kernel-tools-4.19.90-2404.3.0.0247.oe1 >  A f(VW^^fۻ;|oQ0F5q;YlK T=pu^q. (ȋm _h;I`]?y~5I2jvp7w]'9 ]0W~~/́oz TB9 [к+Jdut0޹c|/$!j=]˭iG}Ҙ* X }/nV9*aw,gcƏ1w͠'ߪ'Wbbc9c5126a2b58e3c90519e8f6ea1c025ef9ce1deb26280bb0c0d137f2ab05b33df3fa944b6a15326cfa2f2ac113e9ba0d6b7237Q(f(VW^^f>>1]{9~[:vG^\9x$-'l5}&n6iND-Pc'<)5ĵ1uc[tMSSjK7&l. %!q9x Ǚ%|@u>|,5LMdDLh."P%nIa[E<gMb8ۼ[D/fֈ́iϡi"+L瀛Ɠ_:wfxC fMU!9! >pH?d ) R+1 FRiov%#p# # # #  #  $# #_#8#D!!!(78@e9e:/he>?@#B+FaGØ#H$#Iİ#XYZh[x\Ŝ#](#^K bɕcʡdefl t$#u˰#v<w#xP#yczhx|ڂCkernel-tools4.19.902404.3.0.0247.oe1Assortment of tools for the Linux kernelThis package contains the tools/ directory from the kernel source and the supporting documentation.f(obs-worker-backend-test-x86-0009.novalocalopenEuler:20.03:LTS:SP1 / standard_x86_64http://openeuler.orgGPLv2http://openeuler.orgUnspecifiedhttp://www.kernel.org/linuxx86_64/sbin/ldconfig if [ $1 -eq 1 ] && [ -x /usr/bin/systemctl ] ; then # Initial installation /usr/bin/systemctl --no-reload preset cpupower.service || : fi if [ $1 -eq 0 ] && [ -x /usr/bin/systemctl ] ; then # Package removal, not upgrade /usr/bin/systemctl --no-reload disable --now cpupower.service || : fi/sbin/ldconfig8868888xx8XH8@z&g.""!%s 4 *큤A큤f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(`f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(f(5056f752a9fb3514030df4696c3ac46b2c191905e49485d14ce43790cf6dcb548999c6204b40c4c597696e26c19b7b317c1be7ee3f942359e32ac72c8d35e08828a135918fe2fe486fe26754a00b01ce867168ee3b2a09c728b15fdeb06a666c1c895272dfae8562426b5adb5569ac40872b4ab7f5bbcacc92a02b7216dca75ea4f3732fa4e277e348bb5550d3addf839ec32ba078446a2a4f4113918c2828348c7fa3f3da0e5c802ecdf94146836bd54e17acf859b02d1bdfe4f202f45bfa537d4773226eb94cd944bd4faadb4be6b6ca9543daee3722ccfde2b40f79c39ffa74bfca3775db2035d62d6dedf5ecc7c0af4c6af82adbebb0203cbbddabf217f144b4ab1918b09f1e6f9b804bab32f5aa3b4eb1af83d5fe2cd17094053f0feeb393b13bb0b45e53ab05d089a106a7a421dd32f5621304eec5e6fa98d71b05e3f34e2706e5c8507b432c6da281639eeaa7e39389a3af7956e19508902dab9b27d3991148805429626cbf912ece9c253fd95cf2053bfeb75fab2b807b8e4bd817ecd841b59a87d3781777985041a03f72ad79b6b0f39a2599a58d4acf81a68121083b1b98364413511a1dc76fb6807e334b374a63aefb2cebb0ecbb3df17de2d07eb057fe9e5d0e8c36f485818286b80e3eba8ff66ff44797940e99b1fd5361bb988807571c06763fe0597ad4ac376b8c0ca0f72556d879125156e79350f03c0a75ee5808b032a67f587d3541099d46de34f5bec8cd5976114ba07f1299ee6001ffd6e9b61145a3f72620423c80f591b0ede49300d35a78772e8e2136e34b4e10dfa703e82ab8f1e1f62febe97525dcff98b1dbbd63e5a2afd5df708c962e6941df88e20c8927e641ad20e4b63e752ebd504837654c90ea0906ad7099eba2898ffd2a5123deeb73519db6ad3b0b46c87f35a43f7fb495e7ad613a447491f6c035b44285af9fedb132039e8b084ef8b806afd4189b6a363e2db41b83bd5b0753662d8349d3677800300978e6ac93a7a12fb922b9b1e8b33987c8810c38151c801d7cdffe39ba5a4216a389203030a652c165caf3c67f45cee8118c46e5fe0f1838f5d133dfb6d4298fbc105c13e5d3de66d1ceb33a61a39626e65107971f18842ddec585bb8ab43536ae9f92afdf0792d9a89c63b5092ca47033d4307e1c34af0f41d7c751837f1940b50e5090acc2fffacb133b3e0185d233532d7472b86b0f4ae65d7a88d687d047662e1542343a0798c831d7e711a68e3a6f240908cef9363f600f47b3185ce2590d068716602ee0cd73f6d8fef9208951139f8b89483a0d145548ab3d71c3fc408cb6a5c9df3c7f66ef834dbdfb6ce5fde4cec8a94ffdcffb76ae3b0683014a62343d0bbd61c7d269ffde3f8adf058f378bf0a5b5374d23389983d96a5af5d9a10d4b55273566513cbd2244b935d0b534ca5e38086935b141614691d520bc707ce6dd5fca528bfa364b149112249f60c4a14ca44d8e6951dd7clibcpupower.so.0.0.1rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootkernel-4.19.90-2404.3.0.0247.oe1.src.rpmconfig(kernel-tools)cpufreq-utilscpufrequtilskernel-toolskernel-tools(x86-64)kernel-tools-libslibcpupower.so.0()(64bit) @@@@@@@@@@@@@@@@@@@@@@@@    @/bin/sh/bin/sh/bin/sh/usr/bin/pythonconfig(kernel-tools)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.6)(64bit)libc.so.6(GLIBC_2.7)(64bit)libc.so.6(GLIBC_2.8)(64bit)libcpupower.so.0()(64bit)libm.so.6()(64bit)libm.so.6(GLIBC_2.2.5)(64bit)libncursesw.so.6()(64bit)libpanelw.so.6()(64bit)libpci.so.3()(64bit)libpci.so.3(LIBPCI_3.0)(64bit)libpci.so.3(LIBPCI_3.3)(64bit)libpci.so.3(LIBPCI_3.5)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)librt.so.1()(64bit)librt.so.1(GLIBC_2.2.5)(64bit)libtinfo.so.6()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)4.19.90-2404.3.0.0247.oe13.0.4-14.6.0-14.0-15.2-14.15.1f(@ff-f @ee@eZeeeee@eoe5@eeeexK@eoede\eSa@eKx@e@@e7e/e&@ev@e e@d@dd@dhd.@dd@d~ddd@ddZ@ddw6dm@d_{dZ5dI@d?d5Kd,@d&@d$(@d@dadxcc@cwc=@cc@cc@cci@c.c@c|cs@cjDcb[cZrcWcN@cEZc2c)@c#c!@cc @cob5@bL@bbޅbK@bb'bba@b&b@b@bb@bzSbu bgZhang Changzhong - 4.19.90-2404.3.0.0247Zhang Changzhong - 4.19.90-2404.2.0.0246Zhang Changzhong - 4.19.90-2404.1.0.0245Zhang Changzhong - 4.19.90-2403.4.0.0244Zhang Changzhong - 4.19.90-2403.3.0.0243Zhang Changzhong - 4.19.90-2403.2.0.0242Zhang Changzhong - 4.19.90-2403.1.0.0241Zhang Changzhong - 4.19.90-2402.6.0.0240Zhang Changzhong - 4.19.90-2402.5.0.0239Zhang Changzhong - 4.19.90-2402.4.0.0238Zhang Changzhong - 4.19.90-2402.1.0.0237Zhang Changzhong - 4.19.90-2401.5.0.0236Zhang Changzhong - 4.19.90-2401.4.0.0235Zhang Changzhong - 4.19.90-2401.3.0.0234Zhang Changzhong - 4.19.90-2401.1.0.0233Zhang Changzhong - 4.19.90-2312.6.0.0232Zhang Changzhong - 4.19.90-2312.4.0.0231Zhang Changzhong - 4.19.90-2312.3.0.0230Zhang Changzhong - 4.19.90-2312.1.0.0229Zhang Changzhong - 4.19.90-2311.5.0.0228Zhang Changzhong - 4.19.90-2311.4.0.0227Zhang Changzhong - 4.19.90-2311.3.0.0226Zhang Changzhong - 4.19.90-2311.2.0.0225Zhang Changzhong - 4.19.90-2311.1.0.0224Zhang Changzhong - 4.19.90-2310.4.0.0223Zhang Changzhong - 4.19.90-2310.3.0.0222Zhang Changzhong - 4.19.90-2310.2.0.0221Zhang Changzhong - 4.19.90-2309.5.0.0220Zhang Changzhong - 4.19.90-2309.4.0.0219Zhang Changzhong - 4.19.90-2309.3.0.0218Zhang Changzhong - 4.19.90-2309.1.0.0217Zhang Changzhong - 4.19.90-2308.5.0.0216Zhang Changzhong - 4.19.90-2308.4.0.0215Zhang Changzhong - 4.19.90-2308.3.0.0214Zhang Changzhong - 4.19.90-2308.2.0.0213Zhang Changzhong - 4.19.90-2308.1.0.0212Zhang Changzhong - 4.19.90-2307.5.0.0211Zhang Changzhong - 4.19.90-2307.4.0.0210Zhang Changzhong - 4.19.90-2307.3.0.0209Zhang Changzhong - 4.19.90-2306.7.0.0208Zhang Changzhong - 4.19.90-2306.5.0.0207Zhang Changzhong - 4.19.90-2306.4.0.0206Zhang Changzhong - 4.19.90-2306.3.0.0205Zhang Changzhong - 4.19.90-2306.1.0.0204Zhang Changzhong - 4.19.90-2305.4.0.0203Zhang Changzhong - 4.19.90-2305.3.0.0202Zhang Changzhong - 4.19.90-2305.2.0.0201Zhang Changzhong - 4.19.90-2305.1.0.0200Zhang Changzhong - 4.19.90-2304.5.0.0199Zhang Changzhong - 4.19.90-2304.4.0.0198Zhang Changzhong - 4.19.90-2304.3.0.0197Zhang Changzhong - 4.19.90-2304.1.0.0196Zhang Changzhong - 4.19.90-2303.6.0.0195Zhang Changzhong - 4.19.90-2303.5.0.0194Zhang Changzhong - 4.19.90-2303.4.0.0193Zhang Changzhong - 4.19.90-2303.3.0.0192Zhang Changzhong - 4.19.90-2303.1.0.0191Laibin Qiu - 4.19.90-2302.5.0.0190Laibin Qiu - 4.19.90-2302.4.0.0189Laibin Qiu - 4.19.90-2302.3.0.0188Laibin Qiu - 4.19.90-2302.1.0.0187Laibin Qiu - 4.19.90-2301.6.0.0186Zheng Zengkai - 4.19.90-2301.5.0.0185Laibin Qiu - 4.19.90-2301.3.0.0184Laibin Qiu - 4.19.90-2212.4.0.0183Laibin Qiu - 4.19.90-2212.3.0.0182Laibin Qiu - 4.19.90-2212.2.0.0181Laibin Qiu - 4.19.90-2212.1.0.0180Laibin Qiu - 4.19.90-2211.6.0.0179Laibin Qiu - 4.19.90-2211.5.0.0178Laibin Qiu - 4.19.90-2211.4.0.0177Laibin Qiu - 4.19.90-2211.2.0.0176Laibin Qiu - 4.19.90-2211.1.0.0175Laibin Qiu - 4.19.90-2210.5.0.0174Laibin Qiu - 4.19.90-2210.4.0.0173Laibin Qiu - 4.19.90-2210.3.0.0172Laibin Qiu - 4.19.90-2210.1.0.0171Laibin Qiu - 4.19.90-2209.6.0.0170Laibin Qiu - 4.19.90-2209.5.0.0169Laibin Qiu - 4.19.90-2209.4.0.0168Laibin Qiu - 4.19.90-2209.3.0.0167Laibin Qiu - 4.19.90-2209.1.0.0166Laibin Qiu - 4.19.90-2208.6.0.0165Laibin Qiu - 4.19.90-2208.5.0.0164Laibin Qiu - 4.19.90-2208.4.0.0163Laibin Qiu - 4.19.90-2208.2.0.0162Laibin Qiu - 4.19.90-2208.1.0.0161Laibin Qiu - 4.19.90-2207.4.0.0160Laibin Qiu - 4.19.90-2207.3.0.0159Laibin Qiu - 4.19.90-2207.2.0.0158Laibin Qiu - 4.19.90-2207.1.0.0157Laibin Qiu - 4.19.90-2206.4.0.0156Laibin Qiu - 4.19.90-2206.3.0.0155Laibin Qiu - 4.19.90-2206.2.0.0154Laibin Qiu - 4.19.90-2206.1.0.0153Laibin Qiu - 4.19.90-2205.6.0.0152Laibin Qiu - 4.19.90-2205.5.0.0151Laibin Qiu - 4.19.90-2205.4.0.0150Laibin Qiu - 4.19.90-2205.3.0.0149Laibin Qiu - 4.19.90-2205.1.0.0148Laibin Qiu - 4.19.90-2204.4.0.0147- !6313 fixup CVE-2024-26908 - !6447 can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock - !6309 v5 ima: Avoid blocking in RCU read-side critical section - !6405 wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() - !6466 bpf: Fix hashtab overflow check on 32-bit arches - !6396 tracing/trigger: Fix to return error if failed to alloc snapshot - !6278 Bluetooth: Avoid potential use-after-free in hci_error_reset - bpf: Fix hashtab overflow check on 32-bit arches - can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock - !6203 ALSA: usb-audio: fix null pointer dereference on pointer cs_desc - !6292 aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts - !6301 v2 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() - wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() - !6266 usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - tracing/trigger: Fix to return error if failed to alloc snapshot - !6290 CVE-2024-24861 - x86/xen: Add some null pointer checking to smp.c - ima: Avoid blocking in RCU read-side critical section - !6269 scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - !6276 wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach - tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() - !6277 gtp: fix use-after-free and null-ptr-deref in gtp_newlink() - !6275 arp: Prevent overflow in arp_req_get(). - !6280 scsi: advansys: Fix kernel pointer leak - !6177 arm64/mpam: Not allowed setting 0 to cache portion bit mask - !6176 arm64/mpam: return EOPNOTSUPP when changing rmid of monitor group or resource group with monitor - aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts - media: xc4000: Fix atomicity violation in xc4000_get_frequency - !6075 Fix CVE-2024-26764 - scsi: advansys: Fix kernel pointer leak - Bluetooth: Avoid potential use-after-free in hci_error_reset - gtp: fix use-after-free and null-ptr-deref in gtp_newlink() - wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach - arp: Prevent overflow in arp_req_get(). - !6084 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter - scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - !6246 ubi: Check for too small LEB size in VTBL code - ubi: Check for too small LEB size in VTBL code - ALSA: usb-audio: fix null pointer dereference on pointer cs_desc - arm64/mpam: Not allowed setting 0 to cache portion bit mask - arm64/mpam: return EOPNOTSUPP when changing rmid of monitor group or resource group with monitor - netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter - fs/aio: Check IOCB_AIO_RW before the struct aio_kiocb conversion - fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio- !6231 v2 drm/vkms: call drm_atomic_helper_shutdown before drm_dev_put() - !6083 can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) - !6160 net/sched: act_mirred: don't override retval if we already lost the skb - drm/vkms: call drm_atomic_helper_shutdown before drm_dev_put() - !6152 Fix CVE-2024-26812 - !6139 iavf: free q_vectors before queues in iavf_disable_vf - !6164 CVE-2021-47194 - !6123 xen/events: close evtchn after mapping cleanup - cfg80211: call cfg80211_stop_ap when switch from P2P_GO type - net/sched: act_mirred: don't override retval if we already lost the skb - vfio/pci: Create persistent INTx handler - vfio: Introduce interface to flush virqfd inject workqueue - !6053 net: ip_tunnel: prevent perpetual headroom growth - !6002 KVM: s390: vsie: fix race during shadow creation - iavf: free q_vectors before queues in iavf_disable_vf - !6102 Fix CVE-2024-27437 - !6070 Fix CVE-2024-26686 - !6049 wifi: mac80211: fix race condition on enabling fast-xmit - !5916 ext4: fix double-free of blocks due to wrong extents moved_len - xen/events: close evtchn after mapping cleanup - !6099 vfio/pci: Lock external INTx masking ops - !6032 gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() - !5899 dm-crypt: don't modify the data when using authenticated encryption - vfio/pci: Disable auto-enable of exclusive INTx IRQ - genirq: Add IRQF_NO_AUTOEN for request_irq/nmi() - vfio/pci: Lock external INTx masking ops - !6042 nilfs2: fix data corruption in dsync block recovery for small block sizes - !6030 Fix CVE-2024-26685 - !6015 btrfs: don't drop extent_map for free space inode on write error - !5963 btrfs: dev-replace: properly validate device names - can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) - fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats - fs/proc: do_task_stat: move thread_group_cputime_adjusted() outside of lock_task_sighand() - fs/proc: do_task_stat: use __for_each_thread() - exit: Use the correct exit_code in /proc//stat - net: ip_tunnel: prevent perpetual headroom growth - wifi: mac80211: fix race condition on enabling fast-xmit - !5999 mm/swap: fix race when skipping swapcache - nilfs2: fix data corruption in dsync block recovery for small block sizes - !6019 net/sched: act_mirred: use the backlog for mirred ingress - !6010 PM / devfreq: Synchronize devfreq_monitor_[start/stop - !5846 ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() - gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() - !5994 ipv6: sr: fix possible use-after-free and null-ptr-deref - nilfs2: fix potential bug in end_buffer_async_write - nilfs2: fix buffer corruption due to concurrent device reads - !5951 RDMA/qedr: Fix qedr_create_user_qp error flow - net/sched: act_mirred: use the backlog for mirred ingress - btrfs: don't drop extent_map for free space inode on write error - PM / devfreq: Synchronize devfreq_monitor_[start/stop] - !5961 fbdev: savage: Error out if pixclock equals zero - KVM: s390: vsie: fix race during shadow creation - mm/swap: fix race when skipping swapcache - ipv6: sr: fix possible use-after-free and null-ptr-deref - !5875 v3 CVE-2024-26771 - !5926 RDMA/srpt: Support specifying the srpt_service_guid parameter - btrfs: dev-replace: properly validate device names - fbdev: savage: Error out if pixclock equals zero - !5778 ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() - RDMA/qedr: Fix qedr_create_user_qp error flow - !5830 fbdev: sis: Error out if pixclock equals zero - RDMA/srpt: Support specifying the srpt_service_guid parameter - ext4: fix double-free of blocks due to wrong extents moved_len - dm-crypt: don't modify the data when using authenticated encryption - !5807 nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() - dmaengine: ti: edma: Add some null pointer checks to the edma_probe - dmaengine: ti: edma: Fix error return code in edma_probe() - dmaengine: ti: edma: add missed operations - dmaengine: ti: edma: fix missed failure handling - ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() - fbdev: sis: Error out if pixclock equals zero - nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() - ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found()- !5874 scsi: hisi_sas: Update disk locked timeout to 7 seconds - scsi: hisi_sas: Update disk locked timeout to 7 seconds - !5841 fixup CVE-2024-26751 - !5834 CVE-2021-47144 - ARM: ep93xx: Add terminator to gpiod_lookup_table - drm/amd/amdgpu: fix refcount leak - !5796 netfilter: nft_limit: reject configurations that cause integer overflow - netfilter: nft_limit: reject configurations that cause integer overflow - !5755 sh: push-switch: Reorder cleanup operations to avoid use-after-free bug - !5767 v5 net: fec: fix the potential memory leak in fec_enet_init() - !5718 CVE-2024-26654 - net: fec: fix the potential memory leak in fec_enet_init() - !5722 btrfs: don't abort filesystem when attempting to snapshot deleted subvolume - sh: push-switch: Reorder cleanup operations to avoid use-after-free bug - !5727 fix CVE-2021-47101 - !5531 ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() - !5715 net: hns3: updates 2024.04.02 - !5710 v2 ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() - asix: fix wrong return value in asix_check_host_enable() - asix: fix uninit-value in asix_mdio_read() - net: asix: fix uninit value bugs - btrfs: don't abort filesystem when attempting to snapshot deleted subvolume - !5700 sr9800: Add check for usbnet_get_endpoints - !5680 USB: usbfs: Don't WARN about excessively large memory allocations - !5679 fix CVE-2023-52587 - ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs - ALSA: aica: Fix a long-time build breakage - !5713 v2 tipc: wait and exit until all work queues are done - net: hns3: update hns3 version to 24.3.1 - net: hns3: fix port vlan filter not disabled problem in dynamic vlan mode - !5696 NFS: Fix an Oopsable condition in __nfs_pageio_add_request() - tipc: wait and exit until all work queues are done - ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() - !5702 ext4: Validate inode pa before using preallocation blocks - !5694 tipc: skb_linearize the head skb when reassembling msgs - ext4: Validate inode pa before using preallocation blocks - !5674 mac80211: fix locking in ieee80211_start_ap error path - !5672 arm64/mpam_ctrlmon: Update ctrl group config with rdtgrp's partid - sr9800: Add check for usbnet_get_endpoints - !5528 btrfs: do not BUG_ON in link_to_fixup_dir - NFS: Fix an Oopsable condition in __nfs_pageio_add_request() - tipc: skb_linearize the head skb when reassembling msgs - !5522 md/raid5: fix atomicity violation in raid5_cache_count - USB: usbfs: Don't WARN about excessively large memory allocations - IB/ipoib: Fix mcast list locking - RDMA/IPoIB: Fix error code return in ipoib_mcast_join - mac80211: fix locking in ieee80211_start_ap error path - arm64/mpam: Allocate new partid for the created ctrl group - arm64/mpam_ctrlmon: Update ctrl group config with rdtgrp's partid - !5581 CVE-2023-52622 - !5658 v2 CVE-2021-47131 - !5645 [sync] PR-5493: arm64/mpam: Fix repeated enabling in mpam_enable() - !5559 fix CVE-2021-47173 - !5575 net: dsa: fix a crash if ->get_sset_count() fails - net/tls: Use RCU API to access tls_ctx->netdev - net/tls: Remove the context from the list in tls_device_down - tls: Fix context leak on tls_device_down - net/tls: Resolve KABI break when backport bugfix of CVE-2021-47131 - net/tls: Fix use-after-free after the TLS device goes down and up - net/tls: Replace TLS_RX_SYNC_RUNNING with RCU - !5625 i2c: i801: Don't generate an interrupt on bus reset - !5517 dm: revert partial fix for redundant bio-based IO accounting - arm64/mpam: Fix repeated enabling in mpam_enable() - !5481 jfs: fix array-index-out-of-bounds in dbAdjTree - !5572 mld: fix panic in mld_newpack() - !5565 tracing: Ensure visibility when inserting an element into tracing_map - !5571 v2 mm/mlock: return EINVAL for illegal user memory range in mlock - i2c: i801: Don't generate an interrupt on bus reset - !5587 Fix CVE-2021-47171 - !5579 mm: ksm: fix use-after-free kasan report in ksm_might_need_to_copy - !5573 Fix CVE-2021-47160 - !5564 serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' - !5560 drm/amdgpu: Fix a use-after-free - net: usb: fix possible use-after-free in smsc75xx_bind - net: usb: fix memory leak in smsc75xx_bind - ext4: avoid online resizing failures due to oversized flex bg - ext4: unify the type of flexbg_size to unsigned int - ext4: remove unnecessary check from alloc_flex_gd() - mm: ksm: fix use-after-free kasan report in ksm_might_need_to_copy - !5558 net: fujitsu: fix potential null-ptr-deref - !5556 NFC: nci: fix memory leak in nci_allocate_device - net: dsa: fix a crash if ->get_sset_count() fails - net: dsa: mt7530: fix VLAN traffic leaks again - net: dsa: mt7530: fix VLAN traffic leaks - mld: fix panic in mld_newpack() - mm/mlock: return EINVAL for illegal user memory range in mlock - tracing: Ensure visibility when inserting an element into tracing_map - serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' - !5552 net/smc: remove device from smcd_dev_list after failed device_add() - !5290 crypto: algif_aead - Only wake up when ctx->more is zero - !5446 keys: safe concurrent user->{session,uid}_keyring access - drm/amdgpu: Fix a use-after-free - !5550 pciehp: clear p_slot->work.data after powering off a slot - usb: misc: fix improper handling of refcount in uss720_probe() - misc/uss720: fix memory leak in uss720_probe - !5515 netfilter: nf_tables: disallow timeout for anonymous sets - !5538 netfilter: nf_tables: disallow anonymous set with timeout flag - net: fujitsu: fix potential null-ptr-deref - NFC: nci: fix memory leak in nci_allocate_device - net/smc: remove device from smcd_dev_list after failed device_add() - pciehp: clear p_slot->work.data after powering off a slot - netfilter: nf_tables: disallow anonymous set with timeout flag - ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() - btrfs: do not BUG_ON in link_to_fixup_dir - md/raid5: fix atomicity violation in raid5_cache_count - dm: revert partial fix for redundant bio-based IO accounting - netfilter: nf_tables: disallow timeout for anonymous sets - jfs: fix array-index-out-of-bounds in dbAdjTree - keys: safe concurrent user->{session,uid}_keyring access - crypto: af_alg - Work around empty control messages without MSG_MORE - crypto: af_alg - Fix regression on empty requests - crypto: algif_aead - Only wake up when ctx->more is zero- !5539 spi: spi-fsl-dspi: Fix a resource leak in an error handling path - !5542 round lts patches - !5520 scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() - l2tp: pass correct message length to ip6_append_data - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - spi: spi-fsl-dspi: Fix a resource leak in an error handling path - !5514 CVE-2021-47110 - !5497 llc: Drop support for ETH_P_TR_802_2. - !5498 llc: make llc_ui_sendmsg() more robust against bonding changes - !5490 tcp: add sanity checks to rx zerocopy - scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() - x86/kvm: Do not try to disable kvmclock if it was not enabled - x86/kvm: Disable kvmclock on all CPUs on shutdown - !5502 pstore/ram: Fix crash when setting number of cpus to an odd number - !5477 Fixed CVE-2021-47112 - pstore/ram: Fix crash when setting number of cpus to an odd number - llc: make llc_ui_sendmsg() more robust against bonding changes - llc: Drop support for ETH_P_TR_802_2. - tcp: add sanity checks to rx zerocopy - !5479 jfs: fix cve-2023-52600 - !5478 jfs: fix array-index-out-of-bounds in diNewExt - !5485 nfsd: fix use-after-free due to delegation race - nfsd: fix use-after-free due to delegation race - !5281 printk: avoid deadlock in panic - jfs: fix uaf in jfs_evict_inode - JFS: fix memleak in jfs_mount - jfs: fix array-index-out-of-bounds in diNewExt - x86/kvm: Teardown PV features on boot CPU as well - !5465 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() - !5361 btrfs: abort in rename_exchange if we fail to insert the second ref - !5254 tomoyo: fix UAF write bug in tomoyo_write_control() - !5321 UBSAN: array-index-out-of-bounds in dtSplitRoot - !5455 CVE-2021-47114 - wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() - !5320 jfs: fix slab-out-of-bounds Read in dtSearch - ocfs2: issue zeroout to EOF blocks - ocfs2: fix zero out valid data - ocfs2: fix data corruption by fallocate - !5374 hwrng: core - Fix page fault dead lock on mmap-ed hwrng - !5418 [sync] PR-5317: KVM: s390: fix setting of fpc register - !5272 net/smc: fix illegal rmb_desc access in SMC-D connection dump - !5274 phonet/pep: refuse to enable an unbound pipe - !5359 CVE-2021-47121 and CVE-2021-47122 - KVM: s390: fix setting of fpc register - !5358 v5 CVE-2023-52595 - !5336 binder: fix race between mmput() and do_exit() - hwrng: core - Fix page fault dead lock on mmap-ed hwrng - btrfs: abort in rename_exchange if we fail to insert the second ref - net: caif: fix memory leak in caif_device_notify - net: caif: fix memory leak in cfusbl_device_notify - net: caif: add proper error handling - net: caif: added cfserl_release function - rt2x00: Fix kabi breakage in struct rt2x00lib_ops - wifi: rt2x00: restart beacon queue when hardware reset - rt2x00: clear up IV's on key removal - rt2x00: clear IV's on start to fix AP mode regression - rt2800: add pre_reset_hw callback - rt2800: do not nullify initialization vector data - binder: fix race between mmput() and do_exit() - UBSAN: array-index-out-of-bounds in dtSplitRoot - jfs: fix slab-out-of-bounds Read in dtSearch - printk: avoid deadlock in panic - phonet/pep: refuse to enable an unbound pipe - net/smc: fix illegal rmb_desc access in SMC-D connection dump - tomoyo: fix UAF write bug in tomoyo_write_control()- !5306 FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree - !5347 s390/ptrace: handle setting of fpc register correctly - !5309 drm/msm/dpu: Add mutex lock in control vblank irq - s390/ptrace: handle setting of fpc register correctly - !5267 llc: call sock_orphan() at release time - drm/msm/dpu: Add mutex lock in control vblank irq - FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree - !5241 powerpc/lib: Validate size for vector operations - !5246 ceph: fix deadlock or deadcode of misusing dget() - !5268 crypto: algif_aead - fix uninitialized ctx->init - crypto: algif_aead - fix uninitialized ctx->init - llc: call sock_orphan() at release time - !5220 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add - !5196 drm: Don't unref the same fb many times by mistake due to deadlock handling - ceph: fix deadlock or deadcode of misusing dget() - powerpc/lib: Validate size for vector operations - !5210 v2 Fix CVE-2022-48629 and CVE-2022-48630 - powerpc/mm: Fix null-pointer dereference in pgtable_cache_add - !5175 arm64/mpam: Fix use-after-free when deleting resource groups - !5163 nfc: nci: assert requested protocol is valid - !5172 CVE-2023-52502 for openEuler-1.0-LTS - crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - crypto: qcom-rng - ensure buffer for generate is completely filled - drm: Don't unref the same fb many times by mistake due to deadlock handling - !5177 net: nfc: llcp: Add lock when modifying device list - !5157 RDMA/srp: Do not call scsi_done() from srp_abort() - net: nfc: llcp: Add lock when modifying device list - arm64/mpam: Fix use-after-free when deleting resource groups - arm64/mpam: remove kernfs_get() calls() and add kernfs_put() calls to prevent refcount leak - !5142 arm64/mpam: Expand the monitor number of the resctrl root - net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() - nfc: constify several pointers to u8, char and sk_buff - nfc: nci: assert requested protocol is valid - RDMA/srp: Do not call scsi_done() from srp_abort() - arm64/mpam: Expand the monitor number of the resctrl root- !5133 CVE-2021-46926 - !5136 NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds - !5052 v3 Remove WQ_FLAG_BOOKMARK flag - !5140 linux-4.19.y inclusion(4.19.305..4.19.307) part3 - dmaengine: fix is_slave_direction() return false when DMA_DEV_TO_DEV - NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds - ALSA: hda: intel-sdw-acpi: harden detection of controller - soundwire: intel: filter SoundWire controller device search - !5114 fix CVE-2023-52578 - !5119 crypto: scomp - fix req->dst buffer overflow - !5101 EDAC/thunderx: Fix possible out-of-bounds string access - !5094 HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect - crypto: scomp - fix req->dst buffer overflow - net: fix kabi check warning - net: Fix unwanted sign extension in netdev_stats_to_stats64() - net: bridge: use DEV_STATS_INC() - net: add atomic_long_t to net_device_stats fields - !5092 wifi: mac80211: fix potential key use-after-free - EDAC/thunderx: Fix possible out-of-bounds string access - !5095 linux-4.19.y inclusion(4.19.305..4.19.307) part 2 - !5090 drm: bridge/panel: Cleanup connector on bridge detach - !5088 uio_hv_generic: Fix a memory leak in error handling paths - !4952 scsi: qedf: Add pointer checks in qedf_update_link_speed() - !5076 v3 CVE-2021-47074 - netfilter: nft_compat: reject unused compat flag - ppp_async: limit MRU to 64K - inet: read sk->sk_family once in inet_recv_error() - bonding: remove print in bond_verify_device_path - af_unix: fix lockdep positive in sk_diag_dump_icons() - net: ipv4: fix a memleak in ip_setup_cork - ipv6: Ensure natural alignment of const ipv6 loopback and router addresses - virtio_net: Fix "‘%d’ directive writing between 1 and 11 bytes into a region of size 10" warnings - bonding: return -ENOMEM instead of BUG in alb_upper_dev_walk - SUNRPC: Fix a suspicious RCU usage warning - tcp: Add memory barrier to tcp_push() - vlan: skip nested type that is not IFLA_VLAN_QOS_MAPPING - md: Whenassemble the array, consult the superblock of the freshest device - jbd2: correct the printing of write_flags in jbd2_write_superblock() - !5073 RDMA/rxe: Clear all QP fields if creation failed - !5077 RDMA/rxe: Return CQE error if invalid lkey was supplied - !5055 linux-4.19.y inclusion(4.19.305..4.19.307) part 1 - HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect - wifi: mac80211: fix potential key use-after-free - drm: bridge/panel: Cleanup connector on bridge detach - uio_hv_generic: Fix a memory leak in error handling paths - of: unittest: Fix of_count_phandle_with_args() expected value message - of: unittest: Fix compile in the non-dynamic case - RDMA/rxe: Return CQE error if invalid lkey was supplied - nvme-loop: fix memory leak in nvme_loop_create_ctrl() - nvme-loop: don't put ctrl on nvme_init_ctrl error - !5060 net: fix possible store tearing in neigh_periodic_work() - RDMA/rxe: Clear all QP fields if creation failed - net: fix possible store tearing in neigh_periodic_work() - of: Fix double free in of_parse_phandle_with_args_map - pmdomain: core: Move the unused cleanup to a _sync initcall - tick/sched: Preserve number of idle sleeps across CPU hotplug events - acpi: property: Let args be NULL in __acpi_node_get_property_reference - tick-sched: Fix idle and iowait sleeptime accounting vs CPU hotplug - ACPI: LPIT: Avoid u32 multiplication overflow - audit: Send netlink ACK before setting connection in auditd_set - crypto: scompress - return proper error code for allocation failure - crypto: af_alg - Disallow multiple in-flight AIO requests - x86/mm/ident_map: Use gbpages only where full GB page should be mapped. - mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again - !5046 usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - sched: remove wait bookmarks - filemap: remove use of wait bookmarks - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - !4929 scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command - !4752 block: add check that partition length needs to be aligned with block size - !4735 blk-mq: fix IO hang from sbitmap wakeup race - !3864 nvme: sanitize metadata bounce buffer for reads - !4946 NFC: st21nfca: Fix memory leak in device probe and remove - !4999 CVE-2021-46984 - !4938 crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init - !4990 vt: fix memory overlapping when deleting chars in the buffer - !4978 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() - !5018 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit - !4992 bnxt_en: Fix RX consumer index logic in the error path. - !4997 Fixed CVE-2023-52504 - !4982 i2c: img-scb: fix reference leak when pm_runtime_get_sync fails - !4983 net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send - !4995 mpam/mpam_ctrlmon: update monitor config with its parent's ctrl_val - !4974 arm64/mpam: set default feedback of last_cmd_status interface as null string - !4975 arm64/mpam: support resctrl fs to show mounting option - !4973 arm64/mpam: Skip updates of unrelated ctrl type - ethernet:enic: Fix a use after free bug in enic_hard_start_xmit - !4996 soundwire: stream: fix memory leak in stream config error path - !4817 v2 io_uring: fix overflows checks in provide buffers - kyber: fix kabi broken in ->bio_merge() - kyber: fix out of bounds access when preempted - x86/alternatives: Disable KASAN in apply_alternatives() - soundwire: stream: fix memory leak in stream config error path - mpam/mpam_ctrlmon: update monitor config with its parent's ctrl_val - bnxt_en: Fix RX consumer index logic in the error path. - !4969 CVE-2021-46990 - vt: fix memory overlapping when deleting chars in the buffer - !4945 ieee802154: ca8210: Fix a potential UAF in ca8210_probe - !4944 perf/x86/lbr: Filter vsyscall addresses - !4967 i2c: xiic: fix reference leak when pm_runtime_get_sync fails - !4970 binder: fix async_free_space accounting for empty parcels - !4919 v2 HID: usbhid: fix info leak in hid_submit_ctrl - !4980 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg - net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send - i2c: img-scb: fix reference leak when pm_runtime_get_sync fails - net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg - !4949 CVE-2021-47024 - nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() - arm64/mpam: support resctrl fs to show mounting option - arm64/mpam: set default feedback of last_cmd_status interface as null string - arm64/mpam: Skip updates of unrelated ctrl type - binder: fix async_free_space accounting for empty parcels - powerpc/64s: Fix crashes when toggling entry flush barrier - i2c: xiic: fix reference leak when pm_runtime_get_sync fails - scsi: qedf: Add pointer checks in qedf_update_link_speed() - vsock/virtio: free queued packets when closing socket - vsock/virtio: discard packets only when socket is really closed - virtio_vsock: Fix race condition in virtio_transport_recv_pkt - NFC: st21nfca: Fix memory leak in device probe and remove - ieee802154: ca8210: Fix a potential UAF in ca8210_probe - perf/x86/lbr: Filter vsyscall addresses - crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init - scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command - HID: usbhid: fix info leak in hid_submit_ctrl - io_uring: fix overflows checks in provide buffers - block: add check that partition length needs to be aligned with block size - blk-mq: fix IO hang from sbitmap wakeup race - nvme: sanitize metadata bounce buffer for reads- !4947 powerpc/64s: Fix pte update for kernel memory on radix - !4932 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP - powerpc/64s: Fix pte update for kernel memory on radix - !4874 v2 net: openvswitch: limit the number of recursions from action sets - !4920 ARM: footbridge: remove personal server platform - !4887 KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU - !4918 v3 usb: hub: Guard against accesses to uninitialized BOS descriptors - !4936 i2c: validate user data in compat ioctl - i2c: validate user data in compat ioctl - !4898 platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios - !4879 KVM: Stop looking for coalesced MMIO zones if the bus is destroyed - !4869 Fix CVE-2021-46941 - phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP - !4904 i2c: sprd: fix reference leak when pm_runtime_get_sync fails - !4859 hfsplus: prevent corruption in shrinking truncate - !4877 i2c: Fix a potential use after free - ARM: footbridge: fix PCI interrupt mapping - !4888 v3 media: dvbdev: Fix memory leak in dvb_media_device_free() - usb: hub: Guard against accesses to uninitialized BOS descriptors - !4825 sched/membarrier: reduce the ability to hammer on sys_membarrier - !4882 Input: appletouch - initialize work before device registration - !4876 backport patch to fix CVE-2021-47077 - !4899 net: qualcomm: rmnet: fix global oob in rmnet_policy - i2c: sprd: fix reference leak when pm_runtime_get_sync fails - !4892 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security - !4881 i2c: cadence: fix reference leak when pm_runtime_get_sync fails - net: qualcomm: rmnet: fix global oob in rmnet_policy - platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios - !4865 Input: powermate - fix use-after-free in powermate_config_complete - !4860 apparmor: avoid crash when parsed profile name is empty - Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security - media: dvbdev: Fix memory leak in dvb_media_device_free() - KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU - Input: appletouch - initialize work before device registration - i2c: cadence: fix reference leak when pm_runtime_get_sync fails - KVM: Stop looking for coalesced MMIO zones if the bus is destroyed - i2c: Fix a potential use after free - ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook - net: openvswitch: limit the number of recursions from action sets - usb: dwc3: core: Do not perform GCTL_CORE_SOFTRESET during bootup - usb: dwc3: core: balance phy init and exit - usb: dwc3: core: Do core softreset when switch mode - Input: powermate - fix use-after-free in powermate_config_complete - !4856 bus: qcom: Put child node before return - apparmor: avoid crash when parsed profile name is empty - hfsplus: prevent corruption in shrinking truncate - bus: qcom: Put child node before return - !4828 Drivers: hv: vmbus: Use after free in __vmbus_open() - !4806 v2 media: pvrusb2: fix use after free on context disconnection - !4777 drivers/amd/pm: fix a use-after-free in kv_parse_power_table - !4819 v2 fix CVE-2020-36782 - !4833 openvswitch: fix stack OOB read while fragmenting IPv4 packets - !4677 f2fs: fix to avoid dirent corruption - !4804 CVE-2023-52451 backport to 4.19 v2 - openvswitch: fix stack OOB read while fragmenting IPv4 packets - Drivers: hv: vmbus: Use after free in __vmbus_open() - !4778 v3 Revert "memcg: fix a UAF problem in drain_all_stock()" - sched/membarrier: reduce the ability to hammer on sys_membarrier - i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails - PM: runtime: Add pm_runtime_resume_and_get to deal with usage counter - !4812 parisc: Clear stale IIR value on instruction access rights trap - parisc: Clear stale IIR value on instruction access rights trap - media: pvrusb2: fix use after free on context disconnection - powerpc/pseries/memhp: Fix access beyond end of drmem array - powerpc/pseries/memhotplug: Quieten some DLPAR operations - !4758 binder: signal epoll threads of self-work - !4746 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache - Revert "memcg: fix a UAF problem in drain_all_stock()" - drivers/amd/pm: fix a use-after-free in kv_parse_power_table - !4751 [sync] PR-4623: i2c: Optimized the value setting of maxwrite limit to fifo depth - 1 - !4707 mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - !4686 mlxsw: spectrum_acl_tcam: Fix stack corruption - binder: signal epoll threads of self-work - !4710 CVE-2021-46904 for openEuler1.0 - i2c: hisi: Add clearing tx aempty interrupt operation - i2c: hisi: Optimized the value setting of maxwrite limit to fifo depth - 1 - !4671 uio: Fix use-after-free in uio_open - KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache - net: hso: fix NULL-deref on disconnect regression - net: hso: fix null-ptr-deref during tty device unregistration - usb: hso: check for return value in hso_serial_common_create() - mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - mlxsw: spectrum_acl_tcam: Fix stack corruption - f2fs: fix to avoid dirent corruption - uio: Fix use-after-free in uio_open- !4701 v2 mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path - !4684 v3 CVE-2023-52435 - mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path - net: Fix compile warning in skb_segment() - net: prevent mss overflow in skb_segment() - !4643 f2fs: explicitly null-terminate the xattr list - f2fs: explicitly null-terminate the xattr list- !4601 v2 xen-netback: don't produce zero-size SKB frags - xen-netback: don't produce zero-size SKB frags - !4583 net: hns3: fix a bug and modify the hns3 driver version - net: hns3: update hns3 version to 24.2.1 - net: hns3: fix tm port shapping of fibre port is incorrect after driver initialization - !4552 v4 CVE-2023-52340 - !4526 v2 fs:/dcache.c: fix negative dentry flag warning in dentry_free - ipv6: fix kabi broken in struct dst_ops - ipv6: Document that max_size sysctl is deprecated - ipv6: remove max_size check inline with ipv4 - !4538 fix kprobe reenter bug - arm64/openeuler_defconfig: add not set config to fix compiling error - tracing/kprobes: Do the notrace functions check without kprobes on ftrace - fs:/dcache.c: fix negative dentry flag warning in dentry_free- !4454 netfilter: nf_tables: reject QUEUE/DROP verdict parameters - netfilter: nf_tables: reject QUEUE/DROP verdict parameters - !4411 v2 drm/atomic: Fix potential use-after-free in nonblocking commits - !4412 v3 Save and restore msg_namelen in sock_sendmsg - net: Save and restore msg_namelen in sock_sendmsg - net: prevent rewrite of msg_name in sock_sendmsg() - !4399 net: dst: Optimized route gc - drm/atomic: Fix potential use-after-free in nonblocking commits - !4392 linux-4.19.y inclusion - !4369 mm/filemap: avoid buffered read/write race to read inconsistent data - net/dst: use a smaller percpu_counter batch for dst entries accounting - net: add a route cache full diagnostic message - net: check dev->gso_max_size in gso_features_check() - net: warn if gso_type isn't set for a GSO SKB - mm: fix unmap_mapping_range high bits shift bug - x86/alternatives: Sync core before enabling interrupts - mm/filemap: avoid buffered read/write race to read inconsistent data - !4360 net/sched: sch_hfsc: upgrade 'rt' to 'sc' when it becomes a inner curve - !4320 io_uring/af_unix: disable sending io_uring over sockets - net/sched: sch_hfsc: upgrade 'rt' to 'sc' when it becomes a inner curve - io_uring/af_unix: disable sending io_uring over sockets- !4277 fs:/dcache.c: fix negative dentry limit not complete problem - !4288 net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv - !4299 smb: client: fix NULL deref in asn1_ber_decoder() - smb: client: fix NULL deref in asn1_ber_decoder() - net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv - !4228 fix spinlock already unlocked in inet_csk_reqsk_queue_add' bug - fs:/dcache.c: fix negative dentry limit not complete problem - !4235 nfc: nci: fix possible NULL pointer dereference in send_acknowledge() - !4255 drm/amdgpu: Fix potential fence use-after-free v2 - !4209 dhugetlb: skip unexpected migration - drm/amdgpu: Fix potential fence use-after-free v2 - !4231 crypto: hisilicon/qm - drop unnecessary IS_ENABLE(CONFIG_NUMA) check - nfc: nci: fix possible NULL pointer dereference in send_acknowledge() - crypto: hisilicon/qm - drop unnecessary IS_ENABLE(CONFIG_NUMA) check - ipv6: init the accept_queue's spinlocks in inet6_create - tcp: make sure init the accept_queue's spinlocks once - !4212 netlink: fix potential sleeping issue in mqueue_flush_file - netlink: fix potential sleeping issue in mqueue_flush_file - dhugetlb: skip unexpected migration - dhugetlb: introduce page_belong_to_dynamic_hugetlb() function - !3944 time: Handle negative seconds correctly in timespec64_to_ns() - !3943 timerqueue: Use rb_entry_safe() in timerqueue_getnext() - !3942 efi/x86: Map the entire EFI vendor string before copying it - !4166 sched/fair: Fix qos_timer deadlock when cpuhp offline - sched/fair: Fix qos_timer deadlock when cpuhp offline - !4137 sctp: fix potential deadlock on &net->sctp.addr_wq_lock - sctp: fix potential deadlock on &net->sctp.addr_wq_lock - time: Handle negative seconds correctly in timespec64_to_ns() - timerqueue: Use rb_entry_safe() in timerqueue_getnext() - efi/x86: Map the entire EFI vendor string before copying it- !4101 netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() - !2954 spi: phytium: fix phytium_spi_irq panic on boot - netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() - !4067 fix CVE-2022-48619 - !4080 rtnetlink: Reject negative ifindexes in RTM_NEWLINK - rtnetlink: Reject negative ifindexes in RTM_NEWLINK - Revert "rtnetlink: Reject negative ifindexes in RTM_NEWLINK" - !4065 smb: client: fix OOB in receive_encrypted_standard() - !4021 netfilter: nf_tables: Reject tables of unsupported family - Input: add bounds checking to input_set_capability() - smb: client: fix OOB in receive_encrypted_standard() - !4039 crypto: hisilicon/qm: fix several issues - !4025 crypto: hisilicon - replace 'smp_processor_id' with the raw version of the macro - !3980 vhost: use kzalloc() instead of kmalloc() followed by memset() - crypto: hisilicon/qm: fix several issues - crypto: hisilicon - replace 'smp_processor_id' with the raw version of the macro - netfilter: nf_tables: Reject tables of unsupported family - vhost: use kzalloc() instead of kmalloc() followed by memset() - spi: phytium: fix phytium_spi_irq panic on boot- !4006 crypto: hisilicon/sec2: fix memory use-after-free issue - crypto: hisilicon/sec2: fix memory use-after-free issue - !3923 net: bridge: multicast: fix UAF of net_bridge - net: bridge: multicast: fix UAF of net_bridge- !3768 iomap: add support to track dirty state of sub pages - !3845 netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() - !3847 nvmet: nul-terminate the NQNs passed in the connect command - !3863 linux-4.19.y inclusion(4.19.299..4.19.303) part2 - team: Fix use-after-free when an option instance allocation fails - packet: Move reference count in packet_sock to atomic_long_t - tcp: do not accept ACK of bytes we never sent - ipv4: ip_gre: Avoid skb_pull() failure in ipgre_xmit() - ipv6: fix potential NULL deref in fib6_add() - ipv4: Correct/silence an endian warning in __ip_do_redirect - net: sched: fix race condition in qdisc_graft() - macvlan: Don't propagate promisc change to lower dev in passthru - ppp: limit MRU to 64K - tty: Fix uninit-value access in ppp_sync_receive() - net: annotate data-races around sk->sk_dst_pending_confirm - net: annotate data-races around sk->sk_tx_queue_mapping - !3862 linux-4.19.y inclusion(4.19.299..4.19.303) part1 - ring-buffer: Fix memory leak of free page - arm64: mm: Always make sw-dirty PTEs hw-dirty in pte_modify - asm-generic: qspinlock: fix queued_spin_value_unlocked() implementation - Revert "PCI: acpiphp: Reassign resources on bridge if necessary" - x86/CPU/AMD: Check vendor in the AMD microcode callback - genirq/generic_chip: Make irq_remove_generic_chip() irqdomain aware - audit: don't WARN_ON_ONCE(!current->mm) in audit_exe_compare() - audit: don't take task_lock() in audit_exe_compare() code path - nvmet: nul-terminate the NQNs passed in the connect command - netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() - !3823 [sync] PR-3822: ext4: fix kernel BUG in 'ext4_write_inline_data_end()' - ext4: fix kernel BUG in 'ext4_write_inline_data_end()' - !3803 net/sched: cbs: Fix not adding cbs instance to list - net/sched: cbs: Fix not adding cbs instance to list - !3770 ext4: fix uninitialized ratelimit_state->lock access in __ext4_fill_super() - ext4: fix uninitialized ratelimit_state->lock access in __ext4_fill_super() - iomap: add support to track dirty state of sub pages - !3757 Fix bugs from LTS patches - devcoredump: Send uevent once devcd is ready - devcoredump : Serialize devcd_del work - driver core: Release all resources during unbind before updating device links - !3716 appletalk: Fix Use-After-Free in atalk_ioctl - !3667 net/rose: Fix Use-After-Free in rose_ioctl - appletalk: Fix Use-After-Free in atalk_ioctl - net/rose: Fix Use-After-Free in rose_ioctl- !3660 atm: Fix Use-After-Free in do_vcc_ioctl - !3687 Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg - Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg - !3672 smb: client: fix potential OOB in smb2_dump_detail() - !3671 smb: client: fix OOB in smbCalcSize() - !3627 jbd2: fix soft lockup in journal_finish_inode_data_buffers() - !3189 fs: don't audit the capability check in simple_xattr_list() - smb: client: fix potential OOB in smb2_dump_detail() - smb: client: fix OOB in smbCalcSize() - !3555 net: check vlan filter feature in vlan_vids_add_by_dev() and vlan_vids_del_by_dev() - atm: Fix Use-After-Free in do_vcc_ioctl - !3592 CVE-2023-35827 patchset - !3449 Fix data-races around - jbd2: fix soft lockup in journal_finish_inode_data_buffers() - ravb: Fix races between ravb_tx_timeout_work() and net related ops - ravb: Fix use-after-free issue in ravb_tx_timeout_work() - net: check vlan filter feature in vlan_vids_add_by_dev() and vlan_vids_del_by_dev() - ip: Fix data-races around sysctl_ip_no_pmtu_disc. - ip: Fix data-races around sysctl_ip_fwd_update_priority. - fs: don't audit the capability check in simple_xattr_list()- !3607 Fix CVE-2023-6546 - !3606 perf/core: Fix CVE-2023-6931 - tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux - tty: n_gsm: fix restart handling via CLD command - perf: Fix perf_event_validate_size() lockdep splat - perf: Fix perf_event_validate_size() - !3417 SCSI: hisi_raid: support SPxxx serial RAID/HBA controllers - !3531 Fix kernel panic occurs during ISO installation on the 20.03 SP3/SP4 - i2c: hisi: Only handle the interrupt of the driver's transfer - i2c: hisi: Only use the completion interrupt to finish the transfer - i2c: hisi: Avoid redundant interrupts - !3483 net: Remove acked SYN flag from packet in the transmit queue correctly - net: Remove acked SYN flag from packet in the transmit queue correctly - SCSI: hisi_raid: support SPxxx serial RAID/HBA controllers- !3426 Revert "hrtimers: Push pending hrtimers away from outgoing CPU earlier" - Revert "hrtimers: Push pending hrtimers away from outgoing CPU earlier" - Revert "cpu/hotplug: fix kabi breakage in enum cpuhp_state"- !3347 tun: avoid double free in tun_free_netdev - tun: avoid double free in tun_free_netdev - !3239 net: hns: fix fake link up - !3113 KVM: arm64: limit PMU version to PMUv3 for ARMv8.1 - !3281 LTS patch backport - !3122 nvme: retain split access workaround for capability reads - !3262 icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. - net: fix kabi broken in struct netns_xfrm - xfrm: fix a data-race in xfrm_gen_index() - !3276 linux-4.19.y inclusion - !3263 workqueue: Override implicit ordered attribute in workqueue_apply_unbound_cpumask() - !3267 x86/cpu: Fix AMD erratum #1485 on Zen4-based CPUs - dccp/tcp: Call security_inet_conn_request() after setting IPv6 addresses. - can: dev: can_restart(): fix race condition between controller restart and netif_carrier_on() - can: dev: can_restart(): don't crash kernel if carrier is OK - can: dev: move driver related infrastructure into separate subdir - ipv6: avoid atomic fragment on GSO packets - tcp_metrics: do not create an entry from tcp_init_metrics() - tcp_metrics: properly set tp->snd_ssthresh in tcp_init_metrics() - tcp_metrics: add missing barriers on delete - tcp: tsq: relax tcp_small_queue_check() when rtx queue contains a single skb - tcp: fix excessive TLP and RACK timeouts from HZ rounding - genirq/matrix: Exclude managed interrupts in irq_matrix_allocated() - ACPI: sysfs: Fix create_pnp_modalias() and create_of_modalias() - ACPI: irq: Fix incorrect return value in acpi_register_gsi() - ext4: move 'ix' sanity check to corrent position - vfs: fix readahead(2) on block devices - overlayfs: set ctime when setting mtime and atime - quota: Fix slow quotaoff - mcb: remove is_added flag from mcb_device struct - sched,idle,rcu: Push rcu_idle deeper into the idle path - cgroup: Remove duplicates in cgroup v1 tasks file - x86/cpu: Fix AMD erratum #1485 on Zen4-based CPUs - workqueue: Override implicit ordered attribute in workqueue_apply_unbound_cpumask() - icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. - net: hns: update hns version to 23.12.1 - net: hns: fix fake link up on xge port - !3021 fix CFS bandwidth vs. hrtimer self deadlock - !3202 regmap: fix NULL deref on lookup - regmap: fix NULL deref on lookup - KVM: arm64: limit PMU version to PMUv3 for ARMv8.1 - arm64: cpufeature: Extract capped perfmon fields - nvme: retain split access workaround for capability reads - cpu/hotplug: fix kabi breakage in enum cpuhp_state - hrtimers: Push pending hrtimers away from outgoing CPU earlier- !3158 mm: don't let userspace spam allocations warnings - mm: don't let userspace spam allocations warnings - !2781 cpufreq: Abort show()/store() for half-initialized policies - !3118 sched: smart grid: check is active in affinity timer - sched: smart grid: check is active in affinity timer - !2977 Backport crypto bugfix - !3071 perf/core: Fix perf_mmap fail when CONFIG_PERF_USE_VMALLOC enabled - perf/core: Fix perf_mmap fail when CONFIG_PERF_USE_VMALLOC enabled - !3038 ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - !3031 x86/mce/amd: Publish the bank pointer only after setup has succeeded - !3030 x86/mce/inject: Fix a wrong assignment of i_mce.status - ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - x86/mce/amd: Publish the bank pointer only after setup has succeeded - x86/mce/inject: Fix a wrong assignment of i_mce.status - crypto: fix kabi broken in struct crypto_instance - crypto: api - Use work queue in crypto_destroy_instance - cpufreq: make interface functions and lock holding state clear - cpufreq: Abort show()/store() for half-initialized policies- !3000 [openEuler-1.0-LTS] add Phytium drivers CONFIG - arm64: config: add config for Phytium drivers - !2908 mm/migrate.c: fix potential indeterminate pte entry in migrate_vma_insert_page() - !2869 mm, memory_hotplug: update pcp lists everytime onlining a memory block - !2805 sched/fair: Refill bandwidth before scaling - !2804 signal: Properly set TRACE_SIGNAL_LOSE_INFO in __send_signal - !2960 Add script to check & update openeuler_defconfig - config: update openeuler_defconfig for arm64 - config: update openeuler_defconfig for x86 - kconfig: Add script to check & update openeuler_defconfig - kbuild: ensure full rebuild when the compiler is updated - mm/migrate.c: fix potential indeterminate pte entry in migrate_vma_insert_page() - mm, memory_hotplug: update pcp lists everytime onlining a memory block - sched/fair: Refill bandwidth before scaling - signal: Properly set TRACE_SIGNAL_LOSE_INFO in __send_signal- !1935 [openEuler-1.0-LTS] Add Phytium optee driver support - !2895 netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one - !2873 Fix SAS start error with maxcpus=1 - genirq: Take the proposed affinity at face value if force==true - optee: add phytium optee driver - optee: model OP-TEE as a platform device/driver - netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one - irqchip/gic-v3: Always trust the managed affinity provided by the core code - genirq: Always limit the affinity to online CPUs - genirq/msi: Shutdown managed interrupts with unsatifiable affinities - !2508 [openEuler-1.0-LTS] jpeg: Add a Phytium JPEG Engine driver - !2522 [openEuler-1.0-LTS] Add support for Phytium SoC RNG - !2877 Revert "tcp: fix delayed ACKs for MSS boundary condition" - !2693 [openEuler-1.0-LTS] Add support for Phytium QSPI - !2402 [openEuler-1.0-LTS] Add Phytium w1 driver support - !2403 [openEuler-1.0-LTS] Add Phytium adc driver support - !1874 [openEuler-1.0-LTS] Add Phytium mailbox driver support - !2024 [openEuler-1.0-LTS] Add Phytium RTC driver support - !2682 [openEuler-1.0-LTS] Add support for Phytium MMC - !2671 [openEuler-1.0-LTS] phytium dwmac net driver - !2676 [openEuler-1.0-LTS] Add Phytium gpio driver support - !2604 [openEuler-1.0-LTS] Add support for Phytium SPI - !2540 [openEuler-1.0-LTS] Driver for the Phytium keypad port. - Revert "tcp: fix delayed ACKs for MSS boundary condition" - hwrng: Add support for Phytium SoC RNG - jpeg: Add a Phytium JPEG Engine driver - !2818 Fix memleak in disassociate_ctty() - !2810 drivers/gmjstcm: import CVE-2011-1160 CVE-2011-1162 fixes to tcm.c - drivers/gmjstcm: import CVE-2011-1160 CVE-2011-1162 fixes to tcm.c - rtc: add phytium rtc driver document - rtc: add rtc drivers for Phytium SOCs - gpio: add phytium gpio driver - dwmac:add phytium dwmac driver - mailbox:add phytium mailbox driver document - mailbox: add phytium mailbox driver - mmc: add phytium mmc driver DT binding docs - mmc: add support for Phytium MMC - tty: tty_jobctrl: fix pid memleak in disassociate_ctty() - Revert "tty: fix pid memleak in disassociate_ctty()" - spi: add phytium spi driver DT binding docs - spi: add phytium spi support - qspi: add phytium qspi driver DT binding docs - qspi: add support for Phytium QSPI controller - gpio: add phytium gpio driver document - dwmac:add phytium dwmac driver DT binding docs - adc: add phytium adc driver - adc: add phytium adc driver document - w1: add phytium w1 driver - w1: add phytium w1 driver document - KEYPAD: Driver for the Phytium keypad port. - KEYPAD: Document for the Phytium keypad port.- !2803 drivers/gmjstcm: fix a dev_err() call in spi tcm device probe - !2841 drm/qxl: fix UAF on handle creation - !2785 [openEuler-1.0-LTS] SCSI: SSSRAID: Support 3SNIC 3S5XX serial RAID/HBA controllers - drm/qxl: fix UAF on handle creation - !2809 bugfix for CVE-2022-45884 - media: dvb-core: Fix use-after-free due to race at dvb_register_device() - media: media/dvb: Use kmemdup rather than duplicating its implementation - media: dvbdev: Fix memleak in dvb_register_device - drivers/gmjstcm: fix a dev_err() call in spi tcm device probe - SCSI: SSSRAID: Support 3SNIC 3S5XX serial RAID/HBA controllers- !2793 handle uninitialized numa nodes gracefully. - !2789 linux-4.19.y inclusion - arch/x86/mm/numa: Do not initialize nodes twice - mm: handle uninitialized numa nodes gracefully - mm, memory_hotplug: make arch_alloc_nodedata independent on CONFIG_MEMORY_HOTPLUG - !2713 Fix netfilter conntrack - !2651 sched/membarrier: fix missing local execution of ipi_sync_rq_state() - tcp: fix delayed ACKs for MSS boundary condition - tcp: fix quick-ack counting to count actual ACKs of new data - ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() - team: fix null-ptr-deref when team device type is changed - af_unix: Fix data race around sk->sk_err. - af_unix: Fix data-races around sk->sk_shutdown. - af_unix: Fix data-race around unix_tot_inflight. - af_unix: Fix data-races around user->unix_inflight. - net: ipv6/addrconf: avoid integer underflow in ipv6_create_tempaddr - net: read sk->sk_family once in sk_mc_loop() - skbuff: skb_segment, Call zero copy functions before using skbuff frags - igmp: limit igmpv3_newpack() packet size to IP_MAX_MTU - tcp: tcp_enter_quickack_mode() should be static - net: Avoid address overwrite in kernel_connect - md/raid1: fix error: ISO C90 forbids mixed declarations - md: raid1: fix potential OOB in raid1_remove_disk() - ACPICA: Add AML_NO_OPERAND_RESOLVE flag to Timer - autofs: fix memory leak of waitqueues in autofs_catatonic_mode - pstore/ram: Check start of empty przs during init - scsi: iscsi: Add strlen() check in iscsi_if_set{_host}_param() - fs: Fix error checking for d_hash_and_lookup() - !2767 crypto: hisilicon/qm - alloc reserve buffer to set and get xqc - crypto: hisilicon/qm - alloc reserve buffer to set and get xqc - !2760 fs: lockd: avoid possible wrong NULL parameter - !2164 Net: ethernet: Support 3snic 3s9xx network card - !2605 add CONFIG_NGBE for Wangxun 1G NIC for aarch64 - !1873 [openEuler-1.0-LTS] Add Phytium hda driver support - !2564 [openEuler-1.0-LTS] Add Phytium i2c driver support - !2636 kernel/trace: Fix do not unregister tracepoints when register sched_migrate_task fail - fs: lockd: avoid possible wrong NULL parameter - !2754 Sync LTS patches for openEuler-1.0-LTS - !2758 crypto: hisilicon - qm obtain the mailbox config at one time - crypto: hisilicon - qm obtain the mailbox config at one time - regmap: rbtree: Fix wrong register marked as in-cache when creating new node - regmap: rbtree: Use alloc_flags for memory allocations - !2730 PCI/IOV: Add pci_sriov_numvfs_lock to support enable pci sriov concurrently - !2722 net: sched: sch_qfq: Use non-work-conserving warning handler - !2650 sched/cpuacct: Fix charge cpuacct.usage_sys - PCI/IOV: Add pci_sriov_numvfs_lock to support enable pci sriov concurrently - net: sched: sch_qfq: Use non-work-conserving warning handler - arm64: config: add CONFIG_NGBE for Wangxun 1G NIC - netfilter: conntrack: fix infinite loop on rmmod - netfilter: conntrack: do not auto-delete clash entries on reply - netfilter: conntrack: allow insertion of clashing entries - netfilter: conntrack: split resolve_clash function - netfilter: conntrack: place confirm-bit setting in a helper - netfilter: conntrack: remove two args from resolve_clash - netfilter: conntrack: tell compiler to not inline nf_ct_resolve_clash - sched/membarrier: fix missing local execution of ipi_sync_rq_state() - sched/cpuacct: Fix charge cpuacct.usage_sys - kernel/trace: Fix do not unregister tracepoints when register sched_migrate_task fail - hda: add phytium hda driver - hda: add phytium hda driver document - i2c: add Phytium i2c driver - i2c: add phytium i2c driver DT binding docs - Net: ethernet: Support 3snic 3s9xx network card- !2609 Fix CVE-2023-5717 - !2588 [openEuler-1.0-LTS] Add Phytium Display Engine support. - !2627 ubi: Refuse attaching if mtd's erasesize is 0 - !2473 Revert irq reentrant warm log - !1860 irqchip/gicv3-its: Add workaround for hip09 ITS erratum 162100801 - !2551 Avoid spin or livelock during panic - !2314 can: raw: add missing refcount for memory leak fix - !2396 efi: use 32-bit alignment for efi_guid_t literals - ubi: Refuse attaching if mtd's erasesize is 0 - !2446 audit: fix possible soft lockup in __audit_inode_child() - !2614 CVE-2022-44033 - DRM: Phytium display DRM document - DRM: Phytium display DRM driver - ASoC: hdmi-codec: Add an op to set callback function for plug event - char: pcmcia: remove all the drivers - tty: ipwireless: move Kconfig entry to tty - !1974 CAN driver for phytium CPUs - perf: Fix kabi breakage in struct perf_event - perf: Disallow mis-matched inherited group reads - !2577 media: dvb-core: Fix use-after-free due to race condition at dvb_ca_en50221 - can: can controller driver for phytium CPUs - !2550 xen/events: replace evtchn_rwlock with RCU - media: dvb-core: Fix use-after-free due to race condition at dvb_ca_en50221 - !2557 Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO - Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO - printk: Drop console_sem during panic - printk: Avoid livelock with heavy printk during panic - printk: disable optimistic spin during panic - printk: Add panic_in_progress helper - xen/events: replace evtchn_rwlock with RCU - irqchip/gicv3-its: Add workaround for hip09 ITS erratum 162100801 - irqchip/gic-v3-its: Make is_v4 use a TYPER copy - Revert "genirq: Introduce warn log when irq be reentrant" - Revert "genirq: add printk safe in irq context" - audit: fix possible soft lockup in __audit_inode_child() - can: add phytium can driver document - efi: use 32-bit alignment for efi_guid_t literals - can: raw: add missing refcount for memory leak fix- !2334 ktask: add memory leak handling for ktask_works in ktask_init() - !2333 ktask: add null-pointer checks for ktask_works in ktask_init() - !2453 igb: set max size RX buffer when store bad packet is enabled - ktask: add memory leak handling for ktask_works in ktask_init() - ktask: add null-pointer checks for ktask_works in ktask_init() - !2441 netfilter: xt_u32: validate user space input - !2435 USB: ene_usb6250: Allocate enough memory for full object - igb: set max size RX buffer when store bad packet is enabled - netfilter: xt_u32: validate user space input - USB: ene_usb6250: Allocate enough memory for full object- !2466 x86/microcode/AMD: Make stub function static inline - !2461 perf/core: Fix reentry problem in perf_output_read_group() - x86/microcode/AMD: Make stub function static inline - perf/core: Fix reentry problem in perf_output_read_group() - !2409 netfilter: nfnetlink_osf: avoid OOB read - !2330 Add a check of uvhub_mask in init_per_cpu() - x86/platform/uv: Fix missing checks of kcalloc() return values - x86/platform/UV: Replace kmalloc() and memset() with k[cz]alloc() calls - !2412 netfilter: xt_sctp: validate the flag_info count - !2419 ext4: fix rec_len verify error - ext4: fix rec_len verify error - netfilter: xt_sctp: validate the flag_info count - netfilter: nfnetlink_osf: avoid OOB read - !2360 scsi: hisi_sas: Handle the NCQ error returned by D2H frame - scsi: hisi_sas: Handle the NCQ error returned by D2H frame- !2322 net/sched: Retire rsvp classifier - !2346 RDMA/irdma: Prevent zero-length STAG registration - !2349 net: ipv4: fix one memleak in __inet_del_ifa() - !2329 ipv4: fix null-deref in ipv4_link_failure - !2342 linux-4.19.y inclusion - !2345 Backport lts bugfix patch for macvlan - !2344 PCI: acpiphp: linux-4.19.y bugfixes backport - !2341 quota: fix warning in dqgrab() - net: ipv4: fix one memleak in __inet_del_ifa() - !1706 cgroup: fix missing cpus_read_{lock,unlock}() in cgroup_transfer_tasks() - rtnetlink: Reject negative ifindexes in RTM_NEWLINK - netfilter: nf_queue: fix socket leak - net/sched: fix a qdisc modification with ambiguous command request - net: xfrm: Amend XFRMA_SEC_CTX nla_policy structure - net: fix the RTO timer retransmitting skb every 1ms if linear option is enabled - sock: annotate data-races around prot->memory_pressure - !2337 mm: memory-failure: use rcu lock instead of tasklist_lock when collect_procs() - RDMA/irdma: Prevent zero-length STAG registration - bonding: fix macvlan over alb bond support - net: remove bond_slave_has_mac_rcu() - PCI: acpiphp: Use pci_assign_unassigned_bridge_resources() only for non-root bus - PCI: acpiphp: Reassign resources on bridge if necessary - sock: Fix misuse of sk_under_memory_pressure() - team: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves - ip_vti: fix potential slab-use-after-free in decode_session6 - net: af_key: fix sadb_x_filter validation - net: xfrm: Fix xfrm_address_filter OOB read - serial: 8250: Fix oops for port->pm on uart_change_pm() - quota: Properly disable quotas when add_dquot_ref() fails - quota: fix warning in dqgrab() - !2335 x86/topology: Fix erroneous smp_num_siblings on Intel Hybrid platforms - mm: memory-failure: use rcu lock instead of tasklist_lock when collect_procs() - x86/topology: Fix erroneous smp_num_siblings on Intel Hybrid platforms - ipv4: fix null-deref in ipv4_link_failure - net/sched: Retire rsvp classifier - !2301 xfrm6: fix inet6_dev refcount underflow problem - !2303 cifs: Release folio lock on fscache read hit. - cifs: Release folio lock on fscache read hit. - !2294 netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c - xfrm6: fix inet6_dev refcount underflow problem - netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c - !2276 cpuidle: Fix kobject memory leaks in error paths - cpuidle: Fix kobject memory leaks in error paths - cgroup: fix missing cpus_read_{lock,unlock}() in cgroup_transfer_tasks()- !2274 cec-api: prevent leaking memory through hole in structure - !2281 sdei_watchdog: Avoid exception during sdei handler - sdei_watchdog: Avoid exception during sdei handler - cec-api: prevent leaking memory through hole in structure - !2262 crypto: hisilicon - reset before init the device - crypto: hisilicon - reset before init the device - !2212 [sync] PR-2210: jbd2: Fix potential data lost in recovering journal raced with synchronizing fs bdev - jbd2: Fix potential data lost in recovering journal raced with synchronizing fs bdev- !2168 net: sched: sch_qfq: Fix UAF in qfq_dequeue() - !2226 crypto: hisilicon/qm - prevent soft lockup in qm_poll_qp()'s loop - !2225 media: ttusb-dec: fix memory leak in ttusb_dec_exit_dvb() - crypto: hisilicon/qm - prevent soft lockup in qm_poll_qp()'s loop - media: ttusb-dec: fix memory leak in ttusb_dec_exit_dvb() - !2177 sched/qos: Fix warning in CPU hotplug scenarios - !2207 crypto:hisilicon/qm - cache write back before flr and poweroff - !2206 Fix booting failure on arm64 - crypto:hisilicon/qm - cache write back before flr and poweroff - !2205 crypto:hisilicon/sec - modify hw endian config - Revert "efi: Make efi_rts_work accessible to efi page fault handler" - Revert "efi/x86: Handle page faults occurring while running EFI runtime services" - Revert "efi: Fix debugobjects warning on 'efi_rts_work'" - Revert "efi: Fix build error due to enum collision between efi.h and ima.h" - Revert "x86/efi: fix a -Wtype-limits compilation warning" - Revert "arm64: efi: Restore register x18 if it was corrupted" - Revert "efi: fix userspace infinite retry read efivars after EFI runtime services page fault" - Revert "arm64: efi: Execute runtime services from a dedicated stack" - Revert "arm64: efi: Recover from synchronous exceptions occurring in firmware" - Revert "efi: rt-wrapper: Add missing include" - Revert "arm64: efi: Make efi_rt_lock a raw_spinlock" - crypto:hisilicon/sec - modify hw endian config - !2118 Compiler: Backport value profile support to openEuler 20.03 LTS SP3. - GCOV: Add value profile support for kernel. - sched/qos: Fix warning in CPU hotplug scenarios - !2154 netfilter: nftables: exthdr: fix 4-byte stack OOB write - net: sched: sch_qfq: Fix UAF in qfq_dequeue() - !2140 io_uring: ensure IOPOLL locks around deferred work - !2056 i2c: hisi: Add gpio bus recovery support - netfilter: nftables: exthdr: fix 4-byte stack OOB write - !2082 fix CVE-2023-20588 - io_uring: ensure IOPOLL locks around deferred work - i2c: hisi: Add gpio bus recovery support - x86/CPU/AMD: Fix the DIV(0) initial fix attempt - x86/CPU/AMD: Do not leak quotient data after a division by 0- !2084 af_unix: Fix null-ptr-deref in unix_stream_sendpage(). - !2071 【openEuler-1.0-LTS】net: openvswitch: don't send internal clone attribute to the userspace - net: openvswitch: don't send internal clone attribute to the userspace. - !2089 net/sched: sch_hfsc: Ensure inner classes have fsc curve - !335 efi: fix crash due to EFI runtime service page faults - net/sched: sch_hfsc: Ensure inner classes have fsc curve - !2088 [openEuler-1.0-LTS] bugfixes of scsi - scsi: fix kabi broken in struct Scsi_Host - scsi: don't fail if hostt->module is NULL - scsi: scsi_device_gets returns failure when the module is NULL. - af_unix: Fix null-ptr-deref in unix_stream_sendpage(). - !2069 x86/speculation: Add Gather Data Sampling mitigation - !1692 Mainline bugfix patches backport 4.19 - !2075 x86/cpu/amd: Enable Zenbleed fix for AMD Custom APU 0405 - !2079 [openEuler-1.0-LTS] stable inclusion from linux-4.19.y - scsi: core: raid_class: Remove raid_component_add() - scsi: core: Fix possible memory leak if device_add() fails - scsi: core: Fix legacy /proc parsing buffer overflow - serial: 8250_dw: Preserve original value of DLF register - serial: 8250_dw: split Synopsys DesignWare 8250 common functions - nbd: Add the maximum limit of allocated index in nbd_dev_add - integrity: Fix possible multiple allocation in integrity_inode_get() - !2070 net bugfixes inclusion from linux-4.19.y - drivers: net: prevent tun_build_skb() to exceed the packet size limit - net/packet: annotate data-races around tp->status - tcp_metrics: fix data-race in tcpm_suck_dst() vs fastopen - tcp_metrics: annotate data-races around tm->tcpm_net - tcp_metrics: annotate data-races around tm->tcpm_vals[] - tcp_metrics: annotate data-races around tm->tcpm_lock - tcp_metrics: annotate data-races around tm->tcpm_stamp - tcp_metrics: fix addr_same() helper - virtio-net: set queues after driver_ok - virtio-net: fix race between set queues and probe - team: reset team's flags when down link is P2P device - bonding: reset bond's flags when down link is P2P device - tcp: annotate data-races around fastopenq.max_qlen - tcp: annotate data-races around tp->notsent_lowat - tcp: annotate data-races around rskq_defer_accept - tcp: annotate data-races around tp->linger2 - net: Replace the limit of TCP_LINGER2 with TCP_FIN_TIMEOUT_MAX - SUNRPC: Fix UAF in svc_tcp_listen_data_ready() - net/sched: make psched_mtu() RTNL-less safe - udp6: fix udp6_ehashfn() typo - icmp6: Fix null-ptr-deref of ip6_null_entry->rt6i_idev in icmp6_dev(). - vrf: Increment Icmp6InMsgs on the original netdev - netfilter: conntrack: Avoid nf_ct_helper_hash uses after free - tcp: annotate data races in __tcp_oow_rate_limited() - net: bridge: keep ports without IFF_UNICAST_FLT in BR_PROMISC mode - ipvlan: Fix return value of ipvlan_queue_xmit() - netlink: do not hard code device address lenth in fdb dumps - netlink: Add __sock_i_ino() for __netlink_diag_dump(). - x86/cpu/amd: Enable Zenbleed fix for AMD Custom APU 0405 - !1987 tracing: Fix race issue between cpu buffer write and swap - !2067 memcg: add refcnt for pcpu stock to avoid UAF problem in drain_all_stock() - netlink: fix potential deadlock in netlink_set_err() - x86/speculation: Mark all Skylake CPUs as vulnerable to GDS - x86: Move gds_ucode_mitigated() declaration to header - Documentation/x86: Fix backwards on/off logic about YMM support - KVM: Add GDS_NO support to KVM - x86/speculation: Add Kconfig option for GDS - x86/speculation: Add force option to GDS mitigation - x86/speculation: Add cpu_show_gds() prototype - x86/speculation: Add Gather Data Sampling mitigation - !2063 cpu/hotplug: Prevent self deadlock on CPU hot-unplug - !2046 use precise io accounting apis - memcg: add refcnt for pcpu stock to avoid UAF problem in drain_all_stock() - cpu/hotplug: Prevent self deadlock on CPU hot-unplug - !2050 memcg: fix a UAF problem in drain_all_stock() - !1976 fix race between setxattr and write back - memcg: fix a UAF problem in drain_all_stock() - dm: switch to precise io accounting - block: add precise io accouting apis - tracing: Fix race issue between cpu buffer write and swap - ext2: dump current reservation window info - ext2: fix race between setxattr and write back - ext2: introduce flag argument for ext2_new_blocks() - ext2: remove ext2_new_block() - arm64: efi: Make efi_rt_lock a raw_spinlock - efi: rt-wrapper: Add missing include - arm64: efi: Recover from synchronous exceptions occurring in firmware - arm64: efi: Execute runtime services from a dedicated stack - efi: fix userspace infinite retry read efivars after EFI runtime services page fault - arm64: efi: Restore register x18 if it was corrupted - x86/efi: fix a -Wtype-limits compilation warning - efi: Fix build error due to enum collision between efi.h and ima.h - efi: Fix debugobjects warning on 'efi_rts_work' - efi/x86: Handle page faults occurring while running EFI runtime services - efi: Make efi_rts_work accessible to efi page fault handler - lib/genalloc.c: change return type to unsigned long for bitmap_set_ll - iommu/amd: Restore IRTE.RemapEn bit after programming IRTE - iommu/amd: Use cmpxchg_double() when updating 128-bit IRTE- !1964 crypto:padata: Fix return err for PADATA_RESET - !1955 fuse: revalidate: don't invalidate if interrupted - !1973 sched/smt: fix unbalance sched_smt_present dec/inc - sched/smt: fix unbalance sched_smt_present dec/inc - !1906 tracing: Fix memleak due to race between current_tracer and trace - !1958 block: don't get gendisk if queue has not been registered - crypto:padata: Fix return err for PADATA_RESET - block: don't get gendisk if queue has not been registered - fuse: revalidate: don't invalidate if interrupted - !1902 tracing: Fix cpu buffers unavailable due to 'record_disabled' missed - tracing: Fix memleak due to race between current_tracer and trace - tracing: Fix cpu buffers unavailable due to 'record_disabled' missed- !1863 nbd: pass nbd_sock to nbd_read_reply() instead of index - !1638 [openEuler-1.0-LTS] Add support for Hygon model 4h~6h processors - !1884 ipvlan: Fix a reference count leak warning in ipvlan_ns_exit() - !1882 ip6mr: Fix skb_under_panic in ip6mr_cache_report() - ipvlan: Fix a reference count leak warning in ipvlan_ns_exit() - ip6mr: Fix skb_under_panic in ip6mr_cache_report() - EDAC/amd64: Add support for Hygon family 18h model 6h - x86/amd_nb: Add support for Hygon family 18h model 6h - hwmon/k10temp: Add support for Hygon family 18h model 5h - EDAC/amd64: Add support for Hygon family 18h model 5h - x86/amd_nb: Add support for Hygon family 18h model 5h - x86/cpu: Get LLC ID for Hygon family 18h model 5h - i2c-piix4: Remove the IMC detecting for Hygon SMBus - hwmon/k10temp: Add support for Hygon family 18h model 4h - EDAC/mce_amd: Use struct cpuinfo_x86.logical_die_id for Hygon NodeId - EDAC/amd64: Adjust address translation for Hygon family 18h model 4h - EDAC/amd64: Add support for Hygon family 18h model 4h - EDAC/amd64: Get UMC channel from the 6th nibble for Hygon - iommu/hygon: Add support for Hygon family 18h model 4h IOAPIC - x86/amd_nb: Add northbridge support for Hygon family 18h model 4h - x86/amd_nb: Add Hygon family 18h model 4h PCI IDs - x86/microcode/hygon: Add microcode loading support for Hygon processors - x86/cpu/hygon: Modify the CPU topology deriving method for Hygon - x86/MCE/AMD: Use an u64 for bank_map - EDAC/mc_sysfs: Increase legacy channel support to 12 - EDAC/amd64: Add new register offset support and related changes - EDAC/amd64: Set memory type per DIMM - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - EDAC/amd64: Add support for AMD Family 19h Models 10h-1Fh and A0h-AFh - EDAC: Add RDDR5 and LRDDR5 memory types - hwmon: (k10temp) Remove unused definitions - hwmon: (k10temp) Remove residues of current and voltage - hwmon: (k10temp) Rework the temperature offset calculation - hwmon: (k10temp) Don't show Tdie for all Zen/Zen2/Zen3 CPU/APU - x86/cstate: Allow ACPI C1 FFH MWAIT use on Hygon systems - x86/topology: Make __max_die_per_package available unconditionally - x86/cpu/amd: Set __max_die_per_package on AMD - hwmon: (k10temp) Remove support for displaying voltage and current on Zen CPUs - EDAC: Add DDR5 new memory type - x86/topology: Set cpu_die_id only if DIE_TYPE found - EDAC/mce_amd: Use struct cpuinfo_x86.cpu_die_id for AMD NodeId - x86/CPU/AMD: Save AMD NodeId as cpu_die_id - EDAC/amd64: Set proper family type for Family 19h Models 20h-2Fh - hwmon: (k10temp) Add support for Zen3 CPUs - x86/mce: Increase maximum number of banks to 64 - hwmon: (k10temp) Define SVI telemetry and current factors for Zen2 CPUs - hwmon: (k10temp) Create common functions and macros for Zen CPU families - i2c: designware: Add device HID for Hygon I2C controller - hwmon: (k10temp) make some symbols static - hwmon: (k10temp) Reorganize and simplify temperature support detection - hwmon: (k10temp) Swap Tdie and Tctl on Family 17h CPUs - hwmon: (k10temp) Display up to eight sets of CCD temperatures - hwmon: (k10temp) Don't show temperature limits on Ryzen (Zen) CPUs - hwmon: (k10temp) Show core and SoC current and voltages on Ryzen CPUs - hwmon: (k10temp) Report temperatures per CPU die - hmon: (k10temp) Convert to use devm_hwmon_device_register_with_info - hwmon: (k10temp) Use bitops - hwmon: Add convience macro to define simple static sensors - hwmon: (k10temp) Auto-convert to use SENSOR_DEVICE_ATTR_{RO, RW, WO} - hwmon: Introduce SENSOR_DEVICE_ATTR_{RO, RW, WO} and variants - x86/umip: Make the UMIP activated message generic - x86/umip: Print UMIP line only once - x86/microcode/AMD: Clean up per-family patch size checks - !1689 [openEuler-1.0-LTS] drm/atomic-helper: Bump vblank timeout to 100 ms - nbd: pass nbd_sock to nbd_read_reply() instead of index - !1807 Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb - !1844 net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - !1785 README: Remove out-of-date contribution guide - !1849 fs: jfs: fix possible NULL pointer dereference in dbFree() - fs: jfs: fix possible NULL pointer dereference in dbFree() - !1836 tcp: Reduce chance of collisions in inet6_hashfn(). - net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - tcp: Reduce chance of collisions in inet6_hashfn(). - Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb - README: Remove out-of-date contribution guide - drm/atomic-helper: Bump vblank timeout to 100 ms- !1831 fix NULL pointer dereference in __nf_nat_mangle_tcp_packet - netfilter: nat: fix kabi change - netfilter: nat: fix udp checksum corruption - netfilter: nat: remove csum_recalc hook - !1769 workqueue: Make flush_workqueue() also watch flush_work() - !1803 net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - !1767 bonding: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves - workqueue: Assign a color to barrier work items - workqueue: Mark barrier work with WORK_STRUCT_INACTIVE - workqueue: Change the code of calculating work_flags in insert_wq_barrier() - workqueue: Change arguement of pwq_dec_nr_in_flight() - workqueue: Rename "delayed" (delayed by active management) to "inactive" - bonding: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves- !1762 xen/netback: Fix buffer overrun triggered by unusual packet - xen/netback: Fix buffer overrun triggered by unusual packet - !1761 fix CVE-2023-4194 - net: tap_open(): set sk_uid from current_fsuid() - net: tun_chr_open(): set sk_uid from current_fsuid() - !1728 fix CVE-2023-4128 - !1673 sched: disable sched_autogroup by default - net/sched: cls_fw: No longer copy tcf_result on update to avoid use-after-free - net/sched: cls_route: No longer copy tcf_result on update to avoid use-after-free - net/sched: cls_u32: No longer copy tcf_result on update to avoid use-after-free - !1712 xfrm: add NULL check in xfrm_update_ae_params - xfrm: add NULL check in xfrm_update_ae_params - sched: disable sched_autogroup by default- !1699 dm bugfixes backport from mainline - !1697 x86/cpu/amd: Add a Zenbleed fix - md: Flush workqueue md_rdev_misc_wq in md_alloc() - dm: don't lock fs when the map is NULL during suspend or resume - dm: don't lock fs when the map is NULL in process of resume - dm: requeue IO if mapping table not yet available - Revert "dm: make sure dm_table is binded before queue request" - dm thin metadata: check fail_io before using data_sm - !1662 media: usb: siano: Fix CVE-2023-4132 - !1696 Revert "arm64/mpam: Fix mpam corrupt when cpu online" - x86/cpu/amd: Add a Zenbleed fix - !1694 linux-4.19.y bugfixes backport - Revert "arm64/mpam: Fix mpam corrupt when cpu online" - x86/apic: Fix kernel panic when booting with intremap=off and x2apic_phys - sch_netem: fix issues in netem_change() vs get_dist_table() - sch_netem: acquire qdisc lock in netem_change() - cgroup: Do not corrupt task iteration when rebinding subsystem - !1577 tracing: Fix warning in trace_buffered_event_disable() - !1663 tty: fix pid memleak in disassociate_ctty() - tty: fix pid memleak in disassociate_ctty() - media: usb: siano: Fix warning due to null work_func_t function pointer - media: usb: siano: Fix use after free bugs caused by do_submit_urb - !1629 can: raw: fix receiver memory leak - !1655 can: bcm: Fix UAF in bcm_proc_show() - can: bcm: Fix UAF in bcm_proc_show() - can: raw: fix lockdep issue in raw_release() - can: raw: fix receiver memory leak - !1625 Fix host zero page refcount overflow caused by kvm - !1595 net: nfc: Fix CVE-2023-3863 - KVM: Don't set Accessed/Dirty bits for ZERO_PAGE - KVM: fix overflow of zero page refcount with ksm running - net: nfc: Fix use-after-free caused by nfc_llcp_find_local - nfc: llcp: simplify llcp_sock_connect() error paths - nfc: llcp: nullify llcp_sock->dev on connect() error paths - nfc: Fix to check for kmemdup failure - tracing: Fix warning in trace_buffered_event_disable()- !1571 【openEuler-1.0-LTS】net: hns: fix wrong head when modify the tx feature when sending packets - !1570 【openEuler-1.0-LTS】net: hns3: bugfixes for hns3 drivers 2023.07.29 - net: hns: update hns version to 23.7.1 - net: hns: fix wrong head when modify the tx feature when sending packets - net: hns3: update hns3 version to 23.7.1 - net: hns3: fix tx timeout issue - net: hns3: fix incorrect hw rss hash type of rx packet - net: hns3: add barrier in vf mailbox reply process - net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net: hns3: fix not call nic_call_event() problem when reset failed - !1556 net/sched: cls_fw: Fix improper refcount update leads to use-after-free - !1568 net/sched: cls_u32: Fix reference counter leak leading to overflow - net/sched: cls_u32: Fix reference counter leak leading to overflow - net/sched: cls_fw: Fix improper refcount update leads to use-after-free - !1549 binder: fix UAF caused by faulty buffer cleanup - binder: fix UAF caused by faulty buffer cleanup- !1534 arm64/mpam: fix missing kfree domain's ctrl_val arrray - arm64/mpam: fix missing kfree domain's ctrl_val arrray - !1529 net/sched: sch_qfq: account for stab overhead in qfq_enqueue - net/sched: sch_qfq: account for stab overhead in qfq_enqueue - !1474 [openEuler-1.0-LTS] pmu: remove uncore code for Zhaoxin Platform - !1498 media: dvb-core: Fix use-after-free due on race condition at dvb_net - media: dvb-core: Fix use-after-free due on race condition at dvb_net - !1444 ring-buffer: Fix deadloop issue on reading trace_pipe - !1469 netfilter: nf_tables: prevent OOB access in nft_byteorder_eval - !1472 ipv6/addrconf: fix a potential refcount underflow for idev - pmu: remove uncore code for Zhaoxin Platform - ipv6/addrconf: fix a potential refcount underflow for idev - netfilter: nf_tables: prevent OOB access in nft_byteorder_eval - ftrace: Fix possible warning on checking all pages used in ftrace_process_locs() - ring-buffer: Fix deadloop issue on reading trace_pipe- !1435 fix CVE-2023-3117 - netfilter: nf_tables: unbind non-anonymous set if rule construction fails - netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain - netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE - !1400 [openEuler-1.0-LTS] block: Try to handle busy underlying device on discard - !1416 Fix generic/299 fail - ext4: Add debug message to notify user space is out of free - Revert "ext4: Stop trying writing pages if no free blocks generated" - !1404 bpf: cpumap: Fix memory leak in cpu_map_update_elem - bpf: cpumap: Fix memory leak in cpu_map_update_elem - block: Try to handle busy underlying device on discard - !1377 [sync] PR-1376: jbd2: Check 'jh->b_transaction' before remove it from checkpoint - !1374 etmem: fix the div 0 problem in swapcache reclaim process - !177 net:bonding:support balance-alb interface with vlan to bridge - jbd2: Check 'jh->b_transaction' before remove it from checkpoint - etmem: fix the div 0 problem in swapcache reclaim process - bonding: fix reference count leak in balance-alb mode - net:bonding:support balance-alb interface with vlan to bridge- !1361 fix CVE-2023-1295 - io_uring: get rid of intermediate IORING_OP_CLOSE stage - fs: provide locked helper variant of close_fd_get_file() - file: Rename __close_fd_get_file close_fd_get_file - Remove DECnet support from kernel - net/netlink: fix NETLINK_LIST_MEMBERSHIPS length report - net: tcp: fix kabi breakage in struct sock - tcp: deny tcp_disconnect() when threads are waiting - ping6: Fix send to link-local addresses with VRF. - net: sched: fix possible refcount leak in tc_chain_tmplt_add() - rfs: annotate lockless accesses to RFS sock flow table - rfs: annotate lockless accesses to sk->sk_rxhash - xfrm: Check if_id in inbound policy/secpath match - udp6: Fix race condition in udp6_sendmsg & connect - tcp: Return user_mss for TCP_MAXSEG in CLOSE/LISTEN state if user_mss set - af_packet: do not use READ_ONCE() in packet_bind() - af_packet: Fix data-races of pkt_sk(sk)->num. - ipv{4,6}/raw: fix output xfrm lookup wrt protocol - ipv6: Fix out-of-bounds access in ipv6_find_tlv() - net: fix skb leak in __skb_tstamp_tx() - udplite: Fix NULL pointer dereference in __sk_mem_raise_allocated(). - vlan: fix a potential uninit-value in vlan_dev_hard_start_xmit() - af_key: Reject optional tunnel/BEET mode templates in outbound policies - net: Catch invalid index in XPS mapping - af_unix: Fix data races around sk->sk_shutdown. - af_unix: Fix a data race of sk->sk_receive_queue->qlen. - net: datagram: fix data-races in datagram_poll() - tcp: factor out __tcp_close() helper - net: annotate sk->sk_err write from do_recvmmsg() - netlink: annotate accesses to nlk->cb_running - quota: simplify drop_dquot_ref() - quota: fix dqput() to follow the guarantees dquot_srcu should provide - quota: add new helper dquot_active() - quota: rename dquot_active() to inode_quota_active() - quota: factor out dquot_write_dquot() - quota: add dqi_dirty_list description to comment of Dquot List Management - quota: avoid increasing DQST_LOOKUPS when iterating over dirty/inuse list - kernel/extable.c: use address-of operator on section symbols - arm64/mm: mark private VM_FAULT_X defines as vm_fault_t - x86/mm: Avoid incomplete Global INVLPG flushes - sched: Fix KCSAN noinstr violation - serial: 8250: Reinit port->pm on port specific driver unbind - ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects - ACPI: EC: Fix oops when removing custom query handlers - lib: cpu_rmap: Fix potential use-after-free in irq_cpu_rmap_release() - lib: cpu_rmap: Avoid use after free on rmap->obj array entries - ext4: improve error recovery code paths in __ext4_remount() - scsi: core: Improve scsi_vpd_inquiry() checks - PCI: pciehp: Fix AB-BA deadlock between reset_lock and device_lock - loop: loop_set_status_from_info() check before assignment - loop: Check for overflow while configuring loop - Revert "loop: Check for overflow while configuring loop" - block: don't set GD_NEED_PART_SCAN if scan partition failed - block: return -EBUSY when there are open partitions in blkdev_reread_part - blk-wbt: make enable_state more accurate - block: Limit number of items taken from the I/O scheduler in one go - crypto: cryptd - Protect per-CPU resource by disabling BH. - random: fix data race on crng_node_pool - x86/kprobes: Fix the error judgment for debug exceptions - ext4: turning quotas off if mount failed after enable quotas - ext4: forbid commit inconsistent quota data when errors=remount-ro - quota: fixup *_write_file_info() to return proper error code - ipmi_si: fix a memleak in try_smi_init() - net: add vlan_get_protocol_and_depth() helper - net: tap: check vlan with eth_type_vlan() method - !1317 ext4: Stop trying writing pages if no free blocks generated - !1323 jbd2: fix several checkpoint - jbd2: fix checkpoint cleanup performance regression - jbd2: remove __journal_try_to_free_buffer() - jbd2: fix a race when checking checkpoint buffer busy - jbd2: Fix wrongly judgement for buffer head removing while doing checkpoint - jbd2: remove journal_clean_one_cp_list() - nbd: fix null-ptr-dereference while accessing 'nbd->config' - nbd: factor out a helper to get nbd_config without holding 'config_lock' - nbd: fold nbd config initialization into nbd_alloc_config() - ext4: Stop trying writing pages if no free blocks generated - ipvlan:Fix out-of-bounds caused by unclear skb->cb- sched: Fix null pointer derefrence for sd->span - scsi: hisi_sas: Fix Null point exception after call debugfs_remove_recursive() - scsi: hisi_sas: Fix normally completed I/O analysed as failed - drm/msm/dpu: Add check for pstates - usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition- HID: intel_ish-hid: Add check for ishtp_dma_tx_map - media: saa7134: fix use after free bug in saa7134_finidev due to race condition - config: enable CONFIG_QOS_SCHED_SMART_GRID by default - mm: oom: move memcg_print_bad_task() out of mem_cgroup_scan_tasks() - media: dm1105: Fix use after free bug in dm1105_remove due to race condition - sched: Fix memory leak for smart grid - sched: Delete redundant updates to p->prefer_cpus - nbd: fix incomplete validation of ioctl arg - nbd: validate the block size in nbd_set_size - relayfs: fix out-of-bounds access in relay_file_read - kernel/relay.c: fix read_pos error when multiple readers - net/sched: flower: fix possible OOB write in fl_set_geneve_opt()- sched: Adjust few parameters range for smart grid - sched: clear credit count in error branch - sched: Fix memory leak on error branch - sched: fix dereference NULL pointers - sched: Fix timer storm for smart grid - memstick: r592: Fix UAF bug in r592_remove due to race condition - fbcon: Check font dimension limits - sched/rt: Fix possible warn when push_rt_task - !1152 pci: workaround multiple functions can be assigned to only one VM - pci: workaround multiple functions can be assigned to only one VM - sched: Fix negative count for jump label - sched: Fix possible deadlock in tg_set_dynamic_affinity_mode - sched: fix WARN found by deadlock detect - sched: fix smart grid usage count - sched: Add static key to reduce noise - net: nsh: Use correct mac_offset to unwind gso skb in nsh_gso_segment() - !1134 【openEuler-1.0-LTS】cpufreq:conservative: Fix load in fast_dbs_update() - firewire: fix potential uaf in outbound_phy_packet_callback() - cpufreq: conservative: fix load in fast_dbs_update()- arm64: Add AMPERE1 to the Spectre-BHB affected list - sctp: Call inet6_destroy_sock() via sk->sk_destruct(). - net: Remove WARN_ON_ONCE(sk->sk_forward_alloc) from sk_stream_kill_queues(). - dccp/tcp: Avoid negative sk_forward_alloc by ipv6_pinfo.pktoptions. - media: dvb-core: Fix kernel WARNING for blocking operation in wait_event*() - sched: smart grid: init sched_grid_qos structure on QOS purpose - sched: Introduce smart grid scheduling strategy for cfs - ipmi: fix SSIF not responding under certain cond. - ipmi_ssif: Rename idle state and check - mm/page_alloc: fix potential deadlock on zonelist_update_seq seqlock - printk: declare printk_deferred_{enter,safe}() in include/linux/printk.h - serial: 8250: Fix serial8250_tx_empty() race with DMA Tx - tty: Prevent writing chars during tcsetattr TCSADRAIN/FLUSH - af_packet: Don't send zero-byte data in packet_sendmsg_spkt(). - nohz: Add TICK_DEP_BIT_RCU - perf/core: Fix hardlockup failure caused by perf throttle - of: Fix modalias string generation - tcp/udp: Fix memleaks of sk and zerocopy skbs with TX timestamp. - ipv4: Fix potential uninit variable access bug in __ip_make_skb() - crypto: drbg - Only fail when jent is unavailable in FIPS mode - crypto: drbg - make drbg_prepare_hrng() handle jent instantiation errors - net/packet: convert po->auxdata to an atomic flag - net/packet: convert po->origdev to an atomic flag - ring-buffer: Sync IRQ works before buffer destruction - dccp: Call inet6_destroy_sock() via sk->sk_destruct(). - inet6: Remove inet6_destroy_sock() in sk->sk_prot->destroy(). - tcp/udp: Call inet6_destroy_sock() in IPv6 sk->sk_destruct(). - udp: Call inet6_destroy_sock() in setsockopt(IPV6_ADDRFORM). - lib/cmdline: fix get_option() for strings starting with hyphen - of: overlay: fix for_each_child.cocci warnings - kprobes: Fix to handle forcibly unoptimized kprobes on freeing_list - fs: hfsplus: fix UAF issue in hfsplus_put_super - block: Fix the partition start may overflow in add_partition() - block: refactor blkpg_ioctl - nbd: get config_lock before sock_shutdown - ipv6: sr: fix out-of-bounds read when setting HMAC data. - dm: add disk before alloc dax - dm thin: Fix ABBA deadlock by resetting dm_bufio_client- !932 [sync] PR-922: jbd2: fix checkpoint inconsistent - jbd2: remove t_checkpoint_io_list - jbd2: recheck chechpointing non-dirty buffer - irqchip/gic-v3-its: Balance initial LPI affinity across CPUs - irqchip/gic-v3-its: Track LPI distribution on a per CPU basis - power: supply: bq24190: Fix use after free bug in bq24190_remove due to race condition - net: sched: fix NULL pointer dereference in mq_attach- !841 【openEuler-1.0-LTS】cpufreq: conservative: Add a switch to enable fast mode - x86/pm: Fix false positive kmemleak report in msr_build_context() - drm: Lock pointer access in drm_master_release() - drm: Fix use-after-free read in drm_getunique() - cpufreq: conservative: Add a switch to enable fast mode - of: overlay: kmemleak in dup_and_fixup_symbol_prop() - iommu/dma: Fix MSI reservation allocation - lib/stackdepot.c: fix global out-of-bounds in stack_slabs - rcu: Use *_ONCE() to protect lockless ->expmask accesses - iommu: Don't print warning when IOMMU driver only supports unmanaged domains - ext4: avoid a potential slab-out-of-bounds in ext4_group_desc_csum- netfilter: nf_tables: deactivate anonymous set from preparation phase - x86/msr-index: make SPEC_CTRL_IBRS assembler-portable - xfs: verify buffer contents when we skip log replay - !586 [openEuelr-1.0-LTS] kvm: arm64: fix some pvsched bugs - kvm: arm64: fix some pvsched bugs- net: sctp: update stream->incnt after successful allocation of stream_in - !741 [openEuler-1.0-LTS] openeuler_defconfig: Add configuration items for zhaoxin - !752 arm64/mpam: modify mpam irq register error log - arm64/mpam: modify mpam irq register error log - !437 [openEuler-1.0-LTS] USB: HCD: Fix URB giveback issue in tasklet function - openeuler_defconfig: Add configuration items for zhaoxin - bluetooth: Perform careful capability checks in hci_sock_ioctl() - netrom: Fix use-after-free caused by accept on already connected socket - !689 Fix compile error in allyesconfigs - !441 [openEuler-1.0-LTS] Add support for Zhaoxin SM3 and SM4 instruction - !438 [openEuler-1.0-LTS] Add Zhaoxin I2C driver - i2c: Add Zhaoxin I2C driver - !432 [openEuler-1.0-LTS] Add Zhaoxin ACE driver - mm: memcontrol: switch to rcu protection in drain_all_stock() - !429 [openEuler-1.0.-LTS] ACPI, x86: Improve Zhaoxin processors support for NONSTOP TSC - !428 [openEuelr-1.0-LTS] x86/acpi/cstate: Optimize ARB_DISABLE on Centaur CPUs - !687 [HUST CSE] fix a use-after-free bug in uncore_pci_remove() - scsi/hifc: Fix compile error in allyesconfigs - net/hinic: Fix compile error in allyesconfigs - x86/perf: fix use-after-free bug in uncore_pci_remove() - crypto: Driver for Zhaoxin GMI SM4 Block Cipher Algorithm - crypto: Driver for Zhaoxin GMI SM3 Secure Hash algorithm - !433 [openEuler-1.0-LTS] Add support of turbo boost control interface for Zhaoxin CPUs - !431 [openEuler-1.0-LTS] Add Zhaoxin rng driver - crypto: Add Zhaoxin ACE driver - cpufreq: ACPI: Add Zhaoxin/Centaur turbo boost control interface support - hwrng: Add Zhaoxin rng driver - USB: HCD: Fix URB giveback issue in tasklet function - ACPI, x86: Improve Zhaoxin processors support for NONSTOP TSC - x86/acpi/cstate: Optimize ARB_DISABLE on Centaur CPUs- ipv6: Fix an uninit variable access bug in __ip6_make_skb() - cgroup/cpuset: Wake up cpuset_attach_wq tasks in cpuset_cancel_attach() - verify_pefile: relax wrapper length check - udp6: fix potential access to stale information - mm/swap: fix swap_info_struct race between swapoff and get_swap_pages() - ftrace: Mark get_lock_parent_ip() __always_inline - perf/core: Fix the same task check in perf_event_set_output - net: don't let netpoll invoke NAPI if in xmit context - icmp: guard against too small mtu - sched_getaffinity: don't assume 'cpumask_size()' is fully initialized - dm stats: check for and propagate alloc_percpu failure - dm thin: fix deadlock when swapping to thin device - genirq: introduce handle_fasteoi_edge_irq for phytium - genirq: introduce handle_fasteoi_edge_irq flow handler - Revert "genirq: Remove irqd_irq_disabled in __irq_move_irq" - Revert "config: enbale irq pending config for openeuler" - Revert "genirq: introduce CONFIG_GENERIC_PENDING_IRQ_FIX_KABI" - Revert "irqchip/gic-v3-its: introduce CONFIG_GENERIC_PENDING_IRQ" - scsi: dpt_i2o: Remove obsolete driver - md: extend disks_mutex coverage - md: use msleep() in md_notify_reboot() - md: fix double free of mddev->private in autorun_array() - block/badblocks: fix badblocks loss when badblocks combine - block/badblocks: fix the bug of reverse order - block: Only set bb->changed when badblocks changes - md: fix sysfs duplicate file while adding rdev - md: replace invalid function flush_rdev_wq() with flush_workqueue() - bonding: Fix memory leak when changing bond type to Ethernet - dm ioctl: fix nested locking in table_clear() to remove deadlock concern - timers/nohz: Last resort update jiffies on nohz_full IRQ entry - bonding: restore bond's IFF_SLAVE flag if a non-eth dev enslave fails - bonding: restore IFF_MASTER/SLAVE flags on bond enslave ether type change - net: qcom/emac: Fix use after free bug in emac_remove due to race condition - ovl: get_acl: Fix null pointer dereference at realinode in rcu-walk mode - net: sched: sch_qfq: prevent slab-out-of-bounds in qfq_activate_agg - ext4: only update i_reserved_data_blocks on successful block allocation - mm: mem_reliable: Use zone_page_state to count free reliable pages - writeback, cgroup: fix null-ptr-deref write in bdi_split_work_to_wbs - sctp: leave the err path free in sctp_stream_init to sctp_stream_free - RDMA/core: Refactor rdma_bind_addr - Revert "RDMA/cma: Simplify rdma_resolve_addr() error flow" - fix kabi broken due to import new inode operation get_inode_acl - ovl: enable RCU'd ->get_acl() - vfs: add rcu argument to ->get_acl() callback- RDMA/hns: Add check for user-configured max_inline_data value - power: supply: da9150: Fix use after free bug in da9150_charger_remove due to race condition - !430 [openEuler-1.0-LTS] ata: sata_zhaoxin: Update Zhaoxin Serial ATA product name - i2c: xgene-slimpro: Fix out-of-bounds bug in xgene_slimpro_i2c_xfer() - audit: fix a memleak caused by auditing load module - !595 [openEuler-1.0-LTS] iommu/arm-smmu-v3: Fix UAF when handle evt during iommu group removing - tcp: restrict net.ipv4.tcp_app_win - x86/speculation: Allow enabling STIBP with legacy IBRS - iommu/arm-smmu-v3: Fix UAF when handle evt during iommu group removing - ata: sata_zhaoxin: Update Zhaoxin Serial ATA product name- KVM: nVMX: add missing consistency checks for CR0 and CR4 - drm/vmwgfx: Validate the box size for the snooped cursor - net/sched: Retire tcindex classifier - Documentation/hw-vuln: Fix rST warning - Documentation/hw-vuln: Add documentation for Cross-Thread Return Predictions - KVM: x86: Mitigate the cross-thread return address predictions bug - x86/speculation: Identify processors vulnerable to SMT RSB predictions - cpu/SMT: create and export cpu_smt_possible() - nfc: st-nci: Fix use after free bug in ndlc_remove due to race condition - Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition- hwmon: (xgene) Fix use after free bug in xgene_hwmon_remove due to race condition - xirc2ps_cs: Fix use after free bug in xirc2ps_detach - 9p/xen : Fix use after free bug in xen_9pfs_front_remove due to race condition - !566 linux-4.19.y bugfixes backport - bpf: add missing header file include - uaccess: Add speculation barrier to copy_from_user() - random: always mix cycle counter in add_latent_entropy() - x86/mm: Fix use of uninitialized buffer in sme_enable() - ext4: fail ext4_iget if special inode unallocated - ext4: zero i_disksize when initializing the bootloader inode - irqdomain: Drop bogus fwspec-mapping error handling - irqdomain: Fix disassociation race - irqdomain: Fix association race - x86/kprobes: Fix arch_check_optimized_kprobe check within optimized_kprobe range - x86/kprobes: Fix __recover_optprobed_insn check optimizing logic - x86/bugs: Reset speculation control settings on init - timers: Prevent union confusion from unexpected restart_syscall() - crypto: rsa-pkcs1pad - Use akcipher_request_complete - crypto: seqiv - Handle EBUSY correctly - ACPI: battery: Fix missing NUL-termination with large strings - ACPICA: nsrepair: handle cases without a return value correctly - genirq: Fix the return type of kstat_cpu_irqs_sum() - ACPI: NFIT: fix a potential deadlock during NFIT teardown - alarmtimer: Prevent starvation by small intervals and SIG_IGN - ring-buffer: Fix race while reader and writer are on the same page - cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all() - cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock - cgroup/cpuset: Change cpuset_rwsem and hotplug lock order - Revert "cgroup/cpuset: Change cpuset_rwsem and hotplug lock order" - Revert "cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock" - Revert "cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all()" - block: fix wrong mode for blkdev_put() from disk_scan_partitions() - block: fix scan partition for exclusively open device again - block: fix kabi broken in ioctl.c - block: merge disk_scan_partitions and blkdev_reread_part - block: cleanup partition scanning in register_disk - block: Revert "block: check 'bd_super' before rescanning partition" - md: fix kabi broken in struct mddev - md: use interruptible apis in idle/frozen_sync_thread - md: wake up 'resync_wait' at last in md_reap_sync_thread() - md: refactor idle/frozen_sync_thread() - md: add a mutex to synchronize idle and frozen in action_store() - md: refactor action_store() for 'idle' and 'frozen' - mm: mem_reliable: Initialize reliable_nr_page when mm_init() - md: fix soft lockup in status_resync - md: don't update recovery_cp when curr_resync is ACTIVE - md: Ensure resync is reported after it starts - md: Use enum for overloaded magic numbers used by mddev->curr_resync - loop: Add parm check in loop_control_ioctl - block/wbt: enable wbt after switching cfq to other schedulers - Fix double fget() in vhost_net_set_backend() - sched/fair: Sanitize vruntime of entity being migrated - sched/fair: sanitize vruntime of entity being placed - Revert "sched: Reinit task's vruntime if a task sleep over 200 days" - btrfs: fix race between quota disable and quota assign ioctls- ext4: Fix i_disksize exceeding i_size problem in paritally written case - ext4: ext4_put_super: Remove redundant checking for 'sbi->s_journal_bdev' - ext4: Fix reusing stale buffer heads from last failed mounting - kvm: initialize all of the kvm_debugregs structure before sending it to userspace - net: virtio_net_hdr_to_skb: count transport header in UFO - net: be more gentle about silly gso requests coming from user - ext4: fix race between writepages and remount- ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF - ftrace: Fix invalid address access in lookup_rec() when index is 0 - ftrace: Fix NULL pointer dereference in is_ftrace_trampoline when ftrace is dead - scsi: scsi_dh_alua: fix memleak for 'qdata' in alua_activate() - RDMA/core: Don't infoleak GRH fields - !480 mm bugfixes backport - cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all() - cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock - cgroup/cpuset: Change cpuset_rwsem and hotplug lock order - mm: memcontrol: fix cannot alloc the maximum memcg ID- net/sched: tcindex: search key must be 16 bits - net/sched: tcindex: update imperfect hash filters respecting rcu - rcu: Upgrade rcu_swap_protected() to rcu_replace_pointer() - x86/speculation: Add RSB VM Exit protections - x86/bugs: Warn when "ibrs" mitigation is selected on Enhanced IBRS parts - x86/speculation: Use DECLARE_PER_CPU for x86_spec_ctrl_current - x86/speculation: Disable RRSBA behavior - x86/bugs: Add Cannon lake to RETBleed affected CPU list - x86/cpu/amd: Enumerate BTC_NO - x86/common: Stamp out the stepping madness - x86/speculation: Fill RSB on vmexit for IBRS - KVM: VMX: Fix IBRS handling after vmexit - KVM: VMX: Prevent guest RSB poisoning attacks with eIBRS - x86/speculation: Remove x86_spec_ctrl_mask - x86/speculation: Use cached host SPEC_CTRL value for guest entry/exit - x86/speculation: Fix SPEC_CTRL write on SMT state change - x86/speculation: Fix firmware entry SPEC_CTRL handling - x86/speculation: Fix RSB filling with CONFIG_RETPOLINE=n - x86/speculation: Change FILL_RETURN_BUFFER to work with objtool - intel_idle: Disable IBRS during long idle - x86/bugs: Report Intel retbleed vulnerability - x86/bugs: Split spectre_v2_select_mitigation() and spectre_v2_user_select_mitigation() - x86/speculation: Add spectre_v2=ibrs option to support Kernel IBRS - x86/bugs: Optimize SPEC_CTRL MSR writes - x86/entry: Add kernel IBRS implementation - x86/entry: Remove skip_r11rcx - x86/bugs: Keep a per-CPU IA32_SPEC_CTRL value - x86/bugs: Add AMD retbleed= boot parameter - x86/bugs: Report AMD retbleed vulnerability - x86/cpufeatures: Move RETPOLINE flags to word 11 - x86/cpu: Add a steppings field to struct x86_cpu_id - x86/cpu: Add consistent CPU match macros - x86/devicetable: Move x86 specific macro out of generic code - x86/cpufeature: Fix various quality problems in the header - x86/cpufeature: Add facility to check for min microcode revisions - Revert "x86/cpu: Add a steppings field to struct x86_cpu_id" - Revert "x86/speculation: Add RSB VM Exit protections" - x86/nospec: Fix i386 RSB stuffing - ext4: make sure fs error flag setted before clear journal error - ext4: commit super block if fs record error when journal record without error - hugetlb: fix hugepages_setup when deal with pernode - hugetlb: fix wrong use of nr_online_nodes - tty: fix out-of-bounds access in tty_driver_lookup_tty() - arm64: errata: Remove AES hwcap for COMPAT tasks - kernel: Initialize cpumask before parsing - genirq: Disable interrupts for force threaded handlers - softirq: Don't try waking ksoftirqd before it has been spawned - scsi: hisi_sas: Clear interrupt status when exiting channel int0 for v3 hw - scsi: hisi_sas: Handle NCQ error when IPTT is valid - scsi: hisi_sas: Grab sas_dev lock when traversing the members of sas_dev.list - act_mirred: use the backlog for nested calls to mirred ingress - net/sched: act_mirred: refactor the handle of xmit - net: sched: don't expose action qstats to skb_tc_reinsert() - net: sched: protect against stack overflow in TC act_mirred - net: sched: refactor reinsert action - net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() - wifi: brcmfmac: slab-out-of-bounds read in brcmf_get_assoc_ies() - ext4: fix another off-by-one fsmap error on 1k block filesystems- tipc: add an extra conn_get in tipc_conn_alloc - tipc: set con sock in tipc_conn_alloc - mm/oom_kill.c: fix oom_cpuset_eligible() comment - oom: decouple mems_allowed from oom_unkillable_task - mm, oom: remove redundant task_in_mem_cgroup() check - mm, oom: refactor dump_tasks for memcg OOMs - block: Fix wrong offset in bio_truncate() - fs: move guard_bio_eod() after bio_set_op_attrs - block: add bio_truncate to fix guard_bio_eod - mm/mempolicy.c: fix out of bounds write in mpol_parse_str() - cifs: Fix use-after-free in rdata->read_into_pages() - media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer()- scsi: cancel the inflight async device probe when remove scsi_target - scsi: fix use-after-free problem in scsi_remove_target - HID: asus: use spinlock to safely schedule workers - HID: asus: use spinlock to protect concurrent accesses - HID: asus: Remove check for same LED brightness on set - blk-wbt: don't enable throttling if default elevator is bfq - block: Fix kabi broken by "block: split .sysfs_lock into two locks" - block: fix comment and add lockdep assert - block: don't release queue's sysfs lock during switching elevator - block: fix race between switching elevator and removing queues - block: split .sysfs_lock into two locks - crypto: rsa-pkcs1pad - restore signature length check - fs/proc: task_mmu.c: don't read mapcount for migration entry - migrate: hugetlb: check for hugetlb shared PMD in node migration - mm: hugetlb: proc: check for hugetlb shared PMD in /proc/PID/smaps - ipv6: Fix tcp socket connection with DSCP. - ipv6: Fix datagram socket connection with DSCP. - aio: fix mremap after fork null-deref - bpf: Always return target ifindex in bpf_fib_lookup - serial: 8250_dma: Fix DMA Rx rearm race - serial: 8250_dma: Fix DMA Rx completion race - x86/i8259: Mark legacy PIC interrupts with IRQ_LEVEL - ipv4: prevent potential spectre v1 gadget in ip_metrics_convert() - netlink: annotate data races around sk_state - netlink: annotate data races around dst_portid and dst_group - netlink: annotate data races around nlk->portid - netlink: remove hash::nelems check in netlink_insert - net: fix UaF in netns ops registration error path - netfilter: conntrack: do not renew entry stuck in tcp SYN_SENT state - binder: Gracefully handle BINDER_TYPE_FDA objects with num_fds=0 - binder: Address corner cases in deferred copy and fixup - binder: fix pointer cast warning - binder: defer copies of pre-patched txn data - binder: read pre-translated fds from sender buffer - binder: avoid potential data leakage when copying txn - binder: fix handling of error during copy - binder: use cred instead of task for getsecid - binder: don't detect sender/target during buffer cleanup - binder: make sure fd closes complete - binder: Remove bogus warning on failed same-process transaction - binder: fix incorrect calculation for num_valid - binder: Prevent repeated use of ->mmap() via NULL mapping - binder: Don't modify VMA bounds in ->mmap handler - binder: Set end of SG buffer area properly. - binder: return errors from buffer copy functions - binder: check for overflow when alloc for security context - binder: fix BUG_ON found by selinux-testsuite - binder: fix handling of misaligned binder object - binder: use userspace pointer as base of buffer space - binder: remove user_buffer_offset - binder: remove kernel vm_area for buffer space - binder: avoid kernel vm_area for buffer fixups - binder: add function to copy binder object from buffer - binder: add functions to copy to/from binder buffers - binder: create userspace-to-binder-buffer copy function - binder: fix use-after-free due to ksys_close() during fdget() - binder: fix kerneldoc header for struct binder_buffer - binder: create node flag to request sender's security context - binder: Add BINDER_GET_NODE_INFO_FOR_REF ioctl. - binder: use standard functions to allocate fds - block: fix kabi change since add bd_write_openers and bd_part_write_openers - block: add info when opening an exclusive opened block device for write - block: add info when opening a write opend block device exclusively - Revert "block: add info when opening an exclusive opened block device for write" - Revert "block: add info when opening a write opend block device exclusively" - ext4: fix WARNING in mb_find_extent - sctp: fail if no bound addresses can be used for a given scope- HID: check empty report_list in hid_validate_values() - dhugetlb: use mutex lock in update_reserve_pages() - ntfs: fix out-of-bounds read in ntfs_attr_find() - ntfs: fix use-after-free in ntfs_ucsncmp() - media: rc: Fix use-after-free bugs caused by ene_tx_irqsim() - phy: tegra: xusb: Fix return value of tegra_xusb_find_port_node function - netfilter: nf_tables: fix null deref due to zeroed list head - tcp: Fix listen() regression in 5.15.88. - tap: tap_open(): correctly initialize socket uid - tun: tun_chr_open(): correctly initialize socket uid - net: add sock_init_data_uid() - rds: rds_rm_zerocopy_callback() use list_first_entry()- !423 genirq bugfix for arm64 - genirq: Remove irqd_irq_disabled in __irq_move_irq - !422 iscsi bugfixes backport - scsi: iscsi_tcp: Fix UAF during login when accessing the shost ipaddress - scsi: iscsi_tcp: Fix UAF during logout when accessing the shost ipaddress - !420 backport CVEs and bugfixes - net: mpls: fix stale pointer if allocation fails during device rename - nbd: fix assignment error for first_minor in nbd_dev_add - selinux: further adjust init order for cred_* hooks - selinux: further adjust init order for file_alloc_security hook - !415 mainline bugfix backport - selinux: reorder hooks to make runtime disable less broken - evm: Fix a small race in init_desc() - evm: Check also if *tfm is an error pointer in init_desc() - iommu: Properly export iommu_group_get_for_dev() - of: resolver: Add of_node_put() before return and break - of: unittest: Add of_node_put() before return - drivers/iommu: Allow IOMMU bus ops to be unregistered - drivers/iommu: Export core IOMMU API symbols to permit modular drivers - component: do not dereference opaque pointer in debugfs - ipmi: use %*ph to print small buffer - crypto: algif_skcipher - Use chunksize instead of blocksize - crypto: algif_skcipher - EBUSY on aio should be an error - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - dhugetlb: isolate hwpoison hugepage when release - mm/sharepool: Fix null-pointer-deference in sp_free_area- !213 net: bonding: Inherit MPLS features from slave devices - x86/unwind: Fix check_paravirt() calls orc_find() before declaration - dhugetlb: set hpool to NULL for cont-bit hugepage - arm64/ascend: Delete CONFIG_ASCEND_AUTO_TUNING_HUGEPAGE in hulk_defconfig - arm64/ascend: Delete unused feature auto-tuning hugepage - mm/memcg_memfs_info: fix potential oom_lock recursion deadlock - net: bridge: mcast: add and enforce query interval minimum - net: bridge: mcast: add and enforce startup query interval minimum - !396 anolis: bond: broadcast ARP or ND messages to all slaves - anolis: bond: broadcast ARP or ND messages to all slaves - net: bonding: Inherit MPLS features from slave devices- block, bfq: switch 'bfqg->ref' to use atomic refcount apis - x86/bugs: Flush IBP in ib_prctl_set() - media: vivid: fix compose size exceed boundary - cifs: do not include page data when checking signature - SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails - net: stream: purge sk_error_queue in sk_stream_kill_queues() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - ext4: fix deadlock due to mbcache entry corruption - mbcache: automatically delete entries from cache on freeing - mm/khugepaged: invoke MMU notifiers in shmem/file collapse paths - mm/khugepaged: fix GUP-fast interaction by sending IPI - mm: gup: fix the fast GUP race against THP collapse - prlimit: do_prlimit needs to have a speculation check - arm64: cmpxchg_double*: hazard against entire exchange variable - net/ulp: prevent ULP without clone op from entering the LISTEN status - driver core: Fix bus_type.match() error handling in __driver_attach() - md: fix a crash in mempool_free - bpf: pull before calling skb_postpull_rcsum() - SUNRPC: ensure the matching upcall is in-flight upon downcall - ovl: Use ovl mounter's fsuid and fsgid in ovl_link() - pnode: terminate at peers of source - cifs: Fix uninitialized memory read for smb311 posix symlink create - device_cgroup: Roll back to original exceptions after copy failure - PCI/sysfs: Fix double free in error path - PCI: Fix pci_device_is_present() for VFs by checking PF - ipmi: fix use after free in _ipmi_destroy_user() - ima: Fix a potential NULL pointer access in ima_restore_measurement_list - ipmi: fix long wait in unload when IPMI disconnect - binfmt: Fix error return code in load_elf_fdpic_binary() - chardev: fix error handling in cdev_device_add() - mrp: introduce active flags to prevent UAF when applicant uninit - bpf: make sure skb->len != 0 when redirecting to a tunneling device - ipmi: fix memleak when unload ipmi driver - ACPICA: Fix error code path in acpi_ds_call_control_method() - skbuff: Account for tail adjustment during pull operations - serial: pl011: Do not clear RX FIFO & RX interrupt in unthrottle. - serial: amba-pl011: avoid SBSA UART accessing DMACR register - class: fix possible memory leak in __class_register() - crypto: tcrypt - Fix multibuffer skcipher speed test mem leak - blktrace: Fix output non-blktrace event when blk_classic option enabled - SUNRPC: Fix missing release socket in rpc_sockname() - bonding: uninitialized variable in bond_miimon_inspect() - pinctrl: pinconf-generic: add missing of_node_put() - ima: Fix misuse of dereference of pointer in template_desc_init_fields() - ACPICA: Fix use-after-free in acpi_ut_copy_ipackage_to_ipackage() - md/raid1: stop mdx_raid1 thread when raid1 array run failed - blk-mq: fix possible memleak when register 'hctx' failed - perf: Fix possible memleak in pmu_dev_alloc() - cpuidle: dt: Return the correct numbers of parsed idle states - pstore: Avoid kcore oops by vmap()ing with VM_IOREMAP - pstore/ram: Fix error return code in ramoops_probe() - perf: arm_dsu: Fix hotplug callback leak in dsu_pmu_init() - sched/rt: Optimize checking group RT scheduler constraints - md: protect md_unregister_thread from reentrancy - hugetlbfs: fix off-by-one error in hugetlb_vmdelete_list() - lib/list_debug.c: Detect uninitialized lists - crypto: tcrypt - avoid signed overflow in byte count - mm: sharepool: fix hugepage_rsvd count increase error - config: enbale irq pending config for openeuler - genirq: introduce CONFIG_GENERIC_PENDING_IRQ_FIX_KABI - irqchip/gic-v3-its: introduce CONFIG_GENERIC_PENDING_IRQ - md: fix uaf in md_wakeup_thread - genirq: add printk safe in irq context - jbd2: Fix data missing when reusing bh which is ready to be checkpointed - x86/unwind: Fix orc entry for paravirt {save,restore}_fl - cifs: sanitize multiple delimiters in prepath - drm/i915/gvt: fix double free bug in split_2MB_gtt_entry- ring-buffer: Fix race between reset page and reading page - block: don't allow a disk link holder to itself - ext4: fix use-after-free in ext4_orphan_cleanup - ext4: lost matching-pair of trace in ext4_truncate - ipv6: raw: Deduct extension header length in rawv6_push_pending_frames - mm/swapfile: add cond_resched() in get_swap_pages() - hugetlbfs: don't delete error page from pagecache - mm: hwpoison: refactor refcount check handling - dhugetlb: set DYNAMIC_HUGETLB to y for hulk_defconfig - dhugetlb: use enable_dhugetlb to disable huge_memory - dhugetlb: skip dissolve hugepage belonging to dynamic hugetlb - dhugetlb: only support 1G/2M hugepage and ARM64_4K_PAGES - dhugetlb: isolate dynamic hugetlb code - dhugetlb: backport dynamic hugetlb feature - !344 mm: fix false-positive OVERCOMMIT_GUESS failures - cfq: fix memory leak for cfqq - mm: fix false-positive OVERCOMMIT_GUESS failures- bus: hisi_lpc: Fixup IO ports addresses to avoid use-after-free in host removal - of/fdt: Don't calculate initrd size from DT if start > end - lib/cmdline: avoid page fault in next_arg - genirq: Introduce warn log when irq be reentrant - net: sched: disallow noqueue for qdisc classes - net: sched: atm: dont intepret cls results when asked to drop - block: check 'bd_super' before rescanning partition - net: sched: cbq: dont intepret cls results when asked to drop - swapfile: fix soft lockup in scan_swap_map_slots - Huawei BMA: Fix iBMA driver bug- USB: Fix kABI for usb_device->reset_in_progress - rndis_wlan: Prevent buffer overflow in rndis_query_oid - mm: fix unexpected changes to {failslab|fail_page_alloc}.attr - ima: Directly assign the ima_default_policy pointer to ima_rules - driver core: Don't probe devices after bus_type.match() probe deferral - KEYS: trusted: Fix migratable=1 failing - certs: Fix blacklist flag type confusion - crypto: ecdh - avoid unaligned accesses in ecdh_set_secret() - ipc/sem: Fix dangling sem_array access in semtimedop race - ipv6: avoid use-after-free in ip6_fragment() - nvme initialize core quirks before calling nvme_init_subsystem - memcg: fix possible use-after-free in memcg_write_event_control() - x86/ioremap: Fix page aligned size calculation in __ioremap_caller() - nvme: restrict management ioctls to admin - arm64: errata: Fix KVM Spectre-v2 mitigation selection for Cortex-A57/A72 - arm64: Fix panic() when Spectre-v2 causes Spectre-BHB to re-allocate KVM vectors - packet: do not set TP_STATUS_CSUM_VALID on CHECKSUM_COMPLETE - net: tun: Fix use-after-free in tun_detach() - of: property: decrement node refcount in of_fwnode_get_reference_args() - af_key: Fix send_acquire race with pfkey_register - audit: fix undefined behavior in bit shift for AUDIT_BIT - USB: core: Fix RST error in hub.c - USB: core: Prevent nested device-reset calls - ima: Do not print policy rule with inactive LSM labels - lsm: Resolve KABI changes on lsm_notifier - ima: Evaluate error in init_ima() - ima: ima/lsm policy rule loading logic bug fixes - ima: Handle -ESTALE returned by ima_filter_rule_match() - ima: use the lsm policy update notifier - LSM: switch to blocking policy update notifiers - mm/hwpoison: do not lock page again when me_huge_page() successfully recovers- arm64: Kconfig: default unset ARCH_LLC_128_LINE_SIZE - mm/sharepool: clean up ABI breakage - timekeeping: Avoiding false sharing in field access of tk_core - mm/hwpoison: put page in already hwpoisoned case with MF_COUNT_INCREASED - mm/memory-failure.c: fix race with changing page more robustly - mm,memory_failure: always pin the page in madvise_inject_error - kobject: Fix slab-out-of-bounds in fill_kobj_path() - tracing: Fix infinite loop in tracing_read_pipe on overflowed print_trace_line - i2c: ismt: Fix an out-of-bounds bug in ismt_access() - misc: sgi-gru: fix use-after-free error in gru_set_context_option, gru_fault and gru_handle_user_call_os - mm/sharepool: Charge Buddy hugepage to memcg- dm thin: Use last transaction's pmd->root when commit failed - drm: mali-dp: potential dereference of null pointer - power: supply: wm8350-power: Add missing free in free_charger_irq - sched: Reinit task's vruntime if a task sleep over 200 days - media: dvb-core: Fix UAF due to refcount races at releasing - drm/amdkfd: Check for null pointer after calling kmemdup - !325 Support enabling dirty log gradually in small chunks - KVM: arm64: Support enabling dirty log gradually in small chunks - KVM: x86: enable dirty log gradually in small chunks - KVM: Introduce KVM_CAP_MANUAL_DIRTY_LOG_PROTECT2 - KVM: Fix kvm_clear_dirty_log_protect off-by-(minus-)one - KVM: Fix the bitmap range to copy during clear dirty - kvm_main: fix some comments - KVM: fix KVM_CLEAR_DIRTY_LOG for memory slots of unaligned size - Revert "KVM: Eliminate extra function calls in kvm_get_dirty_log_protect()" - KVM: validate userspace input in kvm_clear_dirty_log_protect() - kvm: introduce manual dirty log reprotect - kvm: rename last argument to kvm_get_dirty_log_protect - kvm: make KVM_CAP_ENABLE_CAP_VM architecture agnostic- Bluetooth: L2CAP: fix use-after-free in l2cap_conn_del() - Bluetooth: L2CAP: Fix build errors in some archs - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put - hv_netvsc: Add check for kvmalloc_array - xen/netback: don't call kfree_skb() with interrupts disabled - xen/netback: fix build warning - xen/netback: Ensure protocol headers don't fall in the non-linear area - !273 [openEuler-1.0-LTS] Fix mouse enumeration issue after wakeup from s4 - arm64: fix a concurrency issue in emulation_proc_handler() - dm thin: Fix ABBA deadlock between shrink_slab and dm_pool_abort_metadata - sched/qos: Don't unthrottle cfs_rq when cfs_rq is throttled by qos - media: mceusb: Use new usb_control_msg_*() routines - media: mceusb: fix control-message timeouts - USB: add usb_control_msg_send() and usb_control_msg_recv() - Fix mouse enumeration issue after wakeup from s4- mm/sharepool: Fix a double free problem caused by init_local_group - bpf, test_run: Fix alignment problem in bpf_prog_test_run_skb() - macvlan: enforce a consistent minimal mtu - net: macvlan: fix memory leaks of macvlan_common_newlink - ipv6: addrlabel: fix infoleak when sending struct ifaddrlblmsg to network - net: gso: fix panic on frag_list with mixed head alloc types - tcp/udp: Make early_demux back namespacified. - ipv6: fix WARNING in ip6_route_net_exit_late() - net, neigh: Fix null-ptr-deref in neigh_table_clear() - tcp: fix indefinite deferral of RTO with SACK reneging - net: fix UAF issue in nfqnl_nf_hook_drop() when ops_init() failed - serial: 8250: Flush DMA Rx on RLSI - serial: 8250: Fall back to non-DMA Rx if IIR_RDI occurs - capabilities: fix potential memleak on error path from vfs_getxattr_alloc() - security: commoncap: fix -Wstringop-overread warning - ring_buffer: Do not deactivate non-existant pages - ftrace: Fix null pointer dereference in ftrace_add_mod() - ftrace: Optimize the allocation for mcount entries - kprobe: reverse kp->flags when arm_kprobe failed - mm: fs: initialize fsdata passed to write_begin/write_end interface - nfs4: Fix kmemleak when allocate slot failed - kernfs: fix use-after-free in __kernfs_remove - mm,hugetlb: take hugetlb_lock before decrementing h->resv_huge_pages - mm: /proc/pid/smaps_rollup: fix no vma's null-deref - signal handling: don't use BUG_ON() for debugging - ida: don't use BUG_ON() for debugging- !272 [openEuler-1.0-LTS] Add MWAIT Cx support for Zhaoxin CPUs. - Bluetooth: L2CAP: Fix u8 overflow - l2tp: Don't sleep and disable BH under writer-side sk_callback_lock - l2tp: Serialize access to sk_user_data with sk_callback_lock - !288 Add support for ConnectX6 Lx and ConnectX6Dx with openEuler inbox driver - net/mlx5: Update the list of the PCI supported devices - net/mlx5: Update the list of the PCI supported devices - drivers: net: slip: fix NPD bug in sl_tx_timeout() - staging: rtl8712: fix use after free bugs - Add MWAIT Cx support for Zhaoxin CPUs.- x86/tsc: use topology_max_packages() in tsc watchdog check - scsi: hisi_sas: Set iptt aborted flag when receiving an abnormal CQ - ext4: fix bug in extents parsing when eh_entries == 0 and eh_depth > 0- svm: Delete unused ioctl command - Revert "posix-cpu-timers: Make timespec to nsec conversion safe" - block: limit request dispatch loop duration - Bluetooth: L2CAP: Fix accepting connection request for invalid SPSM - Bluetooth: L2CAP: Fix attempting to access uninitialized memory - block: check flags of claimed slave bdev to fix uaf for bd_holder_dir- block: fix use after free for bd_holder_dir - Revert "block: Fix UAF in bd_link_disk_holder()" - init/main.c: return 1 from handled __setup() functions - x86/pm: Save the MSR validity status at context setup - x86/speculation: Restore speculation related MSRs during S3 resume - x86/cpu: Load microcode during restore_processor_state() - genirq: Synchronize interrupt thread startup - nvme: Fix IOC_PR_CLEAR and IOC_PR_RELEASE ioctls for nvme devices - once: add DO_ONCE_SLOW() for sleepable contexts - inet: fully convert sk->sk_rx_dst to RCU rules - ext4: continue to expand file system when the target size doesn't reach - nvme: copy firmware_rev on each init - net: If sock is dead don't access sock's sk_wq in sk_stream_wait_memory - can: bcm: check the result of can_send() in bcm_can_tx() - xfrm: Update ipcomp_scratches with NULL when freed - tcp: annotate data-race around tcp_md5sig_pool_populated - tcp: fix tcp_cwnd_validate() to not forget is_cwnd_limited - ext4: fix null-ptr-deref in ext4_write_info - Revert "fs: check FMODE_LSEEK to control internal pipe splicing" - ima: Free the entire rule if it fails to parse - ima: Free the entire rule when deleting a list of rules - ima: Have the LSM free its audit rule - mm/migrate_device.c: flush TLB while holding PTL - mm: prevent page_frag_alloc() from corrupting the memory - mm/page_alloc: fix race condition between build_all_zonelists and page allocation - net: team: Unsync device addresses on ndo_stop - mm/slub: fix to return errno if kmalloc() fails - of: fdt: fix off-by-one error in unflatten_dt_nodes()- net: tun: fix bugs for oversize packet when napi frags enabled - tcp: fix a signed-integer-overflow bug in tcp_add_backlog() - tcp: prohibit TCP_REPAIR_OPTIONS if data was already sent - ext4: fix bad checksum after online resize - blktrace: remove unnessary stop block trace in 'blk_trace_shutdown' - blktrace: fix possible memleak in '__blk_trace_remove' - blktrace: introduce 'blk_trace_{start,stop}' helper - kabi: net: fix kabi broken in sk_buff - io_uring/af_unix: defer registered files gc to io_uring release - nbd: refactor size updates - nbd: move the task_recv check into nbd_size_update - nbd: remove the call to set_blocksize - wifi: Fix potential buffer overflow in 'brcmf_fweh_event_worker' - fs: fix UAF/GPF bug in nilfs_mdt_destroy - dm: Fix UAF in run_timer_softirq() - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() - ext4: record error information when insert extent failed in 'ext4_split_extent_at' - livepatch/core: Fix livepatch/state leak on error path - !130 [openEuler-1.0-LTS] update pmu for Zhaoxin CPUs - update pmu for Zhaoxin CPUs- uacce: add the reference counter protection - nilfs2: fix NULL pointer dereference at nilfs_bmap_lookup_at_level() - usb: mon: make mmapped memory read only - !185 [openEuler-1.0-LTS] Add support sata lpm for Zhaoxin CPUs - ext4: fix bug_on in __es_tree_search caused by bad boot loader inode - ext4: add EXT4_IGET_BAD flag to prevent unexpected bad inode - ext4: add helper to check quota inums - ext4: fix bug_on in __es_tree_search caused by bad quota inode - atm: idt77252: fix use-after-free bugs caused by tst_timer - ext4: ext4_read_bh_lock() should submit IO if the buffer isn't uptodate - !94 [openEuler-1.0-LTS] rtc: Fix set RTC time delay 500ms on some Zhaoxin SOCs - !88 [openEuler-1.0-LTS] XHCI:Fix some device identify fail when enable xHCI runtime suspend - !92 [openEuler-1.0-LTS] x86/tsc: Make cur->adjusted values in package#1 to be the same - !93 [openEuler-1.0-LTS] Driver for Zhaoxin CPU core temperature monitoring - !89 [openEuler-1.0-LTS] EHCI: Clear wakeup signal locked in S0 state when device plug in - scsi: stex: Properly zero out the passthrough command structure - !192 x86/apic/vector: Fix ordering in vector assignment - nilfs2: fix leak of nilfs_root in case of writer thread creation failure - vsock: Fix memory leak in vsock_connect() - x86/apic/vector: Fix ordering in vector assignment - Add support for PxSCT.LPM set based on actual LPM circumstances - Add support for disabling PhyRdy Change Interrupt based on actual LPM capability - Driver for Zhaoxin CPU core temperature monitoring - rtc: Fix set RTC time delay 500ms on some Zhaoxin SOCs - x86/tsc: Make cur->adjusted values in package#1 to be the same - EHCI: Clear wakeup signal locked in S0 state when device plug in - XHCI:Fix some device identify fail when enable xHCI runtime suspend- sch_sfb: Also store skb len before calling child enqueue - sch_sfb: Don't assume the skb is still around after enqueueing to child - ipv6: Fix data races around sk->sk_prot. - ipv6: annotate some data-races around sk->sk_prot - ipv6: provide and use ipv6 specific version for {recv, send}msg - inet: factor out inet_send_prepare() - nilfs2: fix use-after-free bug of struct nilfs_root- nfp: fix use-after-free in area_cache_get() - mISDN: fix use-after-free bugs in l1oip timer handlers - tcp: Fix data races around icsk->icsk_af_ops. - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_reassemble_sdu - !134 scsi: megaraid_sas: Add support for MegaRAID Aero controllers - !138 vfio-pci: Mask cap zero - bnx2x: fix potential memory leak in bnx2x_tpa_stop() - r8152: Rate limit overflow messages - scsi: megaraid_sas: Add support for MegaRAID Aero controllers - vfio-pci: Mask cap zero - tcp/udp: Fix memory leak in ipv6_renew_options(). - net: mvpp2: fix mvpp2 debugfs leak - !159 PCI: Add ACS quirk for Broadcom NICs - !137 net: bonding: Add support for IPV6 ns/na to balance-alb/balance-tlb mode - kcm: avoid potential race in kcm_tx_work - net: bonding: Add support for IPV6 ns/na to balance-alb/balance-tlb mode - !139 nvme: Assign subsys instance from first ctrl - fbdev: smscufx: Fix use-after-free in ufx_ops_open() - nvme: fix controller instance leak - nvme: Assign subsys instance from first ctrl - PCI: Add ACS quirk for Broadcom BCM5750x NICs - PCI: Add ACS quirk for Broadcom BCM57414 NIC- binder: fix UAF of ref->proc caused by race condition - arm64: fix oops in concurrently setting insn_emulation sysctls - mm/hotplug: silence a lockdep splat with printk() - init/Kconfig: Add SMP to the dependencies of QOS_SCHED - mm/rmap: Fix kabi broken in anon_vma - mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse - HID: roccat: Fix use-after-free in roccat_read() - ext4: fix dir corruption when ext4_dx_add_entry() fails - quota: Add more checking after reading from quota file - quota: Replace all block number checking with helper function - quota: Check next/prev free block number after reading from quota file - Revert "quota: Check next/prev free block number after reading from quota file" - Revert "quota: Replace all block number checking with helper function" - Revert "quota: Add more checking after reading from quota file" - tracefs: Only clobber mode/uid/gid on remount if asked - netfilter: ebtables: fix memory leak when blob is malformed - netfilter: ebtables: reject blobs that don't provide all entry points - mm: Fix TLB flush for not-first PFNMAP mappings in unmap_region() - SUNRPC: use _bh spinlocking on ->transport_lock - tcp: fix early ETIMEDOUT after spurious non-SACK RTO - netfilter: br_netfilter: Drop dst references before setting. - debugfs: add debugfs_lookup_and_remove() - tcp: annotate data-race around challenge_timestamp - Revert "mm: kmemleak: take a full lowmem check in kmemleak_*_phys()" - net: neigh: don't call kfree_skb() under spin_lock_irqsave() - neigh: fix possible DoS due to net iface start/stop loop - mm/hugetlb: fix hugetlb not supporting softdirty tracking - asm-generic: sections: refactor memory_intersects - loop: Check for overflow while configuring loop - net: Fix a data-race around sysctl_somaxconn. - net: Fix a data-race around netdev_budget_usecs. - net: Fix a data-race around netdev_budget. - net: Fix a data-race around sysctl_net_busy_read. - net: Fix a data-race around sysctl_net_busy_poll. - net: Fix a data-race around sysctl_tstamp_allow_data. - ratelimit: Fix data-races in ___ratelimit(). - net: Fix data-races around netdev_tstamp_prequeue. - net: Fix data-races around weight_p and dev_weight_[rt]x_bias. - net: ipvtap - add __init/__exit annotations to module init/exit funcs - bonding: 802.3ad: fix no transmission of LACPDUs - xfrm: fix refcount leak in __xfrm_policy_check() - audit: fix potential double free on error path from fsnotify_add_inode_mark - dm: return early from dm_pr_call() if DM device is suspended - NFSv4: Fix races in the legacy idmapper upcall- netfilter: nf_conntrack_irc: Fix forged IP logic - ext4: fix check for block being out of directory size - ext4: check if directory block is within i_size - block: Fix UAF in bd_link_disk_holder() - ALSA: pcm: oss: Fix race at SNDCTL_DSP_SYNC - block: add a new config to control dispatching bios asynchronously - block: fix kabi broken in request_queue - md: enable dispatching bio asynchronously for raid10 by default - arm64/topology: getting preferred sibling's cpumask supported by platform - block: support to dispatch bio asynchronously - block: add new fields in request_queue - md/raid10: convert resync_lock to use seqlock - md/raid10: prevent unnecessary calls to wake_up() in fast path - !122 【kernel-openEuler-1.0-LTS】kernel:fix some issues with 4.19 kernel on openEuler 22.03 system - mm: sharepool: fix potential AA deadlock - mm: sharepool: check size=0 in mg_sp_make_share_k2u() - mm: sharepool: delete redundant check in __sp_remap_get_pfn - Revert "cifs: fix double free race when mount fails in cifs_get_root()" - scsi: hisi_sas: Release resource directly in hisi_sas_abort_task() when NCQ error - scsi: hisi_sas: Enable force phy when SATA disk directly connected - scsi: hisi_sas: Modify v3 HW ATA completion process when SATA disk is in error status - sched: Fix invalid free for tsk->se.dyn_affi_stats - scsi: target: tcmu: Fix warning: 'page' may be used uninitialized - scsi: target: tcmu: Fix crash on ARM during cmd completion - scsi: target: tcmu: Optimize use of flush_dcache_page - scsi: target: tcmu: Fix size in calls to tcmu_flush_dcache_range - signal: fix deadlock caused by calling printk() under sighand->siglock - mm: fix missing handler for __GFP_NOWARN - perf bench futex-wake: Restore thread count default to online CPU count - selftests/bpf: Enlarge select() timeout for test_maps - xfs: preserve default grace interval during quotacheck - i40e: Fix kernel crash during module removal - i40e: Fix use-after-free in i40e_client_subtask() - EDAC: skx_common: downgrade message importance on missing PCI device - x86/entry/64: Don't compile ignore_sysret if 32-bit emulation is enabled - x86: Fix early boot crash on gcc-10, third try - objtool: Don't fail on missing symbol table- KVM: x86/pmu: Update AMD PMC sample period to fix guest NMI-watchdog - KVM: x86: Adjust counter sample period after a wrmsr - KVM: x86: Fix perfctr WRMSR for running counters - perf/core: Provide a kernel-internal interface to recalibrate event period - media: em28xx: initialize refcount before kref_get - mm: avoid potential deadlock tirgged by writing slab-attr-file - ext4: fix use-after-free in ext4_ext_shift_extents - quota: Add more checking after reading from quota file - quota: Replace all block number checking with helper function - quota: Check next/prev free block number after reading from quota file - efi: capsule-loader: Fix use-after-free in efi_capsule_write - ipvlan: Fix out-of-bound bugs caused by unset skb->mac_header - mm/sharepool: Fix UAF reported by KASAN - blk-mq: avoid extending delays of active hctx from blk_mq_delay_run_hw_queues - mm: mem_reliable: Start fallback if no suitable zone found - net: hns3: update hns3 version to 22.9.2 - net: hns3: fix error resume keep alive when remove hclgevf - net: hns3: update hns3 version to 22.9.1 - net: hns3: fix keep alive can not resume problem when system busy- jfs: prevent NULL deref in diFree - jfs: fix GPF in diFree- mm: Force TLB flush for PFNMAP mappings before unlink_file_vma() - video: fbdev: pxa3xx-gcu: Fix integer overflow in pxa3xx_gcu_write- KVM: x86: do not report a vCPU as preempted outside instruction boundaries - KVM: arm64: Write arch.mdcr_el2 changes since last vcpu_load on VHE - netfilter: nf_conntrack_irc: Tighten matching on DCC message - ext4: avoid resizing to a partial cluster size - locking/atomic: Make test_and_*_bit() ordered on failure - geneve: do not use RT_TOS for IPv6 flowlabel - SUNRPC: Reinitialise the backchannel request buffers before reuse - NFSv4/pnfs: Fix a use-after-free bug in open - NFSv4.1: RECLAIM_COMPLETE must handle EACCES - tcp: fix over estimation in sk_forced_mem_schedule() - ext4: fix extent status tree race in writeback error recovery path - ext4: update s_overhead_clusters in the superblock during an on-line resize - ext4: make sure ext4_append() always allocates new block - kprobes: Forbid probing on trampoline and BPF code areas - kfifo: fix kfifo_to_user() return type - profiling: fix shift too large makes kernel panic - serial: 8250_dw: Store LSR into lsr_saved_flags in dw8250_tx_wait_empty() - mm/mmap.c: fix missing call to vm_unacct_memory in mmap_region - mtd: st_spi_fsm: Add a clk_disable_unprepare() in .probe()'s error path - mtd: sm_ftl: Fix deadlock caused by cancel_work_sync in sm_release - can: error: specify the values of data[5..7] of CAN error frames - fs: check FMODE_LSEEK to control internal pipe splicing - tcp: make retransmitted SKB fit into the send window - nohz/full, sched/rt: Fix missed tick-reenabling bug in dequeue_task_rt() - bus: hisi_lpc: fix missing platform_device_put() in hisi_lpc_acpi_probe() - x86/pmem: Fix platform-device leak in error path - selinux: Add boundary check in put_entry() - ACPI: LPSS: Fix missing check in register_device_clock() - fs: Add missing umask strip in vfs_tmpfile - vfs: Check the truncate maximum size in inode_newsize_ok() - tcp: Fix a data-race around sysctl_tcp_comp_sack_nr. - tcp: Fix a data-race around sysctl_tcp_comp_sack_delay_ns. - tcp: Fix a data-race around sysctl_tcp_invalid_ratelimit. - tcp: Fix a data-race around sysctl_tcp_autocorking. - tcp: Fix a data-race around sysctl_tcp_min_rtt_wlen. - tcp: Fix a data-race around sysctl_tcp_min_tso_segs. - igmp: Fix data-races around sysctl_igmp_qrv. - net: ping6: Fix memleak in ipv6_renew_options(). - tcp: Fix a data-race around sysctl_tcp_challenge_ack_limit. - tcp: Fix a data-race around sysctl_tcp_nometrics_save. - tcp: Fix a data-race around sysctl_tcp_frto. - tcp: Fix a data-race around sysctl_tcp_adv_win_scale. - tcp: Fix a data-race around sysctl_tcp_app_win. - tcp: Fix data-races around sysctl_tcp_dsack. - mm/mempolicy: fix uninit-value in mpol_rebind_policy() - tcp: Fix data-races around sysctl_tcp_max_reordering. - tcp: Fix a data-race around sysctl_tcp_rfc1337. - tcp: Fix a data-race around sysctl_tcp_stdurg. - tcp: Fix a data-race around sysctl_tcp_retrans_collapse. - tcp: Fix data-races around sysctl_tcp_slow_start_after_idle. - tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts. - tcp: Fix data-races around sysctl_tcp_recovery. - tcp: Fix a data-race around sysctl_tcp_early_retrans. - tcp: Fix data-races around sysctl_tcp_fastopen. - tcp: Fix a data-race around sysctl_tcp_tw_reuse. - tcp: Fix a data-race around sysctl_tcp_notsent_lowat. - tcp: Fix data-races around some timeout sysctl knobs. - tcp: Fix data-races around sysctl_tcp_reordering. - igmp: Fix a data-race around sysctl_igmp_max_memberships. - igmp: Fix data-races around sysctl_igmp_llm_reports. - tcp: Fix a data-race around sysctl_tcp_probe_interval. - tcp: Fix a data-race around sysctl_tcp_probe_threshold. - tcp: Fix data-races around sysctl_tcp_mtu_probing. - tcp/dccp: Fix a data-race around sysctl_tcp_fwmark_accept. - ip: Fix a data-race around sysctl_fwmark_reflect. - ip: Fix data-races around sysctl_ip_nonlocal_bind. - ip: Fix data-races around sysctl_ip_fwd_use_pmtu. - block: fix the problem of io_ticks becoming smaller - blk-mq: Fix memory leak in blk_mq_init_allocated_queue error handling - block, bfq: save & resume weight on a queue merge/split - ACPICA: Disassembler: create buffer fields in ACPI_PARSE_LOAD_PASS1 - acpi/nfit: improve bounds checking for 'func' - ACPICA: Do not increment operation_region reference counts for field units - ACPICA: Fix exception code class checks - ACPI: configfs: add missing check after configfs_register_default_group() - ACPI: custom_method: fix potential use-after-free issue - ACPI: custom_method: fix a possible memory leak - ACPI: APD: Check for NULL pointer after calling devm_ioremap() - ACPI/IORT: Fix PMCG node single ID mapping handling - ACPI/IORT: Check node revision for PMCG resources - kprobes: don't call disarm_kprobe() for disabled kprobes - x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry - usb: gadget: function: printer: fix use-after-free in __lock_acquire - video: fbdev: i740fb: Error out if 'pixclock' equals zero - lightnvm: disable the subsystem - configfs: fix a race in configfs_lookup() - configfs: fold configfs_attach_attr into configfs_lookup - configfs: make configfs_create() return inode - configfs: factor dirent removal into helpers - configfs: simplify the configfs_dirent_is_ready - configfs: return -ENAMETOOLONG earlier in configfs_lookup- dm-thin: Resume failed in FAIL mode - tpm: fix reference counting for struct tpm_chip - af_key: Do not call xfrm_probe_algs in parallel - net: usb: ax88179_178a: Fix packet receiving - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - net: usb: ax88179_178a: fix packet alignment padding- tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() - tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push() - tty: drop tty_schedule_flip() - tty: the rest, stop using tty_schedule_flip() - tty: drivers/tty/, stop using tty_schedule_flip() - can: bcm/raw/isotp: use per module netdevice notifier - CIFS: Fix retry mid list corruption on reconnects - KVM: arm64: vgic-its: Change default outer cacheability for {PEND, PROP}BASER - xhci: Fix a logic issue when display Zhaoxin XHCI root hub speed - dm verity: set DM_TARGET_IMMUTABLE feature flag - scsi: hisi_sas: Add SATA_DISK_ERR bit handling for v3 hw - Revert "scsi: hisi_sas: Modify v3 HW I/O processing when SATA_DISK_ERR bit is set and NCQ Error occurs" - netfilter: nf_tables: do not allow RULE_ID to refer to another chain - netfilter: nf_tables: do not allow SET_ID to refer to another table- x86/speculation: Add LFENCE to RSB fill sequence - x86/speculation: Add RSB VM Exit protections - Revert "blk-mq: fix null pointer dereference in blk_mq_queue_tag_busy_ite" - blk-mq: fix null pointer dereference in blk_mq_queue_tag_busy_ite - arm64: Avoid premature usercopy failure for __arch_copy_to_user_generic_read - net_sched: cls_route: remove from list when handle is 0- Revert "x86/unwind/orc: Change REG_SP_INDIRECT" - Phytium/S2500: kdump: Avoid vmcore saving failure across multi-socket - PCI: Add config control for phytium ACS quirks - scsi: libiscsi: Teardown iscsi_cls_conn gracefully - scsi: libiscsi: Add iscsi_cls_conn to sysfs after initialization - scsi: iscsi: Add helper functions to manage iscsi_cls_conn - media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - sched: Fix null-ptr-deref in free_fair_sched_group - RDMA/ib_srp: Fix a deadlock - mm/slub: add missing TID updates on slab deactivation - block: fix regression for dm - blk-mq: handle bio after queue is initialized - x86: Clear .brk area at early boot - signal/seccomp: Dump core when there is only one live thread - x86/unwind/orc: Recheck address range after stack info was updated - x86/unwind/orc: Silence warnings caused by missing ORC data - x86/unwind/orc: Change REG_SP_INDIRECT- netfilter: nf_queue: do not allow packet truncation below transport header offset - openvswitch: fix OOB access in reserve_sfa_size() - dm thin: use refcount_t for thin_c reference counting - exec: Force single empty string when argv is empty - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - serial: pl011: UPSTAT_AUTORTS requires .throttle/unthrottle - serial: 8250: fix return error code in serial8250_request_std_resource() - ipv4: Fix data-races around sysctl_ip_dynaddr. - icmp: Fix a data-race around sysctl_icmp_ratemask. - icmp: Fix a data-race around sysctl_icmp_ratelimit. - icmp: Fix data-races around sysctl. - net: Fix data-races around sysctl_mem. - inetpeer: Fix data-races around sysctl. - usbnet: fix memory leak in error case - esp: limit skb_page_frag_refill use to a single page - net: tun: avoid disabling NAPI twice - net: bonding: fix use-after-free after 802.3ad slave unbind - net: bonding: fix possible NULL deref in rlb code - usbnet: fix memory allocation in helpers - net: tun: stop NAPI when detaching queues - net: tun: unlink NAPI from device on destruction - virtio-net: fix race between ndo_open() and virtio_device_ready() - SUNRPC: Fix READ_PLUS crasher - virtio_net: fix xdp_rxq_info bug after suspend/resume - erspan: do not assume transport header is always set - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - ext4: make variable "count" signed - serial: 8250: Store to lsr_save_flags after lsr read - irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - irqchip/gic/realview: Fix refcount leak in realview_gic_of_init - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - ipv6/addrconf: fix a null-ptr-deref bug for ip6_ptr - io_uring: add missing item types for various requests - net/sched: cls_u32: fix possible leak in u32_init_knode() - fq_codel: reject silly quantum parameters - net: sched: sch_teql: fix null-pointer dereference - rcu: Set a maximum limit for back-to-back callback invocation - mm: Fix page counter mismatch in shmem_mfill_atomic_pte - scsi: mpt3sas: Fix unlock imbalance - io-wq: Switch io_wqe_worker's fs before releasing request - ath9k: fix use-after-free in ath9k_hif_usb_rx_cb - Revert "iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping()"- fbcon: Prevent that screen size is smaller than font size - fbcon: Disallow setting font bigger than screen size - fbmem: Check virtual screen sizes in fb_set_var() - xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() - scsi: core: Fix race between handling STS_RESOURCE and completion - block: prevent lockdep false positive warning about 'bd_mutex' - dm verity: allow only one error handling mode - dm verity: Fix compilation warning - dm verity: add root hash pkcs#7 signature verification - jbd2: Fix assertion 'jh->b_frozen_data == NULL' failure when journal aborted - dm btree spine: show warning if node_check failed in node_prep_for_write() - dm btree spine: remove paranoid node_check call in node_prep_for_write() - ext4: Fix race when reusing xattr blocks - ext4: Unindent codeblock in ext4_xattr_block_set() - ext4: Remove EA inode entry from mbcache on inode eviction - mbcache: Add functions to delete entry if unused - mbcache: Don't reclaim used entries - perf/core: Fix data race between perf_event_set_output() and perf_mmap_close()- inotify: show inotify mask flags in proc fdinfo - io_uring: always grab file table for deferred statx - bpf: Don't redirect packets with invalid pkt_len - config: enable CONFIG_QOS_SCHED_DYNAMIC_AFFINITY by default - sched: Add statistics for scheduler dynamic affinity - sched: Adjust cpu range in load balance dynamicly - sched: Adjust wakeup cpu range according CPU util dynamicly - cpuset: Introduce new interface for scheduler dynamic affinity - sched: Introduce dynamic affinity for cfs scheduler - crypto: hisilicon/sec - don't sleep when in softirq - video: fbdev: sm712fb: Fix crash in smtcfb_write() - video: fbdev: sm712fb: Fix crash in smtcfb_read() - scsi: ses: fix slab-out-of-bounds in ses_enclosure_data_process - block: don't delete queue kobject before its children - etmem:fix kernel stack overflow in do_swapcache_reclaim - etmem:fix kasan slab-out-of-bounds in do_swapcache_reclaim - nbd: don't clear 'NBD_CMD_INFLIGHT' flag if request is not completed - blk-throttle: fix io hung due to configuration updates - block: fix NULL pointer dereference in disk_release() - block, bfq: make bfq_has_work() more accurate - blk-mq: fix panic during blk_mq_run_work_fn() - blk-mq: cancel blk-mq dispatch work in both blk_cleanup_queue and disk_release() - blk-mq: move cancel of hctx->run_work to the front of blk_exit_queue - ext4: fix race condition between ext4_ioctl_setflags and ext4_fiemap- block: fix that part scan is disabled in device_add_disk() - Revert "block: rename bd_invalidated" - Revert "block: move the NEED_PART_SCAN flag to struct gendisk" - Revert "block:Fix kabi broken" - rcu/tree: Mark functions as notrace - netfilter: nf_tables: stricter validation of element data - net: rose: fix UAF bugs caused by timer handler - xen/arm: Fix race in RB-tree based P2M accounting - vt: drop old FONT ioctls - dm thin: Fix crash in dm_sm_register_threshold_callback() - xen/blkfront: force data bouncing when backend is untrusted - xen/netfront: force data bouncing when backend is untrusted - xen-netfront: fix potential deadlock in xennet_remove() - xen/netfront: fix leaking data in shared pages - xen/blkfront: fix leaking data in shared pages - xen/blkfront: fix memory allocation flags in blkfront_setup_indirect() - tmpfs: fix the issue that the mount and remount results are inconsistent. - tmpfs: fix undefined-behaviour in shmem_reconfigure() - mm/sharepool: Check sp_is_enabled() before show spa_stat- x86: Fix return value of __setup handlers - x86/delay: Fix the wrong asm constraint in delay_loop() - ACPI: sysfs: Fix BERT error region memory mapping - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd - nbd: fix io hung while disconnecting device - nbd: fix race between nbd_alloc_config() and module removal - nbd: call genl_unregister_family() first in nbd_cleanup() - ip_gre: test csum_start instead of transport header - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - NFSv4: Don't hold the layoutget locks across multiple RPC calls - tcp: tcp_rtx_synack() can be called from process context - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - md: fix an incorrect NULL check in md_reload_sb - md: fix an incorrect NULL check in does_sb_need_changing - ext4: avoid cycles in directory h-tree - ext4: verify dir block before splitting it - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - drivers/base/node.c: fix compaction sysfs file leak - fsnotify: fix wrong lockdep annotations - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - fat: add ratelimit to fat*_ent_bread() - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes - dm stats: add cond_resched when looping over entries - zsmalloc: fix races between asynchronous zspage free and page migration - netfilter: conntrack: re-fetch conntrack after insertion - assoc_array: Fix BUG_ON during garbage collect - net: af_key: check encryption module availability consistency - x86/pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - ARM: 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - ARM: 9196/1: spectre-bhb: enable for Cortex-A15 - block:Fix kabi broken - block: Fix warning in bd_link_disk_holder() - block: move the NEED_PART_SCAN flag to struct gendisk - block: rename bd_invalidated - scsi: hisi_sas: Modify v3 HW I/O processing when SATA_DISK_ERR bit is set and NCQ Error occurs - scsi: hisi_sas: enable use_clustering - scsi: hisi_sas: Change DMA setup lock timeout to 2.5s - x86/speculation/mmio: Print SMT warning - KVM: x86/speculation: Disable Fill buffer clear within guests - x86/speculation/mmio: Reuse SRBDS mitigation for SBDS - x86/speculation/srbds: Update SRBDS mitigation selection - x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data - x86/speculation/mmio: Enable CPU Fill buffer clearing on idle - x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations - x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data - x86/speculation: Add a common function for MD_CLEAR mitigation update - x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug - Documentation: Add documentation for Processor MMIO Stale Data - x86/cpu: Add another Alder Lake CPU to the Intel family - x86/cpu: Add Lakefield, Alder Lake and Rocket Lake models to the to Intel CPU family - x86/cpu: Add Jasper Lake to Intel family - cpu/speculation: Add prototype for cpu_show_srbds() - x86/cpu: Add Elkhart Lake to Intel family - block: open accurate iostat account by default - block: use "precise_iostat" to switch accurate iostat account - block/diskstats: more accurate approximation of io_ticks for slow disks - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages- ext4: correct the misjudgment in ext4_iget_extra_inode - ext4: correct max_inline_xattr_value_size computing - ext4: fix use-after-free in ext4_xattr_set_entry - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h - tracepoint: Add tracepoint_probe_register_may_exist() for BPF tracing - swiotlb: skip swiotlb_bounce when orig_addr is zero - KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - mm/sharepool: Fix using uninitialized sp_flag - mm/sharepool: Add a task_struct parameter for sp_get_local_group() - mm/sharepool: Don't check the DVPP address space range before merging - mm/sharepool: Configure the DVPP range for process - mm/sharepool: Introduce SPG_NON_DVPP flag for sp_group_add_task - mm/sharepool: Update sp_mapping structure - mm/sharepool: Clear the initialization of sp-associated structure for a process - mm/sharepool: Unify the memory allocation process - mm/sharepool: Use vm_private_data to store the spa - mm/sharepool: Share pool statistics adaption - mm/sharepool: Release the sp addr based on the id - mm/sharepool: Add an interface to obtain an id - mm/sharepool: Address space management for sp_group - mm/sharepool: Create global normal and dvpp mapping - mm/sharepool: Delete single-group mode - io_uring: io_close: Set owner as current->files if req->work.files uninitialized- mm/memcontrol: fix wrong vmstats for dying memcg - ext4: recover csum seed of tmp_inode after migrating to extents - xfs: show the proper user quota options - drivers core: node: Use a more typical macro definition style for ACCESS_ATTR - drivers core: Use sysfs_emit for shared_cpu_map_show and shared_cpu_list_show - mm: and drivers core: Convert hugetlb_report_node_meminfo to sysfs_emit - drivers core: Miscellaneous changes for sysfs_emit - drivers core: Remove strcat uses around sysfs_emit and neaten - drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions- arm64: fix out-of-range error when adapting for ARM64_SPECTRE_BHB - xfs: replace -EIO with -EFSCORRUPTED for corrupt metadata - xfs: namecheck directory entry names before listing them - xfs: namecheck attribute names before listing them - xfs: check attribute leaf block structure - xfs: check attribute name validity - xfs: check directory name validity - xfs: scrub should flag dir/attr offsets that aren't mappable with xfs_dablk_t - xfs: abort xattr scrub if fatal signals are pending - tcp: increase source port perturb table to 2^16 - tcp: change source port randomizarion at connect() time - arm64: fix extra cpucaps setup problem - Revert "sched: Fix sched_fork() access an invalid sched_task_group" - Revert "sched: Fix yet more sched_fork() races" - powerpc/32: Fix overread/overwrite of thread_struct via ptrace - sctp: use call_rcu to free endpoint - ext4: convert from atomic_t to refcount_t on ext4_io_end->count - ext4: correct the judgment of BUG in ext4_mb_normalize_request - ext4: fix bug_on ext4_mb_use_inode_pa - HID: holtek: fix mouse probing - HID: check for valid USB device for many HID drivers - HID: wacom: fix problems when device is not a valid USB device - HID: add USB_HID dependancy on some USB HID drivers - HID: add USB_HID dependancy to hid-chicony - HID: add USB_HID dependancy to hid-prodikeys - HID: add hid_is_usb() function to make it simpler for USB detection - netfilter: nf_tables: disallow non-stateful expression in sets earlier - NFSv4: fix open failure with O_ACCMODE flag - Revert "NFSv4: Handle the special Linux file open access mode"- x86: Pin task-stack in __get_wchan() - x86: Fix __get_wchan() for !STACKTRACE - x86/unwind/orc: Fix premature unwind stoppage due to IRET frames - x86/unwind: Prevent false warnings for non-current tasks - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: pcm: Fix races among concurrent prealloc proc writes - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls - ALSA: pcm: Fix races among concurrent read/write and buffer changes - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - NFC: netlink: fix sleep in atomic bug when firmware download timeout - nfc: replace improper check device_is_registered() in netlink related functions - ext4: fix super block checksum incorrect after mount - block: remove the bd_openers checks in blk_drop_partitions - block: fix busy device checking in blk_drop_partitions again - block: fix busy device checking in blk_drop_partitions - ext4: add reserved GDT blocks check- ping: fix address binding wrt vrf - tcp: resalt the secret every 10 seconds - netlink: do not reset transport header in netlink_recvmsg() - ipv4: drop dst in multicast routing path - net: Fix features skip in for_each_netdev_feature() - VFS: Fix memory leak caused by concurrently mounting fs with subtype - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - dm: interlock pending dm_io and dm_wait_for_bios_completion - dm: fix mempool NULL pointer race when completing IO - tcp: make sure treq->af_specific is initialized - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - ip_gre: Make o_seqno start from 0 in native mode - tcp: md5: incorrect tcp_header_len for incoming connections - mtd: rawnand: Fix return value check of wait_for_completion_timeout - mtd: rawnand: fix ecc parameters for mt7622 - hex2bin: fix access beyond string end - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - serial: 8250: Also set sticky MCR bits in console restoration - ext4: force overhead calculation if the s_overhead_cluster makes no sense - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - arm_pmu: Validate single/group leader events - netlink: reset network and mac headers in netlink_dump() - net/packet: fix packet_sock xmit return value checking - mm: page_alloc: fix building error on -Werror=array-compare - etherdevice: Adjust ether_addr* prototypes to silence -Wstringop-overead - smp: Fix offline cpu check in flush_smp_call_function_queue() - ipv6: fix panic when forwarding a pkt with no in6 dev - mm: kmemleak: take a full lowmem check in kmemleak_*_phys() - mm, page_alloc: fix build_zonerefs_node() - cifs: potential buffer overflow in handling symlinks - veth: Ensure eth header is in skb's linear part - mm/sparsemem: fix 'mem_section' will never be NULL gcc 12 warning - mm: don't skip swap entry even if zap_details specified - irqchip/gic-v3: Fix GICR_CTLR.RWP polling - mm/mempolicy: fix mpol_new leak in shared_policy_replace - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - NFS: swap-out must always use STABLE writes. - NFS: swap IO handling is slightly different for O_DIRECT IO - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - NFSv4: Protect the state recovery thread against direct reclaim - macvtap: advertise link netns via netlink - dm ioctl: prevent potential spectre v1 gadget - ipv4: Invalidate neighbour for broadcast address upon address addition - mm/memcontrol: return 1 from cgroup.memory __setup() handler - ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - ext4: don't BUG if someone dirty pages without asking ext4 first - PM: core: keep irq flags in device_pm_check_callbacks() - ACPI/APEI: Limit printable size of BERT table data - ACPICA: Avoid walking the ACPI Namespace if it is not there - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFS: remove unneeded check in decode_devicenotify_args() - serial: 8250: Fix race condition in RTS-after-send handling - serial: 8250_mid: Balance reference count for PCI DMA device - tcp: ensure PMTU updates are processed during fastopen - af_netlink: Fix shift out of bounds in group mask calculation - mtd: rawnand: atmel: fix refcount issue in atmel_nand_controller_init - mtd: onenand: Check for error irq - printk: fix return value of printk.devkmsg __setup handler - perf/core: Fix address filter parser for multiple filters - ACPI: APEI: fix return value of __setup handlers - crypto: authenc - Fix sleep in atomic context in decrypt_tail - PCI: pciehp: Clear cmd_busy bit in polling mode - ACPI: properties: Consistently return -ENOENT if there are no more references - mm,hwpoison: unmap poisoned page before invalidation - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - mempolicy: mbind_range() set_policy() after vma_merge() - mm: invalidate hwpoison page cache page in fault path - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - NFSD: prevent integer overflow on 32 bit systems - SUNRPC: avoid race between mod_timer() and del_timer_sync() - xfrm: fix tunnel model fragmentation behavior - sched/fair: Fix enqueue_task_fair() warning some more - sched/fair: Fix enqueue_task_fair warning - floppy: disable FDRAWCMD by default - perf: Fix sys_perf_event_open() race against self - KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID- net: hns3: update hns3 version to 22.5.1 - net: hns3: fix vf link setting failed when no vf driver loaded - arm64: Add memmap reserve range check to avoid conflict - ext4: fix bug_on in ext4_writepages - ext4: fix warning in ext4_handle_inode_extension - ext4: fix use-after-free in ext4_rename_dir_prepare - uce: coredump scenario support kernel recovery - NULL pointer dereference on rmmod iptable_mangle.- sched/qos: Add qos_tg_{throttle,unthrottle}_{up,down} - sched: Throttle offline task at tracehook_notify_resume() - sched: enable CONFIG_QOS_SCHED on arm64 - sched/qos: Remove dependency CONFIG_x86 - net/sched: cls_u32: fix netns refcount changes in u32_change() - mm: hwpoison: enable memory error handling on 1GB hugepage optionaly - mm: fix gup_pud_range - nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs - ext4: fix warning when submitting superblock in ext4_commit_super() - ext4: fix bug_on in __es_tree_search - secure_seq: use the 64 bits of the siphash for port offset calculation - floppy: use a statically allocated error counter - mmc: block: fix read single on recovery logic - SUNRPC: Ensure that the gssproxy client can start in a connected state - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - ax25: Fix UAF bugs in ax25 timers - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - drm/vgem: Close use-after-free race in vgem_gem_create - mm/memory.c: update the first page in clear_gigantic_page_chunk- scsi: hisi_sas: Change hisi_sas_control_phy() phyup timeout - scsi: hisi_sas: Fix SAS disk sense info print incorrectly sometimes - scsi: hisi_sas: Don't fail IT nexus reset for Open Reject timeout - mm/share_pool: Support read-only memory allocation - mm: clear_freelist_page: Provide timeout mechanism for worker runtime - io_uring: fix race between timeout flush and removal - ax25: fix UAF bug in ax25_send_control() - ax25: Fix refcount leaks caused by ax25_cb_del() - ax25: fix UAF bugs of net_device caused by rebinding operation - ax25: fix reference count leaks of ax25_dev - ax25: add refcount in ax25_dev to avoid UAF bugs - ext4: fix bug_on in start_this_handle during umount filesystem - ext4: unregister sysfs path before destroying jbd2 journal - ext4: fix use-after-free in ext4_search_dir - mm: Update reliable flag in memory allocaion for reliable task only in task context - mm: refactor the reclaim thread of page cache from per-cpu to per-node- ixgbevf: add disable link state - ixgbe: add improvement for MDD response functionality - ixgbe: add the ability for the PF to disable VF link state - io_uring: fix false WARN_ONCE - mm/sharepool: Fix sharepool node id invalid when using sp_alloc - sharepool: fix hisi oom deadlock - share_pool: Fix ABBA deadlock - net: ipv6: fix skb_over_panic in __ip6_append_data - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - mm: fix dereference a null pointer in migrate[_huge]_page_move_mapping() - cpuset: Fix unsafe lock order between cpuset lock and cpuslock - tcp: make tcp_read_sock() more robust - xfrm: Fix xfrm migrate issues when address family changes - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" - ext4: add check to prevent attempting to resize an fs with sparse_super2 - net-sysfs: add check for netdevice being present to speed_show - memfd: fix F_SEAL_WRITE after shmem huge page allocated - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: don't assume sk is full socket - xfrm: enforce validity of offload input flags - xfrm: fix the if_id check in changelink - netfilter: fix use-after-free in __nf_register_net_hook() - xfrm: fix MTU regression - cifs: fix double free race when mount fails in cifs_get_root() - mtd: rawnand: brcmnand: Fixed incorrect sub-page ECC status - x86/asm: Move native_write_cr0/4() out of line - x86/asm: Pin sensitive CR0 bits - x86/asm: Pin sensitive CR4 bits - mm: Add more debug info if oom occurs - mm: Fix reliable task used problem shown in meminfo - mm: Show correct reliable pagecache size- hamradio: improve the incomplete fix to avoid NPD - hamradio: defer ax25 kfree after unregister_netdev - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path - llc: only change llc->dev when bind() succeeds - netdevice: add the case if dev is NULL - llc: fix netdevice reference leaks in llc_ui_bind() - ARM: fix Thumb2 regression with Spectre BHB - ARM: Spectre-BHB: provide empty stub for non-config - ARM: fix build warning in proc-v7-bugs.c - ARM: Do not use NOCROSSREFS directive with ld.lld - ARM: fix co-processor register typo - ARM: fix build error when BPF_SYSCALL is disabled - ARM: include unprivileged BPF status in Spectre V2 reporting - ARM: Spectre-BHB workaround - ARM: use LOADADDR() to get load address of sections - ARM: early traps initialisation - ARM: report Spectre v2 status through sysfs - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path- Revert "perf: Paper over the hw.target problems" - ax25: Fix NULL pointer dereferences in ax25 timers - ax25: fix NPD bug in ax25_disconnect - ax25: Fix NULL pointer dereference in ax25_kill_by_device - ax25: improve the incomplete fix to avoid UAF and NPD bugs - ax25: NPD bug when detaching AX25 device - objtool: Fix stack offset tracking for indirect CFAs - x86/entry/64: Fix unwind hints in kernel exit path - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - arm64: Use the clearbhb instruction in mitigations - arm64: add ID_AA64ISAR2_EL1 sys register - KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - arm64: Mitigate spectre style branch history side channels - KVM: arm64: Add templates for BHB mitigation sequences - arm64: proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - arm64: Add percpu vectors for EL1 - arm64: entry: Add macro for reading symbol addresses from the trampoline - arm64: entry: Add vectors that have the bhb mitigation sequences - arm64: entry: Add non-kpti __bp_harden_el1_vectors for mitigations - arm64: entry: Allow the trampoline text to occupy multiple pages - arm64: entry: Make the kpti trampoline's kpti sequence optional - arm64: entry: Move trampoline macros out of ifdef'd section - arm64: entry: Don't assume tramp_vectors is the start of the vectors - arm64: entry: Allow tramp_alias to access symbols after the 4K boundary - arm64: entry: Move the trampoline data page before the text page - arm64: entry: Free up another register on kpti's tramp_exit path - arm64: entry: Make the trampoline cleanup optional - arm64: entry.S: Add ventry overflow sanity checks - x86/speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT - x86/speculation: Warn about Spectre v2 LFENCE mitigation - x86/speculation: Update link to AMD speculation whitepaper - x86/speculation: Use generic retpoline by default on AMD - x86/speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - Documentation/hw-vuln: Update spectre doc - x86/speculation: Add eIBRS + Retpoline options - x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - x86,bugs: Unconditionally allow spectre_v2=retpoline,amd - x86/speculation: Merge one test in spectre_v2_user_select_mitigation() - mm/memory.c: fix clear_gigantic_page_chunk/bin/sh/bin/sh/bin/shcpufreq-utilscpufrequtilscpuspeedkernel-tools-libsobs-worker-backend-test-x86-0009.novalocal 1713933591  !"#csdefritpt4.19.90-2404.3.0.0247.oe11:009-0.6.p11:009-0.6.p14.19.90-2404.3.0.0247.oe14.19.90-2404.3.0.0247.oe11:009-0.6.p11:009-0.6.p11:1.5-16 cpupowercentrino-decodecpupowergpio-event-mongpio-hammeriio_event_monitoriio_generic_bufferkvm_statlsgpiolsiiopowernow-k8-decodetmonturbostatx86_energy_perf_policycpupower.servicelibcpupower.so.0libcpupower.so.0.0.1kernel-toolsCOPYINGcpupower.mocpupower.mocpupower.mocpupower.mocpupower.mocpupower-frequency-info.1.gzcpupower-frequency-set.1.gzcpupower-idle-info.1.gzcpupower-idle-set.1.gzcpupower-info.1.gzcpupower-monitor.1.gzcpupower-set.1.gzcpupower.1.gzkvm_stat.1.gzturbostat.8.gzx86_energy_perf_policy.8.gz/etc/sysconfig//usr/bin//usr/lib/systemd/system//usr/lib64//usr/share/licenses//usr/share/licenses/kernel-tools//usr/share/locale/cs/LC_MESSAGES//usr/share/locale/de/LC_MESSAGES//usr/share/locale/fr/LC_MESSAGES//usr/share/locale/it/LC_MESSAGES//usr/share/locale/pt/LC_MESSAGES//usr/share/man/man1//usr/share/man/man8/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/openEuler/openEuler-hardened-cc1 -m64 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection obs://private/openEuler:20.03:LTS:SP1/standard_x86_64/28b4c5caa6e8f007d5b573133c2187ac-kernelcpioxz2x86_64-openEuler-linux-gnu ASCII textELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=efd1d240b6c8efdc7005219dc06cc0c145c6f357, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=04438e35d69ee143eab54f21150abd7e72114993, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=fef24259bbcb1b2f584d41a382d39b7cf4c42d61, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=013ae7dca0eb975c0f04bd618b8d64a390744163, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=08c4c3a20b537a1e220ced1e3bba49119d8d618d, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=b0d8daec1476b632ea3260fd5c21fdcb429602a0, for GNU/Linux 3.2.0, strippedPython script, ASCII text executableELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=0e0294a3cfc741bf94fc7b7d34abd5cbca1be392, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=4002684832964e96201c58bee86135cc5509384e, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=2c06280e4c34a97fca0e14c09512c106d07686a8, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=fadb957469c8e8cd8260bd2f6e32aed98c64179e, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=e536de7f7f9aaf8c6634104dd9a11527c663746f, for GNU/Linux 3.2.0, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=553efacc7377283d1b24c69ea510e0bad155c758, for GNU/Linux 3.2.0, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=2aa41d146cffd8bf6b51c45efdd958376037c96e, strippeddirectorytroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text (gzip compressed data, max compression, from Unix)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)&-.4;@MU\ R R RRRRRRRRR R RR RRRRRR R R RRRR R R RRRRR R R RRRRR R RR RRRR R R RRRRR R R RRRR R RRRRRR R RR RRRRRRRRR R R R RRRR R R R RRRPRR RR RRlz@,utf-88260773ea9ce52bdb99f8df0999ce77defa6d2e9d1f664056c435772564e291a?7zXZ !#,] b2u Q{LY-DQؖJ9>uhƽ-gK^{_RW.q3Ruw,pa^ F+HlFpe:.Y i'sc}49-iobW>xz`3-+ՇM g͆_ayo%zv -Uڂe-~PJ وf QͤTL-TV uT[CgVFX8' HƟ&GV|I1,,=遑t4Y bN=5/>\pDC+/-ʣHbþSDe 2lj2Ϸ<_`i٠SCDuzȶϵ3OL\}YT_+[*FwSa&ogEibwy0DYjR8_uT#5-|w5&S wyzx8vHWX֮~;L|kF-V+mbMnjEcux'e-]uφ;a1߁MCXʝTVvMQcX^斈 ٿf m^OThAA9Gqer]j3BrG)UlG٥r7ok=N(&+e',)cWg}yQMz`GrT(;Ș]wrqXE..} Ќ͹=kba|yGn-mK;V@R@weKdd,5_b#hsߌ߻Xի=Ї(9`?j;L" v3')m{٢o~/a3ϝenS:\ M~uKmX! ҵcq犹1/"*u߮"KY@%+7j1@PPw~^5m F"!T`syի@}? ̐ hodQV~f/λ>kGjz<*njjvV ΘȜf mg~8]il\=+no*&[ߏR~XCh+!jИ-)l4U)p7pԽ' _j j}mIP)DBnfޘj5ӻEs ׆].&,iN~ `aCr' Ø۽$z69煒3S I;I`zg_Ya\Mq_&hs`):"@H2~3{$@hHZ>+47|<w )TVBLwZ֥XFZܥ1v.@F`Ve}%ikN^VG:jy^/=ȠG%,rstVetљ5e5d̉QEӊCڝLʃT4_ء(;@pGjWac8{0qΡ߱E"vÉ4JiSګ}sGȄ:hyBR`:AVzߊ̄*v]0!YfH4 DkhA&i޸t)جI\{ SN.A?0I)EutaY*ថTM>BJ;|aYޢ>wboז Ø@Ej1>JNs` ٰ IHu5,$FjG +x"/bT0BFF]>Sb: QzĈ/A 7$&xA[7?+5Y֑}0S7q7~Ci.x~@`}Q/$YYŎbkgPP 9l#$Uy1M4D2*`8x;-x]ҭUɼ AE D/&=q#(HCX]?,1褳t%Oڟ7s2S"D.[5}^iYC3h@ A֨{ fV2eHٕy&rZHqP|?OZ,EK/qZe"N CLNX{Q`ݜ W~b1TH{k;C f+hUģؚF }x;ՈNaK͸pehX3X'm&^AҒ56N=}d"18„K ɤsT%J;Ԝ7aq[k0 Zu޿lɑ"#oeښ5w/nMmY<Æ SpپF]V~\CmGۥodžF:Y}{iM2ͤ.[(tXcAĞ.i C3fPÐ$ [Cum(3MOGVHw^L*`|U ~=Q}2|REE]4>Ŵ'B(7PgG_I5΄WkZEm#g',xMjTrDwA#w%z, -eUھ*]@\X6yc<$'Y9F!'j/ T1W3mxY`J!)Y۳ dI&~`H_i$]#{pJ<>!h4 B>AI#c( ~8 djԛ? c-)#W5(Ma)mIvovsĪ5f³ d #zdFc6 I;} ã;GZ1z~k^V4N%i>m_MFSq%8E+w\ܒ{: loljKaQRiHӫ0]wWE$q\<^nS  ^J=SJOn&iXBB ɆNqvT7WK9j6<2$!e{w[5S͠CSKm%ǰ勫2bq6Ì = WJc^D }_j~w#2^PF+c P̣CJ7|uzB"T&w11ȯ7.7YmO8h s{]G =8<{XSUf̖N驸2wA>$ L9ʡLE-`9u=2RL(V_ȹ K|$cl>)+ vS؁0↓nC ئtGrր7 mTڤhXF[pB])  R9 Dzyb߆ !He6 7/Oe%*{8ZQc7([".Kim`kT̡ws~\F0R`=*l8F ]5UYHeE#BMԽ{2U2LB䥅o:+Q4%^FZ v_ƭcݳξ۟d=m5Gnb/k8O$g 8̟v8O\UNXÈi5Ep:I;H_DPfUaSZt/{H&,oFٛIf5Sz!=ab+8emKPWf=lXf5wi%\)mw/AxYz\LssYhuzn+/'klN y}8sqh, $cʪ>hj .{FPU[U#ٛ$qfOÔb0Ovu^rՎ}]< #u7k+u<;loשjӦ~,_Î埁^Y`ܹ3TShj>4~f N '3Hž[H2b[M7ɞiXswkW94e]T>4=q,ȃ}׎C_Rmch U 2pgFGgCП;کLT3/ΖA3,xHO,imn3(w!z7d2oy=.')3ƌƔ݅51gT-b(G/⫴MՌawDL0)\0*D'YJzA&^5{=Pŀh<Մ~N&QKEzs0VVR2:*a;.)54;z(t|ͨM/ jO3Hz5 oC'29xcryK_ȹEFFdqSCt6̙:J4*<&Lsd9cy*^r ƴT7iRv穳u AJKU|ߖ;RW.@}3m ^o՞/s&DŽ07Px84y"N|g;,: &?ZZ=ȩi 4pu8Ǽ,T4 _䱕t ~K Jh(VJF; ~рF< {5/ GLKUw4F7N@?Ɩ8,a;s+LCl\+aԽ+2>$v_nIhJ]h=?TNT"zU2rsg}@l![ReJ }|`P1`qJJ'{=ev38UgJ [^@R؛n jΗj@" N߂4 t`.g ΄%s8W2!.؁[3]J$Hxץ$"GB)Md@S(Zl<$v/h^G(Pby,y_LXPB(zJ ,Nҝ@X'5_lpA8/4bj{hB/ص/XbZG;7v0~B @tm~;8X۪n:0sp k_n{ސe!D8a*&iw-Jv?w*Bn9⻵Pрݢ\5Tـ e)7tb>"_ j!y&zc:n'NzCr5:ypЭϪn-E51<+ "R"ăZ;Ax@ˤ\2[y@حEqNzS/*l#B7j2Bɗ*Y]]RdS\4w:.{)ʰC=oi;2"@ԦtQ]k1ֻ.(h2SW)O\wnlb^8QN_Ӣw_LH ݤyYj梇dg2*.d`36%Eh4a8.gL0]WcDiŔ`vDwۣiEk]a'jcVr/oEEP}\] Qi&sgmeۗ4v Y+ݜrK$ DS޴jZRLmhZ޽f7bϸڻq<@U,V(yȻlVP aD 3$5Ce\O̚- t=)fFM}2{Y4[Ljz3hXb]M| H&|.a*:Q< ƖS˳92N߉79O35+a]+Q9 3ot-ZbV+ei@MeUߝ2?sոSLKak2ڠ땽C51fwU!C&.mj&_pb,u*k_Oav:4fض#].pQl3J 3f3jexUQC$xˇL]h z3a1 ~ݺĮTA 0@y5nth89^bۆ0;TS& oYM*]zVޭMKBF;_^ҌovH|z bt95"\ded^D[O @Vf'6CB'wo[⍡M!Ԋ[7_\EǏMYAS}~Ci|'2F=xSg=WOsևp" 4 F䗫ʯlt:/`סN>fe:ZJSI.qjxe9Nɘ35W/ʣa,aU_fmZn'gm?M%-%a2 Ae8Q3EB>`FlLo3hO75Gpoրn ?%,B#,Jo% *q NWMőK3- {vfk(="L씸}A9%M]:;F*^Σ|jf=/W3[ʝz(1H/+gOk{e3 =_Oc򍩖$AAiU{Jŋb6T,ZM6 DP0ߡԪM*N8Wۅ,sf,0X4,]“ ̚K"ҟsK qҤ*(''GrWv'aRV[iU:A=p0.kI2 C R՝ kLrȃPl |^X\1(zp'Pc9&~uazԮ8uo3vʼntjB@=AUZ,9_<&8З$d^vU3ewK! j)m fZ 0ȻftiM3͆nJm$h !d(#~q^A^?W)3^%Ed ILPǒCZkEE1u.?ɀ{=UvU" :ݶ\#V2Aם>I/{(C3lόH`mIc'{p(խ9ܡ|f??FqÌ'LUZ{{ Kӕm@/x 6Y]8VjMG\m7oWpks~H : TKZB 5=!~ #HT\ª N.x^dhWaG"nMW^ACGPYEVE,/$&È{"b* 7oA6 g`T=TjuPpoDk;HyL>_liA,FփCV {V}[f ﲚ';"EoKS͇ `$@W[r&1e`^J/Q$Y3mbZ19n38.@dHHmx,j9۽0V[k^Hǽ9YUpIi+;&9o7|uO=Mj(_b=c8)|]%t|&Қ<`R9JQz8@fOkae]hr^G:aÎOs$J,v7gjG eyИVA v2&AlzdhO.O5.cbg r@֤^BcRI爙75fcOɵB fn 665G* ہov7dur !)P5 W-_A1H;%sB{4Z y"W~7S %#K}ɡș /4R`85HJh7i6(.&|E$& Kb>cQbc^X:hy?aO5`m1Gg},> 'hӽ܂q#Um˘؋Br:ee)ѭjH>qDΑO7ϪY,\e"HŽJ3y}qS(+|I4n1D%|x;3ةQӔLb@.j?UuNP90R>$s~ 2%F`Խ8Ax">T؋)nՃ:Մk|\*MnvaP;OdGBDe |ޒ)K3S;,*c>9iZ=+bP$i.`ҍ/[!6}kNH?ϘoثykCqDEbܲv^_i(uwl#Ԣm=@p])E ) ]IKk{4;FP̌=T,h.2?&EJNue4qA@zmYUIĕ 'HBi%>NJޟje#T3> .i"HWw~Ly^MJC0- 74:"1"ߖۂ³ȲF"UE5cjY ωCȪldx1c.-0:4o[ڵ Qz{XV>`ǰh!nQcspaFjaQJKhwFSF{@qiؼrS9j T֗SǏinb5_^Hjj|~:[O1cEpG²{p +xb?/k =]:Ͽ zyz&U 6O#gI/1 ,Z(!GqIbj?9+ .@2t>>j݁#+aL߳vKieyrpͧd&`\BhpXse!$i/@h 0{y#ϹF?C-V+2x6h,~BkCp:* C&Q`A!TڀQ&>SqC >츂ԫ Nz8B1Kڗ;vm<8L5'31g'~KI[`a=eT ?k/K*EzԔpqi꿩Գ"- "jfyzm='pᰬ*חrLIh2}Ag!Wn@rNbX+nܞDž? OmTn7BٝfKL-!Aj 'UqC 3qHqaYf]rW_b[p(gI6f <T@ήI 62i8W2cWK8[tИSo&Vr LAyDjiv_ ʿjWӪ@wV8 deT۬$ð!DO *CK%F1jR}"B)\ѨwF4-Sf;tz/CGLtq=&/s{ketuF͞=OR5D]0/Y4t2FïAwB+ }Dy;spͦ4}]>;y)W^Tit9bJ/c-hj ͆%;P OqR HiQO.?*A2OSm/8(?& rCXH=n*!321ko!-?"9C0_ג9g] KI{ST@:Ed^Q[ߖoӵ>l[ 2  @ڄ`4[1^A _K%W{a+$.=~X]P?b/E>B.`.AE<׸bN [e+qj vS"!vGk1\CKa#c? ;bC 1ذI qBSo%K(~x:(ź)Iʼݕ{s47fqLggv+#\ ltKBԹ%@>vhC[1[:荩7N6Nfw7/bjE _x(0(hOI{q*8XG'gE8S%4]{K@2ľ]&i+k 4hNO1(yFc"D-1zܬA\CQ|LH3?K(i`Gl/?N1L.f[%31h^lQbZ~.dNN7(U8CZ%gVX ۛ(~] 4~zZU1 [x4{9)Q*`;Ff-_SUޞނ*Xnϵ}UD#f\H2Z/GQq泉T{EjjN&6H)a&Qg"Ug3U,[[.nUlXdpț@([Ph*/d2eA4UR~sjOMfgϼ ɮij>XnnӷABWzO5MDĵ))"5OzۃsZ'ޠ7ȕEB.5#ʰz+TZ՟MqU^$^ X PHEP };bP1gj姥r Vq(aNp~4>Cΐdoޡ|#=Xx7XH}yEgH&*_x@мUuhCC~Lry*tC-5}bv(>xokp`\0 ;bvm2!eBr=/Z03=_eK%9iXBƯ9z:VYNY2'4V?m1G}D@u"簪o̤ބ6=y-}AbmW 9 }u$ &Rj#O@/qyW8>@j5쟄N첌i o$C|鯐@Ol' GyLl7% OUޖiy$XNcGMl{CжyHgqfTHZD'3ڌlL,`q1أ2ɧ@1F*Fq$"np rD)4f::0P Zr^@jv`_ p{|el\9)|ERQϷJso%ҋ*Tnbk'l .YKDdXy녍 ULϘR>-)D+bsY;E8V[OMs4~UN[/M9;NTkj+oc,\Y 0ҧz@㨚a-{"+{Bo\h9מ]kԀ/ieNi6U4}6_HlF,hSw6~&羖MOUr 'bx&dlpCF h`nuphf]yO3]"Ě1&lG RN|c#ABb,λ PK,?]()r݂B~ R̉cTmj~ kR=OS4ӽ)KLA҈mw+2Ll @팉+I:ȏg ʧ_2M2.FhBzcق?KGp$x,jq}Dx )3s6&:ZEjP2 " e XIk妄t7z:fdI{r}amZ!*"LZH|EkkNE/>:?DJX=dP-+l3 y;n=7f U{ԔS-yٓv?cbH'#.I!础cM$ TO?)S+.Tmg`f_M23 V\!"X2tI ~TaX#vua;`n"+YujV~g~yCsҶfsY67=@hךCY$@XuL(0?}CQ$ʿ}U}3;M4dʹFњ-F=n`j`RG*;I;FZ3RƐ,ܸ 0'g*UO5R *l:Sx\KEC,hj]3)/I֜puYlUqvNo(>o j R@v&(Zfx˅7 &/5y$!˟zj2r`VZouh"KtrPyBV=e "}hz=p}3&kL>tPq .ZNÄ𗿀FQR\[Qw֎.vDA GfUz@?#46 HL ANLNTM*`/D}m* 'Sځ檛f42.ſgr5ڠ ^s#ܗy"nɛa2mzPD5 '4}Ψhs!R=l'PSF%rd~`Ar#,`Re)=dxYLMk!9|%ncq*II2Ҳp*nv,!3/򲇛lN4( 'x֍LsslYzU(- qD+lG:?CYvt#wx/ҫ^S7YPabC;UxV2$ip>/!pozWo1i(to$پm ²̦WtFR]0K+'/f\ۧv@,xtz%f=i]72>SxލF^Y-v%b`7qXøoA7P}Q=U .y.9]Χtд^ʧ -m'1)2:Ju(aOHY#j٩}dkCU]7{G^ޕiHwHά@/ ` [Ge=qȸ;j~""VF5'C~| P> |b ( 2&&toQvz|&+EVdPKaPy^61tn) 4U7*Ba-bw ^d֔O;oMqj.ߴ[AťHpwU,#A*J_dޓ]FjȄf&T<]ND$(BI~aB\yYKxw$1Wl/zGM(rttb̌Yt b'ďoqXvJ;װuwh_pץ&zΦD2߬AրT/Qघ&Vl胐0).z|\kP?UYFN\ͥ41P#5T`+ġQVI# =.Eqjpp mSoQtjdF:Vm8 flЯQ_/( trS2I}p, ]̱ `'vM!'<&": \ƶk(ƒiTRwQo xf= J&: 49Gl=|5+Z&v>6Bɥ\ޞAbXly-Z"wk%1I,,/ 2Rz;A}.M=iڋY ȤO%tMJ}Zі,hay=+=܆qkԚє4ǔ +66Xj/ƯʮV {eWZIJ6 c%BЕE ꄝQjFTmMH"W{zoqF* s|Inpxr$gT AH&*y?RnUHQ&Wc!S&?ɏΆ`in=[7}?j}.?$Gk-v.^5[`:V{.8F_3$ 0#/E2RZRuv9WM;ܻ^$E<{4MWt%81-tn<4 H7I=93yw2f ?~,}{|}G:"ӻJ_o]X;`8`8r97}7Duˢ=T5]5Z (u5@uEs) *xf,z37Ws 22~2 f % r!L?nh w}fHAVD_p7]LGHڇKQRAYhQ3*Ay@zH #ã;uMh*ܧ(mk7 LggyzqLzl^~[-2b^bf]BRfk1k:#(N6 *xFO䈽o;$.a3rw0<;rCI$i2TE`"k$ث!%[| ~Y HnnDCJy3>uK-z@N:칺s[t7`*\f2W 7W~мBcæI/7k?܀Gxc:mݮ*ECh} \#$x/nˋP(Llcd3A5.5M#_+3IN"nC2S\x|#mx&K ʹtNGIτq{CZ2+vڵ&bG a*զ`>zʂ' )I}y{:\?Zѻs_H%q-$X 1_/ Y_3hL0 SÎ}ּcqHBE3MNZtt"[!N' <ٿ)35ZRZMd=@,kFn,Ƴ.e!c$N6|VvmG"90IɠA6[f]i]DcIٞkvpj"]ie%Ԡe%y#^ފ' nx- QB}۰:H@xsi(G2W!0'+-b[ĄcPH{$@b;# 9CҿXЍ`cn3r-!aqepoޯc C]%l_!Jg ABY?m!EBƍݚ3{)΋[P0[+)5m bH#d\))1>2nMl9@jvW 27KQى#\>#܅R`hdkL f+v4C_ܒJF݀ER[n 1) -^ݖI$8.69e:6[ȵ [vNDs~sxz@d=QцVA \= )e4_W$ork JqnƸC٦(, Iq/#+Q aQԓt F3 '  A9դ2\;V\ jTn?sV/ns4\i\2u $%""1 iEaMVXN(/̓"a%-n }cHM|b0fF&K{֚I튩 e}aƞ_J'R&jFek] &ptWa6m~d[ MkIdv! [[SA@ s)J4sxETe,qVʧijp22LU-] *Xx0o0gD<7~@np^7(0HXlp ﺝ*z<F/m:`|](g9d! #u7LK͊6ƃ[}}\n9kbX;t`*ܖ~O|w7rr %9kDE ;i-k$Iw+#q5MN hS\XNu"+E}&!Lp990 ]v(Fgz-VBn[zjk$}$| mA\wrKGxv[Qqvg|~nbHW8-}3e ?j!Z1?,ё}{reν!B)<膹 Eύ6+ s׿5al+ Z b(iC^߫* z5s`gѕL܎,tl gtVYƸ;omuӛ <g{ErIo t`2LPHN]͞1& CM˘)Y<܋$q֨TDr-~{"ˁnJZVUR>ٴ#KG7;.ݚKzaw/Qief-ApƦ76QgF!17J\|4`1GӖ@?ݸ$u\4pGcږVΊ4Z)q;qCܐ:nHM 7}6=IO?3~֙rOhidnDQU*5 b х('h,+J!y *|Zw㋗G6bQ[ t>sxck)QW yZ/VhxYFr)XǯieqzP3XI' ?Pxnt<:i1wH/ϯ/`]i$ӆDʮO~VbgTKo4&G@Ҧ+Ikauɱs\mzP TLn+0?U8Gk`!}t4$8誝?2)bdAVF T &V$}uI'F.Y뒻Ӂ.m<<}D'mT/gjErr4h_'E-hrCms`3ybJL;湠糆O)G1|.˪f mQ0K7jO%N7B엚Ė{.L&>$fg ~x1[Ԯ>}^h__EPƨ54!nS`t J+DTA d)`L%7 W_?b41 _Ĭ8&H-ۭ4Rl:}f8%W#;ۚ[͢r>n!ȶYքx oɡPar\N{8EuNJ5iKb#חj#_ ̧7D??>6Ķ|.w:uwK;ueXcҳ/WD+(oF̓%$@VD~!޵"R>-j}v~O=̡(x[Z 6T ES D׷6QmIz{%yZt5~Y Xfv=#m̱e&OVJ/jm oPp%zGN2fWV%MmT80RŶо>f=u -8[S=akL[^A^wbua^;QKe'p^MH=5ٚҿ@8Ԗn{v,Xid xw"#hKˉsj2O&e)eљV^!y䫗g)0Q3<[W\ .a޺89*bRJ&yM(y飺gn>kSewʰuSS2mv𗄵ȏxoZ[WbeK3gw--#ؠDS80j R!<NAg6lja~kbo?3LOy %>OC7%iVȹuHN80ą^;$X45~i.εg˳BlSEѢ@jAfAj(˟YO[]0Xc! _VhwP ' ΙoNFBy{q]cz z`hp̙ 风1iu'0Iٗk<+` |P3{pg#MS?KZr]v N3CptM;OkMDrK?ׅh@ *]P3zԝ;zPCޏ^z5| 9Qe_RH6q2錗Qauv»룤`5c(A0*$DW/*lKMmE;QC_l:[3PO`m%C=hdtw{{?c&ݣ &.e(5DP 1VʀSG>VԙL{(48He-e3GZ[Z(e4Q7&!+ gC!1yV[:&RĶkg?POheM(`Ȼo ^B3I;܅$ 䠢hR+2):;^3 gs'"ahLG֚CI;WՙLnOsD%@z,2 o]7doq'*5l|q,LtK7JhHW(KuؓG +($ځV?ڥJ*"|6AN:`i}KU*7Z|qe}7޶+,X{e*'5O(& j;,K< <˟Z| aF 2i>>ѷ:jVMe@t+ɰI(ky (GY\?ͥH\V5wfM6ʃMv bFZq60:c6 $HaONw46ɱeV+ 5Oӣ2Rս%Z9-LLRlj)K c8E5@4>ZON)C7'Df ̀Ka/6!}܊kP#ԫ;6,YZar( 6.pc+W/悰 'Bnk[t 3JfbH]{kxTMVI`0?$﫸!N 7Gn10 [d)ٚX-~+ ls7N δӸ:: @[4jh\H۔b_s`n<8[M3^tN>qgZSFlizpUA(Fd'#pb1ӇԙSn_ngAKV>L[(#2GWU}{{a^ßtR5/#}6 N *X$9xAj? 9Bc Ɯؖ+#>7'aEx!@`d%At| E|'  ?pG?ݓHDܸ϶m4ASv)(|g\2?OR%J4)hq蟀(b 0!G{ze7Y8LՇ'dFQl;Jx|;<|3@ԓH%Rpu@LM?S]sIѝG!"Hgl/C%ng (=^WʛI#J/V}͖9Y`DRMݠo'6uFQNɣ[JkABe˵ S٩:bRG@M_-LD)/=zH ~~W$S̑^3d> Po]- v*zv:[a/̂$(0X/:u[7䲇[gC[yncpO45r$1$(gwP^د^\W?/LoplxY@[!<{eCU `e^,(a*%١aGݝKfío 푇shQ 4JwAm&ync.e֠.:g͂sXw $3HI%\]uh{)RRBxC|tGئHv$Ё?(^"B0y_7zj2M+wb{e1~) @V%Lh :34P#Eɪɚ__N9y$}dAWḶ8Tˣǯ܃8 }bc \Cu33$Dޅ]XI1ݲ$+3 Q*dV{V{wUZ6n3@2F8Y?d@hjƓJ.n}3ڟO.uOH4XP%O-\aSz^bEe`,VeBETfNb=hg۔14oS4%DHyô#YWEPF]C'yh-p&lK#U,7eQi4L$4P)J{ûМ}<$F ޑU (2WTQ j=.$f|S!㞐 ~L0&J_;RFhKGܪZ4Tط.ʆ$)3p\-{UB=l u<*AK^0>ʪO{#(~HOE.Jts⼊#@PNZZKD0\϶{͚OU~HdΌ4=w5P7p:z]3'?c-7 )EB&:M"}vtrpS*k2MkjǒLc a%вVLNđݵʜR]\eyF⥏]pe1*cA2Ӭ9p(꼹rRH*Z{YmߑW-RwIzjꉴU= fPTyc j*wBLIMFؐgj (gp.K PM{]2Š91߽1Ew6 — 6ț.H%x3cN6ܻ`pUS%[ͤ ^ xz)8'0.+~*>iK/ljZst;,>x&3K{P vY"A8K|MJ}s:t^՛pv! 7> 1>u7I Xbի,uQ'6'RǻLv0Oe18$ŲVViI X40J[j>30"ö6گឝ7ʍꐭwfN1~CU &07 S CpWҍ+Ҳ<NMCȃwe fb"K-8`'l؍W7ڈPٰ"Jlc4Hw5v&iQ+ ̚KJ! <=3VYԺYClI) _}m Lθ7>s`EȎ]kIbU?IQaC+:ҥy Ķ+0Eh&BAZRu#+FƔpLt#+r)Z'x4p%} |Hr oqV&}av~\e3)N-kPeN!O0<.1iqo7-0nxA(N 2 Մod {+rZ/ɕx[Xc+Ja^D" 7E gӨ4=Ca!E`WM=4KSu|w' *p`{>)|mC[D5g|Th'j0-{sSS@d@tؾ /a,CHFf.z 5]&65 q^j{Цtk tëǪik5Rwk$ CuzPn^ׅIbDzW2n%CvӁpP^y=0zϞ Ͱa5ǐ!me"*Gw>DkxqI:AxoPm*+Ixzvx~Z wf;x0yNuJedΗ\Y0rdtouq+lbx5SzX yz(:g2浡X<`~IǸ.%ʮo#q#/ X]D|zY9āUC46'hЫYk GFW+O%)5}07e|#v6^㇪!;ߴZ'mZRݱxgp#n[(;q)Kf#A1:&$LzVA$v˷MC a+B?+/Kq6XB7u]]<;e`Jf7ܕ H=u[D?$92"Dߩ 27cS=EiO=/yM|d[T o>[;IBeǤ5 }6 ⋤`TlDȢ@ WHO7{oq,"Y<qvLDG9?5ۅk4efJy*/S*Ej~hvn3&?u\Ei"`όSQ.kgJ3JO^,n<;d@UpZCpl}WI-?܂5,aث#|(CPX*!\<9SW\0S^GJjlσr޿;C7_*lyI%#5 Ip 54iAؔ^ o$>zZ`]D p[Qo7s;2֟y%kJqxCآz%QHT|EJc'vvJ#|:^_ֆ rKE5Z)m2A-nߋ_%Q5\ Շ 8YhYr\X&Do$C Qm嘁3? mR3}T9헍fӆZh5o~Q1 uZҘ}V.WED(GU|aCpK'@xzY5TL!@_i_WRI?;j%t5ApjZTZ\$2;[Lم+NdZ\ an&c7?jKUt5>cN0>C8#"ӅC}H ,d.DsZU{L mbP̫`LT<ɓf$e_a8aMؾU;pZ+$)VjD]u4 X牤0h\("EE0KiԈk~OboYyh,dĪ(ÆG1- y]eh b$ٵ'5AŌ*\jscAa/ o >eՇXR`z2O "YȕW ]4o8DZJ1ˏL'6GYrv8= MeGQ(-&MSJ:eiQ_y[yq~}ݰJe-M^ҝk~@|2тMVaĂҁO{`32XYMHar?xOr02d>+WlIj_ ]KϨREQ!Sbz爫 NR|\8 UjO໦#^zVaΘ@^q 4BWl17|lRն!0Q޿x;;P3=#s1#lp݀Y+\C~v us]CɔgYNt4XCdM\l-8m>E/pQG!urc9b E-,)1}x6\~_U%ISwϾ&"N$UTյѬ9~@m53N+?#<ҳ)JbqeN\G\D9&MaD'zGKJuM[Pa-!:d{N rIJ R 6B.Iax5^pC_'eΎY[$םZ_fe?d2x$KYb%STÍI1P{|I#(JÕ o [s)`&& XSx1MYC/7;.kn5P8ge}Gϖ Ѷomg{"m~2'lWl!Z/4cP |W ϊrO)݃HY@E!ChVs9(?ު['Q7Ps7!./C" B4Ts/AWDܭk`WRPZƓ;>Om./!ޝY]P6eCvS}D=o*]}HKSr`e㨭f4Nz}PgdSMqޭkt؜:b^3cY %wkI(cln&7}|؏Jز`aN ӪSEeV}p Ѷ;o!X cITx3X W_ >$b.K)h),N|mW8j4"4k(غv5R42ƩB bdy:=Y~(0/ l[6[m{SޕL)fWc$Y䉴x*~W (BOζQ}w3Po VKG|7Xƙh޳,t!yW!ER?$Gtc<_ܟB^6g^aC,q{0%ﵑ3 Y֞E1 TђDdq`H??L -(oGvyBN71zTxy;aq 5!n¯r?JS2Hw# טHL.N}O9Lu-ODR)`!(ĩNbH~qNpM iΥmqz<]rȁeeEf:t\/( lǁ-Z?qaݥ)g4I?ZjwU`OU7 wk&QE! }_cRYa@\,d +DN{Y,i􂾙}Z9!#PxiߔHh.zqNGم@|6+^?0sb,6ØADjʝ>dpVc PLpý-b$1G‰E9+;[1Y8iW,VFȬ͖9  N;gT%E$@Iӧy%HHإ~bCӨYش@0 8EQ֗YQph$ٕd;+ 6n\HxuܳI"Fx DŽLqٸh>|6 4=#Smdi7UNWU {̦h,wJ׾]VF[Vt(7ɩ,%I߮|yO[̖ǫ9C{NwpЉX</65!>2"\hniZ]]?]PHYG"Yk%oZSܯ3?B \~`ڹ]vgoxųH۷k޸Śvuu<q.X i-qlU-V T&c>,8MŠ`dvH~F6'BvwYƸMq2:aȘ3h9~R M9*/fPhJCw,紘@_vGt:ʯ\U9'ezm>h/%]~4)SgeHcMY;*x0 <]jE#͌WάG?7^:Ɛ+bK׀ T_uոDUP5 H7{H= CVp "o\jBw&- Kfaȣ ԼA:|Vƪ+`4%CàY*HK=%%h#R4)sKLbǛ<<+NJ,\2D?jG3GhY4v$-YM͘?TyB.A:yGx8ě)]B :RˀI8\S4LR-W`Sm_zyJRf}n0YEvRe(r6!u4~B\i(8ޣ߽S$YqdW->v];u 9v ‰g~4Cr.`jx7yt};`<8:&%ܟfD2Dl hzFD/Sez"PP4eZPvg#Igk JdRiv|*hɨ|RYO#`3kHzn YɜG *q%SJmH3=g/޻L8["kR\Ɂcâɘ +mk,&v#2[G_iؤT#L@ ϗ<f႑^_Bo*IXM(קb74g"d=􊽏'#B"LH܎wkH@^%~7>hu9%Z7֠ {uvY}3)|4WMkPzCGߕ|E6 aԖ GA3cv M}ĜCT i0@0xY4H"zAqMSUktx]ȜXf!hnx20CChOITmϸ}X5S`X0pٵQ笳f;OB F}]jeƦRCk芴/XҨq RTrtav/U AhBo-{ύ< M-$PwWBoH[p4LF{A~ںhf/3҇ Ts9GVEm(_pWL K {`Z4m%:~w'^Z-u21d,!'Y0;YQ"X<6 8 ?qUmNL Rp1Õ W!}jke-#- )ZDGc8 /l .%73]AYv~!*kƩI7c^#-ZA`3dՉ+ޡM4eb;0K'yN#Vs͟US(Uw.Ō9<fli5_X08<^-Gw䒾| ߘ\%>ޞ96ٞ?>$ɅbA\ BOfq2fic " Lc0 O> qD{T[B: j6zXs uk#ӮKLJz/}F8уN2K&O&vc5mbjJDA%L%(NWh{mP낎F !qAK {Tݯ5>;oL^BŦA5GWi]?Bǀ5C5CG@2_Tڡ|bJw16F6"mzPɋXrdq>39x;>o84 ңz{M!1H%!yz݄'Jy=]\_F!hePA.`4m}F4O@4ZgV$8-g4LLh7T.F+rFbuܜ-пV:p|Ϡ$.gzDZ LgħPo+N̙M' ;-t%]: ef^#oX5SHlt}`<]:".4QSf3)>*@3 ZrKև90G,B2WZ!H=ޝQ^mrϪ~RJ*\UnQ?[@*V6Y${Qgψz/μfV0ď]3#\&`PFt+{ჄTDa^oCiJ+J N<P?a-p*ۘ[=-DoF,~R)6M"U/!у LGJGʪpʟ~HBYJ(vk&Ei"ʹ'Rzu?t'Hqĥup;u3qR0Mߣ=7*#Ξi7WTM7F|@O2JM/-֙ :tΑ{!*pk~UPX,3&^tb-+Ty4D%-˞^cAN8TUx ;X<|ݘ;^(!}"QU Es ,靅B5k6#88lKZbnZ#ɘ3yOgԨ/Х[! @XNNXzL2v`6CVd&qJԐ%[–xhf֬V-31wpsB(UC!51M/l C{ 1_f{fPNg'l>&`[n,NjT{P I*œ))e$ǝ] ш }ciScjK+Vʒ-pp˗UNڮɥ:i ]Rq,c^/\s I$tog,dX"8}O\ &2w;^y iv>;R i/`:v`R_g#h_&B8N%][nBq|[- ڙhK}qqŵmpOe Vz2°ib+&d%9Ċ&pR( h|SAE3*m=*JG4c"*X ϋO<ڙ|hxnk@>Vxn7GA%ǃ>p,-AB= TD7-E:˒Y)R0z}vUQrpùߍH[.~۴7 oK$Bަ Q88_+YZƘm28g/)x)E'!] M99cșn"b U>Iְ}ONO,3/1DGFm5uy틀(RQFF94S?۾1XJ}- yNjFr#u oeJs+W5}dg=TXˠ0ς!V6~b3@蟊CQ7en0n%*a8U@pЂ 0xy) -:c=ζw47V㖞/U薴`7vMbMJ ;pBWdJ h-S,~q6khv ԂrkQUVt`'$ybjKrc>l#D0M+e@u.'tw1ĨيRS-/ǗFߝ'-;t0:OFZV(KO;BM4 -}c<-Z gd|<?y92 b滋|;@'|XI Ϣ:xwۺKS+i2'IGjDwRc. nyF1`8w-Hɞ Z㥇"'.dƊb WDCX<㆓=24Ki*"v#!#Icѣ>e}i =!6,gJrlZ?RUŲ5*@ܛ t]:=$z+tÓ3h@C q2g=s^81=l9[(~9vqeg X\Bщ%8ս^kd9`kcSF."Knһ/y 4.ݬ $*R !y Er@E=.'>X:'?T>:I7!3TDl_W3kG͝p~^\ţ3ՍFǒK|R㯮/ydQ}kyO!6,UBdJ%[[C ѺV9zNN69Xf=pBu_ -M'Oqo3U3>H?"56+  Y,)o8^[JLї:~U+X&5%c%u" FGQdU*48P̅ x,j Gbܩ![W(2&>EƇiL]M3LrH+YYuZm } yX@̑/RaQ g:n((շ"k0 d,.d? X080P 1k/I!cRIa?( w?{NG(8 g O0}rS;YT6?c:7R$'lA{~ȿ' iL]usz羫&DI?lam/}5dQWEwk3 !%pci ` ٫u$>9p<@Ͻ@GlRW(H+WeO;Ŝ(T=7q߀=DޜsO()7ƭtki"yBG\jBF , CVJzw/G$ 4<D,N8Fn|{o#YF.'z)= ݚ[/k bFqH )e@tv1NWTl.9zrx یJ4(` q"X:̮^?_GG/\,' 6tqaѳ~S_Y8(s OBHYK,~ nGdq_wUiW g)ѿD_]pOKXu C#"G09`Y d")ULmV8 \^2;x1:ڵG^{,%-7dha#rs)fe@8, )M,up]@6bص6[nw߶%&4Zߜe:зnn, x ]=Mg'C$W\Y7 \6 ޏinDSk:e6>!Ž.w2L~k4Ӗ15.Ŭ%ksp:Ưg" A0/Qd-!Lܤ!3}ˤe :?H?q:bAsd 8ו[ST1%S;~FGZkŌnHYR]#s,јFᔘE' -̥|aYؒ;"{&v,|Ŭanێ̔]ws :Ñ+dCQ܉#jKV-5r' ??Bv8oK|K:{50^Ta'~KB.P +^Q3XY:Gnp9H'ƽ.|״03-fJ珿pHƍűL(6 &q6(|T%>(FbaM.hi<17\庥؞fW/5%Y+@sQц p%ɪ'evay5CyO^jD5D׬oD^Z-i֭3"BN?މ\*wRY =iK2`#ZQ%u$bL28lf?&|cʀHX};B^_Tjס&7}&/&:oEa0x8 \z{r{h>P;$ƻ랣2,Xr xYM'] CԆz 6֫o}n6M+QWdG)C$NZM"Xm27և8 . vټM!XV?4WEЮ/ h'<*+G ج.=ȿ2u3KGߜK]WOTW-@u`4L'KPCg% +L;Q3Ve!e/4-j!&TP݈ pGf4O[!Nw/KC(BtMQ{,,'1^ &kC8 9a:@etL8ދAoqDjQMGb"Q!!f-b!wQ,b2ݮ6,HCز SE.a=q-y{ZEvD.-DMF?)4+Z 7ۋ"9vbk!R22AoDHp\}%XY5 ^jtJz۹% &!g-`OS) [s N>I jgNL;K,Z\Qav9D:>[2+x{‹a6 D"kˮáAsW>;!SO+2D lI9HH4: ~7&K1+YC.1&5eѲ8rD$'Z>YsVeAP&$,fe ʓyf? tۊЗ N`fv82&o~=%]YN0C1 [k#z6I m1r)C 䯚2.>d$C ĸL9'Ȉ#_YUCXxhE]:d:@bM_I$|vT %HzLP \z.)]< <=u>5}Y-qikVqXWP5T~Weir>X5"͍%}Qnsb=9-qUGޜ\=R~`:T!*OT6E{m! ޽i?rЂ\-0CN?7,;x.3kjKUtH)%b>Qϣf뜱"@[n2~{!VlL,l k|/O?9TN J9 c WBehn@MUր6.pй2A|[VI{(VG=KLpyԿUKO~Z9atn[ i2B`0m;1䃲_8(HSp]Ο0`P X+cK L+2AMBU/ޥwFq'@9:mA[Q?32(β(7 D4J[e x`qIba1] 3ru@UrHNҏa B v<@>HG 6x% Q,LC4r׾- zg'w:S2GA6Jnu/{7|~fuo˽:6ˇ} MfZ~lY|5_!x|Ӗ{n1!R0ô~Fi ̕C.\ex.V!.{rΆ .qfjkm)oZ _$5Fp 9M"AYC3Nյ/lʞ@wQͺ/dayXဓ8]=M¶tvr)04|GMc-7X^I2ĀZ@:sʮ@2n"%/tnMF͖NWiφ*8xf S2v`,hh+)|Mvςa9^{ ئ|o sgA xm"e9 |?,Q?8J<ʶ~U٘9[qf={?TEHbHpdL%!6>a:uGm~MYZGa&-bOȬ4Rs&]Q Y#'5?7 0lx^KcwCAod鰽;Z& +/#YY1xM]Sc, 3N& #\6Ic\'-\N w]*@ITҀ\%ܳvrHX+֛fYw6Z*~/<ꩇ-R&k._ưr&ޙBAzp2hS:= G Lg>3… xeEչǽHReB[V 雥g&fO23fZv܀2vi޽9}9@-Fq9E‰}'S2ڏ̨p]JA8Kz<adn4^P.ZPiUwgj@ w;(2%x  } a;O 3adww?UZ!UsBЁ(=6t#oHrX{Ry J"_;hK⬮n_Kw`@FbY.^\r.^G|T}1*WI)!^5G)pkC|lFWb lzltz,6vcN? b3% (G F30ʯHHܧN׵P7R7~ra+2` TB 8LWK&w(Ҡ(={LH7W<[P6Un _/ WSN+OS*2qJT{ufRY׶cOԜK $~:fQyE2LgE0J"Rl5> 6uoJ曇KJ9gfgŨ10շ7  Pb+CPhbhކ0~?[$2̶t5l԰j3su LFm s)b"<ƟcЮ?y?ExoʻLk>\BQbƱP͟7AzV=^Qk(z ´?>Z!A1w*W}Cπj˯c{#9z-[>+ -kZmfܗXʀtkEv#YlwޟKL+=d)t/ <7BP<D* 5 \~O/f 3ƧŪܢJk*ڵ)qe&E\7Uag+E0݆QD`eG!<%G.s 1/SsWh؜'&Hѳ:Lұ)q,%cNnp>OɁVCd+fGJiy@g)v3T-xϊ ^4c,`։ڹ| p,OHv}\ReTU[~uK%KLЅgW$d<}Z5Wvz(靓 P$nu).orA/q8vOrq;|Cu~'Oߝf/[ю\/n-@5ໄss| )"Ε"Z G轙<jE\00M=EZ4Nanzut7E^ F;f$ͧ޼p[D1DQipz&ް)-&n$T5Aq>l}3Aԛ̄:'=QkU O|rָ]Ko$8# Eb,|m-vpzWXG#b/[3PY(jP5ɾ*|P[k;0d:]ldž} b IGs(F̰Ղ?_"NSoljWE>&ܼ{w9ɤ&7U*'bnģ[gA`up%` <7cu|A1,*u5J$ڒqMGwxcb Cư*,cr磴܆2:Q"\#T)Kwy#\ 9b"W^Ki2 $pP?y Hr#SԳO ʹoGWjbI Ne$idT' t/ j䖠3?4dHSl7+ _('l'~Hه7uagu. T4Ӡ?f>Tj[Sƽn8%u`cPަZ@Mm+ˬQdzlq=Gï)נDST/Kx04c* vc%5lqԴDvv\K\m뱎55f*`|h/WaO**G?ce^"oLl/Sqc`4(aZd;r{^T'NcDݻ`@Yeib;kF)+dYHMof d9(R[>< 1%:P\`lIX^} 6A"$n\s0^W¢Id b~ʜp$e ՓaPz,dp > ѩ1/VzXVwGw31/S:,g9bkaRxbx/>pgEVF=,g-7B7e8@- W>FpX~ d˱ gҥM"R?iتi;e(t1hcc-QoG`?؇weգbXCQ'A~Z )jl^-g`Mqcnnz4fF-Qsmr\7tP2jU/Yd -ڹDVWWI"TKCEtj% P5B9.ekïcčoxus G\u.|mnJ-T Uutb =h.דwr ^flGDJWܼ֎$6סvo[Q_q[8#{W7mzf38AY*83C0ͦ1O zFroږSyCRLcZ{s țu=AUi"sn-l]y*en.oYXe(eYoj&V^E;B"rfe? E#;<;ѵ)&U ćF.dcidgOĩ!2֣ވʆ[)R)t}=Q96boRsL=Q@ESrB 9@$ R_!׏uB}N.UVIh'Pmv\\SBWTTI 䚴/v C~gJLo2BwSb~,DLHLh)vXYAcny@ K]v' 6'$q2_~Y7"~:&M'byA_^6>+8Re~ Y< ="= ią a&m?i K34J=ѩV9ҳҟ30G]5Sy*MXs JC[! u:۽,挽aܕq"h >Te}j*WՊzm]lD٣Z; WԂ% `g Qie{I?XeShSN ٰCr;4>^Ik*wVH؀~:(xƋ2%=6dAm'4F8>T4jD(ȑW|r9um|ѣ˙ڂէFTb<$}jMu5<3gүVk݌˜3Q6Fd_1L!c$Q`s䄲x 471*"Fέ ŘjcJLCGp(`G zjia^5S{^={T*=;GT`s'Bf͖q\_qT =,WZz"n [Zq GXle :[6F~aWP?[iSIHf~NP t XXk3De'p8+G(9Ei27D%x9D68xb)ͶȦwZ3']=~K$KJt As"yC2>u? [XFs|X SdC3 +߮[*/^Zx5؏W*>òf&p3ήe p8o#"Q_ao!Xӈ!ahՎkϤǷ>=ؐTo0Ԃ 0| Z]xU lKغSLKslCE%;ߘw֩%^/Xso~N?tߊMtM򋢌? M%:#^P@P! Hl$ ~T&17<~L(`SEM rԽ<c\}p xω^AN۾ㅓ2*ԗtO_rƜ0+_dBEaW)^E^ص?qdy!Q>y}ÉQ c,5f0wd*1*x+K\uGö i,F0ޘvZi8%)!2ڜyA&w_'18T^3Y;YGi ʚ!{k4A)έuc;D$Y{rg{tc 3l@ɉlcT>1u$(q㯔,R_Gyj{?qn{k <(Q ۃ0 @,Nz`_6bD߻|M\= -M<^[S($?.^=}!VOI0zU1CLO]]WϮ "I#ЀլQw[\RrG2v‚b[ԼHU _sji&f,sG ܮ~*^.mẜ4鏞[ nu=X#Lܛfньo* KQXu]/ қ^; $3)&CDwiڒ5bxsFDHh4NY}N1=sz4h‘-x7H.YN2 =4)@r½Qr4`Nb,r)/6toNMOūG -;w$C-^?a \hݒaB2rRd\i_B|tq Zş*/m$ ,,PM@V"r˯*>?UTNa;!6*\pcOxIvɦpq:awUBPJ $ QkD~,nqqϼPbd2kgҸ]1 \H['`gUf?eqbcm lQ>ã2.[f`z횿%boĺՋJ虀gbrG>`;VKqC}[54|mGB[ K3L"CvUf'iāD "XK(C\ukyt 5mQBȚ@m?t|UԨIpT ם:\c% *yLZgs@>i>{ȈKo}[I38A2q &FDO\vt1rC~r}3C85:+Um oNH-dY%VSd" A?I{,B2HuEwXqihRw-S2i iYL%/%#Xz:c:ViT dk0?Mw2 ~=Xm_nfnLP)׭T[*53s7I(+#%kUz]`q?KN[_7 *Ғ3MNԍ S]۟uoFcn3'*,Ϙ`VŨۈu>LnpScUŽV9c]UYY2^13:|Vڪ ieTą䪈&)uZSοlhn |1GьU0`"Z"݌ࠑJ}7VYj@U@HTUdQx[ZxGvKGZ8WC^›2 a>ˇ2]7 TOtDHBjl"(E"Y:6-mܧh)w,6A]v\*ASĸZ#&':mgF,U蹋1Ih `o&6ݜtK8Q_8H|7K]bo1w(j-TYn^k1*|Ȍ"w5L"Yh9;łϬdV^ŕ&3 iytiQ=x1w$'>4zɓpPP_κhvH; _**DK>a:Mp2Χm(q.м{G7 qT|n<סh Are  ӆc 5xe3_""r?LtSBD_[^7 6mH@Vԇ)^zSj.(k*z*Ŧ:(^}BUdA׏S)7@2itI-Q=5_}0% ~oÉ}IWqjĪ܏qvhEѷh3 hcqgWM3v6ĭŵ}q@Ǥ<m?t)Yq` \%*^o3_MLvG8SVo,LJmi"Կ 7|UArd6\s&$o]U2gn?rJCۮ je_W)_aeV6 }uG`Nft7LÆT}$?bX*uކ!ɼ0ǯVDd Zm {MxK GǨhJ*!I$ Þ~J=ADuAϊԎ,XFBX~ZpE~pA>VfP<ɲ/kߗBE*C@YAęKaJEh SRAlw"w>Y4S=ZE+ ߥ8f9גggIN۬kf^ #f-:-UÅ/3exE+99ؑ:!-mRWC/FAƄ\EFd(k۲e]y,iC/o)i޻IZ|<.g租v'aQ_"V֫E"d?'hNo?Vݿjج,9|w;}ك~xj|Qhb5FLǭ-q8z&FRF\3F:nbBHsE+#Ě2ڟIlΩ@٣.~zTZy@O!:gdz%\q9VFf/Cpaf؆vF9 ߒ# &cqpj"Q] &'IDf"Wzy2c?{p(H kKU&-Kv_cB9XB1j\JLy8b p+h(Cl: Q7`S{pBdTV$4'$/!8}`*Z%R9PNMCo nHZ 6( H=aMޛ]?7hCˆu7TIeRn<11L7rv|MY&",J8G%ؔ^M:E8g=׷ ,M}A&̏R_(NƠدY_ݨD+HEӿE ٘"/!+(/|5Q;A"F<+ߢ燐N֘o2kIǾfhr@S#k"( 8>>tg5Ϝ ,ayJN DXU-[zK߀Ҧ؇~`9GO%+P KɆm/PK>ú0IF${R0C̷lU5m y~RZD(QRŇ 7v79ܜeμJULdWXVJ|R0|%仔,X@h0Y1?\ 2 ڢ8uQWՋ@Qq:%2ݖZ(wajRp"h }@36ykW_4Zk!](M6㪄(= 7<8PcazswJ*Kvo dFB~}uϾ3Hbݾ)Q}H28G(?aDU&b`^Z[K?p1>kj(a%`y5(X'&Mb n6)"xCkV4ԶAVdFI"@7ɺJ{@H1-7&\{b(6:LUs0Qo F/<3!I-4 '*v⛻,]SO%]5QVwኇZU2 Q:?ӾazT`L]^֨5RώWP#jĚ%Oma,Md9ה=l'z2ms. Wjo꾷~n:HRObC:sI脭;'[Lx<>sUBnl|k͠/T;f#?w1i hHTJ1Ft_4bGI.edFuUnR `|]B}R[ɘ֥F0K1G^ZKSX #"{hL"9wK\LmLNʮ86ѧP&O,BQs K3T~`Ra[Ncs7_Ǎ3rViI"?܏(lR8̹'w+ h-~vR%:P߈'ܵF8읙\ҶbxzP}b/;K8nA ΨSJFd|g,sRA$sxtX*/ l{%E\)f (:jָ։jF+G#dr PclCaۃKlZLWdnto?cW|W?N'[J5?q_9\+5D)2lYCj6b>d/NUC:W|ZĒ !~w<}隃 ]t/7J!K}*(ümdKR2a"3juhGJH?rY*?fԖw\CA͵ӄ !] =mfh_]vnba >n-:v!Ӄ+tzW*ܬ5i]$jխ*ԑv*CO O3Btx88eD>c0ץ`$*]P}2Z'Bf#紵fB4#- @Xuϑ:3@Q/&yx=R/~HJvUY̷q~0фfz#Eq v3)l2\>3޺8Eb&±FSji4pcGِ!_?% '-t G 篙3~<0Ǧ/ ekuu1N!SM+N "×?TcؗϪqBzlݢQ3Y؉V[!w|Q/;B^Y%j\DCzr"=M1%=-rsLhL[w'-v]vDs@< Ao%6A6{\`%MJrpCK@xZc"{oS\w?v|iN_<- SiQ 5l§'8Z4i)7̿<#]#J.Ƞ09Ҿ|torQBEتt(JvR!:t4V:șj)#1K-"_!ݨ7AʹG mGs+b7UJ;|:`SLhh,+_'Y$^Ť4*4/c2ݓ(zY 26lբvؤtL< k|x0m7} <)tjG^GNZ,&#o_eX?@c:qr4c]{C^SVm {'z|hĖż=`]7BnWMezL0xIES\g>Ek~ؾM|sj_C҅D8}*uI 1DEyu4w8/eg Rx&#Vk"ǘhT% ś։ (kWd"w ڧ !?g[y=rVNP7JQdV({A rPHɂuYCCAo&olQLěxCLy/z0aan&prPߡ|*(@}ՠwUcAY7x$iRjEr+!kXBc K=XZc [J5*yż0 11"H>H<7AH`6眈?eIJ&(ӼG B ъU;'o=* ;ûh|˿'"@DPCKKV=ؒ:~D?3ai tON Ji8rͫOSX!EQEbOEZkJQ`z&7uȘ8 Uǒ҈u$~yDtk(S$҆nj^JRIHA*ߪ4k\EG]/DN3}@*rh 2 ;j\BנI'VDʥuLo,VP<1e1ܙZۀ$Wnj->6:t%ki&$Q9j_h B03wE{icg 8` y]+{lCsxTR0 vM˔.b-Œ{w bb)ɏय-,>@]q.-WX;\LzD`7yMaSEzGPYj| m'rIq^vjj+Km=b CCv@6CgMM7$Ȃ wG96hpcy:\yT[i07} yOӲdcx6F7 '~Ezz8^Y״/VZ:|+Q1MxV%zoLBZ gŝwlY&f͡}13*|+K17pd@Ix gL&հM?}{t84Σ!:hStSv;z׼c x߇BK2TT3uɇ#.LyıN^彨X2DP>K毁Tt+1c _;3ٝ,0Ef}&͌{,J]ol(X Rdq͐d@*B1go|bWM-"Jޅn.AzEصϣs3߸L[_;(j{mU:u_]uO:'myL|?nHWn{p?mȥ?g Bwqh_CS"V@ M2-8 l $XK1j>g~3N2SrZh(#ӯh1yoZl ]:*ʵEX#v͒ʛn.b9y 8 g/!.1ac֮Wy[@vY{hdFac#EqO.HI!-A(N"u$FPF ze@z%Dk HMeT WL7. ̻b7i-[ot#!p)_H "#߿+ّ"3evO}zj_d+R*+mjXMFYpM@a,Pu8@Vig+2v$[+iQoy0 h_VLP'aTAɻRGsZ" U=(!5IOL|$uB.>?i]˜.4 k iN "O2):X\w(PV% PNϐLH'ew wW&Idӫ|X 9BUx3a >]񼲆DeD7#K0HOxGݺKRh`]eR̩ʠzpe u ݫZ*BDҫ+1W5;YKY{vf!(Ok "(ZLux ؔ(wI,R Md2WU-lOntBBƩL26T]noۮAyd4;m AP(yc`Zb#3/ʫ>O&$l9n1غ޴ H SʡSs?}NFAa {MMiHP v`*>f%Gޑ 7 >H9"kQ\A|O[Q$`W=Υ'Q*ŦEdZMM)l|VfF;#!Qb8).4FM^kW]VH~J6 w؏(V>#-N zsVbjszӝu!KU/ ^ӐuR,ū&hX2Q٠Wkھa1дU_2N}w T%Ts FVkzQ1(v <+Zbq?%Pm˽}Q qԉ@ ~X$ŪkԓHx̵`cNuK"Cʖ^d)OQ RlOmTx|'ڄlڰ$*8j!! -ƀ\/,!KL90[k8Մ-dlxQ먢8#uI](.PF$!%"/ަ$owAFn֮ce v[/l;~+ %AiKG }!00.r3*`UyO&(ُ@˷HG>QKlS4{T9'&"a E`6pI/.lebcYD=yPF! ;{u>Ӈ/_}ρ~'^ &"!0ꍪ.9̓W,+MҺQ-bstOs$gm(8sC);:"`>{l)BÁڼyܰL%܏>@ %~O E5L45>6 ٳ{F 8''6f-+̂-8 YX/K*X23 s|UqF.zX5 (WQ[_$ }ePʹEH5\]/ rH'*"*N7d#8R&@-[@|rw'6t~ԕ@Mk њaGN[ dW% i Cwqpss﷽'f|y-OvZAғ&鬮a~D47,V:7ƭ 3a$xg:v?K(%H;SKuFv <#܎}cvca-LV'uTX5R[5Q1X;H܂dc-J>> }{;nm[C?i}9\vlԱ! I<0xEˁ0٨Ք's i`D)X `|> {:{)=o`SnCc;޴%$nFaG#TOlɬ_fC5M3Z$x =,ӷ{K7 ԭe yHxhPضͭ &ﶷRwHC&9U ?))#fphys-􊋰x / D0 @'q5l^@L~*ΥRjDK uA߭2A%I_ך\xS\dpSwˀ-RДVa;;JAm4Gg4g0GBbD! 7aa#K=1@F6 OpBbfX)QYؒڭN9}W9 .t|̏BqԚ]ozC$|udp;<}S"Alڰ߹c.H+%cK_ZAnV{~:'/غX!y\'u5*㭖)"'J<;Oٸ^wze=^tͶ*=kxz^p{z{vZnvZHJ6.'!Աx;8C,OG|F9g8r`qv PRg}ĝ(4}S5Jb{-ʠG*`O|wim/;L74P؁M*DbblyhI.+EgFl"Es4x@pdRQ} BhɊ09nzC$ff Pzږyȩ/gtf]SM-pTbRQ[^S_^ܦm޵jkCU9mje"8h"^KP3>|9zPXN& q)oI~A V?\Psg_ Lh\T$G'e ^q\fF=[5HNN&μ '6ZF#eж@Uٹ!"yp-wTư%2,ÊO{ ԢL11"gO2&^c C}6kAK~SB,f;04 EM900FIGmի&7kvpd]12{D;JxvYQ,Uq'W2?0K|~iôp7=[5WyQpgEXV!\'J^glܔ;`"㐻-aAWDc h$;OOTsI :;R,>:z^iԆyW6|wDܽnV2Z/N1ǽ&opeq,wMrgoUJ4e (Of:J$83RibbA̿OUggVGY^P! &'n'ha!B#/]}Q=w 8#۞3upп% yG7,Hz1YW J;Aㄖ0 [RxMY(G>z`s$7aa?-ݮږuICD8x.Q,bͭWg~w^(TLQ[Ŗ7CB0ꉈhHߤ?p#ۜc'ךXީ6G5? ٌkE2(`J3Mі;#>L3k &v_ _b^AdEm: FRx 8\ z!ֿI^kܙ806 -Ɛæ{v; M,_sw{蠫:v"eK9WQZ8s">dG:9)=.g:z'|e d_{|^H\ ʨҺ}~u`<YG[~I<>Xn1Wbߎ)РZ&%PۖA;hmH iSqr0ŢzdmR c)Zw}rZ&QZшg9$Oy9v/$͙]7MZ0Q%kHPsDn, T.J{]5\3 -0qL߶M4g<b\<՟!*Y,=V9}M0orP&]giP6$6ibCaHW$T݌F."*l14 #"/_HV9NlB0] =fCuFٵ/|%MIQ,{1t\E ho$EFp *ɛ) O4,o߂KMRzQFUAo&C}$j_V?k"n5G4V<<-zPIY\#L`=pc@̈1-u hsZ'%Ai@ϵr}|át~M,ڪ no@()n Ƌpc mCu~8l4_QU6%&8-O9T59T?uYt;WQ_JJjD*PWoj۵Q} RǾCCW,SF,/=]RW ),n5i[H׌R} 8$˂?/ۇ=ӉJp>9ס 30cD47 /Iti ZjG誏שb%U?$\);LU|_ui%"JP{r.P>06?Fr h.I٧R? ¶f['5\ʋi'Ese΀]Fت"q*8"qXKzfԔc5oDf'gfyy*w߫3|M[4;ss+eM("{bA-.y{Cãaz})! uUV_0-rE9N"/ IMmRIl8 *8zO0CS^Xdމ\+5 vrEwz&(n/S稶PE<'Jͽj)1ڲERa7q|| d0x {W!Utwa# r&4sw{$ ֒䴓Y+žZN#'Im @pthW^g1R11*/s?gPca}޴*]UPL W)^M\aLgl_{ʥ('wjr}fo2 (;7CM)3XCR|q(YsLY:DB;<s{4y3ʎl)ieBP[~,C!Sڀ.>t0luR"PF|d@) (ȋ<hXa񘬏BZ<`Wfv3(ìb @֝g6FG#;3GMhjБ+D(摑aU:" ʛjVF ̍kUh[Ƃ<׷'ςYd~y W8-\J>K.,$* L9ISpp Nm~ʋ:/zޑ7}Pg#R/I'hi۰XmILh5m!UoaBZkf&\ck*X <[˰z;e,dwT cv iIܳlq֕)R)u P2u-AxcI{83e145 hpl{PeC}z%T(<3 yj]Kwzd qާw<>}z. md_6蘛5i_XmF~gnPgYGC4[j"1 a65%7u,ȄQZl>8!ct2aVEdKX1O} rv[vL:T ]IIoQ(44PVCzm.֎eGcV+?JFd^+Gi`IXO@ˈ؍oJ,i|6@"CbzFQ[R-/9U<Iy_l-$qn|.*`s>Kܿjiyc٫zD^HVL vcЉu S顯AchaF˝tnҟ, n0K,U(xYs]8f6<0dm7Sn/3LJKw$oI.?Ɍ%=.u~Ydl$ Zr}PQ,u:F" >Pc,R=}.5ؐ% &PYlҺ#WJ=[M#+7r\.Y6e_ LQ7~ZZDixj vv.яE}6oSբ1iޝ|ٶ&D܃zu/@غ?v+CkPAkgr̸s6k sÛXTstpo8YɞĬp;16> >^T,ZSHY?;0ػn+HٸdXԇ@.:SALAϮO s zIP wij:6ݲKX3 A- \iBT҈C9ȉ|v "Fk`JkdXܕ#,`7 KMVv%GxʻQ_n'xٛ Hne4U&3MX"}j]2RkI 5e%unjwSz8~9$ZEFE}Ra<"B'ڗӾK>#UN Pg V,}D(qG?\S.ݐPm6nPJy+׺P ?LwźSO2j[;lMO \ʂ 0 ob-] j6 ? X2ho;#A˷:n^`R0SoIXqYYhy ޯx%cOd9QB(v#n3Ud,3W#Z@Eb3X{Ym+W0+I~&t= \mxN[66sd8OgNr1i9OWvf5p`QKvK&q 4cjs{L&oc}b.2$ikqd~ѣ L1EgcVV-pa%*Wd'PS\. JF^wN2Hbg*=D†]r^H1P![)2nX%խp _'48s+G}$W夺g:,Kp`q a=I.^'%iv`D|O򰩼L{^HNܠK-ZUh=OXA9"E0F&|8Y:DFl1M81AFjP4$W!M?E)z;ˀ %qe\NݝEiGǖ!NǣAdo>|u$%=`avT3ewj@<`!<̾i[EJQ=.)K|4tU$}HҒO| Q, _qKQ࿈- 䨷Erm̂9rt.& E1)>ˍH*4s@f1_:V. NCt>=Z2 hT$l7=XR.W#VhV6՞n[ZMpyxYvݘ~J+'ъyV0Ń &_*+6=_:?/=ƌE˙OB]~0"wS|6N<tTlצ֗)pw ̈́)-xg2C A}">O/व\=Px%; ~ {\Lԋc2]+p j};\oH7AL7(\2:?ϙn9ՀjW 0WbhC~F-֖pQS Sma0ܛFTUnPqS4; Ϗ=j=ew6*2PEq04M{מn%V&joP υ}Fk9Xא-_+tj7 W%Њ.T!y i7r ?@5u*% ]6VHYQ#y"%cEyU]t]4GƮh@#s0̅cZKFz@Z?X}<]G>:^?tNnҴ  )C6;=7nkrcKљݞ ;plOTd7BcsCpZg]2_ZI/KK҃%/<ͬkQѬ,%yȪoj LeqǦrZ[PFаG@:8I-ɴLbI3Jl!p,$uafk~7t桻@S27tp׶}w)`q{ۆu3A!=}8*kY+JZ]R\,/_lM/ۀ=y| ?"p,Kdžt[>ONU'dIsݠMExRU{4,,^bJ8.a3|c,3(.~GX6Ӑ"l,3pЏ %fR7o#G~+Ol4J\VEhVP?T)97[^|a϶SJ3{^؛pTs?m #0(5Bdpe4oED* c ko'[.Ȣeny 2|@D%N3/v;"q+o e%F* 5~ ɷʢyoo4 Ƿ-dpDz\!lKX']}u(n1E ɟ :$  G@9g'2d9X7=CFOBZ?ޥvO R'Bӣ !,г9l |Mp 1xΠOZac@a5r@ǘ7-d =9ԡ;IQ>_5+آ᭘1wl6}凰,d7PYc?qY? S4u?I;FEG%B_A\+^ pTw  @6c?ua/#\2p6DnIӰvP]=Z+>,%&W)I {ύV>9ǟQeHl ,TY+؏ FM ́0șu*YG=d`s+$^@_3)DqĎu=3ݵ*9GiZə4k6)b'vSJirXr sUS qGad^sT ?KS??~6Hu>9H ~\T2ː^iPcj! q`Zv&&;!f^Z*ndn2>NyOxiڇɟV@oz 2םJwxIV y~R+ Bzjs\cG0Ԙ=AuqbXO"{ LAw?X`GܖHkLpxC%9l9z6p_E"} H;zhiKGdy%ϭ^Hh$[@,HjBζȗ mJ@TՈ9J1(;XCeӓl0dqҵJḅܼ4P>/a-PNoH,O%U{^>H#4E4c{>BM"_ cFvSHD_Y$ R;K( <!]EurPÙȩW56 tay9ZJRJVcP^ 6r tלaRcLЖPɋ$!I狚1:~Ę+ac1a=5Xlz"Q: q^mm`ث#Fz Ϲ?7vנ2##:%-魎haC)J jj3%]#LnxȀi^yHUncd=z,<> bzS~#9 V q*-(qLAY־7jA_HyOtváu0h@l0jd.%9g8s!ݯ*<2>E)K7a Ըcn w72:ohvҏGFϦd0/mb >99c1 cUH p!YVK{aB;a#^l367sˤ ;|x')u[@>\PJ5IM&p ]jvc>n;@. -.|veE! ]NORÚqr\u+wo`hbd7C3ӯXʦ^fY Ȋ߂d~dg~%)gݶ]M ܈du[b fb){4"'FèO0kL1 b c秢׿qlE]irbDP$G/oKɹf\*сyAKN !LfӼCߚIv{9{4eqR`o`vL`cR9lֿ7&E(dΜÛS {e8MŁGN$.DZs(1en28FO9"0wXAV/cUPNo<%=GĔ|5DUӱT f8P9rC.bvS*WZTl|݊ox@Nd.і,SM11sCgr~J*{]7M@(L%ѕ0,܉l5Xuڊ_(cT;$19WV$m?ҡB,&.:Ʈ3߃&2<@6*'Hm($*' +e̲Y˜N0z^z qjq–2U#!lG6++ ԡ*i›;]`̂ n'Mz-51cp$ 9T\vh@@t:2L)bd>.o4>Ex6ivd/3{񢙵! `(t'֐'ֵ<=i<G@߶bߺkRad)},Z2aHJPmj1gm wvd9qAi\}g8<Z4ii74,j:eSM[.{LP(HC<'f$)Xdean,@;gUmU ?BE}i;}Uie%}]J6*_L7PZC#߂bv89ݔ6-ۑ6RA|֯ -XS%Al|TcGL0BU%eBį%^+a1s𑑦uJsU;6.HKVq+{L!Gs1zOC| kF[} NӪZQ!kFNJ?Tn b!-^Oc1ڴAJY=bpQ*W f!C_PqrSэF%K\N7E !T>|[~)];Vk_ܤxQ:zPEcHbK-N@WmZ8x&XHno6.N>{tPPvl87JcIrP\ RLveR/ 3vGAclt~~2>H Tk[j@xE+i 8J6_Gks[AxTK1݅_ _fQ̪#r߅l7SLafUn7M%QmQeY޺Ez)7&(O kiTD=qgi:l@@ {)'Ǿd=\;v& \X$18[J|5J_o1'ЕGυQGqv"6ΰ$\H N eU+v) 0RwT%kUz:YW%oMPtب2xϔ"  ڗX19E( `9pDWb2"R5<=QoA5|>|5V@#YQ]wE/'W4Hl@ YUEdԏ2R7+fljĎ +g)'5ӲР,hNOjhW Dž;֣I.>DϘh'`(+*Q'XOIc/./7蘚NƏG/ŝܟ߼V\Q9/FyWgl׍G%EA iʙRNJi0m(}yU+k{xPK)C×Ŀcn[{n eTo*#C<-fUaǘfnXA6P?C,ch=2l< 5a =))C #_Yu$Lc5d $9gm\Asy㊩Fv0>c Im}+ڛ?ص\iph &Va%=З.q94K#cl^:}-aлS:1a'V\R8ɂ_Mw(CP+ttysWޭ :b$|!}GK~BQbq˃;ADѲ(N-qvd8^c؈ ku6jwi @"."D0㙽oQC%BR똿ȺyGu>^`}Hֹբ»is1~$U"Zұbqa$+gmw+j6ٲ^A(尺le)sR`JqŊ4s\#,8t(2!Yayjb$N#Qp4@KW2<ԓY赒:8Fg  k퉪^c0[4P#0Lg z m7ƥ~Ez5y+LY RۍgUXm=w]^ =U*9ו5 SBf NܔɄh=tγ,C-GpX(Zvmr1Ƿft&?g@eFK ű 2RjkPUbsCCHQIuߕLלYJf*ɽC̃*&i1y^lFkfYj#8KڇAځ ?xd3z2wV/v $(HsXË${:XCgn}\Xzq&`P]gShƒQi ^;"޶QF R\sa'19C6ϗ,d33je j"Q/q8LgHuuIfƆ_"F@bSP+/7:xhgwqESC! DF)6%JŃ /!\d,mF Q!И$|˕UT#&*\bޚr$CޠcjٲD;vHO5;Ikiݽ, J3ږ|NAe9tvN^jg't*Pr/$6cɜP~7{G|CDPP9k_V.5NYY`"B72*TC=+Lo3fj&w םTߙ . K5]U1e06QH1,PVPl:G|S``]Z& 7:aBTݎNlΞB]˞\M8Թ7AveXKA ;\&eq/pb V'E'=!8iRxPk&v8N{[GӰ,Q,]e;(TYW9&Ǻ5Hx4%KNFELOAi􋫿UE&gU3<੣A*C[KoB17m@)&uߍsT'T*)V@5{-2׿~#e΃pSOer͉"{+V%L`-'qixr22 p^ A ٠%t-"28p} KX+挋) /d8P#z3 yL 'pfj@<|5>ˆfrxK%CX|gypJX\Ggkɇ3K ݎJ 1qѾST|ers[4E q|:Q~SO1*uFLżR2U&aLeGWVaEg z!6cAra|H$qj#KN)&2bŻHQ7*lrpsd_*~fC?e1|2GR-`2&=J{7uPW+# =IxѤdsnRÆ5s'd3EBԝWInɦiv87M8*'i>ӻVRZ{"c6(`!IHeV22ǖ|N$J8 2L^ 49Ry y)>t#X-wxkD X,-^D1H)dп*㦶/`%C- ؗ<6W6fai4NJ:=@v8Ŷ1 _ئ6T%W˩fΥ@3NIMnSA>N5.Px64,W3GG1dQ\<q^`dKj@&Za h] `ZIg:~g7jZ9kbi!j_Ia]3w3I NmO S[[Yjٗd ~Am!^ Seuމk.8*L 2JZ}> '0V@fxϸ2/͎_衵ךuTKG@xh3n_!)g~TAYYHb9}4ʈu;iirob,ig4%u-|5ucH{VOPdt/6n~tלA0rcՃv4Q9\wdԧ_Qʛ~qᓾKhҵ"z, $OD:kkÅ@qd} ylB̙EoɛưoFfC  fS yٵCrc\fo5kz:v(?,mS6+sh(|@X~̺@uvoi ƴ]y1spBO,` ~j\MNwޤn/΀MK-;s~nC?MUI;QpsEEgUĘ|Dz'穀KW-*5dCɅPǶVP ntrANJ *vC Ttqd(й7X+8LS)t[RS"i*]NaШ0W,(f#wxO;Hv-C fe7HyQ=YIB& ăV<!mC"|RJO"R8m/d%bVn~h>} |X_w+W-KįMi~=L{b>mޚs|ț҈ xI6Ővǧ&~bsEauP;.<}}Z <0ĸKr?04<9c?ғ,_ DbL]7Fg Ija.qAv`?^zѝgxk2[*>CL V_ICl{#Y;(=M<g*<ǍKBfYykKQCًĻM8wƕsTs[#h֭ njgl?>#x9nM[@W;8gؓ}uԂ6/;:GYW<ҡ /DIK c1UDӯ 2f g>4Z (Ms -h\ϙQ#]A+}@{1ke "G&v_lgyJ@Ə;ziF0tN9WV#ߝ&Ap71B s F("0b78^xГ[n-Y-n.K̄h o8EfP h)B'Ўg[+ yEӚ vzgDTdODcSka٘rU9Rv77jR.;m-ʒDhL;m`V2/t3[wh*kQ*by65)Eme) ⶣ@ךXp(JZ 8LRW&@\1<\~BXՇyI Pw@BpNTI@}P ЅE~ܴuN|;?s+sXhEoŚ_>5ؚ#65fh#╎7.Gx#s!t_Dw4duuHJ3 ~'hmz(kpɨ~mQ~(w 2ƦP%M[Ihg2!C`)x~ c/YH$Ds lm:J}" x9Vf ̈́ jN6muj:. *q'ZW,;\"qnp^3ͨ)6ǝQV1UpLLb bbh]KT/k\l¢˟E:̀/TjFiS< qN6Lz̀\G߳KfŽOCcl7g0*fWSyYڅ)D4 sÅND=ZrlᐙkPm2t۝Ć tZkUx;wLs|RoWSځ-ٷyU(b-h&D1%< ̄HXU{8lUDވ( P%'ؿ~__rA<|UՄ~05ByM4eJ?4iRCgY( ĉAlbHˆ[Oq`#6D\!5W,< P&&g_x!%_6Qv|Ԩh ʴ;2$D t=+7@gm* ? 7և=[=\9̶l]=S<<VgjbnJvQ C};q6&>jr >AQW7NN)nhLÞrq8p?e#tgv:ٷNr>5K#zR(I_CPb]jF^Y/1% I3Dz-Z/53^8LgIh9uml8/- [&'Py|N{ĂsЊtx_Z\+Dr7]7]d ʟ/ߎߎReP'.Fl&6\Zy-DT i =q+>)RQMOACp2 i`a^q;dy*.wW+bRͼJ謄LkkeCW'$029U<,=x7}X+i3M](K+>JKcMj.vdži?iL$z{0s I1wN/X-|泼:"X9rfJ嘷ŌX07$@F!Y'ݓс]g'=,٪:SPA78pS[VqZ%e-ݍ/4BfScnPzZ(Q-SݏjM"9zI$乐U*t 2n+Ve^4)8]vy1cW𐏮٭Do#u 6͝ՑZ_ZZ䤔cw]r\˙Z`KA iXq,J|un3,Ҽj FKڝ;Z xgHJFďStɋ٨ֱ%{ә# ij.Ə$pŘ~O.(}I tCp<&(7`5C&&ʵT&֊&Uc5[ہ bi3_NG`_[esF5E_WPoczW ߀/txVؙcׯpxc`ڴ{_Mد=nk?d^_w0b}@L >wګE4 $K +Kk >OKX!-5+;@ؽ_iuA#2s8cV?|BBDN" bCLJF?h-)]ɃRȿwGy"Lb&V]{\T&D68aӌEwb|dK^ omswD⥡('w9h!AhlN= YHOOBkT@4t&3X2 VSG:‡Z,.JyZΚgіiQ:E:iZ6ajl yoHMk0+!I%uH䠞) 9;e{AΒAc5|@}!|;XaWl֝i<1JsH&j0s IB{&6 -E^`fj4yTo$0mլܠ9N03DX!`)2 bQ[delcNxd[po It"rP;b@ K?OE)V`_ƾXàư[Y$pb"mrz3IJ?4 *yFS.{Gu\smA8LUx3jQIԣP] >=L`Ng(4Q )Rqc?gqԇiO ҁwa1Dhi\<<c0OܾIF\c2=+ҜHбIIW.I7FM ~f2C?ifn֐~MAF[z'-c/se7K7k8],tVC23j!EX{n4. iVq*)G)1y@){d9P1_)YbX{sdD I{QUnՐnŞRFq;Pƛ}I_;>I>ĉaoBԇCAN|ˮ}>~ҌMep ^@ |9[D})_gKu]32*:>>8^fOp7FI"V1z"Pئƴ@Ab$rȶ۟+ś|mf0jſhdτReh:uiPsB?-\ݺQ@DQ;wP"ۛ+G[^`D΅r@:%q.EYсÿ$Ys_QV,V+bs \Zn$ T5c20N%uZ%3P|h_\=YT\V ?3+3^ʞ;^np=4z0c 8 [r eEiB kl[b S_u&AWVEC"?_]nHQ?7-.HAo Rđp]נJLtRHf"iߵ|yYmx zɜ(oQVK:КfmBwզ , dڛK[ŮqlOxڐ8,y`"7\>c#$L9>m-H+"q2 'hڒUBNn8E0 leV0U-`bSVl6fчx-^(N&@/ձ@)fPBnEiAfǐu02{>vMVFn@~\Gc5Bg":Y6V9wMDgY' ΌHo~HwB{YUgOS +7|B;UK..g lW#Ң|f5>h PX4^SE-gpA e$s_k,-$kRCQ Wcǫ׈?2 oy⻊<M3f&Lbe<hOT5#σj4 ΄vzrVz64'?_g {q JB&|*и|I]Xz~:~EVxIXo:Ik>Wkth^H: B̨)RVXoiw9Q܈qa28$Z+v܈DZ9t,`рl7 P }ۙujkl[Jf7øDJdz2$M,eReezݫOOj<$eټM.лJb2ShxyYkvIקJpBՋPJG|Q.1<}6 Y]ܱ6,$dE '^/yT5؆EHQU'$A ǯ¸K3[ R+Revړ'+U7kMԸGo~ ^]('rShd+/;,Tpx6l0dd.SR(c%vJx|Y?@O+W;P3~WC tERcl l *g("W3ua8tLz&3eF8V3#_N6v5BQh|q^"dBщ5~UeomsY*ɡ ^?avK;V KY$}I%dӌyGGN2d=xNhN6o:uaJZA&εzQAgF΁oIm2`%IzF!H(|ȁj{C5g+6/ʱNq8wFf癩W7 <lh9]cܕA %,S7]/˵M:~l1򘖵k(P5X0a;_}وJq/q̨vCH/7\#DWѐx$<ӒVmj`T#6ӧjNR%`%uDK J%28_(i8<&z1-gdNk+F(%$OɞN#kګW&B@[tul?h?ms u2j(E LCފ%Ukq俠8q'q nK$&+s8O!8$dta*wPPZ%-YCf{^R=1 #1H ψ5 +Kt6i mLf9JLo*#l*V@gf#tMuG6PӥZ Dᤵs!VqUqȏJ9g|*9L SI"bN'lFFRQO&T~I(lmw򵄯40It*80HP.w^&ZWè]OLsJ 0'tM07t =-QE#aʑg~q_bO-ؖtנ}#xvs=~Rugj)[Q I A1*'u.ɭW4ԭ'=]PnnQVAZ8!% p`q~. QZxF 3r ܥ|iu37M}eH8(֠Sb{b'\i5ypqCѵ\9'$Je wa’ʼa0k ь}&wC.Q$. D~,h(+B`ceρ=v #!D]?7,keJ<(HefX2ŰAvNȹp`DÛ?LFf>_d8$Mxi^;}a?T ͕`Rhu}? |Rf._}Co'xG" PF DK ( [{mMK1;LZeఛ]eL7Cd0is8YP%ȸKYjC}8BF i)I<PՊArHvlRt]}&wX0VOZiF*kS]D:pu$zv3#fvca4qD[(դU>ƴ';^H2=DRAi9e{ foҗ\$?v+ʒ6dܻ t#l 4"?5OC{VyM:{gEA?G&Wި0Pt}u:6HC^l.;d胕w@ܝ{!3HrVu %a6tuh& %!&vs"3UU38KPLN@9J5C52\V4a -DaE(3;TT{q/ad4 "$:׉>_N=ޙ`0 ;@3s/B4wx q/ZD'0u%o|j-%`vJj`Tu#_lmJ~<;;$qxr}6z O+rQF+f rn?֕U ZNuuɍVBJ@da2ֶN:͙|-xCDCoη0Z=4=}0I&bH*c%QY%ߧ K0pe?a)~f &[Y)O^.Տe=E=i-lo;aT~ vnd $%0m?3oxc\[~Rg^herw Ϝ K:ڏH Wln;x` wx*,g8FM`}'lkL(v}h5`DZ] E8֭ mo!HAԖtϢ5>oAI}ʡBQ8*5_ه痒+ϵrQKV\ /D>\˴$|wK/ܝUk#n 291M=mTҟvԔp)0` Y?!g4D` i-J#1b~h3JkxR9D:o2o5"#Q,c,1b^81,Ik*;D*8⍹"[Iq{-J)5/) bf߲\P,@bUrX#7O}_{vPL G]+6:>xri.-kYdNi8= D&پ!:\Cԍ |* `g*4ּ8iuZKe B$ڮC,PL 8ōguZdxQ/Bʁ)nw0⇱D뗐B ݖzgN6KUFzq? I$zO%d E"͚C5Ix;x 0S|I5ŠNly vڗ$Y}>ƞpר()\HYN#>ץ֋k)cQ <,$ 300m:XOoGd(e􈤤hU,IGz2(6`Ib_ٕ:\֤66VP;ELH/ihL1 7wYƏZ[N8 lhG rZ0<)T,?Q{Jeo.HIȜZe]!SY.#X|H%&yTT<^h?(vfuTQyJXkZ `3^(~ ){tpe!6 7>{qhSf;f Fd Y.݈P=r7`pF|[p }"͵$EdԌG4C.TGٻq!㿅ʛ _:(x*CQ m(4/ Z,c+Q Ckjy\H/7T h.Lӗ80ɭc?2}#nU$Jyir [qj4`/#7hL6AƋl"ႸI|匿]R_vؾΕ97?ؿcZג{ o形s:޽@T_B[sgnJY,1vZYpB(&[d$q'Ok呑%9\8V$f N %tYd;S>SI!XI$J>9#u4گ (tIoLz~9iPuGU1T6?IcE`Ѣ`$۠S[XлR!Tv\|y &F.+.SV 4/LzQ9nKi+)6 ¦S%QMS!6hK sLm̵>pw iԆY[!UVDX {F)IeGU)Xz= ;8g@{YfrrVu7YdkA-4њvFUv:?"W9ѝk]rmο3Ke`8oR)%u.`[01 ˊE4`j*C;Ww"t /zO\Pة!% LfqP>t7.mRd#D³k`crhl&^Zw{DttvM>ȐB_}:'clkPI ݻA rȞi60'Q/>lܾy"mյ1_іNv}F@ ,v Ȇw߷#'@iQQܾbVKA~*g1Uzu`RLgkA@ eҶdGv,8x6_fC;=KĶqXzF=e1>p%qE.tt vt!W§`WPp Y{|MPe#He9Fy 2T&9{HPTܳM3&^> f} R(&sdd!hr47?Veuaz{x^_e n$˟,:O4 tM7 Vo>̅\%9m=we^sdN5؏1cY3rW5i` c[N <6fΉAAY\d?gIפs%N?76'R5|K&BQW4W~3kf\%Ghͮ 7u™M,R鍒v~v1--KI{6K7B8Y`8 1Ýɕ06[H8~|6rk!DT;#R­C˨~v:U^!`>ΫpYg- Y!ΡRd JxC,·N  c|ъM IfEq8 8}o #$%EЊ^ H]Kl,yv&W"6V9BF p!x}!0I)@R{$4T8.W'H]"h-Wh| f`l2eoh,eqYĸ#IV3k/#갈Q7 8_;tTl<42  lGxl[YȧAW*;'J|kQJ`>AmN-PCw/]w4m#A  tN1fr`w'`V)p"!ދNNPBC, 4sp|r%'˥DUQc3t&n*[̏Sj$Dݿzx?\(s+^䧿s4vT r'V+\E.I-H[Y-:}-_MNvr}(Dcd4C'p؋#X@I(9u|MBM_@ )D}pAIUe`t#\3XLq߻:k#Bb`*σrM#2ߟjS>r7ųX53WOM5bEbU+Qs"fJi Sw٦٣(d6HJr*o|ƐX6nI"U :*%̓~=Ju(vdPxԝc 3:ViOF-TUa}#xXkgw( >(]|.0VhlgR[WD*gxUъe3kM@{o{c4$fV9O:ǂVۅzTkܹ*qmBU2hQ.?eyvRi)f $R-|Lp|EJ"|K[~e7Xx5 yPP_hR~V: !U~w\P~O7jj31ū60=O-xM4͋BM~Ե 5O PQ.ARRҴK$aBAAm>0~RFx|"PkF#q}|:⡡לS)L?5w(dRӘ=o#/`!|s0|4t`|;OlBgj.{=PN< 佞T~D' \˳ۓQUl*J(_!vdOY8` =!jv^~?m dtVȷ]zh( NmT&%E3p_=n$=+t))/̵G]PGn%4(|ҸW`ۖg(y'mf>//!rwqA6MB ۾$@/6P&dw e^6NAKK05/MqAP?T x ->//`dcÇM 4(zqTT4 dvMZZ 4]B/d"8$aXƌ; ~\)Etbns6ruE,GҟhMkkw(0,Hz$³3h}-6diqE>nMH]<# N"\Z*kCJ?j-5A)%xf?Pو7^_`x6b= Vv"Do'SoO-Ebh9 vhm8RFuۼS;#>r|I@z[Dnݾ },f(1IyަJeOI6ۂ. @`+m`,&ET+ s=o*XϼwBݮ}`&1n1$ Y?<g`$ gt ᨆQD|0i?lTN3?tZ n%*_UZ**hDdz"?([;SP4+vÈdݗn(~6E|zhO7a YŴ6G"u=,~N+X#6%XL73ȡNI@uWhW. <}#y0#c[=f˽H!/Sȼ}/ym"}q!Ũ"H VN[|il7?t@;>ZoG,00`O2,iJ^19WHK ^hbusw6GV ]BhiV1QƁZxy W/QM C2.T*ظǵ=KASrtC*p&؈~";5գD jΫq0mgDj`F*؄<"u^ά]=A7H]6CaLV,`E^wlm Of5sP{oESuLGX jN1E9ٜa JHOVnٍ{H(ٮ!3fR߹?nwReMT`"o]?z#x_tuNA7M‹}0Lү"Ԫ=x3)SH2%o@4N~y?l[S\ vƇ^m|PĶY40.!̧k髸$?ԆOlKd6FX % _~_ o<&ܳwJ_V޼6-4ƣ3di(kB~!)3>!toDzk"Rc]=ͲQ$2yũC޽Hr`\'rQ\u"(&eGh(XV™{0ZApBI}, ψB2aw!Xϗ-|ofhD L Bo՜h;Fz;dP"jQ@.E|@c9z4I)$"g|2`Zep4ļۗ&KM-4x0`o|w :ޜ$ɪZH1M``g.CcPAW,2D _ʜh۫r_(@Ȃ^GC8ݝqyMqsKurYp֜?.qY;gafbWS%BCn!ȴp*r;pp\My&5ך~f "sTGxO!du!*醧tyH徭Э'9g>A\¨VFXfT9vtp\Rda~8%IYf'T5X{A~k!rU#`TShY[ĀRcCdv!&9 ,!A&Q V\dzK. Aގ}"%trp"(#wA?U%H0c EwO`]eTة`yK~z ES5˻9J}Cybcb h͂bpI:;MblgqYShU"^mJ25gw/S$h sRNt*X6d׊0>PvO?RL]A (ء8P[ \?v;eˣBPSkE,Ë ()˩K;.&qҸR@`kBZxK'^V<'zFs6[,7;q&(,G5h8f/C[W6,<T˱%n^D};MS2ŀYG b%砂i!E(Lќ] XV Eԥ9yyVkG:zMZY0$ (mA4fBif8@H*)~M 1&\XL N"P}K"i &]+ogn2A)%?8|L'€T(iEi`R FQ2};dA55{aпM**Q2;1ӄEڊ)'jޑM{6'3aؤ%cgakdt whl9ix}@(R?졍SNNw2 p>'*ayDSLuV05cg(ky{WpԇpPM *L&KCjcap5!ˎjD,kPpq@b Xfs X?Ч%C$6S,>d=)5I̯fPGLz\vrٝ0Oې`/e~k{"o|"-tF_ \t΃P[xLکraڬa *ϖ؝8)>w(U|lɈ_^WQm[̗$uz9kO-5lVCI Dƒ(] AJ'OE.uԚ˞Xkuwǵ"W%m:n>lp4!H .dR4?-_\aIokP}k r^QL(8 +›Iu9_n nXAgVŅd\8Ƴb[1*ιп.6z=fINm"M@fv$TtWW{|Y8u䠡Vc >ށm{:#_ZO6t ;#s&h1Z,hB݈Oy %C 7-:oSc{S/I}VŲiLnm)iO}l׭ґ1Nu0^Y,Zm~YKXmh!2jtpC(`SFj'Zo{3*0XFN&4BgR}Y@6aL}`.f/ פ(eS=uԺ|2L{긖s|W+n™`&xBr 2G6@@s><,CqIAq D% M #Ce03[\ƣUepp`U@`TPbQBnp,#ȓ)lyVX0Ҕ +)|ZvԷ Y`4`;TErZ3 RNSgv¦ȧ*JodI_jthYÝM1R|.ӹMLdQ2"sJ'ݐq"2QWսE+$SU~seeES[2{'0-ڂ9M5WgGb8{uAѤ €taL]\oLrucgBAw}dpXuDx.ǫӵhm wCTcAďIfS~V(;Τ qwhEFVX,vxҊmʳ=)YB5 "dƊƚOQX|#$q|TFvz\$^G'p{fhФqL@Q6뷽59~5vC䊨IfW%=! YFjm&%l(qh{_S ,ŲWaLI5fet~ebΓ7fuڸ x-,S~SWD J>kE.|O'e%Q@ώPxW0`AJ+~,*T`P&ϱx>NY* I9$$&a^ueS67@ypk6цz]8n/hߙ&iti5ܥ-HPGgdMV 7y^ubzS^gs3&WF?M9P EJvU ˃X5UJ/DWj\^k5Iafk*G4c+;7o0mYGK +ڄ!nJƁ!MB97C"f~uky6+ fꐗ&K8ZDb?H2BGxwcͽ(/L:Q=$_ ƪ u.`j~r4)Z.Lp ( 0ZoGY-$Eɻ;X8r4Oy<{C-Qs{(24FY9 D9𷆶?~iOWЎQiAToG 7$ Nq }'M03c)GiqB Q+>v눀"|Je"FR1)4EsiF&)ߘ4&jƏڊIwWJP 8xBxl){H)Xߙ8}@:4> M`T(I{?ҿ(7f斴NXJċJcmᘒ4S?Tb0Y~n+Ї͵?_իjjMpI.6+,5%s/9d7[00F*lbU?=PҠ Y5MBF-+M}40Uzvpf{F-WRDNi=U)[6K8K/wٕnÂq[(/N5)N88*e Ziq砱BdK0 k0y)!ví Z=Ӂz?L0Ui(3CEi52l>0 Fu(jAڣ޺x~-jq}k}l^B9r76JfrPMlŚ-eҽqޙ "N#O K&pF+J CvBkͬ>,0Ls"Cɋ }5y113s4d*uۿ4x *' E]|w,o#\o89 $%!(p\tzfm(BK=MC#Q{o6qljVo?(Q OL"W=TdEǗ*,lCro#1Cn+k,RYG. ,J2GTIhWHjs>}m21`&7BV!,32a3`B2k.yx<  撃<2dQe0ywɼ1#P-,5'dPv1 qMYEFvCw vM0P s2[i? )}31ِiU!@Ƈ/ Q  H=^ϏEeG{qEAo9Ǭr'.] i>RhҞH?/ gi!߭W쏖ؿ̠~0glTVύu" n W͠(pW3b !t'a AO7g^,wրL3PUᢲ<"[ނ=|{~^TfXYI})`{cTvIέ&x#"P硙)4`RUZ6 D GDkC*e{:M*aO%}Lv=z$EdR Ѽwl!6n%UʤH6Ɯz^iH9D_)a򈄮PD!|!U" PnL`ml?(TaX&$* W0E^Aupy8]@͢rsіRGʑ*١.6 ma22$4x[ٞ\ܔO PGBUӴP}1!֢R$'+oOwFݿ8 $+I 鲤fZ5y2ZQ3i #&ճzWxir?:9&Øǽ(8w=[;Ϋ!Ak:+QEUH4s]KA,:i7+ޛzd3`BJ4gdb t)JOGBH䫅LC~HSU6;g[:۞`ȃq{=}4CU&ϝ!k5g(=Nyͫ Cݶa tqo"gƨBt/'vيpɪ{M#l>4~hz ŏ ?t2ޔU#HskX E F< opUqxF1׀9[WQ}Yl)8,cSA+ReSeC'ϓt"j$1g5#L传COh*]x(i_3GՄw!q`=FI$* ) ʨ29 (o}`|plc!Z*9(eO?/c{e/b!:/slK>2iчH Z_W`"76)VrAV82\||B1''Z# Х4 1XLMO%kF {fC,} 03cTyOp;FB(Nj3ǧsL'΀ 浣W@x5IWpgD00i<1˨ՃG`dLjDmU|ӭ4ZNi "Vۏ=%C,evl\ MMYkg$NS`XxLm08 J"MŧEysrK׫VJ:%QW Λ¢dʷ~ľ|d ?лB\G⵳H{/O(,:&R+&;12nR4P}̝)s27 W`|HЉ98 +@$YE0`sᄶrj36EZF6"f~ǽD7:bCbb1_@7)ҼT&JѤi>lkg=OpatpTexjMpV6 {}K)o(CH8:ßo Lh16;`!znx$sEwZlL1or^*M*fZi."t1 =#Xڝ%L >%h瀆?5t;OH^L'G,?Qk)J9CY|S #ڛlxs]R&N@Hk%]sm2JTt_AWUw Dpnk,QNQc`dzђ6-|ҝP3ŽY}EJً&"k PG^WZ@B05ޔI 䡿$pFuB1c{v#>$vwa:1UROZJ^ջ["FV;/+Ƌ<N24At$F&(c^E|Ef}DsצU x*!&*ՅȢl*B"\%M%Q6"^H$}蕵s@ /O5S`Hڐ#2MiHLti]%ޠ7=Ah{es8 ^Ӓ`n<0O.osRa(0DCR_S\+Na+}]XBB<TWOQ3D჊t4PEXv0Q 'YMRwۉJu+I[>1 !V#Kl_>numnn?.I5.;@.q9aUARaiRiVE(l^p YS[&Ǡ+o'T.>xtFDo)?ݙ/wP<\Ցw]ex*j*U`)xNWB8qpϹx4_K$঵:3sdT@N`^{M"ab-7ZL2KlV2/';Q IOF>"Y;! []SnI%:F_ҿGJ<.y$Uq{gJܹ]S(wP)`k^54^~\ qB\2%A-Vf|ˢ ѕ!bUc$Szt͒u g8mX2|ג}m`կ[e%q>i.E8)hfmNDp˳2ƛ*,iWvBf(Сs‚(pe -^Ƽ%P}bxru;PgRIvTX:-1c!'4`^!=6nLև 2$eXL&gNfnZ>RLIZjf'`(']uªXs:=3cG!씾P:Ri&a}uDl䲢i rAĥKOZ<: ł{=5>] )N%*DMQwΤ-[bEmYքRͅy*TLRIFаE#MsMe/BOP7:O8Wf瑨%:Q^cןW+fl@ N@F̘o8͍< ݹ5A``э\XIռ&86|.DO;`4EgDfc;Ƨz0fpO(b5(~5- ~HTիT9> JQrQѢt&n 4LsФMP@N~CW27w γX& ixeqa?~\ںƘ1DnеvoB֩4 l3L{pw2{ôps@͢(&͗WXTܳ iטDF9.X5G v-R(V!rlyGwLݠ K^nXR[51s;`Wf>B!H0E99ԥLUc]6oPDjr"Rl4+DAuGKsՓ^'"֬tL v6@l~P]t_yU@q6i,yk4 `}t| CQޜ\sO"sY=$<&QXxnb l$1NG#/ˡƝiXCѤ^N^dbl{zsk "bc<@AA2;uƦ)A0UB+.@nrK^f)/{Zܤl0%-:>W\Nf)?A`>N+ݷ)+E%"[Yy'B4ύH,>3HwN<)XBHqcc452rfDʆŻm p?\.f*<>E~R@zgmⳓUIz%?ae@'pGsmQ_O" ."$IA-s{Loj7ݚ܋xwmV3=XH Y-I1f?{w$(1 f`oɶv8nH!P.me;[ŏN]^QrϕDժݶx:7[vֽǔr6[^Q7A& pfCW 3A#jRZݗxƜ&Nn]t\Gw(wmJpn}_H;n0 QnfWWhKos$]t ͫ@;eǓWDq@wRY,@Q/9p/ hCieQ|xEҁ%rXOQ9LrItc5nnY5qK`s!B:K֛K$P8ND(mR-6DS=?( ` BDbNaGǎl w#!5T>k]jIZ7q7'uۙ+جl=G*Ն=NZ go/T?z*豸YY% ~Ca*(ꙺ6"}6hFrvyTg&압쮳=j,(o^~K#εrud4[a*sg')"0Bأ7?$N` @oc Wꐙ{y7o(9=mlmf9ꈃ&BWdJ;3_G=tg71')h+Ȧ@6:?& u0m`u1kʫX&"#z9q&.(=@G 3x.ZsW@g&9d6a)ҏE`R%4 ^9*^Ls/j+{1lYkNGp/-S̗Er 0B5ǦR`1E׸ 7_m ap$gtQ4 |c0s$ tl%ZwIZ9+;*$*8Уv44|mhԃ;U#fڔ߄wZ㊞2-A2!b j?nDX>_⮳1>`_bmZ4 $1P. f7_%c/"[`/T<,OQESv |G(WG]w!)R GNR2pRJH0@/j1IaH43hzB BF:Ũm5i:_Xu`[56~V}4jhS?IG;43B~%H,I9>%8d𭣏,H~^w|rfc@=%9+nG<cVI7ffː../t?1Ŝ/OCׁb-ǪvD7%I=eҸ1ow8i!'r袂G-).خx'\/fБMcmv,qqdhwo kސT!WiyF&(oAJ&} <6-BH~L.G k}LG޷̜X.a?`="~3ߒ :cC_lQ~߂%#M @c(I0tK04_3r|lg0B+nagZɗ=@Bg6 GN@U}HV3#Vy7}&^%_R?Np?=bP,rjj[SZt[ [<7Ȇ[&/ta`C\vq4jr>jT6++J'ƼZ gڈg ]NA]hOӣW8CoCs AI5>=[g~cď㷓҆V%Yvqt+UCV:'a.e`y+ onidC5`i"pfAQd?UO9G $$~FUÈޢVfS@L'xtˏV^L(2Sx2ÏCg&`u3*C%CZ3*7}n F8 b͞CZ{)X”k^ `g r8wqi2gX:H)r*<0+c) .cL=jUӢ~JǸ㘇LQT|ĄT[Rav9lYqUŽ}Jm|u@6q[ON%ك/?كE~L;f[_[i9}Q1,atomRzۢSD1.Np{}W[ҀFγC` &A4Op{Ԩ(^1E[?ylE*됆b(]K"b#3K\' F{x<ԉ"`>/ZJ[8j&т[G$)=J@T6i[.t`#aZ$7_43k^_< @Nr"&lh k"%Dƶ\`Dx ~x,54tPEFv-&Y;' z.v֐O'r u2AՆZ!uɒ ([oo!ەf4CՑ$7F햺!kݔp{zhS!sZ8}, 5$ԤHVS֯)4qs9ȒI=CjY9@TJQ(E\kU.ec}f..ɹ<2T6-Gt*ı]Q4g^r->ኗr;Tr{,(<{GxNH16J~ 㛵I4`Jh:T;kbA.Bh<&'GF+$J٧JwR{ YLV8ܺJ5}@Ǧa:!NswxVmuzK-9a#ND祤Li4y "ڙ%{"$CbȠ<sȽ[S,` lUWBzoPR?%sY}4<N wKWbxfW&>$R6fNjR* q>u5#Ңmf9$xl;'қ6?S@2vl,A)| Zv,"&W[uK)EB0@R>CP r: p@Vڸk@rV~m9PP8ǾٷVZHLzPGb}ȾtJhl^[g؃1~iׂ㟠 ܕ*ZN)Gu';[tB2ُ}c(0Wr|_Sq'"ϥ&,<W`Ej;YD0fbpJ>X4^A4-mokC'-l%(&+ٌm6N[zRS$`>Zs5 qxcޜLhmnP)XE"3O*>7P8CL姺s6GiٻkvLC4&# LT a=ʲCE =_^$:n G:x$H>WQ^g9<Gj 2pǑRi5lG *]䛚58!/̲JQVM+aNQвCݙu#~:ɈԬvsѷ/تyprc}./^,6} ʃb%۱Y0ϚH/ ׎g|( ])DP_ip7Щ d7l@ْSQ: d7/Ƥ5#,O]Ȕr)7!@njIwU|$x~ ַVj#q6j.*~vhèߑ IYf¥Ul - oQ_KuS8nBCQ1f ̎;&bf~}#g)6Bȕ/pDεւ)? a\eT6<%ul9uc-v5]l6K(ռJ@bSHP{q4f)`rt5B쎌=H)Wa5qD `P ±'&hMs6`'{Dp*3- wTrau%҃c U!h" "?M_l,6Ao~UvmuU7hS@2y1h?yz5F9Ȝq7W% rC&)W\n>E<yfV˂ flm |icu~]ol'm3kRU4[JDwEuU J5@RG.ޫ0Wqjvrg'Yo(fڟ+Xz{Hc=XI9*Lh 4=κ"nC"͞7`MdưzָeBoGWh7=Y@AyHN1S)s:WάyDTk~#s>{˽Mw# |z2g5B:"e& ͗ؤ^>i0+  [rٌq\H,zYw7ag~<;GgGcn؇0zy W##z/OTLdv6q}Q [mED?h}sT7I7`Lq7>!RAUΡאilRm+TG+mij WϾt5|5Z'F*ݳ7K"U*CD n`&M?tȤaSKB p@ m=^1C: l2X.wy|ܳt]W4CoC d1ʎ5b)ꁴbޫAa&kDItS; 2Qz ZedJGTVJH &(t~I㴥ČP.Sٸ#y'# eeϾM]~Еm!a4)ٰj"̻g*Cɥi$hxuҨf!5h ˄N(>jrJ(QHק@:]F'=ZEK9X6܈jjm†PŐ&C'Lٔ%ठaүS#u-9Q2'xZC0RȕX%HlTޓW!+5P7L+p Inxu 0MScͦH̀prxfpյ sg/207CCѸ Z1aژbCmHv3sLB^N3d>@4d/9sg W `c5o>鱟kOS]- X/-'ਞ;$a^vv*\rDML*[Ȩz u/+~o?FptUӔmUGX?F9@XWʜJU$%^O(c Prwdz8ojP1,#0 T0 IݗiJ{=Q]0[ m=cXMAHJA@;'m] !D:%J'|#NBtZXq4\#[!bBF+IA!ib.cu0,H[`t /,zF՘Za_ˁc>R@ \hO7B]س$SmubTj]FUe4%FKVHl*~qӍ:أ l|%m=D1{,EC"r֞Y@LOW6L@ eNϞ|il`2*$%n#'/)q"y  mIZ:>M40.Bt ә_ɴqH;vJM!AQMqkf<ߧ@hNHDqSYWCBe&d^4Q΃mߏ LbՄq)`ۋu bҝfl3ULDVLd7A>  ~c /3:KQޑ޴j%ZwO(Wq eBPfK(NʂC2`x3W; Zv$5MiKו׋cN:kdgنPp\KNJ!Zuu}J/)Ӯ0#|U\7~;"0lj6y#XB `[pz+,q@ /T^dX?pr6h}i]e ѮS뵖`mQBg8rM447f@EFbIOjZ ۍ1CQOB_n7{Xz^*XyN)__,88XÞ#G2>P\ڇeޒ-8tEZ[zQFtYJ__EcdV_S(H9"L|l 6+tϣh˜)⑆瞧:_z(Ùf3fICkrs "U%)X[0w?H܉a&315E>ޟ[Romz #4/{4>%7?W2>L$>q~/sSf9ȑ[8V AT~(hpr9Gll^$ߒiQBg\C?8,C%\¥!={h"ùbHܯ8D k`0Cw?}t?oΏ_勧Ёhwf=mS/4*/_ja P( X8iT18O'gNם9>`t]6Z -X"wiwS>s_ yNi_1R/4X)ZA1wv+T q虥,Dt#͝!TWQem?1o,uN>OtM%įOgU+jPoIOs 2c \%ŧ-LsiX2xJlY$0gy [%dGpGj]ځ~%u<^\UIk1Albi7XD[íxW29oř5unF4 UT mt߂x7N<9n.A?X? J^X9wcb4ϛ}sgyZi)}a, yy'jlkWwDlʿj׀4oF0흣SW(.2hsM|KD$a ^Lecpqhh 'A;U8P sңU&1eUGć ;R ŁoN~[žP-n!B u3>@I#ivD:R_;Xko/ AkDNY1^ϻq_ziNapoEB!WЕC[#~ϋ&#*9Q> :0:7$Z`xܟ GviZ{\<zm9 %*smzqcE83,ӹZ<ut%gQ\]rOI_Lx<=ZI6H-Ah@tp'ÊNKE3G9Mupt9-@b?g'mu&5<</q,y)yxiXlLCbJX~$Aq7VBZȟfMT/M 痛LihiN(+k[w# ko+6ځ2KAN6ɛ .q_F~BȮ; -Q&y}%t^Abt-|.+6e$y}T Y:my'N֎Q^%29[~+kS"!JwG0]/xͺGh:@u*AE3Elxx!eu&gw5{e> .t8$ٯ:;kWt`xnU{ A@p[ ;ɐy0:^KSkD*7J tZ~[ieb,ߦxY~|6xHY1{&91UdV~ǰ;:QkSݡM3~hK|.:z)`!jӃf+Ny|=PsyW_LmN&< lSYO;u>@ p \A]-ސ!g898F3$uuHʣ|ȝ|5"T[/ Z=Z^:>"g+0srFQ++3v&\ue:sՇf FTc3_vR룝 *Z9eTb?^)N FRnSPujWj*U*9=^ fҁ+rj Hl QEhFX_smcej};1C Ak%.(`A(sJqW)߫kh̋XdFQ(U1O %mx{S$:S%[o G7{IXC ]@{uQe:9nW |ytZTҜƕjccҶccBʛxWh(-{$S!E' ~n w4wzq@ *XC`)νuT J^ɱFiq=w7& vT]cZ./-iunhG5!tJS WL`m1x.xpZJ.MS nD3~4j;Me VBUZ|Rh@:ɠ<$m6SC@M's6aaנиto^}> MM BeI{k9w1*F~*4BSZomEDDfWҌE+VaC-"Z\dySy>}ɗ^Nቑ4H JQ4NdMi s*퀢gЁnE o@d[[J/Y=:6>1v3e֊o0+$2=:)>d_L=a ~?? k%9j*䝼_f |H8ySK!ŦI+ؙ)z Xڸ?ӌEyѲ̳cz(ruEOE 6Xxl ey"hOB s:ƿ98qjG:@q $85ԉ&"566Wg#+~Y}m ): l?)frG^e^TZž4>^7g^AJD֗z2~R@ߙD(r=ҟ/#X53t]ݨ p\ ȩP(k,d4 }/+P~Lf?=uX+ڒF9['{gr"`LN]]">s&|SaD[hj-DW+B܌ps7 + 1j}b|U&6. N4HnGvި]jg1O n1Eo7Fځ$zзre71\xVEצم=W4e}찪jϷ4T:&<[ȃTJg}{)'-xm J.+ Uuc HAD'H ie|44M5O 3_eܪG(6憔vڵ6dKV8NZ \=I"tJҩG"g A̿ sYNj=4Dm]9JmP~_A{+оr(dV4?[#1Մ,l7IUijN¶|}% wh-X`KuҷpTR!0^QKkSm-YKP'E6f3&_gKone) 6\r`ܜnh4 Tӡ-9 L{ԟ ѯSi8 EIMfPW%e̎\xmNʿ T|y ,)$\G;{4Je?ftj"u\'꽷 :=аdiMI5'r}r)RvUg}.Keo.)/HM%_4"[mu@ 7BR&-[a]zrGE"'ix$8a؝> DH":G2 *sh&v157-r91fnYe;K\(*~BBLqWY_4+m*N׬>N`vZsG0$לZ0Q1E- Yoq@WK 1hL~(cZ'ݑ{Pf`m2#GTJFcm8#gn]ߘdRq|Ge3 :fApSM,(AvsՑ Uin*g Ѕt#.ɊYh&tΎnz "c=q]zIM2 3'=RiSyCuv]gw{F.#g'M@(/TP^3J2`Pzs=P0ff&q韓V'Uw03Faߡ\}̊CHKČYSpl2jcb<c)^%mxYw"b'}C:&ïF!QM5K_q\ "%xdOg!,ԍ wj+U՗av̊qh&Ӫw_K20.y;j `.Z.%tWJmX쾭W$a4Ixi_-7L¼8SbB=N*ua>./ e[T$k4(8O|r0>S'tNb,.IJru8.L ݘ=>_oY车omEefZ]ON:]Rl8@! a eH ٺ(D/d$i[^}d dOkFWMrKʥiA YhWӰ gε'vݢ"Ȧ}[#FPcY'v %-0l@kD8΃(Bkʖd[K {Wߋ'>_P3wrp :Jx:C`܄xUf*CB,Wi3|2UakG*[Hc/3]t^uP%x ,@@3,3hTuhHL %u._ADAy9Aa~`6vttM /b?(Ex:FׇT# qiY(5a^iemB\0/A$WI{ 15QzR#0\u@-o3FK#zg:.LTPnWǿ¢2w<ʢT}= I zBˉ7jҞD$HY_+nW,miCOƯ!f}$hImM0-g]ھ|Npk4ny}ZVğ911.턗UEC)I l,6 7Ρk*Uh^\G[U.@!idLDNWyva9aoTk0j 6lmv#k!&j '~Wʸ Jt%l LY9B*LoKGﶋaִQSFƑv݊B2Tp-,>FRᏧJ`A"!,;Ѐ'cǰ o) +<1?U aQ#jÚWe}LW'IA{G99̈@.:HVi-: 8Lf D9vQ^*?=^:Kf+pwdS0||r2Po͟g9MPaq0G&KDmO 7'P!e!6c/>3訄Cf`7 ݂憰_Lr~Kgۮ<IJ 9!:d;YӨۊM'({G*"=Ftp#k|k(G\JM&Wr{+~|W}}3 eO? ʅ JyfLT+ ;C<'H߲ p1].AP:׎A8]sLJ1݆!/ƳY2RA-D( k^J ,VIE\_ޕ8ƖrبƌOZV|.7+s;<%6>8I՜rNWf  13CZXzG}=s3#nSә7G3;'Ǐ ˵!aѭe2Z)}w4nMX*JUMAMƕSML:.#@pm] f2[/E#ZO 0e|Z}~jZ4ܞː](/2D|F{ o 1ļ+1DY5E~6XZiZUh𹛹na0Ҽv;Џp{J) ֛E)_A1O"uOz?^.`YCP70*q[J#וdI*$+$AFb@o }F汪~&HP+ޙ ]&NA`YZ()5#3M\stuvE_RĹns3Ţ:eԙ/CYk!\XQƾ/S;i!oK(7GWAlY < yŔ}ju&g%!h`PGR@j+MapH+_t<| m<ÅWkNiH& :/޽bievWSδĶh F\kxu}\^ANUVˡ߃W'g3}֑z#}ۑA`~WiI{8D09:; Tյ[ydSn/pQtݔKMG+t ;7{׸C5]j3B)8s@cdjp"-f “/(b$q'폠A@ LtYs#ZbdbN yA3~ǭ)=c]mٙ*0S!-fﰯk$V 8z)cahA|5iն|H=q }&I0P50Ay(`w=j.Ya_Od($ڬu"ŸUWS|!.Pk"2{}i5{oEa ^7ʜṣ@aԝ%]Ϟ<|qvNCņB'@HkTzZ+uU:7Tp͎dv[C}nii| :=$^>@~| ZKgKQޟQ>r2 xkv 2e ehw+>EįQ6CƂS3 s,Ve/qQZo߈HM«7]kG=◆ I$ Q<ݽZ`3ܥ(j$.Sl6gulQ]tJn""6-ȺO I!7SQԮ#,;HӒ'c֥3r-)Ҩ9Y!41IfZG$:|誶).7%,M1D^: )Bf"^2bZٱ#5vXz_6Gu??+>ܙm$eG\^xd؀c,*M,9 J7T_YxT j,SD׍R'7lK8z֌:N cp>1TA-r[3ۅu>$ڒRLIL7v4rh(T]\u?i!$ul"A2t"3(y27tdgsh;'>lX@ј~jB.f;Z`&'#c-4|PLqdͯ\B/4sr::Ũ9;˝r50*ʃa>^9tfnβ!3R+ozf?rX_ZKv(@΃Owl""w-bMh*p*|]c%vG&C@l)f1%DDՔMB l(bȌ ,3YA]ǎ1K1ĺl΢тEByNaCTӿ?C|swc}"7^m'a 3=KOvJa<ki=9 Ze0eQ8iQuFx]im^lo`z23S(QD7S41v2L6(1)Ex_#W2aRuUi}3Rt"6TnR1CR @e'69{r_滁?R[ĢM>= &`em,`͑NM6ףY9nl}u a@n dn%^9X~&tc̛4"hRnki/ "wڸv^xB2?xߔԿDFyj)eFeb<Mc;m) c$=5'[3%lϗ( ^o֐Ӹp[&I귽|?nX^4:+^DggE~5ej7#2^~x[ }/xjK͊%'QD,}r$nrRP:B4RUEIՀ^,a-h<`MW|ab~%1T88t'h9$h=գgpt]AҢ]UP)4{qD = Qk'ag=E90"hDTgiw-GY7G*Xbܞ>?3֋,m5E YiHA}vUQJ\,7+h- S\6D̈' 0FT"ׅq{u 0aSm37GܳfC>c ]&?G_|uB=/j/b!FqF ϝTS/i SvCO;}Fh7cl{q:8٫>5KGPׄZp=DDԈLlr ɟI dn3)-"~jP§BъDžAˌbhYNiXɱ0h4HG07:/.VZf9ǥ)MP,{ 8g#X3*BDC ;[b0x)b_-j|7tt]<*b3Gɸɤ?Lp>بKOv}>RBW5\2(SmUz>ކzFQ(fJ<>#R)4rrv DoxJa NW+ 7!/ǟ˟|N 4`=ptLJ:ojaax!ϕjBkaX CMI6ТYK9y a*~:&D&oKb8kCM| +a> bfOFHtx[pkœ5eXX2QjR\FG4 Dߗ<,Bem[XR5)NQ0/yC곒LN8ȠtSJBq3ׂLXݛv532M\!3T-g&0TSq1O+,קػ},P2 ɳ# ö0.qY6ja*_cD8h26Q}Q1vޏ \oz:=Ź'lTQ#$25t֬iy!rL>#YϾJk .2&`p:e s!~%AجF1S@w|>w b%FJWi֫F~%gns6#!,}{EnNYO.ewO3 FwI=#n*H-0:HKH3XҐo%6Q֤O LkE7${4BaWt{y{A {=KєBb(L my@~ e,t =Op.acT $݆kˑ:ivNjuΈGQy6PSrhi7]Z:V m6(X$$0[Z A +GΖoBک2iڐ$KXY$:ixepoFlx>78X )kygUoO-I9ƓՅC:1ivEj<ޭ}~9ͻg'GxK,y2IŌ˜Jϓ$?1[MMk@ jQ2kUz#KlYn0r^AӚҀ%`Qgp7VL ]:$xQA7er/Y?Rh+6K{>fp~^K}A/ɸQb'WxM,t!%,-Z(N21R7roaa]oU;.szd54Yp0Vp"d,N^.5}H;dUho_j1HJ. ,\{o&lٙHEэBҫjG⋿PJ!YdH"@ox򝖔1)fQɹgD/xXJQ>QG;iP?nxi(mL%$|.?H@hrrXǾ'wnڠ" ]ͨ ELő˘^Vȳ2 nOD6k 0S{8<"=U2}-d>zC(眹W&bYq'roԌϹ'Nwwhs+㼲)[V n :Y9rHMm W9?c/ϐd;lv4ҍg98lGH[:ZUOcBXù`rF 6ȓW!У7֗H=[P/uVQF,b& 'vO1"יG֊,Ӏ H9v٫pEX#"<z'M});~ؕHi.-ŧo˰Ҁ5<|: a(W,OtX.Џ7`5sAA;NZS@@+tzo452~J(vTT>W1Mtv5V&NLfmQDH+I;_k`f 8-" (wH+uwE"rY]e^<`zAI hgS_۩b=-OP}xqG3UW!a:%U1z ).mloi&m^ZD9 ˽{:k;()?i 0ļkLT}ޕ;$ 2(on3hC`ntv;JՑ%!yVmBFFV`+COEڗmޙe'1L]btqeՍP[SACE].r"0η&{:;(W}I~6l[ -r*oPY=8R?ۈck<)YRR?/XemdHauߧ!4s ޖ^W!*-,7Q%nggHn%>0+ɧ4kۃZz {6#BZ{}+҄ kۏp4A @A9zepϦx >xY"DQaDNN@, KNRaz&HMX:]m/i\TTL),<^5Y9l8>v?sEmzZh,=O!{p?Q4cր43In0 'p۴diuqʊVZyթ4cL~Cij@;-5:civ}!vVx!_XKVuޣLmi_a$MfAߕ&Ai#CJTH }٘nl3t_#!*݁6ユ;:q]r$^0Dv彚 u~5DW@y=9>XR<];T^܏C$G~=}` ,w[/ ]C̑_ۄU7Օ2gbb2O^5ѪFd )d3!^E/mL t yzRõ7-gĭ{E|T-l5٢;gleqt>!cBЄ!gU|.  g@w)+܈!/>5yKpDBUyHd' wem΀;4! oh4Z ֤K JkBQ4V9o+IL'pr3G7h716!y!8j3/1umGE^ k#8{) (ȸ1`Z R`v<8OۋAY ώ5NT==iހvgA^&)+q6X6b`\㽝Dg+aC]q&> ian>Jh KIEgߑ Gm"Jq2ӘfJ GSayEwJWb_OD D""{X]Qrl8AN R5WCxʟ=szʧפ*]2[,GVjdlb_;*8eo])Wj Y`rƬ+gLCY";/b@0ؕH@Es/E"urt֡VM_?%4aē~H`q-\H[D>BH^@f=nEgS8mdY@鉓dž0)_i $/s=;3.'N{PJ gj-AoJfSk[XYj-.U8|jo]pғXNkOzǡ$[|?8l^Iz|PMȵD3e7O{ R)_Zz>YHeӜoƾN+% }JYNB)=MZ[` À[*!%fv0 "Q4瑘BοdHr|e0: V7DJd@k{)vTrQ[`\&m%e#Sj$w!i*Qf\_'ķBM[qR\~JvS߯uMC3lfA3=t僛!g' 94g |N|= q&INe՝ދh?~ß*! (4}3S"z,}6voZx ȸKdFyyiZ"͊LZX? !HWRHI9uw(qQ+Jo `TE@znNj;[+uܱ;6$vwbm΂kP 'PjOȬG& b0aF*8 0y Aȼl.7'JäW2ކwU2¿^͖j:{=.7,fb&C-KVѭīOJw28%XW:/<2"l$^) /&8P1Gd}#nj|6mJ֟kopB~w/u!{=: ^fop bz{e o(t藫a\|ŲZ $ৱY\ f"6?Sk|v7ry%ZGp$|!\_*FcU=CS'rd'<U;pmǃៅ(˿)\hC4KSz3R+ƪOWO?fenSnKX?ͽB$a _M9g c0M|\?Tz;.C5F*-~s kG0~tj r#& F^6+ԑQaR^4m`u"RtKGLm4 /b}?@]zגgH+r͊qn" n:# F;*:E#W{%\]' zhZ8<OУn*R!WjƴL|HB|>ѥVs%O9|~ft?GQ䪲e\Py~P9InNtڟ^ ]BwX`6K|9%).ą9a*{9NNM)1c{_,9o:?ۊ6T쀌^Lef|7[Ib@>V>Ep!mXZ5X#]ҕWZ2ЧVDq|X̿ Rs%}LtnBOYOՍ3#KyK)= ѸJTvic߹_ON m7\K45(!Ou?(mƗ3N-9WWgs2ú{.VX#}m:dUD]54ά an l)A]^)E̫`K9g:KҐ p$ Y/G'Nmppl7 u籥#w㽦QJ%ay̘u`Whʵw^ыmmRM!"^A#)㌔ˑ`K"qub#ϗ\eMfJhF#%USY *C[D|LsƋw3Y8/."~ܥL`M\ˑ,*4ݸ J~޶>2, pfsHnt[YSIA`]9`kv vFHn. J(fKq`CZ&̄`\4='6jtP{|p|(unw Lz'4$/B;= nmwA!D&wV%=\Jq")j`B M7!d&yzEE*u} 4H >?㕞[[L'1vܢ+ %MI>6E8C CM'r­6Vn13VBf'OHKX5孭Lï9^^?p1CeDZR,G{AiGcs6Uҧt. ]}r1'XuA 4~LTΠ7 on!Z9vhSZ sSpG-۴I_ev}%XX|x[7;'bPGΌdЖ{G([5}xrz>kٟva6E8{VvRJ=cKgMW<,r / ֤V*)QnUN Dыh* qD+)M5P%7=3!4V+ZeSEbILCRKP6vV(?y $S 3I3.eOL8.#ts Q ߫ I?yDjnDڜS@r`Z0tRh qҶ7n1  ά34g$LUqd|vY)#WSWNWzr⹤y>nmwFi']fpʘVk*bKcǸ֪Jzׅ,sblO(3pDNQ+suv5L@R/s,𲰊XtN%l/CZR T#0_uPGlS,PFl\Ήzv4у YXTMѲW2Gz (^H3^8 Jf[óIj~7ghrY6x,2\$:bh D3d%U5록 ]6"*$W1}H 5 z]#OD6ʋ OpB%#Vz) j]vVsl!T. Jo4Z:7 핐@QRl^Gv:/;I{Z;ްLR3\YƁCJ IE^U|:@vܿ&ݤr=mȒLу-ܽ }d*7r"! nߛYt҃A .RMNE +djD1fX?] 5e#9ov+ 'LmzFF ۔ g-nn4F)Û^VhT)^b݉QXB 3\+p,:UHř{U(6KR$9=U#{U|UAricS`J"n k\I}'.ttj^73Z;uz?_PZ~ D1Pw$7\ BK_Z…Yt{!i*/:O<`dU#GA<&Pd{ƢR:?fY̜p0Ъ h-MFnѴt%Fe*!g3 Vk/iU.pZ_VA܍G9t',ҺJSw1Llk:>)\m81If% 2gQwPXo>tT2QQ{#?u \uM`ffp{ЖMopyqLM\#c4k%9111=)tn*c;8$ʤ(^n!%4F^]3gcrդ} 2B[9ɂvzJ=B.+7O)wpO [T­ٺ^ݢtcab^]`т68Uu,5pfRz7W@~jGµщΎ#]`2&N> Q-LLfLT࣢GLS|r7ӮzQ,gfcA7Qr|M J]J`ު6w& X>|@X^U}^ `bL8!Ѥ~]M_øO39'rhw$3&!|-CC1^h ۲ݶWuJ^c&^ `zx\poSuy>E,I:ih hEҴ!bbyoLp\d6$XxEfELx65!`x ɷ:PtjO)f* GtS[Ft~yӾeZ#~lCq>B/)c"UyCfh?o E*5B #y2mnWJ rV3O>$ЈXi,|~W-vl 薻4`A)vٹ; 04V;k'+FV |p3[hPI?3 Ѵ-Y\jela׀2tչf^>9ek$<HJ.CS"~aqE8*S6V`M@h;0{@R#8,D߿~:Q>la-uSVP8Ʌ_366,8V"e7"T(`_ ;Li:G۱naiYڂPh7idn?kߛ4$ΰnX>9G ߊ(4ctٲ;}ݾBYs7rv @EλHe6V=hGN| X@`|Ye 9X^ hƕpV 5N~$zkGws042|n$&,St=>*yܴ] 'ȜQH=۩~a.:ttqS4*vKRYhPh\PJƳd?7X$LTp CD̢Sq# ;K ZP H;kw3.1;:2ղ;Kym.@FogۥGV3-좣- ȕնXAԷY9X0W7غϾl f+S)a,+]ëS3VH7xufi }:hZ˥ HVr(^n!ĆPVfϑHSHP" S=ԩރLW8<0]\ lO2t~USuHW3˲F5JTHRگ>5mx\j9ZiiC?e2Ͱ6Uj͜? y 1m[Urg_o-dոyf$,yC&, %KW[+qiB,9ț)Y#&jHKȇi9')[!f\^47?Tb/a@5?S 3JN0X2,O0Tf%CȂײ!s *r.qŇ|KT-A$ٮt~74b4v.hTrD.K볰D>HQOf7O܅dtW6Th"& *{L5i. O*-V9eIK<-W,+.6 e ć$rgA۸n&4a, L""M ;/f㗯PW] Z8;qh%^g'=rKNo׈)(j'.Uy>{~鄥+|IHXճq ep0]}ew @BYFk~Lr]_i,isP;tjm(6ͨ gq.ȁw\7cOJc >Cm{J٫sT~?hݜnaȦdu#~uc1Zk. peXFt톹]免o/t.ۑ6_xJXqۼ<[EgoċΛtLŒ y7ݪ =@'vB6ԖԲ(z> {ycde~U y:pk{K$ M7bJ/LW VU*ſH# fWw@4H~&n lF/ wjXތ^UͩVpx:i+C0fcԛ=7_(MR:΄; GZ m`ۊEVԇSe_b.DJDktp?Ņ]۷xЄvQAX^Զq}1x]a=4(Qr>`\YpElQ5Zk3A ,6;CJWZ21{~rȳ5l0-I=Bv~rtSOe+GƞqhA]= =;jpv&i[;k%^;cSSm>21߮Ŧm3| a*{]H]2:Ng-CrXvˮU= eo;?Ch)xzae 1yARCt%CڼNV;&ÁΘx8c lI7 Cls˄5<}9BKѢM_?qoDq:[F2ҏ6AF aYQ$;K^CJDy*lN<- _8zWy pלACNШOubbWC$1,{:kO耨,7¾[yZfH})e;"MS .&Qյ⢁F]%omPvN_HΓ cЇyӝ ]iOu-\E "qes~&s[TO_9 :C?ZdI`jJOOtȪRz &q?e*ڔn=*>wD8Ik eV~|f㈸*!\ID6?NE1; Rias=oa]A,xj,F?G6 KhkWHmv4yjn6鳽aH%!mo/;?`.B E1*؈A]wj&=iHy~l߱H6iR̷o I VOwuoY.|A7*NGD4]b_&ÏI&h%z_ zoScg ?”G~ z3s|?KslSctt]>NGTjȩq4.=H|ˆ骮k |LyБ>-֟K9}sἧX&#?\Ur\#Jv۪hp[9b>^߇3;nJrOQ*^LM,4'S65L:U+-ԐH15{޾F(OQȤ8~ #1kc3y(埈 SLB%&fMIC?0A<"V$Kt JA)rB~w_o?Nw$1HQ4~Ŭ Ӽ.؉C7$fjV.C>5%nndtTַi&N޻TS{(߿ \IZN<&/E5uIgRf НC&a/Z,nlia۟ Ws1TQeMͺ1H~ك_pkk]9E՘J^ndLdgI*F t6IĀS9 S$=pIi+.f^^vJ|\} Z!)$8N5e;YXdozW(L eY>b8Ҍ%͚iYn74-cj5 hp b%_؇NZ0grx|K30ɷE➖ހ0!SM,|)4oYlYhwU-`gAD)Y"= *aHl_GH)Nyuzj*kWj9GKv<Y ؝=M@sIݫ缾 rt*7f(G1SRkGɆ7RLa]~iyN2:p5|=nNMvqF<a$|jj 7ŗ7;;g7< p2~xs5gyXL^Ps C2Ĉb'xq@1{~R69Èe|Wcv\,ee8I~4QwA:?)ON \48xsR9O15ʫjVֻPBoAwPO"ĸ竱qE}cM}oțyF"j,,=p ѣ^NESCT' JUϨx|Tv` t(m0;x߆#|JN__lSMu+6 T^JFi[NHI{B>VpQg!EB[Z#VJg׿Ύ,YfS|P#쁢|0nVѺ`wK4'z WM ^LkSpH| `P\^9 VJrK#N 7)FhФ=Y|t/휂,l{t$O;m:A] Ꜷ%z(› =YiݰOI!0(sRPn] ߚsh~ oLgTjs#Ͻ2$20+LY#)0b"T,{AypΎ~DԬǟFnW~|JXs'rq$O$Ì4M6t d-N03Vt_M~yg ~EtWےG==3񴱒 27l㟸04Y"2kԧh.DM~[ʢ~G?SfQxwv ^;|%̡i3qGaae  #)f?en u֩Ʒ1\"lfE$ "ˌL YZ