kernel-tools-debuginfo-4.19.90-2403.4.0.0244.oe1 >  A fRLW^^f'\cq񒒌-ޝ/U:a{IU/y5:AV-! yb٧Ñ"n}=Tk}\7CvrPʒWGm'*{MVɩ!Ib6s.96/WNФ3qT() \Q_0C*w`%hW # 1MprpRUo?MrI HQ"D')gF-+Z)fc3832d0472abb79307c491e15f946644b29aee9c9214ac6854886e0a071599984678fd966df9132214dae92f9ebd48dc386e256fRLW^^f+vVݤ'BY֕zE"vv{X'PGkW6ʙEXɝYwhϩ'_j* Wb}r\F! \&aYr|ZUyniW[[ qF-ͮ'5w h fe Oh'~3e⿗3mx8L+fAރ56]>K+a,vi|gXϛkOuL-6~@lcVAA}\!Ohq}X>p<?d! 3 ^@Dn  . L  W h:dK(g8pf9 f:"fFGHLIXY\]^dbcd.e3f6l8tTuv z04:|Ckernel-tools-debuginfo4.19.902403.4.0.0244.oe1Debug information for package kernel-toolsThis package provides debug information for package kernel-tools. Debug information is useful when developing applications that use this package or when debugging this package.fLXobs-worker-backend-test-x86-0004.novalocalropenEuler:20.03:LTS:SP1 / standard_x86_64http://openeuler.orgGPLv2http://openeuler.orgDevelopment/Debughttp://www.kernel.org/linuxx86_64kkc g@.AAA$$$$$$$$$$A$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-4.19.90-2403.4.0.0244.oe1.src.rpmkernel-tools-debuginfokernel-tools-debuginfo(x86-64)    rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.15.1f @ee@eZeeeee@eoe5@eeeexK@eoede\eSa@eKx@e@@e7e/e&@ev@e e@d@dd@dhd.@dd@d~ddd@ddZ@ddw6dm@d_{dZ5dI@d?d5Kd,@d&@d$(@d@dadxcc@cwc=@cc@cc@cci@c.c@c|cs@cjDcb[cZrcWcN@cEZc2c)@c#c!@cc @cob5@bL@bbޅbK@bb'bba@b&b@b@bb@bzSbu bgb^@bUibN@bBZhang Changzhong - 4.19.90-2403.4.0.0244Zhang Changzhong - 4.19.90-2403.3.0.0243Zhang Changzhong - 4.19.90-2403.2.0.0242Zhang Changzhong - 4.19.90-2403.1.0.0241Zhang Changzhong - 4.19.90-2402.6.0.0240Zhang Changzhong - 4.19.90-2402.5.0.0239Zhang Changzhong - 4.19.90-2402.4.0.0238Zhang Changzhong - 4.19.90-2402.1.0.0237Zhang Changzhong - 4.19.90-2401.5.0.0236Zhang Changzhong - 4.19.90-2401.4.0.0235Zhang Changzhong - 4.19.90-2401.3.0.0234Zhang Changzhong - 4.19.90-2401.1.0.0233Zhang Changzhong - 4.19.90-2312.6.0.0232Zhang Changzhong - 4.19.90-2312.4.0.0231Zhang Changzhong - 4.19.90-2312.3.0.0230Zhang Changzhong - 4.19.90-2312.1.0.0229Zhang Changzhong - 4.19.90-2311.5.0.0228Zhang Changzhong - 4.19.90-2311.4.0.0227Zhang Changzhong - 4.19.90-2311.3.0.0226Zhang Changzhong - 4.19.90-2311.2.0.0225Zhang Changzhong - 4.19.90-2311.1.0.0224Zhang Changzhong - 4.19.90-2310.4.0.0223Zhang Changzhong - 4.19.90-2310.3.0.0222Zhang Changzhong - 4.19.90-2310.2.0.0221Zhang Changzhong - 4.19.90-2309.5.0.0220Zhang Changzhong - 4.19.90-2309.4.0.0219Zhang Changzhong - 4.19.90-2309.3.0.0218Zhang Changzhong - 4.19.90-2309.1.0.0217Zhang Changzhong - 4.19.90-2308.5.0.0216Zhang Changzhong - 4.19.90-2308.4.0.0215Zhang Changzhong - 4.19.90-2308.3.0.0214Zhang Changzhong - 4.19.90-2308.2.0.0213Zhang Changzhong - 4.19.90-2308.1.0.0212Zhang Changzhong - 4.19.90-2307.5.0.0211Zhang Changzhong - 4.19.90-2307.4.0.0210Zhang Changzhong - 4.19.90-2307.3.0.0209Zhang Changzhong - 4.19.90-2306.7.0.0208Zhang Changzhong - 4.19.90-2306.5.0.0207Zhang Changzhong - 4.19.90-2306.4.0.0206Zhang Changzhong - 4.19.90-2306.3.0.0205Zhang Changzhong - 4.19.90-2306.1.0.0204Zhang Changzhong - 4.19.90-2305.4.0.0203Zhang Changzhong - 4.19.90-2305.3.0.0202Zhang Changzhong - 4.19.90-2305.2.0.0201Zhang Changzhong - 4.19.90-2305.1.0.0200Zhang Changzhong - 4.19.90-2304.5.0.0199Zhang Changzhong - 4.19.90-2304.4.0.0198Zhang Changzhong - 4.19.90-2304.3.0.0197Zhang Changzhong - 4.19.90-2304.1.0.0196Zhang Changzhong - 4.19.90-2303.6.0.0195Zhang Changzhong - 4.19.90-2303.5.0.0194Zhang Changzhong - 4.19.90-2303.4.0.0193Zhang Changzhong - 4.19.90-2303.3.0.0192Zhang Changzhong - 4.19.90-2303.1.0.0191Laibin Qiu - 4.19.90-2302.5.0.0190Laibin Qiu - 4.19.90-2302.4.0.0189Laibin Qiu - 4.19.90-2302.3.0.0188Laibin Qiu - 4.19.90-2302.1.0.0187Laibin Qiu - 4.19.90-2301.6.0.0186Zheng Zengkai - 4.19.90-2301.5.0.0185Laibin Qiu - 4.19.90-2301.3.0.0184Laibin Qiu - 4.19.90-2212.4.0.0183Laibin Qiu - 4.19.90-2212.3.0.0182Laibin Qiu - 4.19.90-2212.2.0.0181Laibin Qiu - 4.19.90-2212.1.0.0180Laibin Qiu - 4.19.90-2211.6.0.0179Laibin Qiu - 4.19.90-2211.5.0.0178Laibin Qiu - 4.19.90-2211.4.0.0177Laibin Qiu - 4.19.90-2211.2.0.0176Laibin Qiu - 4.19.90-2211.1.0.0175Laibin Qiu - 4.19.90-2210.5.0.0174Laibin Qiu - 4.19.90-2210.4.0.0173Laibin Qiu - 4.19.90-2210.3.0.0172Laibin Qiu - 4.19.90-2210.1.0.0171Laibin Qiu - 4.19.90-2209.6.0.0170Laibin Qiu - 4.19.90-2209.5.0.0169Laibin Qiu - 4.19.90-2209.4.0.0168Laibin Qiu - 4.19.90-2209.3.0.0167Laibin Qiu - 4.19.90-2209.1.0.0166Laibin Qiu - 4.19.90-2208.6.0.0165Laibin Qiu - 4.19.90-2208.5.0.0164Laibin Qiu - 4.19.90-2208.4.0.0163Laibin Qiu - 4.19.90-2208.2.0.0162Laibin Qiu - 4.19.90-2208.1.0.0161Laibin Qiu - 4.19.90-2207.4.0.0160Laibin Qiu - 4.19.90-2207.3.0.0159Laibin Qiu - 4.19.90-2207.2.0.0158Laibin Qiu - 4.19.90-2207.1.0.0157Laibin Qiu - 4.19.90-2206.4.0.0156Laibin Qiu - 4.19.90-2206.3.0.0155Laibin Qiu - 4.19.90-2206.2.0.0154Laibin Qiu - 4.19.90-2206.1.0.0153Laibin Qiu - 4.19.90-2205.6.0.0152Laibin Qiu - 4.19.90-2205.5.0.0151Laibin Qiu - 4.19.90-2205.4.0.0150Laibin Qiu - 4.19.90-2205.3.0.0149Laibin Qiu - 4.19.90-2205.1.0.0148Laibin Qiu - 4.19.90-2204.4.0.0147Laibin Qiu - 4.19.90-2204.3.0.0146Laibin Qiu - 4.19.90-2204.2.0.0145Laibin Qiu - 4.19.90-2204.1.0.0144Laibin Qiu - 4.19.90-2203.5.0.0143- !5539 spi: spi-fsl-dspi: Fix a resource leak in an error handling path - !5542 round lts patches - !5520 scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() - l2tp: pass correct message length to ip6_append_data - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - spi: spi-fsl-dspi: Fix a resource leak in an error handling path - !5514 CVE-2021-47110 - !5497 llc: Drop support for ETH_P_TR_802_2. - !5498 llc: make llc_ui_sendmsg() more robust against bonding changes - !5490 tcp: add sanity checks to rx zerocopy - scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() - x86/kvm: Do not try to disable kvmclock if it was not enabled - x86/kvm: Disable kvmclock on all CPUs on shutdown - !5502 pstore/ram: Fix crash when setting number of cpus to an odd number - !5477 Fixed CVE-2021-47112 - pstore/ram: Fix crash when setting number of cpus to an odd number - llc: make llc_ui_sendmsg() more robust against bonding changes - llc: Drop support for ETH_P_TR_802_2. - tcp: add sanity checks to rx zerocopy - !5479 jfs: fix cve-2023-52600 - !5478 jfs: fix array-index-out-of-bounds in diNewExt - !5485 nfsd: fix use-after-free due to delegation race - nfsd: fix use-after-free due to delegation race - !5281 printk: avoid deadlock in panic - jfs: fix uaf in jfs_evict_inode - JFS: fix memleak in jfs_mount - jfs: fix array-index-out-of-bounds in diNewExt - x86/kvm: Teardown PV features on boot CPU as well - !5465 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() - !5361 btrfs: abort in rename_exchange if we fail to insert the second ref - !5254 tomoyo: fix UAF write bug in tomoyo_write_control() - !5321 UBSAN: array-index-out-of-bounds in dtSplitRoot - !5455 CVE-2021-47114 - wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() - !5320 jfs: fix slab-out-of-bounds Read in dtSearch - ocfs2: issue zeroout to EOF blocks - ocfs2: fix zero out valid data - ocfs2: fix data corruption by fallocate - !5374 hwrng: core - Fix page fault dead lock on mmap-ed hwrng - !5418 [sync] PR-5317: KVM: s390: fix setting of fpc register - !5272 net/smc: fix illegal rmb_desc access in SMC-D connection dump - !5274 phonet/pep: refuse to enable an unbound pipe - !5359 CVE-2021-47121 and CVE-2021-47122 - KVM: s390: fix setting of fpc register - !5358 v5 CVE-2023-52595 - !5336 binder: fix race between mmput() and do_exit() - hwrng: core - Fix page fault dead lock on mmap-ed hwrng - btrfs: abort in rename_exchange if we fail to insert the second ref - net: caif: fix memory leak in caif_device_notify - net: caif: fix memory leak in cfusbl_device_notify - net: caif: add proper error handling - net: caif: added cfserl_release function - rt2x00: Fix kabi breakage in struct rt2x00lib_ops - wifi: rt2x00: restart beacon queue when hardware reset - rt2x00: clear up IV's on key removal - rt2x00: clear IV's on start to fix AP mode regression - rt2800: add pre_reset_hw callback - rt2800: do not nullify initialization vector data - binder: fix race between mmput() and do_exit() - UBSAN: array-index-out-of-bounds in dtSplitRoot - jfs: fix slab-out-of-bounds Read in dtSearch - printk: avoid deadlock in panic - phonet/pep: refuse to enable an unbound pipe - net/smc: fix illegal rmb_desc access in SMC-D connection dump - tomoyo: fix UAF write bug in tomoyo_write_control()- !5306 FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree - !5347 s390/ptrace: handle setting of fpc register correctly - !5309 drm/msm/dpu: Add mutex lock in control vblank irq - s390/ptrace: handle setting of fpc register correctly - !5267 llc: call sock_orphan() at release time - drm/msm/dpu: Add mutex lock in control vblank irq - FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree - !5241 powerpc/lib: Validate size for vector operations - !5246 ceph: fix deadlock or deadcode of misusing dget() - !5268 crypto: algif_aead - fix uninitialized ctx->init - crypto: algif_aead - fix uninitialized ctx->init - llc: call sock_orphan() at release time - !5220 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add - !5196 drm: Don't unref the same fb many times by mistake due to deadlock handling - ceph: fix deadlock or deadcode of misusing dget() - powerpc/lib: Validate size for vector operations - !5210 v2 Fix CVE-2022-48629 and CVE-2022-48630 - powerpc/mm: Fix null-pointer dereference in pgtable_cache_add - !5175 arm64/mpam: Fix use-after-free when deleting resource groups - !5163 nfc: nci: assert requested protocol is valid - !5172 CVE-2023-52502 for openEuler-1.0-LTS - crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - crypto: qcom-rng - ensure buffer for generate is completely filled - drm: Don't unref the same fb many times by mistake due to deadlock handling - !5177 net: nfc: llcp: Add lock when modifying device list - !5157 RDMA/srp: Do not call scsi_done() from srp_abort() - net: nfc: llcp: Add lock when modifying device list - arm64/mpam: Fix use-after-free when deleting resource groups - arm64/mpam: remove kernfs_get() calls() and add kernfs_put() calls to prevent refcount leak - !5142 arm64/mpam: Expand the monitor number of the resctrl root - net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() - nfc: constify several pointers to u8, char and sk_buff - nfc: nci: assert requested protocol is valid - RDMA/srp: Do not call scsi_done() from srp_abort() - arm64/mpam: Expand the monitor number of the resctrl root- !5133 CVE-2021-46926 - !5136 NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds - !5052 v3 Remove WQ_FLAG_BOOKMARK flag - !5140 linux-4.19.y inclusion(4.19.305..4.19.307) part3 - dmaengine: fix is_slave_direction() return false when DMA_DEV_TO_DEV - NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds - ALSA: hda: intel-sdw-acpi: harden detection of controller - soundwire: intel: filter SoundWire controller device search - !5114 fix CVE-2023-52578 - !5119 crypto: scomp - fix req->dst buffer overflow - !5101 EDAC/thunderx: Fix possible out-of-bounds string access - !5094 HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect - crypto: scomp - fix req->dst buffer overflow - net: fix kabi check warning - net: Fix unwanted sign extension in netdev_stats_to_stats64() - net: bridge: use DEV_STATS_INC() - net: add atomic_long_t to net_device_stats fields - !5092 wifi: mac80211: fix potential key use-after-free - EDAC/thunderx: Fix possible out-of-bounds string access - !5095 linux-4.19.y inclusion(4.19.305..4.19.307) part 2 - !5090 drm: bridge/panel: Cleanup connector on bridge detach - !5088 uio_hv_generic: Fix a memory leak in error handling paths - !4952 scsi: qedf: Add pointer checks in qedf_update_link_speed() - !5076 v3 CVE-2021-47074 - netfilter: nft_compat: reject unused compat flag - ppp_async: limit MRU to 64K - inet: read sk->sk_family once in inet_recv_error() - bonding: remove print in bond_verify_device_path - af_unix: fix lockdep positive in sk_diag_dump_icons() - net: ipv4: fix a memleak in ip_setup_cork - ipv6: Ensure natural alignment of const ipv6 loopback and router addresses - virtio_net: Fix "‘%d’ directive writing between 1 and 11 bytes into a region of size 10" warnings - bonding: return -ENOMEM instead of BUG in alb_upper_dev_walk - SUNRPC: Fix a suspicious RCU usage warning - tcp: Add memory barrier to tcp_push() - vlan: skip nested type that is not IFLA_VLAN_QOS_MAPPING - md: Whenassemble the array, consult the superblock of the freshest device - jbd2: correct the printing of write_flags in jbd2_write_superblock() - !5073 RDMA/rxe: Clear all QP fields if creation failed - !5077 RDMA/rxe: Return CQE error if invalid lkey was supplied - !5055 linux-4.19.y inclusion(4.19.305..4.19.307) part 1 - HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect - wifi: mac80211: fix potential key use-after-free - drm: bridge/panel: Cleanup connector on bridge detach - uio_hv_generic: Fix a memory leak in error handling paths - of: unittest: Fix of_count_phandle_with_args() expected value message - of: unittest: Fix compile in the non-dynamic case - RDMA/rxe: Return CQE error if invalid lkey was supplied - nvme-loop: fix memory leak in nvme_loop_create_ctrl() - nvme-loop: don't put ctrl on nvme_init_ctrl error - !5060 net: fix possible store tearing in neigh_periodic_work() - RDMA/rxe: Clear all QP fields if creation failed - net: fix possible store tearing in neigh_periodic_work() - of: Fix double free in of_parse_phandle_with_args_map - pmdomain: core: Move the unused cleanup to a _sync initcall - tick/sched: Preserve number of idle sleeps across CPU hotplug events - acpi: property: Let args be NULL in __acpi_node_get_property_reference - tick-sched: Fix idle and iowait sleeptime accounting vs CPU hotplug - ACPI: LPIT: Avoid u32 multiplication overflow - audit: Send netlink ACK before setting connection in auditd_set - crypto: scompress - return proper error code for allocation failure - crypto: af_alg - Disallow multiple in-flight AIO requests - x86/mm/ident_map: Use gbpages only where full GB page should be mapped. - mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again - !5046 usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - sched: remove wait bookmarks - filemap: remove use of wait bookmarks - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - !4929 scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command - !4752 block: add check that partition length needs to be aligned with block size - !4735 blk-mq: fix IO hang from sbitmap wakeup race - !3864 nvme: sanitize metadata bounce buffer for reads - !4946 NFC: st21nfca: Fix memory leak in device probe and remove - !4999 CVE-2021-46984 - !4938 crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init - !4990 vt: fix memory overlapping when deleting chars in the buffer - !4978 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() - !5018 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit - !4992 bnxt_en: Fix RX consumer index logic in the error path. - !4997 Fixed CVE-2023-52504 - !4982 i2c: img-scb: fix reference leak when pm_runtime_get_sync fails - !4983 net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send - !4995 mpam/mpam_ctrlmon: update monitor config with its parent's ctrl_val - !4974 arm64/mpam: set default feedback of last_cmd_status interface as null string - !4975 arm64/mpam: support resctrl fs to show mounting option - !4973 arm64/mpam: Skip updates of unrelated ctrl type - ethernet:enic: Fix a use after free bug in enic_hard_start_xmit - !4996 soundwire: stream: fix memory leak in stream config error path - !4817 v2 io_uring: fix overflows checks in provide buffers - kyber: fix kabi broken in ->bio_merge() - kyber: fix out of bounds access when preempted - x86/alternatives: Disable KASAN in apply_alternatives() - soundwire: stream: fix memory leak in stream config error path - mpam/mpam_ctrlmon: update monitor config with its parent's ctrl_val - bnxt_en: Fix RX consumer index logic in the error path. - !4969 CVE-2021-46990 - vt: fix memory overlapping when deleting chars in the buffer - !4945 ieee802154: ca8210: Fix a potential UAF in ca8210_probe - !4944 perf/x86/lbr: Filter vsyscall addresses - !4967 i2c: xiic: fix reference leak when pm_runtime_get_sync fails - !4970 binder: fix async_free_space accounting for empty parcels - !4919 v2 HID: usbhid: fix info leak in hid_submit_ctrl - !4980 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg - net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send - i2c: img-scb: fix reference leak when pm_runtime_get_sync fails - net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg - !4949 CVE-2021-47024 - nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() - arm64/mpam: support resctrl fs to show mounting option - arm64/mpam: set default feedback of last_cmd_status interface as null string - arm64/mpam: Skip updates of unrelated ctrl type - binder: fix async_free_space accounting for empty parcels - powerpc/64s: Fix crashes when toggling entry flush barrier - i2c: xiic: fix reference leak when pm_runtime_get_sync fails - scsi: qedf: Add pointer checks in qedf_update_link_speed() - vsock/virtio: free queued packets when closing socket - vsock/virtio: discard packets only when socket is really closed - virtio_vsock: Fix race condition in virtio_transport_recv_pkt - NFC: st21nfca: Fix memory leak in device probe and remove - ieee802154: ca8210: Fix a potential UAF in ca8210_probe - perf/x86/lbr: Filter vsyscall addresses - crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init - scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command - HID: usbhid: fix info leak in hid_submit_ctrl - io_uring: fix overflows checks in provide buffers - block: add check that partition length needs to be aligned with block size - blk-mq: fix IO hang from sbitmap wakeup race - nvme: sanitize metadata bounce buffer for reads- !4947 powerpc/64s: Fix pte update for kernel memory on radix - !4932 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP - powerpc/64s: Fix pte update for kernel memory on radix - !4874 v2 net: openvswitch: limit the number of recursions from action sets - !4920 ARM: footbridge: remove personal server platform - !4887 KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU - !4918 v3 usb: hub: Guard against accesses to uninitialized BOS descriptors - !4936 i2c: validate user data in compat ioctl - i2c: validate user data in compat ioctl - !4898 platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios - !4879 KVM: Stop looking for coalesced MMIO zones if the bus is destroyed - !4869 Fix CVE-2021-46941 - phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP - !4904 i2c: sprd: fix reference leak when pm_runtime_get_sync fails - !4859 hfsplus: prevent corruption in shrinking truncate - !4877 i2c: Fix a potential use after free - ARM: footbridge: fix PCI interrupt mapping - !4888 v3 media: dvbdev: Fix memory leak in dvb_media_device_free() - usb: hub: Guard against accesses to uninitialized BOS descriptors - !4825 sched/membarrier: reduce the ability to hammer on sys_membarrier - !4882 Input: appletouch - initialize work before device registration - !4876 backport patch to fix CVE-2021-47077 - !4899 net: qualcomm: rmnet: fix global oob in rmnet_policy - i2c: sprd: fix reference leak when pm_runtime_get_sync fails - !4892 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security - !4881 i2c: cadence: fix reference leak when pm_runtime_get_sync fails - net: qualcomm: rmnet: fix global oob in rmnet_policy - platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios - !4865 Input: powermate - fix use-after-free in powermate_config_complete - !4860 apparmor: avoid crash when parsed profile name is empty - Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security - media: dvbdev: Fix memory leak in dvb_media_device_free() - KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU - Input: appletouch - initialize work before device registration - i2c: cadence: fix reference leak when pm_runtime_get_sync fails - KVM: Stop looking for coalesced MMIO zones if the bus is destroyed - i2c: Fix a potential use after free - ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook - net: openvswitch: limit the number of recursions from action sets - usb: dwc3: core: Do not perform GCTL_CORE_SOFTRESET during bootup - usb: dwc3: core: balance phy init and exit - usb: dwc3: core: Do core softreset when switch mode - Input: powermate - fix use-after-free in powermate_config_complete - !4856 bus: qcom: Put child node before return - apparmor: avoid crash when parsed profile name is empty - hfsplus: prevent corruption in shrinking truncate - bus: qcom: Put child node before return - !4828 Drivers: hv: vmbus: Use after free in __vmbus_open() - !4806 v2 media: pvrusb2: fix use after free on context disconnection - !4777 drivers/amd/pm: fix a use-after-free in kv_parse_power_table - !4819 v2 fix CVE-2020-36782 - !4833 openvswitch: fix stack OOB read while fragmenting IPv4 packets - !4677 f2fs: fix to avoid dirent corruption - !4804 CVE-2023-52451 backport to 4.19 v2 - openvswitch: fix stack OOB read while fragmenting IPv4 packets - Drivers: hv: vmbus: Use after free in __vmbus_open() - !4778 v3 Revert "memcg: fix a UAF problem in drain_all_stock()" - sched/membarrier: reduce the ability to hammer on sys_membarrier - i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails - PM: runtime: Add pm_runtime_resume_and_get to deal with usage counter - !4812 parisc: Clear stale IIR value on instruction access rights trap - parisc: Clear stale IIR value on instruction access rights trap - media: pvrusb2: fix use after free on context disconnection - powerpc/pseries/memhp: Fix access beyond end of drmem array - powerpc/pseries/memhotplug: Quieten some DLPAR operations - !4758 binder: signal epoll threads of self-work - !4746 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache - Revert "memcg: fix a UAF problem in drain_all_stock()" - drivers/amd/pm: fix a use-after-free in kv_parse_power_table - !4751 [sync] PR-4623: i2c: Optimized the value setting of maxwrite limit to fifo depth - 1 - !4707 mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - !4686 mlxsw: spectrum_acl_tcam: Fix stack corruption - binder: signal epoll threads of self-work - !4710 CVE-2021-46904 for openEuler1.0 - i2c: hisi: Add clearing tx aempty interrupt operation - i2c: hisi: Optimized the value setting of maxwrite limit to fifo depth - 1 - !4671 uio: Fix use-after-free in uio_open - KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache - net: hso: fix NULL-deref on disconnect regression - net: hso: fix null-ptr-deref during tty device unregistration - usb: hso: check for return value in hso_serial_common_create() - mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - mlxsw: spectrum_acl_tcam: Fix stack corruption - f2fs: fix to avoid dirent corruption - uio: Fix use-after-free in uio_open- !4701 v2 mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path - !4684 v3 CVE-2023-52435 - mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path - net: Fix compile warning in skb_segment() - net: prevent mss overflow in skb_segment() - !4643 f2fs: explicitly null-terminate the xattr list - f2fs: explicitly null-terminate the xattr list- !4601 v2 xen-netback: don't produce zero-size SKB frags - xen-netback: don't produce zero-size SKB frags - !4583 net: hns3: fix a bug and modify the hns3 driver version - net: hns3: update hns3 version to 24.2.1 - net: hns3: fix tm port shapping of fibre port is incorrect after driver initialization - !4552 v4 CVE-2023-52340 - !4526 v2 fs:/dcache.c: fix negative dentry flag warning in dentry_free - ipv6: fix kabi broken in struct dst_ops - ipv6: Document that max_size sysctl is deprecated - ipv6: remove max_size check inline with ipv4 - !4538 fix kprobe reenter bug - arm64/openeuler_defconfig: add not set config to fix compiling error - tracing/kprobes: Do the notrace functions check without kprobes on ftrace - fs:/dcache.c: fix negative dentry flag warning in dentry_free- !4454 netfilter: nf_tables: reject QUEUE/DROP verdict parameters - netfilter: nf_tables: reject QUEUE/DROP verdict parameters - !4411 v2 drm/atomic: Fix potential use-after-free in nonblocking commits - !4412 v3 Save and restore msg_namelen in sock_sendmsg - net: Save and restore msg_namelen in sock_sendmsg - net: prevent rewrite of msg_name in sock_sendmsg() - !4399 net: dst: Optimized route gc - drm/atomic: Fix potential use-after-free in nonblocking commits - !4392 linux-4.19.y inclusion - !4369 mm/filemap: avoid buffered read/write race to read inconsistent data - net/dst: use a smaller percpu_counter batch for dst entries accounting - net: add a route cache full diagnostic message - net: check dev->gso_max_size in gso_features_check() - net: warn if gso_type isn't set for a GSO SKB - mm: fix unmap_mapping_range high bits shift bug - x86/alternatives: Sync core before enabling interrupts - mm/filemap: avoid buffered read/write race to read inconsistent data - !4360 net/sched: sch_hfsc: upgrade 'rt' to 'sc' when it becomes a inner curve - !4320 io_uring/af_unix: disable sending io_uring over sockets - net/sched: sch_hfsc: upgrade 'rt' to 'sc' when it becomes a inner curve - io_uring/af_unix: disable sending io_uring over sockets- !4277 fs:/dcache.c: fix negative dentry limit not complete problem - !4288 net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv - !4299 smb: client: fix NULL deref in asn1_ber_decoder() - smb: client: fix NULL deref in asn1_ber_decoder() - net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv - !4228 fix spinlock already unlocked in inet_csk_reqsk_queue_add' bug - fs:/dcache.c: fix negative dentry limit not complete problem - !4235 nfc: nci: fix possible NULL pointer dereference in send_acknowledge() - !4255 drm/amdgpu: Fix potential fence use-after-free v2 - !4209 dhugetlb: skip unexpected migration - drm/amdgpu: Fix potential fence use-after-free v2 - !4231 crypto: hisilicon/qm - drop unnecessary IS_ENABLE(CONFIG_NUMA) check - nfc: nci: fix possible NULL pointer dereference in send_acknowledge() - crypto: hisilicon/qm - drop unnecessary IS_ENABLE(CONFIG_NUMA) check - ipv6: init the accept_queue's spinlocks in inet6_create - tcp: make sure init the accept_queue's spinlocks once - !4212 netlink: fix potential sleeping issue in mqueue_flush_file - netlink: fix potential sleeping issue in mqueue_flush_file - dhugetlb: skip unexpected migration - dhugetlb: introduce page_belong_to_dynamic_hugetlb() function - !3944 time: Handle negative seconds correctly in timespec64_to_ns() - !3943 timerqueue: Use rb_entry_safe() in timerqueue_getnext() - !3942 efi/x86: Map the entire EFI vendor string before copying it - !4166 sched/fair: Fix qos_timer deadlock when cpuhp offline - sched/fair: Fix qos_timer deadlock when cpuhp offline - !4137 sctp: fix potential deadlock on &net->sctp.addr_wq_lock - sctp: fix potential deadlock on &net->sctp.addr_wq_lock - time: Handle negative seconds correctly in timespec64_to_ns() - timerqueue: Use rb_entry_safe() in timerqueue_getnext() - efi/x86: Map the entire EFI vendor string before copying it- !4101 netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() - !2954 spi: phytium: fix phytium_spi_irq panic on boot - netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() - !4067 fix CVE-2022-48619 - !4080 rtnetlink: Reject negative ifindexes in RTM_NEWLINK - rtnetlink: Reject negative ifindexes in RTM_NEWLINK - Revert "rtnetlink: Reject negative ifindexes in RTM_NEWLINK" - !4065 smb: client: fix OOB in receive_encrypted_standard() - !4021 netfilter: nf_tables: Reject tables of unsupported family - Input: add bounds checking to input_set_capability() - smb: client: fix OOB in receive_encrypted_standard() - !4039 crypto: hisilicon/qm: fix several issues - !4025 crypto: hisilicon - replace 'smp_processor_id' with the raw version of the macro - !3980 vhost: use kzalloc() instead of kmalloc() followed by memset() - crypto: hisilicon/qm: fix several issues - crypto: hisilicon - replace 'smp_processor_id' with the raw version of the macro - netfilter: nf_tables: Reject tables of unsupported family - vhost: use kzalloc() instead of kmalloc() followed by memset() - spi: phytium: fix phytium_spi_irq panic on boot- !4006 crypto: hisilicon/sec2: fix memory use-after-free issue - crypto: hisilicon/sec2: fix memory use-after-free issue - !3923 net: bridge: multicast: fix UAF of net_bridge - net: bridge: multicast: fix UAF of net_bridge- !3768 iomap: add support to track dirty state of sub pages - !3845 netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() - !3847 nvmet: nul-terminate the NQNs passed in the connect command - !3863 linux-4.19.y inclusion(4.19.299..4.19.303) part2 - team: Fix use-after-free when an option instance allocation fails - packet: Move reference count in packet_sock to atomic_long_t - tcp: do not accept ACK of bytes we never sent - ipv4: ip_gre: Avoid skb_pull() failure in ipgre_xmit() - ipv6: fix potential NULL deref in fib6_add() - ipv4: Correct/silence an endian warning in __ip_do_redirect - net: sched: fix race condition in qdisc_graft() - macvlan: Don't propagate promisc change to lower dev in passthru - ppp: limit MRU to 64K - tty: Fix uninit-value access in ppp_sync_receive() - net: annotate data-races around sk->sk_dst_pending_confirm - net: annotate data-races around sk->sk_tx_queue_mapping - !3862 linux-4.19.y inclusion(4.19.299..4.19.303) part1 - ring-buffer: Fix memory leak of free page - arm64: mm: Always make sw-dirty PTEs hw-dirty in pte_modify - asm-generic: qspinlock: fix queued_spin_value_unlocked() implementation - Revert "PCI: acpiphp: Reassign resources on bridge if necessary" - x86/CPU/AMD: Check vendor in the AMD microcode callback - genirq/generic_chip: Make irq_remove_generic_chip() irqdomain aware - audit: don't WARN_ON_ONCE(!current->mm) in audit_exe_compare() - audit: don't take task_lock() in audit_exe_compare() code path - nvmet: nul-terminate the NQNs passed in the connect command - netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() - !3823 [sync] PR-3822: ext4: fix kernel BUG in 'ext4_write_inline_data_end()' - ext4: fix kernel BUG in 'ext4_write_inline_data_end()' - !3803 net/sched: cbs: Fix not adding cbs instance to list - net/sched: cbs: Fix not adding cbs instance to list - !3770 ext4: fix uninitialized ratelimit_state->lock access in __ext4_fill_super() - ext4: fix uninitialized ratelimit_state->lock access in __ext4_fill_super() - iomap: add support to track dirty state of sub pages - !3757 Fix bugs from LTS patches - devcoredump: Send uevent once devcd is ready - devcoredump : Serialize devcd_del work - driver core: Release all resources during unbind before updating device links - !3716 appletalk: Fix Use-After-Free in atalk_ioctl - !3667 net/rose: Fix Use-After-Free in rose_ioctl - appletalk: Fix Use-After-Free in atalk_ioctl - net/rose: Fix Use-After-Free in rose_ioctl- !3660 atm: Fix Use-After-Free in do_vcc_ioctl - !3687 Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg - Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg - !3672 smb: client: fix potential OOB in smb2_dump_detail() - !3671 smb: client: fix OOB in smbCalcSize() - !3627 jbd2: fix soft lockup in journal_finish_inode_data_buffers() - !3189 fs: don't audit the capability check in simple_xattr_list() - smb: client: fix potential OOB in smb2_dump_detail() - smb: client: fix OOB in smbCalcSize() - !3555 net: check vlan filter feature in vlan_vids_add_by_dev() and vlan_vids_del_by_dev() - atm: Fix Use-After-Free in do_vcc_ioctl - !3592 CVE-2023-35827 patchset - !3449 Fix data-races around - jbd2: fix soft lockup in journal_finish_inode_data_buffers() - ravb: Fix races between ravb_tx_timeout_work() and net related ops - ravb: Fix use-after-free issue in ravb_tx_timeout_work() - net: check vlan filter feature in vlan_vids_add_by_dev() and vlan_vids_del_by_dev() - ip: Fix data-races around sysctl_ip_no_pmtu_disc. - ip: Fix data-races around sysctl_ip_fwd_update_priority. - fs: don't audit the capability check in simple_xattr_list()- !3607 Fix CVE-2023-6546 - !3606 perf/core: Fix CVE-2023-6931 - tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux - tty: n_gsm: fix restart handling via CLD command - perf: Fix perf_event_validate_size() lockdep splat - perf: Fix perf_event_validate_size() - !3417 SCSI: hisi_raid: support SPxxx serial RAID/HBA controllers - !3531 Fix kernel panic occurs during ISO installation on the 20.03 SP3/SP4 - i2c: hisi: Only handle the interrupt of the driver's transfer - i2c: hisi: Only use the completion interrupt to finish the transfer - i2c: hisi: Avoid redundant interrupts - !3483 net: Remove acked SYN flag from packet in the transmit queue correctly - net: Remove acked SYN flag from packet in the transmit queue correctly - SCSI: hisi_raid: support SPxxx serial RAID/HBA controllers- !3426 Revert "hrtimers: Push pending hrtimers away from outgoing CPU earlier" - Revert "hrtimers: Push pending hrtimers away from outgoing CPU earlier" - Revert "cpu/hotplug: fix kabi breakage in enum cpuhp_state"- !3347 tun: avoid double free in tun_free_netdev - tun: avoid double free in tun_free_netdev - !3239 net: hns: fix fake link up - !3113 KVM: arm64: limit PMU version to PMUv3 for ARMv8.1 - !3281 LTS patch backport - !3122 nvme: retain split access workaround for capability reads - !3262 icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. - net: fix kabi broken in struct netns_xfrm - xfrm: fix a data-race in xfrm_gen_index() - !3276 linux-4.19.y inclusion - !3263 workqueue: Override implicit ordered attribute in workqueue_apply_unbound_cpumask() - !3267 x86/cpu: Fix AMD erratum #1485 on Zen4-based CPUs - dccp/tcp: Call security_inet_conn_request() after setting IPv6 addresses. - can: dev: can_restart(): fix race condition between controller restart and netif_carrier_on() - can: dev: can_restart(): don't crash kernel if carrier is OK - can: dev: move driver related infrastructure into separate subdir - ipv6: avoid atomic fragment on GSO packets - tcp_metrics: do not create an entry from tcp_init_metrics() - tcp_metrics: properly set tp->snd_ssthresh in tcp_init_metrics() - tcp_metrics: add missing barriers on delete - tcp: tsq: relax tcp_small_queue_check() when rtx queue contains a single skb - tcp: fix excessive TLP and RACK timeouts from HZ rounding - genirq/matrix: Exclude managed interrupts in irq_matrix_allocated() - ACPI: sysfs: Fix create_pnp_modalias() and create_of_modalias() - ACPI: irq: Fix incorrect return value in acpi_register_gsi() - ext4: move 'ix' sanity check to corrent position - vfs: fix readahead(2) on block devices - overlayfs: set ctime when setting mtime and atime - quota: Fix slow quotaoff - mcb: remove is_added flag from mcb_device struct - sched,idle,rcu: Push rcu_idle deeper into the idle path - cgroup: Remove duplicates in cgroup v1 tasks file - x86/cpu: Fix AMD erratum #1485 on Zen4-based CPUs - workqueue: Override implicit ordered attribute in workqueue_apply_unbound_cpumask() - icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. - net: hns: update hns version to 23.12.1 - net: hns: fix fake link up on xge port - !3021 fix CFS bandwidth vs. hrtimer self deadlock - !3202 regmap: fix NULL deref on lookup - regmap: fix NULL deref on lookup - KVM: arm64: limit PMU version to PMUv3 for ARMv8.1 - arm64: cpufeature: Extract capped perfmon fields - nvme: retain split access workaround for capability reads - cpu/hotplug: fix kabi breakage in enum cpuhp_state - hrtimers: Push pending hrtimers away from outgoing CPU earlier- !3158 mm: don't let userspace spam allocations warnings - mm: don't let userspace spam allocations warnings - !2781 cpufreq: Abort show()/store() for half-initialized policies - !3118 sched: smart grid: check is active in affinity timer - sched: smart grid: check is active in affinity timer - !2977 Backport crypto bugfix - !3071 perf/core: Fix perf_mmap fail when CONFIG_PERF_USE_VMALLOC enabled - perf/core: Fix perf_mmap fail when CONFIG_PERF_USE_VMALLOC enabled - !3038 ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - !3031 x86/mce/amd: Publish the bank pointer only after setup has succeeded - !3030 x86/mce/inject: Fix a wrong assignment of i_mce.status - ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - x86/mce/amd: Publish the bank pointer only after setup has succeeded - x86/mce/inject: Fix a wrong assignment of i_mce.status - crypto: fix kabi broken in struct crypto_instance - crypto: api - Use work queue in crypto_destroy_instance - cpufreq: make interface functions and lock holding state clear - cpufreq: Abort show()/store() for half-initialized policies- !3000 [openEuler-1.0-LTS] add Phytium drivers CONFIG - arm64: config: add config for Phytium drivers - !2908 mm/migrate.c: fix potential indeterminate pte entry in migrate_vma_insert_page() - !2869 mm, memory_hotplug: update pcp lists everytime onlining a memory block - !2805 sched/fair: Refill bandwidth before scaling - !2804 signal: Properly set TRACE_SIGNAL_LOSE_INFO in __send_signal - !2960 Add script to check & update openeuler_defconfig - config: update openeuler_defconfig for arm64 - config: update openeuler_defconfig for x86 - kconfig: Add script to check & update openeuler_defconfig - kbuild: ensure full rebuild when the compiler is updated - mm/migrate.c: fix potential indeterminate pte entry in migrate_vma_insert_page() - mm, memory_hotplug: update pcp lists everytime onlining a memory block - sched/fair: Refill bandwidth before scaling - signal: Properly set TRACE_SIGNAL_LOSE_INFO in __send_signal- !1935 [openEuler-1.0-LTS] Add Phytium optee driver support - !2895 netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one - !2873 Fix SAS start error with maxcpus=1 - genirq: Take the proposed affinity at face value if force==true - optee: add phytium optee driver - optee: model OP-TEE as a platform device/driver - netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one - irqchip/gic-v3: Always trust the managed affinity provided by the core code - genirq: Always limit the affinity to online CPUs - genirq/msi: Shutdown managed interrupts with unsatifiable affinities - !2508 [openEuler-1.0-LTS] jpeg: Add a Phytium JPEG Engine driver - !2522 [openEuler-1.0-LTS] Add support for Phytium SoC RNG - !2877 Revert "tcp: fix delayed ACKs for MSS boundary condition" - !2693 [openEuler-1.0-LTS] Add support for Phytium QSPI - !2402 [openEuler-1.0-LTS] Add Phytium w1 driver support - !2403 [openEuler-1.0-LTS] Add Phytium adc driver support - !1874 [openEuler-1.0-LTS] Add Phytium mailbox driver support - !2024 [openEuler-1.0-LTS] Add Phytium RTC driver support - !2682 [openEuler-1.0-LTS] Add support for Phytium MMC - !2671 [openEuler-1.0-LTS] phytium dwmac net driver - !2676 [openEuler-1.0-LTS] Add Phytium gpio driver support - !2604 [openEuler-1.0-LTS] Add support for Phytium SPI - !2540 [openEuler-1.0-LTS] Driver for the Phytium keypad port. - Revert "tcp: fix delayed ACKs for MSS boundary condition" - hwrng: Add support for Phytium SoC RNG - jpeg: Add a Phytium JPEG Engine driver - !2818 Fix memleak in disassociate_ctty() - !2810 drivers/gmjstcm: import CVE-2011-1160 CVE-2011-1162 fixes to tcm.c - drivers/gmjstcm: import CVE-2011-1160 CVE-2011-1162 fixes to tcm.c - rtc: add phytium rtc driver document - rtc: add rtc drivers for Phytium SOCs - gpio: add phytium gpio driver - dwmac:add phytium dwmac driver - mailbox:add phytium mailbox driver document - mailbox: add phytium mailbox driver - mmc: add phytium mmc driver DT binding docs - mmc: add support for Phytium MMC - tty: tty_jobctrl: fix pid memleak in disassociate_ctty() - Revert "tty: fix pid memleak in disassociate_ctty()" - spi: add phytium spi driver DT binding docs - spi: add phytium spi support - qspi: add phytium qspi driver DT binding docs - qspi: add support for Phytium QSPI controller - gpio: add phytium gpio driver document - dwmac:add phytium dwmac driver DT binding docs - adc: add phytium adc driver - adc: add phytium adc driver document - w1: add phytium w1 driver - w1: add phytium w1 driver document - KEYPAD: Driver for the Phytium keypad port. - KEYPAD: Document for the Phytium keypad port.- !2803 drivers/gmjstcm: fix a dev_err() call in spi tcm device probe - !2841 drm/qxl: fix UAF on handle creation - !2785 [openEuler-1.0-LTS] SCSI: SSSRAID: Support 3SNIC 3S5XX serial RAID/HBA controllers - drm/qxl: fix UAF on handle creation - !2809 bugfix for CVE-2022-45884 - media: dvb-core: Fix use-after-free due to race at dvb_register_device() - media: media/dvb: Use kmemdup rather than duplicating its implementation - media: dvbdev: Fix memleak in dvb_register_device - drivers/gmjstcm: fix a dev_err() call in spi tcm device probe - SCSI: SSSRAID: Support 3SNIC 3S5XX serial RAID/HBA controllers- !2793 handle uninitialized numa nodes gracefully. - !2789 linux-4.19.y inclusion - arch/x86/mm/numa: Do not initialize nodes twice - mm: handle uninitialized numa nodes gracefully - mm, memory_hotplug: make arch_alloc_nodedata independent on CONFIG_MEMORY_HOTPLUG - !2713 Fix netfilter conntrack - !2651 sched/membarrier: fix missing local execution of ipi_sync_rq_state() - tcp: fix delayed ACKs for MSS boundary condition - tcp: fix quick-ack counting to count actual ACKs of new data - ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() - team: fix null-ptr-deref when team device type is changed - af_unix: Fix data race around sk->sk_err. - af_unix: Fix data-races around sk->sk_shutdown. - af_unix: Fix data-race around unix_tot_inflight. - af_unix: Fix data-races around user->unix_inflight. - net: ipv6/addrconf: avoid integer underflow in ipv6_create_tempaddr - net: read sk->sk_family once in sk_mc_loop() - skbuff: skb_segment, Call zero copy functions before using skbuff frags - igmp: limit igmpv3_newpack() packet size to IP_MAX_MTU - tcp: tcp_enter_quickack_mode() should be static - net: Avoid address overwrite in kernel_connect - md/raid1: fix error: ISO C90 forbids mixed declarations - md: raid1: fix potential OOB in raid1_remove_disk() - ACPICA: Add AML_NO_OPERAND_RESOLVE flag to Timer - autofs: fix memory leak of waitqueues in autofs_catatonic_mode - pstore/ram: Check start of empty przs during init - scsi: iscsi: Add strlen() check in iscsi_if_set{_host}_param() - fs: Fix error checking for d_hash_and_lookup() - !2767 crypto: hisilicon/qm - alloc reserve buffer to set and get xqc - crypto: hisilicon/qm - alloc reserve buffer to set and get xqc - !2760 fs: lockd: avoid possible wrong NULL parameter - !2164 Net: ethernet: Support 3snic 3s9xx network card - !2605 add CONFIG_NGBE for Wangxun 1G NIC for aarch64 - !1873 [openEuler-1.0-LTS] Add Phytium hda driver support - !2564 [openEuler-1.0-LTS] Add Phytium i2c driver support - !2636 kernel/trace: Fix do not unregister tracepoints when register sched_migrate_task fail - fs: lockd: avoid possible wrong NULL parameter - !2754 Sync LTS patches for openEuler-1.0-LTS - !2758 crypto: hisilicon - qm obtain the mailbox config at one time - crypto: hisilicon - qm obtain the mailbox config at one time - regmap: rbtree: Fix wrong register marked as in-cache when creating new node - regmap: rbtree: Use alloc_flags for memory allocations - !2730 PCI/IOV: Add pci_sriov_numvfs_lock to support enable pci sriov concurrently - !2722 net: sched: sch_qfq: Use non-work-conserving warning handler - !2650 sched/cpuacct: Fix charge cpuacct.usage_sys - PCI/IOV: Add pci_sriov_numvfs_lock to support enable pci sriov concurrently - net: sched: sch_qfq: Use non-work-conserving warning handler - arm64: config: add CONFIG_NGBE for Wangxun 1G NIC - netfilter: conntrack: fix infinite loop on rmmod - netfilter: conntrack: do not auto-delete clash entries on reply - netfilter: conntrack: allow insertion of clashing entries - netfilter: conntrack: split resolve_clash function - netfilter: conntrack: place confirm-bit setting in a helper - netfilter: conntrack: remove two args from resolve_clash - netfilter: conntrack: tell compiler to not inline nf_ct_resolve_clash - sched/membarrier: fix missing local execution of ipi_sync_rq_state() - sched/cpuacct: Fix charge cpuacct.usage_sys - kernel/trace: Fix do not unregister tracepoints when register sched_migrate_task fail - hda: add phytium hda driver - hda: add phytium hda driver document - i2c: add Phytium i2c driver - i2c: add phytium i2c driver DT binding docs - Net: ethernet: Support 3snic 3s9xx network card- !2609 Fix CVE-2023-5717 - !2588 [openEuler-1.0-LTS] Add Phytium Display Engine support. - !2627 ubi: Refuse attaching if mtd's erasesize is 0 - !2473 Revert irq reentrant warm log - !1860 irqchip/gicv3-its: Add workaround for hip09 ITS erratum 162100801 - !2551 Avoid spin or livelock during panic - !2314 can: raw: add missing refcount for memory leak fix - !2396 efi: use 32-bit alignment for efi_guid_t literals - ubi: Refuse attaching if mtd's erasesize is 0 - !2446 audit: fix possible soft lockup in __audit_inode_child() - !2614 CVE-2022-44033 - DRM: Phytium display DRM document - DRM: Phytium display DRM driver - ASoC: hdmi-codec: Add an op to set callback function for plug event - char: pcmcia: remove all the drivers - tty: ipwireless: move Kconfig entry to tty - !1974 CAN driver for phytium CPUs - perf: Fix kabi breakage in struct perf_event - perf: Disallow mis-matched inherited group reads - !2577 media: dvb-core: Fix use-after-free due to race condition at dvb_ca_en50221 - can: can controller driver for phytium CPUs - !2550 xen/events: replace evtchn_rwlock with RCU - media: dvb-core: Fix use-after-free due to race condition at dvb_ca_en50221 - !2557 Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO - Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO - printk: Drop console_sem during panic - printk: Avoid livelock with heavy printk during panic - printk: disable optimistic spin during panic - printk: Add panic_in_progress helper - xen/events: replace evtchn_rwlock with RCU - irqchip/gicv3-its: Add workaround for hip09 ITS erratum 162100801 - irqchip/gic-v3-its: Make is_v4 use a TYPER copy - Revert "genirq: Introduce warn log when irq be reentrant" - Revert "genirq: add printk safe in irq context" - audit: fix possible soft lockup in __audit_inode_child() - can: add phytium can driver document - efi: use 32-bit alignment for efi_guid_t literals - can: raw: add missing refcount for memory leak fix- !2334 ktask: add memory leak handling for ktask_works in ktask_init() - !2333 ktask: add null-pointer checks for ktask_works in ktask_init() - !2453 igb: set max size RX buffer when store bad packet is enabled - ktask: add memory leak handling for ktask_works in ktask_init() - ktask: add null-pointer checks for ktask_works in ktask_init() - !2441 netfilter: xt_u32: validate user space input - !2435 USB: ene_usb6250: Allocate enough memory for full object - igb: set max size RX buffer when store bad packet is enabled - netfilter: xt_u32: validate user space input - USB: ene_usb6250: Allocate enough memory for full object- !2466 x86/microcode/AMD: Make stub function static inline - !2461 perf/core: Fix reentry problem in perf_output_read_group() - x86/microcode/AMD: Make stub function static inline - perf/core: Fix reentry problem in perf_output_read_group() - !2409 netfilter: nfnetlink_osf: avoid OOB read - !2330 Add a check of uvhub_mask in init_per_cpu() - x86/platform/uv: Fix missing checks of kcalloc() return values - x86/platform/UV: Replace kmalloc() and memset() with k[cz]alloc() calls - !2412 netfilter: xt_sctp: validate the flag_info count - !2419 ext4: fix rec_len verify error - ext4: fix rec_len verify error - netfilter: xt_sctp: validate the flag_info count - netfilter: nfnetlink_osf: avoid OOB read - !2360 scsi: hisi_sas: Handle the NCQ error returned by D2H frame - scsi: hisi_sas: Handle the NCQ error returned by D2H frame- !2322 net/sched: Retire rsvp classifier - !2346 RDMA/irdma: Prevent zero-length STAG registration - !2349 net: ipv4: fix one memleak in __inet_del_ifa() - !2329 ipv4: fix null-deref in ipv4_link_failure - !2342 linux-4.19.y inclusion - !2345 Backport lts bugfix patch for macvlan - !2344 PCI: acpiphp: linux-4.19.y bugfixes backport - !2341 quota: fix warning in dqgrab() - net: ipv4: fix one memleak in __inet_del_ifa() - !1706 cgroup: fix missing cpus_read_{lock,unlock}() in cgroup_transfer_tasks() - rtnetlink: Reject negative ifindexes in RTM_NEWLINK - netfilter: nf_queue: fix socket leak - net/sched: fix a qdisc modification with ambiguous command request - net: xfrm: Amend XFRMA_SEC_CTX nla_policy structure - net: fix the RTO timer retransmitting skb every 1ms if linear option is enabled - sock: annotate data-races around prot->memory_pressure - !2337 mm: memory-failure: use rcu lock instead of tasklist_lock when collect_procs() - RDMA/irdma: Prevent zero-length STAG registration - bonding: fix macvlan over alb bond support - net: remove bond_slave_has_mac_rcu() - PCI: acpiphp: Use pci_assign_unassigned_bridge_resources() only for non-root bus - PCI: acpiphp: Reassign resources on bridge if necessary - sock: Fix misuse of sk_under_memory_pressure() - team: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves - ip_vti: fix potential slab-use-after-free in decode_session6 - net: af_key: fix sadb_x_filter validation - net: xfrm: Fix xfrm_address_filter OOB read - serial: 8250: Fix oops for port->pm on uart_change_pm() - quota: Properly disable quotas when add_dquot_ref() fails - quota: fix warning in dqgrab() - !2335 x86/topology: Fix erroneous smp_num_siblings on Intel Hybrid platforms - mm: memory-failure: use rcu lock instead of tasklist_lock when collect_procs() - x86/topology: Fix erroneous smp_num_siblings on Intel Hybrid platforms - ipv4: fix null-deref in ipv4_link_failure - net/sched: Retire rsvp classifier - !2301 xfrm6: fix inet6_dev refcount underflow problem - !2303 cifs: Release folio lock on fscache read hit. - cifs: Release folio lock on fscache read hit. - !2294 netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c - xfrm6: fix inet6_dev refcount underflow problem - netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c - !2276 cpuidle: Fix kobject memory leaks in error paths - cpuidle: Fix kobject memory leaks in error paths - cgroup: fix missing cpus_read_{lock,unlock}() in cgroup_transfer_tasks()- !2274 cec-api: prevent leaking memory through hole in structure - !2281 sdei_watchdog: Avoid exception during sdei handler - sdei_watchdog: Avoid exception during sdei handler - cec-api: prevent leaking memory through hole in structure - !2262 crypto: hisilicon - reset before init the device - crypto: hisilicon - reset before init the device - !2212 [sync] PR-2210: jbd2: Fix potential data lost in recovering journal raced with synchronizing fs bdev - jbd2: Fix potential data lost in recovering journal raced with synchronizing fs bdev- !2168 net: sched: sch_qfq: Fix UAF in qfq_dequeue() - !2226 crypto: hisilicon/qm - prevent soft lockup in qm_poll_qp()'s loop - !2225 media: ttusb-dec: fix memory leak in ttusb_dec_exit_dvb() - crypto: hisilicon/qm - prevent soft lockup in qm_poll_qp()'s loop - media: ttusb-dec: fix memory leak in ttusb_dec_exit_dvb() - !2177 sched/qos: Fix warning in CPU hotplug scenarios - !2207 crypto:hisilicon/qm - cache write back before flr and poweroff - !2206 Fix booting failure on arm64 - crypto:hisilicon/qm - cache write back before flr and poweroff - !2205 crypto:hisilicon/sec - modify hw endian config - Revert "efi: Make efi_rts_work accessible to efi page fault handler" - Revert "efi/x86: Handle page faults occurring while running EFI runtime services" - Revert "efi: Fix debugobjects warning on 'efi_rts_work'" - Revert "efi: Fix build error due to enum collision between efi.h and ima.h" - Revert "x86/efi: fix a -Wtype-limits compilation warning" - Revert "arm64: efi: Restore register x18 if it was corrupted" - Revert "efi: fix userspace infinite retry read efivars after EFI runtime services page fault" - Revert "arm64: efi: Execute runtime services from a dedicated stack" - Revert "arm64: efi: Recover from synchronous exceptions occurring in firmware" - Revert "efi: rt-wrapper: Add missing include" - Revert "arm64: efi: Make efi_rt_lock a raw_spinlock" - crypto:hisilicon/sec - modify hw endian config - !2118 Compiler: Backport value profile support to openEuler 20.03 LTS SP3. - GCOV: Add value profile support for kernel. - sched/qos: Fix warning in CPU hotplug scenarios - !2154 netfilter: nftables: exthdr: fix 4-byte stack OOB write - net: sched: sch_qfq: Fix UAF in qfq_dequeue() - !2140 io_uring: ensure IOPOLL locks around deferred work - !2056 i2c: hisi: Add gpio bus recovery support - netfilter: nftables: exthdr: fix 4-byte stack OOB write - !2082 fix CVE-2023-20588 - io_uring: ensure IOPOLL locks around deferred work - i2c: hisi: Add gpio bus recovery support - x86/CPU/AMD: Fix the DIV(0) initial fix attempt - x86/CPU/AMD: Do not leak quotient data after a division by 0- !2084 af_unix: Fix null-ptr-deref in unix_stream_sendpage(). - !2071 【openEuler-1.0-LTS】net: openvswitch: don't send internal clone attribute to the userspace - net: openvswitch: don't send internal clone attribute to the userspace. - !2089 net/sched: sch_hfsc: Ensure inner classes have fsc curve - !335 efi: fix crash due to EFI runtime service page faults - net/sched: sch_hfsc: Ensure inner classes have fsc curve - !2088 [openEuler-1.0-LTS] bugfixes of scsi - scsi: fix kabi broken in struct Scsi_Host - scsi: don't fail if hostt->module is NULL - scsi: scsi_device_gets returns failure when the module is NULL. - af_unix: Fix null-ptr-deref in unix_stream_sendpage(). - !2069 x86/speculation: Add Gather Data Sampling mitigation - !1692 Mainline bugfix patches backport 4.19 - !2075 x86/cpu/amd: Enable Zenbleed fix for AMD Custom APU 0405 - !2079 [openEuler-1.0-LTS] stable inclusion from linux-4.19.y - scsi: core: raid_class: Remove raid_component_add() - scsi: core: Fix possible memory leak if device_add() fails - scsi: core: Fix legacy /proc parsing buffer overflow - serial: 8250_dw: Preserve original value of DLF register - serial: 8250_dw: split Synopsys DesignWare 8250 common functions - nbd: Add the maximum limit of allocated index in nbd_dev_add - integrity: Fix possible multiple allocation in integrity_inode_get() - !2070 net bugfixes inclusion from linux-4.19.y - drivers: net: prevent tun_build_skb() to exceed the packet size limit - net/packet: annotate data-races around tp->status - tcp_metrics: fix data-race in tcpm_suck_dst() vs fastopen - tcp_metrics: annotate data-races around tm->tcpm_net - tcp_metrics: annotate data-races around tm->tcpm_vals[] - tcp_metrics: annotate data-races around tm->tcpm_lock - tcp_metrics: annotate data-races around tm->tcpm_stamp - tcp_metrics: fix addr_same() helper - virtio-net: set queues after driver_ok - virtio-net: fix race between set queues and probe - team: reset team's flags when down link is P2P device - bonding: reset bond's flags when down link is P2P device - tcp: annotate data-races around fastopenq.max_qlen - tcp: annotate data-races around tp->notsent_lowat - tcp: annotate data-races around rskq_defer_accept - tcp: annotate data-races around tp->linger2 - net: Replace the limit of TCP_LINGER2 with TCP_FIN_TIMEOUT_MAX - SUNRPC: Fix UAF in svc_tcp_listen_data_ready() - net/sched: make psched_mtu() RTNL-less safe - udp6: fix udp6_ehashfn() typo - icmp6: Fix null-ptr-deref of ip6_null_entry->rt6i_idev in icmp6_dev(). - vrf: Increment Icmp6InMsgs on the original netdev - netfilter: conntrack: Avoid nf_ct_helper_hash uses after free - tcp: annotate data races in __tcp_oow_rate_limited() - net: bridge: keep ports without IFF_UNICAST_FLT in BR_PROMISC mode - ipvlan: Fix return value of ipvlan_queue_xmit() - netlink: do not hard code device address lenth in fdb dumps - netlink: Add __sock_i_ino() for __netlink_diag_dump(). - x86/cpu/amd: Enable Zenbleed fix for AMD Custom APU 0405 - !1987 tracing: Fix race issue between cpu buffer write and swap - !2067 memcg: add refcnt for pcpu stock to avoid UAF problem in drain_all_stock() - netlink: fix potential deadlock in netlink_set_err() - x86/speculation: Mark all Skylake CPUs as vulnerable to GDS - x86: Move gds_ucode_mitigated() declaration to header - Documentation/x86: Fix backwards on/off logic about YMM support - KVM: Add GDS_NO support to KVM - x86/speculation: Add Kconfig option for GDS - x86/speculation: Add force option to GDS mitigation - x86/speculation: Add cpu_show_gds() prototype - x86/speculation: Add Gather Data Sampling mitigation - !2063 cpu/hotplug: Prevent self deadlock on CPU hot-unplug - !2046 use precise io accounting apis - memcg: add refcnt for pcpu stock to avoid UAF problem in drain_all_stock() - cpu/hotplug: Prevent self deadlock on CPU hot-unplug - !2050 memcg: fix a UAF problem in drain_all_stock() - !1976 fix race between setxattr and write back - memcg: fix a UAF problem in drain_all_stock() - dm: switch to precise io accounting - block: add precise io accouting apis - tracing: Fix race issue between cpu buffer write and swap - ext2: dump current reservation window info - ext2: fix race between setxattr and write back - ext2: introduce flag argument for ext2_new_blocks() - ext2: remove ext2_new_block() - arm64: efi: Make efi_rt_lock a raw_spinlock - efi: rt-wrapper: Add missing include - arm64: efi: Recover from synchronous exceptions occurring in firmware - arm64: efi: Execute runtime services from a dedicated stack - efi: fix userspace infinite retry read efivars after EFI runtime services page fault - arm64: efi: Restore register x18 if it was corrupted - x86/efi: fix a -Wtype-limits compilation warning - efi: Fix build error due to enum collision between efi.h and ima.h - efi: Fix debugobjects warning on 'efi_rts_work' - efi/x86: Handle page faults occurring while running EFI runtime services - efi: Make efi_rts_work accessible to efi page fault handler - lib/genalloc.c: change return type to unsigned long for bitmap_set_ll - iommu/amd: Restore IRTE.RemapEn bit after programming IRTE - iommu/amd: Use cmpxchg_double() when updating 128-bit IRTE- !1964 crypto:padata: Fix return err for PADATA_RESET - !1955 fuse: revalidate: don't invalidate if interrupted - !1973 sched/smt: fix unbalance sched_smt_present dec/inc - sched/smt: fix unbalance sched_smt_present dec/inc - !1906 tracing: Fix memleak due to race between current_tracer and trace - !1958 block: don't get gendisk if queue has not been registered - crypto:padata: Fix return err for PADATA_RESET - block: don't get gendisk if queue has not been registered - fuse: revalidate: don't invalidate if interrupted - !1902 tracing: Fix cpu buffers unavailable due to 'record_disabled' missed - tracing: Fix memleak due to race between current_tracer and trace - tracing: Fix cpu buffers unavailable due to 'record_disabled' missed- !1863 nbd: pass nbd_sock to nbd_read_reply() instead of index - !1638 [openEuler-1.0-LTS] Add support for Hygon model 4h~6h processors - !1884 ipvlan: Fix a reference count leak warning in ipvlan_ns_exit() - !1882 ip6mr: Fix skb_under_panic in ip6mr_cache_report() - ipvlan: Fix a reference count leak warning in ipvlan_ns_exit() - ip6mr: Fix skb_under_panic in ip6mr_cache_report() - EDAC/amd64: Add support for Hygon family 18h model 6h - x86/amd_nb: Add support for Hygon family 18h model 6h - hwmon/k10temp: Add support for Hygon family 18h model 5h - EDAC/amd64: Add support for Hygon family 18h model 5h - x86/amd_nb: Add support for Hygon family 18h model 5h - x86/cpu: Get LLC ID for Hygon family 18h model 5h - i2c-piix4: Remove the IMC detecting for Hygon SMBus - hwmon/k10temp: Add support for Hygon family 18h model 4h - EDAC/mce_amd: Use struct cpuinfo_x86.logical_die_id for Hygon NodeId - EDAC/amd64: Adjust address translation for Hygon family 18h model 4h - EDAC/amd64: Add support for Hygon family 18h model 4h - EDAC/amd64: Get UMC channel from the 6th nibble for Hygon - iommu/hygon: Add support for Hygon family 18h model 4h IOAPIC - x86/amd_nb: Add northbridge support for Hygon family 18h model 4h - x86/amd_nb: Add Hygon family 18h model 4h PCI IDs - x86/microcode/hygon: Add microcode loading support for Hygon processors - x86/cpu/hygon: Modify the CPU topology deriving method for Hygon - x86/MCE/AMD: Use an u64 for bank_map - EDAC/mc_sysfs: Increase legacy channel support to 12 - EDAC/amd64: Add new register offset support and related changes - EDAC/amd64: Set memory type per DIMM - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - EDAC/amd64: Add support for AMD Family 19h Models 10h-1Fh and A0h-AFh - EDAC: Add RDDR5 and LRDDR5 memory types - hwmon: (k10temp) Remove unused definitions - hwmon: (k10temp) Remove residues of current and voltage - hwmon: (k10temp) Rework the temperature offset calculation - hwmon: (k10temp) Don't show Tdie for all Zen/Zen2/Zen3 CPU/APU - x86/cstate: Allow ACPI C1 FFH MWAIT use on Hygon systems - x86/topology: Make __max_die_per_package available unconditionally - x86/cpu/amd: Set __max_die_per_package on AMD - hwmon: (k10temp) Remove support for displaying voltage and current on Zen CPUs - EDAC: Add DDR5 new memory type - x86/topology: Set cpu_die_id only if DIE_TYPE found - EDAC/mce_amd: Use struct cpuinfo_x86.cpu_die_id for AMD NodeId - x86/CPU/AMD: Save AMD NodeId as cpu_die_id - EDAC/amd64: Set proper family type for Family 19h Models 20h-2Fh - hwmon: (k10temp) Add support for Zen3 CPUs - x86/mce: Increase maximum number of banks to 64 - hwmon: (k10temp) Define SVI telemetry and current factors for Zen2 CPUs - hwmon: (k10temp) Create common functions and macros for Zen CPU families - i2c: designware: Add device HID for Hygon I2C controller - hwmon: (k10temp) make some symbols static - hwmon: (k10temp) Reorganize and simplify temperature support detection - hwmon: (k10temp) Swap Tdie and Tctl on Family 17h CPUs - hwmon: (k10temp) Display up to eight sets of CCD temperatures - hwmon: (k10temp) Don't show temperature limits on Ryzen (Zen) CPUs - hwmon: (k10temp) Show core and SoC current and voltages on Ryzen CPUs - hwmon: (k10temp) Report temperatures per CPU die - hmon: (k10temp) Convert to use devm_hwmon_device_register_with_info - hwmon: (k10temp) Use bitops - hwmon: Add convience macro to define simple static sensors - hwmon: (k10temp) Auto-convert to use SENSOR_DEVICE_ATTR_{RO, RW, WO} - hwmon: Introduce SENSOR_DEVICE_ATTR_{RO, RW, WO} and variants - x86/umip: Make the UMIP activated message generic - x86/umip: Print UMIP line only once - x86/microcode/AMD: Clean up per-family patch size checks - !1689 [openEuler-1.0-LTS] drm/atomic-helper: Bump vblank timeout to 100 ms - nbd: pass nbd_sock to nbd_read_reply() instead of index - !1807 Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb - !1844 net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - !1785 README: Remove out-of-date contribution guide - !1849 fs: jfs: fix possible NULL pointer dereference in dbFree() - fs: jfs: fix possible NULL pointer dereference in dbFree() - !1836 tcp: Reduce chance of collisions in inet6_hashfn(). - net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - tcp: Reduce chance of collisions in inet6_hashfn(). - Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb - README: Remove out-of-date contribution guide - drm/atomic-helper: Bump vblank timeout to 100 ms- !1831 fix NULL pointer dereference in __nf_nat_mangle_tcp_packet - netfilter: nat: fix kabi change - netfilter: nat: fix udp checksum corruption - netfilter: nat: remove csum_recalc hook - !1769 workqueue: Make flush_workqueue() also watch flush_work() - !1803 net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - !1767 bonding: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves - workqueue: Assign a color to barrier work items - workqueue: Mark barrier work with WORK_STRUCT_INACTIVE - workqueue: Change the code of calculating work_flags in insert_wq_barrier() - workqueue: Change arguement of pwq_dec_nr_in_flight() - workqueue: Rename "delayed" (delayed by active management) to "inactive" - bonding: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves- !1762 xen/netback: Fix buffer overrun triggered by unusual packet - xen/netback: Fix buffer overrun triggered by unusual packet - !1761 fix CVE-2023-4194 - net: tap_open(): set sk_uid from current_fsuid() - net: tun_chr_open(): set sk_uid from current_fsuid() - !1728 fix CVE-2023-4128 - !1673 sched: disable sched_autogroup by default - net/sched: cls_fw: No longer copy tcf_result on update to avoid use-after-free - net/sched: cls_route: No longer copy tcf_result on update to avoid use-after-free - net/sched: cls_u32: No longer copy tcf_result on update to avoid use-after-free - !1712 xfrm: add NULL check in xfrm_update_ae_params - xfrm: add NULL check in xfrm_update_ae_params - sched: disable sched_autogroup by default- !1699 dm bugfixes backport from mainline - !1697 x86/cpu/amd: Add a Zenbleed fix - md: Flush workqueue md_rdev_misc_wq in md_alloc() - dm: don't lock fs when the map is NULL during suspend or resume - dm: don't lock fs when the map is NULL in process of resume - dm: requeue IO if mapping table not yet available - Revert "dm: make sure dm_table is binded before queue request" - dm thin metadata: check fail_io before using data_sm - !1662 media: usb: siano: Fix CVE-2023-4132 - !1696 Revert "arm64/mpam: Fix mpam corrupt when cpu online" - x86/cpu/amd: Add a Zenbleed fix - !1694 linux-4.19.y bugfixes backport - Revert "arm64/mpam: Fix mpam corrupt when cpu online" - x86/apic: Fix kernel panic when booting with intremap=off and x2apic_phys - sch_netem: fix issues in netem_change() vs get_dist_table() - sch_netem: acquire qdisc lock in netem_change() - cgroup: Do not corrupt task iteration when rebinding subsystem - !1577 tracing: Fix warning in trace_buffered_event_disable() - !1663 tty: fix pid memleak in disassociate_ctty() - tty: fix pid memleak in disassociate_ctty() - media: usb: siano: Fix warning due to null work_func_t function pointer - media: usb: siano: Fix use after free bugs caused by do_submit_urb - !1629 can: raw: fix receiver memory leak - !1655 can: bcm: Fix UAF in bcm_proc_show() - can: bcm: Fix UAF in bcm_proc_show() - can: raw: fix lockdep issue in raw_release() - can: raw: fix receiver memory leak - !1625 Fix host zero page refcount overflow caused by kvm - !1595 net: nfc: Fix CVE-2023-3863 - KVM: Don't set Accessed/Dirty bits for ZERO_PAGE - KVM: fix overflow of zero page refcount with ksm running - net: nfc: Fix use-after-free caused by nfc_llcp_find_local - nfc: llcp: simplify llcp_sock_connect() error paths - nfc: llcp: nullify llcp_sock->dev on connect() error paths - nfc: Fix to check for kmemdup failure - tracing: Fix warning in trace_buffered_event_disable()- !1571 【openEuler-1.0-LTS】net: hns: fix wrong head when modify the tx feature when sending packets - !1570 【openEuler-1.0-LTS】net: hns3: bugfixes for hns3 drivers 2023.07.29 - net: hns: update hns version to 23.7.1 - net: hns: fix wrong head when modify the tx feature when sending packets - net: hns3: update hns3 version to 23.7.1 - net: hns3: fix tx timeout issue - net: hns3: fix incorrect hw rss hash type of rx packet - net: hns3: add barrier in vf mailbox reply process - net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net: hns3: fix not call nic_call_event() problem when reset failed - !1556 net/sched: cls_fw: Fix improper refcount update leads to use-after-free - !1568 net/sched: cls_u32: Fix reference counter leak leading to overflow - net/sched: cls_u32: Fix reference counter leak leading to overflow - net/sched: cls_fw: Fix improper refcount update leads to use-after-free - !1549 binder: fix UAF caused by faulty buffer cleanup - binder: fix UAF caused by faulty buffer cleanup- !1534 arm64/mpam: fix missing kfree domain's ctrl_val arrray - arm64/mpam: fix missing kfree domain's ctrl_val arrray - !1529 net/sched: sch_qfq: account for stab overhead in qfq_enqueue - net/sched: sch_qfq: account for stab overhead in qfq_enqueue - !1474 [openEuler-1.0-LTS] pmu: remove uncore code for Zhaoxin Platform - !1498 media: dvb-core: Fix use-after-free due on race condition at dvb_net - media: dvb-core: Fix use-after-free due on race condition at dvb_net - !1444 ring-buffer: Fix deadloop issue on reading trace_pipe - !1469 netfilter: nf_tables: prevent OOB access in nft_byteorder_eval - !1472 ipv6/addrconf: fix a potential refcount underflow for idev - pmu: remove uncore code for Zhaoxin Platform - ipv6/addrconf: fix a potential refcount underflow for idev - netfilter: nf_tables: prevent OOB access in nft_byteorder_eval - ftrace: Fix possible warning on checking all pages used in ftrace_process_locs() - ring-buffer: Fix deadloop issue on reading trace_pipe- !1435 fix CVE-2023-3117 - netfilter: nf_tables: unbind non-anonymous set if rule construction fails - netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain - netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE - !1400 [openEuler-1.0-LTS] block: Try to handle busy underlying device on discard - !1416 Fix generic/299 fail - ext4: Add debug message to notify user space is out of free - Revert "ext4: Stop trying writing pages if no free blocks generated" - !1404 bpf: cpumap: Fix memory leak in cpu_map_update_elem - bpf: cpumap: Fix memory leak in cpu_map_update_elem - block: Try to handle busy underlying device on discard - !1377 [sync] PR-1376: jbd2: Check 'jh->b_transaction' before remove it from checkpoint - !1374 etmem: fix the div 0 problem in swapcache reclaim process - !177 net:bonding:support balance-alb interface with vlan to bridge - jbd2: Check 'jh->b_transaction' before remove it from checkpoint - etmem: fix the div 0 problem in swapcache reclaim process - bonding: fix reference count leak in balance-alb mode - net:bonding:support balance-alb interface with vlan to bridge- !1361 fix CVE-2023-1295 - io_uring: get rid of intermediate IORING_OP_CLOSE stage - fs: provide locked helper variant of close_fd_get_file() - file: Rename __close_fd_get_file close_fd_get_file - Remove DECnet support from kernel - net/netlink: fix NETLINK_LIST_MEMBERSHIPS length report - net: tcp: fix kabi breakage in struct sock - tcp: deny tcp_disconnect() when threads are waiting - ping6: Fix send to link-local addresses with VRF. - net: sched: fix possible refcount leak in tc_chain_tmplt_add() - rfs: annotate lockless accesses to RFS sock flow table - rfs: annotate lockless accesses to sk->sk_rxhash - xfrm: Check if_id in inbound policy/secpath match - udp6: Fix race condition in udp6_sendmsg & connect - tcp: Return user_mss for TCP_MAXSEG in CLOSE/LISTEN state if user_mss set - af_packet: do not use READ_ONCE() in packet_bind() - af_packet: Fix data-races of pkt_sk(sk)->num. - ipv{4,6}/raw: fix output xfrm lookup wrt protocol - ipv6: Fix out-of-bounds access in ipv6_find_tlv() - net: fix skb leak in __skb_tstamp_tx() - udplite: Fix NULL pointer dereference in __sk_mem_raise_allocated(). - vlan: fix a potential uninit-value in vlan_dev_hard_start_xmit() - af_key: Reject optional tunnel/BEET mode templates in outbound policies - net: Catch invalid index in XPS mapping - af_unix: Fix data races around sk->sk_shutdown. - af_unix: Fix a data race of sk->sk_receive_queue->qlen. - net: datagram: fix data-races in datagram_poll() - tcp: factor out __tcp_close() helper - net: annotate sk->sk_err write from do_recvmmsg() - netlink: annotate accesses to nlk->cb_running - quota: simplify drop_dquot_ref() - quota: fix dqput() to follow the guarantees dquot_srcu should provide - quota: add new helper dquot_active() - quota: rename dquot_active() to inode_quota_active() - quota: factor out dquot_write_dquot() - quota: add dqi_dirty_list description to comment of Dquot List Management - quota: avoid increasing DQST_LOOKUPS when iterating over dirty/inuse list - kernel/extable.c: use address-of operator on section symbols - arm64/mm: mark private VM_FAULT_X defines as vm_fault_t - x86/mm: Avoid incomplete Global INVLPG flushes - sched: Fix KCSAN noinstr violation - serial: 8250: Reinit port->pm on port specific driver unbind - ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects - ACPI: EC: Fix oops when removing custom query handlers - lib: cpu_rmap: Fix potential use-after-free in irq_cpu_rmap_release() - lib: cpu_rmap: Avoid use after free on rmap->obj array entries - ext4: improve error recovery code paths in __ext4_remount() - scsi: core: Improve scsi_vpd_inquiry() checks - PCI: pciehp: Fix AB-BA deadlock between reset_lock and device_lock - loop: loop_set_status_from_info() check before assignment - loop: Check for overflow while configuring loop - Revert "loop: Check for overflow while configuring loop" - block: don't set GD_NEED_PART_SCAN if scan partition failed - block: return -EBUSY when there are open partitions in blkdev_reread_part - blk-wbt: make enable_state more accurate - block: Limit number of items taken from the I/O scheduler in one go - crypto: cryptd - Protect per-CPU resource by disabling BH. - random: fix data race on crng_node_pool - x86/kprobes: Fix the error judgment for debug exceptions - ext4: turning quotas off if mount failed after enable quotas - ext4: forbid commit inconsistent quota data when errors=remount-ro - quota: fixup *_write_file_info() to return proper error code - ipmi_si: fix a memleak in try_smi_init() - net: add vlan_get_protocol_and_depth() helper - net: tap: check vlan with eth_type_vlan() method - !1317 ext4: Stop trying writing pages if no free blocks generated - !1323 jbd2: fix several checkpoint - jbd2: fix checkpoint cleanup performance regression - jbd2: remove __journal_try_to_free_buffer() - jbd2: fix a race when checking checkpoint buffer busy - jbd2: Fix wrongly judgement for buffer head removing while doing checkpoint - jbd2: remove journal_clean_one_cp_list() - nbd: fix null-ptr-dereference while accessing 'nbd->config' - nbd: factor out a helper to get nbd_config without holding 'config_lock' - nbd: fold nbd config initialization into nbd_alloc_config() - ext4: Stop trying writing pages if no free blocks generated - ipvlan:Fix out-of-bounds caused by unclear skb->cb- sched: Fix null pointer derefrence for sd->span - scsi: hisi_sas: Fix Null point exception after call debugfs_remove_recursive() - scsi: hisi_sas: Fix normally completed I/O analysed as failed - drm/msm/dpu: Add check for pstates - usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition- HID: intel_ish-hid: Add check for ishtp_dma_tx_map - media: saa7134: fix use after free bug in saa7134_finidev due to race condition - config: enable CONFIG_QOS_SCHED_SMART_GRID by default - mm: oom: move memcg_print_bad_task() out of mem_cgroup_scan_tasks() - media: dm1105: Fix use after free bug in dm1105_remove due to race condition - sched: Fix memory leak for smart grid - sched: Delete redundant updates to p->prefer_cpus - nbd: fix incomplete validation of ioctl arg - nbd: validate the block size in nbd_set_size - relayfs: fix out-of-bounds access in relay_file_read - kernel/relay.c: fix read_pos error when multiple readers - net/sched: flower: fix possible OOB write in fl_set_geneve_opt()- sched: Adjust few parameters range for smart grid - sched: clear credit count in error branch - sched: Fix memory leak on error branch - sched: fix dereference NULL pointers - sched: Fix timer storm for smart grid - memstick: r592: Fix UAF bug in r592_remove due to race condition - fbcon: Check font dimension limits - sched/rt: Fix possible warn when push_rt_task - !1152 pci: workaround multiple functions can be assigned to only one VM - pci: workaround multiple functions can be assigned to only one VM - sched: Fix negative count for jump label - sched: Fix possible deadlock in tg_set_dynamic_affinity_mode - sched: fix WARN found by deadlock detect - sched: fix smart grid usage count - sched: Add static key to reduce noise - net: nsh: Use correct mac_offset to unwind gso skb in nsh_gso_segment() - !1134 【openEuler-1.0-LTS】cpufreq:conservative: Fix load in fast_dbs_update() - firewire: fix potential uaf in outbound_phy_packet_callback() - cpufreq: conservative: fix load in fast_dbs_update()- arm64: Add AMPERE1 to the Spectre-BHB affected list - sctp: Call inet6_destroy_sock() via sk->sk_destruct(). - net: Remove WARN_ON_ONCE(sk->sk_forward_alloc) from sk_stream_kill_queues(). - dccp/tcp: Avoid negative sk_forward_alloc by ipv6_pinfo.pktoptions. - media: dvb-core: Fix kernel WARNING for blocking operation in wait_event*() - sched: smart grid: init sched_grid_qos structure on QOS purpose - sched: Introduce smart grid scheduling strategy for cfs - ipmi: fix SSIF not responding under certain cond. - ipmi_ssif: Rename idle state and check - mm/page_alloc: fix potential deadlock on zonelist_update_seq seqlock - printk: declare printk_deferred_{enter,safe}() in include/linux/printk.h - serial: 8250: Fix serial8250_tx_empty() race with DMA Tx - tty: Prevent writing chars during tcsetattr TCSADRAIN/FLUSH - af_packet: Don't send zero-byte data in packet_sendmsg_spkt(). - nohz: Add TICK_DEP_BIT_RCU - perf/core: Fix hardlockup failure caused by perf throttle - of: Fix modalias string generation - tcp/udp: Fix memleaks of sk and zerocopy skbs with TX timestamp. - ipv4: Fix potential uninit variable access bug in __ip_make_skb() - crypto: drbg - Only fail when jent is unavailable in FIPS mode - crypto: drbg - make drbg_prepare_hrng() handle jent instantiation errors - net/packet: convert po->auxdata to an atomic flag - net/packet: convert po->origdev to an atomic flag - ring-buffer: Sync IRQ works before buffer destruction - dccp: Call inet6_destroy_sock() via sk->sk_destruct(). - inet6: Remove inet6_destroy_sock() in sk->sk_prot->destroy(). - tcp/udp: Call inet6_destroy_sock() in IPv6 sk->sk_destruct(). - udp: Call inet6_destroy_sock() in setsockopt(IPV6_ADDRFORM). - lib/cmdline: fix get_option() for strings starting with hyphen - of: overlay: fix for_each_child.cocci warnings - kprobes: Fix to handle forcibly unoptimized kprobes on freeing_list - fs: hfsplus: fix UAF issue in hfsplus_put_super - block: Fix the partition start may overflow in add_partition() - block: refactor blkpg_ioctl - nbd: get config_lock before sock_shutdown - ipv6: sr: fix out-of-bounds read when setting HMAC data. - dm: add disk before alloc dax - dm thin: Fix ABBA deadlock by resetting dm_bufio_client- !932 [sync] PR-922: jbd2: fix checkpoint inconsistent - jbd2: remove t_checkpoint_io_list - jbd2: recheck chechpointing non-dirty buffer - irqchip/gic-v3-its: Balance initial LPI affinity across CPUs - irqchip/gic-v3-its: Track LPI distribution on a per CPU basis - power: supply: bq24190: Fix use after free bug in bq24190_remove due to race condition - net: sched: fix NULL pointer dereference in mq_attach- !841 【openEuler-1.0-LTS】cpufreq: conservative: Add a switch to enable fast mode - x86/pm: Fix false positive kmemleak report in msr_build_context() - drm: Lock pointer access in drm_master_release() - drm: Fix use-after-free read in drm_getunique() - cpufreq: conservative: Add a switch to enable fast mode - of: overlay: kmemleak in dup_and_fixup_symbol_prop() - iommu/dma: Fix MSI reservation allocation - lib/stackdepot.c: fix global out-of-bounds in stack_slabs - rcu: Use *_ONCE() to protect lockless ->expmask accesses - iommu: Don't print warning when IOMMU driver only supports unmanaged domains - ext4: avoid a potential slab-out-of-bounds in ext4_group_desc_csum- netfilter: nf_tables: deactivate anonymous set from preparation phase - x86/msr-index: make SPEC_CTRL_IBRS assembler-portable - xfs: verify buffer contents when we skip log replay - !586 [openEuelr-1.0-LTS] kvm: arm64: fix some pvsched bugs - kvm: arm64: fix some pvsched bugs- net: sctp: update stream->incnt after successful allocation of stream_in - !741 [openEuler-1.0-LTS] openeuler_defconfig: Add configuration items for zhaoxin - !752 arm64/mpam: modify mpam irq register error log - arm64/mpam: modify mpam irq register error log - !437 [openEuler-1.0-LTS] USB: HCD: Fix URB giveback issue in tasklet function - openeuler_defconfig: Add configuration items for zhaoxin - bluetooth: Perform careful capability checks in hci_sock_ioctl() - netrom: Fix use-after-free caused by accept on already connected socket - !689 Fix compile error in allyesconfigs - !441 [openEuler-1.0-LTS] Add support for Zhaoxin SM3 and SM4 instruction - !438 [openEuler-1.0-LTS] Add Zhaoxin I2C driver - i2c: Add Zhaoxin I2C driver - !432 [openEuler-1.0-LTS] Add Zhaoxin ACE driver - mm: memcontrol: switch to rcu protection in drain_all_stock() - !429 [openEuler-1.0.-LTS] ACPI, x86: Improve Zhaoxin processors support for NONSTOP TSC - !428 [openEuelr-1.0-LTS] x86/acpi/cstate: Optimize ARB_DISABLE on Centaur CPUs - !687 [HUST CSE] fix a use-after-free bug in uncore_pci_remove() - scsi/hifc: Fix compile error in allyesconfigs - net/hinic: Fix compile error in allyesconfigs - x86/perf: fix use-after-free bug in uncore_pci_remove() - crypto: Driver for Zhaoxin GMI SM4 Block Cipher Algorithm - crypto: Driver for Zhaoxin GMI SM3 Secure Hash algorithm - !433 [openEuler-1.0-LTS] Add support of turbo boost control interface for Zhaoxin CPUs - !431 [openEuler-1.0-LTS] Add Zhaoxin rng driver - crypto: Add Zhaoxin ACE driver - cpufreq: ACPI: Add Zhaoxin/Centaur turbo boost control interface support - hwrng: Add Zhaoxin rng driver - USB: HCD: Fix URB giveback issue in tasklet function - ACPI, x86: Improve Zhaoxin processors support for NONSTOP TSC - x86/acpi/cstate: Optimize ARB_DISABLE on Centaur CPUs- ipv6: Fix an uninit variable access bug in __ip6_make_skb() - cgroup/cpuset: Wake up cpuset_attach_wq tasks in cpuset_cancel_attach() - verify_pefile: relax wrapper length check - udp6: fix potential access to stale information - mm/swap: fix swap_info_struct race between swapoff and get_swap_pages() - ftrace: Mark get_lock_parent_ip() __always_inline - perf/core: Fix the same task check in perf_event_set_output - net: don't let netpoll invoke NAPI if in xmit context - icmp: guard against too small mtu - sched_getaffinity: don't assume 'cpumask_size()' is fully initialized - dm stats: check for and propagate alloc_percpu failure - dm thin: fix deadlock when swapping to thin device - genirq: introduce handle_fasteoi_edge_irq for phytium - genirq: introduce handle_fasteoi_edge_irq flow handler - Revert "genirq: Remove irqd_irq_disabled in __irq_move_irq" - Revert "config: enbale irq pending config for openeuler" - Revert "genirq: introduce CONFIG_GENERIC_PENDING_IRQ_FIX_KABI" - Revert "irqchip/gic-v3-its: introduce CONFIG_GENERIC_PENDING_IRQ" - scsi: dpt_i2o: Remove obsolete driver - md: extend disks_mutex coverage - md: use msleep() in md_notify_reboot() - md: fix double free of mddev->private in autorun_array() - block/badblocks: fix badblocks loss when badblocks combine - block/badblocks: fix the bug of reverse order - block: Only set bb->changed when badblocks changes - md: fix sysfs duplicate file while adding rdev - md: replace invalid function flush_rdev_wq() with flush_workqueue() - bonding: Fix memory leak when changing bond type to Ethernet - dm ioctl: fix nested locking in table_clear() to remove deadlock concern - timers/nohz: Last resort update jiffies on nohz_full IRQ entry - bonding: restore bond's IFF_SLAVE flag if a non-eth dev enslave fails - bonding: restore IFF_MASTER/SLAVE flags on bond enslave ether type change - net: qcom/emac: Fix use after free bug in emac_remove due to race condition - ovl: get_acl: Fix null pointer dereference at realinode in rcu-walk mode - net: sched: sch_qfq: prevent slab-out-of-bounds in qfq_activate_agg - ext4: only update i_reserved_data_blocks on successful block allocation - mm: mem_reliable: Use zone_page_state to count free reliable pages - writeback, cgroup: fix null-ptr-deref write in bdi_split_work_to_wbs - sctp: leave the err path free in sctp_stream_init to sctp_stream_free - RDMA/core: Refactor rdma_bind_addr - Revert "RDMA/cma: Simplify rdma_resolve_addr() error flow" - fix kabi broken due to import new inode operation get_inode_acl - ovl: enable RCU'd ->get_acl() - vfs: add rcu argument to ->get_acl() callback- RDMA/hns: Add check for user-configured max_inline_data value - power: supply: da9150: Fix use after free bug in da9150_charger_remove due to race condition - !430 [openEuler-1.0-LTS] ata: sata_zhaoxin: Update Zhaoxin Serial ATA product name - i2c: xgene-slimpro: Fix out-of-bounds bug in xgene_slimpro_i2c_xfer() - audit: fix a memleak caused by auditing load module - !595 [openEuler-1.0-LTS] iommu/arm-smmu-v3: Fix UAF when handle evt during iommu group removing - tcp: restrict net.ipv4.tcp_app_win - x86/speculation: Allow enabling STIBP with legacy IBRS - iommu/arm-smmu-v3: Fix UAF when handle evt during iommu group removing - ata: sata_zhaoxin: Update Zhaoxin Serial ATA product name- KVM: nVMX: add missing consistency checks for CR0 and CR4 - drm/vmwgfx: Validate the box size for the snooped cursor - net/sched: Retire tcindex classifier - Documentation/hw-vuln: Fix rST warning - Documentation/hw-vuln: Add documentation for Cross-Thread Return Predictions - KVM: x86: Mitigate the cross-thread return address predictions bug - x86/speculation: Identify processors vulnerable to SMT RSB predictions - cpu/SMT: create and export cpu_smt_possible() - nfc: st-nci: Fix use after free bug in ndlc_remove due to race condition - Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition- hwmon: (xgene) Fix use after free bug in xgene_hwmon_remove due to race condition - xirc2ps_cs: Fix use after free bug in xirc2ps_detach - 9p/xen : Fix use after free bug in xen_9pfs_front_remove due to race condition - !566 linux-4.19.y bugfixes backport - bpf: add missing header file include - uaccess: Add speculation barrier to copy_from_user() - random: always mix cycle counter in add_latent_entropy() - x86/mm: Fix use of uninitialized buffer in sme_enable() - ext4: fail ext4_iget if special inode unallocated - ext4: zero i_disksize when initializing the bootloader inode - irqdomain: Drop bogus fwspec-mapping error handling - irqdomain: Fix disassociation race - irqdomain: Fix association race - x86/kprobes: Fix arch_check_optimized_kprobe check within optimized_kprobe range - x86/kprobes: Fix __recover_optprobed_insn check optimizing logic - x86/bugs: Reset speculation control settings on init - timers: Prevent union confusion from unexpected restart_syscall() - crypto: rsa-pkcs1pad - Use akcipher_request_complete - crypto: seqiv - Handle EBUSY correctly - ACPI: battery: Fix missing NUL-termination with large strings - ACPICA: nsrepair: handle cases without a return value correctly - genirq: Fix the return type of kstat_cpu_irqs_sum() - ACPI: NFIT: fix a potential deadlock during NFIT teardown - alarmtimer: Prevent starvation by small intervals and SIG_IGN - ring-buffer: Fix race while reader and writer are on the same page - cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all() - cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock - cgroup/cpuset: Change cpuset_rwsem and hotplug lock order - Revert "cgroup/cpuset: Change cpuset_rwsem and hotplug lock order" - Revert "cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock" - Revert "cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all()" - block: fix wrong mode for blkdev_put() from disk_scan_partitions() - block: fix scan partition for exclusively open device again - block: fix kabi broken in ioctl.c - block: merge disk_scan_partitions and blkdev_reread_part - block: cleanup partition scanning in register_disk - block: Revert "block: check 'bd_super' before rescanning partition" - md: fix kabi broken in struct mddev - md: use interruptible apis in idle/frozen_sync_thread - md: wake up 'resync_wait' at last in md_reap_sync_thread() - md: refactor idle/frozen_sync_thread() - md: add a mutex to synchronize idle and frozen in action_store() - md: refactor action_store() for 'idle' and 'frozen' - mm: mem_reliable: Initialize reliable_nr_page when mm_init() - md: fix soft lockup in status_resync - md: don't update recovery_cp when curr_resync is ACTIVE - md: Ensure resync is reported after it starts - md: Use enum for overloaded magic numbers used by mddev->curr_resync - loop: Add parm check in loop_control_ioctl - block/wbt: enable wbt after switching cfq to other schedulers - Fix double fget() in vhost_net_set_backend() - sched/fair: Sanitize vruntime of entity being migrated - sched/fair: sanitize vruntime of entity being placed - Revert "sched: Reinit task's vruntime if a task sleep over 200 days" - btrfs: fix race between quota disable and quota assign ioctls- ext4: Fix i_disksize exceeding i_size problem in paritally written case - ext4: ext4_put_super: Remove redundant checking for 'sbi->s_journal_bdev' - ext4: Fix reusing stale buffer heads from last failed mounting - kvm: initialize all of the kvm_debugregs structure before sending it to userspace - net: virtio_net_hdr_to_skb: count transport header in UFO - net: be more gentle about silly gso requests coming from user - ext4: fix race between writepages and remount- ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF - ftrace: Fix invalid address access in lookup_rec() when index is 0 - ftrace: Fix NULL pointer dereference in is_ftrace_trampoline when ftrace is dead - scsi: scsi_dh_alua: fix memleak for 'qdata' in alua_activate() - RDMA/core: Don't infoleak GRH fields - !480 mm bugfixes backport - cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all() - cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock - cgroup/cpuset: Change cpuset_rwsem and hotplug lock order - mm: memcontrol: fix cannot alloc the maximum memcg ID- net/sched: tcindex: search key must be 16 bits - net/sched: tcindex: update imperfect hash filters respecting rcu - rcu: Upgrade rcu_swap_protected() to rcu_replace_pointer() - x86/speculation: Add RSB VM Exit protections - x86/bugs: Warn when "ibrs" mitigation is selected on Enhanced IBRS parts - x86/speculation: Use DECLARE_PER_CPU for x86_spec_ctrl_current - x86/speculation: Disable RRSBA behavior - x86/bugs: Add Cannon lake to RETBleed affected CPU list - x86/cpu/amd: Enumerate BTC_NO - x86/common: Stamp out the stepping madness - x86/speculation: Fill RSB on vmexit for IBRS - KVM: VMX: Fix IBRS handling after vmexit - KVM: VMX: Prevent guest RSB poisoning attacks with eIBRS - x86/speculation: Remove x86_spec_ctrl_mask - x86/speculation: Use cached host SPEC_CTRL value for guest entry/exit - x86/speculation: Fix SPEC_CTRL write on SMT state change - x86/speculation: Fix firmware entry SPEC_CTRL handling - x86/speculation: Fix RSB filling with CONFIG_RETPOLINE=n - x86/speculation: Change FILL_RETURN_BUFFER to work with objtool - intel_idle: Disable IBRS during long idle - x86/bugs: Report Intel retbleed vulnerability - x86/bugs: Split spectre_v2_select_mitigation() and spectre_v2_user_select_mitigation() - x86/speculation: Add spectre_v2=ibrs option to support Kernel IBRS - x86/bugs: Optimize SPEC_CTRL MSR writes - x86/entry: Add kernel IBRS implementation - x86/entry: Remove skip_r11rcx - x86/bugs: Keep a per-CPU IA32_SPEC_CTRL value - x86/bugs: Add AMD retbleed= boot parameter - x86/bugs: Report AMD retbleed vulnerability - x86/cpufeatures: Move RETPOLINE flags to word 11 - x86/cpu: Add a steppings field to struct x86_cpu_id - x86/cpu: Add consistent CPU match macros - x86/devicetable: Move x86 specific macro out of generic code - x86/cpufeature: Fix various quality problems in the header - x86/cpufeature: Add facility to check for min microcode revisions - Revert "x86/cpu: Add a steppings field to struct x86_cpu_id" - Revert "x86/speculation: Add RSB VM Exit protections" - x86/nospec: Fix i386 RSB stuffing - ext4: make sure fs error flag setted before clear journal error - ext4: commit super block if fs record error when journal record without error - hugetlb: fix hugepages_setup when deal with pernode - hugetlb: fix wrong use of nr_online_nodes - tty: fix out-of-bounds access in tty_driver_lookup_tty() - arm64: errata: Remove AES hwcap for COMPAT tasks - kernel: Initialize cpumask before parsing - genirq: Disable interrupts for force threaded handlers - softirq: Don't try waking ksoftirqd before it has been spawned - scsi: hisi_sas: Clear interrupt status when exiting channel int0 for v3 hw - scsi: hisi_sas: Handle NCQ error when IPTT is valid - scsi: hisi_sas: Grab sas_dev lock when traversing the members of sas_dev.list - act_mirred: use the backlog for nested calls to mirred ingress - net/sched: act_mirred: refactor the handle of xmit - net: sched: don't expose action qstats to skb_tc_reinsert() - net: sched: protect against stack overflow in TC act_mirred - net: sched: refactor reinsert action - net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() - wifi: brcmfmac: slab-out-of-bounds read in brcmf_get_assoc_ies() - ext4: fix another off-by-one fsmap error on 1k block filesystems- tipc: add an extra conn_get in tipc_conn_alloc - tipc: set con sock in tipc_conn_alloc - mm/oom_kill.c: fix oom_cpuset_eligible() comment - oom: decouple mems_allowed from oom_unkillable_task - mm, oom: remove redundant task_in_mem_cgroup() check - mm, oom: refactor dump_tasks for memcg OOMs - block: Fix wrong offset in bio_truncate() - fs: move guard_bio_eod() after bio_set_op_attrs - block: add bio_truncate to fix guard_bio_eod - mm/mempolicy.c: fix out of bounds write in mpol_parse_str() - cifs: Fix use-after-free in rdata->read_into_pages() - media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer()- scsi: cancel the inflight async device probe when remove scsi_target - scsi: fix use-after-free problem in scsi_remove_target - HID: asus: use spinlock to safely schedule workers - HID: asus: use spinlock to protect concurrent accesses - HID: asus: Remove check for same LED brightness on set - blk-wbt: don't enable throttling if default elevator is bfq - block: Fix kabi broken by "block: split .sysfs_lock into two locks" - block: fix comment and add lockdep assert - block: don't release queue's sysfs lock during switching elevator - block: fix race between switching elevator and removing queues - block: split .sysfs_lock into two locks - crypto: rsa-pkcs1pad - restore signature length check - fs/proc: task_mmu.c: don't read mapcount for migration entry - migrate: hugetlb: check for hugetlb shared PMD in node migration - mm: hugetlb: proc: check for hugetlb shared PMD in /proc/PID/smaps - ipv6: Fix tcp socket connection with DSCP. - ipv6: Fix datagram socket connection with DSCP. - aio: fix mremap after fork null-deref - bpf: Always return target ifindex in bpf_fib_lookup - serial: 8250_dma: Fix DMA Rx rearm race - serial: 8250_dma: Fix DMA Rx completion race - x86/i8259: Mark legacy PIC interrupts with IRQ_LEVEL - ipv4: prevent potential spectre v1 gadget in ip_metrics_convert() - netlink: annotate data races around sk_state - netlink: annotate data races around dst_portid and dst_group - netlink: annotate data races around nlk->portid - netlink: remove hash::nelems check in netlink_insert - net: fix UaF in netns ops registration error path - netfilter: conntrack: do not renew entry stuck in tcp SYN_SENT state - binder: Gracefully handle BINDER_TYPE_FDA objects with num_fds=0 - binder: Address corner cases in deferred copy and fixup - binder: fix pointer cast warning - binder: defer copies of pre-patched txn data - binder: read pre-translated fds from sender buffer - binder: avoid potential data leakage when copying txn - binder: fix handling of error during copy - binder: use cred instead of task for getsecid - binder: don't detect sender/target during buffer cleanup - binder: make sure fd closes complete - binder: Remove bogus warning on failed same-process transaction - binder: fix incorrect calculation for num_valid - binder: Prevent repeated use of ->mmap() via NULL mapping - binder: Don't modify VMA bounds in ->mmap handler - binder: Set end of SG buffer area properly. - binder: return errors from buffer copy functions - binder: check for overflow when alloc for security context - binder: fix BUG_ON found by selinux-testsuite - binder: fix handling of misaligned binder object - binder: use userspace pointer as base of buffer space - binder: remove user_buffer_offset - binder: remove kernel vm_area for buffer space - binder: avoid kernel vm_area for buffer fixups - binder: add function to copy binder object from buffer - binder: add functions to copy to/from binder buffers - binder: create userspace-to-binder-buffer copy function - binder: fix use-after-free due to ksys_close() during fdget() - binder: fix kerneldoc header for struct binder_buffer - binder: create node flag to request sender's security context - binder: Add BINDER_GET_NODE_INFO_FOR_REF ioctl. - binder: use standard functions to allocate fds - block: fix kabi change since add bd_write_openers and bd_part_write_openers - block: add info when opening an exclusive opened block device for write - block: add info when opening a write opend block device exclusively - Revert "block: add info when opening an exclusive opened block device for write" - Revert "block: add info when opening a write opend block device exclusively" - ext4: fix WARNING in mb_find_extent - sctp: fail if no bound addresses can be used for a given scope- HID: check empty report_list in hid_validate_values() - dhugetlb: use mutex lock in update_reserve_pages() - ntfs: fix out-of-bounds read in ntfs_attr_find() - ntfs: fix use-after-free in ntfs_ucsncmp() - media: rc: Fix use-after-free bugs caused by ene_tx_irqsim() - phy: tegra: xusb: Fix return value of tegra_xusb_find_port_node function - netfilter: nf_tables: fix null deref due to zeroed list head - tcp: Fix listen() regression in 5.15.88. - tap: tap_open(): correctly initialize socket uid - tun: tun_chr_open(): correctly initialize socket uid - net: add sock_init_data_uid() - rds: rds_rm_zerocopy_callback() use list_first_entry()- !423 genirq bugfix for arm64 - genirq: Remove irqd_irq_disabled in __irq_move_irq - !422 iscsi bugfixes backport - scsi: iscsi_tcp: Fix UAF during login when accessing the shost ipaddress - scsi: iscsi_tcp: Fix UAF during logout when accessing the shost ipaddress - !420 backport CVEs and bugfixes - net: mpls: fix stale pointer if allocation fails during device rename - nbd: fix assignment error for first_minor in nbd_dev_add - selinux: further adjust init order for cred_* hooks - selinux: further adjust init order for file_alloc_security hook - !415 mainline bugfix backport - selinux: reorder hooks to make runtime disable less broken - evm: Fix a small race in init_desc() - evm: Check also if *tfm is an error pointer in init_desc() - iommu: Properly export iommu_group_get_for_dev() - of: resolver: Add of_node_put() before return and break - of: unittest: Add of_node_put() before return - drivers/iommu: Allow IOMMU bus ops to be unregistered - drivers/iommu: Export core IOMMU API symbols to permit modular drivers - component: do not dereference opaque pointer in debugfs - ipmi: use %*ph to print small buffer - crypto: algif_skcipher - Use chunksize instead of blocksize - crypto: algif_skcipher - EBUSY on aio should be an error - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - dhugetlb: isolate hwpoison hugepage when release - mm/sharepool: Fix null-pointer-deference in sp_free_area- !213 net: bonding: Inherit MPLS features from slave devices - x86/unwind: Fix check_paravirt() calls orc_find() before declaration - dhugetlb: set hpool to NULL for cont-bit hugepage - arm64/ascend: Delete CONFIG_ASCEND_AUTO_TUNING_HUGEPAGE in hulk_defconfig - arm64/ascend: Delete unused feature auto-tuning hugepage - mm/memcg_memfs_info: fix potential oom_lock recursion deadlock - net: bridge: mcast: add and enforce query interval minimum - net: bridge: mcast: add and enforce startup query interval minimum - !396 anolis: bond: broadcast ARP or ND messages to all slaves - anolis: bond: broadcast ARP or ND messages to all slaves - net: bonding: Inherit MPLS features from slave devices- block, bfq: switch 'bfqg->ref' to use atomic refcount apis - x86/bugs: Flush IBP in ib_prctl_set() - media: vivid: fix compose size exceed boundary - cifs: do not include page data when checking signature - SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails - net: stream: purge sk_error_queue in sk_stream_kill_queues() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - ext4: fix deadlock due to mbcache entry corruption - mbcache: automatically delete entries from cache on freeing - mm/khugepaged: invoke MMU notifiers in shmem/file collapse paths - mm/khugepaged: fix GUP-fast interaction by sending IPI - mm: gup: fix the fast GUP race against THP collapse - prlimit: do_prlimit needs to have a speculation check - arm64: cmpxchg_double*: hazard against entire exchange variable - net/ulp: prevent ULP without clone op from entering the LISTEN status - driver core: Fix bus_type.match() error handling in __driver_attach() - md: fix a crash in mempool_free - bpf: pull before calling skb_postpull_rcsum() - SUNRPC: ensure the matching upcall is in-flight upon downcall - ovl: Use ovl mounter's fsuid and fsgid in ovl_link() - pnode: terminate at peers of source - cifs: Fix uninitialized memory read for smb311 posix symlink create - device_cgroup: Roll back to original exceptions after copy failure - PCI/sysfs: Fix double free in error path - PCI: Fix pci_device_is_present() for VFs by checking PF - ipmi: fix use after free in _ipmi_destroy_user() - ima: Fix a potential NULL pointer access in ima_restore_measurement_list - ipmi: fix long wait in unload when IPMI disconnect - binfmt: Fix error return code in load_elf_fdpic_binary() - chardev: fix error handling in cdev_device_add() - mrp: introduce active flags to prevent UAF when applicant uninit - bpf: make sure skb->len != 0 when redirecting to a tunneling device - ipmi: fix memleak when unload ipmi driver - ACPICA: Fix error code path in acpi_ds_call_control_method() - skbuff: Account for tail adjustment during pull operations - serial: pl011: Do not clear RX FIFO & RX interrupt in unthrottle. - serial: amba-pl011: avoid SBSA UART accessing DMACR register - class: fix possible memory leak in __class_register() - crypto: tcrypt - Fix multibuffer skcipher speed test mem leak - blktrace: Fix output non-blktrace event when blk_classic option enabled - SUNRPC: Fix missing release socket in rpc_sockname() - bonding: uninitialized variable in bond_miimon_inspect() - pinctrl: pinconf-generic: add missing of_node_put() - ima: Fix misuse of dereference of pointer in template_desc_init_fields() - ACPICA: Fix use-after-free in acpi_ut_copy_ipackage_to_ipackage() - md/raid1: stop mdx_raid1 thread when raid1 array run failed - blk-mq: fix possible memleak when register 'hctx' failed - perf: Fix possible memleak in pmu_dev_alloc() - cpuidle: dt: Return the correct numbers of parsed idle states - pstore: Avoid kcore oops by vmap()ing with VM_IOREMAP - pstore/ram: Fix error return code in ramoops_probe() - perf: arm_dsu: Fix hotplug callback leak in dsu_pmu_init() - sched/rt: Optimize checking group RT scheduler constraints - md: protect md_unregister_thread from reentrancy - hugetlbfs: fix off-by-one error in hugetlb_vmdelete_list() - lib/list_debug.c: Detect uninitialized lists - crypto: tcrypt - avoid signed overflow in byte count - mm: sharepool: fix hugepage_rsvd count increase error - config: enbale irq pending config for openeuler - genirq: introduce CONFIG_GENERIC_PENDING_IRQ_FIX_KABI - irqchip/gic-v3-its: introduce CONFIG_GENERIC_PENDING_IRQ - md: fix uaf in md_wakeup_thread - genirq: add printk safe in irq context - jbd2: Fix data missing when reusing bh which is ready to be checkpointed - x86/unwind: Fix orc entry for paravirt {save,restore}_fl - cifs: sanitize multiple delimiters in prepath - drm/i915/gvt: fix double free bug in split_2MB_gtt_entry- ring-buffer: Fix race between reset page and reading page - block: don't allow a disk link holder to itself - ext4: fix use-after-free in ext4_orphan_cleanup - ext4: lost matching-pair of trace in ext4_truncate - ipv6: raw: Deduct extension header length in rawv6_push_pending_frames - mm/swapfile: add cond_resched() in get_swap_pages() - hugetlbfs: don't delete error page from pagecache - mm: hwpoison: refactor refcount check handling - dhugetlb: set DYNAMIC_HUGETLB to y for hulk_defconfig - dhugetlb: use enable_dhugetlb to disable huge_memory - dhugetlb: skip dissolve hugepage belonging to dynamic hugetlb - dhugetlb: only support 1G/2M hugepage and ARM64_4K_PAGES - dhugetlb: isolate dynamic hugetlb code - dhugetlb: backport dynamic hugetlb feature - !344 mm: fix false-positive OVERCOMMIT_GUESS failures - cfq: fix memory leak for cfqq - mm: fix false-positive OVERCOMMIT_GUESS failures- bus: hisi_lpc: Fixup IO ports addresses to avoid use-after-free in host removal - of/fdt: Don't calculate initrd size from DT if start > end - lib/cmdline: avoid page fault in next_arg - genirq: Introduce warn log when irq be reentrant - net: sched: disallow noqueue for qdisc classes - net: sched: atm: dont intepret cls results when asked to drop - block: check 'bd_super' before rescanning partition - net: sched: cbq: dont intepret cls results when asked to drop - swapfile: fix soft lockup in scan_swap_map_slots - Huawei BMA: Fix iBMA driver bug- USB: Fix kABI for usb_device->reset_in_progress - rndis_wlan: Prevent buffer overflow in rndis_query_oid - mm: fix unexpected changes to {failslab|fail_page_alloc}.attr - ima: Directly assign the ima_default_policy pointer to ima_rules - driver core: Don't probe devices after bus_type.match() probe deferral - KEYS: trusted: Fix migratable=1 failing - certs: Fix blacklist flag type confusion - crypto: ecdh - avoid unaligned accesses in ecdh_set_secret() - ipc/sem: Fix dangling sem_array access in semtimedop race - ipv6: avoid use-after-free in ip6_fragment() - nvme initialize core quirks before calling nvme_init_subsystem - memcg: fix possible use-after-free in memcg_write_event_control() - x86/ioremap: Fix page aligned size calculation in __ioremap_caller() - nvme: restrict management ioctls to admin - arm64: errata: Fix KVM Spectre-v2 mitigation selection for Cortex-A57/A72 - arm64: Fix panic() when Spectre-v2 causes Spectre-BHB to re-allocate KVM vectors - packet: do not set TP_STATUS_CSUM_VALID on CHECKSUM_COMPLETE - net: tun: Fix use-after-free in tun_detach() - of: property: decrement node refcount in of_fwnode_get_reference_args() - af_key: Fix send_acquire race with pfkey_register - audit: fix undefined behavior in bit shift for AUDIT_BIT - USB: core: Fix RST error in hub.c - USB: core: Prevent nested device-reset calls - ima: Do not print policy rule with inactive LSM labels - lsm: Resolve KABI changes on lsm_notifier - ima: Evaluate error in init_ima() - ima: ima/lsm policy rule loading logic bug fixes - ima: Handle -ESTALE returned by ima_filter_rule_match() - ima: use the lsm policy update notifier - LSM: switch to blocking policy update notifiers - mm/hwpoison: do not lock page again when me_huge_page() successfully recovers- arm64: Kconfig: default unset ARCH_LLC_128_LINE_SIZE - mm/sharepool: clean up ABI breakage - timekeeping: Avoiding false sharing in field access of tk_core - mm/hwpoison: put page in already hwpoisoned case with MF_COUNT_INCREASED - mm/memory-failure.c: fix race with changing page more robustly - mm,memory_failure: always pin the page in madvise_inject_error - kobject: Fix slab-out-of-bounds in fill_kobj_path() - tracing: Fix infinite loop in tracing_read_pipe on overflowed print_trace_line - i2c: ismt: Fix an out-of-bounds bug in ismt_access() - misc: sgi-gru: fix use-after-free error in gru_set_context_option, gru_fault and gru_handle_user_call_os - mm/sharepool: Charge Buddy hugepage to memcg- dm thin: Use last transaction's pmd->root when commit failed - drm: mali-dp: potential dereference of null pointer - power: supply: wm8350-power: Add missing free in free_charger_irq - sched: Reinit task's vruntime if a task sleep over 200 days - media: dvb-core: Fix UAF due to refcount races at releasing - drm/amdkfd: Check for null pointer after calling kmemdup - !325 Support enabling dirty log gradually in small chunks - KVM: arm64: Support enabling dirty log gradually in small chunks - KVM: x86: enable dirty log gradually in small chunks - KVM: Introduce KVM_CAP_MANUAL_DIRTY_LOG_PROTECT2 - KVM: Fix kvm_clear_dirty_log_protect off-by-(minus-)one - KVM: Fix the bitmap range to copy during clear dirty - kvm_main: fix some comments - KVM: fix KVM_CLEAR_DIRTY_LOG for memory slots of unaligned size - Revert "KVM: Eliminate extra function calls in kvm_get_dirty_log_protect()" - KVM: validate userspace input in kvm_clear_dirty_log_protect() - kvm: introduce manual dirty log reprotect - kvm: rename last argument to kvm_get_dirty_log_protect - kvm: make KVM_CAP_ENABLE_CAP_VM architecture agnostic- Bluetooth: L2CAP: fix use-after-free in l2cap_conn_del() - Bluetooth: L2CAP: Fix build errors in some archs - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put - hv_netvsc: Add check for kvmalloc_array - xen/netback: don't call kfree_skb() with interrupts disabled - xen/netback: fix build warning - xen/netback: Ensure protocol headers don't fall in the non-linear area - !273 [openEuler-1.0-LTS] Fix mouse enumeration issue after wakeup from s4 - arm64: fix a concurrency issue in emulation_proc_handler() - dm thin: Fix ABBA deadlock between shrink_slab and dm_pool_abort_metadata - sched/qos: Don't unthrottle cfs_rq when cfs_rq is throttled by qos - media: mceusb: Use new usb_control_msg_*() routines - media: mceusb: fix control-message timeouts - USB: add usb_control_msg_send() and usb_control_msg_recv() - Fix mouse enumeration issue after wakeup from s4- mm/sharepool: Fix a double free problem caused by init_local_group - bpf, test_run: Fix alignment problem in bpf_prog_test_run_skb() - macvlan: enforce a consistent minimal mtu - net: macvlan: fix memory leaks of macvlan_common_newlink - ipv6: addrlabel: fix infoleak when sending struct ifaddrlblmsg to network - net: gso: fix panic on frag_list with mixed head alloc types - tcp/udp: Make early_demux back namespacified. - ipv6: fix WARNING in ip6_route_net_exit_late() - net, neigh: Fix null-ptr-deref in neigh_table_clear() - tcp: fix indefinite deferral of RTO with SACK reneging - net: fix UAF issue in nfqnl_nf_hook_drop() when ops_init() failed - serial: 8250: Flush DMA Rx on RLSI - serial: 8250: Fall back to non-DMA Rx if IIR_RDI occurs - capabilities: fix potential memleak on error path from vfs_getxattr_alloc() - security: commoncap: fix -Wstringop-overread warning - ring_buffer: Do not deactivate non-existant pages - ftrace: Fix null pointer dereference in ftrace_add_mod() - ftrace: Optimize the allocation for mcount entries - kprobe: reverse kp->flags when arm_kprobe failed - mm: fs: initialize fsdata passed to write_begin/write_end interface - nfs4: Fix kmemleak when allocate slot failed - kernfs: fix use-after-free in __kernfs_remove - mm,hugetlb: take hugetlb_lock before decrementing h->resv_huge_pages - mm: /proc/pid/smaps_rollup: fix no vma's null-deref - signal handling: don't use BUG_ON() for debugging - ida: don't use BUG_ON() for debugging- !272 [openEuler-1.0-LTS] Add MWAIT Cx support for Zhaoxin CPUs. - Bluetooth: L2CAP: Fix u8 overflow - l2tp: Don't sleep and disable BH under writer-side sk_callback_lock - l2tp: Serialize access to sk_user_data with sk_callback_lock - !288 Add support for ConnectX6 Lx and ConnectX6Dx with openEuler inbox driver - net/mlx5: Update the list of the PCI supported devices - net/mlx5: Update the list of the PCI supported devices - drivers: net: slip: fix NPD bug in sl_tx_timeout() - staging: rtl8712: fix use after free bugs - Add MWAIT Cx support for Zhaoxin CPUs.- x86/tsc: use topology_max_packages() in tsc watchdog check - scsi: hisi_sas: Set iptt aborted flag when receiving an abnormal CQ - ext4: fix bug in extents parsing when eh_entries == 0 and eh_depth > 0- svm: Delete unused ioctl command - Revert "posix-cpu-timers: Make timespec to nsec conversion safe" - block: limit request dispatch loop duration - Bluetooth: L2CAP: Fix accepting connection request for invalid SPSM - Bluetooth: L2CAP: Fix attempting to access uninitialized memory - block: check flags of claimed slave bdev to fix uaf for bd_holder_dir- block: fix use after free for bd_holder_dir - Revert "block: Fix UAF in bd_link_disk_holder()" - init/main.c: return 1 from handled __setup() functions - x86/pm: Save the MSR validity status at context setup - x86/speculation: Restore speculation related MSRs during S3 resume - x86/cpu: Load microcode during restore_processor_state() - genirq: Synchronize interrupt thread startup - nvme: Fix IOC_PR_CLEAR and IOC_PR_RELEASE ioctls for nvme devices - once: add DO_ONCE_SLOW() for sleepable contexts - inet: fully convert sk->sk_rx_dst to RCU rules - ext4: continue to expand file system when the target size doesn't reach - nvme: copy firmware_rev on each init - net: If sock is dead don't access sock's sk_wq in sk_stream_wait_memory - can: bcm: check the result of can_send() in bcm_can_tx() - xfrm: Update ipcomp_scratches with NULL when freed - tcp: annotate data-race around tcp_md5sig_pool_populated - tcp: fix tcp_cwnd_validate() to not forget is_cwnd_limited - ext4: fix null-ptr-deref in ext4_write_info - Revert "fs: check FMODE_LSEEK to control internal pipe splicing" - ima: Free the entire rule if it fails to parse - ima: Free the entire rule when deleting a list of rules - ima: Have the LSM free its audit rule - mm/migrate_device.c: flush TLB while holding PTL - mm: prevent page_frag_alloc() from corrupting the memory - mm/page_alloc: fix race condition between build_all_zonelists and page allocation - net: team: Unsync device addresses on ndo_stop - mm/slub: fix to return errno if kmalloc() fails - of: fdt: fix off-by-one error in unflatten_dt_nodes()- net: tun: fix bugs for oversize packet when napi frags enabled - tcp: fix a signed-integer-overflow bug in tcp_add_backlog() - tcp: prohibit TCP_REPAIR_OPTIONS if data was already sent - ext4: fix bad checksum after online resize - blktrace: remove unnessary stop block trace in 'blk_trace_shutdown' - blktrace: fix possible memleak in '__blk_trace_remove' - blktrace: introduce 'blk_trace_{start,stop}' helper - kabi: net: fix kabi broken in sk_buff - io_uring/af_unix: defer registered files gc to io_uring release - nbd: refactor size updates - nbd: move the task_recv check into nbd_size_update - nbd: remove the call to set_blocksize - wifi: Fix potential buffer overflow in 'brcmf_fweh_event_worker' - fs: fix UAF/GPF bug in nilfs_mdt_destroy - dm: Fix UAF in run_timer_softirq() - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() - ext4: record error information when insert extent failed in 'ext4_split_extent_at' - livepatch/core: Fix livepatch/state leak on error path - !130 [openEuler-1.0-LTS] update pmu for Zhaoxin CPUs - update pmu for Zhaoxin CPUs- uacce: add the reference counter protection - nilfs2: fix NULL pointer dereference at nilfs_bmap_lookup_at_level() - usb: mon: make mmapped memory read only - !185 [openEuler-1.0-LTS] Add support sata lpm for Zhaoxin CPUs - ext4: fix bug_on in __es_tree_search caused by bad boot loader inode - ext4: add EXT4_IGET_BAD flag to prevent unexpected bad inode - ext4: add helper to check quota inums - ext4: fix bug_on in __es_tree_search caused by bad quota inode - atm: idt77252: fix use-after-free bugs caused by tst_timer - ext4: ext4_read_bh_lock() should submit IO if the buffer isn't uptodate - !94 [openEuler-1.0-LTS] rtc: Fix set RTC time delay 500ms on some Zhaoxin SOCs - !88 [openEuler-1.0-LTS] XHCI:Fix some device identify fail when enable xHCI runtime suspend - !92 [openEuler-1.0-LTS] x86/tsc: Make cur->adjusted values in package#1 to be the same - !93 [openEuler-1.0-LTS] Driver for Zhaoxin CPU core temperature monitoring - !89 [openEuler-1.0-LTS] EHCI: Clear wakeup signal locked in S0 state when device plug in - scsi: stex: Properly zero out the passthrough command structure - !192 x86/apic/vector: Fix ordering in vector assignment - nilfs2: fix leak of nilfs_root in case of writer thread creation failure - vsock: Fix memory leak in vsock_connect() - x86/apic/vector: Fix ordering in vector assignment - Add support for PxSCT.LPM set based on actual LPM circumstances - Add support for disabling PhyRdy Change Interrupt based on actual LPM capability - Driver for Zhaoxin CPU core temperature monitoring - rtc: Fix set RTC time delay 500ms on some Zhaoxin SOCs - x86/tsc: Make cur->adjusted values in package#1 to be the same - EHCI: Clear wakeup signal locked in S0 state when device plug in - XHCI:Fix some device identify fail when enable xHCI runtime suspend- sch_sfb: Also store skb len before calling child enqueue - sch_sfb: Don't assume the skb is still around after enqueueing to child - ipv6: Fix data races around sk->sk_prot. - ipv6: annotate some data-races around sk->sk_prot - ipv6: provide and use ipv6 specific version for {recv, send}msg - inet: factor out inet_send_prepare() - nilfs2: fix use-after-free bug of struct nilfs_root- nfp: fix use-after-free in area_cache_get() - mISDN: fix use-after-free bugs in l1oip timer handlers - tcp: Fix data races around icsk->icsk_af_ops. - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_reassemble_sdu - !134 scsi: megaraid_sas: Add support for MegaRAID Aero controllers - !138 vfio-pci: Mask cap zero - bnx2x: fix potential memory leak in bnx2x_tpa_stop() - r8152: Rate limit overflow messages - scsi: megaraid_sas: Add support for MegaRAID Aero controllers - vfio-pci: Mask cap zero - tcp/udp: Fix memory leak in ipv6_renew_options(). - net: mvpp2: fix mvpp2 debugfs leak - !159 PCI: Add ACS quirk for Broadcom NICs - !137 net: bonding: Add support for IPV6 ns/na to balance-alb/balance-tlb mode - kcm: avoid potential race in kcm_tx_work - net: bonding: Add support for IPV6 ns/na to balance-alb/balance-tlb mode - !139 nvme: Assign subsys instance from first ctrl - fbdev: smscufx: Fix use-after-free in ufx_ops_open() - nvme: fix controller instance leak - nvme: Assign subsys instance from first ctrl - PCI: Add ACS quirk for Broadcom BCM5750x NICs - PCI: Add ACS quirk for Broadcom BCM57414 NIC- binder: fix UAF of ref->proc caused by race condition - arm64: fix oops in concurrently setting insn_emulation sysctls - mm/hotplug: silence a lockdep splat with printk() - init/Kconfig: Add SMP to the dependencies of QOS_SCHED - mm/rmap: Fix kabi broken in anon_vma - mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse - HID: roccat: Fix use-after-free in roccat_read() - ext4: fix dir corruption when ext4_dx_add_entry() fails - quota: Add more checking after reading from quota file - quota: Replace all block number checking with helper function - quota: Check next/prev free block number after reading from quota file - Revert "quota: Check next/prev free block number after reading from quota file" - Revert "quota: Replace all block number checking with helper function" - Revert "quota: Add more checking after reading from quota file" - tracefs: Only clobber mode/uid/gid on remount if asked - netfilter: ebtables: fix memory leak when blob is malformed - netfilter: ebtables: reject blobs that don't provide all entry points - mm: Fix TLB flush for not-first PFNMAP mappings in unmap_region() - SUNRPC: use _bh spinlocking on ->transport_lock - tcp: fix early ETIMEDOUT after spurious non-SACK RTO - netfilter: br_netfilter: Drop dst references before setting. - debugfs: add debugfs_lookup_and_remove() - tcp: annotate data-race around challenge_timestamp - Revert "mm: kmemleak: take a full lowmem check in kmemleak_*_phys()" - net: neigh: don't call kfree_skb() under spin_lock_irqsave() - neigh: fix possible DoS due to net iface start/stop loop - mm/hugetlb: fix hugetlb not supporting softdirty tracking - asm-generic: sections: refactor memory_intersects - loop: Check for overflow while configuring loop - net: Fix a data-race around sysctl_somaxconn. - net: Fix a data-race around netdev_budget_usecs. - net: Fix a data-race around netdev_budget. - net: Fix a data-race around sysctl_net_busy_read. - net: Fix a data-race around sysctl_net_busy_poll. - net: Fix a data-race around sysctl_tstamp_allow_data. - ratelimit: Fix data-races in ___ratelimit(). - net: Fix data-races around netdev_tstamp_prequeue. - net: Fix data-races around weight_p and dev_weight_[rt]x_bias. - net: ipvtap - add __init/__exit annotations to module init/exit funcs - bonding: 802.3ad: fix no transmission of LACPDUs - xfrm: fix refcount leak in __xfrm_policy_check() - audit: fix potential double free on error path from fsnotify_add_inode_mark - dm: return early from dm_pr_call() if DM device is suspended - NFSv4: Fix races in the legacy idmapper upcall- netfilter: nf_conntrack_irc: Fix forged IP logic - ext4: fix check for block being out of directory size - ext4: check if directory block is within i_size - block: Fix UAF in bd_link_disk_holder() - ALSA: pcm: oss: Fix race at SNDCTL_DSP_SYNC - block: add a new config to control dispatching bios asynchronously - block: fix kabi broken in request_queue - md: enable dispatching bio asynchronously for raid10 by default - arm64/topology: getting preferred sibling's cpumask supported by platform - block: support to dispatch bio asynchronously - block: add new fields in request_queue - md/raid10: convert resync_lock to use seqlock - md/raid10: prevent unnecessary calls to wake_up() in fast path - !122 【kernel-openEuler-1.0-LTS】kernel:fix some issues with 4.19 kernel on openEuler 22.03 system - mm: sharepool: fix potential AA deadlock - mm: sharepool: check size=0 in mg_sp_make_share_k2u() - mm: sharepool: delete redundant check in __sp_remap_get_pfn - Revert "cifs: fix double free race when mount fails in cifs_get_root()" - scsi: hisi_sas: Release resource directly in hisi_sas_abort_task() when NCQ error - scsi: hisi_sas: Enable force phy when SATA disk directly connected - scsi: hisi_sas: Modify v3 HW ATA completion process when SATA disk is in error status - sched: Fix invalid free for tsk->se.dyn_affi_stats - scsi: target: tcmu: Fix warning: 'page' may be used uninitialized - scsi: target: tcmu: Fix crash on ARM during cmd completion - scsi: target: tcmu: Optimize use of flush_dcache_page - scsi: target: tcmu: Fix size in calls to tcmu_flush_dcache_range - signal: fix deadlock caused by calling printk() under sighand->siglock - mm: fix missing handler for __GFP_NOWARN - perf bench futex-wake: Restore thread count default to online CPU count - selftests/bpf: Enlarge select() timeout for test_maps - xfs: preserve default grace interval during quotacheck - i40e: Fix kernel crash during module removal - i40e: Fix use-after-free in i40e_client_subtask() - EDAC: skx_common: downgrade message importance on missing PCI device - x86/entry/64: Don't compile ignore_sysret if 32-bit emulation is enabled - x86: Fix early boot crash on gcc-10, third try - objtool: Don't fail on missing symbol table- KVM: x86/pmu: Update AMD PMC sample period to fix guest NMI-watchdog - KVM: x86: Adjust counter sample period after a wrmsr - KVM: x86: Fix perfctr WRMSR for running counters - perf/core: Provide a kernel-internal interface to recalibrate event period - media: em28xx: initialize refcount before kref_get - mm: avoid potential deadlock tirgged by writing slab-attr-file - ext4: fix use-after-free in ext4_ext_shift_extents - quota: Add more checking after reading from quota file - quota: Replace all block number checking with helper function - quota: Check next/prev free block number after reading from quota file - efi: capsule-loader: Fix use-after-free in efi_capsule_write - ipvlan: Fix out-of-bound bugs caused by unset skb->mac_header - mm/sharepool: Fix UAF reported by KASAN - blk-mq: avoid extending delays of active hctx from blk_mq_delay_run_hw_queues - mm: mem_reliable: Start fallback if no suitable zone found - net: hns3: update hns3 version to 22.9.2 - net: hns3: fix error resume keep alive when remove hclgevf - net: hns3: update hns3 version to 22.9.1 - net: hns3: fix keep alive can not resume problem when system busy- jfs: prevent NULL deref in diFree - jfs: fix GPF in diFree- mm: Force TLB flush for PFNMAP mappings before unlink_file_vma() - video: fbdev: pxa3xx-gcu: Fix integer overflow in pxa3xx_gcu_write- KVM: x86: do not report a vCPU as preempted outside instruction boundaries - KVM: arm64: Write arch.mdcr_el2 changes since last vcpu_load on VHE - netfilter: nf_conntrack_irc: Tighten matching on DCC message - ext4: avoid resizing to a partial cluster size - locking/atomic: Make test_and_*_bit() ordered on failure - geneve: do not use RT_TOS for IPv6 flowlabel - SUNRPC: Reinitialise the backchannel request buffers before reuse - NFSv4/pnfs: Fix a use-after-free bug in open - NFSv4.1: RECLAIM_COMPLETE must handle EACCES - tcp: fix over estimation in sk_forced_mem_schedule() - ext4: fix extent status tree race in writeback error recovery path - ext4: update s_overhead_clusters in the superblock during an on-line resize - ext4: make sure ext4_append() always allocates new block - kprobes: Forbid probing on trampoline and BPF code areas - kfifo: fix kfifo_to_user() return type - profiling: fix shift too large makes kernel panic - serial: 8250_dw: Store LSR into lsr_saved_flags in dw8250_tx_wait_empty() - mm/mmap.c: fix missing call to vm_unacct_memory in mmap_region - mtd: st_spi_fsm: Add a clk_disable_unprepare() in .probe()'s error path - mtd: sm_ftl: Fix deadlock caused by cancel_work_sync in sm_release - can: error: specify the values of data[5..7] of CAN error frames - fs: check FMODE_LSEEK to control internal pipe splicing - tcp: make retransmitted SKB fit into the send window - nohz/full, sched/rt: Fix missed tick-reenabling bug in dequeue_task_rt() - bus: hisi_lpc: fix missing platform_device_put() in hisi_lpc_acpi_probe() - x86/pmem: Fix platform-device leak in error path - selinux: Add boundary check in put_entry() - ACPI: LPSS: Fix missing check in register_device_clock() - fs: Add missing umask strip in vfs_tmpfile - vfs: Check the truncate maximum size in inode_newsize_ok() - tcp: Fix a data-race around sysctl_tcp_comp_sack_nr. - tcp: Fix a data-race around sysctl_tcp_comp_sack_delay_ns. - tcp: Fix a data-race around sysctl_tcp_invalid_ratelimit. - tcp: Fix a data-race around sysctl_tcp_autocorking. - tcp: Fix a data-race around sysctl_tcp_min_rtt_wlen. - tcp: Fix a data-race around sysctl_tcp_min_tso_segs. - igmp: Fix data-races around sysctl_igmp_qrv. - net: ping6: Fix memleak in ipv6_renew_options(). - tcp: Fix a data-race around sysctl_tcp_challenge_ack_limit. - tcp: Fix a data-race around sysctl_tcp_nometrics_save. - tcp: Fix a data-race around sysctl_tcp_frto. - tcp: Fix a data-race around sysctl_tcp_adv_win_scale. - tcp: Fix a data-race around sysctl_tcp_app_win. - tcp: Fix data-races around sysctl_tcp_dsack. - mm/mempolicy: fix uninit-value in mpol_rebind_policy() - tcp: Fix data-races around sysctl_tcp_max_reordering. - tcp: Fix a data-race around sysctl_tcp_rfc1337. - tcp: Fix a data-race around sysctl_tcp_stdurg. - tcp: Fix a data-race around sysctl_tcp_retrans_collapse. - tcp: Fix data-races around sysctl_tcp_slow_start_after_idle. - tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts. - tcp: Fix data-races around sysctl_tcp_recovery. - tcp: Fix a data-race around sysctl_tcp_early_retrans. - tcp: Fix data-races around sysctl_tcp_fastopen. - tcp: Fix a data-race around sysctl_tcp_tw_reuse. - tcp: Fix a data-race around sysctl_tcp_notsent_lowat. - tcp: Fix data-races around some timeout sysctl knobs. - tcp: Fix data-races around sysctl_tcp_reordering. - igmp: Fix a data-race around sysctl_igmp_max_memberships. - igmp: Fix data-races around sysctl_igmp_llm_reports. - tcp: Fix a data-race around sysctl_tcp_probe_interval. - tcp: Fix a data-race around sysctl_tcp_probe_threshold. - tcp: Fix data-races around sysctl_tcp_mtu_probing. - tcp/dccp: Fix a data-race around sysctl_tcp_fwmark_accept. - ip: Fix a data-race around sysctl_fwmark_reflect. - ip: Fix data-races around sysctl_ip_nonlocal_bind. - ip: Fix data-races around sysctl_ip_fwd_use_pmtu. - block: fix the problem of io_ticks becoming smaller - blk-mq: Fix memory leak in blk_mq_init_allocated_queue error handling - block, bfq: save & resume weight on a queue merge/split - ACPICA: Disassembler: create buffer fields in ACPI_PARSE_LOAD_PASS1 - acpi/nfit: improve bounds checking for 'func' - ACPICA: Do not increment operation_region reference counts for field units - ACPICA: Fix exception code class checks - ACPI: configfs: add missing check after configfs_register_default_group() - ACPI: custom_method: fix potential use-after-free issue - ACPI: custom_method: fix a possible memory leak - ACPI: APD: Check for NULL pointer after calling devm_ioremap() - ACPI/IORT: Fix PMCG node single ID mapping handling - ACPI/IORT: Check node revision for PMCG resources - kprobes: don't call disarm_kprobe() for disabled kprobes - x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry - usb: gadget: function: printer: fix use-after-free in __lock_acquire - video: fbdev: i740fb: Error out if 'pixclock' equals zero - lightnvm: disable the subsystem - configfs: fix a race in configfs_lookup() - configfs: fold configfs_attach_attr into configfs_lookup - configfs: make configfs_create() return inode - configfs: factor dirent removal into helpers - configfs: simplify the configfs_dirent_is_ready - configfs: return -ENAMETOOLONG earlier in configfs_lookup- dm-thin: Resume failed in FAIL mode - tpm: fix reference counting for struct tpm_chip - af_key: Do not call xfrm_probe_algs in parallel - net: usb: ax88179_178a: Fix packet receiving - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - net: usb: ax88179_178a: fix packet alignment padding- tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() - tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push() - tty: drop tty_schedule_flip() - tty: the rest, stop using tty_schedule_flip() - tty: drivers/tty/, stop using tty_schedule_flip() - can: bcm/raw/isotp: use per module netdevice notifier - CIFS: Fix retry mid list corruption on reconnects - KVM: arm64: vgic-its: Change default outer cacheability for {PEND, PROP}BASER - xhci: Fix a logic issue when display Zhaoxin XHCI root hub speed - dm verity: set DM_TARGET_IMMUTABLE feature flag - scsi: hisi_sas: Add SATA_DISK_ERR bit handling for v3 hw - Revert "scsi: hisi_sas: Modify v3 HW I/O processing when SATA_DISK_ERR bit is set and NCQ Error occurs" - netfilter: nf_tables: do not allow RULE_ID to refer to another chain - netfilter: nf_tables: do not allow SET_ID to refer to another table- x86/speculation: Add LFENCE to RSB fill sequence - x86/speculation: Add RSB VM Exit protections - Revert "blk-mq: fix null pointer dereference in blk_mq_queue_tag_busy_ite" - blk-mq: fix null pointer dereference in blk_mq_queue_tag_busy_ite - arm64: Avoid premature usercopy failure for __arch_copy_to_user_generic_read - net_sched: cls_route: remove from list when handle is 0- Revert "x86/unwind/orc: Change REG_SP_INDIRECT" - Phytium/S2500: kdump: Avoid vmcore saving failure across multi-socket - PCI: Add config control for phytium ACS quirks - scsi: libiscsi: Teardown iscsi_cls_conn gracefully - scsi: libiscsi: Add iscsi_cls_conn to sysfs after initialization - scsi: iscsi: Add helper functions to manage iscsi_cls_conn - media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - sched: Fix null-ptr-deref in free_fair_sched_group - RDMA/ib_srp: Fix a deadlock - mm/slub: add missing TID updates on slab deactivation - block: fix regression for dm - blk-mq: handle bio after queue is initialized - x86: Clear .brk area at early boot - signal/seccomp: Dump core when there is only one live thread - x86/unwind/orc: Recheck address range after stack info was updated - x86/unwind/orc: Silence warnings caused by missing ORC data - x86/unwind/orc: Change REG_SP_INDIRECT- netfilter: nf_queue: do not allow packet truncation below transport header offset - openvswitch: fix OOB access in reserve_sfa_size() - dm thin: use refcount_t for thin_c reference counting - exec: Force single empty string when argv is empty - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - serial: pl011: UPSTAT_AUTORTS requires .throttle/unthrottle - serial: 8250: fix return error code in serial8250_request_std_resource() - ipv4: Fix data-races around sysctl_ip_dynaddr. - icmp: Fix a data-race around sysctl_icmp_ratemask. - icmp: Fix a data-race around sysctl_icmp_ratelimit. - icmp: Fix data-races around sysctl. - net: Fix data-races around sysctl_mem. - inetpeer: Fix data-races around sysctl. - usbnet: fix memory leak in error case - esp: limit skb_page_frag_refill use to a single page - net: tun: avoid disabling NAPI twice - net: bonding: fix use-after-free after 802.3ad slave unbind - net: bonding: fix possible NULL deref in rlb code - usbnet: fix memory allocation in helpers - net: tun: stop NAPI when detaching queues - net: tun: unlink NAPI from device on destruction - virtio-net: fix race between ndo_open() and virtio_device_ready() - SUNRPC: Fix READ_PLUS crasher - virtio_net: fix xdp_rxq_info bug after suspend/resume - erspan: do not assume transport header is always set - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - ext4: make variable "count" signed - serial: 8250: Store to lsr_save_flags after lsr read - irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - irqchip/gic/realview: Fix refcount leak in realview_gic_of_init - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - ipv6/addrconf: fix a null-ptr-deref bug for ip6_ptr - io_uring: add missing item types for various requests - net/sched: cls_u32: fix possible leak in u32_init_knode() - fq_codel: reject silly quantum parameters - net: sched: sch_teql: fix null-pointer dereference - rcu: Set a maximum limit for back-to-back callback invocation - mm: Fix page counter mismatch in shmem_mfill_atomic_pte - scsi: mpt3sas: Fix unlock imbalance - io-wq: Switch io_wqe_worker's fs before releasing request - ath9k: fix use-after-free in ath9k_hif_usb_rx_cb - Revert "iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping()"- fbcon: Prevent that screen size is smaller than font size - fbcon: Disallow setting font bigger than screen size - fbmem: Check virtual screen sizes in fb_set_var() - xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() - scsi: core: Fix race between handling STS_RESOURCE and completion - block: prevent lockdep false positive warning about 'bd_mutex' - dm verity: allow only one error handling mode - dm verity: Fix compilation warning - dm verity: add root hash pkcs#7 signature verification - jbd2: Fix assertion 'jh->b_frozen_data == NULL' failure when journal aborted - dm btree spine: show warning if node_check failed in node_prep_for_write() - dm btree spine: remove paranoid node_check call in node_prep_for_write() - ext4: Fix race when reusing xattr blocks - ext4: Unindent codeblock in ext4_xattr_block_set() - ext4: Remove EA inode entry from mbcache on inode eviction - mbcache: Add functions to delete entry if unused - mbcache: Don't reclaim used entries - perf/core: Fix data race between perf_event_set_output() and perf_mmap_close()- inotify: show inotify mask flags in proc fdinfo - io_uring: always grab file table for deferred statx - bpf: Don't redirect packets with invalid pkt_len - config: enable CONFIG_QOS_SCHED_DYNAMIC_AFFINITY by default - sched: Add statistics for scheduler dynamic affinity - sched: Adjust cpu range in load balance dynamicly - sched: Adjust wakeup cpu range according CPU util dynamicly - cpuset: Introduce new interface for scheduler dynamic affinity - sched: Introduce dynamic affinity for cfs scheduler - crypto: hisilicon/sec - don't sleep when in softirq - video: fbdev: sm712fb: Fix crash in smtcfb_write() - video: fbdev: sm712fb: Fix crash in smtcfb_read() - scsi: ses: fix slab-out-of-bounds in ses_enclosure_data_process - block: don't delete queue kobject before its children - etmem:fix kernel stack overflow in do_swapcache_reclaim - etmem:fix kasan slab-out-of-bounds in do_swapcache_reclaim - nbd: don't clear 'NBD_CMD_INFLIGHT' flag if request is not completed - blk-throttle: fix io hung due to configuration updates - block: fix NULL pointer dereference in disk_release() - block, bfq: make bfq_has_work() more accurate - blk-mq: fix panic during blk_mq_run_work_fn() - blk-mq: cancel blk-mq dispatch work in both blk_cleanup_queue and disk_release() - blk-mq: move cancel of hctx->run_work to the front of blk_exit_queue - ext4: fix race condition between ext4_ioctl_setflags and ext4_fiemap- block: fix that part scan is disabled in device_add_disk() - Revert "block: rename bd_invalidated" - Revert "block: move the NEED_PART_SCAN flag to struct gendisk" - Revert "block:Fix kabi broken" - rcu/tree: Mark functions as notrace - netfilter: nf_tables: stricter validation of element data - net: rose: fix UAF bugs caused by timer handler - xen/arm: Fix race in RB-tree based P2M accounting - vt: drop old FONT ioctls - dm thin: Fix crash in dm_sm_register_threshold_callback() - xen/blkfront: force data bouncing when backend is untrusted - xen/netfront: force data bouncing when backend is untrusted - xen-netfront: fix potential deadlock in xennet_remove() - xen/netfront: fix leaking data in shared pages - xen/blkfront: fix leaking data in shared pages - xen/blkfront: fix memory allocation flags in blkfront_setup_indirect() - tmpfs: fix the issue that the mount and remount results are inconsistent. - tmpfs: fix undefined-behaviour in shmem_reconfigure() - mm/sharepool: Check sp_is_enabled() before show spa_stat- x86: Fix return value of __setup handlers - x86/delay: Fix the wrong asm constraint in delay_loop() - ACPI: sysfs: Fix BERT error region memory mapping - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd - nbd: fix io hung while disconnecting device - nbd: fix race between nbd_alloc_config() and module removal - nbd: call genl_unregister_family() first in nbd_cleanup() - ip_gre: test csum_start instead of transport header - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - NFSv4: Don't hold the layoutget locks across multiple RPC calls - tcp: tcp_rtx_synack() can be called from process context - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - md: fix an incorrect NULL check in md_reload_sb - md: fix an incorrect NULL check in does_sb_need_changing - ext4: avoid cycles in directory h-tree - ext4: verify dir block before splitting it - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - drivers/base/node.c: fix compaction sysfs file leak - fsnotify: fix wrong lockdep annotations - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - fat: add ratelimit to fat*_ent_bread() - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes - dm stats: add cond_resched when looping over entries - zsmalloc: fix races between asynchronous zspage free and page migration - netfilter: conntrack: re-fetch conntrack after insertion - assoc_array: Fix BUG_ON during garbage collect - net: af_key: check encryption module availability consistency - x86/pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - ARM: 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - ARM: 9196/1: spectre-bhb: enable for Cortex-A15 - block:Fix kabi broken - block: Fix warning in bd_link_disk_holder() - block: move the NEED_PART_SCAN flag to struct gendisk - block: rename bd_invalidated - scsi: hisi_sas: Modify v3 HW I/O processing when SATA_DISK_ERR bit is set and NCQ Error occurs - scsi: hisi_sas: enable use_clustering - scsi: hisi_sas: Change DMA setup lock timeout to 2.5s - x86/speculation/mmio: Print SMT warning - KVM: x86/speculation: Disable Fill buffer clear within guests - x86/speculation/mmio: Reuse SRBDS mitigation for SBDS - x86/speculation/srbds: Update SRBDS mitigation selection - x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data - x86/speculation/mmio: Enable CPU Fill buffer clearing on idle - x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations - x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data - x86/speculation: Add a common function for MD_CLEAR mitigation update - x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug - Documentation: Add documentation for Processor MMIO Stale Data - x86/cpu: Add another Alder Lake CPU to the Intel family - x86/cpu: Add Lakefield, Alder Lake and Rocket Lake models to the to Intel CPU family - x86/cpu: Add Jasper Lake to Intel family - cpu/speculation: Add prototype for cpu_show_srbds() - x86/cpu: Add Elkhart Lake to Intel family - block: open accurate iostat account by default - block: use "precise_iostat" to switch accurate iostat account - block/diskstats: more accurate approximation of io_ticks for slow disks - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages- ext4: correct the misjudgment in ext4_iget_extra_inode - ext4: correct max_inline_xattr_value_size computing - ext4: fix use-after-free in ext4_xattr_set_entry - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h - tracepoint: Add tracepoint_probe_register_may_exist() for BPF tracing - swiotlb: skip swiotlb_bounce when orig_addr is zero - KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - mm/sharepool: Fix using uninitialized sp_flag - mm/sharepool: Add a task_struct parameter for sp_get_local_group() - mm/sharepool: Don't check the DVPP address space range before merging - mm/sharepool: Configure the DVPP range for process - mm/sharepool: Introduce SPG_NON_DVPP flag for sp_group_add_task - mm/sharepool: Update sp_mapping structure - mm/sharepool: Clear the initialization of sp-associated structure for a process - mm/sharepool: Unify the memory allocation process - mm/sharepool: Use vm_private_data to store the spa - mm/sharepool: Share pool statistics adaption - mm/sharepool: Release the sp addr based on the id - mm/sharepool: Add an interface to obtain an id - mm/sharepool: Address space management for sp_group - mm/sharepool: Create global normal and dvpp mapping - mm/sharepool: Delete single-group mode - io_uring: io_close: Set owner as current->files if req->work.files uninitialized- mm/memcontrol: fix wrong vmstats for dying memcg - ext4: recover csum seed of tmp_inode after migrating to extents - xfs: show the proper user quota options - drivers core: node: Use a more typical macro definition style for ACCESS_ATTR - drivers core: Use sysfs_emit for shared_cpu_map_show and shared_cpu_list_show - mm: and drivers core: Convert hugetlb_report_node_meminfo to sysfs_emit - drivers core: Miscellaneous changes for sysfs_emit - drivers core: Remove strcat uses around sysfs_emit and neaten - drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions- arm64: fix out-of-range error when adapting for ARM64_SPECTRE_BHB - xfs: replace -EIO with -EFSCORRUPTED for corrupt metadata - xfs: namecheck directory entry names before listing them - xfs: namecheck attribute names before listing them - xfs: check attribute leaf block structure - xfs: check attribute name validity - xfs: check directory name validity - xfs: scrub should flag dir/attr offsets that aren't mappable with xfs_dablk_t - xfs: abort xattr scrub if fatal signals are pending - tcp: increase source port perturb table to 2^16 - tcp: change source port randomizarion at connect() time - arm64: fix extra cpucaps setup problem - Revert "sched: Fix sched_fork() access an invalid sched_task_group" - Revert "sched: Fix yet more sched_fork() races" - powerpc/32: Fix overread/overwrite of thread_struct via ptrace - sctp: use call_rcu to free endpoint - ext4: convert from atomic_t to refcount_t on ext4_io_end->count - ext4: correct the judgment of BUG in ext4_mb_normalize_request - ext4: fix bug_on ext4_mb_use_inode_pa - HID: holtek: fix mouse probing - HID: check for valid USB device for many HID drivers - HID: wacom: fix problems when device is not a valid USB device - HID: add USB_HID dependancy on some USB HID drivers - HID: add USB_HID dependancy to hid-chicony - HID: add USB_HID dependancy to hid-prodikeys - HID: add hid_is_usb() function to make it simpler for USB detection - netfilter: nf_tables: disallow non-stateful expression in sets earlier - NFSv4: fix open failure with O_ACCMODE flag - Revert "NFSv4: Handle the special Linux file open access mode"- x86: Pin task-stack in __get_wchan() - x86: Fix __get_wchan() for !STACKTRACE - x86/unwind/orc: Fix premature unwind stoppage due to IRET frames - x86/unwind: Prevent false warnings for non-current tasks - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: pcm: Fix races among concurrent prealloc proc writes - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls - ALSA: pcm: Fix races among concurrent read/write and buffer changes - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - NFC: netlink: fix sleep in atomic bug when firmware download timeout - nfc: replace improper check device_is_registered() in netlink related functions - ext4: fix super block checksum incorrect after mount - block: remove the bd_openers checks in blk_drop_partitions - block: fix busy device checking in blk_drop_partitions again - block: fix busy device checking in blk_drop_partitions - ext4: add reserved GDT blocks check- ping: fix address binding wrt vrf - tcp: resalt the secret every 10 seconds - netlink: do not reset transport header in netlink_recvmsg() - ipv4: drop dst in multicast routing path - net: Fix features skip in for_each_netdev_feature() - VFS: Fix memory leak caused by concurrently mounting fs with subtype - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - dm: interlock pending dm_io and dm_wait_for_bios_completion - dm: fix mempool NULL pointer race when completing IO - tcp: make sure treq->af_specific is initialized - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - ip_gre: Make o_seqno start from 0 in native mode - tcp: md5: incorrect tcp_header_len for incoming connections - mtd: rawnand: Fix return value check of wait_for_completion_timeout - mtd: rawnand: fix ecc parameters for mt7622 - hex2bin: fix access beyond string end - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - serial: 8250: Also set sticky MCR bits in console restoration - ext4: force overhead calculation if the s_overhead_cluster makes no sense - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - arm_pmu: Validate single/group leader events - netlink: reset network and mac headers in netlink_dump() - net/packet: fix packet_sock xmit return value checking - mm: page_alloc: fix building error on -Werror=array-compare - etherdevice: Adjust ether_addr* prototypes to silence -Wstringop-overead - smp: Fix offline cpu check in flush_smp_call_function_queue() - ipv6: fix panic when forwarding a pkt with no in6 dev - mm: kmemleak: take a full lowmem check in kmemleak_*_phys() - mm, page_alloc: fix build_zonerefs_node() - cifs: potential buffer overflow in handling symlinks - veth: Ensure eth header is in skb's linear part - mm/sparsemem: fix 'mem_section' will never be NULL gcc 12 warning - mm: don't skip swap entry even if zap_details specified - irqchip/gic-v3: Fix GICR_CTLR.RWP polling - mm/mempolicy: fix mpol_new leak in shared_policy_replace - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - NFS: swap-out must always use STABLE writes. - NFS: swap IO handling is slightly different for O_DIRECT IO - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - NFSv4: Protect the state recovery thread against direct reclaim - macvtap: advertise link netns via netlink - dm ioctl: prevent potential spectre v1 gadget - ipv4: Invalidate neighbour for broadcast address upon address addition - mm/memcontrol: return 1 from cgroup.memory __setup() handler - ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - ext4: don't BUG if someone dirty pages without asking ext4 first - PM: core: keep irq flags in device_pm_check_callbacks() - ACPI/APEI: Limit printable size of BERT table data - ACPICA: Avoid walking the ACPI Namespace if it is not there - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFS: remove unneeded check in decode_devicenotify_args() - serial: 8250: Fix race condition in RTS-after-send handling - serial: 8250_mid: Balance reference count for PCI DMA device - tcp: ensure PMTU updates are processed during fastopen - af_netlink: Fix shift out of bounds in group mask calculation - mtd: rawnand: atmel: fix refcount issue in atmel_nand_controller_init - mtd: onenand: Check for error irq - printk: fix return value of printk.devkmsg __setup handler - perf/core: Fix address filter parser for multiple filters - ACPI: APEI: fix return value of __setup handlers - crypto: authenc - Fix sleep in atomic context in decrypt_tail - PCI: pciehp: Clear cmd_busy bit in polling mode - ACPI: properties: Consistently return -ENOENT if there are no more references - mm,hwpoison: unmap poisoned page before invalidation - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - mempolicy: mbind_range() set_policy() after vma_merge() - mm: invalidate hwpoison page cache page in fault path - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - NFSD: prevent integer overflow on 32 bit systems - SUNRPC: avoid race between mod_timer() and del_timer_sync() - xfrm: fix tunnel model fragmentation behavior - sched/fair: Fix enqueue_task_fair() warning some more - sched/fair: Fix enqueue_task_fair warning - floppy: disable FDRAWCMD by default - perf: Fix sys_perf_event_open() race against self - KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID- net: hns3: update hns3 version to 22.5.1 - net: hns3: fix vf link setting failed when no vf driver loaded - arm64: Add memmap reserve range check to avoid conflict - ext4: fix bug_on in ext4_writepages - ext4: fix warning in ext4_handle_inode_extension - ext4: fix use-after-free in ext4_rename_dir_prepare - uce: coredump scenario support kernel recovery - NULL pointer dereference on rmmod iptable_mangle.- sched/qos: Add qos_tg_{throttle,unthrottle}_{up,down} - sched: Throttle offline task at tracehook_notify_resume() - sched: enable CONFIG_QOS_SCHED on arm64 - sched/qos: Remove dependency CONFIG_x86 - net/sched: cls_u32: fix netns refcount changes in u32_change() - mm: hwpoison: enable memory error handling on 1GB hugepage optionaly - mm: fix gup_pud_range - nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs - ext4: fix warning when submitting superblock in ext4_commit_super() - ext4: fix bug_on in __es_tree_search - secure_seq: use the 64 bits of the siphash for port offset calculation - floppy: use a statically allocated error counter - mmc: block: fix read single on recovery logic - SUNRPC: Ensure that the gssproxy client can start in a connected state - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - ax25: Fix UAF bugs in ax25 timers - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - drm/vgem: Close use-after-free race in vgem_gem_create - mm/memory.c: update the first page in clear_gigantic_page_chunk- scsi: hisi_sas: Change hisi_sas_control_phy() phyup timeout - scsi: hisi_sas: Fix SAS disk sense info print incorrectly sometimes - scsi: hisi_sas: Don't fail IT nexus reset for Open Reject timeout - mm/share_pool: Support read-only memory allocation - mm: clear_freelist_page: Provide timeout mechanism for worker runtime - io_uring: fix race between timeout flush and removal - ax25: fix UAF bug in ax25_send_control() - ax25: Fix refcount leaks caused by ax25_cb_del() - ax25: fix UAF bugs of net_device caused by rebinding operation - ax25: fix reference count leaks of ax25_dev - ax25: add refcount in ax25_dev to avoid UAF bugs - ext4: fix bug_on in start_this_handle during umount filesystem - ext4: unregister sysfs path before destroying jbd2 journal - ext4: fix use-after-free in ext4_search_dir - mm: Update reliable flag in memory allocaion for reliable task only in task context - mm: refactor the reclaim thread of page cache from per-cpu to per-node- ixgbevf: add disable link state - ixgbe: add improvement for MDD response functionality - ixgbe: add the ability for the PF to disable VF link state - io_uring: fix false WARN_ONCE - mm/sharepool: Fix sharepool node id invalid when using sp_alloc - sharepool: fix hisi oom deadlock - share_pool: Fix ABBA deadlock - net: ipv6: fix skb_over_panic in __ip6_append_data - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - mm: fix dereference a null pointer in migrate[_huge]_page_move_mapping() - cpuset: Fix unsafe lock order between cpuset lock and cpuslock - tcp: make tcp_read_sock() more robust - xfrm: Fix xfrm migrate issues when address family changes - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" - ext4: add check to prevent attempting to resize an fs with sparse_super2 - net-sysfs: add check for netdevice being present to speed_show - memfd: fix F_SEAL_WRITE after shmem huge page allocated - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: don't assume sk is full socket - xfrm: enforce validity of offload input flags - xfrm: fix the if_id check in changelink - netfilter: fix use-after-free in __nf_register_net_hook() - xfrm: fix MTU regression - cifs: fix double free race when mount fails in cifs_get_root() - mtd: rawnand: brcmnand: Fixed incorrect sub-page ECC status - x86/asm: Move native_write_cr0/4() out of line - x86/asm: Pin sensitive CR0 bits - x86/asm: Pin sensitive CR4 bits - mm: Add more debug info if oom occurs - mm: Fix reliable task used problem shown in meminfo - mm: Show correct reliable pagecache size- hamradio: improve the incomplete fix to avoid NPD - hamradio: defer ax25 kfree after unregister_netdev - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path - llc: only change llc->dev when bind() succeeds - netdevice: add the case if dev is NULL - llc: fix netdevice reference leaks in llc_ui_bind() - ARM: fix Thumb2 regression with Spectre BHB - ARM: Spectre-BHB: provide empty stub for non-config - ARM: fix build warning in proc-v7-bugs.c - ARM: Do not use NOCROSSREFS directive with ld.lld - ARM: fix co-processor register typo - ARM: fix build error when BPF_SYSCALL is disabled - ARM: include unprivileged BPF status in Spectre V2 reporting - ARM: Spectre-BHB workaround - ARM: use LOADADDR() to get load address of sections - ARM: early traps initialisation - ARM: report Spectre v2 status through sysfs - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path- Revert "perf: Paper over the hw.target problems" - ax25: Fix NULL pointer dereferences in ax25 timers - ax25: fix NPD bug in ax25_disconnect - ax25: Fix NULL pointer dereference in ax25_kill_by_device - ax25: improve the incomplete fix to avoid UAF and NPD bugs - ax25: NPD bug when detaching AX25 device - objtool: Fix stack offset tracking for indirect CFAs - x86/entry/64: Fix unwind hints in kernel exit path - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - arm64: Use the clearbhb instruction in mitigations - arm64: add ID_AA64ISAR2_EL1 sys register - KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - arm64: Mitigate spectre style branch history side channels - KVM: arm64: Add templates for BHB mitigation sequences - arm64: proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - arm64: Add percpu vectors for EL1 - arm64: entry: Add macro for reading symbol addresses from the trampoline - arm64: entry: Add vectors that have the bhb mitigation sequences - arm64: entry: Add non-kpti __bp_harden_el1_vectors for mitigations - arm64: entry: Allow the trampoline text to occupy multiple pages - arm64: entry: Make the kpti trampoline's kpti sequence optional - arm64: entry: Move trampoline macros out of ifdef'd section - arm64: entry: Don't assume tramp_vectors is the start of the vectors - arm64: entry: Allow tramp_alias to access symbols after the 4K boundary - arm64: entry: Move the trampoline data page before the text page - arm64: entry: Free up another register on kpti's tramp_exit path - arm64: entry: Make the trampoline cleanup optional - arm64: entry.S: Add ventry overflow sanity checks - x86/speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT - x86/speculation: Warn about Spectre v2 LFENCE mitigation - x86/speculation: Update link to AMD speculation whitepaper - x86/speculation: Use generic retpoline by default on AMD - x86/speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - Documentation/hw-vuln: Update spectre doc - x86/speculation: Add eIBRS + Retpoline options - x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - x86,bugs: Unconditionally allow spectre_v2=retpoline,amd - x86/speculation: Merge one test in spectre_v2_user_select_mitigation() - mm/memory.c: fix clear_gigantic_page_chunk- ext4: fix fs corruption when tring to remove a non-empty directory with IO error - Revert "ext4: fix file system corrupted when rmdir non empty directory with IO error" - sched: Fix yet more sched_fork() races - sched/fair: Fix wrong cpu selecting from isolated domain - netfilter: nf_tables: initialize registers in nft_do_chain() - nbd: fix possible overflow on 'first_minor' in nbd_dev_add() - net: sched: adapt Qdisc kabi - net_sched: fix a crash in tc_new_tfilter() - net: sched: use Qdisc rcu API instead of relying on rtnl lock - net: sched: add helper function to take reference to Qdisc - net: sched: extend Qdisc with rcu - net: core: netlink: add helper refcount dec and lock function - xen/netfront: react properly to failing gnttab_end_foreign_access_ref() - xen/gnttab: fix gnttab_end_foreign_access() without page specified - xen/pvcalls: use alloc/free_pages_exact() - xen/9p: use alloc/free_pages_exact() - xen: remove gnttab_query_foreign_access() - xen/gntalloc: don't use gnttab_query_foreign_access() - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status - xen/netfront: don't use gnttab_query_foreign_access() for mapped status - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status - xen/grant-table: add gnttab_try_end_foreign_access() - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - xen/xenbus: Fix granting of vmalloc'd memory - binder: fix test regression due to sender_euid change - binder: use cred instead of task for selinux checks - binder: use euid from cred instead of using task - svm: Change svm to modules - svm: Delete unused svm_get_unmapped_area ops - ascend: mm: Add MAP_ALIGN flag to map aligned va - svm: Delete unused function sysrq_sched_debug_show_export - svm: Delete get meminfo interface in svm ioctl - svm: Export symbols for svm module - can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - mm: Add space after ReliableFileCache - mm: Drop reliable_reserve_size - mm: page_counter: mitigate consequences of a page_counter underflow - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() - hamradio: remove needs_free_netdev to avoid UAF - hamradio: defer 6pack kfree after unregister_netdev - ovl: fix uninitialized pointer read in ovl_lookup_real_one() - ovl: fix IOCB_DIRECT if underlying fs doesn't support direct IO - ovl: fix lseek overflow on 32bit - ovl: sync dirty data when remounting to ro mode- Revert "module, async: async_synchronize_full() on module init iff async is used" - tty: n_gsm: fix encoding of control signal octet bit DV - fget: clarify and improve __fget_files() implementation - memblock: use kfree() to release kmalloced memblock regions - tty: n_gsm: fix proper link termination after failed open - gso: do not skip outer ip header in case of ipip and net_failover - net: __pskb_pull_tail() & pskb_carve_frag_list() drop_monitor friends - cgroup/cpuset: Fix a race between cpuset_attach() and cpu hotplug - tracing: Fix tp_printk option related with tp_printk_stop_on_boot - dmaengine: sh: rcar-dmac: Check for error num after setting mask - net: sched: limit TC_ACT_REPEAT loops - mtd: rawnand: qcom: Fix clock sequencing in qcom_nandc_probe() - NFS: Do not report writeback errors in nfs_getattr() - NFS: LOOKUP_DIRECTORY is also ok with symlinks - bonding: fix data-races around agg_select_timer - drop_monitor: fix data-race in dropmon_net_event / trace_napi_poll_hit - ping: fix the dif and sdif check in ping_lookup - taskstats: Cleanup the use of task->exit_code - xfrm: Don't accidentally set RTO_ONLINK in decode_session4() - nvme: fix a possible use-after-free in controller reset during load - quota: make dquot_quota_sync return errors from ->sync_fs - vfs: make freeze_super abort when sync_filesystem returns error - serial: parisc: GSC: fix build when IOSAPIC is not set - perf: Fix list corruption in perf_cgroup_switch() - seccomp: Invalidate seccomp mode to catch death failures - n_tty: wake up poll(POLLRDNORM) on receiving data - veth: fix races around rq->rx_notify_masked - net: fix a memleak when uncloning an skb dst and its metadata - net: do not keep the dst cache when uncloning an skb dst and its metadata - ipmr,ip6mr: acquire RTNL before calling ip[6]mr_free_table() on failure path - bonding: pair enable_port with slave_arr_updates - bpf: Add kconfig knob for disabling unpriv bpf by default - scsi: target: iscsi: Make sure the np under each tpg is unique - NFSv4 expose nfs_parse_server_name function - NFSv4 remove zero number of fs_locations entries error check - NFSv4.1: Fix uninitialised variable in devicenotify - nfs: nfs4clinet: check the return value of kstrdup() - NFSv4 only print the label when its queried - NFS: Fix initialisation of nfs_client cl_flags field - ima: Allow template selection with ima_template[_fmt]= after ima_hash= - ima: Remove ima_policy file before directory - integrity: check the return value of audit_log_start() - ext4: fix error handling in ext4_restore_inline_data() - iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() - iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() - block: bio-integrity: Advance seed correctly for larger interval sizes - af_packet: fix data-race in packet_setsockopt / packet_setsockopt - rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() - ipv4: tcp: send zero IPID in SYNACK messages - ipv4: raw: lock the socket in raw_bind() - phylib: fix potential use-after-free - NFS: Ensure the server has an up to date ctime before renaming - NFS: Ensure the server has an up to date ctime before hardlinking - ipv6: annotate accesses to fn->fn_sernum - ipv4: avoid using shared IP generator for connected sockets - ping: fix the sk_bound_dev_if match in ping_lookup - ipv6_tunnel: Rate limit warning messages - tty: n_gsm: fix SW flow control encoding/handling - serial: stm32: fix software flow control transfer - serial: 8250: of: Fix mapped region size when using reg-offset property - netfilter: nft_payload: do not update layer 4 checksum when mangling fragments - PM: wakeup: simplify the output logic of pm_show_wakelocks() - tty: fix crash in release_tty if tty->port is not set - tty: don't crash in tty_init_dev when missing tty_port - printk: Convert a use of sprintf to snprintf in console_unlock- serial: 8250: Fix max baud limit in generic 8250 port - sched/fair: Add qos_throttle_list node in struct cfs_rq - Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" - Revert "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" - USB: gadget: validate endpoint index for xilinx udc - sr9700: sanity check for packet length - ima: Fix return value of ima_write_policy() - ima: Don't modify file descriptor mode on the fly - ima: Set file->f_mode instead of file->f_flags in ima_calc_file_hash() - ima: Remove __init annotation from ima_pcrread() - ima: Call ima_calc_boot_aggregate() in ima_eventdigest_init() - evm: Check size of security.evm before using it - ima: Don't ignore errors from crypto_shash_update() - mm: Fallback to non-mirrored region below low watermark - mm: Disable watermark check if reliable fallback is disabled - mm: Do limit checking after memory allocation for memory reliable- livepatch/arm64: Fix incorrect endian conversion when long jump - arm64/mpam: realign step entry when traversing rmid_transform - dt-bindings: mpam: refactor device tree node structure - arm64/mpam: refactor device tree structure to support multiple devices - arm64/mpam: fix __mpam_device_create() section mismatch error - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - hugetlb: Add huge page alloced limit - swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - swiotlb: fix info leak with DMA_FROM_DEVICE - esp: Fix possible buffer overflow in ESP transformation - sock: remove one redundant SKB_FRAG_PAGE_ORDER macro - io_uring: fix UAF in get_files_struct() - xfs: fix an undefined behaviour in _da3_path_shift - xfs: Fix possible null-pointer dereferences in xchk_da_btree_block_check_sibling() - xfs: fix use after free in buf log item unlock assert - ACPI/IORT: Do not blindly trust DMA masks from firmwareobs-worker-backend-test-x86-0004.novalocal 1711557720 4.19.90-2403.4.0.0244.oe14.19.90-2403.4.0.0244.oe1debugusrbincentrino-decode-4.19.90-2403.4.0.0244.oe1.x86_64.debugcpupower-4.19.90-2403.4.0.0244.oe1.x86_64.debuggpio-event-mon-4.19.90-2403.4.0.0244.oe1.x86_64.debuggpio-hammer-4.19.90-2403.4.0.0244.oe1.x86_64.debugiio_event_monitor-4.19.90-2403.4.0.0244.oe1.x86_64.debugiio_generic_buffer-4.19.90-2403.4.0.0244.oe1.x86_64.debuglsgpio-4.19.90-2403.4.0.0244.oe1.x86_64.debuglsiio-4.19.90-2403.4.0.0244.oe1.x86_64.debugpowernow-k8-decode-4.19.90-2403.4.0.0244.oe1.x86_64.debugtmon-4.19.90-2403.4.0.0244.oe1.x86_64.debuglib64libcpupower.so.0.0.1-4.19.90-2403.4.0.0244.oe1.x86_64.debug/usr/lib//usr/lib/debug//usr/lib/debug/usr//usr/lib/debug/usr/bin//usr/lib/debug/usr/lib64/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/openEuler/openEuler-hardened-cc1 -m64 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection obs://private/openEuler:20.03:LTS:SP1/standard_x86_64/246c30821dd46144791ef195a0a959b0-kernelcpioxz2x86_64-openEuler-linux-gnu directoryELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=efd1d240b6c8efdc7005219dc06cc0c145c6f357, for GNU/Linux 3.2.0, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=6a0f285c6b40f45c0f20d73e3358d12c75cb8b3d, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=b60efee5454ef1faa4e15b85535060c3c61d0385, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=f43771d1e501d2067660ad17b64217a20a6e566f, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=25bd0827333a016af73920f5f86d4e66c71be38b, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=c7204f84d2711ccdbc7960ff3acaa845a558d929, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=043b9581b7e12ec79e6d5934f062ca3253254736, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=233613605343e1c78738449382e0a54f7c94a043, for GNU/Linux 3.2.0, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=2c06280e4c34a97fca0e14c09512c106d07686a8, for GNU/Linux 3.2.0, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter \004, BuildID[sha1]=fadb957469c8e8cd8260bd2f6e32aed98c64179e, for GNU/Linux 3.2.0, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=7e9276648e8e3a020a3c099b26aa33842e36e2e7, with debug_info, not strippedWP*j %0 utf-8a8a7833438243e1136b631f352a3e929bad99199af19c147c0314d734ccfbd1a?@7zXZ !#,C] b2u jӫ`(y0DnVۂ@!:ζ&$d *o5e5iG8fJex Hp:U$BkA^tHwۥF24)|+Z=*wrEݚ|]Q١ 9-"(ؒO;-3Dhi>1 CB̿и%+^DE^R,akd n9۪:2iȲw]mE6hf0)\w=P _ .yUظ 1^N :5Y\j01JLM_3w׺w4%X! Ds"`ᠹRaP0ɸYB S h.́8pFض$!(aN=cdn'iHcgM[5?3+pȪ(t!ݷɋ {M}v'J`t+PggSI>ILx݇lC#႕84?H#"\Rxn7gQL%zuӐO)6&U%_Kat|gËͷlxFAE3A"Oi?c~6]k5ޤVr}_xYBpIXšQzQW- $wPvR߭[.^c)3|$=I-䂬M0nAyH)\jߑmCEhcS߆UPbwسtf"[JГ4BC7BnS jc:::#": 5Ƚ~ez&oj_<TL_]pxqh[`"UnKN OD,bWIGN^QTz(KNJ(X%tѸ]41ÃwFp~h$=}C+ !WcCn` 54:T\ƀԺp>s}68^b b_R[p9`0W쩐ik:HlzC)UHJN'ixJό܃t:TI#%ͦPvwB,)Zz'N}04 {hiJn*w֨6Y;과"/Lv#'v8fO}#bu (\o'{He*+r?o$wS9b*SG`$ob.Q.iiܦq]aтLl߮A-ɡ)[oK2g@Y B$-y8.]7߬|57S~r@E" 6R8@ؕU/Ϫj_1 U|m/Uw15/xy`uE|!vV=]MC\&ZuOl CRm8s vĦ8qr2Zde$c T:Lygȍ"@T**OTa4]=io/Tp Pp]*ji@ZZY֫Kj*#)q8t;KFIYm4|$(%E?Qf|z mfOr:?2|`D?~xR%3j4 bmhhS!]$=@4(qC~qj\ lV$W+`=G@$ qzh W] ^dyy&-YEݒ.6=UʡX; 3ggQQh: #bv$d&u݉2T=|oQܞ*\k_] u܂x #ꐠl+jB΄+̫![1.@XTzZ~+q$ö6aܸVc'UPA9@ݚT K Joo Zz7RU NB&/DрIvs@% e2ȡJy;J(~DNb9wY[f"u`zi.xn$\ۛt3kR_?@{'.u!kyt-}F;3P@ͺJhk(.+g2uZZ+ 52w'z+䄧@3=,?/U(/jO(ݠzBx26;Jtc"KቋszB#)JݠVD\.eV\%~XO%۷wˮzn>KRDs|;{^e{{b]u n'ƈ# *yDgǫg#ț `0TSeuMl{OơjpEVȳdMR#\?|fy Pq_.W-by_fu7hյ3h~^!GP%* 5$DɊZk}CdJ7 Lexu U:z2GksH/\zFќ~Xu벌2o&kfY;C0)A&Tb{O)<2.]ӱru\M%~~H> _YpeZF:JbڱYz:U -DҺq ^Q&[z{ok=H(qp p}w8(˜W5x?6{9.7 ](=;Fbo/pKW%p͜G$[{J}⭥٩{R4v#IȼzNUYb'ᘾw֋ 3`TvXBڮ{(&π$rSK7I3#6&;+cHjx9Ď/-=Gv=Ã横':ŪDQt7 Rs8~n~|Q53sdN.9se:i O!t=x Y)gY~ 5B!m LY8m4 C4ʨhXȦt[Fe1ADނ>*+OYJ|D/82/Q&7/ޯo#B: e;:L:tzy 9'}z 0h3[Tߢ;L6IDhŸN&=-P5^9XIP,moM,h#_JN@'\ODQ,*O:7RRF8uwj ޣ^1<~34zsԜaiJ?g㬶%LWccg:"+uNm??nNyMs`-bB!2avd܌[ϯzig8-Ne>xb;bry2xZx>-ƒ"mN#'{b_%U:u;17o8>ۡI7wh pX{/ "f x.573fCXnOn{!_%M!+zW"n29GL%m+=ž:xT0QrG5Ap=wi\.д߶zg U:j ('jr|"bu)V深0j D+gI7*z] 'cm?u)obVE*J7TX^C</\xR̙"V#Q#LuiA7包61OW ;Mԡ<7iID3{wGHmVгvٍͭE($qɮ;w;"}ayʵ Ӏǻo_ FY6w粕Yº["<<7Ah6H*l1.W2`MèS!*qԍמXyz^>68错[HJt^#߹z uW?)]H]DF =Rx9=hgMA^S_UO ;ͲPWY-lM޴jX?hQk|8oI-˴VyCX Hfh 4 %OZ^99*C@-b%sEMv)R ;/eoYV 5$TF͝۞dkuE-Fv9Ιv,;%><:m!E\5ݲs㨥NW""_Zc;16!AHf+-ޥ;JƱfXS>/D.h .bgf; {;Xh.|u*OS.Aa:;CȩcrEvL9ǴiCKJeE`8lCj@J2\NQȏ%6u-=ʺ"o6[϶yu倞1n"n0P7t35+>ikDQ)j+@*` 7?6e) PςƺPݶIݳ#f~4$80l΁9%g/€j']]}o.n)(ΉI% OBYsܝB]xr͎bjt;0!<̚'ɗiɨ=@m'c }v[TdVyJ%+!Ii'^64Lbq\@3|ۄ;p{!3(׷r\CcrZy6T&'&6\-v9C(0[HqeݑB,O])lJڈ #L6S_1zg[%RI̋g aV(;"rcm8 LFVޯ ;{at lHX3O^=RN8Ic@F;e8P!1,/'ЧoR'z&Sz,#h0`(CsAfA$4 /AM@y5~O{P/Wclb1}&*"DdC )jIIYJE1Sad+8vbI-DZ,K+M8ŀsTi1b9R,D3N_-N^$iv|>x#:?sv (Rq.[0>|vC8:ueeMVz?a,L W/ 扦/4uw+0e(V$h}kɓm!tc\v^..Q߯R+7qGWڟA>% [xV>@Km?9:~J> +# 1_690±i-v_ZIF"ۢՁ(r8\96*ݻlaKWtZz0m1Q@[$>tHFԮR=m[dF&7hpg>f+YәУ:x{R(p[1+ azgNK>^%E\Ĭ,SU(79ɪⲷ ծGǾ[gl(Gqَ?y㣧̹]Nb]q&"|%E"}kxYD _5;qys/"KS ZUʠ9mBC2A9n-+‘#4c>ZczAeT]N>nMd<9ψ8 pJI:VuWqFˡ'@}>Ϛk|qª!;ؚa*9e9ugzHY ϐ<_>xN L ΟJ~3e!ud b*4G꯸XVfԮ_,0iay^pu'4HdF9e~L!;qͧ^꣭s4 b!4K.HMxۅ  -z`dB11mh#?3>*D0E/ڥSt)i g/D]Qmdu wKN[taNg庹3h7_čN|W(q~ qWh MK)^"%WBqS7\H-/bMN}NG9 翘{$y){Scbck;/rgR c_j0#+x00wJ߉H&҉Πt^m[x0z?,%I6G9ʉB5̓cssj&4Va˼c-DFt*yֈ޵ަ9#c>ԃZh (3 i*)pKA;~dSw;{fjChz{5UqPos":pGȰ{#ڌk誟dEwh@e>kDU֕%6?^wPV3O֖\f1)vKb.u RC g'Y$^9WEQx)*; 鼑sɩ2 \-v\1b{w۷ StL G34mlHGR4G)>Ejسo.XR#0o'ݲQ@%T BCŪlߑn鑥t`>}ìS}d?w1,26`%T.K-k@RWk: a6ZX0FfLK4i95JHQ $l$79K.M^RiEHDC[B=f\B5#Zuŕ=~or{ɬqCFIU݁;"Jk a ewyWS}z*}Bg@i6e19$ !R ډTA-;ok} >:"^ $7d6]+1I @0.Yr>rnXGš9YY}L!p٨@wb $QAqx2Rdr"2-1KG8Z0D =$O-!ftZMaz@qX@|i`{ U@aVn*|-OrY$ޙ!pox51B"$8B%wTF a d+'~mx^b'e`A4I)ܑ1jQ5ϗjINR5xԯ3Tgf`V#mq󕀾:NDIV;Ƃ'i^K/=w>E`21y|57FHPug/E.L/L#We7(* ̃r.I,9D,q&a.GD` ui/%G1&YT+ =G- )rOcL'ġϐi肘w Ez pX]kyl y?|2⇨ FzK* t%ߛUGVK#y-Jtf7'9 H%DRaWA):⡲J0H/:New^suydzfJh)2͟.Ir̜@W\K_U vϜDKZgHwp#yOBNwpG})j>N>p,R[^~CGW"ՙF5ShWOԓ;h?L9 >->k,UUr{W9+%=FUstwgiD. Z19Ghw.R ~މbGzb~` "]Ɏە'T<*՞4J*wzsceᲲY_"x E'\oh'RYF郦L@dL>&&6V!b5#P^ľAw"U],t`+>ƖYga-ؠ]ǴU)404 O`ܜ& Yؑx5f[. #XOYyaL={*/4~Y)آҨ*b?>,Jgse uE Xc ]zք\fƑ:K{K4`[c+EB\\{ۺT:;Қ}U&6nJ-LCvPy?+1Ԇ;;[i WmArv=$BУOOdշ' wO*9!nes"r(5eR9L>5XDӧd6ݷ1)ǚY_8t@/F?| }y2 C^BLVHC^l߼i ׿rZh (ޅT͠|Е')uDArBꤵ׭}ʬ'첸߸ΎVn7T`sx5l}:\ZCqe_hN5Fid۵fu3]}׽뜆cquwW !gOeKrgspNSYm _~3(֭AFrSsK!ǮarZP}zسnX6|\ҝ;0qk7iUQ5=scBSeg2e C}Ws@vGH?uϭRV?Ki[H6ٍh'c7*!1琺8347c\ӷY'bBx'( ]8O{jDݏ<Ob`:(Q݅JbS-gI:)Iׅ̋?<lsihJ|h_փz ͽ=tiCjDJ[ɪ=sH/7ԔQƥʱ2z`lelv{:xߜYڱm`+2]Z9B`lZOL>VzՋ/ D0ԍ4ȭ7g\sX"ːC4>pewBA_m_S׉1'Q4i;+/ftlUՋU1-M]\f+BT4=QD-7wB}sSr`b2Y=l|pk ADgdKNmX>fYg*{PY_N 󬜯!YpFf* +Y)F-c}U) ;Wx!p<{! =ncfbuT_;>?/czAHh dp y(:LlPwc3s .XhFggPlیHl+b'[7wM zP3)̲&@Jqj uyK7&KJBV,dℵmWCC泵,+=sQG$oF+/\Ŵza7mNg[ aLǴ:lRFWSRȥG,y"9Kl.Zn*-i73!UH+3}@;>IND wxd] X ,($-q b1UX hBM5"t]0b-MWZ5xH/V%RC ."i8 Dʎ">[-#ڦnӬضo;)&0 V8.ƫZ(v7O\q>CU-pvtQAsTI e݋I Fybl]C ىҽņ06?}8.6/6*z[*3&  1]| I-G$_ztWG X*R@Ev=˪2w1x9v׻Craʜԃrn1oII&M[Ir -vbpߑ7 J.0=dgKNmx a=޶zn@()cylnOͱ<=.w[].[aZD/{ x1ڑ2-Lcy|TOx^>0x<]~D(4Y6|w@hXavt"ȟW>]b.aRcjRr"v .\׵ >Jf XmSz\~\%@i75k@<*8K➎bipt|o + =e#ѹ^>=|rq`eGG{QX. Y>Ah'[~H R(5rﲅn+pgwiָwUyi)˩l88Nk5̳?"gKC{TvױPL*oRP#]E80_j&ɗ'Agޜ_ fq=#`4eWupՁrw*e?FigV$!HgC02,m$Ӟ"6@Xk:w;{zL5'i;+OAw‹  ԕ@zќ'IfѩFc P~4MU]ؖ+t#2m-7+OP/jj91J]Fs <YJTN7 0ٳF0A0lbٸeAþPdkRȱm2־K;&>_I5?ɋS#DA].{I%· W~ā4 N ^xaVpIz2bip&C$D:BW9-JSnLϛlUB t9F0]fyT:?7Qx!'0k1Ȥ"7ӄCDP sschYaAQvpP 8#4Z dz V9#sр;dX HInQnJ|UN@`W 3[, R{w5KJkn!el7Ě X@uh=]=f=[tٯu&l3E ȭ&S΄+gcy'b`4}jUCh811C 5&4ۖ '< Ą 6*| -p(d<̝!U?N1(gd_Mꂗ.jbPKd?(9zpq=j'//Sm O T/Mİg [UP|}  1n%uUȋOT%JBxkOh~L^iE=@WkL c'+{N Hp19HQg >/} ꛊПDҾk0) ceތ-ղI>y`x[++PzXn܆PZӘ֩?>2j| *XJj5o)JL$6Ǘ/仢_2WLVنf?~6@!ک9g 48tN9+G}݂ +Y [C\ECqy:+;NDŽv]@''UC񥬮ۡ픸}?*w˦䏌21)ʮLWpјz2KqGD}$6g F^5 WmشQsU%Wd9{QʫE%dHm󚩪_|bz_s|zLEi=6^zX- Rz(A٨TNdGhK,>j'.ek!Nl"YƧo"ANS#䚿`s{~X2G7Y3) 檖YxF51Zm T2C .'a&W 䡞%,0<<'gyaz#g_AGO-mOf!__e3Z'|U&B\Qp.@ >P#ݡ%iq$+9$A5͠;-J'PP2y\{:ј.;.4$2%~P#Pk,tqsO Sl_$H֚ı0V ov`l\\lZvsZ+I'|[m"R3?\J<G,խB1ݬqsmuJgJ6|=#b2̙J74@?et_k;bx51=`Ǚ& ,%s򏈄Fj<\ED8e 6՞^ hO`b7GyuuɢD H?ςd]H̟ٚ+ )9;P@C 2ԍ.X:"CWؐbL=f@-~`~#)*Z)GJ|H!yn4Jj nMҼX'2sO-{ebk~~ e7N*:wɜ /-gvӓx@t{K,1O/eۼqE1\')9)N\r5t,SŜ(3Y%wUNhG@rdfp ¦%sَX!_6 Kc=;}n)9M//,Dػt:[Bы"䀄Ttfb A|FኖwCzVBG)Pohj/cl_xl?qx$+}LهO(%]פ>$x:X쎙.ZZ԰&{[br̰n q N>4Yau$} }l \S,;sݚHɾ7F{<>824:y.ZĐND~^A&\Pbg>&w,k]m-Eˠ^j ͿbrrLN Q* /]PG$CGYYS!3_;OkK)`]c7%Li9@f7\zr:! >6uzdvzO:.Y?xM ݌qx2mnP^AXk{Aꄪbyc]%h(3I"j63]L| bQRI1O 5.L޼'(H DؓegFNH[65c]ʈ\E mQH ܸ{q"~La#H4瀉sX7G_Bgz1x/I`Nw|p&'I(n BEGf|,ǭK &,jUCt0qM(n#qY&޵5H?:ϿGp0t/XIE0 FK9"qZƼf"t8`! K?!-b?$r5ڣnb`{k/8^|`~Jy%ؐ8O|9/ݖsL||.}JF3H?L&]lf("+jOMw4mbc O- x"TtHD͆b>ԹGHbSAI,@&٢rfT )Y$M.ߒ:E=>Rb`//W53r5,c+KynDX̒Tg@z,s%vIO%YV#_L5  c|O)Ո[b*zPVE.lcF`ej(cX͏eTPUsƐH@!l%_2dy2#Ui*$B6 1`9Ց^;'M ri?`m!;|*%ݮ^v5LyYEu[)I_$CD= wOҙImd/WV(SxөgC`8P“<7֊.6r>:SġMƁ8/5F_0Q%LƒRٮ*~ԚR k-}WUۻė&%#fUXCj ؀[)> prrTz8IU\%G9ŜwmĐCur\¶π;[}37d A,nTݷȇ-z婏(lNB[Q/ F :MqX~mGHXDTl}%W+QdP4q?w qկ&#p@4M`)'D&srir1±wI4 ^Dz,!EX?0@5YqE% !׶~ }007 |񟩾iWWtqCs$Y6yҜ/Msk$NAON⥱%;NC@xw^$߉5; "ig)_ڭB\_qӇ dD/lR\hi$lHĊo쟁2[ u]Z5dd t֗{#lyCj8 |/Qr-a xHm!hR@jZV~C^u=,| lte'2g%5 `o+g=-0@YprS trSs,nX @|kI/~S5kf鈳{x:w Y0{f0x*$VNWu9ea=U h?2n~pEQcg518-;SEG ktj ROe}@E[ܷoԣ60#Q21+35]} jDw'#ak  u>J}ޤ.xɼ:q eҡi@GP'0h͑0 Rj\>km6 i^uסgb >=6|ISmn9/=M?|^SnVNrIwBj_u.d͗ 'YyKP|OL̆.WzZ}^"̐|y,nZYX. جhb`|LFm^k@Le_Lw~ ẅ́!ev 12_rEYJI3'5nVх(b1e|Tc:^QwO3;HWp!FT!5*0.燅q3-Q>l]4ԓGװ^@7M`f-?Oj)*-'#~L4O\&Xk $sھcJ>[h h/_E 0OF!u!So)AYz\}E8`"ot /lVԱIE˷f?pVr\/zt3Vf6IUY[)yB<0Z^qfP:Q8̋ BL 66k 5sAs oaRw F1},2Gs"]mV3HK]$Ԧq?_ob  цY|2>.IdƤVvF'\[0G1AےCIT 3ˢ'#U$ ;_{u՜Jm-hV  l8ثJHZ dusDZ!A+k!tє#K{}(iNc _Pn![4'u3<.BDlYwt7F%o 6jir2ܲM73Rb23 {NѕWt:GFYW"`*a[0f 8eB)h%Ez@O_$UWk ɳ[ꒃ'ǐN÷7/sV;vns11R < UCPazW{m# D yEZGp M s騚cmGC0S3tDPkE x"?:ty/aZiU&5p4hW35=(CIA;33 v_aǑ) ,G5s]|X;w<FVLhiUY '=OYG~q6++澮 h Cp0q/S`ˤJruO2N Kh+)grR&' G[x-+EJMSPd@YR-|֟?軌iDߜBCᘌ2ϋP@`go|ֱW1.{( /D=P#˓hɥv ՜I H^ $>NV`_ olmgXقmCBCbyˌ\@>a`l%h}h^֣a.s[ԥzрGE{98:ې˚f|O+h(@PʄrW"ldva amM:%0]=gE: gm6ڰ'x(s&BOs=AmnD8u.qSk3k ~kr'`"B-[P| X4Vy颯"aEHt/,12r`"ޔzO/1u"4U']_ IM`+ d5 `rzC9Sm[ cA!"ћ+ELC_au\,a= wJ ,.<&*'\ErIYZGh Q⒨⑖-abQ? [9\[2_ &4N[7vz݋A[mn?mvYUh4d d_Oȕ>S]}ED\agd :)ݟ+tz {kb0Mn0I Àw6g~ʻDg$G>Mg*9BL{J˥ 7C0e nP SyUF.'A{ʳG 70˻j~m ߋ.K  (n0]_EE+VYsj/Yw2cGIoC[,@*'rɬq}*K:VA)~e3>@oF>U:Rg+qRI@i,9XJEŎu}NgKr C^6'lRyeWz6NxXdZ{:*(Z!kX~ +Dw>Q%`v":&Ȇ.ӱ}w )A/;G(hH`nSAD*})AJ]F%x4"z  w[ `i9h;DU-j$Q YQ\c V ne:N^ܾa¿ds)AK/[dUi>(Q)E<(FΧqF-A=_8!_Yg(!!~9r\뫣.5 :m})]wjuI'M%Ghr"Exsim[!Ӛ1@v-Bltv A-m$4F,} y '&or3z݁߷PuVI `B+M<DcY$Hj٬}DɶSKqL62n%͢kKA't}qcR׆]8;'8I$+Ai!9@tAcpEyqH>]E HC 5T>lpv op3)f"S{5NM;B DD\ e D܌#dH؛b,%6co4DY[9/]'b$vUzf %}*%ht#lʣd%Ru2Ia~)*?>I8}Z<ٗ.SIZ*F$h6v7Ppb=)T8NIݡAo4~Y0*q酶C1]"OԪJB k;5۫ =ۮ/;v{7Ep(9#Du ^*W9- ?sq.+&v,ӝ/ܥe$qo#p)2e^\DYm4. 6s΃scB9̍%WM._pf¤ J=5@#1=֥0!9ix)l77X 7)M[ȥ2j X۔^ۋ[,;^3A>ԯe3nzK.z#a3cJæbfO3Z 9.R(S E= e:!RW2/}Zp>e} ՛jJj˝mi0D'IůY2 ʡDӼ}Ҹ6)=VAf#?f-Vk ŝ8wf[l!"3'O,Աo*ϰ7-r&ڠEI:ᄠ"L6f;b[dMk2-4ӧ,S]/U=\*O.6*Y4q _82PR$-CgXNuf K:u;8|+Т8 -o9jOuPjs+5 Ir0ڵw&jn#}*WUk*<F0ΤV!dcMT5U=gg]3-o0Z^z:iEs>Xca$\S&ѣOH|I֚cg8nIe %I^f46:ECiiS&cF9|/PϦ'LsNDLկ.j>lr)9O@1N&ɔlf/Tg}!m$v\K-2,5iɂ)%48cmEDX2kl}/oh|CS](* ^}|6 <32AڭF)%+v'fr2Qdc;UwM~R⿣SjDОxi%^G{E]5 !p }'cR<򽾣}G -SJa( Dpf]NWُ7ot^0o<ƑKV'F%]K BYx>_¨au=p;aWf䔪#^ Q,J nd LTd0Ac +מHu=B&-6w]>P5e$R+ nkZ}?Hh/ا7Jj?{h*:ev+̱-ؙ?%:pmFV WSoON#ɪ?Q DD|x# 4VzeiRy-X%[ 87S:!զ@/gRi;?=p'\OaBEQzxߟG9o=9?!ȮX gDYd0q 1?'YÌɒMJe6&d@S\%.3|ng/75(ǟ"F !ڶT>`H6XJĭ*. yoԎhڢ3^KI9E.J~!f 9FY .u6>%_cIɖo ֥N>vۣ,n<݈,; mGXg@;S>@6鿳K9:5v aB{'3'I%^R#IwA`.[}/vz ;:XA0u`&:zP; %o.%8bN")>rK%)q;YhQW[F`mL-^ "SflDnAJL*/K q``ЏA#Np" 5jA"SVH֘LEn4),aϕxzԺ}CD)Rʖel"׶Ei)Is{g%,^6?7dj5Er&^2KkcY;Qݓ<=/*.Y#`E5$$@ǔK`Tܱfq!u :бz>KZ^TT.ݨX8zVy@ֹP;sn,?tN&-7eؓI'PKb;I1pؕoY6n0xˁJhG$lGЦ:2$'=w*t7\N-d(pYA]\ڥ&)sbX4KP e LntX<=Y$l/gUCpWA8rdd3u26LXq)kcM bo\˘u@j?7H&w $PLQ)F홄l:E ݉``|fmkKϚ6w/31c3DrÂm/C[@@5CRllrNыCPBi@'VE>8 l{gLjY'~S3|vJ!?rYPؚD&%?v2(\̶cA**Fqa!FTm |Lמ 2ɪFZR}JczIӯk}+0:ohcj*Hsrq=Y.S=AKQ vc;Tc΁ķhx$srd/ &=Kc#(2xM9bVp޶ފ@lUWE¶hbAЎԏFUB;/WɶzaʻIqaeMb`fhN`HR-dB1.jw_a ;X"h68mSܩd\Nҥѥ>ˠ;]x<YÌ[d+QC#EcdRjZ,3}vcEOU *LԶ3 tlWx'hb NipABO|DfԧAany ?*a6^gaI3+K̔6/F>41(vn'kncHU}\9Pl_q!t)bU*iA)4ekTaQu֗uUm|:S^l{E e%X|%G-%'T j$ Yaq\ڲ>; 4vO,Gp% n @b`>UJh [;⑲.O2prjL9s߾L&Őqk/XM}+ʼfFR_u7 ._HaĒ[uA^[α^%:!OC+3cصQL\&AFAx/BR =p׼?q4&qZ)[w-+[jeA.rO75Bޢv%CEdmVs6Sh4iXb[Bzq?Oh OI[~sH1K"Hƍu8D3".5|n&WﻠAK$DJȽNYg<׳Jp6?^-".x$Knv{Q#۹$M/)&!R$]+r-f?-켠=u0&1\'L h{jB/bcHaǫ >IA,ހbHI'I:Rr||xg@/?D=Pd\]v><`m>O`$~Hy r۬%U~}?D@YA3jr1v41L~7vrAԟԋB>ohbȠJc6F _y0chbG< M'gŃXqPvGA46!yKF_ 3Dď&|E\ӭ]e0X#M`-M{%;a}m9r=JKTڛ^Ȳ;fк/{͟%?C,ykWz͢;`&0R$GpGAfӓ۩ ȧbfGBɏ++C9qBe](9ո-e߭juf_:;k SѷS)kn LԚ @:\m" tv)4dSa+J!D?X o~2 6<Ko\JX_C<ϝGrF`b ?Zt$krNuEōlHSOCUQB9krDD4$Gڄh-Gƨ͞ laIܐ$^9alnUE딫 58E Y5_4XWߞR1Ѓ\^|*ZukUb5{|U~58Rj8v0/m"M"wj 7?BM( $I~pѻC޴p$ o*ɚ.E)`3Ɣyxo jD.AAǃ7L8*° %̱4[6NPɂ&-/'.$"硂s8ďԔ$B,ҘGlVot@YX]g)(>QBc(둖qB8Ɵ:!"_[Om\ҁNo 9OXG DVNG씃g=č=sޙ3|x[JFܲ0jo`% PԘR\=htUy{)$uЇqzl>~pvcW#&7`V9ɜ`%ÞMz%FUS\T8ì$:hњx "Lv@Ζ̋:VHMCT9: W/OO! aZJw ]?S n(R3Y\Gj\Kp^j GhjcqǕ+O!:ʒ)=xN+ LALNn8o@t\ }xI 4A/{ VCP(̯ݷ;E c}dTnL}YzSL{p7gU?)%v@0[j~[Rp=<Ő5=HY; B9=9d'P"`WU*%~S0N)11djp`I@,>@wut­fĸ@bT RF~Y\0ޓ8,u枑X^f۬h93MiB6U1"YsljXJ |nR^oh!.^^SA;ޚɆqy (N5c֞ʹRf4._݀,s_6wh8 ~WW TIe؍ð u/ZNl{ E]hM[}Q[??M} Qfϝm<{鐞j5;gjN|.Ti`ZZLx[ù~}QL'rpSqn6^q@'㋕< ߌ RPQ` iB1)JaXp ύ )jSTHfFHrĨ0_w&?n @NeQ٫ @ԷKd oōu !dY_C K ]o]a%y;^{<ي~y)_06KJLF+ RoU6?lsjYJ!`-Dhd/#bȾ[ZB`IJnZ;9{Hܲm9vOIWAr:@0Kc{nxs\aHZmݯ=iޖAAUO[hsK+6#s⯝?1E!/h|Tchqࣺ[R;!(Vwk1hr xZ0pbef *tKu L  hU+8TBEeI &<zfdu@qM>ֲk$Tu c֩Gy\CMnĮbn8<(k ՖzÏA蒁j]4gihPi"~NT:WRy ,8¿-][`5eEfﶜgĥ}z)U}kX636&~)`ƶ&oolMJ‰umڸ|yѺz1ӽǀA):#|:Şн[!mٝ1<;@)wttH]Ha!_ٴ^O!08gqY%7s SM g11l(׶ wB/hP%GuS yozNw&93!ǖB"8MRW#9n 0X6ϺOkJ.$?EQ\2X`I򇽼# tg; ʉ A^Ӄd\RrcI)i%9zk].buÈ ZTxMdnS|1*ƅiqW]C1*STkR~IFonmjˠuj4f^ 󥸕`! )~EFgOy;?~컧^nx 1xsXf6/@Safk1lCe6W$J5gEgIL\LӬ g7:&~|an8cBFᴧћtzk:ˋ^|4בvh h,y!9>Ի=\@HJBB^iGׄ$-#+nAہzP\1ꛪ)4ӓ ( U !&j1LU2 ;axR~GyWz)/xZy%4 'ad6Qߝl_1vtSgp, R h0L_6⛢HC'{H x"l ⸈c`שBP~@csYДV:C Giz.<41!I }P9]ƺX!4 {j<1e F *Lj>1fT&I ȍl;2> ) I'Hj$t^YAKczlmS5C|j Hbjրf PP!3R 7 H Z?I6riWC4=7UZ<4m +筚XͶkl}(nUvҠME1M=e(ό-Yzt.J'9uup㬩nsݑ{&)$=wj4O]8ckvQO]{$HLqU9Үl9mc+͔n^BigJi_/_^L u'ܸ>3\ ]?8,҂_b/EqYXEҗAz-HBhja{N q{{fJG "9PJ}Љ&fR "'R})hN^4TF]=4ȞE&IMiԋqRWqܛU'zdT?hmzJ=M4aɻMU3PU%~a:*jƳZNF^i̼-V^YTY ?IKPǵ.G4&K6+XұAtHI|E[,]1p[yGjv[@U0% {I:͋Ki+pUMŪ؅vTN-2Qsa4 W|q?*lϔn8bL^rG}16,£FK+Ư嶆ViTÖ[uja5Vt92.9;EfWJB!5;O^DZ8!R.uL%ᅌkUU) ńStvjj.viQ4ƚd:B3FIqy4(uҾFZ,u ScBꟆŰ`KB ]E.,?!`_az9cVQi6M8L Ld{UZHJ7NF.5QMTܦݴ+ADuZjAYNKCN-gKMpZ_Ǒn(}Ɓ^i);K'I! $;4м;)H)0D~O墭Ej3 eJk̡! EF]'iP /rһ6A!i~z`Np4.tU$s"X/;ET6nˉ?b[w|r?|Y*wF%z1DF6EbO+5XH@DiVQZm>xm{s$wTڏ`AN1 5ڄ\fF,?ÍhJxCq/xG끌>bِp#I)1ʢyΘ{z"4U~(ed04L)na Z,MJ`:W{ĜF%,u MjpiYӼӧpn/[z-³8J#cy }M $r?,q]å0 ,r+*y rZ1¦:V+#z{{%C)(idujx7<9/:3 Lw.cW)Iڍ-ZWnj P3u_4k;5ӻ/wBrbJYLn/Vi0PG.Gx/E#%:cb3?k-mjh}N6 џ@v7`3F ۂQxY4xxwV}ͬM_xd_mUs1JppG,K̍ =!^.7̡ ڂ jֽ`8;h=t`l=CfJ4GtaSmQ @ c` n_%%옺6,)ٰn^- ˴!Οk ÒǍ*z.b(!e-;$(+EX%FD&OT&"J- 0M\VQ5|&~gX;X<WŁg5 pQ,d1'c/{b)Ll?J~ 454a2rf̐q<` v~\-+ř> aаw eXa$ `DPiMY2rL?ieoc:F lȿQ4>*ML)7cHY SٳLx289.zڒ5UqkNzQrpv82z7S Ğ*3{ lr4 w+,9͖Zk;V`?A(ƬW, @\{n:wU?G\BƟWyeB<P6W-곳!ήq\klhqiaW&yc{QG$ ]iHп^@e\A@;I7u)erQ3S'I:E$. {v<2'Qs?x28"Liӏfp_OG (Y} k*KM#5sLu[F[r[p`Nc's֏eU{< 1SF7blyİUWQ}@e@mW@’G"8,I`QeyM%)ޚsbUU+L2*vb*X'^2j%֒TJJLNŮt n1+:ͫ7w /Vr(Cs>4*2. 1<4p]bZ/33IJ|XgҴ_!5&n- BƢY*00|ZaCM 6@k5%Եo^V-߷Ib| =N{v]䀬B;yڣXNrP/)xpNR8+ ;]nZ2"E)@ % (N9Exua) }M$o=lD2w؅QmX^[VvE?}Y+<,-&Φ:]-K`2oYHob܊F"U>.NkWW|$ yZn;zrDZ"mnS;2[\KߖB$[ эqk32YlS]pT TT bHm^"S OM%HE5wq'y&j:ؒ_IHɩ7 %$>O}$p-vbGu-%sB;n݌9ۖPuQ}I!˪Ŝ3NV\ :˼mqz/B@Vst<%?"32Dly$AdlZ29KA 2$H0"%kr<:a'ʸO(>5+ !IȂyfEc-q,A!XoZ&GG\Vߕ.idt6ĠרHroM"P/XWhos `[թ̹^22U'ق1|:4 Q)); f[6}c3p$dM-GvԶ?hJdM|E)l[^{b A[@9 Vܥ#rnH;6LtOEDhȘ+xQǖ@LHP@ǞzW]"<BS!,ˉׇHg&J~nќx62C!FE*+Rtw;њ~GCIL`g65;7̚}KF4b|)fv8vtOjkg?-SY,l*B9J@Kd6Wq3Y%GȚ [Bگ}ASl0+;0HF1;)PHjY],hN`ᨒ؆'9Be>M`iÑ>筙SvHFQǚj \@_oE6-Z<_/e˚!m:O&Y <_2 3TL4?L ^&C/B/9-ZaԘ\] ST0v'D/ZgXl)Fo xGC.ݰ}1 tKpmx bn%~p47`쉃2& {`~D>ˀ'%i6tW̥-&#ӄXDC[̱vwJ1ɽڜT!2VX,buAI|+* HV$$3P=_vvj NY>&8zP/[h0Ӌm64,xA["PXq"iHU*?,5VVq|5c0  W;Xb& wKܞ[ ؏?Kẅ_j\>Vhm;qQ4{$V"&^[aﴼt@a bj, hoY,mUw ) {b^ϟì#ZJ/XKC-mVI4 Lu&ϫOpyB_h[g(dzӦs,rg|v(4y!:[eUnQ[YkR,Ҵټ-` !@ [hNDd x;P0'S-/$toáiѰ6oQ *u3_To-xE6LN \k0{]b ]2t|]qԍ`2yނIHh˰ i/Fvb착1V0 .:XCJQ0f_pWs٩Ŕ&i]ud(Kbɾ /j:Mn8cȆN! X~f5 8LMZ_,-H6M|I` ?VQ;^>9 tytfJ n-]БskZdD?0۰6"eoNdѪ4`L WE7!^dws . ^e#,D1g${hD߿YL(vQ9%XnS@zD/2#kE' ˚ӏ<7AC[ e|iar}gw#@gZ% Q*1*]ڈ;Z-zA=oVLMO@.܀oYb!gmEm^ ?b R<}aAܷ6?E /" !x\h glʫzゟ>qIH ЧCL$&DeZ_ZZpՆ} "RomMI,4YYkwIsKW誠Rl0 h6)?/Q,_~Q Y<60I H*G^)7Lb[ѭ4*̙8FА.Ƙʋ6ui$>»JE R\/迤J}!VxVfrg!zGSזH;zDMEcM}{%׽ uRMT/}~e}U{G0NRYl5!ʯ o'8Fv!+CayNU|Bp Wjf 9)u> Bg}g-<c7_4cGKwTL7]tpUʛ/97X,KSw<>W}yoL!Qڎsgoueu5X~%W%鵱ig6TJ.*@7IF!- Hv|ǚgq< &B<Ȭ{0Q'A0Ҡ T~O<bb Zm$ (!Qo <]EYm<ٰ׊lVh_6SKHuع}xc~yWG&\ /07\rcl#P+lcn{=⁤,憎dWdL{sM6係:.:K}Zinםqb:CFZdmBSm12#?Uzgpm8-?m'jM"q(--ӖG{&,79'>?d0px+ψ݃f\ HRgWKd '7 a*ˈ `gQD‹ULۍ FYʙ:_5P*Zm6(MsaTWqkrFsY_\&uJqbVIiB O*+V4-ZqQ> "#hpynle}ȞMɂP"9k14 FR ƪ-R "?v.S?s27_5v*}{> cR={JҞ Ӝ#a/].&*C P:m1m,{ ؾ&%xFCHkM:>Kl *i ^˟z.EO8L JzAl*Re/,[%FޅvKQ} dC0uNv@jaS_0'"^i9S:01.qSEB!9r%Ye&5 f2< `7kly'42 Qco=*,'WQL5a3_=|wU3-%RSɨְ \fW{sBg|y]a&Z"in_PSOήH|~Sc[**Ʊ-Ul>v+ Yub7hsrׅ\h}ZL@0BUJFjyC_-o~əFGM˖Kg߆5skr ߜSË=$J_g:{j] _ P싗A:aН'Vf`6(5 `X=AlL@YWp@{ i7:22epDd[X'MHb6Gw7/^.a;Ɉ~9_ #^]a=XC_#UOua\M +gӂ7⥤%W ~  F1>a)T+ĔVj˙ IW:{dy85ډw^dG(]4UG7٬,pmhk#>R1 wRhE190ڒW4"_w*u@| =)Sw? 4 BdtHl#z8Pi788DSqVb9[hI$LAXj{;PIª lܳo/DԄ^y4+lg8h`\ـeFR 'er:[/8}pd?""ݾpd luw:dCWoNN N?B{^Ɥ; VUpLqA}G%N=Q7@6Xv# ŢUK,l:T*TI*~`VD< c,C|-^zyH I̡;;?ol46ס2$ +*ʉʀd+_Vł⚵G z)\fNi<7 c3ֹ`mriӤԈVv%ۗ);<vp\MDD/*Z=)IdKlchoʨEh\壛h g$O`YȈt P{J>vÄZu!Ld/r~'EFc-v[(kC뗢>60?@;9D(3iT$@ɄO=JxJdX@+WJoƜc) ̈ V+(ݖka@'{/#DnKMSv k]ƚTMGR h,Ea(Wi?iM.t4:_ZV53ѡ .*]ڴjn_=dqQ/\Ės8t蠢<$>`6jŘ2COs;, xnKX֬xGowmU[bb)P<{kiج;˖,6aR<Q*-Axcά\ɛb{(/uf"Tcz1kw>Bt coԬ?|OIVP ڰ i>$0-!qoqzQ ̯ .,=_9}T!Qx3Bu:/z03ۮX_Y~Y!ɒM\-Orkeq=6g ~GKFMv@˭=X!HVCۅ Lz:eYVaTiبV'šC>ak`<[L#IߜAЭs2))9 |"{ + P(#\}?7Isoj+lD?5 ܷܿT =ǹYĝ[yIdJ%fEoBuCĵ$ȥ!I ;;Vu\.-BB# ϹJI)r(`y9.E,ahƀ/ h[LctkI(ݯt ܠ\p ~:^G.Zނ z FR*!>tfڹ\vZrشI"[JV#I_LQvt;ޮm4G箦F<5@FbryqzFS eWz@ys20GO?@Giollp//W1n&gϙ~L+rZcj䞊ȣíq iB>HIzZTLW؝xN5/!$Լykd`8Z x|P+\=[E-ÚlSVu y&ٵ+T.qrUEi;ErrR.FmxKmQnMJmL s:.ppl vRd,^AW#X6x㿤R04U$GLÎ S<bbMLJpꛪri 95 * KV3;:6[` ,EF="1pœsHh+f Cޕh|pjNG]rm4^zgQV3^P;>˛C>t2i=o]Iˠda?vހ\Fٰʸ y RͫGMo7ڽ>eKk)ͭPzdIiXv޳%c x lkL)}ow a,w}$!.i\**E\HnDg X6VvȪ(yзY#@Ы[[q.L,He6;0b,prT0лЛK5(o@`A' L ͺop`F B 4w64->M*_s&+7Sk}ߎvr.`zs9{99_W`tR<9A%=Ө,^ HMKJB/0jTemgY=gQRA-w x8 YI$i߅2;{!Lr7eDWL4CΉO6?acc{KwN6E,w%4 gvV{Bts%kՌƐ}2?DrكXg-RKՑ,m{ |q FM:[_z3_`Ѓ)D<*0G h0HKa1=Bہr:²3V:w>q@ /}'vC.Z{v:CT_̝v a>6؛)V>zpj}zSjG{_I%u]W;x&fH´k[)2JЯS5jGV2CO=? =֋qaj:SߧԢE҈U']Rіb-cfLRsG'>73y$?Ī{$UrwսuȽ4lw JQ$xRݓqwwC|͸ p~]7.-,F(y edQ|R͘c\lF3w~z>S aPL{RV rv!zefMRuI%yN_3ztO=#) Ǔ%/yUTu~7xfpqYeRF]gLORbیoSiH輻;G̾ ,~X!ׁDF>L0>7uP_|(^`%LN?HfF4A絍+y`|xHF`šF;z6?ijͣ!5(x~H\q6]C|_|zS:fYugxٝ*D+Xr.zxO&Zٯ8Qh]_BaO_߫݌N =OX8v [8-FJJ\"%{ *m_Hd] !9NFnh~, 蟈*^#gL0;N4y1𞱸֚ !v䟘ӄruS?* )9~:}-@ j&ޔ ?6!.eyCL7^'spc1QpkŽ wq7&*].n ]( H;̉:@&qE|؍p_4$fB".8EJyJPװH= ,$*UJ `!/j6rέldfRq# >zLb6&LaR@&zƕuPaksbh|IDOsv/آ#qxX\ވra"PCԘI*:Vz,`׽.n~bsE_# |)6_Cbb(QAdSyVP%oV߻-H1eK4 anM,Mψ&8ٸP;wj/Cdq?M‡c"nyMkb5+MLqG-rz:{.ZB,b9$aq#`M$@_l UIԏ:LKVAƱ<ꃧu\r{cУdCbƝ-w($+Г?O̅g>4ZNHzUâq{ow lr8ٳŨ2j%3ۺ~ůl@\ҁ }ݍ}~sAMo>DJU0 mKYyfp[pl_u^xw<<>nml r>}/O OAt\2igtuU)qФTB !64ew YA,N/^iO4V\&l%:ڲp&]AI>D.qӏv ސJSN˛]^lte6WJX"f:Ct8ҊH}KKq?nY}QuJ (sT9<'Zc.LXY[u?&1GC`b 4*1a&.^߯K3i A$#O f}2VqpCO:AjCbt ۾*!pȯ;$^o(}%y~u&B՛*h:qRoZdaV|9Vj+^b<k.WQG'HBP??Yh/>_`fw 7z9/jEYWgeN3JA07ǚA)ܭd%Fn~c1-*$=o$Pրu}0ǁQA3rŘ4J[ݗjR2Ӂ I} \4z *6L؇\O09efmu,"Vz`blIFMe <.˝=ٿd翌4&%~$QoFU(a!iJox1QR);E2oVV@0sj_7Ab ~oN ySoF]G++Uxg1a̯3iJK ǥ$s߬۝Bϵc R]Qz5xw" &Isl(ΤX}J<[鍌+Dk4qQEĪ;g4 ڕ>W#ѰEυ0yH|$@9=֒x2H=N X}`a.+8cC\ ca2e+uACcu ܺ9;!NX܊;.(|^Sc%z~(X19=bc `8Bq$iw$EKc^͗/2U\8%j qm]d6C2xՋCU$Tu/e%C\;NpNĤD ;R|\']l;&ٖO f \fIfª8;/S5Kr@ h@|!V`lc%cZ6h@?r&0|_oV75ӫ'Lg d1r*km22ɡuV1BҎƪHcK@pPid! ;yA.7Ҏ42"fwɒRB絛:qmBHG1\9y0\ByG !NghD Fҙ5?93_Q, ޥ0E&R >hЦ/V@$yGsw]O+Kymx9u]G!7,˯h2!<bQ]&O=RB]% CxGSPw]1Rɛނ͝KZVoqϠӬ7&W fJ`'1QG&'}'\C%K| @ ,5*Gߵ{n|@);){yZ$gokHO4.oy0MA>Df.T°}X>ǐM\AZ$Rό9Đ^q #<~Ęe'uou3LcqX\.FKٻwD,e˯bn9YQ޳t " xbܔ,^ÆegShMMF` c𢩅3i4 ysj*G6v$=,box]& 6){!Q 9}W-lq7>$ e)?Dzp]lL4r\aGg1"yg+3铡 2RȻ" }֞rV8 &* \? nGW|6^*{'XS͟KGG_(p`8}af!> yљs&]J8ËaE 栻ӷ#E-Jo )~_Cj69=iW[4"^TΪR翊 :??"yoATPt<A}V%O?/Azcׇ%]GwH͏49+) wPQM6}4d/rdђoix&W3i!^htB|?xq73P$@@Hus-6 %< j Ф}Co+œG5: h0PK˪ 9X_ΌX8v#"__Rh&U60d).FNoq_*Iwt,Kb&2R]{G ь@<M٦Jo$?ûZ!:L/yQnӇ̒6c%hdɅYS\'}`QnRKAɗmʤHr@j08G(beT]lo9h (;c4M[_$z.?rxG-1\henj"5jԻS J:$\:臺ҷجDj 4&sA.e <,.uM-l޽Y^$SM^%dޫZ:ƦU,Orqt-#r0`LW\0F]m&)s|vdXo5ͮm6N~p2u% ;p:hLX(VƉ.(qz ղFQJ`?ô_]ЪֵDț^#aG=9'CO_Duiv '@mLQohY65H3'DyKЙc> }Jk#Q-I'ul8> &eWJsU@^bi˕Rnj*/R9i[d{\T1:]/iWeuėE0sÑ2਷;XEeJ eҮr,G 䜱# ȪJw1O) +k>2j8E(6]ؚ<Yd_`Y[-< /x$' tҚT~iYQw90QjI#ݮ{y۸ h˯gnQ÷ ƂJ?_m'43u0?Y. x`Sxߏ;$R|nD5݃o戼\BvE݊~Z^hr:%&Tfŝ{S%]6[G_t ֻأztٰ`QAb |thh纇GZ a\ +Ph5FvM\6>q'hX4'{ E7<aW="AG dDSt 3 };@]J.TF৚IjR=b-=#\*N@1#V!ZC?+WiGt'(ܐ6 ڊUCvg:tjuʋL:D(d#HW)j* |@yVja/t?u"yUl$ =mؕ*}0>1xQlЯ׽ "W8G Muѡѩ'aiп(L^hfv/ sXϑ9vd8=Ii~ QN A)$r9ƾIwĞ룰d,>6~:1]>U'Ns 5 Wt.'.e[U&UոG/ &<7By\x͗r35 Ԕ>xƣ=55p ${($;xs+jfePS*VI= ?R<ޔ*UM~h.E;ݘQoE~kL62cpB&q^txlwiP`z&95<̬g; d Ny/uARFG͒ ZL9<]6r7۬ݫّ !MRC'( 4Nxk M}.T,?QpxDf +nOU* Q*=zȰZ,ҎZ3Qpv4,^pǬ#DYN*sC CYNTb~jY%eB X1JnR4܆Ǔ$5yљJQLܿ<̹,Q IEK9j% s-*)T㶿K!j;Շ3,Ɇc^5 nҐ]!w(^x f !mha|j~=/ #jl;ۯqL7hNi򔏔DW:ޓp?৐ >/rlkdEnvL"q4nd¸ieJt;=TTGG#l@&̎{\oYZy1mGwlsq+Yt^;D,Ąg),^HR@fokG2<ޠ\2;ڞ dJgl^+zƿg 3MfFUAhU־i9ߞB0[`3ƎoȕZLӄ :c?UVzHfPlN$C: 늪ˆQ9MY;T9\15bU s߿IAcSe==4"#$kAL^}K$Llw KTWu2`6`; ք*9bf Vž-VQs yi!p3 Iҫ TaȔu> nkDLrJh{2T7mc5vQ'kv.Aq--(5@E6>h> P&~T/'@,.DkG6:г5i>?D[ *ռ mAA[qIȌKd+ L~/0bT>ߓf,z_eUxI} l?!8t[r,R4eZ٨^Eyտ3ٶjKcOPnG 䛖IcJםipQ-~{tBKJHUUzo@ "L5ۡ˴Е-EC(o3uk5>eS(f\mTZ%@)yedSY̋:O2ur%8u K#d.0Y%e#$͒G΁)1a1R6Z wq+%}|;k:c QI_ Ee=K%pr-$HR ᱂}0&GRf7 _~EWѾAa]P0)ș:vrHF"L`?XK ^B f2ȍ.)Ge V:V鈬I Zڳ33yQ׵r;Q_McII(/DAfȳJN.> SqpSh/hILN?tF8Xz ՊI-< C4^+'!uKqs\FaȊZfBm(Գ~d@4cmqOJ̭n/) 9 ?<#Nabas9xӘ6atd޼ i2%-Ǡ+MVƎ`904? I+k\''X@uJ`8"(Ho/dzsvځgs[ "k!E]]+ۻ0i@T=T$  D Ad Oc^=:TQ"X:`ٿñui 0<_ Q.;ap5,u@)]q].xkMf {Pq"D# ]?00ʛ2ʸȔKY< g(~_ߘ^ %.LFe3כ.`f(K`-Vlw /锤3$Ջ3|R9pw~KY״)߬rE,esnVoI͵W֩^j?aZI5Ip9e S ˸ ۹شkߕӉs¿wrU;{Oޥ7hs L]LaG9 #4Aiq AEdf 5$A:d.8¶MvTJ~Ϥ3r>4ad2@AGG ġC#rkH̰cz(w4z)5]k`cm$cAUʟ srQ Ưl1&'Y EӐLz̮x+Ȕz<64V}hO9b=c.z9i;ǿVw` +j5W8 uHFT#bg < b٩#".aMYIjnf*vp{/91o|h6' IL" pmƗoa_rvh4ؠG!U Ee2Uw?U@ D&<({~_- 88[6D(v/T;`e$S*X%Hdˏt+cx£ҶZj LImINՔ}cpABL.kXmCAؓ&8_K~l䋎GVZ<$N[fFV[5'l=\б]xH:5}?J/ p-S=RiY 5MUێJ8;W1gD[/8C;x#[̺{Եh_ʱ`-KfЦ£)ѧ؊vh:8;,'iZ0a7d'>OnHZW2eǐ!,Aھٯ}^m!Mo%ڎf^ wޥ'Jd/\ϊ1P`·[¡B؍ˆ."׭< "ѳقtR FT1WR-+m "bQ(LU+~woVxosnCaCnʢ[ã:۳hi=O"{#r6SJQ#PIiZeʅ(OPl& HZP3.dClz k d Ŀx ܭHkȆ H+yo>{1w\n+S u37@* :26`/1D<(`JQLCg SmHWprpĤ԰hPn~Er0 CAfKWtK6F4h(_i P:P۲эOQ d}l:?V%Ɍ3<+cUגGa9mRdoOZ ?i NͺU#O*[6ȨEӠߖ^5ګVapbN))h4>Pë́i0]s?13Cg|/<|ōLuަ\~ ޒr|XךIad c~{1IlOs"y̓f$"ޱC q0|/v?njT= n>he+'ȊWkH6~aZ=UI)81Tr Om;ih(v`pT8ncP|=+u *Wpm&2YR1}H(kL˗Hew셈RCb3M޾77Z=q(7(3hՓnHՉRĹ<;Eif-zO*fͨ7zʒ[ A}ٰp: Z uwcJtr-eFt׍E8̮1<`|#(rF5:@~JS/\jK4KΣ²a˅caɠKyDE5gDLdϏI 047& KG[?Hz|gnZt!,'O9̲] mB\Y>D!vg6E`RBh>(4]p%yO0H4Z>q}ܲ:WZ0JS~Y3 䰎F}6? ˱L?-8~C!~س}-:I` : qu~l!%bX&DULv_FZDY $_HRb+Y@}$-Xb߱+1miK7Uy@9Lc_xʰQb|I1'G`!D@. ;5[Py2-A]c@?Cex)r~kK$?JJb|gap@ʐgoP;H.Fs6C2vTN4I չ8T!U'p1caL5Тx9J.it]3%PGP)Jb7mkl@@KCnݸKf69?F 6E([S]^HKlY&o?DDá*8PU׷s:9z]35[k%pVۅR`)H/spֆn|iO{b &-L&0}:ya$Zh><۵oYE}VQkEIB%W]JxܟHk!w/1BhݽEsp#|{ W~k8~>mŖ1Ƃ4v>6!oXA5Ub%'"W=W~}Z {jך'i`>n&ůK>6n^,Ud@_6BޮrEK%{7)9`XDRN7W3 pFG[ jH'{r@\~GZX{B[Q$+ 9mt%-U+PW0^Q 8Z&H;0rA4XS, aRcX-/IU)1D[ 1qh?ҴkZZ;8_Ҡ G*x3enIIY[Kvl06Ux0*^56 ’<-seT:+hGՀ-wo72ǭ-3mXx>[ЄRGi0{SͶ ػӸy4\H {35~A u_HLMRj)[x0SdtP26 +o40-sVf\s{K*BIk{,Q?t!ݭ1R. *'ZΠH]];mwRZdVd_YjPe"$F;=0zʨZ˶])GUWy{f(Fh0$ qUa@]s],k.ݐ{諑k`PI2uS;kT * nVG`Iogc-ڥƌr~ݭ*36Zfi$\Oz9ˎO/@k_ zS1f=WTPwX+W aNFl`eotu,KxvyDݥ>qgm5x5B3E Ro X{}_*hA؄Z:35ՑJd@QG+EZ3#v53!9!>jGը Z4.B/ƀD]2gOٰp;-FMES1$iHʪ"ˉ;LlMlU60*jsEaY)/v q{:ϦP ~nPm/8)Ҩ.~Nf)T?Z eF 5OQtIJ׊!ؤ@|{ %UC{VBrڳm0Rԥ`}%u}酘Z w5خa*-[=JFJ2k ڔ%61|Ķl%&v74Jr/<>9TbD3 UeP54kҬUmo~Z^PcpW WAE<4@<$D]pzfc ֣~'$Jog|+BwŸ١fX|~h990rRڥUt$hx@3}c惷 _R,aPqȣzDnٝTK϶yMvi I/! <3BY?! wA"G5uS=l.dYqv}a2gZw}07Ve׆w@P+ \7m/낐fJˈe/hRnu4rU;Í:9>ҹӪ(Rp* .N/"U6TyZhֻ :l-#7 Wm=I!@U1ʃGnQ`h#?{tM+0.sc[CHb x5XHWLKkCFKaI4bnږI f΢-c=ȂT(`\LćopUfXFg>_,ƊҴn($fX7UEWH8QQs. q2~us_cᎈI )*'hrCBW8s'Cǵs1w?]?+&QyI_䭀ac5Rmc&2x х"6R=O6A6^  viID]>/RjR,IXKr;wqỽqDzPbLryH y"_b1r?tILz'AE:ZIeAf#޻bFsL`c/lƦXmbݾ6ϊ9ڝeo W9 CVAR&pI8 )Ge5V1xͻ&`FipBפ)6/y'T C+j!(+l.0Lkn]J^h[=?kݹטAX?i*@VY Z*:⎣-1XtOZ!.\}cclr<qŠoG͉֣dt^8NQe(JIvӟ[2J>aH/I_ na2Mmoj؀e+̔=kΗ(eG<|i$.X*ëa*mg71.rCAwc@7c  ÙgK4d6Ű1pJM0ᵄR.!dobB^>2< C\[u^P;&ɴL ,wJdՙg sV|r3&&Z1Z Dq >(N픊gIݠҲ5u,;蟧NʘVÏ F̞< P+CoÓWʢ5F9y]DZoo #fn㙪PeF[;ߍWBH)hE h &hpf'u͓T/g8W`tꁍ]=:YY6FTwp]~JW ]I9PdR*'k(E@"żs= EhJ]u{mk_}cd8P)߮9Z}_M`_\"o[--c9D|[tF +-wy}Ml6q)lmؿ7ٺ旪oGTE˸Y*FcJ`@[90p@6c1Ƥubf)'h=TGHWas @m~ wd+j,uyl >r%\)  J}N7~#:d] vB P 5MDNL/9kqӓ3_; W6U:mg\D$G28pxJ * ՠR{!ov *!U1(0zΛ9\X֬Y{ }H^ӭp954=-eZv&=JOfvGv"ʟMo#;@hE8!_?-Kl AZef/q X@Kg;N$1;+Jر`6 wts3jӂqݝ:'(/b}uɇ0N4 Zr`~|mŃoKX@] pF\~uFb/ !oܻ Lvp31VfM>kFirHB9&@(GkSRQo[IE&蟂_sS/j?{oΑu 280Xp"=dgi/U2=Kt"8I"Ѓ1Ԃyͧ/TQo-*_:9sdӴ0;E~`VhхAk4HR|QwE[?9- ?l@-o} nW']$O@rEtk㟹 t%R\aҁ*Mh_&sYwx[׳#Ԛ`R[l 6Eʠl`u8+Sn* yQχ ֹېp3[v*IGlp 1TEdiWGfǩcgBlZ"Z[`AN_ڻ2{KIL i蒙cxHUUu^:H2l:g|h_@]exJʿBA:p fѲ<8"f#"DW )csmz1+?'-ܿCwUhxM@5|)ޅq1ϫgr5p߃HL@u<Mm J_ bZ^axTنc15[EJDgH+`56Y^Ud8򁟲Uk7Zռ'ǜ<ƌOP?S!*潤48V,_+,7t^=N }KwUɃhܽKBoֹ^o'zPf:/`Ic]ƾeF+t+k jU^ wal3OQsMP@~O3JC@E}z (Q ~ |-kjDs]ᥨt>^0U6.eᲆ" Sz`Xl;ӷM9.ؚA7Տ=ea|e%Tbbxu hwCbz#_dhXf7_0 ~F=O1>v6\q?pD`ϩlހo$,EQH\ ŝ _VYi7tҏEoc4E{<7Cm ;yKT%cA)Z1x4 Ԗ\|XR~\TI#!Qk Vi}ѹ_3S8i?ms*͝UA"|V!S{&|) v [%&RRJP[EΊ¾O']βl=7#vply>˹];/D9bХNNCS.8T~"*CaK#DHPwva=XvRϬ6ԫ~px=~Vv07Bz8'?qIZk*7gSCQsM &$1c%' F.a$)=p0<bfcIԌ 0Ƅl?^AEcz4#mH >\R9*p`sʟːoi9?ϼp**n`?(Xkvs` װl.Box=pXYOLectmnjʭ#,6x|W1q^ KhBn)zI֚H_$M1vjp?R vh.iѱ70F@S=E wsϮ *x'`~%goX2c}͑b֍ra3'Fv\%ޯPO<>r X A -CȉbpOοhB8JM_;-Od~) va~j8.jL.@ؒYYM` WRw7cXd5}Tʛc'h J Յg1..y<-Qy1c߼LaU% ZZf=2}|yK#!Oぷ?ez0dyhwZ0RpϯvdJs]LlV}KpVTd#+i4GȷuvKÉ,o|Aq3PI.Nd[|0u?: S J+9E'ebNEҺzc$.iVTQ>mH cp쥜)M,MtBRHaVGQcn:H<{b,ӓU^P^= y3Uy[SA C{r'[3 > v$'<_Z;dq6fOTXcaΒP ^JCz}`PWⱪxv 5"$]+._VmS5T#U90ltfc"kg*;сY3"8ٿHb3P#HE~̩k$_0~eHTϺs7%W$pe)'pS?9iD(,q}4Z]` p#u0b֥7w*܉~FW^ J\Op0ћ$~4\g>Md"&5YMDwyVTs ى |pfc0I19-Ϝȵ^7yXd uyu4xY1Qs#s/;ҌSu:ܜ`Ҝ#|}:K \8TIDž6Pg>u decod.P4uh ǿ!S~BK|ɴU;,uIS}وM"w&DŽV]@p,<4wF~/`f_!l cY񀣶lC-zz(t]C $a߫?}(p G$+D2DUXh' ! )K"L4Q*:pv^E MF4MB4ép^!dGLB$G?kCxb;Nԃ;HPU3=ݒ#\<"kESbcFTŲ0^I-t#KQXq 秿|@[&N rY ~(K$@CCEQs_뫿 Y"* b80dM-d f\KVWOʙz8ò5S'u *Ā,Bu x)+"^HoN%[8EוdCȽQ<0|?ƞeZAw~]KSϾ Jt&>Ph,W"8賱De}Y1\sEÜ*sW<+.*7ri ۾oI>Ey^-T;j`Ljśf{wY '"?1:aj\[Ѯ=]zE̔sbH%U|+ L,.-jM*[SSA6[!ɏNvU+it}c*q,¹.>!bpl/w6z%&P5p~y)Dޯ]e^*Kyo,ħl""Yԛ(H" }m"xl^~M()ЉE{\H0`45! M13#?t!RܮVǢ% 2<#\G[}^,C)Z-E/^T=PDmСe~QNPv`K7419Hd:UvJ&q8F tnRrшGB@tF=۷;E$PdbZVxŧt-ĭ78kLSbcUjX:Ĕ3=廃MVf ۨ-&\fQ>| dB@o7BV?"HQb;}%Sz~3a<@F# b `KwE36sӓ( k/#LB5î}duAyʋ9Q$D. fďBWrDI78Va] Bk ,д7'lH-rS2E m $ 6϶ae׬3ֈM*V3?i p-h} nbk󯺫-וZ.&Gv^"( *5!N@1U\73f;} !|dUSRd?FJFge"F1~K L#\HZ[;9!_gՆp-o5%+Kd+8+  /5Rˆ: 45T; kLLykGJ-_z(Zpa@|rКTC!Iz@jw} +. ҩa>.g_׍}U7,t`n< w_6 }!M {r[o TqM%|B[Ytw -.zԩ6m[dl/sb %;ECLk*o_&iOy]2ADح,oOkwK-hjDgtoeiCϫ>CBK1L-E'@W'b_uT*V|T t5[-J_/ NS)VW 4w t4=ѱl$f"ӆgcQ O529ӄ 56$ FK3G4J%HD[JyU$Pjk/d~,1^1i{.C{`LEikg9[vO̦jִ(c<,z`4#_HZJFǏvhL<蟠K:肚 6`x+>GmH< /8mq%.',Qm,?GMv|6T7?}2QZXLT:vd8 1QkEsqvq0#2yTy db36-&@1 /v;JX=3?fuMk{^8x8>ކu Ξ_on6H&+`P $N^:}3lVI3^Э`ءd k}o L!{M挧ӓG9wvyKB'mu4TJw7l^r!Ж@yTy*S o/~NmU%a1P@3#Ov/U*-O=3Š;9a L|`ۢ~uŎRv+\p80K Ti'|T%GY9# C%WIqƏ$2<:$ad\%2LDBq y"U*&ԎVEh?ɢ42i4\ W^zCR2vw Q$ )'~QPS}):IW90p׮~6iր\7|LC.wXӑϾAc ORu"# y;@baGZ ?]r?QCg_S_hx?ѯFp }}CMHţaYQ! E;B9`!谵/&_fkҝeWu G1@uҭɵUN\XöiDD[j6 obq᡻ͩգ\p~>}(%oLqt<p>9".xJW(`+γo4yUXGAh9Jú]*5;V$dd ZtXs%o:^#imW Gaj_l(#M~+k)8 &{FZم̨=Kd]WXX\_I9vk֡3ώN1Z`3+ׄ?ԾH>)0Uj0wHo+Jlz-qfy H H ѤPT Q;os>USş]z8 p)<+,e\92o9 O]8wD'.g%P|72 q'߹9/Յwژ٧hd-=tb֦{Z^;asXC|H,7H(?\ oz~OzA c6Hho|JӍ?6vY&nب.\.j9D*OT4`O) |[@&@5pDž`lfȍdR)3\aŁbE |,%ѐiB [oep_rV7b _`~ ҫ㐝9{vQvXNm,#,Y ^B(bYAlO9YBd{XRBAVEea R"hIGeS/A<# 2\Yȹs.=yNYcک<|.yZpD5^L٧BύSs74%>&3o.4]TjM6t\"`NLmH[ 9^}A$^ivJ(o#ۥUϠHˣ+2( U*J|9TitdĠ]4v@i}JF4Wf&[۵B;4נ*uhJã^ o0Kg8LH}kf-`rvcs^쇩zszɌO!/ƙu7k@c6M6mSrmEMwOx]1@EoFxb# 2E>PU0W=_b3&}uIi,7xZp;ݳ9_WL4g>=0?K/KHeyhQf8̈#kwoNL5tV k9%N"Ԇ-ySj4kw 3fj#~`wLˇW;a08:<9K1]tfb1+=f :8бdo3~M.ulztԁjwp٥<w:R2*R蘩1Հ5}zmw%"  x<ʆّu;kplAhSR(X~*җr){dwq t$)[?ء)СZ3Ưѱ $l.jmDU[t[ZXXBfLiiJ(ߙn [ǾnAzjfA*U 7g?,r[)I8O{ g 'w-` rIo?{Wjo Z>1_%*.՚n)qھk0rC<=ڴ7ğUw Җ4K3@*r7o8 e =(r\4]{'~"UJ(;HZNh Bm$|FXGwoy9+W$'ir:퀶շ8mhoZ@G(3ۢbd֪*Y;'ߑ/b1OCa4jaĆ"DoJ nT'bM 8Z՝? @]_CXS$XxXOd7pH94Q>WT{g=!cE-g(&FC n~euղ/|GR5zC .IyXytZ_ia&V$Μ)^b~ؙPE 9;>\=vw~pL-Gc`Ŧ⍳+m o3<^2肹=q$1| t Y5U$MEeT jfłݘ=dΑ\Hcސ  #r޼= D̴'Y n$.K8.n^XI1 >|3jm Y ]4]\i_ZflH32EGAvE."zOn<:Ӛo=9k[Y~Pw+J_jۗsHtad1ZVHّNZnk*R p61~ ) j/`Fe!uuFpD[&hj{uq=VAK6z0KGf}ڢQX6^ڇt>O U+iU`#`;m(F>S`l9OLRxP,O5J]a8A,+,X `ټ:H꿠eKf91w z#= W6Ə&6$l2:.o] g4@Y4#ޕp,\N[#S9?j1psIQyprɜkn%<% LB,)V=zS,E.cAKk]D»s_s3FT( Z,ߤ cp`ɯRI-ű2&-5=js۲sT>Mr{nIo`{T_ L&y;߬!«oTIG6IcDvj9u9=;P-YB'ȝ`Er?nv MZmyQ$b3C @_˨)XVƕeѵB/==/i#. Z;;7"9aB#b߅ԑg>']OziNNbxm:}\jji/te^3+MB34*Gߡ 4~Cဏ_pr ҴP%2Zc{܄j . h\l+<;wiګ0M-D}5{H#,iU[UIi c E 7o7&4ws~)!m]ԹZ=Hj}|v@yՀNR1 WJ~Ė̔ܨָVPw2=4m'y:8G?TCTa٫=Xg Pc-u"W017W! 6vNk6|y5$1rvgf=ͻa/Y;S̺]y0 4~El k})MbOf/Ґ\uH_03eєr֧$= ׯ5Q?V ȶbuxKbEPW"X 9LO/VR Zt0#|ǣxz'kya1%F@gi1\۝3G\2PIy<;r˿:)Qڍ^bFj9!<)3k&!jgZg8s)~*mjٓr& U:{K M nZa#A Z* .YS> H[u/rHc ~F bThӱE+V.+MԄ/@8ZRp:*NV'f!Xԗ|nˣ%vc--}Tk07(i[c#vV!yhe<ELs=܊OzTJF2IgS4v?b1?+Ǧ: W3:+5T SdTrQͲpj'G2qmQ*ZFTA/*!7?=U3n/~fsŐgr6WC!‘IO`ʞG*cye0u~huZ*'ըgwW$j&DQ=O.A6D/>旙p:O\,k갹4\fH`1[Ƅp<1oH^&3FI̛ T{#\\(1@*4m`vڈ3^OI-aڣv-nMYInj>6 7ȿ{TZ JQ,A1qFa(ElVSws1c igP_)oQ*vRNT%Cn%{m(WK9OGR_j|} P*-2՜I%KfkWduaݑ^.KS`[H:*}/>3dYc%ɹS#yf<(5#qKںrݡ|qBqu?33zy'P.ځ1N8-e@}^r-6S8aW0J4vV# .JOIkpT6IJ l`Fcl jqZYΣE!x>q'n3u3@{ͳ!= (ڞ{.[ ϙ!QYcsr)H]mw|irIvI#͡q4\@Ǘ"pPdk^;+nkn+APy:hC" !WkЛ`f٘P6{&`qdFW qH7Y,J q"a<,XõB,Ҧ@8-ūvzuz$/(Kg%@xd0xU%wO)Bd{_wt>| l:lλY'#WO$gٻv/pw)P*!|5Ur3YF(jf( x3+JrՊqow|b4ØH{YiLބ<KEM%^ă9#]4E~v6n2((dʱ&yO|Ek IJ$VJ׎*ڮx7uX6i?ˆvJ[a t\1Iסyp%vjO%i72pGȠuH^XrAWt\mee.Fa [6;_z]ChBxrYijz0UO.azI1x=sС_0S< x3񚼃; BԲ|w+J L.y F&$ FZ L x{n<ހd{Z.o2HZPӡXG\ESe~;P;\EHLw[{APK)rU9dZ_>qA(rG#: o\aE{Ds`WŹ9"6~Ûsrb-3tY|j-j8hF^JC݄䳈­NKTŃR YJls?\hKZԴY~vPq!0Hq8jyUP\t-+RmL? j NV `aΪCqO2K*V"-.iTytxf$|c><ib.|H|$w;e]%3I{_׉mP?u"ސ`7ӈر E{d>}tnu&̼6, S/NXV36sa/$O L8sRoDY`od' \VJ 3(_}$2V*1=rr" BBuf㮸1ϓFPQXB#:6Gٷ~;{B'&iӀDdt!950RVA=}3YUHCߐ(K6v5X-c8B (vM,2c=0}7ڐ3Okh(-,)yh!RG斳{|=U`{wd{U-A[6ѝP7"8{37fW+m&a|oqy>ԨX3J@/'T-%斒[vJD$Ot, lI/FbB _= {x'k4?fXu?Q76`1crX5}"zbC/_Vu^{,$ 9{=o3_wFrTN:a.~ *E{p3)^~$Y#)+G) r*#/wpuS>4-1ٳG2,I]u1֯G?n3Kzԝ8ίnbi:f5:yF mT#66z>2_Y-htKBe5Z-@gB%^^4l .T-g{(E)BRoZ棇d/][lIpgЄ)HGJ7P70EQ6c7OWѢ骀$ZXNQ?h*U ? ZO]srIDF(T/snRDzdt|/7篃AM4 I:! zC;y+^NRTBy4?v͢Be3!E"[p|7h9­Ó4ei܂xlc(7&Hl+Xi?mep%gfo.NY|ц͠Pzr2> J;ֆA+kP0igvm;wEK.`Gb$b zH,brrYUL'wpU2S,m8q#h'0u?*n9;#<,U`ђ Yt*X-x_'{cd)3Z4!Hc4|=yq&rd\˺ɼtɬ}8%(K"Ş~iZ=68u@UJfԼz&Ա3Rr.!ߕN(U2CVFg&2G_N) gC`THQ<:#J4h6,M^4`Re{\K4.e%vrf>4 \= -oC,skA%nEVX!1Ԋr([9jeqXSj+xY^[!`XpQe{ߪ2@LLE= rrxUF'gBu:r=c0OhoeB tc隞&*kc{ZjJs=  b+/fj{]/~'sClP"rtb#&hq0$&^fiiY{R]e7QMz^Ǟ^.,8@>zkxWnц Ζ]0y묀x!}[ s{S`kk*ՌYRD^2q(S%jlf(98Qhg˕9/vu $kaZgD*˧o ՚ 矖3jY42`}2"x9.LŸ]_u:9_;蜧%˓V]a;&;pDrZ:~JOdt=nm:|tŴܓkʙ ;'Bɕz\āݜDKG \^e9"zLoH^ʼnLi DP꩛`VHVgl?Ql8l~90>WĈ0̗S)a0wj FqCZ% 6 I5tU\W&\1ϟj:[6=C:z̈.A1F{CQ"RC~LIBXN˰B8VHRŁ(Xy~tt:b^Ck1' 9{8 qo@~hף_/zvy`YCЫϻbIoC潃՟P¨Z= %Y~4ĜD~N'M}_ ,VM 0Ty~-t` YRmjlH@1<yݡ[#d)6&FJnD-2.SDq⯔ntC-(vJ&p,P|ghx=_5ϙ2L/ eIp^DLst qtOy)oI;jPZ#@nİluGD1#ֳ3ruKш_ŅhݟqYA?: [xNɨf+>;<3SFk>Sw.4Dֿ*m)p%lgE&3h7]\&twi!;@X_CRl+V/th>rV0wRq8ÕRn ^𑝠/rʭδD$"O¹M k41||XnU|kU_zOoAqTATkpfA5i OM..΅$ԩ`C؀y |z$n<жg^+X2:P-ZS&EKm :˃$g): VP7jeu1 7朇Dn ĺ>MeN3yXE3拵 }q(PU@ `nF\RA#o9(GT9XS%ӥR` Gvx/i^,0@$C->GO!vGC!,dÜ)<8nUcw tW+"H`{(t# Lb8y], "wjEO;5l\T0#^מ5Yxeܓ9yISys7~g=Z>^Bɵn@2kZU3+,ZA-/+ rRY.=K}fA''$:Jۤem&@(qm,[@y@AZщH@Qp 5)fTx6rjE2CIWWW%Ԛ'@t=9wЉ` LǓȫ }_a1a,Y4݉߃6kmC=mMt)vכǴƎ8qm `hdBnT\^/Jꢁ\'}}/XlKhg!7\ـDj F|]~i`kIQ\a2Qә\2dn2އjtq=}GΦQ ]`R.5VY{O]"kS-iMX]f||dI]i4K"?/Z"af׫[Z6 O?h8X&.%~xɔy:8(rLcK81 ^*F&4`W[t|T&iBD>)[O~=f[XlVGӱ5xeP CuE+W!?I|F fpn4d#A3`LTzb{oάCLЖ[P8ވpՑI:@lWr+:3[]-'O1} dҀπU SkE jbSҶvCå9 *SL"_>V)@G lę=?:ly] d4%3/paKa\v#휑ar:"۟dђ@&OSE6=gTXEos2CMXv04p'׾*fQ'YibhTdPnG9Dhx?q g4' J8d#ط>hw "̱]%jOk{]&38Ei`*2L2r`I7z"B)1|kC<:{L̃bkDFD?TE¹֎[ l>Mo{*"Iߙ4>x`rnr~9dUqXOlQkP#,#9*9|zhUDnRs 4VVh\YQ˶q ?V_8. [tE:Cls!>se'P_XC=2 ^NL,C+90#+DG3:B+x۳y&uab#\M*ݐFՐ8( ghoA4ٰ6+n4o9/ [=vXykA͆ۂV#򨠢ހ6>EoaHԁ'f<ֻw(IN;+b2aƔ`r D»qU1@K exyQm"ұ`P.)&$dfj3rGTWVrNMFy4Y|t"Jר(q5g b*J2<تqĦ^wZU(W[c Y8wixz ÍѢv㑤iI\9sh QiuZ|; (!ĥ]7>Itğ9{WƅZxK!$Do_&0j?՛V3vl*l깡= d4c ~NBͿ#D%.̩=1Bɰ= ZPG9P)%l[ʤ_:*GAmHPl_DzAv,lT' Vz$&pa8(\-6_HLWP+5a|."\KA>P,E=Du |{ZdOڿ/t}=Ar'_9TYL>j|׊.O;f'N {p(NE-MB&Dk[>3̓$JU[(κ_2 G4u+{fs%д@S bl߈$P֩[vlW.n[D؎5Dh Ű`u~`BW [쫔kF&K'N+i1߈l<((bޛjXz?5fJi0f$5)Eu;f;GVi\<ܻNP8S~V3yDݵ,YD}#IQ'UrY|ziuY#2oYkRë߂_MuBX_l>"U?:]_AO%ZK= a3qR>*J; e1]ѸF8ʵDWU=h ΅~ ߢ'!5YGOM2KI1DB:7bxR3pzZ/iED740z }2C5qRF%"<_n*ng<>#Rg֩.1Lna(7eix"48r=kde&O'OmYS8z6=ٞkҙqi -RT:;{~HJMQqF70e@z wsw@yU@#\l [w&gL*?>Y m{) }n,j"ѤPml`}ūbmtd ߔ).^X4nvCz_/SPNzz}3j yĎ%Fc/f6Fׄ-Ƙ['=p#IE, D7 챨t|`61WU#&bS+0HCgc%䈦h{cϖ Ty# -#/D\iģBnjye"IM/ʼ32ToMD;ڞ$Hc͓:'q/kf ZBIzBf<=(Ђ-Ϥc]xF@1]"ŷM:J,:o*:Og:*Ǚ}&!tMtXj7.>p FWlXYXta~4ZɌE!Sږ0 @!* ˅VAԬRkrAyU7ϝo.~J8Ov)6$Ml.|v[TOe͔A3AA$5لB>!˱A\& 8c7tw-H6-$^ZIκq1t!C˝-9oKhjCҚkigeZka;o5 jHRrLz@@HdFWQE>ʆ5mLuO(_0(XЦLKz clA"gtq}jOiUʞ*cz#~LДfA[%{Q!7nt tN:ZGpw&obk|-<]xwk)^$-f5h4/l" ?lt *z.MSga_o+Oُ{#=5qRF<b:('Q΁2t A!1V4@ &(&Ib* {vEm1!F/ [/3k07PG™)ilIc94Z>tٔuw{Bڵ.) L1ZBWH/v1BZ!" Qڨ]e bhB'E^d 0r5(+bOZQ#H K1LC iPblYW H H~yGsU)-G4{LyӅqanQ0:zemM2b P8(NWݒ'#͑N5:ROD[z}&W@i`9lמs E"Ë$~(@̅CmA/k[Iň&EchژvQeh{SEKMWwmaemJ9)/*C*wa-Jt-pt섮]. ~FEo1QT;JDtg*bU oo2Z~=lt 9BZQn{ia}t<-b u+):lUW ZWW굵Mu-dKC OeA[=Qa}[/?3_3i` Q-ܭC( +oeUSد fj[sBRVQyvX: 84F?%t轈Rzo&(~a}r?ɋB"^2>8}L fQ3dpM4|b~ZhyV"ٳ::~h+"* Z#&V'ZŖ/?}q[ c;ӛJ~v7z(&@xcޙ}՟A{I| K'6cUG:Wɛ<`rp?tD> &紹I&D&Vъj+|&jol}>MGP2v/X~B]tSwUkJp1 "7[njZ"dnGS, Xَϟw/nF6CTE!%9%CpPt֦dV[dv)3_[T#g#rEQWp5Fdghѷm-k=r`͟&畎#b!Pz~ÉJR\ 2+eX< C+:Rvz9!a9ОR!]uwI oRFq)~_ŤtǖS 5Twòz- j} \*W``_ڠ}k& H&x}u;bNչzrc#[-?X]K&taKx-pkeÊ:_$ Ma93\U 6F%`BhߒRCM(4o 30akB0Ôid~')hdHYho4ej9#LcOM9,"et F5|֗ -rrek$ "Ȼڝ/nu bFϣz\>w݌G:ߴ霨I2Ǘ*-`m&YʳX\BRF-u(K!X_!6^K/VΓ.;Mf$AOl߳%Cle)$9 (E<խF[~Q(,Y#A!!wyDhr;c|yHf>uӶPY#`x|nK~5 Jo|!P&|9!^ە4;{!^¾U =oO{a.5L1+ǡY?L.OAe>2UTQȾ Dp6O)[>{D,$N,Wܰ&'xA`y*nγyޥ(Omy.oyp P^ u +"^wԿY..3mǔL0j,}!kDr]'yHJ('D#Hr%|8+M\$|R)ÇWsTI?m*g=NݐO_)3Z-nxluN_\К~WM̳?;Q)PIģ9f-0>{=q}:Z0)s+MzXq%,)Ĕ_ItKJ]Lu`/4je|UV[tJ¼{D.coqR DmлW%6+r &U*~0At{v Z}>'UٕZ!I̒l4Z!OC;;*p5=≾sl\:*9+OX!ˀ7Ofxğ| U[>N)æ׼mIFF Dcm9¸~bx? za7"`VOpXNhx i0;o7@5TnTΖJeX9FPХ| &*-3.RLcpڧu`#?tv<}FVeP<~QvQ#:#`aoIT6cCBp=-rVHn,foj\KO bg ܡ̩ K=,#),P9pZ5pn~a1; Q`TEHPWEXKi`ʙ̝R<f(MH*DRAlkR#)`a#p>Uw1׎%t8aMG?ہ{2=z53;oWibipD*ku{D1sE'cz.-6/ˢ|_Ԯd) A3'`h9TrW $Hwe_~MGP!iD:I S9M( ¶T▰"pX\߲7 |ԋT\0ģԦmV6<&"0Fy/MVy.>Pf"SaI͢JrB8_OcJvqsS0q$IඹwY`1^$j0V9EU>p cG9l&#O:ȪƯn-בc5MwoO#S;'dL}01eS $Jr A8-2Q f4 N$~&r]+k^ ۏyI[pdmuv9|e+ ΅v28Uo;-J6 .sf$R w\I|gI.gF-=grmWv| <1!EI.]~ eSNIEJ+gޏ+8h̜KquSfھ*}ieI j*n8%:JY8h"Or HܗnSYEV-rZQ÷Mt%l>xwf!gumQwYȖ"{gY\aZ'Uoph~`rtۡ`4ShE&eDSdrr&\4%o|0ӗbIcnh{ u*g4=F)6 />rFRns,?u==#b+y`O݊-:/;Q$B?'|X)@X癶vS["SQ4n Iʩ\YX1+`BMYwDټݩU@t$cZˣK | Ul_4PCy;LZ\,*^eBog 8/Gd_UB0H5p:A,=?Qolb+p/[o=y˵z8s~ 8"{-BxQ7I(`-7EK dupbkR-)moĭY=0{¤J0 [F_2`DRM4O" 0`GL#k^MТG3 z|/lK8qvQ!- 'hK%\Oq/k'AJ2 0RcIq;c=} kfܻVp{7XjnəqdHv Hm2JS'+0(knqNDQăv@~q6&j*bE1+5KM%owۥνVg:rI Å8r. pky;B犵Ee5,!Iᕻʄ"77UyKuVLiPnJ):*55`gC{hHWb vx ) AD*F=C ;/OB#XfO*͇4|K>˓2&z=x<|qgNHrM"X=?X`n)wf[v~bЁ E>9!urퟺ}hiq&E\! 8Rhvo' V\ tSrvifIߩGsr-Ǎ,0=2kjw 8}&68\9ͥ]=؇xdJ0UĮC[衫|yl V;lYRJ]KC"F*r;q|#{j(%M{Y+-Ui1(195ges :$L>u=GcsL̤b<EčLG!xP>FuHτr`zeEkjזw pSݾ/h錀tZUEIL6༢aʱ^#QJoDqpOG4#Apb40Xys/u ̸Yq+_$9Yfܑ*i_96d/s pə <.OG'?ᄌsrTs.n>re1ebSOdPE/prjH4e΍QKͶ)_Ɵ+.@p ymm+qoN ok6/ϡ8>{?֒Ogƶм9 o#ERg^ YOթohf:d7:st-2ڰGSx63[>2r{W6/=uZhFm  ML{NZiA(Х[C>3| >9xk5zZfy\|<_7UnaVy2J*ho*2ƯbV1SYDa`iZxNOhs 9-%z2eT\ \d8Q 'L0籸 oT]ѵ)꩘hV\IZR6ЇZ"iQb 909(NU6}` aCz#YO}⣭QbN; 0E amS_WӲ>|*{NRD?rR荈4kۊPLZ3<6PNJz-Yl3E@bS)ȖN|nF~{7̯f]R^3-*BÊQ 'dӺ%c7?^O0TD1Gށau\pP\ [;*b G]/ Tk BaQ KB`)ѹF6%'{dn6VמP쬽c%Q94Qoc+VhT xnͫtPW R?RFД|V5:?졣yg}C*~l#EMJI4oum072IE,GX&u<YVNIZC̙s!a^^=h͠S5L o+"t6Lrf6cBZ#ʔks:]rpCr,Wξ$ؙS=l~MR( (WxA4p 5 _Zfg5N89i"4*`܃!Mk4#IX%f<ѭnJS,XJ(hݢZXgzCgM=WN![uK#_Է3Qz59C|к^!0DJV7[f&J>5eQT=U|[W5^yv[B b*(5 eK )T&ޫ:dwD_!&:'oj vf-4T}G ']BJ8h$[>f_M\$z9CHBg@lK$Zdmwq- KRRKxMS+SsSfMj{F(ӏ^HRoVTtU JעI%KYP>: 2>TMl(9S|ը b% xD M>2511B!-ГlrX&W K-{^,@Z"lx ՂǤ(uiZ0`AnstQo擗 6l-9}ݣ=›=N'3AP:RgSڔR''}IB|;3&۷Reh\Qa}PR0åyVY4l24׋li*Z!ĆL:7fd˟+..wl ap,,]\| [MQ-1gl{$}<.#WYk9OGPhM^ yեT%oʂ3p= T&#FtH 4UWid0ڝGBq!ʾkcr o*Pq (.ʗA;~xWJ r<{ zc~ #v<݁T0>{ŠxdxL6ۍV3N):Q0LY `@oz5~lYiԈ)xĨdM'-f 1{(9>뷲 tn)I"T4e^P ib Et{ FYKq N:<ez,,EAF->U5-ΨZ/7:Twg!Iw)RĜO Jt'[ A嫡xI_Cvs'튥^_IߢTJ˄ #U'v{COba,Ĉq7 bSX ?!}M `{$Ez`H-5x iJM !_֎r?UF mβDk>-7?L N:-z{wq͆,@!.I׼&$U0}5t8..\B =9z4ׁF(@ C m Q,yr%jAQ8P wBLejpuC?֧#~7 f½5Q5>`Op` YMQ`hU j uvC4\! ܯ\`z2"@$⧊Mfr5j\"e17*%qKժpg>ࡊ[{'D=*#(yzrprQ,9v+DV6/|`6ZUM͖'& ڮT|,[j[8X:p#b>>[R,ylxDV`w^awb/p;U4Y9?ۇXV[xIU!Y򅸞)Qs$5SAjmQF84]Ts3vLFZ\6j;pevF?l쎛Ҵ\ dX )~q̭cj[܎V_w^Zc1_n##OUd*on$/;+|kK31;9:5 @$ufCf#z [2* AZyp%_%Qy:[Bh9f0ƆH"6qr#h\ly +) kUK'Q%!M;iSf`6lF(Qh/eT|2kA,$aó?J#'IH٬ً m;+Hd=GCѐCؘ=hژUfsBHRro!-%1ǐ{t~賅_EK%# i.$ݩK#!83E֊`)PC)N _iL|=,ے~*f% `st2 :EK v|=:NOOJN\ɾ}SȂ\7r}ʆ>>+ph?ۺ'% y@@CfSJug۝ [ʧNRqTxt!X(9ä3fpFO}j ~3x~+klD,&" ?PI;hkW.|6%؇@m8?ј >_1 Qp':σ 37*;ͨ4 ZSdΧrooڰ)I|Qx$LWRݔdeB-Y~_T| 2x.Džv},MA>ozb8СvXAsT6ү&d;!Rв̶\ϥ;!0}o;6ePT^wJzn~p/%jb0Xar4%9l`59 izBK,hԐcK:fpv5.s 2?(@xk  %nX]ktY3`9Kiͽg{5&Ԡ~ ?2? -<7 %/uLB g2rۃ859;kdiԆ˛8މ %7-ѡ^-m(9ԎO1@IgNOaS#Z0 _E%M(-'tJaf Cpe2R0lnrt #ʀР{-rIw(:OӬ@hfbEYX6T"J[7nn j[^^uV3X?kX D7;3S̕\ne#sx̟]~)1 o Tݓ8"PI"D|4..]#OQ{IpK-vA%ɘ*gɣ9gPgIn\[P ou̳|G±W9-M=#=WRę[{~es ?`q !5CT,:z3\:M{%C"eؔ \2A/$.SY%π |϶wf]e ف$2DHf*/_v7a wPߗ&OAu {Е >k=:]kfؤ2:ѶQRj'ZCE0^^⬛)]m )^Zf(CNEBoƿh/PjsW,i> h,vxVlG&AXA 0 [Ɖqίzq6\QN':ϛLjp Z s1}/ ]gX<-2B0G>j.if~œwo1&9{ΜܧOɻh;]tnS~Y' ;EVH刷y Jʭ#J%\M5MN"Yg2tV)alW+W4k3-IH'gd䛳S0diVAl[wovOX?$EmRJ)7Cs}ET8Q(q' M%GaX9:dyep\{'eV.Aqepm463+Q:*x$=M:o'TJj Xi)158@VyYp}03;n6JZq_ vLceۏ!J;Οђ~Rxz_ kTZrbnG?s9 k<7~O%hi}Gѹo 50je׵ObdNBg>W>Q{ζ8\;.b@$D`=쏑WS$&,p\3%c{n+ˇͫ`-\=FS""~8%j]җyYE̟C2zt{$09WAŨyzv e̶'.P59kfr7GUVT7 6`2D=顳Phw3ARS ]PMb#j lˊj&2NJ`+TԅL0Qo!SϻE {u8PKQ EcTe@-ktcPbGEY#!1G&+& OZ5":gW]ĕ}RVcnۻ]t2f,[vۈ802t.Koy>[5_Vٴ1Rh/㬇{gH(BR̀JDˇvT! n40l>U!'t* 3˚. gA>}ϲ9[M*?.*W@! +yw[.b &*{v;t4>Ҧfj3ϫ&|| FTpDh[=mt@d€0lΧ\^?h [?`\GW] |ĘžSCnwHYC+Ғ7_^GSB3x 84};`/}f~/T}W8h[0d jͻWN>y#[j.B%O i;gɝ/1)ɨԨ4ɩ7Crxw@ʍ> \x^+"ӏ8gӎMbh0 k^4!bZ*ws썣x?*MX[YdEe \]RlO~ e ԩ)ckQ2&NT?+ԣPp4y|r6y,+f^H3viU< ty 5ҿ8m2DN+pl zF彻޽ř[퓸ZK?6VUe޽VC$ V/Pax3  ;Píj1>~Lcu5xQϟn 쮑jċjRNUC=2i)D ݴ<}(傻kPh9eX "v9f$GF¹-~ _SQ7?ctj7uͮRJ?SBE]T^a臮YXg\m首q}^V4Ԁ19\0NtdDVI)z8S87K/@p6W%72`Q5>Տ_]$BwIWPSR[ y'&SШ_ߌl6z#-pk͢Ds5  3}4W("z#bY =\Wـ,MҔ ToW@5/4nHz5d(We'ϋNsJDnˑaH}7"p x[UlT묩[D/a/BWfGF>⟀ )D:'>q0xTfmX,@1Y), DvTq~0(]c Z-O͸ST- #e\G +shU"',3r#uнc JȮWhw dڦ7{\]&}57g >_#A0JgjIInWev$l0joە-_fgFPNG>/"%l!63Y0G(\мP|b`xʜ)PH../\0nTR5nŖ!N쀳mx'P;5&p&^U7ۡ?kY'w(RX+ոFް]hN/%k#?!PſtphsG|7F SBr|L j,5FRtht9N*rGnјfOr~Pq~SG]M恮4LXGI>.Sa@=N,\V)?ÈXN} $1Tެ # ryw 6]tmUjԆX# {hd(>dK@ē/q *"ŖW[%n:g5,RkXfYܽ\]b@wRuW{M3u) @>0UOe`T;KK Ϲa.f&Ŋ`EB#_AsthFcicxBWjfN֗Bc+)m2MC #w>+Fb%bJihHn6bXlhtqZ8(Q-qۭ R%NhH s4͢mU JRuf4)/M[TAP&bSǷPO)S~5Q,q~e7[T~4Jz 0J:2 - *_脇j̓MϻH偱VUD%x`lmut;>3`e25뵢:,O˾26TF]j'?E%F8)־I2Dg 35O܍||^p$QB:IoFsI`53xİa\oڄrYZR=U(ꧢy˙lۧogm|jrȻZyW3qhhN1uݮ.]L@0Xɶ#!zw W՛3`zO,HZTs e;+Ð2X_R ]kF}'s*vfvSƥR6.[Le Ak 62O809,F-"X{}d>+;Ez6~+B6?p*?x@젏^kDti[uQnUx41o|6U%LNWc DܯM %y.Aq).9uP:ESW<"cCnތ57~ȤYƗFDa~Rٞ>-,(inj[OA"p91 )RB\#Swee,MF7I q],n;X *t\͎Խ[!dqQ]tNɠb,*8˹(3=0N$<]u.n`|P|cr E(cKzRI/MA0;ڜݻ@kDcIF=D$k˺3Ăj kD2X[V/pZ@H!RsGr\8.h8'wnQՈޟ%mȻ2 M>aQ ̪W'qd2<',6{H~^9'BwѮ34ay(SG,?ˊ_вl>RvRʁglh5[h}x|Z▶[9 6΀%.c<3cjA"dL WirNW[RsH:+fp(@N?\O]w}Crx|$ dV]&,UtQ@Lh]O|oy!!:>cȩ+*XChj=P${W3< jFӞva)T%[/@L7>`+ѵ~F0gq_ꓣ󼋀*D L^t7 ~>2 om}#3ESMohNSd*d$FĚ3?l?86燋OSn}Am7UD(j_HŶOv5uy{UBE1a׉A-S8v/a,2gm}J.a/{|ԇp*:х?쏖Gx5lE s׿2}P gM:=>tNz7uN ͗79gL8S'$yXX~qzH63]m:)3o5=v7г%߭N^Ds!@W35F qa8@z1JRta2ܑ07彑O{~1/!d%~4Ci{r2K,s!~>ÞXe,m6WIb Mʋ@LY~څ4v0c-c-*Bĺ*'|s.(.*t߀2_ RҔ#PH\g*YY>tHfVϽ{DW_ů&֯*u ec+a0AP=Wd*Bg* (Wy̑%AB,Qe'#@ Kb)4 & 1ZZA{2Yn! YZ