrF7r; 7*1cvw d{SמYE2/)U,!eht_j:-b&\Ig1iD=U\ݾ{>WNqy?kR*С7pe 36j < ̢Z cv|mg|䊯p.٫qd|x6;>y KFv({śT |Z%Wq;C3Gahg %=zl ~C^72TN-hq{.3wW{^Yf_ˏ;dCM j歞(p1̙-Ar,,ɭ68/~ Wm{I;)gVU^h$C5 ZWrQW^[]CǙWY/ ,~;=a,O:kPFI⪙筪~bϔƢ?یv)!aZ{~=$Cxu݌_< U+lz(Gm`dM ,≪JtTRTyBT"e^ K4>pVMhԷMjd$-Xr`/S2Qx܆dq"T$BWpd =<ߦHUY+< ^2,-]Kx;pFʑ'2ZU_%\\ ͧVAS8H FR°nHVX| W0z-SґuN"8Fcڍ7{ۆׂZ>x N;v tHeH&Hi_1 >yZ{4?#q\[jPoGZ5ɰLojLZ3;DL{dͅ*-aK^_6a/P7Eӫ : w*cl'*ѥD$L"*=ŁP| ̌ceP~1g҂)A-<xheLFcy>`{ꦪҁ6$= g:8ڤcp]I:l(W n/3L1sN!@"*2UF" yPbC]_H\ӓ׼~F%6X(xtD +ByذPqQr,8L D%J v=26fuڅٳ>8yN+֨ ]{sϒ-e,'&zG*{0xPiW>Ʃ*5*Fͬ=_xExurQ {ylX I=_8c,pLP0ݫE9س 2Iҕ0^|. 2*DE07_F8FK9"o9k6'SP{"= /4O=ΧBˮJyՉ>+dy$gkCSky%|фz=WNc)]_]k w@Ui;Ux5>UךϿX< ԅxnzR>k)h>o88g)pS ` K}O.;sTqj7A 7-&spOW7̓~ď@h: J5ȬjUnݑsPIܖi~>4(s$iuF2` ίi*sU5o,?*22H!wʼn|a=kqe3 { AJr3J4qnsH jwH~<*޳y?gyOa9/c>_$,GoJvN#Sr&I9Qh:^Ko"qKAP^&1 `TD3{QOoy/6ҼطѴF]uIWRQW^*BBxHsmB3ټZ=8эg&T;j!i)A0*ٴWARL-VNgz<[3b(%vH4Ppk+`] ػh[ӠZ_ RI7'm2U"DdޛRe>c9~NDZ!z0;8Ocv+) w$;~7gTjz1]}QV2##9~/ * K՝eĿJNRmTcP@ۭU@^')_H2~dxZ%q:0ri^=9P:GC:B{~N:"b[?ގ;T0~Pd'Ԉaa009cPTsБӂY^9藒.YOy0_4:N~E#X,i1O :*/A sIPiG44C+h0=NYN+RWzŸcHTan>|ZPyaLa3;6Y1{=sURۚ_2b)vC S2EZ"Lvt)? 3.O-$n49 $D7Z1&fY ":/VNw 1.N<F A WXo ʺ~^ jKlCݟWS!TFQd~_W^s(K߅Ix9|t@cجf3= 86$ljP0!Wwvݿ)s~,}FWq)N\*/(>n-Wx{aO~=g[QD=OM9 X7#㹅Z_oXV^aY̨&NmqPToHG^uap)h#Q[0C&/`9Pjg:D).6`*Iܞ[>C H in1uJ|_H?(p8T5zX_* (iB!W.{^E\t޲&a9$v gX8+X'e{~ ]($cҭOVW哦ܵˆٔ0XqajC3iI?:)U9`-CBz*60Lj=;% *;IQ VGE=kܠ)w9P]A߄T"ֶwoQCA/y-@E κ~C` )YPSAS|\vZaZK%G_rÒ]hdОe sZ4,?˛~z{aawn"IERrS8_b71IKC@DW>/2' ptePl~1{ġց)vi2 nyKvWjU/aswxG] }U"z! $g:`b~>$+V|=.O/?2F%"t'\@{q,s4U<Č RatOki&VS[ D }FUUYVv{ϸ 2~>< Ů# V2c=!˻J|xTa#kAk@&- }|CzO{Զ*et 4v,LJΙR + O |BBa>`DnIom*nRe'/~U)}3]wb Z+3(n7ՠėA!jo!\64_y\]ۂPA$ѯJU Svoa9{J=P {~0vAV[pFn-|yť\[.PS2~ ;҇LhY6H.9Q&>+.9.Nݟ]x9q .h~%27y2 _* 8qR?*:Ce&a M~@!KNlܯVkT}۵֝"iuA_,EB\dp\ Guzv%K b"ȵu +'Pam桗P5aXuSe$x-tNӃTIJnH&vt2klL=xh4x(hjMқyֳ,֧iD G5t'mnGc$?~N>߾Bf=RE g o=$< ^7 %4Ϩ +6Ԡ{@б aJr. LQ1:sݮF x*VY%I Nza' 2_<s5 > rTf8A_(Κh#Rfh(Bk^bk?E?)K6b3TXbf-s4p.,N75ˤ\= "= c -)Sv+É,čόu`8EH?ɸ˖-!CN '`Ca(<ĂG4tV[lMݏBLE R'S.AGʈg"ˁO)9bv|e#L'XPPoq f-P, 6Z*r{4sy/XJ5(tI9ɠoxXh]u#B5)])_ݳmS/^ (DNmFϙ̯c[}]k½uqf*|_ >XG<u+h^4Y(b';bFǁHm3M=z@ݷL,# jyٟyY=&vޜ3D&/]6<} Kz*J]C l= (u'HIƸW7[UGyt Ӷ^,B7Jˌ. ͗8-)_tD7E41v,YU^q÷g>9Z0_mճG$/S{zȺ=:ُp#z5!J\İG)^i9l9MwѺ5cPM='|M=xJQp}psz6xsCq]D6tΣ0co1 t]$#Z}hڔL ÉD[pz Avb%;7BJ@J4ߵ2C)h 5{9 k#cגə_ `ε ?&=9&MZڞAH5\bkIYpq0WPR9ޖ8ʜSKJl*'C=2*-REO@@9ݒ&,vL+'`WWZy%G2b_j/~1*94 Tn HiT(\dRIi=.n^hڅgkxڇ($YK4*DWB>K#%25ФI!'m[%*9Yѐ!R`iKk&nJNwH񚄂ϧZR7Ԕ? 32㢼'o,#-DH湈o}'c';+R/&rITs5c)W?}Ury!-³̖d*;CcW#Wa)mIK+sxPMAB9 (hM6[ϰ~"?rPZ`8ᔾcM? 1/|it#\\kvl]GRo9^S;'SO`妲J־v+w4dr#gAfx[c& KS>f^lZ̄7܇ lyҝCelZ# K9 יd-!Laڸ`F&7Џ<\je 9XOQEt+gO}ZAl҉hz$_ UͰ:ĥWMKlڣ$ -l?D~wWC7[rRgj#wNs$1I͒+˔@v^?Aucƅ/π{)#F]Baȧ(&SXT(nX Q "8y b "ŵQR̜|;YiSKY"w}7<Ԭh2t #Z mTޗySSq~+b+ERmFI%_(gw$ҋo[ҧ.6e~ +Z~ID-PmN&m•Ƙ^p+ܙ~,g kn9겮hy9{^2Xχ ûeYY~MͺIr/a*$3l6HM[,GӞD=^O_C+%Zk@DS@.*U+&9V2Ca慤ѹ^n]> -ujGS󂁓` yq#lGcQŁ:%~U_C]f$rA YzXQhRNxx% ZLhVÑ,Pu-9*6J4^8tڣє|F\5_:Hʙd iT.agnWTRa>$`)*wA3 əcTR&FOFPtXZ2~(}q2pcO< K`k]S^"T&o&m8pY>L1Lm:2}yqxsAyLA<\=@nةuA >h6b"A=7qfؾ6I7B.1I}zR/0`1G$2+FTn-4%7Ĕ,$팈oYdr/ӰM,aCmG" O~sUACY)\T!#E!IR3zN"|5nnv3DUg][i3jATUniBUMSJ34\2Г#m*1O}<K?UT |Vk M CozU夳c,q֥ވke@S:r3@t_^ Lb8·jLI{ie AJAQau_yBފDZjYP'cVsWE?P͜t* ϊvlW~(W*vMRDc=!;Aa19ԁ WȁMbyJU;״}ݞsN ۘo^5U \NIЉvqZGw8EWmg궦*yx/e< xG_{ u ͚l+4ͦ'v§eބQO}4SKxA7gBtP/c)i QL+e|9ha2Ln=AzesI3.j*r(Kcxvf݋y@>(YRpڝ@BӶ8~dYIr0HU"?açgIԚ hߛ:^,N['"1ә0?i!{z2~$D~r= q&>#%g:^?t.RՖ%aZ tQLC2K4۾EsN3Wqu*YVfy YV{o.J|>B]8m"Z1{+Z>7DZF`Ѝ}86s0fk#svi!ZӸ-g#;C~o_EB#ʽ?$'zq ĩQK#*anFdbVD}~^/ 6ӫAdlovv,iX}B]e(᰼OOϼ<4m~-3\aB7I܍׌gg⎕Yv[)/9}7?zPƸkYG/E#ϙG"m)Khq.qC<v53רkF1&BFz/5inˤAzqֈ$@ R!쓃#y2ɤ)) m %V|^e)ErVi:5%֯]c\"50ޥ?VB&-N?jCHƁj60QٍQ^|lȪ'iw´$Mg܎bկMasV²[0~ZAGX]u}ș88z>כb#~ަƔS\͓P@;\q'Wwϥ⏫O F o[80D1kDSv/2sl='[o@κ׸EcUS[QJ :q >U1}PC)Y>⥬ﻤӐCߓAB\tc}tcG.'YgĔ8&8D-g$3^g]y;%ܕε%0;76Bȥ,a8ɚ|[!bsnTB0?လۄ.i{E?RiT佣o_l{'E&ĻR؅ ml^82&vV6GpvR'ڥ~ f_oŰD0j#{R,dMّW{+ӪAod [~ 5.q,_0A=2!Yߒ'$ΌVIǸ'0{*[AqFTGOfHn#~` T3ԠݷiJͳbJr1MXdvGɟt}%iQfo߲MI)uʒz\Ra zѵ=Su2\)1 |̾OY?RH^NZZgr➀HP[uMqslŖrh"xl a9 0V7wBsM|Is—2sJJŝsfT\ՋU[,TT&} CG9 ;-tf+:ZFy{[Fy GwWăU2ay_>j}>,h` қx[?"ǵlpb^K&T{ JgTkqw۽/ ;u_M^7Ɣ$cNF!Vf_:[xSJ;_KZ\'b"|ްJdaץ`tg+Ikˎ %pU['  H@ȗfS\I[^'/Z8a>͝WQ NK@ŷS%R`x"'HP 2lb;@|ںCgS B$:.E8t.z+~l'_وCq`20i zp\] qjht .VA(hPn$¸ Ufy̞ uMq|RaVai9UpG-!mGLM%J$bmFjJ%3f6d8)yCق})'cMlmֹ߰cC3lhQvxnB=ٔ-14p1dwM4k ʼ18* %Ϗq4n  *#5_fc=+:1Ғ3 u"""\iCTB5<&`LEՔ$Q&uʖl̋*'^O;|KS7]}l>+Ll?-\qjM6uIgغ> 3-M;,ZIJSD#N+ylxrw)u+׹9JE >t˞?\KG^e F Kqf^ZؚcY<A$}'ރv!x˔gFx͵] 2nţCN uxL fY $^`"zXAl|['n6/jG]|&UAꃒZWnSG\mb6u6iGp~zEїPCahE (%4mc !{7^z&h`Cio*S홿v:QR%R;T rnsDn&ɿy3W7:Q9˛Zʠ-NXkK3K3Y5B-pHk2n?ZG>רysiAR|mz>xq' _r˅J\z1h g쾰nC0p/# @2uJh749汉䀄ib4ń>WܭKB I-_i1PP}U,!KtlA828ߎeu`'&CKG=s-aS W*xZ}H=du0&JG$H'C0`LpO' 5\r5 7kض<2 Gٷ}es)D.n>A;H {0kH{xf{=aG(oR"p=?jǸ\FQdhj3,9N[jB.X~s%O@ئ`P7zw(2!òf& Ek2loR*D*9Z,QtÄ{$:uLYtv'u_{vu7նL*1KvXN5gBYo,hڑN߯9{GUW<=J PՆ>6ano}AI^MCxQ9)ɓgń:,߷0eu|GT`E,R[iR9gJz8V0!R G!KC< h{6޽ZC8=ҊH839{ EIXG:f[$,71 0#%ӀM~#ԌUs39%P!ogz`Ϫ@P׏vzO%,$SB]E {l V;t-_!Z^ b:zY,k5?"[6LSyl&RQ#Q4/&Ns+QI{@F?v!&ac+ ib6pjTeJE :<1ݏ"u1հ,Nͺ0#!+m9;¹ys`RW2 4"O2ZPsw^لw?狈 h߰3O7W#?gΈU'szНϧ fr}ŏ:qX]SA<x׊5dv*D\2A9զ2Z6$F*PW4Mu!# і Pd5Cuǩ~rFU" j,&6d>]<jI4& < `xHnf% =>j 1ihQ>7,kF>ԯ93=\}SdzۮsM 3d >ɥ&Kc>g[Bot5a"SƩ jq!nBF fC'ID̨oU3JsIiCSôpEƈX-@LȤ/|aqzNp.DS" ؾ-S]Wؑ _LbNU-f?A!76b;U*M82tkY+,+(v4 J2^0>W+gNjS R¬up fD-pl3/UQPG3#dz;K-zj <IZ8L1il0x EeB-~s&4GN̠YYd@.`(~$Hɒ)iيeGBSfE03opn8hOӣ??! ^@^hLd0gml [[όŶDl瀄э_53'[ugVL&43#UXo}}Bč;,KܶLe]FgO[h$HqHU(hPMEb,Π b hkdC4q(m7n̯p [>p5>dctGCPH&rn< }LaW^p孨˥47-jΠArc^#6g(QI&4e]۷A 'q&+6d-n~y>>.Ym_c[ [) ЮuU\ 2qbZiKg̅4Rp*5!Vc<4Aެxx.P$.YJRr+B@(?cE$EBq:!IЀWZ3ʝ@ws }[Yfړb=e3蚇5Hv}x6ϩXՋGW'ې,BZ@ߊ>wBOq{Tj$#63uCIMb"{~DI k&T n CQc#^TRHNG^ۃF"懑^:1=Z} 80'n7O],Aisrαc·wPc;]HȦ!b1IK%O-eUhQ_ B!ʄ?U0V{~Sq 9uY0ẑ|>Pc/.9_}oTaʮ ~mC ?N}LBfk {f/5\B" mY|䒶j/K{fyd!@4xpO4r%oFe颛wF\_Mr u 胔 j0v n@^$ t VHuqť0k'`3hHA4v[A |<CpRھ(# NMq7P:y/8by7x6q.s fLnz±eϯkt wzLZTUͬi؄[` HNMDU؈X]8חؾZN\p\lΨ^"عpJγuM*w8`8v1ˀ?ijbӣ:Nnj¦ AS3vŸr{h^3_f%e|PrdMMآنnQDX[Q*QgZ<w"_AdG Mm%CBW$plnN=RƛE,5vanA~?X^u^dC,?8 \i.C8vkG#ΠjO`. &dk8SuAvS <uÓVOET/* !3SxGqW\ Ѻ3ˀ6zp+SB^E p:t/łda3[cг4yy4%YGF[Ub#i\@tw顋tp![魵Ͱ/lcPa ёbsT6T; dXC"SC%ڋʮ3, 4ŜJ`x#V`S/ _ a,QSJ/L9|uLӍ9dlkymqT^&OU.lUQh =\hC "Y}jK{ɤK|:֩bGY0vhY~V'EB&B>&P 5:N>C[1!-Ȩ\>t*s- Sb2:tG_B+}~`@D45ב=FR{4Pu]w:m QSR.$T C6?Ԙy}X[3ruD14O3FZ,OӐƿfirBIVj3Lc·J:aA4iQ1E"%\?o,ح@_$C950?HTrA0>;%I$>8EqAʃjHT|Tb&S1k:'v/IJ,;r=IFvq"&DIIH?&[5WJFKc:y7ɇ v8AQs@Usq)Lĥ&E6}ZOmM4ZjԖ?#Tv $ ;8 biQ0GB3,ސfLL¹!7~ =^cW9Zv)AH`s~_3K՘$Wcgόnw>9402(EwUI @1ug=O-ٗk&GӪrg/tfom(@T.BYcQ]>E&訦zbRWK2>$ާY V*jazV̺g2jmE4fcJ;><.QRhT2κ9i7x' fTWwDT#{bR2[4AԪ|iҬp~4.NF.owA37 qKer D@hrGka-&ض19} Dp+x YƉb|Mpk/bثS^"#> *`Ϯ\TZ y l_@(]ۈ'`3igv0pY[NXtGuJwd+Q@%lj bx ; =CGvdkirI[z_xwT}m]Ԝzf o)U9Mk7cwG~KnUi@B:>O|"t}"uD(w6 JjFv רU5b_X[4o G7յ{5磱U 2DIK~h댶68_aªh"Ȥ=)ܠ /y6c] `R7$Z7͘(_ںIt_sw͛WK4ZFV@BȾNpv\=b{Ȥ:&翰)RR=mKJhFy틙6h-xD7\Ƿ:^}t8?7y܇sv~Rzn#LX4h<})6v  ?+AH7/b'Ŋ@30`w~VXjnh·' g6z~n%_fFƑxj}C]2<涚*WIK–J:4^;Qoۼ1累ꍲH$VUm#*m\t4Ņ3 YvM.̏hR7C~iTv"JPpq %6e q+4)#'tLPLʝXh= 7@d]i q6-ˆXb`HGP!YޞL6u5Z+I G<`g{f[):0]U;:0zICpO'vԖaOcٗ 6++7;4FFo ULy&P!v_aڹ L_9?u)#(l}ɖao 4ayA:Pbd&xsGUua83Ǚ9g̕HJ3 3}/= tk_FLCQZ\2ACO K3 nPZє[>qAW~$y:3y2*CҎP{K1k ?jn3YNR֭7E{po_HyLX~7N.AYafmKhq?{K,(lS BQTa砰b=<_EW;Y Npо2W(c4dmq]Jj=zvhEHG- cQa[zڢF;#fߡlF|v2Ķ"(uI0`#wi>s5@( 2\6Pek+ð~$km=1+aXtg'*>vDiΎʕS;FuXR9U ~N+9ΒtpyHU/2 JצY2 aT{s;ԥNK"T:|2/O$LCɈgŪs&I\A6!Cv5r'ٵRAF3\uӄW!0:YE;:`](l O_Xi3TxEO9|<)KАI]kpFb]: 7(;KVZ@Fؒ{P+؈6jk9A|Zm 7@gX\zo@+)D6B0"ٚkӱ}}#NI0{V o w !Ϋy)9 dp+6=AJONY#a=nu :r7Pxkmp\&`Z̬&O@ȁrJu0Rq!{WV+y4P#ɃSVJp@saX_~Q]O> ; (z_1؄&ϹC {*>STnŗĀWwl~TfuU{zWLe>HD0iY"io؆t<%984GS̆|Pla- 2jX5qu$x?tL;zl1gF3=(fbOh;(CW8{z@SƔ})IڤHKRWaJprp+7]|}LӁBcO\Y6GljGUudWE55`ZW{߭TyMo!f`-(K:/ =Kʓ$IBld؟;b 9A.D3 '\`*o1Qks mʩSN_HsF~Y GeESzMneY'k0Dg|].em/[5JGpT~Q9(Oyw7 18? ߭8 πl•F5Wj/4T DRʡd5F8ۻ{C^ӜǤ RYᠯ B#ԷuTuM",+1l[Vo+H9s> z2=5?EXb$e5+'٫,u;O_# l_^-|(H>:Tw\V&):AQq℃:V :+u;y 8^I~I[U2B>!-Y@-{"K C{X?DtiOu\㼼_g@#|7C5<5+ ^gz@ʵq9tQ x tWG} +qV25[>)kjD J̹Z04 TTDn*h@ qqBaB|9]m9LMY3 yU ^|Z: .c`kX~n0b~[6갖xE&pqSrj_m3T`efZB 9"@ غ|tG/hx_Zq%6KBvE^! s`ՀJő:wYwlI $?s!5?ETg SۇUcHgeُcn ~l#]ܥ ۈIErp5s'Z["ʱXmq3sIQ Ԩ۟W14R,S$fbLD(,8kw_Ț!⥟L~s7~:1H;jN:@"EiuS*Lv;W2neL&4GQ}t9߸/=mt{"'>~=qfU6 g9v-=3\ LNKݸE\hHVZpeiU,UVmFi"OWQbˋ/%e5:gg~:t{Dr}LMlb#M 8\tiAz&(Ѽ;C5+[m@z!N @cϾ8Pj&C&*0+!Y$W$ޠt,munu,̀]c# %]P'>dMnWPSQj Sp<08`XYs~deM>}w_ayJ[3Y"C]' n[l{& ^H ]aE2|Zm0~K* `KOֳkd`. [O~6m2M4yql>^Y,myhDB w1_Ud$E3瀬PhYXb0/q~۠qsg QOT2RT]*A!Ԗ,ET m3{O= -P+bGwBF~/en`EDxuD" @#Ɉ4-! 9>_t6R27j.HQv1'VCFO\޸ze]e/ȮV}h@Hٟ/00B_;v! lM}o(K$J{7Cn/=\ddu%|M.@&!V&PnRAP tbɃ).wh.Αт?Wwj8HsdmakXv#D6Zo]-?#}Ttk]Hdݴ\_dAhgK8wuzR™lf,NTSj睴KT6-7d OKv,To@򵭕%|R \Y\8. W`hcCh}/5+!Qqsօt~jtrCqr.q! e!mǯH[ JV@H5aZώKc%dq|X'uJ`rw N+=JlQ`!|24s_B'5·W㴫o)X%7*u{hR'B[8wLtmsG&6 a }?u]p{1Ö=}I-@a:J6 2)%FVF-_Pۊ6#p ASL  ïU61rR'; c&=BhmF$`f;m< 2ViXu1gX4U/C:흠#7T:[f80;6碶vQk`JrI$I+5`^Iz;>\cp> =u7zUI O󽈲F0dZ/d*KL+xY•NZ>?(m#<]ATYCpõW*9SPL|6|ʦ7m߮͂㸒IfK!͆Ay|~]5a?[Uqo[Z\3V&f":W\q2bDeB8h^)F8,{+cY|}rnR.L(`M];nG=۩vaA$n֜^%;(~ڣ g;gKIkGd5:3{\t ~;CN0M&3T>!i_OEiPAޝ;さ#CStvt*]IMCu1_u/F^y_Jg,m9HY2 [@M)(0aXr*' 9&x~aDAzݪLEo?cKDXP'ÂgBUz(c?X|+`Df}H5Q"gx?l+A|Zp5?LB'ޱ$eȣ qx{rŻ9$w3DZ^神J\Skɒ Ķ~WTe0:eiQEx,l7YVA:|P/ACb"|ddM+%El)H_Z\_/D{%= lcfo<_.`XT"k2]@擱MGa؋umls: ~%TK_xPZr뽜*HNւQKwݴAV͵\;;5n@Vs,"Ⱦ_N]+ _)ѾwA4 e͜<%1\|+A%Or'ICvƨ*Gǃ'#9i^g:;"Le}`(P+G*z\dzWBlw^&Qo9"BZq|_|rNʨhw1J|08&Ͷ? ۡ>齹Noo!qhwԭ7 I| $pn: =6Lv.HegKQķ%pRcg:!Cl'P#˨,2u^lB1-VǣJ[)Yf2vp2{ٷ^(\Kix2BcOdȘu 1-/@h߀d"_sxBN^iA+|qCo ,_Yw.Y{Ӷ0VE^u(c=]ܘW|)!M$~5AgC%~VSpy+ŠFLO0KIw0T4Se[$ps|۽ !\ QD):pu cSJ)ksVaWAt &z$t|QrRKDteG?AK89U'|Uj^[ xg)'n&hsh2@:FS1L ǞLP{_H)GBUѷ@ `[`>qR:$&bQDZ1NSBfDni9 Wl2΋“əE3+ίzwDey$։X@u[r(+}zz`^mLgaH~ AI[ f@-6~n_slQZ,*udhۈiXۗpLƣRk H Gxr.wN')A.U9ӾvxJ؝|ODFǯH:cuDZ,kgN?S:s0#bo#IX|T$n葮!u>gtB9#[. 6JL.vÙ o:-UO>Y[ (t xxQQ`0ߞPf’”=}Y`[yڥ27%kcuMT3r$ӮqtOg?t-1,8. 0$ m'xRWs'o7OWvjiK\].^H%x7^hJ A[e+lslab/5s6뗂ś]K=ks{m}Fm*ǨdY٢DKxSM㽴.0Ϻ.V㳰x-,De=e7"񓥌"C1 ^x;mB=-{CF"t֠ {-ߩalQќip d_. iJN<4GS8#?gxf `JWu+KSGWЦ YI15BN^D ^ ԟB*`U ٠kHy ؃i:%   j.OVŦE+&14{IZ/3)(]]Oe*逸K](ĝ5"MM^(ԑe a} u.+i2? HtoHisf9HaӢ)U՜ӈ=5K1Ģc.< oW1.v&XrqpSNj^>z8p~,'G]D !7,T،b++]ѻDE3ڴc&7f@ėwV]\PUl**vI}>q*\C=BtN mm ޽V?°~zW 5G#"[ WU[[W&k퇢1z8"o`A)~r N{󟝠ga#/(.׻WUL&Ukp| ~6̒VB< KF8`_Q:nnZ">zl/ s_MIx@( zGBro7l#;ҖImvA7β/ӘiE glwÒp?E ,F3nYBLG?KPz7Д'a=Jcg/CWI:$Z};:}Z*{w  \Rc* * Vrw#v*JU V۝ . E [bX52o wɛ&g<- {N Q"d)_9ǣ`@==A7FոJi.R;riLtJ}ЭDzdvk1y bQR&[ﴴ\yTP9CPB:60-ްk<+) z/ߏ5{7 f?i c0`LZM Фߕ+HW>dE7]:yԤmau=# mܹziuб Aӗ(.F \z:RJFH)xS(C!emv'1$NcnAQ]?5 KÉ[6#Au4D'KZ[UƐJd>Au 0D'r_6GF X ׿?y]360 ,$v)aD3%:j+ƺ=1 NzUhB|#۝ۀ$ؒsz%J%EVB}v ?vس5=wdOu_p 3|E?+#n4t6}GQPϠ٢lH}z'U3i~wxwTyVetQ>NL(hUz]]q%r|45OnɞmoĘf)_26gBK'~:nܿ-,uc+s}1H.|qx/:73 z<uo> nt)3<4:z:ʱip7KzD!aw JL:Sѭ gax b) x='a!9,ZPJMs62H)hG͑~sS)_ĵG,jtO#nO]|2cl؊=Jy2-)WBueEvnHlٯ} [n nD$^-HPgA^Y"o$[i Πnѽi8 }dGt>Y ܫgMxK$Sli?~hg0$BnWE~Zwy%hT'GKGiڨqb :tՁ=?tP˺e,`@ᨏ!R Bg]뭋NIVs9<~Ҽ' jL7u<q>6:k]>X`bak|p= g*o?}ޙ= |/Ol;G& 231cO'X>g]vo]$7$2r~qz2UjaNÉ^s|DlnT􆩆fj|H>Iϣ #MRa>OH+}k/+K@{r{#F 4|1}G\4Xx _aaj?"/YwFrS=􄥱&v<荋dePxD82BܽM`0R&qd#\P,H$9ʁ/Y֞7#ܗ]٘8:UjWK՞dF"ٴ K>.`$[-YA9d@6mRZg? = 3ff3Y+62P5gm!ޘkݜ:Cr2FUJBTHwOzF6eT@wd_k@D#t/AWx +3F7*oxi!ȋMR!@0@O1)ŽWqKd7[%;U0i׃9! &@OU|ِ^B-ZsFP8oGnцnwkLMhڹ+#/񢍍mܒ_ƽ K=',+'7 ŌJ'ͨ~ͺseвU c1I?8)ѳZjJUTgps: X;ڥzű9r4nE"(/zrI/’J3,!\H+VMvbnQK V!IHd =aCk~]K_H-m0yh[ t9t h u }^+Q374<2cs>nV=ڨ 5Z,Nk@N:,s/g/6~! t\g+D8ji PU10Q79`ѡhKyڳ#l LW;lޢ'J@D4qxiĺ')j!2~Z΂\( a8K*pȢ&@BXtHБQ,srM=e!E ǡ\ ^5ս%QIAhjkM%]hE#zOԒd&Wჲιr4;:eeYKRR9/#SAY  :[Am~V?Q ~B.,:4 !/y 1]cjIIJ:uɆp?cgvzc9)v)[em$夣Hu(ilBi6yc 2?[o*hG"0ĉ阻FUmlbHģhR^i#__,G<ݫVF~;ka2B[N C8Pۡ#C|]=s3 J"'( Ӷ *'hK Ւy1?ՏWEx*څEWV3Q, ќ[ԦN_RHF &W2)(!3~򧘬 R2n ?dXY;Waş?%oִi;{Bi, X'+Uڧž(S{/ Zh 2RR:W4^fVI@3zI$(|% T~~w%gE;ȇ-%CKk$KI}a/LcFp+R'5wy/Hx~`= `V/jy/pRd~2wV کìքORΘX(!@ŃmVsotU6fH e= C4B4;kzy"h0Pxf#qW/p<0 >=/KC-\'Lr$p(RPr@>/Ƴ1Jۃ׮4蹵=ϲU$в&UyTEGL&ri(Al 6?DZdܷITR%hѻ$l܇tqTka>]*F ±NREqF@X4u "d|Z62|6ͯ q&P3:\B-*Flx3ѱk0]#C},ΠhӸU r"&Ϯq KaIԺ$on^% |H:gR30pdxW<~,R(.UwO£,Ȏ ߀Q;=gN45`_uvO' |\kt2kp>/6Y{Ez|bz>)Q-}0Mg),MZ*2p3Z90Ò_FE`TH\&f ࡳL܋ΰ'̎EJ@W$.RS<"ubP󇌛Sok?{f\EtN_SHds-"Bw_$zZ么`f *vg[:S4w"y u)(^^[PB5=9{&Ra{n*N]eth䣋gNXBS/ēpJ~K2fmdR< \^ȀN\$ɘktVBQ b}dhNȾ3Fyܰg Ff@3İX,z C4ňL$ FAj)kO0qx~z&qJW2kqv`;@IM3ЂLuRR!JAqHeʢҊh?QGoLGr2\`{"j!3m}!Tmiom,ز``P-R_+ևwGZ#lĶhw]S+dCL046/` ?k ܯQ$?p`Ւ@hb#@;N%v]X7!5_lYo]aiׅve6|8 D2Ft8xX| ~&22mF{^ vh6\-@{`"d2^?T1>d{q5G6\E;ؽSGdrJA[C㝒àʙgAT@Fw -Ǣ uVAv,Ƭp4S.GS\ƛV <,>fV`Ņ_!YN!)r;:4"vtC- ,:2kr acݕG)Ҭ.#9RlwDsDhcIYM! ZGS }e^ĀQ0nLdY~qZA|8)i:Ăo%yט&À}{p2X_sG *B$c 6 ᆘN }C7- ߤu©,Ml !-^l eU@L+éLD@V7s\UnHpZ?^r^L #9]=]Gs^8WY4%c%^of HX?𶛘e}{S4+藔 _WWKϲ;Hqy;H6~DY+s*2Tr]{eQ^JC6{=kechnF ~4=q% RrxF2GhZr}6`U@1d fX 3;%A ~voWYΤ%=g+Ay,["=r<wSR5Zig~7sPEe sVEJB yqAMnd`?RNπUȹO25!dɣT Tt ̰pz:G g څ!/'`5ƙoU\ ,]V=Y1˵ÕQX)lg*pl/`6RtLO$<o|E?A x䵻v'O4;p"mԳ\8Xi{ZE|Kjx~~rAOe< ?exBg-`!wGʶ ñuc!TJCˠ-ceiy:HgmoxٻV2e/R5z?>];.aiM{ r !i?%2W;: =W?˿=;a*@I $W[- > /}~CŋgG%Nv9qZxgjuzXBɐX]l?Ku^9|L!Hh<u:ֻۗe[z)h% N%gɨ[d61Yn;7<*aJÓ?YgN 0϶gqʡ©_§!I2v3<*u+>5kμZ QDkO*|DZ~䉛Zno|Z,!'.~=cg7[זNO~ػ=90/>=:u)Nu6(alls72c,1hnH$;S5C9Pq^ =] ?EVbB1SڲLW[gLg\ ')pz ^8Jwt;w;CבMqčyZ?HQ)Hfwp+@cQ{.x9M$v]$(ԧ'>q(.%j^9xeeͲnewCaٻBvlu02H8-`ŅGIA?} 7"C3(Ȇod^g-D@}~2, )SK.2Lbz^e=0L YD] ZJh0*h!mE.2vzbt?:EnX" )@3bOOsRvB"+ ,{*eԚ,2O͠*ͣ'[T@k([|OZn,Hn2A~0wٗ:$aUX1SFָx ]\}-vߦz`E>Tm1h-Eky E7>ICvGQvb# zS/DD=A3;#H'{cRAGrWl0oAܗ6AJ8Swѻ&φpblvI2W䬖HI{[7QAN،wwK0Z#Om,}\ޤwy/o^Q|]6O8c<7%- lpRS2ՏPYQ']YwWuA-G7 *ɐJibWX%K;#b.3m-4y)Y]qE-q)ި'HEJv iZҷQى pfB9n9'o3k(jcDa/\zk.S*VD{\8GlgBZPv2Jx˄r\{wߡWԂJ_~.ߪrBbdk # i/>9vP8vՈpW@Zc\/qxy#%йX=o,CPMrb=l'Esr,-Ј=<=*(a W*J^Ǘ*" {[Qxv"8+{RKKA/ySX4O~ >GT(T)]b5[~"Xkkl-U_k T'!ys+%J B_$WTŒ SV:ưRBȯL UψЎ8{r3W"C`.$=򂣭` b Ȟ}/6-+U c&~j7Ăȍ6IG|TjP;;6Ledx k]Y 48"uX2Ӿ }C`e/]sQě^}rST|.ug%ހ „TJj6r䅀(2?@ESA=q,AcǴjPy.HZ_)n|"LdE7 [n*6rճƣ=Xٍ~`E {Cuց ^X ShӤ K\MMC19 ysdRܸڍk;,-KBN5D,#߀,9#Wzм%HƉha,qE^I !`4&پѲ*P?Lt(,4x"Ӵ h(Q:ܠ;Aw!dOE8#ӴYh)E$-j@)=ta ^Ŧyi7> yɗˌ?D3'TvETG.XNWk7bum#*lh@v_i6TD)AC 'J<1sG}9[h9)t/L'bWN  sXvW].75G+ FZ$ʶo, Q0|zAQBe4ƒD!/r\O(=`CFm IM*io-;:K -UcnAZziΘ%3h&::ȓva $3mO}TC%̂gZ-ؾ82`F4B@:Kl:0.֬fćhe/<%[c}4 9 ?e$dý&(j@c?$l kiA¹ʠ)s/.2vUN"N!, ZQ| %aek!303,p+nuxtᝎ-/B۩c0u 7jM{T:dda4&*Wrw͜Jz81]fO۳!O44!ѫ] '(cv]ϋ $CK\Եb@Y" +n#vGŶPQJ 9wڹ^WB޽83JVx)CлRk)#ls}>kqp.4 \Wf^ǖi4R'@;WX{= X^EX  lMxCόmTXɢʘޠ#)]P~I`؛,{vѷ%<0/kn9ۄJUSK(ݜKA[vGʑ؋EL=lg@͉<Wr2hGÅB<Ԧ+G8MZ@39f+ގvZNtc29mmm7ZP噪X5[^ eF'A Z}N laP$ր6%{(K7e L W#,8Ť&DfDX(XNҪ&P|jh \9OIrgH}n"O[JQ35}Xx o "Ǐ%AzHېx [| 1Q9 cOrd<|pJPt#=B|P FUަ:,*3&8Q90+GTU>`a,#N#~yP\[X1q]ƴ?D3GQO[ Mb T01nd}(ciEc/_$!p?cs$6^օ!~ه2{L4Pu\ !:gx2cQ1sO裚: R‰3El$BĠxg8V1Bt҃wv+Ň#0OCjR UD8 OcQ&tY .dJ,ƥjVF ǍՉ^6pQA`}.rU{?sCONk;pĝ5ɠ|I1Up\1Z>Mi;t)ٌҹ7稘]dV'+5w/Mvmמ_'Nb O Xd@ z!MlA`Q >|P{}߀ɰ85TK ڹuƲhxf֫cnO[n9ۆϖTJPyPnMa'P9ޥ#,eH2a$Ч ]iA2*uy L3jV%VaoB€S–V#"@\ޑv'v3oUbr&- u ƕHs~|Η 6(5nWwv1u7T̖QЪ$nO([prꣵ.B_,//2pCTE54}_5>==[߇ER2̳+Jp2]v?ZLƓt}(x7}ku0";|qTuD"k 3)H%UF:(ƺ]! Eø*tP&},P8n¥?{eCe1ph~9I$Z{`zH߆؞a^ mo -r'עJea!Y[|mhw6$(,5ʵnld*wbvﵨ2%59Y'-A!eR,dar"Sg#v.||3O~0}0/%<#xalcν*.vjS/ !TԨ~:H'ȥN[_^ x/bRm#H@5֤@ֳi:LqB_"LDҕ+}!es@.zTt8I(k2Kc2mf Nj$&4T&˪0<"`p橼@+S:Y44ijsPK-yRpF#ƚA ' $;Z<(4We✽wY=X=JK$#TyC*ʦ_4͵3AmRe' (Gp~mr?WO|N_ Fo5=. t4 9{3w{Wgr &JǨ7}6`SbGª^8̠0`/s"{0i`dwgw%%YԌ4&kJɭ&GGIUGd> nӀQ!H~i%uNBڴ,Oy*쵮Qf*q,'bT$5Rԩ;ˮ]JL˪8Ÿk}[]`좻)jVďNأGj, +o[hN0mz35)x9(6ͧVVuWl9HE~12Ci Bd ~@8?##QqCldJnr'F`-\I?2c5nj+ۧn׸)wv,nH}"4 [];8/Pw̓*q0|GNVSU}K/e% 𦊲^3,$=u Pɚ= -V EvI- c╥} )A."V@Es`}עYٞGQwZgtt{Rj'PJq=`_eIru$eٟ%NCx_w0SQяLd=qT1&?9 җ !-( ֓2 B %!/ry/i;.Q4#vIm$}QsIhbIuY8Kk*R꾗/l,Xv๿NM\NO#72)ivrNo])h5e l^EU|,C~z~'ʲ]4-%T:q:C8; +}:Tƹ}$JP3. 0 US?'w }J4|gDZ/lq|`-D\"@cVi%5 mݫeᇇr@8ZSÀs *'a!lT'oozP¥aIێ`A;|?7ƓY#QW 8pa9XAo+O,D(jQ#VP3T}k,).0JZ6,lA/? Ѫ=5>vdqC9J%}fgɮRֶ,pItgP'}~*b|1c؆ۂdmUs1f`(Nw/NDEq?zEGC SSe2gJV~|' /v 9fSޜzi ݆"fGړ`tDGFS#F~6%\&Q43pox`38٥JPR2+aao}޳kQ*a֎= 0tF8БRT3Lt3S[0XZ6 \FemEYbjf:m`˩n~yk Miv_mr7'1`OY G#ZE]<._dnwxICs&GZ+A< 7 !Gt ^31_=#uk'6Gcym#?9H-4M6ݢ\=]JC2!:c*Hw_boHu> ڛ`J[@re޿3m"w,gãC_t9ݒrWY-9h.|\泗h)EyZ%epxd,̘?!ƞҢJǺdҭT(-O&}8Wd6{\)s`/Y*בY^E~Cf 3lxp S:ˎp~#9:>iM0_,kT27%vUWcV7.q.>g&3附OZ8>ex-ě`\ _=ݦTT~30W br#E%% 9?[WaZ$w0/w3"tAX{|c1ǐ3ҞV%l񑳴'U3dڶ|SH*|$@30by.r[AuYuT ^{<5TtL6r*VF ol?zuqy@& ++ !)p)DqDNv'+RDB~J?c< 9,j_kMo*ҟ>u1Yf.Q8]  Wڻjƈ;εY{䃥VFA'eDKOq,foE1dZTbRq׭5cLtv7`+m)`XII/f} H83*Y~~љQ{1P;Om3!ރ*ClrDp%?(H(ћwn d<)4Z$ DVd7B_f/EQ>x("HGg^f coY+d0Ye@ {~z0P"3=7Uĺo [Lۖf,ǷH$m8\R,MBVXn &Ks_:Xi!2{l0; ,:T(d`

],hƋA}tƥs~FGЫF7友(d=P4C߰f?\kAyX=w':G̴©(3-lb o;>ش\5s((Pa-"CHG3PG"*˱*9l>-0%$`JIeud^kͻQѓ [$%s Ǝ<,7X F_JYE#ܠqLe 0TZeV[H;;-{X\ {|i`?K o/ŀaYS@ oG/T Obgq?kKy.δkS+Tɫ,X6A*Ő1l:fʷJԟ葞ZH1 4f G|vTe*k$i}[vK1B_cL j Yy?eeqH(ֽ+~*UB6ڿ" 7!lmRY1[&DR7S[zd%論Cw*TAՁE5us570 ^؟.t&zglb;j=R+su1*h6V^g>+8\7 сW8qYW.U{'HXp1 jmTa݉zh2D~xmP8bMt4wMzH$?+ܓ4uvrsOxH;X٠x})amG[<\lu+\YfJŌp3Uv;C v."~6(;Msjx浇Hq͒ײ^J%spĖ[+a&ֽK>һS{`i4{@#׊r%uQ' loLȾ"1B9BcJ z+Ui,_\BC/ 5` ijV^xpS2)W1Z<>02뢑Z–vScm %ȫDi"̨_&N0v'/6SlC.P@hF>U?u>XX4v7]#ō|mřv0-B#f.3rO|.! >NY aT`iS;H4W?0vk1`Cݟ\i@tV `<o3Dߦ}%iTJ=(ח}OZ 󑘠n7n=9+e3Iqq) ;V >Y ѱKGQ (=l+CftƅQPeF}Lh,OV~qfH۲k4f>W~2IQUsh<Ϙό'+[0H \zi_CirmV!\ @yMM瓔Qː묾֝Dev$P-wn3Ԙ7۩EQhmw@3b`$ y+9[~^,Ҹ4~֒M,LR zp{kB$3ɄA4=onG7Ǿh5D5dܳt̝L$hZg$ HXV|F`]ʑ} ƒ8Ŝh_ꅜʞx. zi|tdgkuxmƈicƿ<,n`vĠp\Ƥt ps_@,O ,TTwy۲_VA$ZD'99 NU¿uV*]"b#<0_KqL3)r}{ڂ8=.(ؗ#C פ|>JtWyx͜b!O 914 $뭌=\L^N\|oÌCG"T3xUk d(L}L3텍Cjl_7k>Koqgb1,EfˋrOhq_\mdK δx#F;J\䙛SQqY<)?AND|}ydW / n65I`])W͐[,8 GˌSo.2E8HtĘ:1g~#T]QFY:iuS*c vEa$.f&O1NOOzz{A77] x}X\h1t$(p'`/6Ua|+ AO>nxų8Ҕ%7w42 8Ԉ-;):P3ZLa<;Tg6x To+0i^㷶:tc*,=ڴ#2{±6q 6)Lm7 dv˞a *"̇Ng*" 1ʉ"U1ϳ<@~=MU5`.qi:)|Gq.= I/t t0L&6rp`0%t ʳ}ɩ桋Nt5n*[*2}UFOO2/Z4loɣ6U*AM똾_q*JGQkLD$VUG[URѥ}Ҳ$$Zu}p):DvuzVB/2o:5) h HW͢ 9҆ӑ# U$JC`hQ0ʘl:4>?]. pd*.Z2;j G;Q x=*Kڞ}n~(:ā9e~ dteo\׫5ǎN%]W_NVgMagHueNJBT7v^1)-%R`C9l:#T%K_$Zu)8AdzT0aa͠OVQ-qj?j])bTG% W8샑L%rC,2>!+8_$Cw#Mtw`5lv;|`Ǭ?d~h BD5dr3 ~XG*$)RBhsc=!X2̦UЛ@Y躍 /bϯ@GM(8.El$łn=bf,|& QV|eA403[j69iTYn1Vӭ* 7!Ӛ3YG \Ub|$F %~ Z?y3-Ӏƒú:\c *`|B癲i'9m_zx5g YS Fc⻖^E1 H|Q Z=19mFN5x^D+ی>L{ݍ+SSQZ 3+J aԉhd hE?Cui+;&̳^R&[z6L""F QUXUcϡ.=_9"i\0a KkΤ:2&0?6Fj"Fz)ȝ%2^ALyA%)  OG.N6 /.AMYR&Sl hMblh# 4{?tʅ׫@ڑ4W D)L uZ|93?A*7Q 7_xOЍEW@|ɚS+LYOϠ~k%ܲ}XyzE w_O ˽u9%z^u32+,>\xT_uK1?Fb--($ 膽OĆ]3ϋ8A#K?eåd[o!sSsFWwS\59"C8LI{hM(c=Bl) o76Έ<4@eęSW_v/ j>jFh&A6 Jn<}K#5|#dy* RNXQ˶اrV>(tZKx0 76XHkԑg(\uza;m8ݐ8u]ȐZkt-]xLQ4TT_ }HҸN4ilKҟ"-iȬw.~G4J;ra*Trl9('-|lmk:g`!M6:{%4+uc6 ))PL9ZMw^ YpA| > MWGݔc?}mEHŭ&bN6BSJ83Jv y\Lc;x$4 38Jf 1`4ۆkB1$PzDa70Zc>[ms̜;FiRs<8ܭ>߹E|ܞrmttN<.?L=ar0юw?YYAчvUj&8~`,eX(ca4Dzsq Ɯ:1WJЄ z0TbK=!`*q!aެ2Kֿ'UV߻k- ϧ#*GRVeRY;ycU&30L8CP$" O@Θϔؕ{y [#LL20LQ,/=ٚ.+RH/RX. AUk6/9',I䚢 McQO"5ta J]ƥdZqk#J=u7Ј+|Kz +&k:*_C'u%z g:N'7NCwNƱWcyfE"2b/siҮJ(  6e@$/5_л'"WxQWgC#G.$Ȃ S\ym_11 Z5Tj;oNu n&%f/Vp-)A1!Vڭvӯ;8Akl)J)~J xz mrpc)s9M~ .S~I9W-l"cj7Hb[KrI`N}޳m(jE?z-P{y+cL$msB&#T-ϫvJ&CjXcqb6RXpfWI߻8;)"A6Q8O6qE^k,Z9RLIގd|wM:= APE.jXf^I(Noϔ៉uissaw>[29M:`rﰖC?/IM8=(Zmn^f?-/m.(f)eZ5N)N/ePt.7YAd%ӛV}rq᜗klm)qao8` $^\Y I"_KSEbŴn3l(@y/?^_+BH2Dۂ`(P[ xh&mQ0t" 7"w-Lj![vCJ 0;\& =.1ZΘx_mMq Z9)3ZnaY%)BXg9Te7 gtD$B*QMAF<1ɌC'쌎-瞵>tt;iK6{{н(N6o"7m7cdn^C1/ьG41Nث s&&`"7 !ެ%\y[>{ a} kϹ,VսKqdI,tKx|'_eŊt z{T_40ݟ{\K@&Gue {>ızTm!\[2}y};@1a٢M._!72oRƙ嘞*ty pd!f{/kzWVI1uW:'tV>BۮɤvH7%-OcK3Нmx ? rHR?m$E4d~yO՗#yr+mo r[O?MI aʵT]_[M! }+ wA~PCY!Vu]w~GEiA.ϡ^jS;8"0p.,EΒN]FMG^|vu{TÆfe4'@èsFCB|J;E˾XTl=:hkN6'")9y-n![En!>Xtޮaִar)(C'KpЊwTiyk~.m~12BH6#._H02/e'̟ݰ ykS$Q+(1bD'б-۠MPHbuƩF)NuytݎĔ÷  "oSa^hIPO-mNCe1sC^h^?PcPk&LA) L+4tw?!𓼕6UIcAWkҞTuɘ<-%\ٜ﷧`ڶ1ZC:lp/Oe='˱uksӤ@IdM8>\&paJkZqoOڂ+&BYPEMj\3a8=Ĭ`kҲ S]qaHkQKpk&bXgd\ZH=+lV\*äRWx1[$|6{{iɟ /_p)hP,f%̬x{줘E֬6eE\ʏnc1&"ݳ bY:5SX΂\OɄ)v}f\#+1Χx@׶p[ނ.><8ir#aƃ)YJ-Jس7f60Aq▤Ns֙VX[l>xt7z>.lfkS[vRqTH}z[D@-m]䧆xaP(1K`bk3QG9EK;H1zDK.vJ6սcj+<Rn 13*6Kܼ4"XA[v.PN"6=D~L|y,=^quAݴ`z3)~3*R_jWl ҕu#HQ''we#ts#^=b'>bWPn-7Ǭ a uSQJDwzӺo=ŷ,`=.8sP֣i}LEbzFt~`8JNOscom6]LV@ >⑱u)d61uXϓcڀ!/2=/ P܀ 544HP%|[+OBejꉱݥh3S[M$?ļλoCLmP^eb^fy/6eW^5ĬVDtWA M5e_o{&^b`ACqg+CkGt-h?k<#9EjPdogc;A7L?鎯ﶒD wթv:?i@1O8\!'tB]*̮$G 0q5FQ)E߆WTpnP|]+6Ͳh`#2 jOq\٣ kA}cE!(b:T:65Li~F{jsIu?bW{u4͆G]˱w6jbaOd|Yg݊I/6;"yzp{orT^u(_?Kx *V-[jSݦCo[/pӄ53!3tgD0ch%ûM4S58}Rg:7PTXxP:.r̮JT\mfqɣZw@&1,!9Ed*^EwNj#*Wa] Su<T4f3A@jUj iFIw]FOc|1Mlf[(BFPf#Lш \ C7aC5vڱ;,(bh)Zr,̈g啟꼫.~{xl | ԕh1QXYc#>@4TZ3+tx ǧjzҮQIŭWexl05 ܋>1_?ҵcæW4_D,S C=:M\oK> mYe Y 6yÉm6ѹiDg'kP$'nCJ` KzLVb':k<1P-eGR>_Kz&QFDDّ1` &2ۊ)7!l TzE6W|2LIG[hrҜlc}2įlj pڠQ16[qE{\z%] z*&J?§;/["{d%Xvw8]b0clN4ߐ@Ҏ_T>WiZXC G~nm2Cɜ}epb;U;ggVJetHJƛj(]X?[*m-O:yy1l~cttZ"ҭeѨ洋5QfS-B*n)bQ*atax{PP_3ff"»͇TUSr;-]tZg7 \aV]d:!;Y}\6;йi J OuhTuEaU#B"8::e0ָ6*<tZw+p<1%-g􋡝7͊ek5 >xjv#քMUeW0ݕ&y/d~Pwu-;_jr4" Jkf5ob:U|wz]ҶIZdcشKD$־p2g VBs EڶfhWqH>%{ڊ%V'[4:΂MsN኏~*Q)Qx?GRbAу=}ƽw yEgr5~sŋ?|)4{\a"w;p,'H,j2n`flj6-w!ß6'{#\ ƇJ4< v4GO=c gQ^Sub =?PTjo.X3\9D:g=ņO#~M'OD<~*u~䶜ч_QS{_* Ek ym <1Cnx{*tVw!nCi.;W{k阌OSu샵pne%,3Iͳwc]yohْ،cOFQ'=(koq ]PЈs@ShiLr [rfg9EN߆ L\Yv\lVzlsMw:8ϿnaΪH1vr'ʎ+q?7̗ <<NJ"0pЬfHuR3!֫nR|VbA:b7 ^WH$)zwG{%P66=10pGFVY5,A$Wy̔]iD+wޓ"I"_oy] GA>qvIU;?l5T]Wh~9sNVS,b^/f fkfo ; ~3;XZVm#/Y㽢`ŻzW'E;IR < t\-NY(ed\1e3+J~t~43AmBM>eJCcMU&lSrp_W^gUDHVT0j0D Tk#$D/zVKGؽ.{P$Ul.犄#ȠRO/EWt+UA(n|v(nd6|$}C%j`>ӉsVrXqr37#JQcݵ*үTɠ> or&(V z`_pa|.04hĮπ!:u(|O{mJ*Mg{T T ~cn4~mGl0L/mJa~.!f毹7v{I9L*iUe9)nNĽEj fs=7Q:Ɍr('O +08?š!~f W6Ȣc ϴp+45g[R;i}>H>4haUw+ޞkB|P'b A佳 X'XqG ۼp[̙ꐒ-/H'x ~ T& ^i__Fpv4szz nKS98ΐg6qWfqzζ `QTEA0BkuvH:VwlQe n!vHQсexy-ƴ1|Ѫ*d^RQ@ǐ^F}TgffCz䝑0kpv\۾-*͐&(\Hdzl7gb.7٨ЬMߢwiKt7)Ibn؄uqӚ]': 2nh Ti,]Єq79Pҡ !unze>QUgR%+)_Z,tJ},!ClW+d;à.і3 yF17,@xrzӘ~ llSR@8!7meMB 8a~V#nZ"#i/{5>z[pZXn|#ZdF*[&^V٧QVp)ZBӽFV˭* ~2>S!W0$:p^O z<5~78BiJ?V >80^jJ<_]}UI BUB s+Yҙ?Fc<1h7aU}+lu\;ưM= O$#WɌEMsRZcŁHdMbh0 'jO&(  ijx}ݨ~-VǶM,pV>}!LO0,D`GvEJַ-Ho{_/}"s)ߪ.6poI T5fnӫ9@ Fc|tT$™Wr„ooSJ8-*]b>>*]Js3^W{xydcK 0tLCQ?HnѡēK48IS()%ei=J33!_M ytÒz=hWB>B3vtɂu Z",P1"֛,BHvUd'> ?3dӄ*0tL{xfBg9 asr_>囶`wL"dcRVU1C=qP @o<8k1=U\ac v]7|ZȈ}R%͎WdEWjcsxc`qN?W`䰘ˢ~`z;UGٮϩ 3Z$1;fzq)r(F+RbӦAhW`M ̡qۃ`Gz KR@L- :qsC.yeq!j BmmhJ+]bF {r4=׫ʵԒ/#򶅓w#6P/\ˆ>SiOr>_~8 ^g/x71WGoVc GldZI}MPzASkܼQjR$ /}_ d˝4אN}?m]qzL]w!=El2ʁSX/, $w1;)^M6^"ukyyx8K>Z9 W'H)wi  "4KAml Nbl`yS 6a^Z[fZ2|xNG^9oXob|DOa j let\TYP 57y:x#LtyEc ӟ#7 c.@l,(K>FCn9{qъrmtiX&m'Yj 9}PN)*rzeh;8r)H]uOf +[N5KB+dcWâ'Baylx cd{v][<6ڝ#"cA^#Me iAKbdQlI5s4I0+6;{ڕeQ©٥9 L1QXyitȭF Gu#s=3@-*b-W=ƅ4YNSl<(Lהts6pyj&na.5- *M"ř<NN*RXi^йGPeгF=?<컏R֓B[HuvƯs V׭ Z# fM*ȩPe6?(Qہ{uCCk,U6aTBlapoy?t Ӓ% eDGSIz˳o(#Z1Ԥ ~-*l@ľct ^:&*e|i=: "^'M UQf?L:Xz2PIg1d gy<)k1w෽԰rndk~8:gh9Ni0όfEΙsuq3[fF/NѱnnT'D|zrDVmȐV`{=?1DHHkK>~UxsN-$glZ /SZN-Dwb,ޭ;ީ Z\2 2Pj@|7Y Qct@ ;rY/b 5yr/5:} t: ;`rҌ3ri 5N"|J ڶlҵ*{9^th[xrXgg~po+ n#̤=+† f[WQx̐#;ej7_L_s%:H8T:K8ucȆ\cD)wKe\:>o|1ɭo`}2| >^ƣQo>rHv 1Ea)53(1H/x>|uMTyM„/(gkoJӛi.=-`OrCL[& UuvkG jI聯idT"E hyk=FkD7Sw9`i8XB^ U5!<*5|PFeeh @MKXEy$P;Ϋ/Yb]hfvT]aUj2.Ey* ؛)=ifnח{ L@NjwpkwcwlEQBtBh)ӫY*FIä=v^.20{/|<4unٱVIu Q-P%[XF[aSOpiڣn5Dj)8l8Hc WCIN',G,gqw5cqRxJe JM%C޵CSLgq4y*N, jiߗŘ!P]ͼt[vV̫|Y-W3f`5hqVKmQ&{x̠HiCrWo _] UV]^%Bqq)湯;y]]]}CBk;{w-WXw'"(1«wQ90|>ؾL@ʗlޞIc< .ϔ&r?ɤOu1T+QCE zz5{>JP?Y:iשT3^ zkx&b=2/*܆w)zZG0I);E;^kO' TJo:~r0,bMGj`~RA (jOKۅ%jK;O%aivj)m.dpkaX8r͊؝Ĩvwq'IX$ɬ[tߟbx1uߚ~SYo@g[ܾ?4킴9L|p:eXdz5[W- ڟ/?n ϱ"L _|ax1gt4nR7"#^yS0)%̭8PJH"L}Oк`UYРjz;gY@b3.t8TХ]׉ÌڮYeo$xOB鎐 꽍aYdOÃ[ZݻR!z޽ V5؝2`f'FM}Uw6&hNWx{cM=DÝl[2Q 8fEاFR[p=TRmwFװB׵(w- 'S}|cn8lj`GhS/L DB밣L U~JW@0e7%#ӳԚCa u-{!J#lY3PW*v-3'wRpmMfJ?x^?z۱7b5hzhxWUG 2~?w#7:KJrlGFM{t}5k7=\!PkPIIk+pQM!c?_<( }L!h COü h|En%~ءQDoװ0Nmc$q"$KÍ ;Ul Go%N;Aj1‹(h%:yF28 "eS*3<=]?geTNjDuoAʁܣ +}z>k k^Q/ޡ%m&*d!έw\HUreC a=TI<Fߧ,xGd=W?~! r$$p*|!$ 36" 8>A@]]g[8sNS>Z(spz < J DBٗK[w7t+ҟH<_O6Daڨn]Œ~Cw dw_%%bf4pA m^t4j* AMj)*' Nʿ7Vfuw2A: ʫ*"8FuhT?u5NڵoٓZj!M&BܓB= Fjl&Ï 8y@Mɞi `1ꨊpWZѐhc`5%4]} GfIKs~R?49)֤]o_=fv݇c_ᬩ#O`4k'+HˆeٓѲ$U8FyzdJZ/_´/0!3 )^:m&McqlYKÈΥ#'].Ruّ8n~+rEX]*#qi7\8cFvJ&Q<%SMB{(4-uT0 y7nm:!lyA6şqqQ?MKs0k .򈁱x[HfnO9k6"S{_ XgBϏZڼ3)rÊNR86Z&Pzn#7ZeD5M/)zi0NSهSAA ]Њj_$"Vm_,$ka$"c0d>Q=@qNgҤ`h~Nbe0[72Ϊ4iuPY[\J`ڽY/R1v͖>½#ge7:F&d>/=4(^2_='tުMu:~uh5.vevI~5#/.<++b 1%>sFVXF&;)l1_+Xv /";ИmAE25{$g%?}(OahEI2qwIUZweETRφb3OܲA"PA8Y/YҊǖQ"6 LE 6Z!KWRP77}[P\;ҙF);ǪXmReC5q *H@G82EtDӢ贛?fEbY  dVӇ3x <G$@YחCL3+?5TŽ73jꓝa ܇n}/uF1ڧO0n|HJ΁-V]&LLF>gqፁo7e;PRLR^׬\ a\;1 Cv3׉߭m%В46{W=EݟJ33fE{" ჴCO֜3.Q-,R~w㚢 #{9]Gp^Z51K7cgR4 xoX@7d=.ڀ,z+AM;s^8V|1nD̳J n3-p>:HC8S2g`'):qz=~KJ9Ǿ !ㇽ$k/)n&, ݮVս0vW>,C!=NoGX^,vn^4Y`t N/,pE#ƭ [,&G/Z py?. x*w -h\=-nO'YbRRloë3]8'61,{ɝcbEeX#;DbT^4sؼz\,O5i һ.o>S_F\̶H]uRB|1YduY Ӫ:1|`tr!kI>9l]'c9'8S,LPzjVwkV[G,9suO zyԍsòSV<5v 56gFu+6ڸ\UR [uhwq 󬿮d}} /h&ءʔw@πr-শE9=hN&&Mi$yuhʛ=m*ך_ҹ8X\:Vj8V_m' R%ns톍%f?;Uu7$8+{3_To{d̴i,aFҊ Xj7{ S$L˱/k3Cʐ WrX{ǡ|KbI?gו )dN7q{3#ޯa=%8#TZ] G(_9SC1%Q_j0ҕn:jV8c#;%٬~r)8:巚?N\5u.A,h$T$ykR LZR.2-T*9>ZfuY Ae6{5R҇QZy|Z ujsp@/B. # PIhLᘒ2ۯ9JS- Yzy2)ovk}RH$pX!dȤ<K$uزԣxQHؤ ɲ7ko SyY|m/c/7'SNm)lwgSČ'Dlĭ`v xmڭ?/cJ=#V8#2WʴWag3a<U.S(_ؠ)Ş;܁k.B< uKIV~%Rbj8P#;rm\X^pxMAu.xjq"LPŨo n@~rs}Utu1;e"b†..6=Jn5tc7=Y3F\bk{$8a'L |S\-'ܬ]ApX#5~1" Rq2YB4V`r%+7%-!k!_qfRjIx},̝yC{!l< XJH='{ M|ƿhSX ZkY 0wG7t QۿC =r_wKk'DTq м Jo\|n7|*J XBkN[PHSc nq\"1Nyԃ:bjM:lAn1 f^jP9|T#$5sP3 / b>4 @mĽ{=`2RzHrɯ3)!Z8؄gFvi:}qg@˙0V_3:^z>σómtp %:oxdgRo B܋ϟ3lUBׂWȗ&K MrKzwt) @O0 LL!ɣ{  6K6e[y7k$S~c* Me@2':F[ő?{^gCRa:-Ww9B0#Z?m3uSKLjB$3ڿcoDGNG\EЯTBLҝt9N8%ON֧^+o ʱd4f3Q 9w\anu(|B_.=q,b"E tv %v[ЀfA<G0826]sa38_c<_jҁm#f4\hm+$P$Љ,gHx_7Us0j3G,s^uGRC@|;%2x,er'v=8^a~eEZbk) 36xC)qNyd6a AOHi߲F$qP`=%0-K#GhP Ts1)VxĖ},qd%ѩf='8K<r7qI0/ N ,b|u`MsmC$*$J`IbhEZ8^H/@҄fY7!;C'u=k6k DG2܄> Oeb餾Bؙiȯ\=n*EJb]>S-.{{1I,8 +}&Gc]Pdg!#\y÷<)FH P:sbAJ_kj)OĹ/ xz&CSxQN} [qf\+/ AP[M=n ;\0䛼n!UC Nr,YiJgLTw 3uCf>6ULjwo6)xeV)etKTZ-k?oU4Y؞֡foB#d"3 :#$AM1`JQՓ&aӼD]v8bcv! %gO pTU%oN$ `KKgp@4H>Qg f - s,hW$h2W89xih0A%HlP3I;iPg !1ь̹Rh#r *fG̞͞d](f'Ϭ)9_<֟Ъu).N(z% mJtal?_IF^Pd?+m9p 1LI V0dy =pAd8x O,y=8fS'(^ŖSC(} `嵐%DrAMz۵RϜ̟Hq:2:t؃S(Yf?L̊: bҼ:@[ޱ-ҝ Lq1Y;M9/t=AUL'fP CK*ߤ?by6Ct=tj?) וuR'7iUELxi{Aذfj1RIMAqZyvԗfw@Otףva#[c3WrW9a`;gћ[B!0wɲi4 3eF?14g2pbi[i*~;x_^-Y}Gn H'>qRFOy:&ҩu?ƫO'"-n=s~omB7J@5z%ZL0ҦI 0Z?auU&Ҥ.m?ii4*[ .K#ԏL eתZ'e,tR]$k qa~ۦ8Q(1/ThCOУbkş (rbЂ}{uEx"t2thhvփ"{GIkD@Ne<5*ꎔ]AGXT.?>[{ǥSj"۱BG2/e:p(cchc77o|ArGYBHF9 `$Ryvad|_vݧCPd7VHl?$KܠrXª@ ٙ;2txSՑ A'}(CµVO*o-elCBЊ+e#tCcWs]:K#R8h)8:e:7ʌze){c,.;b{&,kOEp_`1^4Ȇ .]:}{C&Q if!D U֖ppTcP΢o4ODꛧ憏L! `#&9hp2 79ˮqPk&rmj";qM81h.SemÕT7-W*ٷި[-$!s5HUoM4[0.#qF9Y"rA?(Z +Au.B65`Aa}n}#HL}UzOk@T|YԦ\`DB=t"˸'R)JK;I3o @$"e}hfǥZhr9袆[ !g| Dyd*"B-܉z V)2iZйG@jP\/R3Fד8w_J=CK⛼@9 2#*.}ae%黺ޭ't7[3?= %e*ei'HҝpU*>fTFԟ|i7`*kE8̵2o.UĎ {CIOгvTKl,'ƣ=6nzL KPtלxOIͼ }Vοg⦗+9Sq$:w,BA&$}TN=[B9Š!kݩ8ʢiy3)݁u5T,p ]6L y|"n{4xIm'|y\g'Za=t ~b݈*ڻA+nJhJsa'?<<5_\'\170V4i ob, 2T{@w-h{^YfH:ӫ"H HCdɪgvI ':]*ԃ贗/z/xzS/%ȘnD豘h)D͐SgS2[P %}\J A;/4뙅ɽۅ- ltՁ? vݪQ T~b52CU]6?KZ䯱+/8ٚ0-4*K' 5/qlNO89\V}uF5bմΖ쉅iCet)L$&G؃ uwBcT)buHoIQ[B-Ln@)eh`*}ytfS0[G%~}jfcG(btɧ|Slwaކ*1Ia%:{nv 7;T*N $Ks1nbq-ׇu%\%ܗfatR?%K]I T%Z/Vh&Y747Pgf$KV *ӂýB}hIxeDL_P>|ZzPGO6awXbE\J#ʴ YQ[3*%'Q 7ܨTQPbR\{q}eFg[LM|ФJ6 P^>}KM{O2i4PUwYo̹7GUN{JK\󑤁8|V[)T>8Ev g05jnoQН 4Gl<JS%!"SYy{|#jU`)sZ"[׋(vvd 7#HNd!Y?f=?Շa+jb!uLk4Δ=Cg,_b>n_inהvRFϯ%AJ@1ׁ iw6/ ,Z[8X7Aq>320X1U.$!ʨ<7JTzɾ] _v&8YOSбȚtB6gS{J\p1Y[ߺPս$E6(L,6tIU KE5%i ~X,U]=jC9x)qXT Պ2XB\l='Oԃ&/p%u-*h2R*Ɓj~ֆ\΁ZBφ%82-nMh!"=/͕@fk' ,wT5g]%WՍ׼Qdـ}GgsxЬ#ڴx[va\;!EDK?fC8ˉ ;q peFV%h;뼭`6HBo@)@˪dS\ARy*iz:⯞ . 4 6ƒAu ^14Et?1݈@Ͱw8'QQ3f@j41V~#XnW;!2J~=•uM3 P1'qO_z| 9`q ԓ fP0n۠@6 j '8>^p~jn*VJ0xT̵vF ϡeQ@Pڛ UU~_F=>>ChYR,'[rmKlg= ao+&"=Y~j}a 띸lN2ewȥ#DG_^uNj_F\aCt<$r MB@[;*nIeG|KUUp/BX% Awt@GO&$RlwqA 1SfUxàֳ)[c4粎.JGt48x[hdkm(%*SV:Ʊ>4وA?+J ^e%"ᧂf);Ŧ-[4)l8gԨ 5 1z`7e Ĵ6"X :!SZOB\ (3ml_?% ;qi"hKnRX뚿@{A!L_Rh!x`g_C {Ԋ }^"4~;wv/}RTЈuBz\*hUl/<+" 2Z!= &^f$SԎsnX9hr4UʍJ$w=n ScJv},u+Bb_;-Ad-t߾oF 4`'<~Zݬӆ<݀t;BPfϐ9m4 ajwCvLe|}JcA5L$AoT #R0ꖠOY,+3W]Ex`#R6&X`^8+_xwmߴ*UftW $:wz9r Q L.):{?^Jh˝_v1OT]tO ׹ I!H6V2+r:EI9 L-b9B 9d&:ƵQ6U^_k$xAPhIVa Ҋ/E22$tC]Oۙ-an`qtkQ UPAToߥ}@Mdt 3C0OX_QH"BcY╌--+ff&+jJDmé+oRzE>|"!H֮P x?o}V =$/c̷&BDdRai$yp2 bC8|(VsVlb7,FHfb7E8@.R@tـ@FqNtɲ7IN )*=|N01hj*K7%qo[JOyo]* V^EP84(|֩45c,j&]Cu&v{mct_Kۜg`#6LYA? Ǔ*2V#Ҝ>l[Em;m4o^ZG,غLIFܱlf& Siܪ5f3CEQϳ?#r2޸A޸Y-6g1wl7-KPEY8ֈ5mL΁/a@!3Tӯau6~0b6z. oWgdV<8f,m3&7%hA1ɱ*2<:5oQ&;q,eX&4~%qJ=)j*,@(Ej[C'ށnɧ0™kF̺{Lj.Y$(֮ w1`) Z]^;E&3O틵T9յ./4MlNU@6+tvwbE[0! o \rYy/2e.I&:\Hi p)YǜSkR)$!>q3SLXBM= FxEe r=JEC{-@wqVT=Dp0.|<#CWaMKg(GZܝ=u?,Fv?*F#GwKWk©KE=e%؅.o1};{EgނjBpNqVl_- wJ:;\^nj UXw@W. /"h'j.:|`'/4fAH:Z %֠Oғ?Uz FD7.CA:IT9Y&FCH/s4 9j.ܹd??܈ц-7U".$ 4dXkdi7)\%C%oqyXGwӡC\{ի.()LvمsBa(yaA(lq|`nCZo@/O\Kdw`19<,%L";=g-<0%\xԔwoF=Cp EVE V<{#uSgiVΠ6h [գ]p H85 |ciazLt NDPD5[OUroɒ;GmgQgk GSk)ֈYZM"Cd16!,6}-´2+dD0PyGDE(@B3GYHE5 .?XB-8 _UȽHQ뽫ѰӛUyqH;:!1dQ#o5xi7T<Xt]3QZn]ӥ}CH7M\u!-6>Fxb: ȄO!W{vpnEbH)KUɆ2 &J)æF-+d 4)޺á.]8q[q1^HbL-b{B'P@_LH _U^ 49%T/7 B[`t+,0b r蟞tF<`iS1arPƹV9kIEoR)UDg ?Ilg]h)yW-9 ƕ^D1󙱝 *I8Y }ЋYXf>y+pV'tb`XwU %nڼbq _)F`vf8yBZ IGR(DE&9}cwުL+Qe߁([}ިM -jEVN7V.Wz2We:Mx? < *-a *jU^~" hE]ɗ *z޺5\5c&>@AH% 6%aol6 |A}J*mv;Hk8͞z ó `zn9ﵹ:)H(9}$ 2ODz0Oac1>>n`r,T^ɹWYY:vq_6[|ZoDy3Dq1HG%QExTP$t}oNOE[\j -S#zq 덖G)Jc [ TAQ×!2PQd5g]rYk/umXl$B]WH`#r$@1tewѡx%*W%oai$@"B}c'Yl O#Lr749 f@RU*vϟCNBňD]Oy!d]e8vQܐy|#+o1V! o [ OM'G[+Geo-Bʈ&Uvt[@SLKj=)m7?7W˨U_9P\!~+ь_nBwІ׆A<hWi\` q0ވ热@, >8gY'<8<0E$VFD7J "%<-RFxK nb+N\>F ?R\*ի }muMګu͈U߭p7V!w jŐ3!N_L^螰5tT4o\;`KPQ7z9O%\%w 6%X_JcSY4Ƽ$/V!k֍c)Ǝwѹd\a wznSߙ`\:;<Ծn1 jb4H^ \>2w/?g5(5#36ke"ic R|%<ත}h%cuq]O>Y@i'_W̌U8MdЯCcӚk"9) rA@3Kv˭BMV`k|rG.U$su x 1*AǨ 8E݅R bWbiit@ߖ>^b( 'pC#-D"Nү0("D{j_ Wq b9HU%5_09\#(#DV#bdٳ~h zq})A3niltSKFإ *GdIwjvq!ĜJ8[c@Ӽ"r3ֿMbȜ\@PQS~י3!@\˵&>kܚ֫%2-[4[6wFpmgpR o({CJ6&,i~ Gj6G/[3x6Z6?ZN*3*QC򜯏6&Vо]AX `\ R}kSNݿ}3E*;vq\˼k[JL6zOI'B '[h9X2"TŀJ7F`M t&W[&_$A}0F3~%go.J^Ye`Ŝq <*Y-1՜:qB T+P7,w8;ώu̶[GŌญ1fjj0}W#pՊa9l+;Ud?^,~u} q}?P!k.πUNyt/p5KՆŷCayHo1%} R&`y>5YΪԞиrd g$.N@J%esRRBwkG"]bVչ_D_TZѹ;ט=zeT[yH[›kMCL1O=$IJئv֬l& shC+aӃdL7 oS+ 7,9 STߌ5c?+,C?ƛ,ƾS+z .v!TSy-1O14;r3WزŘ'~>YsX5(y K\xΒ:[YI;W;YzUβ*ok+kZ@SX#"5ji~6zչuƝ<]S7er1:nʄ) 4}82zmEdGR ƚPֳ j~L$>ͩ8A^nux.v+PCx Z3[, 4.ۥL2:W\`@ց^"hXlSsy9XeGMh."?Hwj oLhMTAe!mVJJ\G+y |P*Q\ڔʓ1”{rRa?3K w댖a" liˣ2IB!_0 gphju{uh\'crBIUduGHpWIC;N1eGqJh+ЙOm;#I\bg8ReO$QUZ{?Y::$.S[TJxD8_$Ĺ87ͽ: 3ö -CBLK>V);Fdt_fC=;$_YBim˃OQxDuv8 om8괌FBDh>nIB/+v<*h`թaًO줛]:W[t gmvDZ:\9,xR3\ac \)n&{7hJi(c6H}<'+$0EI^\ \W4io?\h@P{HIf,67>6cz8o[ 7pHw=2;V`z0N\Ϟ03g =Tx dlOؠoY0b%Ddԕt;.vO1hnȞ)7zBF$Kms:n}o4mMHʘf/ b_mk)%+kDJKtދ,fAR]R w[r}ƩDi? ulHlf8,#Muo"38al5=oNًU~ynNχ>R1Ч7ߍWe`U]kǷi !@UF{df*y7@o:EnR Nw?OxA@RLh%v ?efBh8~=%P?~4DPbS+ t+H* V"k]D)gt.,~[)ezL#4pI`OS¬p C6&ۜĮ'0v.~)![P]J >TKa ;An(ؑ &%E1&Sxo̽6cP`C]7CT/Q`;@hY2?G!FSɉ:C,syC:lƴoͨ綳hlL%[!68/{\E-'y?21){g$B!rqIGeMĬ5 PBUѵ/XvAWznl^I81j)yf8/H=/ c%֓Dd>X@E :;^`ܨ2/<(kN\7I}̒J||!X>{eۓ/KtYRp;+=GIopoeիvH{4-}LUA'#r`b'fقm`⍯ƪ@CAȫi q_ ^զ I^.m4!H]XZWt@=R4YtobApU G1i#h1Å-5"ӪkIy xy.!P\/ൻ)Wle:Xg8W ^̐|7^eqEE =E3ݢB̩S YD Di[G@`ixK|B4 PUyߤir[SftXtz$QVAUގI9Cg3fdb=MJ8qbmϲm6jڎRz[.ݲ"ɌM<-xP5RLSA rjW pj6sn>*RV Pr!:nzbYddT^ HM`; >/?:|\gg3K9H׳cNb]DlcZJx||%2pvd7ȲwV( y%H  WAKהIxj}<2MEՅvuK jtD|E;4)Vow.%JYQRX 7 PjhI)FJoFݵġ@⒭~Klr&!7gI&WT5W6I0`_+1tTI$tαȣOӬ͎$"^V9ܞT}[Uv+U~]4H+n# V|0@ȍ\"֫JZ&HaE[\Q8ra7̕W@ʉ軔d M_B=>4c_B)`-F@ԙLSn- h1gZNehEs[ Cg-*$R&sb6*.ֵjn +O|u5Dg$ 'mhq߳fqSVMRiig:<,,/(zbe Ic=vvX_MGv/LMǭ+#D+g :w/Z,ieѣq kWfoYͫp'C^^2ՇjVԇk(b[pOVfp8̬ސ"-di8 gI<¡Ӹ:yK]0Hr-vXTKqcgl,]-^\Jsv|I ǟYM1DUiji~HPXݒX] ;;Q|Ө9n*܊~ЍccÅ9 7Xn|ox15 wDrDm0jcSy#BtrƷ+1E˕aK !<}<'3U(}X/0! ױvTԖD 6CZ΍˅tB~O#RIj=NeW/6M]6Ɲ!Us ƳN 0IF߷֔mrsu]K ȯJtט >Kq0h=YS,:*[aR|5$Qn+ H^ Јݍ>wbbgD8:4(c'\ n]zxȂwc8mvJĊp-g`&]>? E+luRKT.,"Iu8k"^i޺f@jpFvIC;$Fw$ܔhmSoϔy5R-Up۫y|-qޞC':7ŷ]|4& QЉ|#bj-YR2-72:0 ?a={ uPGC+Gs%PyBRSbw0NM9F38o yA8xK%lzEFyD؃3FM%_NHSҸ1$  /ȝ"a34깺'2WF&y/䎣sD|gJX?ӅPuӞlEL㶠ŁJ/AE9;$QR8RZ:w@e7Зh~6INA?rR&ڡ; q]rAx4aX5X)X!tXťfmӲW#0¸& vɢPP˔5̩]xsltB})M _o?ׁl8zAB*arD`M1<ֱG@E_n?R #jZjz%S>%*`p=3 b58&~^`&t<-Ȱt@I~,xY"{9]Tu+ٵaܦAO$wr[~rWpj 'aPhŜ &As UohB))*`]Rtq~@MXߙr ~ ]h@P0ޙ5kӗ|!+_O?ٛ+oV\?s(>WlFjR;Zɾj ckP[e0c:pC;ױmMaZ;ggbu]$_U~+R;5M8#zaB} T9OnAbE|~|8٬UcoAHiA6J=6,9jo+xzzDP_}G-}< :WY̮U}1!>.s)k$3L7SʣaLZe㒅$ǣJQϳɬ!£Q8Zv]ʞNP:L tEډ]m8$]{"U) WW`Ֆd%ՔQj[ii }Od/PKNR.AwխU }9|cVݖ]Dz,5 ʎ!J*Z^lc/HοxqћyJxKK_RI+X픥PfR&+ mTbidtHt6}6p8\32߬:=-KP?T&0:>u"H 1=hE逡|ԯ14Ʀ} Pܽ;I!EMe I3OSۇFJĢ> 3IR(q&_^ [ɃÅ!OI{*sH|3R6wדv1їF 'QmB`F :oC$AݱyUS\LI{Q"ťcR.d H(! y1g+@0om%0E]:BLn0i[㰋fBj׊s Dkz\\GzӤLٔ;(Zv |:C0LᚉTvMNwBk5GhF ](ҷ*M_Jǧ+=5Y$ɛzǖnXѲA;Z96ܤH<䠋2q~s~%ցK4.FFyp&h*fx`8mEFGmg]<᳿$1Su/-s<A|YnUj–5(x czD@̸7C.hj}=;;ԫ`إUC grh+<ʖ"m(WnE R$]C&]߽&eJC馜~/S L 2"ӆ &0IuI~ER.c AC[tvX9w9~ o:Sp[msupd50hFĮ'&Rٺd b@#́bI.O7"Q_FJbАcQ,,& qWxY-1ګkLl0Ww;rA$_גy>f~Q:Nf.yU(}D.fiHEԏ?݆>U1wvbx~ @ի ש*mVwb#Y0{z?rm{TG_0^r#zl0^*pn LXn[BǕ`8s6a%jf{\&|6L+'kYA>Ș p wWF#L G?UӲ"R{5LXBGIT5caZ?:1Jzh~]IwcuXԾOn81X(%m6@8,èy[ƪ(JP)  1?h{$&"U.[taz'*à}HJ#8hO&Ozw4_koR`hq4Swb=d)UGW֒)o[=@~'QϠeI8\@YO*=be#y vu$Lo(^V4h|]0Zz"ӄļI^CRﳿ&럢bj!&mUOEY;0Pxt`4 1(F҇@07 ӼǀC>1T.kTr椭w? W:XWJT-`Cr| b2BCQ0W'5]*;K;@5''JGe䟚fIp%{JRzV*(+B@Rʲz BKBJNOsWLlh~)w6|W{;8ӓKm!F s;Y9qFa{X_n̜ٷ=+GmI=82=8nO ]:  ή:A O0MuDRi\'O>|r9:|?Ak=EF}/Ly, d?rdA29/آTBロVs@M/zHDPX`B_tZUe`5K2uB?ސrvDg^NRQkFMM|VL_D3c5S=d5 &joqbwS/X3騔fB*>額)2:Xspc|4y-iAi'bմ@$z4#Uv2aJO˅qpQN pfs8*U}lJxk?0&?_*nFTB㛏\.r;-!@)I~LBˡS\Ȳ}O hSyY{DFl ߰nv<.TټhJ? 0c][Wq H͠K\ݲh-YrE.pdZ9UPehNgykeA {t8I(uP_m**t-D̀`'m5Ici3G+]g3zFY /4 G&r OnX\^=xyXNcR46i} >؟K> sQ,5]D%د,/T8_zNtz0dwn{3eC}<#y XYi)+E2Pݽ=~{ qAA1'XBu \6Ǣik6K<Ktjw3i-γShKLGPc:[C?J}룈~E're߆D?zeLpBT5Zk"xXW xݳz~9KX8uvSq) j<ͤƢ͉^UBr@DGGXdMF ozx=0žD-S0.*ܧ6h&PWsEc_ɶ#cwE8![ 2HߞX|vωU[J*H9kv'|#"B(٪ms 5 N6ޅF^{{?i+D/JQwصA_@fMsu2Ox J^MBsn_%m!$[vuYuY ܀ Jǥ0fHJ{rՃ$0'iuagS$0gMegT[iҦ`*ð;,#Z>+yFٸDw~J.-:p;!~8f[!&ܭ"wSdY Q`H"ڱQ[\w$BcLh4e1-i\o *N=LcRO@=hMˁxe IVqMwygǢM˹ cZ/3Lf5 7{;k33HWY tوU]ږ ?%M+k lʴP?_ٜC۲r dJiϢs)qnJUB jtI'6Aъx}S|9˻6DaV$.rW%ҥf0شfoV)[5O Yb*8z?*F4xc*Ւi d&֞(>^Θ&0baϐܯj̅.Wexć.˗'cr8C`U \`7gJSv=;#fW<D,^OÖvk-!Y(1``v;akmS9$hdj͝Q{h .QUgqhMyn`P{\“.I:O'%=?PW: ۍ,h ̡{:ŹXK$[~fAK_o˃!3p^|_#06ж}31 \P"\[Tk2a"oE.P$iUYt/B޺=n؋#Fe <hDf!W忒iR]=7|kC;Vxr]SmJx)L\ Vw>@H.]7oZ[.< kJ h7T@sB fd XUBa\OvR  H olν;U#G T8Zhu^J8{qQW&StU>zL2ۺķ QCFZvL_qUս76TiaHy .P9ˡ$Zu B }dg #)59SuLh9 &zo$,.`zITV0MlGrK q$VY[Znz=rbl{<Sf'"C\P+oڶ}KPg/R1Ҧ@GՔí+|1_o4'ſ,:2K͇۔k5vOC>]*LD%3e.yCb뜏RJXOۚ1Uwfnp77L&H@ezasM&M~mڀ->@9hH(Wڪ_FCah2OMޖ-@BޣqE!4( bڱ*tffK58ɒ=ݧ@ z,Doٱz)AYՍ^(&9d24ԥmemht2+ؗQZɼj?a %R2uγBw=G Sqj= URB Ig&ʚW"Y,R ypyk%Y/Xm8?7- =BjWw9Co8Ԑ貜}V=nZFXGѐ%|yzݜGeZq~jWB&q+sTpZҴ:V@gyB3JHłS1z0Z{& a#OymC/w e ]B<[\5Y%$`U܊{ܪ%TSmj 6Ҟv]-;7\Vp_,U?>8'RZBi:lm ~/DZnȪ-݃R3M„0f9|+ #Uݬ g@~]q-}#?.'l*@u=Zz]v‹f(Ei9ԫ7fmO Op_% j#Nk1FT?{'K8\{AH2f%ÁY) ZR|4kIzcom>hd(9ehuTx곶zg /Nwkx]4]+1t|Uf͍"Xzg.1N[+c_] u,rG2wLdA$H#4  ˴ZvHD'J\!9 Va0 Ѹ|@R l`L p;ANKs[V;@r3Oe[8܂VQj&EO!aшw`sۇc@tۮ# 9*~p|ۭN΁v1Y t%g2(Th!H-I,9eE<ӞOQތ?L_/@e󾗇j@ *|A}z?u jt)TFd f NQ/a(L_{=۰ fȮ ࿬gҥ Ք>y l|['~ r!pfY~ŌUSޗcdDe;7iС#׏$)tmWhn9Z<-e l!q6~1S1|\CKSH0΂ʅW2>7"–Hf*שOF-LQHWQf/M<2]῞)Sg;Tv`OuLQ+#cdA5@۾gHU{RnJDy kVw*ulЧy_TR~DG@1wf;jTb;B`/ܾ `,N.KySt[Gy$:_f bdi;G]\.pC8uA2ɤ%|("vIo3#TRcm{~k$9 Eűx *vj~!bgEAiR@S:59ޓ{8Mg5҂ z[|5V.[2n K[r|i.yHr̊~Xߊ鄼k,u0Lq^)k.s[^Qy7֧c b"jrVЁ*KOGekk0Cv/&rdQ V"Lց-rf]+=`ӆY|"nNK4 Xx_;mY@ǟ)5dF'DGk0W!l?N&߮,2F+|aDR펾YXyS`ѩD1v#PPn2+?˲,əgYT Ů{ `ѼBZy7/2S7 Z-Gnxjwr-(ؘ LoG>eAcDH.V275r]ol0b~lLh r/0lkPs?L35MT%F3Ά&8*}|;g,l- }O?tW-N@>PeB*0C # Ɵˈإ?$Q`؟~rب`\Xx֞SNs!_lbt|;~ߋ;T=8cjk~y~"$(qcl2iN py^^B/ s=c7st̾?IW UjkqJMQby28/Ti@ci2߭ʖG.h`w} .-pJV@QeuZJ|g#FH%9HXi:Vk&ho _~FĝLdhN )XXS%+HAݎlX k1|%~d~հO.'o(:\"WK@KG-IhG;mrNBb^asq UVvSe]Ic|ۉfR)Fv&)s^$ I3êA6Տӵ~Y_dxG 6'aLpEw{tO\U>v?lމEI13m-{aZ MGq#?Wؾ8FV%ˀN2jüֱM~h>Ғ}EY\PigP:zN!bW{%KZ$$y2nTF1Y}_lBޫ^LB\y_7u g\~2GG!Y%&dzěq_"%8Ví>+ß'9q!.5"GFc\eӖ!z >ƕ&b +Gq++& qƒΆW9,G7Xnf[JDyA*NnrŧB¯PfBwP4TDh^H 03x7 !~k갰V`3m[Dria =UG%UKir;Vtr6v WԑA`|& M;҅0I 8;5#政V2Zn +qCN /S[fY}+qI`+ -}oYff0B@&o 4+,oUi'=+fG~VK[{`l>0VC(*?/3lkP&~ft:r:4ɏdݍTvӓ&1TYC fR~5dMHku&~隞XVUI.apKUǍ3He={[ yraPU?T;[QɪW}@-}fmOR H?3BhTS#4$SMK+#4eU,ƾ3 ~iWj*0)?=PuI& g![;Bˏ78UjMZƗ_]B9 s ؑGҥC}[W{;]pFlg< a.վ+L y3¦ם$sU5wzUɖ~jXg7n>_]"vn05ҁlNk㘄.-wӼTXbE8uUWh|@IH).U#6\.%hO.(p PPԶ7l1ku@]%xK⼫C DNnNمjV+>^u) dKPo]SW@-.sGޟan꼚{tĮ:V)y.]+I`SM7+یz $5Ue:@Y u!mL(>:-+5Ŧȷ4L3nN]zw;jk_n~|gw"Kk%7rNg+.;on-nKCw 4Zͽryo('VER] =mI]a #?QU+ƽE[AcHهj8:+ Ok_(xm>$C@WkqO# IZo=:YPl*\+Ȑp8";/=QEb5I|\^{wK_0r/ /P/zDꬦpޅ=#вhK#.\5 Qwim,flN ւs:fрĮBPd*qo%r&Q7uO-ăO]}h /Z*%B24jfL!~)[nR!D`ݥ8S,2.ݞ&BnIRiJ* sՕ߉b}=ěZK>˙ BcĘn; ȃ]w+?.Z+|BeQf;_$t(uD4.XhJGj P^A2ibHQ n` bb $a#=Y  L8m)*i^Bݮ#dӽ Z.ęG3QF5gM-˧[)tdJ"^7-HV#δ/穭5w|$j4u*;cprfX9g&G$^qcd꒿Cf5@2)+ HN߃֑Aa~ζ$ #A9~X߃%BekN>=֘eረwHH#0`(dλSHö56|jFbqE0 F(:bgs河=쀸s8g U ]5g.j`d: ɛkt1uAIy]B6! .F{4D@@j;suhI9afX):ǼgsxU񁰁]ew#`0‡ډ\E4ń ( jv"knDk)lU8G]$=B_r:>pN`Z+}Pj[Wf>M 3)"uޓL^?J3<6CZ9U\fڽQƢ2wlp uon,/jj~M4ANJ^"s|. 1 ә| $ ܄TnyG ()`]'MK|:/Zjt{iA&=J<-3^&G0}w mTf!yIs|y'l,Xtv )yEmc[Ny8ls:QLFTjq6)iO3T׼;P9F'.+)gQ)#u?Jn= x312Ǻ>f2zEƎdz.ZAcvag;nd!Ъҧ G gFblY8l%vW:UNybO _3 i?IvOGq]8VL'˹Dh羜r0I3qgOY&0/0yŸzvuiICF ˏG,|/m#xN&`U.b* / Pi<U ԿLo&@/50 `$ 5Nd5 w[j2uK^Mow1/@hiaa5WOK=r? *x@c7*̷o(<LGkjD-o}FkJZp3itcHF×hPt ^iдB:p:ěgXА`xXu„2c'R!:x_k9v{eךgߥ{ t "fi@ *7dD Gj#h-r9N<]EX-#&%NZU"(_mt!i2-c#~C,?'U:-[.bu_;"q*l#aЭ{!NR] .VE]" 3};[ruq5դNPןFކ:$>( ճf ;vT:_-In P9 7mY}~9F iAҀ[,.GQRVY?AWw;~_x5WHf9_߇7~藢o57K ewB"=aIg-o{CQs̃rޜ$@Y{-\Qm@v-DC``~/c*Vjo[E2.*sYˆt(eDn{\7`ᆍwI\w HWvf_^fz],E(>Up+0u}j@xl yb6fmTF f1"mu#91VY;ItnLhCzl,r:`~aj"#.䊃f$ssJwSZĉl_[3ھ|.QK ed)z^WuhJAXKG!וrІ&ҕWP-P\7k`;+=Yzm\\tysL4.]f&#_i>Duf|:Wp=*b>}%6kkAdJ6Dmޓʊx󗻦oq!߮oXa`g:r6?'YM~[xNlqXifIyF0X}_N: $ Sآ/LP6iaegC *naJ P01.Tܵ_M-! G6vt2#*+ e%bCq(DoP0|Cp'ۺٲssn `l6_SL,ߣKs֠.d&$Qiy#rPIQ#]]*!zJϞ-ljGWk_pǰL|AgWBԩY?)m&nLt_/jٜ]yF~<$"m'M Â.*I#oÄS2rr耒[&1cii*|b$|8+h&t2czȵg,R4Ω{OƫWN0Dwc65ݰc*t* ^jJ48eȴ.JT;kU^N' 1-QN}dMrjQ{ĪIxP8hoKY az'IJNg@DeսB1>bfs_`]5D7"; ~6(p/|5Dˀ՛"r)+Ԅ˘*y W0+ɋS[ X]ORCӣ1jgIMؕYs.4ψ-왪v*6eЌe^n:3풱Ida&4#vot`c*؆qy}ۢtB%f_H2(v|bĞEنܘ \9H݊?>}Ί;!#Yn|쵌;Grv\67$*ļnؤ$! "z!{ L ^Nc-yݸ% I䫉y3Qzn)Xf|h@:4&]HpSƪ*d?XHSF2&6\pFwF%l7tKY'%Q`=KB4*9CƝp+ KH84!z /P]P-^}0n{b?2:Ne;gvl/jqan`R%I2W4BCG(Uz\͌k`A&8 x8'_j+9u&y*Rup Z& ;7׈YW[!ފ+bݕ5A(fdɊrgV?WV0v).}mH<FM(GQZ>wT ˺*`QBI F426ޅ7i+O(OY-4Wikb%Dto/q^&d,X6k*Ԛ$(1D{:rFDZis='ۆwv IJ42!=(;N+cb;K @4&hB~⽡7`p$S8 4"t;]󰷎&u&k2zCBzH/".cf7|ip)%Zpv,fV[v{_-{gOY (9!ϣwa@йBdN%Cyәsʑ=&"kcH=)JEX@0,Q<* '/o)^11Lhl1&{fРRNv 'p9v 9r|I'3nR L5H|Ԓ#v >*6I)ybC G?B;巾AoYp e8<@W5@;<݈1aˎp)j; VoVm% $6Tw!J~PۋB)h]DIWQ* JԷLvo'>> n8Ģ`y--Q 4ag EZhQS?uScTHa4 o& t":sHy;=[ q^EQOO !d'5DPX0rP'-&y~q'6k\{Z~z`S:2SAk Ā=2HC9TPQNR4m(PH4m;B9.c;ڦby6r| ^\,Y2.NQIk%:HqCCPWq]}e.J2=F/CV!.)7=F0~[wJVDH a!a.KVȹ|7w[xIf1eF.ҴS2By^ Hr쥖s] Nw!  *az+j?Y[ht#@v۱Î'peԲ>v`G^^.H,C Uny;Ê(;i[_@ڴ7[@:ZB髬R)1FLVx.Gz͑!a4'\x #ey){e-sB` .3w2#CY.r돴U?.gûJ\C343 {_  b҅legٵnP܂Flrf[IJD2SpT^u3Z0?wBDz-…VUO} I3:~%z$빛]4!ͫ5©Q |A)WLд zQ(@:9e_MŲ d}E(UawLp"VnT5U;HץNվo "&O*Pt+Q5M3m3.:LWc!*) v)3>ZN~äTn%R lۏ<5H7H/s3͚ApCB`*z4ӈŐY(9^aI &#<HaCRk´)r 3II XT;@?NszԬј^::VE[.vm+_D5̳LLfJBl7[3dG>j'SZqA/bKoL_YofMT(XQ=]jq!\>&J/~] L\\UER8; {b80czVrZk9-(Aji1f͚9T͌P.+{ 'zAbMؖV򾷤y=;qO֠*%. [5sCy(!M2QBk8L,9 ܰn 落T_zSz+p~T+f}%^ ='@4IT⚈Aru!N܎ao `Y5cV /z$~Jc! ;^wQ3=~}@$sr;}(*Fcv"HŔKP*R2>fID:3o+3q&+ny6pUՊ;*ђ 6B=>3NWveMvPeJ,[${$ OX^"wU' ]T[S}?ݹ "e#ʤL[{"?(6?cwA Cӟgմq6"HQOw3Y`F$%}6~g퓦=ƲZaEq3lpOSybK֭.y%si5&jԸk/Sʊ[eB@og.}rfHSn7=,Jonv\'aKuuuDjJP%ۏǹ_J?]WSkЁJ|49&\1d}He/֏$^DkіR#7.җP* DdcWV;gYHM1 ĔGrsenX, O/ԉrn=AMHi{ j ZP&L' NRR(5|=+3!"^v+]s0n*6NLݗbM9rev} ˾KyЊmWoK]u]x !$q&Euzo%eDYܥmc}a{x/,k;<>,>+ yol6 mcR%Qh͎SEuYp6A3GiRKE6`vQss܍( ;95m\LS!Oi\_1/Up_-,E_K=4iV j="f@V1l sDLT'[Fyp52cI <ߧg"z;1cR<3;Os+rٟG*EJ-BSA%njȕ =`@Ika \qμpBxu|-I2:I5=Y.쵅]kZ\_,@GfcJ"nˊhRx鈭tGQѐ $v:[']E/<m(.Ztz쵣xЋ3 VYp~ن-rcO43a!ɚ{ӸWX1ن§z&AH:Ώ{7S|9b}N[N&<+^Q}9KISS6=@Dݓo+!On*zLЧ$RcX V}pFmៃ@,*Αد#γ%QȄsl@+4Ykܚ`SsGzWL;hjez:mT^8ڎww_Y$@έ,|+ ˤw+s.|zE$co[?qOfo]Xq]KEAuh5gbGRF\SQrOfym? 뽓aj3j8ʨJ{[#Q{?4KSҤ"2Yw/"?WL*|UZ쇜h $UdurvwFLTU+ a#[[. H#C&ɽ80,*fy~kWTގ05i#BCIrn|owbbV0Aܜ fƨYrgwR]l% Op<޸V! _xpNFpvcV`2V; )5DBx+'.26 ߕOn'Et:4FrBꮒqİ!3Ӝw8m07KN+`2OS5Zȴ"tqd;7YzOJ2 ?8\vZDЎ9Hw}nhpjR_gM[݁"OڌѿпV"A%M^];,DJUj:2x$2QUASx3AY :[@m#ջAMxȶ~Sm#DĜݷ%%H+56s)LY%-fWB)-\vs9Q2V'x  $dBc~Q\};$lAqw ~qQ?o27ŰUϠYHݑ `W[A&emam7s^xH=GTxW9`FӪ ,9XY`"Zԋ ki7|\5VZu ' 1\Ic=?\{4ݬ.mL6JcN@Yn2d'<܋|-Dğ8 \_Yz̅L|[+b=k<Ɋ{Ztq-$v?_?w/8 59t[g&-xj:s8 k98;LrJ~,º,mvOi[syQy^cG׿Ln-;*l(Bb>!]NLJ1B !‘eN{C8f9'heRܕX:YBea@CQ3ahokE$(/4]aT%#@x( 4桩e`3O_'nL΋U\=[~2^dH4M_C)4msV ƶ95nKa3|Cnaϡ-F|';7u/WB C AX ٶ1I\~ttac}X# $j9O>CrwV */i˞LDzYtgZv*D^1$Y/o"p!%otaPKwh ^k%a`eq 1b$uBP)ȶ YZ