mod_session-2.4.37-62.module_el8+657+88b2113f >  H d U]813Q/n# Оo9HYrN>X!n-Q(cyG/q ^!`EϻQ[}C 'N#BMAt]6K]oh!'4IaPpX~ݙgMjgN`d̑h= [:u-<6)~ )cCG:䔦lx8J}*~ĭ  P ԅ"/|<>Ƙ]5Xg/̶Tz]D~ %N妆47H+]ͳa*N%\6`1Xvc[zq)wUgw/0}d*_Ŝr\,^R{Izǟ# Bcw(1|}LcsEs&:lrH.suz=Eԉ')^t@ǑD<s1и(*CV~j"BÉf5tN9g9wA+O2o0 aLU#e_ Bv&o^ `4Rn1Ὂa^G.UL>NЕdѿErxN,,~U YR=_UX>p=_?Od 0 ] 1Lflt              T   G (89 :7Gd H I XY\D ]t ^bbdeflt u vw x4 yd(,Cmod_session2.4.3762.module_el8+657+88b2113fSession interface for the Apache HTTP ServerThe mod_session module and associated backends provide an abstract interface for storing and accessing per-user session data.d*,aarch64-02.stream.rdu2.redhat.comL7CentOSCentOSASL 2.0builder@centos.orgSystem Environment/Daemonshttps://httpd.apache.org/linuxaarch6494269@Ad)ad*)d*'d*'d*'d*'d*'d*&d*&d*&d*&d*&51df0ceeb7dae9922817f4af0554f83fe01d6268025ee08260aeed69be3953d154d3e1efa3017e16202856fa374d937d5f9f6cf8c3c9c31c718a2a333feac462c383956935d10fad51a68484306b0746f8dc0b4346652c1642703dc6eaeb99f3af7950dc0b95947501355f09e2020753a8283869b08fd509f533bfa90c0f2f2fd1319bf52e16ea44e80ff92d82fa5d909113f758def22fc9f8bc1ec560c68eab375673af7b64f41b666bfd3733b0a1a353eaeefe94adf4d1bf65c848597dbaf3../../../../usr/lib64/httpd/modules/mod_session_cookie.so../../../../usr/lib64/httpd/modules/mod_auth_form.so../../../../usr/lib64/httpd/modules/mod_session.so../../../../usr/lib64/httpd/modules/mod_session_dbd.so../../../../usr/lib64/httpd/modules/mod_session_crypto.sorootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootroothttpd-2.4.37-62.module_el8+657+88b2113f.src.rpmconfig(mod_session)mod_sessionmod_session(aarch-64)@@@@@    @config(mod_session)httpdhttpd-mmnld-linux-aarch64.so.1()(64bit)ld-linux-aarch64.so.1(GLIBC_2.17)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libpthread.so.0()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)2.4.37-62.module_el8+657+88b2113f0:2.4.37-62.module_el8+657+88b2113f20120211aarch643.0.4-14.6.0-14.0-15.2-14.14.3d d\@d!d-@d-@d-@doMdJcdcck@cck@c(Ybޅbb2@b8haNaaaawaU`:@`f@`@`@_м@__@_:_^b^(@^@^]]@]߶]҇]@]g@]-@]]@\7\Z@\Yz\T4\\U@[@[[[@[H[u[[[ā@[ā@[ā@[@[@["@[YZ@Z@Z@Yp@Y{Y@Y@YéYéYéYéYX@YYYYx@Ym@YlYf@Ycl@YV=@YGY5GY@YXۡXP@X @X@XwoX[@X[@XEVX)@X@WW~D@W~D@W~D@WKW@VVVVn@VhV.VCV@UK@U@Ua@UF@UQUQTp@T=@T@T @TT_Tk@Tk@S0S@SGS@SS/SS@SSS"@SS5d@S4S&Sz@Sz@S(S@R@RRG@R@R@RsRrF@Ri Re@RVQ@QQޞ@QQo@Q@QQV@Q@Qo@Qm=@QQQ,Q,Q']QP @P6@P6@P{@PPl(PiPiPiPiPYPQPIP3x@P3x@PPO@OO@O@OЗOЗOF@OF@OF@O]@O"O"O@O@O@O@O@O@OOOOOOleOleO_6O_6O_6OU@O8@O8@O5OKO@ONNS@N{#@NoENdNBrN)f@N&@N@N MM>MMn1@MdMRMF@M(QM$]@M$]@M# L@L@LLMxL7@K@Johnny Hughes - 2.4.37-62Luboš Uhliarik - 2.4.37-62Tomas Korbar - 2.4.37-61Tomas Korbar - 2.4.37-60Tomas Korbar - 2.4.37-59Tomas Korbar - 2.4.37-58Luboš Uhliarik - 2.4.37-57Luboš Uhliarik - 2.4.37-56.5Luboš Uhliarik - 2.4.37-56.4Luboš Uhliarik - 2.4.37-56Luboš Uhliarik - 2.4.37-55Luboš Uhliarik - 2.4.37-54Luboš Uhliarik - 2.4.37-53Tomas Korbar - 2.4.37-52Luboš Uhliarik - 2.4.37-51Luboš Uhliarik - 2.4.37-50Luboš Uhliarik - 2.4.37-49Luboš Uhliarik - 2.4.37-48Luboš Uhliarik - 2.4.37-47Luboš Uhliarik - 2.4.37-46Luboš Uhliarik - 2.4.37-45Luboš Uhliarik - 2.4.37-44Luboš Uhliarik - 2.4.37-43Luboš Uhliarik - 2.4.37-42Luboš Uhliarik - 2.4.37-41Lubos Uhliarik - 2.4.37-40Artem Egorenkov - 2.4.37-39Lubos Uhliarik - 2.4.37-38Lubos Uhliarik - 2.4.37-37Lubos Uhliarik - 2.4.37-36Lubos Uhliarik - 2.4.37-35Lubos Uhliarik - 2.4.37-33Lubos Uhliarik - 2.4.37-31Joe Orton - 2.4.37-30Lubos Uhliarik - 2.4.37-29Lubos Uhliarik - 2.4.37-28Lubos Uhliarik - 2.4.37-27Lubos Uhliarik - 2.4.37-21Lubos Uhliarik - 2.4.37-20Joe Orton - 2.4.37-19Lubos Uhliarik - 2.4.37-18Lubos Uhliarik - 2.4.37-17Lubos Uhliarik - 2.4.37-16Lubos Uhliarik - 2.4.37-15Lubos Uhliarik - 2.4.37-14Lubos Uhliarik - 2.4.37-13Lubos Uhliarik - 2.4.37-11Lubos Uhliarik - 2.4.37-10Lubos Uhliarik - 2.4.37-9Joe Orton - 2.4.37-8Joe Orton - 2.4.37-7Joe Orton - 2.4.37-6Luboš Uhliarik - 2.4.37-5Luboš Uhliarik - 2.4.37-4Luboš Uhliarik - 2.4.37-3Joe Orton - 2.4.37-2Lubos Uhliarik - 2.4.37-1Luboš Uhliarik - 2.4.35-10Lubos Uhliarik - 2.4.35-9Joe Orton - 2.4.35-7Joe Orton - 2.4.35-5Lubos Uhliarik - 2.4.35-4Lubos Uhliarik - 2.4.35-3Lubos Uhliarik - 2.4.35-2Lubos Uhliarik - 2.4.35-1Lubos Uhliarik - 2.4.33-4Joe Orton - 2.4.33-3Luboš Uhliarik - 2.4.33-2Joe Orton - 2.4.28-8Luboš Uhliarik - 2.4.28-2Luboš Uhliarik - 2.4.28-1Joe Orton - 2.4.27-14Joe Orton - 2.4.27-13Joe Orton - 2.4.27-12Stephen Gallagher - 2.4.27-11Jeroen van Meeuwen - 2.4.27-10Joe Orton - 2.4.27-9Jeroen van Meeuwen - 2.4.27-8Stephen Gallagher - 2.4.27-8.1Joe Orton - 2.4.27-8.1Joe Orton - 2.4.27-7Fedora Release Engineering - 2.4.27-6Fedora Release Engineering - 2.4.27-5Joe Orton - 2.4.27-4Joe Orton - 2.4.27-3Luboš Uhliarik - 2.4.27-2Luboš Uhliarik - 2.4.27-1Joe Orton - 2.4.26-2Luboš Uhliarik - 2.4.26-1Joe Orton - 2.4.25-10Joe Orton - 2.4.25-9Joe Orton - 2.4.25-8Luboš Uhliarik - 2.4.25-7Luboš Uhliarik - 2.4.25-6Joe Orton - 2.4.25-5Fedora Release Engineering - 2.4.25-4Joe Orton - 2.4.25-3Luboš Uhliarik - 2.4.25-2Luboš Uhliarik - 2.4.25-1Luboš Uhliarik - 2.4.23-7Joe Orton - 2.4.23-6Joe Orton - 2.4.23-5Joe Orton - 2.4.23-4Joe Orton - 2.4.23-3Joe Orton - 2.4.23-2Joe Orton - 2.4.23-1Joe Orton - 2.4.18-6Joe Orton - 2.4.18-5Joe Orton - 2.4.18-4Joe Orton - 2.4.18-3Fedora Release Engineering - 2.4.18-2Jan Kaluza - 2.4.18-1Joe Orton - 2.4.17-4Jan Kaluza - 2.4.17-3Jan Kaluza - 2.4.17-2Joe Orton - 2.4.17-1Jan Kaluza - 2.4.12-4Joe Orton - 2.4.12-3Fedora Release Engineering - 2.4.12-2Jan Kaluza - 2.4.12-1Jan Kaluza - 2.4.10-17Jan Kaluza - 2.4.10-16Jan Kaluza - 2.4.10-15Joe Orton - 2.4.10-14Jan Kaluza - 2.4.10-13Jan Kaluza - 2.4.10-12Jan Kaluza - 2.4.10-11Jan Kaluza - 2.4.10-10Joe Orton - 2.4.10-9Joe Orton - 2.4.10-8Jan Kaluza - 2.4.10-7Joe Orton - 2.4.10-6Fedora Release Engineering - 2.4.10-5Jan Kaluza - 2.4.10-4Jan Kaluza - 2.4.10-3Joe Orton - 2.4.10-2Joe Orton - 2.4.10-1Jan Kaluza - 2.4.9-8Jan Kaluza - 2.4.9-7Jan Kaluza - 2.4.9-6Joe Orton - 2.4.9-5Fedora Release Engineering - 2.4.9-4Jan Kaluza - 2.4.9-3Jan Kaluza - 2.4.9-2Jan Kaluza - 2.4.9-1Joe Orton - 2.4.7-6Stephen Gallagher 2.4.7-5Jan Kaluza - 2.4.7-4Jan Kaluza - 2.4.7-3Joe Orton - 2.4.7-2Joe Orton - 2.4.7-1Joe Orton - 2.4.6-10Joe Orton - 2.4.6-9Joe Orton - 2.4.6-8Jan Kaluza - 2.4.6-7Joe Orton - 2.4.6-6Jan kaluza - 2.4.6-5Joe Orton - 2.4.6-4Jan Kaluza - 2.4.6-3Jan Kaluza - 2.4.6-2Joe Orton - 2.4.6-1Jan Kaluza - 2.4.4-12Joe Orton - 2.4.4-11Joe Orton - 2.4.4-10Joe Orton - 2.4.4-9Jan Kaluza - 2.4.4-8Jan Kaluza - 2.4.4-7Jan Kaluza - 2.4.4-6Jan Kaluza - 2.4.4-5Jan Kaluza - 2.4.4-4Jan Kaluza - 2.4.4-3Joe Orton - 2.4.4-2Joe Orton - 2.4.4-1Joe Orton - 2.4.3-17Fedora Release Engineering - 2.4.3-16Joe Orton - 2.4.3-15Joe Orton - 2.4.3-14Joe Orton - 2.4.3-13Joe Orton - 2.4.3-12Joe Orton - 2.4.3-11Joe Orton - 2.4.3-10Joe Orton - 2.4.3-9Joe Orton - 2.4.3-8Joe Orton - 2.4.3-7Jan Kaluza - 2.4.3-6Joe Orton - 2.4.3-5Joe Orton - 2.4.3-4Jan Kaluza - 2.4.3-3Joe Orton - 2.4.3-2Joe Orton - 2.4.3-1Joe Orton - 2.4.2-23Fedora Release Engineering - 2.4.2-22Joe Orton - 2.4.2-21Joe Orton - 2.4.2-20Joe Orton - 2.4.2-19Joe Orton - 2.4.2-18Joe Orton - 2.4.2-17Joe Orton - 2.4.2-16Joe Orton - 2.4.2-15Joe Orton - 2.4.2-14Joe Orton - 2.4.2-13Joe Orton - 2.4.2-12Joe Orton - 2.4.2-11Joe Orton - 2.4.2-10Joe Orton - 2.4.2-9Joe Orton - 2.4.2-8Joe Orton - 2.4.2-7Joe Orton - 2.4.2-6Joe Orton - 2.4.2-5Joe Orton - 2.4.2-4Joe Orton - 2.4.2-3Joe Orton - 2.4.2-2Jan Kaluza - 2.4.2-1Joe Orton - 2.4.1-6Joe Orton - 2.4.1-5Joe Orton - 2.4.1-4Joe Orton - 2.4.1-3Joe Orton - 2.4.1-2Joe Orton - 2.4.1-1Joe Orton - 2.2.22-2Joe Orton - 2.2.22-1Petr Pisar - 2.2.21-8Jan Kaluza - 2.2.21-7Joe Orton - 2.2.21-6Fedora Release Engineering - 2.2.21-5Jan Kaluza - 2.2.21-4Jan Kaluza - 2.2.21-3Ville Skyttä - 2.2.21-2Joe Orton - 2.2.21-1Joe Orton - 2.2.20-1Jan Kaluza - 2.2.19-5Iain Arnell 1:2.2.19-4Jan Kaluza - 2.2.19-3Jan Kaluza - 2.2.19-2Joe Orton - 2.2.19-1Joe Orton - 2.2.17-13Joe Orton - 2.2.17-12Joe Orton - 2.2.17-11Joe Orton - 2.2.17-10Joe Orton - 2.2.17-9Fedora Release Engineering - 2.2.17-8Joe Orton - 2.2.17-7Joe Orton - 2.2.17-6Joe Orton - 2.2.17-5Joe Orton - 2.2.17-4Joe Orton - 2.2.17-3Joe Orton - 2.2.17-2Joe Orton - 2.2.17-1Joe Orton - 2.2.16-2Joe Orton - 2.2.16-1Joe Orton - 2.2.15-3Robert Scheck - 2.2.15-1- change for CentOS Stream Branding- Resolves: #2221083 - Apache Bug 57087: mod_proxy_fcgi doesn't send cgi CONTENT_LENGTH variable when the client request used Transfer-Encoding:chunked- Fix issue found by covscan - Related: #2159603- Another rebuild because of mistake in workflow - Related: #2159603- Rebuild because of mistake in workflow - Related: #2159603- Resolves: #2159603 - mod_status lists BusyWorkers IdleWorkers keys twice- Resolves: #2176723 - CVE-2023-27522 httpd:2.4/httpd: mod_proxy_uwsgi HTTP response splitting- Resolves: #2190133 - mod_rewrite regression with CVE-2023-25690- Resolves: #2177748 - CVE-2023-25690 httpd:2.4/httpd: HTTP request splitting with mod_rewrite and mod_proxy- Resolves: #2162499 - CVE-2006-20001 httpd: mod_dav: out-of-bounds read/write of zero byte - Resolves: #2162485 - CVE-2022-37436 httpd: mod_proxy: HTTP response splitting - Resolves: #2162509 - CVE-2022-36760 httpd: mod_proxy_ajp: Possible request smuggling- Resolves: #2155961 - prevent sscg creating /dhparams.pem- Resolves: #2095650 - Dependency from mod_http2 on httpd broken- Resolves: #2050888 - httpd with SSL fails to start unless hostname command was installed- Add the SNI support in mod_proxy_wstunnel module for Apache httpd - Resolves: rhbz#2017543- Resolves: #2097015 - CVE-2022-28614 httpd:2.4/httpd: out-of-bounds read via ap_rwrite() - Resolves: #2097031 - CVE-2022-28615 httpd:2.4/httpd: out-of-bounds read in ap_strcmp_match() - Resolves: #2097458 - CVE-2022-30522 httpd:2.4/httpd: mod_sed: DoS vulnerability - Resolves: #2097480 - CVE-2022-30556 httpd:2.4/httpd: mod_lua: Information disclosure with websockets - Resolves: #2098247 - CVE-2022-31813 httpd:2.4/httpd: mod_proxy: X-Forwarded-For dropped by hop-by-hop mechanism - Resolves: #2097451 - CVE-2022-29404 httpd:2.4/httpd: mod_lua: DoS in r:parsebody - Resolves: #2096997 - CVE-2022-26377 httpd:2.4/httpd: mod_proxy_ajp: Possible request smuggling- Resolves: #2065237 - CVE-2022-22719 httpd:2.4/httpd: mod_lua: Use of uninitialized value of in r:parsebody - Resolves: #2065267 - CVE-2022-22721 httpd:2.4/httpd: core: Possible buffer overflow with very large or unlimited LimitXMLRequestBody - Resolves: #2065324 - CVE-2022-23943 httpd:2.4/httpd: mod_sed: Read/write beyond bounds- Resolves: #2090848 - CVE-2020-13950 httpd:2.4/httpd: mod_proxy NULL pointer dereference- Resolves: #2065249 - CVE-2022-22720 httpd:2.4/httpd: HTTP request smuggling vulnerability in Apache HTTP Server 2.4.52 and earlier- Resolves: #2035030 - CVE-2021-44224 httpd:2.4/httpd: possible NULL dereference or SSRF in forward proxy configurations- Resolves: #2035063 - CVE-2021-44790 httpd:2.4/httpd: mod_lua: possible buffer overflow when parsing multipart content- Resolves: #2007199 - CVE-2021-36160 httpd:2.4/httpd: mod_proxy_uwsgi: out-of-bounds read via a crafted request uri-path - Resolves: #1972491 - CVE-2021-33193 httpd:2.4/mod_http2: Request splitting via HTTP/2 method injection and mod_proxy- Resolves: #1968278 - CVE-2020-35452 httpd:2.4/httpd: Single zero byte stack overflow in mod_auth_digest - Resolves: #2001046 - Apache httpd OOME with mod_dav in RHEL 8 - Resolves: #2005128 (CVE-2021-34798) - CVE-2021-34798 httpd: NULL pointer dereference via malformed requests - Resolves: #1984828 - mod_proxy_hcheck piles up health checks leading to high memory consumption - Resolves: #2005119 - CVE-2021-39275 httpd: out-of-bounds write in ap_escape_quotes() via malicious input- Related: #2007236 - CVE-2021-40438 httpd:2.4/httpd: mod_proxy: SSRF via a crafted request uri-path- Resolves: #2007236 - CVE-2021-40438 httpd:2.4/httpd: mod_proxy: SSRF via a crafted request uri-path - Resolves: #1969229 - CVE-2021-26691 httpd:2.4/httpd: Heap overflow in mod_session- Resolves: #1680111 - httpd sends reply to HTTPS GET using two TLS records - Resolves: #1905613 - mod_ssl does not like valid certificate chain - Resolves: #1935742 - [RFE] backport samesite/httponly/secure flags for usertrack - Resolves: #1972500 - CVE-2021-30641 httpd:2.4/httpd: MergeSlashes regression - Resolves: #1968307 - CVE-2021-26690 httpd:2.4/httpd: mod_session NULL pointer dereference in parser - Resolves: #1934741 - Apache trademark update - new logo- Resolves: #1952557 - mod_proxy_wstunnel.html is a malformed XML - Resolves: #1937334 - SSLProtocol with based virtual hosts- prevent htcacheclean from while break when first file processed- Resolves: #1918741 - Thousands of /tmp/modproxy.tmp.* files created by apache- Resolves: #1883648 - [RFE] Update httpd directive SSLProxyMachineCertificateFile to be able to handle certs without matching private key- Resolves: #1896176 - [RFE] ProxyWebsocketIdleTimeout from httpd mod_proxy_wstunnel - Resolves: #1847585 - mod_ldap: High CPU usage at apr_ldap_rebind_remove()- Resolves: #1651376 - centralizing default index.html for httpd- Resolves: #1868608 - Intermittent Segfault in Apache httpd due to pool concurrency issues - Resolves: #1861380 - httpd/mod_proxy_http/mod_ssl aborted when sending a client cert to backend server - Resolves: #1680118 - unorderly connection close when client attempts renegotiation- Resolves: #1677590 - CVE-2018-17199 httpd:2.4/httpd: mod_session_cookie does not respect expiry time - Resolves: #1869075 - CVE-2020-11984 httpd:2.4/httpd: mod_proxy_uswgi buffer overflow - Resolves: #1872828 - httpd: typo in htpasswd, contained in httpd-tools package - Resolves: #1869576 - httpd : mod_proxy should allow to specify Proxy-Authorization in ProxyRemote directive - Resolves: #1875844 - mod_cgid takes CGIDScriptTimeout x 2 seconds for timeout - Resolves: #1891829 - mod_proxy_hcheck Doesn't perform checks when in a balancer- Resolves: #1209162 - support logging to journald from CustomLog- Resolves: #1823263 (CVE-2020-1934) - CVE-2020-1934 httpd: mod_proxy_ftp use of uninitialized value- Related: #1771847 - BalancerMember ping parameter for mod_proxy_http doesn't work- Resolves: #1823259 - CVE-2020-1927 httpd:2.4/httpd: mod_rewrite configurations vulnerable to open redirect - Resolves: #1747284 - CVE-2019-10098 httpd:2.4/httpd: mod_rewrite potential open redirect - Resolves: #1747281 - CVE-2019-10092 httpd:2.4/httpd: limited cross-site scripting in mod_proxy error page - Resolves: #1747291 - CVE-2019-10097 httpd:2.4/httpd: null-pointer dereference in mod_remoteip - Resolves: #1771847 - BalancerMember ping parameter for mod_proxy_http doesn't work - Resolves: #1794728 - Backport of SessionExpiryUpdateInterval directive- Resolves: #1775158 - POST request with TLS 1.3 PHA client auth fails: Re-negotiation handshake failed: Client certificate missing- Resolves: #1704317 - Add support for SSLKEYLOGFILE- mod_cgid: enable fd passing (#1633224)- Resolves: #1744121 - Unexpected OCSP in proxy SSL connection - Resolves: #1725031 - htpasswd: support SHA-x passwords for FIPS compatibility - Resolves: #1633224 - mod_cgid logging issues- remove bundled mod_md module - Related: #1747898 - add mod_md package- Resolves: #1744999 - CVE-2019-9511 httpd:2.4/mod_http2: HTTP/2: large amount of data request leads to denial of service - Resolves: #1745086 - CVE-2019-9516 httpd:2.4/mod_http2: HTTP/2: 0-length headers leads to denial of service - Resolves: #1745154 - CVE-2019-9517 httpd:2.4/mod_http2: HTTP/2: request for large response leads to denial of service- Resolves: #1730721 - absolute path used for default state and runtime dir by default- Resolves: #1724549 - httpd response contains garbage in Content-Type header- Resolves: #1696142 - CVE-2019-0217 httpd:2.4/httpd: mod_auth_digest: access control bypass due to race condition - Resolves: #1696097 - CVE-2019-0220 httpd:2.4/httpd: URL normalization inconsistency - Resolves: #1669221 - `ExtendedStatus Off` directive when using mod_systemd causes systemctl to hang - Resolves: #1673022 - httpd can not be started with mod_md enabled- Resolves: #1695432 - CVE-2019-0211 httpd: privilege escalation from modules scripts - Resolves: #1696091 - CVE-2019-0215 httpd:2.4/httpd: mod_ssl: access control bypass when using per-location client certification authentication- Resolves: #1672977 - state-dir corruption on reload- Resolves: #1670716 - Coredump when starting in FIPS mode- add security fix for CVE-2019-0190 (#1671282)- add DefaultStateDir/ap_state_dir_relative() (#1653009) - mod_dav_fs: use state dir for default DAVLockDB - mod_md: use state dir for default MDStoreDir- add httpd.conf(5) (#1611361)- Resolves: #1652966 - Missing RELEASE in http header- Resolves: #1641951 - No Documentation= line in htcacheclean.service files- Resolves: #1643713 - TLS connection allowed while all protocols are forbidden- mod_ssl: fix off-by-one causing crashes in CGI children (#1649428)- Resolves: #1644625 - httpd rebase to 2.4.37- Related: #1493510 - RFE: httpd, add IP_FREEBIND support for Listen- mod_ssl: allow sending multiple CA names which differ only in case- mod_ssl: drop SSLRandomSeed from default config (#1638730) - mod_ssl: follow OpenSSL protocol defaults if SSLProtocol is not configured (Rob Crittenden, #1638738)- mod_ssl: don't require SSLCryptoDevice to be set for PKCS#11 cert- Resolves: #1635681 - sync with Fedora 28/29 httpd - comment-out SSLProtocol, SSLProxyProtocol from ssl.conf in default configuration; now follow OpenSSL system default (#1468322) - dropped NPN support - mod_md: change hard-coded default MdStoreDir to state/md (#1563846) - don't block on service try-restart in posttrans scriptlet - build and load mod_brotli - mod_systemd: show bound ports in status and log to journal at startup - updated httpd.service.xml man page - tweak wording in privkey passphrase prompt - drop sslmultiproxy patch - apachectl: don't read /etc/sysconfig/httpd - drop irrelevant Obsoletes for devel subpackage - move instantiated httpd@.service to main httpd package- Resolves: #1602548 - various covscan fixes- apache httpd can work with TLS 1.3 (#1617997) - drop SSLv3 support patch- new version 2.4.35 (#1632754)- mod_ssl: enable SSLv3 and change behavior of "SSLProtocol All" configuration (#1622630)- mod_ssl: add PKCS#11 cert/key support (Anderson Sasaki, #1527084)- new version 2.4.33 - add mod_md subpackage; load mod_proxy_uwsgi by default- remove %ghosted /etc/sysconfig/httpd (#1572676)- Resolves: #1512563 - httpd: update welcome page branding - Resolves: #1511123 - RFE: httpd use event MPM by default - Resolves: #1493510 - RFE: httpd, add IP_FREEBIND support for Listen- new version 2.4.28- add notes on enabling httpd_graceful_shutdown boolean for prefork- drop Requires(post) for mod_ssl- better error handling in httpd-ssl-gencerts (#1494556)- Require sscg 2.2.0 for creating service and CA certificates together- Address CVE-2017-9798 by applying patch from upstream (#1490344)- use sscg defaults; append CA cert to generated cert - document httpd-init.service in httpd-init.service(8)- Address CVE-2017-9798 by applying patch from upstream (#1490344)- Generate SSL certificates on service start, not %posttrans- move httpd.service.d, httpd.socket.d dirs to -filesystem- add new content-length filter (upstream PR 61222)- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- update mod_systemd (r1802251)- switch to event by default for Fedora 27 and later (#1471708)- Resolves: #1469959 - httpd update cleaned out /etc/sysconfig- new version 2.4.27- mod_proxy_fcgi: fix further regressions (PR 61202)- new version 2.4.26- move unit man pages to section 8, add as Documentation= in units- add httpd.service(5) and httpd.socket(5) man pages- require mod_http2, now packaged separately- Resolves: #1397243 - Backport Apache Bug 53098 - mod_proxy_ajp: patch to set worker secret passed to tomcat- Resolves: #1434916 - httpd.service: Failed with result timeout- link only httpd, not support/* against -lselinux -lsystemd- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- mod_watchdog: restrict thread lifetime (#1410883)- Resolves: #1358875 - require nghttp2 >= 1.5.0- new version 2.4.25- Resolves: #1401530 - CVE-2016-8740 httpd: Incomplete handling of LimitRequestFields directive in mod_http2- fix build with OpenSSL 1.1 (#1392900) - fix typos in ssl.conf (josef randinger, #1379407)- no longer package /etc/sysconfig/httpd - synch ssl.conf with upstream- add security fix for CVE-2016-5387- load mod_watchdog by default (#1353582)- restore build of mod_proxy_fdpass (#1325883) - improve check tests to catch configured-but-not-built modules- update to 2.4.23 (#1325883, #1353203) - load mod_proxy_hcheck - recommend use of "systemctl edit" in httpd.service- have "apachectl graceful" start httpd if not running, per man page- use redirects for lang-specific /manual/ URLs- fix welcome page HTML validity (Ville Skyttä)- remove httpd pre script (duplicate of httpd-filesystem's) - in httpd-filesystem pre script, create group/user iff non-existent- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- update to new version 2.4.18- re-enable mod_asis due to popular demand (#1284315)- fix crash when using -X argument (#1272234)- rebase socket activation patch to 2.4.17- update to 2.4.17 (#1271224) - build, load mod_http2 - don't build mod_asis, mod_file_cache - load mod_cache_socache, mod_proxy_wstunnel by default - check every built mod_* is configured - synch ssl.conf with upstream; disable SSLv3 by default- update to 2.4.16- mod_ssl: use "localhost" in the dummy SSL cert if len(FQDN) > 59 chars- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- update to 2.4.12- fix compilation with lua-5.3- remove filter for auto-provides of httpd modules, it is not needed since F20- core: fix bypassing of mod_headers rules via chunked requests (CVE-2013-5704) - mod_cache: fix NULL pointer dereference on empty Content-Type (CVE-2014-3581) - mod_proxy_fcgi: fix a potential crash with long headers (CVE-2014-3583) - mod_lua: fix handling of the Require line when a LuaAuthzProvider is used in multiple Require directives with different arguments (CVE-2014-8109)- require apr-util 1.5.x- use NoDelay and DeferAcceptSec in httpd.socket- increase suexec minimum acceptable uid/gid to 1000 (#1136391)- fix hostname requirement and conflict with openssl-libs- use KillMode=mixed in httpd.service (#1135122)- set vstring based on /etc/os-release (Pat Riehecky, #1114539)- pull in httpd-filesystem as Requires(pre) (#1128328) - fix cipher selection in default ssl.conf, depend on new OpenSSL (#1134348) - require hostname for mod_ssl post script (#1135118)- mod_systemd: updated to the latest version - use -lsystemd instead of -lsystemd-daemon (#1125084) - fix possible crash in SIGINT handling (#958934)- mod_ssl: treat "SSLCipherSuite PROFILE=..." as special (#1109119) - switch default ssl.conf to use PROFILE=SYSTEM (#1109119)- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- add /usr/bin/useradd dependency to -filesystem requires- fix creating apache user in pre script (#1128328)- enable mod_request by default for mod_auth_form - move disabled-by-default modules from 00-base.conf to 00-optional.conf- update to 2.4.10 - expand variables in docdir example configs- add support for systemd socket activation (#1111648)- remove conf.modules.d from httpd-filesystem subpackage (#1081453)- add httpd-filesystem subpackage (#1081453)- mod_ssl: don't use the default OpenSSL cipher suite in ssl.conf (#1109119)- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- add support for SetHandler + proxy (#1078970)- move macros from /etc/rpm to macros.d (#1074277) - remove unused patches- update to 2.4.9- use 2048-bit RSA key with SHA-256 signature in dummy certificate- Create drop directory for systemd snippets- remove provides of old MMN, because it contained double-dash (#1068851)- fix graceful restart using legacy actions- conflict with pre-1.5.0 APR - fix sslsninotreq patch- update to 2.4.7 (#1034071)- switch to requiring system-logos-httpd (#1031288)- change mmnisa to drop "-" altogether- drop ambiguous invalid "-" in RHS of httpd-mmn Provide, keeping old Provide for transition- systemd: use {MAINPID} notation to ensure /bin/kill has always the second arg- mod_ssl: allow SSLEngine to override Listen-based default (r1537535)- systemd: send SIGWINCH signal without httpd -k in ExecStop- load mod_macro by default (#998452) - add README to conf.modules.d - mod_proxy_http: add possible fix for threading issues (r1534321) - core: add fix for truncated output with CGI scripts (r1530793)- require fedora-logos-httpd (#1009162)- revert fix for dumping vhosts twice- update to 2.4.6 - mod_ssl: use revised NPN API (r1487772)- mod_unique_id: replace use of hostname + pid with PRNG output (#976666) - apxs: mention -p option in manpage- add patch for aarch64 (Dennis Gilmore, #925558)- remove duplicate apxs man page from httpd-tools- remove zombie dbmmanage script- return 400 Bad Request on malformed Host header- ignore /etc/sysconfig/httpd and document systemd way of setting env variables in this file- htpasswd/htdbm: fix hash generation bug (#956344) - do not dump vhosts twice in httpd -S output (#928761) - mod_cache: fix potential crash caused by uninitialized variable (#954109)- execute systemctl reload as result of apachectl graceful - mod_ssl: ignore SNI hints unless required by config - mod_cache: forward-port CacheMaxExpire "hard" option - mod_ssl: fall back on another module's proxy hook if mod_ssl proxy is not configured.- fix service file to not send SIGTERM after ExecStop (#906321, #912288)- protect MIMEMagicFile with IfModule (#893949)- really package mod_auth_form in mod_session (#915438)- update to 2.4.4 - fix duplicate ownership of mod_session config (#914901)- add mod_session subpackage, move mod_auth_form there (#894500)- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild- add systemd service for htcacheclean- drop patch for r1344712- filter mod_*.so auto-provides (thanks to rcollet) - pull in syslog logging fix from upstream (r1344712)- rebuild to pick up new apr-util-ldap- rebuild- pull upstream patch r1392850 in addition to r1387633- define PLATFORM in os.h using vendor string- use systemd script unconditionally (#850149)- use systemd scriptlets if available (#850149) - don't run posttrans restart if /etc/sysconfig/httpd-disable-posttrans exists- use systemctl from apachectl (#842736)- fix some error log spam with graceful-stop (r1387633) - minor mod_systemd tweaks- use IncludeOptional for conf.d/*.conf inclusion- adding mod_systemd to integrate with systemd better- mod_ssl: add check for proxy keypair match (upstream r1374214)- update to 2.4.3 (#849883) - own the docroot (#848121)- add mod_proxy fixes from upstream (r1366693, r1365604)- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- drop explicit version requirement on initscripts- mod_ext_filter: fix error_log warnings- support "configtest" and "graceful" as initscripts "legacy actions"- avoid use of "core" GIF for a "core" directory (#168776) - drop use of "syslog.target" in systemd unit file- use _unitdir for systemd unit file - use /run in unit file, ssl.conf- mod_ssl: fix NPN patch merge- move tmpfiles.d fragment into /usr/lib per new guidelines - package /run/httpd not /var/run/httpd - set runtimedir to /run/httpd likewise- fix htdbm/htpasswd crash on crypt() failure (#818684)- pull fix for NPN patch from upstream (r1345599)- update suexec patch to use LOG_AUTHPRIV facility- really fix autoindex.conf (thanks to remi@)- fix autoindex.conf to allow symlink to poweredby.png- suexec: use upstream version of patch for capability bit support- suexec: use syslog rather than suexec.log, drop dac_override capability- mod_ssl: add TLS NPN support (r1332643, #809599)- add BR on APR >= 1.4.0- use systemctl from logrotate (#221073)- pull from upstream: * use TLS close_notify alert for dummy_connection (r1326980+) * cleanup symbol exports (r1327036+)- really fix restart- tweak default ssl.conf - fix restart handling (#814645) - use graceful restart by default- update to 2.4.2- fix macros- add _httpd_moddir to macros- fix symlink for poweredby.png - fix manual.conf- add mod_proxy_html subpackage (w/mod_proxy_html + mod_xml2enc) - move mod_ldap, mod_authnz_ldap to mod_ldap subpackage- clean docroot better - ship proxy, ssl directories within /var/cache/httpd - default config: * unrestricted access to (only) /var/www * remove (commented) Mutex, MaxRanges, ScriptSock * split autoindex config to conf.d/autoindex.conf - ship additional example configs in docdir- update to 2.4.1 - adopt upstream default httpd.conf (almost verbatim) - split all LoadModules to conf.modules.d/*.conf - include conf.d/*.conf at end of httpd.conf - trim %changelog- fix build against PCRE 8.30- update to 2.2.22- Rebuild against PCRE 8.30- fix #783629 - start httpd after named- complete conversion to systemd, drop init script (#770311) - fix comments in /etc/sysconfig/httpd (#771024) - enable PrivateTmp in service file (#781440) - set LANG=C in /etc/sysconfig/httpd- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- fix #751591 - start httpd after remote-fs- allow change state of BalancerMember in mod_proxy_balancer web interface- Make mmn available as %{_httpd_mmn}. - Add .svgz to AddEncoding x-gzip example in httpd.conf.- update to 2.2.21- update to 2.2.20 - fix MPM stub man page generation- fix #707917 - add httpd-ssl-pass-dialog to ask for SSL password using systemd- rebuild while rpm-4.9.1 is untagged to remove trailing slash in provided directory names- fix #716621 - suexec now works without setuid bit- fix #689091 - backported patch from 2.3 branch to support IPv6 in logresolve- update to 2.2.19 - enable dbd, authn_dbd in default config- fix path expansion in service files- add systemd service files (#684175, thanks to Jóhann B. Guðmundsson)- minor updates to httpd.conf - drop old patches- rebuild- use arch-specific mmn- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- generate dummy mod_ssl cert with CA:FALSE constraint (#667841) - add man page stubs for httpd.event, httpd.worker - drop distcache support - add STOP_TIMEOUT support to init script- update default SSLCipherSuite per upstream trunk- fix requires (#667397)- de-ghost /var/run/httpd- add tmpfiles.d configuration, ghost /var/run/httpd (#656600)- drop setuid bit, use capabilities for suexec binary- update to 2.2.17- link everything using -z relro and -z now- update to 2.2.16- default config tweaks: * harden httpd.conf w.r.t. .htaccess restriction (#591293) * load mod_substitute, mod_version by default * drop proxy_ajp.conf, load mod_proxy_ajp in httpd.conf * add commented list of shipped-but-unloaded modules * bump up worker defaults a little * drop KeepAliveTimeout to 5 secs per upstream - fix LSB compliance in init script (#522074) - bundle NOTICE in -tools - use init script in logrotate postrotate to pick up PIDFILE - drop some old Obsoletes/Conflicts- update to 2.2.15 (#572404, #579311) 2.4.37-62.module_el8+657+88b2113f2.4.37-62.module_el8+657+88b2113f2.4.37-62.module_el8+657+88b2113f01-session.conf.build-id4d5b3b44f5164e8bfe9a4554154f60db02ea5a4c8932b45cdd753b0fb0796434e8ef27cd62e624df4f6af21d09574eb71dae3bee67ef64f637cc22365daaf38b40a3ecaaefc40e94a8634f75c1b21712c3a93d3570cff2e3ef41ab1eb0c6eamod_auth_form.somod_session.somod_session_cookie.somod_session_crypto.somod_session_dbd.so/etc/httpd/conf.modules.d//usr/lib//usr/lib/.build-id/41//usr/lib/.build-id/6e//usr/lib/.build-id/76//usr/lib/.build-id/8f//usr/lib/.build-id/d2//usr/lib64/httpd/modules/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protectioncpioxz2aarch64-redhat-linux-gnuASCII textdirectoryELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=6e4c8932b45cdd753b0fb0796434e8ef27cd62e6, strippedELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=7624df4f6af21d09574eb71dae3bee67ef64f637, strippedELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=414d5b3b44f5164e8bfe9a4554154f60db02ea5a, strippedELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=d2c1b21712c3a93d3570cff2e3ef41ab1eb0c6ea, strippedELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=8fcc22365daaf38b40a3ecaaefc40e94a8634f75, stripped RRRRRR RRRRRR RRRRRR RRRRRR RRRRRR utf-8c988f01912b131533cb655bd5db1a81fbad98d477461a1328b7ffe95112e1506httpd:2.4:820230817140043:9edba152?07zXZ !#,UWy] b2u Q{LVyS_YtDvC5@Gw@UjZ$Vtפ.)BdzUm7-ͩ ;[)-YnޡK L9`:{|iƝt\Ŭj&28_/8ƓPT1|V+ȏ̲&m,߅*Rj9,QTE'EkMגY {],GD%nHI>W-y8_e,K' V4yxSx+T@p=1رC,Iq6[>'A/U;pdi^7/wY_{1y^SЊ饄j$2_XMʿ;mp>V[$HQXCs -PhBwH1 Z7;PW4`}q-f&HvjQx3"ˌc)]$ٛ`nN[[(w{=8cgzM13Vȱ Ft wn4p8oGnpCF3YQ'$qY(Ve'ƾa`n,bW0xCe]+祮]{4~\CCokp\\_/5Ong~<-b e[%5ˀL+0x~[e+7S v?RUFk,Z,ӜZ$؀AWӳMS'l| V@eƽ; KBxvRYo /gjΣK@iZVő_3Z,cZ#G爠gYo?[foTMT])'x8H TwǕ JxznԛЀ2WH Oqs:UBdI)yFу;#!. lJm1˞Y,RwDtk6~RzfA2e9BJ%wD//"ΘLW7oo\_)+]p&&up@ku;Kk>sO/ER|% 6uDAdI:~?h{ :F/?jAnwA@ %\ ӝ;g{(/Q{&@eX(,*qn;im01ZN)#19*=fC-XV|5b;̦@ꪍ=U b"֙3 RM1i\%%N(:b FsMc|d(IǴLMgj(FKB]x*;C-GQqw b?NCn=Xz$Oun'tؘdy,aITfa}8^#J'Y02$ xNQE;Q 7wWF@#2[1272-J\OΗf*UCMUZZ7 (pl}ofPgVf0b!;zpt K=krq?>ggW!tmdҧȖu: ΰruv}d2^ L#f9_sNid u옻NS{\ԩh劅֬-qJttK\W3RsfVA0 'Y̳[)̱ˮTs&ppn!s]=rmj̥l,F w))N B; vp؉TgzBAߜTΊz\]uR~;u WqLu(glrW$]\"A%ØմW.%of'zP:[-[[k9r`Bjw:D&`.&тȊ&Hڳa0[F#i1 8=*_#}`Cȟ>t784aHNжe+JYv%@j) kʹ85@^=,ez6BWuX=Z;@8y(}6U~$$9S-OrSbhSM6aewRqHhO[¥"J oV};lK+"s2x=~t0)q"hg" ֳ@ųSec2/[08}67b~$w(PfnFTBg`hoJNa<]rn RFW̳`.c9pb(0oieXpxWn+O$gZFPDzWT%LU~աX^qPF{Sn_2O懪|a~:BW=v{! ndBM~yO46\-Tד61.)s'VqJ &^g47 >6>G܄dd,q42|; 1:294~r<E񚙫}oA_!R7C;ardW"*j|¸fʪf8=.i`R*z%܍oz\DnQAEGdNys#:1N,E^߄ql%"I؋Hdʑ)ëmr`_MWќE'eiu7} S1)-W,A%_?G _@A7 PӀρQ8;2.s t]F].ȫrv0rFHf TB¹VlN~^wE<|lSp/GH{]P-qiB1ݝrC`]48٬+ZT$DHUV[rg$vDŽ {;aSkQsk,JS,kOa\#:3'Ly$g`ԳY> zK:('\ÄL$i'HFH?O=RW|3qE?N/ZHTU9ʼZ貋5!<9':'^ 7K]}n1IXq-ϡÖğR|`jjhĬUꌞ,X[ RMC,uH- 9YRՋZ2@Yq teTXٱ;tcp|=x:-m޿Nh`eFN(P+Ԥ߀}ȧˮ, e&j`fJm&q5$*xCUvbL8Yc:t+S n!Oq,.۩i/^,Po7ܸ$2k`3^6Zr1f(Gþ}q~Q QEn7[ VQ5qo@YёU~2T k >.IG$`UtU):UI_mؔH~*b?i#B<%  >~hUɐN.+W_O/ͧcF}I<`_QJCJVm$g.%&쭠o?BO vRYPqVV Sn8:#'Stu$gQO乛C %gY7vF\T u8R$RRejR1Bk$ 6l3vdĚ.lyFE AQy s ˆJk]iLpbwEM~*1A c|"3!{NGdDyϸ f08乞,Ţ2ol\74]p E8^*o^]V5/iF{ ޘ$; =7"(Y^H˩w4Ų琛Tnx@bdֺ-*Yl NDiG(j6G>ꃈ5L"gF?ؐ`HiXӘvy@zYP;@g&Җ*>8|[kuλz@,pl} TcpY&Fv?DO+kߎjS6)1k! *{;chqsK#G4 [@O;px`ln$k³i"D/co,MMŎ}˪\iS\MU2J w\I>,sLV$PQE"I.w2'SLSmm \ٕ Fp΍H>FMbIQiB!ib !GTkqxGH#@nF}[6Eƛf'ɿ"͉ayQMnD'K_;xL.Sp+|?׼3(bvgUAJ~wI0lnQȅC@sww$,ÆXdPFyR}2)#P?fcJLSrp ܰ qs{hRNrqPgw{nՌHs_).K;|Vە AچB⼶:OvXy@0kjp7pL8_9 ^r B2aJҞ2y*@Q9.HlO ;uAGew^_Jf~4|VQv@0-x5rfXHأ0bZ5=?CJNz9=ƍ?UIxqeXz\nR+`JRl K^lĭ(krDHRx Zζ>(`'RM}40RN | =90`sZvs<:wg6Bu xgqbuEwC}ߦ=SPh mBv#^s?; [ɉ& n*1O?@N>5pSkD~=ĮeG >O1_5)NAEgag/ewBո|sH+'/<)on:+xؼ ρK̿Fn'ىK:'>٬, ӕɰ"4a3H݆I{F"l0N[K4Ϟ,z ʊj|j\vaҳUA;3CRjt!񱆦%TL7ev"8*+>dX 495I3)_b(8:%aCJ*⺷p<{c%0V_ w 7 DVgsrOSa}Ò GЗX/șv{3 a݇\07'M>r;nt3KoRuM^ϬfiKtJd=O>~9?S E¥*C&x!>|Q MbBwTW*ƣ?ehg =ƩhlF w% M4Ƚoԛ~ҥfIt޶<78X}E񎍾QmH'_eWf.γr)-[szO4邚DsfqPBJ#KhnMaZ`y`13bsϰX8;NB^+ Cր\Lń6AHx^ɷk;Ɏ;  )P*.ƱqdoPkx5A0`Zs*Br|,z{S y{s;*s_ Vt)s&#IXԝDSV=grk&P8C;פMbB"g+w¶$Lwzb;Z"ZY/KHs +ԯ]&.45߫;7'"#XJ̩7/ /'lpp6>hxt?W) \h%XWn†XwXq~kht_NA~-k;?ē9vo*)ƥMybߐXUGdH/!)#gݵ.%c! #\|w?r*=,܌ib*HYa7+߼#D)w>>qX)$K#{r݅fW$]Ѿxq ?Q3 KZ5K{oBd:,>`L8 -j{Μ+ t \Z}@bknyWdE٣k3G} Gmo;: w^y^TT u*{ԏ{M[cH&ͪ`Â`jRu?!)HnG[ڲh;+YW$م_vF+e5YPN$:saraSOcf[&sl;{+Sq㿽]Ose\xa7;>7jT Kl=Oς?C"9 \[*b@VmzWh[P3Oͮ~Wxh˥ҰgLGNbCv|H+.+F@Y_g鈿1d+4(d^6R>C u ghOM]M\)hѮ[C0İLz:! ci]@JrS$) Tz#+RD~)],X+lrr7 GQK{:`]=ZHyeҹ'жL'freZ֬"{?,k#NUʳq3wa%i=2;k/̪j̜Ρn#jtx&K( ,4&wfIYȲkNV7*|  ]'Ai~:IsH]zEpI3mWWMkV]+Cs9TQ5&l2QR%!mk`D4i9݋p#C'Tj޾_|:㏎/tO,]Apc8;j崁6tv˅ YR_s\!t G|p*==m|pM 8J,ڲYEtT ?#ӳ)l,B'KVsM&|GU:n׶1Qle}N>Nei[h`#kFϭb"?c#Ω8Å  5>nt1V)m VqzR7L BvtAt#_THVv] Enn! UJ r,)[Uv{K , \ i o5ms(TᏅ[`VTlnX-6; X~,z}X3:+"){H ";뱙 C]]nZ~ޜd ɋ](&nj/=M7X0Ǥ~`juAoo]UpΩ!'-}2duIiBjFTvA>0QRBbL:s GlaD O9<${I ӱZ0 2j_̣拥{0‰O%x<)Ěa'qSDÖ'OY"fḠblcX!#Z%oW%kA6OOզEAaF"-9=Y(! g\$Gt*VWn'Z^ / qK"X-Dј $:p,*`J;Wi)dgM'MW֊([@ i-{|\WbG?\rgf\YaF:4Ti}jg (=+hɛFa1fsOs@r6lRw}DNGQ{IKPH'd~O!y-p0XqPԫN%vXHX HuK@&d9 2@O9H})Iu=Jh:Yv,ZQ'c0d=KĨ=^wj eI uFR˱y 3[oH )羥 D8xe°Nֳ60缴}l]ic-o^B`ӲZ$"$qT }%hHx["Y;,X]?#phevu_lX _Ԍ1n<#Ol)$!„Q!\QQ ["%Jhu~Q": së,Ke})ndIsjׯux?1vcG3řLe2gR,w3~T] g @yW  LM+'%M tPi΄Lg&Lw-Mҏ(QdCx}}L0Qgʧ!.f-A3V?C)fVZ) 1cfj\g7ܔѴ_Ȱ8`f[ lpvcms3f4KsC&iXb!>^ϊ6axIlƄ[ S`JTېGSH2eiU MA_,. 5v;>KPJRm tHrSz|!T2㪥9%? F}?Iv ܆Ӆ)б ufgX΄A̴%{\k 5C{؛c1 oa_ [/6NY 0~(*2O( 5q]uׇp#2,(J넱9%,hL3T3`rSP ) y>Y}ai-SϝR!緃W7).ˉr|G !gukn,bZ nWWw9q03=P+ d`‰v9ho)= %]#sYlTzxp N v'\\XϷ$hڴPИă+0!%wYA݃Ҫt yhE޷?IUݓ"}56IσU~NXw{`#X893Upw/"d`?{T+/ŇP^b<[[/F( @s3GX||qSk@S䃳)Aqn+dDA{x.!AN3aׄɘhB,\^7|$Q~@AxVA㫁h- D:C3N,[Q<}A}R$,vCL5ޛCě!ITȃ$м-BH$n9cì>" %$G/q׹St2aY p8X鈿n"ɐ?Am tɷ%ɰLQg4GfWiF1r >ds e(sjFb3ZI1U%`.Zz/ꊟ})6 R;f.quUxJב>ăcpHT2+}/dXy>̋c_oIf5]@AV(6N*8M[[_]:Ig^"w`i2-A X*wCX➻r:%k3epF4Fn<+VҴgJEqM K|yY@׆A`$ʉ)C/0ʢSz>-nB6+~11ܲy%N!Vf6Fu^ "i lU90Di蝋F^v{Tt4҇aX>uC$ŭU6ne{BJ P7+KTF uo6/H[5 #BBw("hwU]AJ \z˫"u&2~LhlGE.Q`ӝ{|ḂrGwRJH /<`XN/ wlsd9&WqB9.nՅu p4h[uKKyV-p"dKMByA%4}@Fh#3xrP&aH K99Iypo'R"*ԙ!0f .yi u֏ ,5UܙOΙd  8!.߬_FnF7sAddD0[NuEqpJi@Ժոn!qI/9[ |(/K&֓^[0W|Uڅk;E&4^J bI^zSe;Mg`MZgܧ?/P(pV-u`u< P2Ig2(6ꀑT*pHaS!4lzҍf\S +c^iV9w/L %o4\"RDF'B~<7TY %bq]+L|O_<_K7)(oVfYwJRbVh BFb=PuLw=;IJ4vB-zAL;.QB͊9ME&e2[ 4YKm هJOi8F;J,2j20sdl Geu.1~vx1oq<$䁰Vc'3:>d/"ug7 8Igd۠]% ;'qbrm νJޅ՟Y{є<[N =iUR%WNnSX ks-uxrX@I<5ʓH ҹLfr)cg9Z^ϊ({}^e&iPO;T"=5&`ZuV]c6\9ç}bxr SrjʒZI"~yp xbͦf|KG"ϖ$xVuքW̵i X4:%+WuȺ*QF,MK6ߴNJ@\O6uߛr6$8 ݒP Y_iJ%0,8ve%xōn'"86DN-$bNUUOƉRhꎷ_;.}4,״{4>ʆS=V! ve+-xNeg񑭅TEbඝ~)qՄ$%B6 F+.<!;b!;R57|>_8L.' LΊ,g̥~WQSb! ].}F)?29*:*K\%1g)B7ЦĞ"lW~tL};x Ŵ5V3SQف|5͜D2!:Cm;^r@Ge@ě-|sk#J3 \,.!bH>, Kg<,z&i r>) vrߋ`( T ́^QZU5b]jbФ0Ȱal&Zy=Xb,(etWCV Q%FqU#Gjc]ʓHNV RP< $}dyd'؛#ýh3l"̙%J 尺%Zݢ8mE-Em]h8 I6y,lKw Is~d=֪‰;ɮ&T;t#eS}_\ vd|'WNcJnG:h Z[4X i{pg6/N&%v;{P.͖\D8z2!TXɚɈX顲~&U;M$\xș5ՍF '`xjL-j̈g16GL;%jqW3c s_|tGsfCe.qԫ D9r쏬ì޵ gXwAk2?cZ'Ԡ8 ",t7eȻDfMF}C F& c(iZH;M}`KtiCap;CjI Щ"3Nwށ5͚w~0Weyl~ȥlң}9v4{X;2{^M4Fm(Ni|u:q'>sMѓxÜHjwBBr?o\N?hf?9\dur)?N1![aoP;M]~f&u scC5P85Fq3s 66w fp1$#F8ὦg)L׸Wo8k P}"iɩ2K o?h+.pt"$MDMAj`}hv[G93r~` A?w\P\vYJT|ItfZ{R&wW(ɈuʑG:}Q.6EP>nؽ`y|Ó¨$l^Wa8&mH&p#C7 %5{ةWVHmON"XEUhǽJE|Po_Zmo!BFb5UDf}[*ȤhC44ubkIgo^<@ "-2(hdwQ V?˚޺F^VQJMCwJ5܎@(;[wNns';cڂ'Ws 9ql8@+<.BtFllu, yYBVc%V uB}L穽~>\R+s"^~L`oZOO3>gF!DTJSʴ`z!υO 'Rn8 5(Kr1Lyvjm WBJDP9QHӍD!Úw0j_fL9}<A$0D&μU4W 5"-R<?dorCniYZxOy0<:xo.w,|e7n&˶ ,Lʌ0^YPmiZK/ Jƥ6Eb@rPS n9ᬔQj|WlYl?2(j!ڻ- |ILѸ#i̖+0 ~LԯŻ F*͜MEvX"0fBib˓E}vg$Qlĕtc^H"v7E8@_zI7{!pqCmSB$E2i{Ȉu?X ɩreҪ"EQ/4x8ݧ\FD;T"Cİh"kR@[`O?En #/G*UZKP3hE@s#nATuI--v]Pg(EC3RO2($PwAoz_8YL{N94kBn$6`89m 069v9wM1=Ȭ>YfcsNSb㙞^cYw.sZ{፯ Lg%`->Fb "}|(ި˩@,1;hm3g \u(b3h肸$(!xQ垦 [%Q_8@ Ur%A\Y}H:0-NsrDswI7=9afN%{2,=N*nJnɠdZ?KcBϮ)Y[ Uu\ԗUxቄgr2< qq:C4.͞A\b;}29{A;b}ar>Dq?]W{=X1$Dmѐre>,z_${ֱ†%*Vf{|ĕ|RFPq{هs>y,ECPr7G[ :IZ?9S!N{୕b"Gi3DqѬ),%o8r܀i"C <9X^3Htqtj\f ţuhugk D 6iOI$*/~2YB|Z^Jh: o~IJIy/6kg1.\7OR=gIn]P98AVc2wԁO媕V 5IX'<@Ew '%3nH.U'om[k"ʎYBG!^ƿ2L 8gؚˋ(׮ }&]O:[pgەd5`iP*k(! AD\ƷĽV nNX Nyճ(}{,&+t]3w@!3Æ2n/cfM\+_ϺuTD]bMϽ]3I_s|n=?96INn4^X5ieP kc[)DfqU&1>ȱe+z6a85; W0ԅq0pv%=NWB=}p #^}f `!_jBP:kUх{.("1tpɈaQlFx scxi N{T3u͗nE|t=Epgf<-*d-00,0J5Vu3!AKݥl_IuM&j ˨Gv>5qօ8mS+4AǬmB@}\bz#`MM:ZbPm;3&KF 1cNixiҾvnyi(SGrže8~|]v1kN8w0a{uHbp޽6'&s81e-+ ޳snQvl*az۩hQo cB*̂hk Vѣš25ôp{Jzp|["-"+=C&nw6sqf P7U8˳jՁѪv=%xn.D@COb IۚxbJ_AH)>FcWS&= o&ء<6K2aRu42(U}G>My]%)2*,(NS'ž"e1ĝ1ʆ2"lOyQm.ѼlNEwE'Tt~:$l,!x.suݺHtQ1lӌ6[|1ˁ]VM)=,)JZѼ!Ja3]I(Ç5>w ɍj q;a&}2h YzMPb8 Ɋ wE5mccF!>࿈O,o|n\ǰ~Ma{o'7ѴuB@":5ӓ8 ū%\JtT[C *5Ew%ve$jdFgO-'gc%z {sD)ZA FQ=Ny+IS贉4DE^mcsR.Z%{n&o">D-  z9|/ )Xo`wl(&E*'D |*G= 'a!Tx I`AHG"Q87>2ZF>NEGk{.>Zd6[3ED*ܰ$x~>w$: ~MeM$3lςcddD1?,ֳS..?i#:NΙ4|R9/Se0,1[Vn8KY^5;jC;.٫|2Zp; ; >=.#\f*ÑfQU9wi*/Fo@NE!Wv.<ZD8 'YuzȖAR6U{:Q7 F2 rΗ6uW6ӹ[=+'x1j{$ OaI@[:" Z0qlaf?? q%yMnM2:n,Pݦ7IAh mk_,yk+_ϑz;.GS-p¸ fY"4cKH&~s '⧯1p27SB GPJjz 2O@\ѕt౞ |GB |80QB7n`?E0Ag$|!-iavfhtzGbz2Ї<򄞧蒃tVm-;+^(d^-w-8YWPxKSuK m utx6E%Ãuu䎦%ޓ[!\1><ϭնU`~Ո3 ⲡ܁ `2pgXd'jAXvSlod 6_.:c5O۷QX-=iVLH˵TA!iՀB?FUiLOtV-KNHD@C! 舒fHx@p[DUGTEMDJð]ࡘa)L> -1?}}{Ҋ+Qt)BvdI#4Ԉ݄|qjiz3-d#7n [2.@\@U "=?.-tmڣ;+=%ic Y ХGQwIz7DpliհuHZ>*Drh1OS^l|-rN&$ߓP})C zhٽy~#rK߹}X QW-g@ف :zw .1cPu>- 75 D Y3y%+h3FR+#l QMVp$YmxMhDߨ6/)Ie˟V Xn- "ʪ4fEԈ{360㶩>P949a0ġX<=M6|G^Rsj}26:6# #a֌X;RUtji f8|VNC )< h(W7B&(zqbq"u -D/ 3|&ڵc=&ne.^ְtҦh&6xGaLzWӈOn+/xjgܬ]*oITC*\UÉ{؝x38 1:Tp&_VZgr8'Ju~]b ?q FwxoʂR=d4哺uY(Yil\0GC[yi 4c~DV6k'Ç"({ѭ̌KG> @ghp>flojVG:$@Q1+B^tBavMޭ0zߗ8WOYC\R@;i葓 zJ*IGQf-*dݶW$FJNĞO[&_x@jh+NO$0+3xϹ}pVcrxzagl<2*_&/1#IH 3eC(Og˲7sfbȝ-ŎUO#qiZr9Nu. 괎gF< ߒ}3>3BJM!ܟO#Bzs$tE@zMl.YKsK%Bj|A$X`P6u' *'lQmZlp7ޢ gӆ 4y tݑ{&Ξ)pJP dW|*Fuv#QozԧW:Huķ .* Żi|(aB|8̯ܵJ=QQ9Tƚ'2iF pYhZorZ_I^(J +}p3X0@#Ed~ާ)ݑkOʉ+_՜jHk|B<9%+Q_HQ/ghktA<&Үm g2iJ"˙`tv) Р+x~.vVӹNfߌwPo w?zHp$[*zx 4kӞq!3!%[e Yܗr? g|Y5T mD 'cІ6;STp\4{@޹Knzq*ZuEpPazD}ɵVX+ \7]77_-w= IGN,WQޮ k!)yFs(ysI-pkP=lsDąlc;$[}ߛ׺ V ˗S-1?;eLj=ܣϣ7 \eeyge fx0J&RmŧlTmbAEߖԵiN!X{<*ܾisKqP"K =m06ԑc,EC{FvCg,nQO8, =1D08WW[ժtNևЃ*IG8'^W$Ǘ?!qwX,&9'ϣϾrJA"p: |m+؃"F+$Mw' X4.Z6%x w䩝K[ pf'$ aJx,Xr"}C݇G:-?[oz$Y%iB4Vb"Ê\G!u,9DZ 8IJS/y/Bg/Jʙp< NڢFWQ`0~`<؝9 m7[at ,O p+z6žyyS2k?6:㴹)tfޯ5*w)Zo h:-g쪄Px_J>d 6̠eli:,ݮvJ#ǂabKZNE s8Zs:*)KΆ > "릯AyR T 8R:$, lB;g Wddp]s$[J̜QB$u(X" \cxXNţ~hxGqЯL|9mAAӁ1. 6Z@W6%e/{J+.hY G+_G14wᾢ1w2sڤRv v*4'GgUR>)w&2@K4+#ZĹ!01×G՜7Uw)JAUU#tt$tu>]~&^2/[ˍ됭 Ur^O5X̾]Q]bBvMd#38~S A^J_:Jp8eɪ_,c e2fU~pym=ֺۡ*$Wx3Q$13 c#2D17 jihdrүLZnf*:k\ا\wpn6_Z Q~7K$E.˩N u?!¯#zp5Hn+fA):d_hI.nmm<OuO 0/b44?pզ1iA9 ~MAh0B"d2v ϡ˳ǟ]-Ȫ#v{U*)'[G)u1 d8qwxcκhc.tAWNx3XMUߨm3y1Ӗ,~PzE~B3\~i66Ue?/pf´>_JU|JkW t OXaY8 K=Ǽ Ah-PJvIt2 V]ni\D7Jy"!m1n\Ҥ;{!.=9.=M^Agz+HDہyhAVSTϼZpzWb9\9/;ud=ZasyJ2%#,vp0` HxUug$:-x?޼{jPTuMe/M~1WRyT2a/Qq=Usx&0-w'O#gK9taɪb/3q;bQoׂ"ت:Tf]y9zU̜=҇h*f)}`:4 ų-7 ̄ =ӖӨ