xorg-x11-server-21.1.11-150600.5.20.1<>,pi}p9|Hm'f6i:MNL`~Rs0B]T@YXhMnG$=_ Di!K=71skoA[+zd>{1ߝ0EHY=-LH}cC `ZB$ih&1(pVO;uT $6jӀ; RC6B@p.zl|?26o5|G4Ӽp8 >C36k˯jD.9K;eD|a-ﱕPsWx)->HA?A|d ( *TXdh   <1 1  b1  1  1 y1 111z1lT;@; ;( 8 9$ :3C>)V@)^B)f F*)G*@1H+1I+1X+Y,`Z, [- \-d1].(1^0ab2c3Yd3e3f3l3u41v4w=1x>t1y?8rzAAAA(A,A0A6AxCxorg-x11-server21.1.11150600.5.20.1XThis package contains the X.Org Server.i}s390zp38=6SUSE Linux Enterprise 15SUSE LLC MIThttps://www.suse.com/System/X11/Servers/XF86_4http://xorg.freedesktop.org/linuxs390x [ -z "${TRANSACTIONAL_UPDATE}" -a -x /usr/bin/systemd-tmpfiles ] && /usr/bin/systemd-tmpfiles --create xkb.conf || : PNAME=displaymanager SUBPNAME=-xorg-x11-server SYSC_TEMPLATE=/usr/share/fillup-templates/sysconfig.$PNAME$SUBPNAME # If template not in new /usr/share/fillup-templates, fallback to old TEMPLATE_DIR if [ ! -f $SYSC_TEMPLATE ] ; then TEMPLATE_DIR=/var/adm/fillup-templates SYSC_TEMPLATE=$TEMPLATE_DIR/sysconfig.$PNAME$SUBPNAME fi SD_NAME="" if [ -x /bin/fillup ] ; then if [ -f $SYSC_TEMPLATE ] ; then echo "Updating /etc/sysconfig/$SD_NAME$PNAME ..." mkdir -p /etc/sysconfig/$SD_NAME touch /etc/sysconfig/$SD_NAME$PNAME /bin/fillup -q /etc/sysconfig/$SD_NAME$PNAME $SYSC_TEMPLATE fi else echo "ERROR: fillup not found. This should not happen. Please compare" echo "/etc/sysconfig/$PNAME and $TEMPLATE_DIR/sysconfig.$PNAME and" echo "update by hand." fi # Move SaX2 generated xorg.conf file to xorg.conf.sle11 # # Only in very rare cases a static X configuration is still # required on sle12. And, in some cases the migration from a # static sle11 X configuration to a static sle12 X configuration # is not possible at all, e.g. some video and input drivers # are no longer available on sle12. In short, trying to migrate # will result in more harm than benefit. if [ -f etc/X11/xorg.conf -a ! -f etc/X11/xorg.conf.sle11 ]; then echo "xorg.conf exists and xorg.conf.sle11 does not" if grep -q "SaX generated X11 config file" etc/X11/xorg.conf; then echo "move SaX generated xorg.conf to xorg.conf.sle11" mv etc/X11/xorg.conf etc/X11/xorg.conf.sle11 # remove dangling link (bnc#879360, comment#15) rm -f etc/X11/XF86Config # prevent %postun of NVIDIA/fglrx driver packages from restoring xorg.conf # backup or running sax2 as fallback to create a new xorg.conf (bcn#877315) rm -f etc/X11/xorg.conf.nvidia-post \ etc/X11/xorg.conf.fglrx-post chmod -x usr/sbin/sax2 fi fi /usr/sbin/update-alternatives \ --force --install /usr/lib64/xorg/modules/extensions/libglx.so libglx.so /usr/lib64/xorg/modules/extensions/xorg/xorg-libglx.so 50 exit 0if [ "$1" = 0 ] ; then "/usr/sbin/update-alternatives" --remove libglx.so /usr/lib64/xorg/modules/extensions/xorg/xorg-libglx.so fi)Jp8 k Z0Xp`(`|@;dcF|#_ a?P)큤AAAAAA큤A큤A큤AAAAA큤AAi}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}i}e0e43da20d4be2a95a58cd61992bf05bc7b810f70d1b4e6121987a2e676df1dec4dd4d5cb7cf2be3f1f3111a338aa9f753b56e5277186117f6a24329e1e09131682045ca927e81c5fa5f9a04f6a04f6becc0a943066cc8b98ab84394f82e82dd77b01c5419078190ea9cfdf3f39e0bebc07574d18dae168d888e04ab6340862178d2059082dfdc1f94695e2e6c81e6643bbe5f0cc03c9a80907b1f8c72e13684e6976877324fa2a7f4edac11be8c051c93779ddc8df674dfe392ae6d5599419791bcff4cccc4bfc846214cb9e1d7561925928f6ed4e0d44a1be7dbf8846cd3dfe13c17de3d11125a37212e24ecbc5559d2248090b20b8cf48645166ba50e8d310ab6268ed3118fac3adb52f2d4e2a4b6a5d4188fc33ab12b00c0ac4b477f0d69668cabe418a30fe1fc0ec829eed96f9f143d4b42b6cd233d6adf6a42caa9e17becefd661b8648e60707f45b4ecf0f15ba3dac1e2e2f61b556608a65fe7090ade768802d5192004ac2843f05c713cb0855b01d801d84122426f31667ea6614f10382c6242bb3e92c6e4fe917eacc425a4c606d8e0a876b483c11d925e9af8cb55ac9935c2e601ba81f35ae32026f02e22990a1fdbf06fc8ba0a8e27f296acf52b3b52558c024fb490993da823f36f4a0d6d8a461e97c894088a014e1b9be25267b8f6921aaf1d88c74b0cd88295bdfe28b84b432200b8d2fb5b40b0d6eef6016d7378f5d9f3f64871388009290fcb044835113b436a54cfc1510eedb4ada945de50ef0821e1127362469ba98664dd9d6fe695ff001e989b43f4aaa3e7b77ddde932c4858e22cc2c967b42150fa550562a2c839c2cebcaab91cabdf6f4da020022134ec3234772efacc6d51e158f27f13931a7c687a847be1ac7281076ff41a6116eee3898bbe6e8c101d2920ed8f7ea3e1c986ba1f81f1379839321991e7656af66c91d2ef218146a439274fb7dff8657d97cf8a488bc2c34483f43bff3577328e5f77678d104ad171c0bed38e582094a7a3348a13775d3db80047bf731dc1731c11d1cc51080c3839b5ee65b9f6ad515fd8038982135e757ec0fcdf10b9cb5b4e2921fdce4a6abf6d3a9663d4a36c3d6b5d80df6daf15f3578f0be86f71198379d94789b941c2fad4163819a943fe7db0dbfe1f13c4b34f600c3ea5e1a436fd8df1191b048b4e07572eff23f84385e7f07b7d67822dd2324fe114afc030723c6cd180b2c39f6883119c78c7b47561b43330e4b1be09d79777f6aa888d56f90589b7548f7530a7fe036869cd154f785eb71016691b230935e989dc1149040562cdb7d71f5c855a521ac17de7dbab44350c97e3ab61967e46babef0c130e5053b07ed55d3c2e3360eb53ececa0352e13b2d3a258745251b3700cc8bde3880a189fXorg/etc/alternatives/libglx.so@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootxorg-x11-server-21.1.11-150600.5.20.1.src.rpmX11_ABI_ANSICX11_ABI_EXTENSIONX11_ABI_HAS_DPMS_GET_CAPABILITIESX11_ABI_VIDEODRVX11_ABI_XINPUTglamorglamor-egllibexa.so()(64bit)libfbdevhw.so()(64bit)libglamoregl.so()(64bit)libglx.so()(64bit)libint10.so()(64bit)libshadow.so()(64bit)libshadowfb.so()(64bit)libvgahw.so()(64bit)libwfb.so()(64bit)xf86-video-astxf86-video-cirrusxf86-video-modesettingxorg-x11-driver-inputxorg-x11-driver-videoxorg-x11-serverxorg-x11-serverxorg-x11-server(s390-64)xorg-x11-server-glx@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ @@@@@@@    /bin/sh/bin/sh/usr/bin/perlMesacoreutilsdiffutilsfillupgreplibGL.so.1()(64bit)libXau.so.6()(64bit)libXdmcp.so.6()(64bit)libXfont2.so.2()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.2.3)(64bit)libc.so.6(GLIBC_2.26)(64bit)libc.so.6(GLIBC_2.27)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.2)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.32)(64bit)libc.so.6(GLIBC_2.33)(64bit)libc.so.6(GLIBC_2.34)(64bit)libc.so.6(GLIBC_2.38)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.7)(64bit)libc.so.6(GLIBC_2.8)(64bit)libc.so.6(GLIBC_2.9)(64bit)libcrypto.so.3()(64bit)libcrypto.so.3(OPENSSL_3.0.0)(64bit)libdbus-1.so.3()(64bit)libdbus-1.so.3(LIBDBUS_1_3)(64bit)libdrm.so.2()(64bit)libepoxy.so.0()(64bit)libgbm.so.1()(64bit)libm.so.6()(64bit)libm.so.6(GLIBC_2.2)(64bit)libm.so.6(GLIBC_2.29)(64bit)libm.so.6(GLIBC_2.35)(64bit)libpciaccess.so.0()(64bit)libpixman-1-0libpixman-1.so.0()(64bit)libsystemd.so.0()(64bit)libsystemd.so.0(LIBSYSTEMD_209)(64bit)libudev.so.1()(64bit)libudev.so.1(LIBUDEV_183)(64bit)libxcvt.so.0()(64bit)libxshmfence.so.1()(64bit)pkgconfigrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)update-alternativesupdate-alternativesxkbcompxkeyboard-configxorg-x11-server-Xvfb0.243.0.4-14.6.0-14.0-15.2-14.14.3h^hW@hAg`@g@g@f@fe@eȶeȶee@eoe@e@em@e9@d(dc=@cT@cccR@c@c.cEch@ch@cb[cb[cObγbγbγby@bzSbDF@b-b@b@b@a@a@aa@a@a@aaaaay?@a`]`]`:@`9@``P@`}p`u`t6@`?z@_@_@_0@_ts@_s!_q@_l@_a@_X_G@_D@_$^)@^@^^@^W@^%@^@]@]@]@]@]]y@]i]@1@\\O\@\v{\I\A\,[@[@[@[ā@[t[i[\Z[Xf@[P}@[D[:[2*[*A[@Z@ZZԐ@ZJ@Z2@ZZ Z}@ZTZ?Z/Z@Z YY@YY@Yh@Yg`Y_wY[@Y;@Y:Y6@XX @X+X@XpXXwoXN@X,J@XW@W@W@WDB@W9@W/*@W'A@W#LW @W @W @WKWW@V@Vn@V3VVm@VxVVV&@VV@V@VV@VGVVVUVA@V0V0V7@UU@U@UUzUuUn@Ui@U0U:T!TTTԬT[@T[@Tk4T`TN3sndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.combjorn.lie@gmail.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.commgorse@suse.comdmueller@suse.comdmueller@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comtzimmermann@suse.desndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comdmueller@suse.commeissner@suse.comsndirsch@suse.combjorn.lie@gmail.comsndirsch@suse.comdmueller@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comtzimmermann@suse.detzimmermann@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comdmueller@suse.comsndirsch@suse.combjorn.lie@gmail.comismail@i10z.compatrik.jakobsson@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comtobias.klausmann@freenet.desndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.commgorse@suse.combjorn.lie@gmail.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comfcrozat@suse.combjorn.lie@gmail.combjorn.lie@gmail.combjorn.lie@gmail.comsndirsch@suse.combjorn.lie@gmail.comsndirsch@suse.comsndirsch@suse.comtobias.johannes.klausmann@mni.thm.demliska@suse.czjengelh@inai.desndirsch@suse.comsndirsch@suse.comsndirsch@suse.commsrb@suse.comsndirsch@suse.commsrb@suse.comsndirsch@suse.comtobias.johannes.klausmann@mni.thm.demsrb@suse.comtobias.johannes.klausmann@mni.thm.dejdelvare@suse.desndirsch@suse.comtiwai@suse.defcrozat@suse.comsndirsch@suse.commsrb@suse.comsndirsch@suse.commsrb@suse.comtobias.johannes.klausmann@mni.thm.demsrb@suse.commsrb@suse.commsrb@suse.commsrb@suse.comfcrozat@suse.combwiedemann@suse.comsndirsch@suse.commwilck@suse.comtobias.johannes.klausmann@mni.thm.demsrb@suse.comrbrown@suse.commsrb@suse.comtobias.johannes.klausmann@mni.thm.detobias.johannes.klausmann@mni.thm.deilya@ilya.pp.uasndirsch@suse.comsndirsch@suse.commsrb@suse.comsndirsch@suse.comsndirsch@suse.comopensuse@dstoecker.desndirsch@suse.comtobias.johannes.klausmann@mni.thm.detobias.johannes.klausmann@mni.thm.dedenis.kondratenko@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comtobias.johannes.klausmann@mni.thm.defbui@suse.comtobias.johannes.klausmann@mni.thm.dezaitor@opensuse.orgtobias.johannes.klausmann@mni.thm.detobias.johannes.klausmann@mni.thm.demstaudt@suse.comeich@suse.comeich@suse.comeich@suse.comsndirsch@suse.comsndirsch@suse.comeich@suse.comeich@suse.comeich@suse.comeich@suse.comtobias.johannes.klausmann@mni.thm.detobias.johannes.klausmann@mni.thm.deeich@suse.comeich@suse.comtobias.johannes.klausmann@mni.thm.delbsousajr@gmail.comeich@suse.comeich@suse.comeich@suse.comeich@suse.comtobias.johannes.klausmann@mni.thm.deeich@suse.comeich@suse.comfcrozat@suse.comeich@suse.comeich@suse.comeich@suse.comhrvoje.senjan@gmail.comeich@suse.comsndirsch@suse.comsndirsch@suse.comsndirsch@suse.comeich@suse.comtiwai@suse.deeich@suse.comtobias.johannes.klausmann@mni.thm.detobias.johannes.klausmann@mni.thm.demsrb@suse.comantoine.belvire@laposte.netmsrb@suse.comeich@suse.comnormand@linux.vnet.ibm.commsrb@suse.comdimstar@opensuse.orgsndirsch@suse.comtobias.johannes.klausmann@mni.thm.deeich@suse.comtobias.johannes.klausmann@mni.thm.demsrb@suse.comsndirsch@suse.comledest@gmail.comsndirsch@suse.com- bsc1251958_CVE-2025-62229_0001-present-Fix-use-after-free-in-present_create_notifie.patch * Use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) - bsc1251959_CVE-2025-62230_0001-xkb-Make-the-RT_XKBCLIENT-resource-private.patch bsc1251959_CVE-2025-62230_0002-xkb-Free-the-XKB-resource-when-freeing-XkbInterest.patch * Use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) - bsc1251960_CVE-2025-62231_0001-xkb-Prevent-overflow-in-XkbSetCompatMap.patch * Value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960)- U_CVE-2025-49176-os-Check-for-integer-overflow-on-BigRequest-length.patch * additional fix for CVE-2025-49176- - U_CVE-2025-49175-render-Avoid-0-or-less-animated-cursors.patch * Out-of-bounds access in X Rendering extension (Animated cursors) (CVE-2025-49175, bsc#1244082) - U_CVE-2025-49176-os-Do-not-overflow-the-integer-size-with-BigRequest.patch * Integer overflow in Big Requests Extension (CVE-2025-49176, bsc#1244084) - U_CVE-2025-49177-xfixes-Check-request-length-for-SetClientDisconnectM.patch * Data leak in XFIXES Extension 6 (XFixesSetClientDisconnectMode) (CVE-2025-49177, bsc#1244085) - U_CVE-2025-49178-os-Account-for-bytes-to-ignore-when-sharing-input-bu.patch * Unprocessed client request via bytes to ignore (CVE-2025-49178, bsc#1244087) - U_CVE-2025-49179-record-Check-for-overflow-in-RecordSanityCheckRegist.patch * Integer overflow in X Record extension (CVE-2025-49179, bsc#1244089) - U_CVE-2025-49180-randr-Check-for-overflow-in-RRChangeProviderProperty.patch U_CVE-2025-49180-xfree86-Check-for-RandR-provider-functions.patch * Integer overflow in RandR extension (RRChangeProviderProperty) (CVE-2025-49180, bsc#1244090)- U_CVE-2022-49737-dix-Hold-input-lock-for-AttachDevice.patch * Xorg may crash when client applications use easystroke for mouse gestures (CVE-2022-49737, bsc#1239750)- U_CVE-2025-26594-0001-Cursor-Refuse-to-free-the-root-cursor.patch U_CVE-2025-26594-0002-dix-keep-a-ref-to-the-rootCursor.patch * Use-after-free of the root cursor (CVE-2025-26594, bsc#1237427) - U_CVE-2025-26595-0001-xkb-Fix-buffer-overflow-in-XkbVModMaskText.patch * Buffer overflow in XkbVModMaskText() (CVE-2025-26595, bsc#1237429) - U_CVE-2025-26596-0001-xkb-Fix-computation-of-XkbSizeKeySyms.patch * Heap overflow in XkbWriteKeySyms() (CVE-2025-26596, bsc#1237430) - U_CVE-2025-26597-0001-xkb-Fix-buffer-overflow-in-XkbChangeTypesOfKey.patch * Buffer overflow in XkbChangeTypesOfKey() (CVE-2025-26597, bsc#1237431) - U_CVE-2025-26598-0001-Xi-Fix-barrier-device-search.patch * Out-of-bounds write in CreatePointerBarrierClient() (CVE-2025-26598, bsc#1237432) - U_CVE-2025-26599-0001-composite-Handle-failure-to-redirect-in-compRedirect.patch U_CVE-2025-26599-0002-composite-initialize-border-clip-even-when-pixmap-al.patch * Use of uninitialized pointer in compRedirectWindow() (CVE-2025-26599, bsc#1237433) - U_CVE-2025-26600-0001-dix-Dequeue-pending-events-on-frozen-device-on-remov.patch * Use-after-free in PlayReleasedEvents() (CVE-2025-26600, bsc#1237434) - U_CVE-2025-26601-0001-sync-Do-not-let-sync-objects-uninitialized.patch U_CVE-2025-26601-0002-sync-Check-values-before-applying-changes.patch U_CVE-2025-26601-0003-sync-Do-not-fail-SyncAddTriggerToSyncObject.patch U_CVE-2025-26601-0004-sync-Apply-changes-last-in-SyncChangeAlarmAttributes.patch * Use-after-free in SyncInitTrigger() (CVE-2025-26601, bsc#1237435)- U_xkb-Fix-buffer-overflow-in-_XkbSetCompatMap.patch * Heap-based buffer overflow privilege escalation in _XkbSetCompatMap (CVE-2024-9632, bsc#1231565)- U_render-Avoid-possible-double-free-in-ProcRenderAddGl.patch * fixes regression for security fix for CVE-2024-31083 (bsc#1222312, boo#1222442, gitlab xserver issue #1659)- U_CVE-2024-31080-Xi-ProcXIGetSelectedEvents-needs-to-use-unswapped-le.patch * Xi: ProcXIGetSelectedEvents needs to use unswapped length (CVE-2024-31080, bsc#1222309) - U_CVE-2024-31081-Xi-ProcXIPassiveGrabDevice-needs-to-use-unswapped-le.patch * Xi: ProcXIPassiveGrabDevice needs to use unswapped length to send reply (CVE-2024-31081, bsc#1222310) - U_CVE-2024-31082-Xquartz-ProcAppleDRICreatePixmap-needs-to-use-unswap.patch * Xquartz: ProcAppleDRICreatePixmap needs to use unswapped length to send reply (CVE-2024-31082, bsc#1222311) - U_CVE-2024-31083-render-fix-refcounting-of-glyphs-during-ProcRenderAd.patch * render: fix refcounting of glyphs during ProcRenderAddGlyphs (CVE-2024-31083, bsc#1222312)- Release 21.1.11 also covers fixes for security issue CVE-2022-46340 and bug numbers bsc#1205874, bsc#1217765- Release 21.1.11 covers fixes for the following bug numbers, which are not mentioned in this changelog before: bsc#1218845, bsc#1218846, bsc#1216261, bsc#1216133, bsc#1216135- Release 21.1.11 supersedes the following patches still used with xorg-x11-server 21.1.4 on sle15-sp5/Leap 15.5 and not mentioned in this changelog as superseded before: * U_Xext-fix-invalid-event-type-mask-in-XTestSwapFakeInp.patch * U_bsc1216133-mi-reset-the-PointerWindows-reference-on-screen-swit.patch * U_bsc1216135-Xi-randr-fix-handling-of-PropModeAppend-Prepend.patch * U_bsc1216261-0001-mi-fix-CloseScreen-initialization-order.patch * U_bsc1216261-0002-fb-properly-wrap-unwrap-CloseScreen.patch * U_bsc1216261-0003-dix-always-initialize-pScreen-CloseScreen.patch * bsc1218582-0001-dix-allocate-enough-space-for-logical-button-maps.patch * bsc1218583-0001-dix-Allocate-sufficient-xEvents-for-our-DeviceStateN.patch * bsc1218583-0002-dix-fix-DeviceStateNotify-event-calculation.patch * bsc1218583-0003-Xi-when-creating-a-new-ButtonClass-set-the-number-of.patch * bsc1218584-0001-Xi-flush-hierarchy-events-after-adding-removing-mast.patch * bsc1218585-0001-Xi-do-not-keep-linked-list-pointer-during-recursion.patch * bsc1218585-0002-dix-when-disabling-a-master-float-disabled-slaved-de.patch * U_bsc1218845-glx-Call-XACE-hooks-on-the-GLX-buffer.patch * U_bsc1218846-ephyr-xwayland-Use-the-proper-private-key-for-cursor.patch- xserver sources of this release fixes segfault in Xvnc (bsc#1219311)- no longer (build-)require obsolete Xprint/XprintUtil- Update to version 21.1.11 * This release contains fixes for the issues reported in today's security advisory: https://lists.x.org/archives/xorg/2024-January/061525.html * CVE-2023-6816 (bsc#1218582) * CVE-2024-0229 (bsc#1218583) * CVE-2024-21885 (bsc#1218584) * CVE-2024-21886 (bsc#1218585) * CVE-2024-0408 * CVE-2024-0409 - supersedes the following patches * U_xephyr-Don-t-check-for-SeatId-anymore.patch * U_bsc1217765-Xi-allocate-enough-XkbActions-for-our-buttons.patch * U_bsc1217766-randr-avoid-integer-truncation-in-length-check-of-Pr.patch- u_miCloseScreen_check_for_null_pScreen_dev_private.patch * miCloseScreen check for null pScreen dev private (bsc#1218176); another regression introduced by U_bsc1216261-0002-fb-properly-wrap-unwrap-CloseScreen.patch- n_xserver-optimus-autoconfig-hack.patch u_randr-Do-not-crash-if-slave-screen-does-not-have-pro.patch u_xfree86-activate-GPU-screens-on-autobind.patch * check dixPrivateKeyRegistered(rrPrivKey) before calling rrGetScrPriv() to avoid xserver crash when Xinerama is enabled (boo#1218240) - ------------------------------------------------------------------- U_bsc1217765-Xi-allocate-enough-XkbActions-for-our-buttons.patch * Out-of-bounds memory write in XKB button actions (CVE-2023-6377, ZDI-CAN-22412, ZDI-CAN-22413, bsc#1217765) - U_bsc1217766-randr-avoid-integer-truncation-in-length-check-of-Pr.patch * Out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty (CVE-2023-6478, ZDI-CAN-22561, bsc#1217766)- Update to version 21.1.9 * This release contains fixes for CVE-2023-5367, CVE-2023-5380 and CVE-2023-5574 as reported in today's security advisory: https://lists.x.org/archives/xorg-announce/2023-October/003430.html - adjusted u_Use-better-fallbacks-to-generate-cookies-if-arc4rand.patch- Update to version 21.1.8 (CVE-2023-1393): * This release contains the fix for CVE-2023-1393 * composite: Fix use-after-free of the COW * xkbUtils: use existing symbol names instead of deleted deprecated ones - Drop U_xserver-composite-Fix-use-after-free-of-the-COW.patch: Fixed upstream - Switch back to tarball release, drop source service, add keyring and sig files.- U_xserver-composite-Fix-use-after-free-of-the-COW.patch * overlay window use-after-free (CVE-2023-1393, ZDI-CAN-19866, bsc#1209543)- Update to version xorg-server-21.1.7: * This release contains the fix for CVE-2023-0494 in today's security advisory: https://lists.x.org/archives/xorg-announce/2023-February/003320.html It also fixes a second possible OOB access during EnqueueEvent and a crasher caused by ResourceClientBits not correctly honouring the MaxClients value in the configuration file. - supersedes U_Xi-fix-potential-use-after-free-in-DeepCopyPointerCl.patch, U_xorg-server-oob-read-enqueue-event.patch- U_Xi-fix-potential-use-after-free-in-DeepCopyPointerCl.patch * DeepCopyPointerClasses use-after-free (CVE-2023-0494, ZDI-CAN-19596, bsc#1207783)- rename u_xorg-server-oob-read-enqueue-event.patch to U_xorg-server-oob-read-enqueue-event.patch since it's already upstream- Add u_xorg-server-oob-read-enqueue-event.patch: fix an out-of-bounds read in EnqueueEvent.- Update to version xorg-server-21.1.6: * xserver 21.1.6 * Xext: fix invalid event type mask in XTestSwapFakeInput * xkb: fix some possible memleaks in XkbGetKbdByName * xkb: proof GetCountedString against request length attacks * xquartz: Fix some formatting * XQuartz: stub: Call LSOpenApplication instead of fork()/exec() - drop the following upstream patches: U_xkb-proof-GetCountedString-against-request-length-at.patch U_xkb-fix-some-possible-memleaks-in-XkbGetKbdByName.patch- Update to version xorg-server-21.1.5: * xkb: reset the radio_groups pointer to NULL after freeing it * Xi: avoid integer truncation in length check of ProcXIChangeProperty * Xi: return an error from XI property changes if verification failed * Xext: free the screen saver resource when replacing it * Xext: free the XvRTVideoNotify when turning off from the same client * Xi: disallow passive grabs with a detail > 255 * Xtest: disallow GenericEvents in XTestSwapFakeInput * meson: Don't build COMPOSITE for XQuartz * xquartz: Move default applications list outside of the main executable * xquartz: Remove unused macro (X11LIBDIR) - drop the following upstream patches: U_0007-xkb-reset-the-radio_groups-pointer-to-NULL-after-fre.patch U_0002-Xi-return-an-error-from-XI-property-changes-if-verif.patch U_0003-Xi-avoid-integer-truncation-in-length-check-of-ProcX.patch U_0004-Xi-disallow-passive-grabs-with-a-detail-255.patch U_0005-Xext-free-the-screen-saver-resource-when-replacing-i.patch U_0006-Xext-free-the-XvRTVideoNotify-when-turning-off-from-.patch U_0001-Xtest-disallow-GenericEvents-in-XTestSwapFakeInput.patch- U_0007-xkb-reset-the-radio_groups-pointer-to-NULL-after-fre.patch * XkbGetKbdByName use-after-free (ZDI-CAN-19530, CVE-2022-4283, bsc#1206017)- U_0001-Xtest-disallow-GenericEvents-in-XTestSwapFakeInput.patch * Server XTestSwapFakeInput stack overflow (ZDI-CAN 19265, CVE-2022-46340, bsc#1205874) - U_0002-Xi-return-an-error-from-XI-property-changes-if-verif.patch * Xi: return an error from XI property changes if verification failed (no ZDI-CAN id, no CVE id, bsc#1205875) - U_0003-Xi-avoid-integer-truncation-in-length-check-of-ProcX.patch * Server XIChangeProperty out-of-bounds access (ZDI-CAN 19405, CVE-2022-46344, bsc#1205876) - U_0004-Xi-disallow-passive-grabs-with-a-detail-255.patch * Server XIPassiveUngrabDevice out-of-bounds access (ZDI-CAN 19381, CVE-2022-46341, bsc#1205877) - U_0005-Xext-free-the-screen-saver-resource-when-replacing-i.patch * Server ScreenSaverSetAttributes use-after-free (ZDI-CAN 19404, CVE-2022-46343, bsc#1205878) - U_0006-Xext-free-the-XvRTVideoNotify-when-turning-off-from-.patch * Server XvdiSelectVideoNotify use-after-free (ZDI-CAN 19400, CVE-2022-46342, bsc#1205879)- Release 21.1 covers bugfixes and JIRA tickets for bsc#1176015,bsc#1182510,bsc#1182884,bsc#1184072,bsc#1184543,bsc#1184906,bsc#1186092,bsc#1188970,bsc#1194159,bsc#1196577,bsc#1197046,bsc#1197269,bsc#1200076,fdo#574,jsc#SLE-18653,jsc#SLE-8470- Release 21.1 supersedes the following patches still used with xorg-x11-server 1.20.3 on sle15-sp4/Leap 15.4: * U_0002-DRI2-Add-another-Coffeelake-PCI-ID.patch * U_0002-Fix-crash-on-XkbSetMap.patch * U_0003-Fix-crash-on-XkbSetMap.patch * U_0003-dri2-Sync-i965_pci_ids.h-from-mesa.patch * U_0004-dri2-Set-fallback-driver-names-for-Intel-and-AMD-chi.patch * U_0005-dri2-Sync-i965_pci_ids.h-from-mesa-iris_pci_ids.h.patch * U_build-glx-Lower-gl-version-to-work-with-libglvnd.patch * U_glamor-Make-pixmap-exportable-from-gbm_bo_from_pixma.patch * U_hw_do-not-include-sys-io-with-glibc.patch * U_meson-Fix-another-reference-to-gl-9.2.0.patch * U_modesetting-Fix-broken-manpage-in-autoconf-build.patch * U_present-wnmd-Fix-use-after-free-on-CRTC-removal.patch * U_present-wnmd-Relax-assertion-on-CRTC-on-abort_vblank.patch * U_xfree86-Change-displays-array-to-pointers-array-to-f.patch * U_xfree86-Fix-NULL-pointer-dereference-crash.patch * U_xkbsetdeviceinfo.patch * u_sync-pci-ids-with-Mesa-21.2.4.patch * u_xf86-Accept-devices-with-the-simpledrm-driver.patch * u_xichangehierarchy-CVE-2020-14346.patch * u_xkb-CVE-2020-14345.patch * u_xkb-CVE-2020-14360.patch- removed N_Disable-HW-Cursor-for-cirrus-and-mgag200-kernel-modules.patch * meanwhile cirrus and mgag200 Kernel drivers have been rewritten multiple times and no longer have (broken) hardware cursor- u_xf86-Accept-devices-with-the-kernels-ofdrm-driver.patch * Add workaround to support ofdrm- U_xkb-proof-GetCountedString-against-request-length-at.patch * security update for CVE-2022-3550 (bsc#1204412) - U_xkb-fix-some-possible-memleaks-in-XkbGetKbdByName.patch * security update for CVE-2022-3551 (bsc#1204416)- rename u_sync-pci-ids-with-Mesa-22.0.0.patch to u_sync-pci-ids-with-Mesa.patch (currently synced with Mesa 22.1.3)- u_sync-pci-ids-with-Mesa-22.0.0.patch * synced with Mesa 22.1.3; just adding a PCI ID for vmware was needed- Update to version 21.1 * This release fixes 2 recently reported security vulnerabilities in xkb, several regressions since 1.20.x and a number of miscellaneous bugs. - supersedes the following security patches * U_boo1194181-001-xkb-swap-XkbSetDeviceInfo-and-XkbSetDeviceInfoCheck.patch * U_boo1194179-001-xkb-rename-xkb_h-to-xkb-procs_h.patch * U_boo1194179-002-xkb-add-request-length-validation-for-XkbSetGeometry.patch - supersedes U_Fix-build-with-gcc-12.patch- U_boo1194181-001-xkb-swap-XkbSetDeviceInfo-and-XkbSetDeviceInfoCheck.patch * Out-Of-Bounds Access in CheckSetDeviceIndicators() (CVE-2022-2320, ZDI-CAN-16070, bsc#1194181) - U_boo1194179-001-xkb-rename-xkb_h-to-xkb-procs_h.patch, U_boo1194179-002-xkb-add-request-length-validation-for-XkbSetGeometry.patch * Out-Of-Bounds Access in _CheckSetSections() (CVE-2022-2319, ZDI-CAN-16062, bsc#1194179)- add n_raise_default_clients.patch- disable -z now linking for now, as there are some missing symbol issues. (boo#1197994)- u_sync-pci-ids-with-Mesa-22.0.0.patch * sync pci ids with Mesa 22.0.0- U_Fix-build-with-gcc-12.patch * render: Fix build with gcc 12 (glfdo#xorg/xserver!853).- U_xephyr-Don-t-check-for-SeatId-anymore.patch * fix mouse/keyboard focus in Xephyr (boo#1194658, github issue#1289)- fix bashisms in pre_checkins.sh (bsc#1195391)- u_xfree86-activate-GPU-screens-on-autobind.patch * Part of the original patch by Dave Airlie has landed 078277e4d92f05a90c4715d61b89b9d9d38d68ea, this contains the remainder of what was in SUSE before Xorg 21.1. (github issue#1254, boo#1192751)- Update to version 21.1.3 * This release fixes several regressions since 1.20.x and 21.1.1 + glx/dri: Filter out fbconfigs that don't have a supported pixmap format + xf86/logind: Fix compilation error when built without logind/platform bus + xf86/logind: fix missing call to vtenter if the platform device is not paused + Convert more funcs to use InternalEvent. + os: Try to discover the current seat with the XDG_SEAT var first- Update to version 21.1.2 * This release fixes 4 recently reported security vulnerabilities and several regressions. * In particular, the real physical dimensions are no longer reported by the X server anymore as it was deemed to be a too disruptive change. X server will continue to report DPI as 96. - supersedes U_hw-xfree86-Propagate-physical-dimensions-from-DRM-co.patch - supersedes U_rendercompositeglyphs.patch - supersedes U_xfixes-Fix-out-of-bounds-access-in-ProcXFixesCreateP.patch - supersedes U_Xext-Fix-out-of-bounds-access-in-SProcScreenSaverSus.patch - supersedes U_record-Fix-out-of-bounds-access-in-SwapCreateRegiste.patch- U_xfixes-Fix-out-of-bounds-access-in-ProcXFixesCreateP.patch * CVE-2021-4009/ZDI-CAN-14950 (bsc#1190487) The handler for the CreatePointerBarrier request of the XFixes extension does not properly validate the request length leading to out of bounds memory write. - U_Xext-Fix-out-of-bounds-access-in-SProcScreenSaverSus.patch * CVE-2021-4010/ZDI-CAN-14951 (bsc#1190488) The handler for the Suspend request of the Screen Saver extension does not properly validate the request length leading to out of bounds memory write. - U_record-Fix-out-of-bounds-access-in-SwapCreateRegiste.patch * CVE-2021-4011/ZDI-CAN-14952 (bsc#1190489) The handlers for the RecordCreateContext and RecordRegisterClients requests of the Record extension do not properly validate the request length leading to out of bounds memory write.- U_rendercompositeglyphs.patch * X.Org Server SProcRenderCompositeGlyphs Out-Of-Bounds Access Privilege Escalation Vulnerability [CVE-2021-4008, ZDI-CAN-14192] (boo#1193030)- u_Support-configuration-files-under-run-X11-xorg.conf..patch - u_Add-udev-scripts-for-configuration-of-platform-devic.patch - u_Add-udev-rule-for-HyperV-devices.patch * Remove udev-based configuration - u_Revert-xf86-Accept-devices-with-the-simpledrm-driver.patch * Restore simpledrm workaround - u_xf86-Accept-devices-with-the-hyperv_drm-driver.patch * Add workaround to support hyperv_drm- u_pci-primary-Fix-up-primary-PCI-device-detection-for-the-platfrom-bus.patch * Fix SEGFAULT when parsing bus IDs of NULL (boo#1193250) - u_Support-configuration-files-under-run-X11-xorg.conf..patch * Support configuration files under /run. Required for generating configuration files via udev. (boo#1193250) - u_Add-udev-scripts-for-configuration-of-platform-devic.patch * Generate configuration files for platform devices (boo#1193250) - u_Revert-xf86-Accept-devices-with-the-simpledrm-driver.patch * Code has been obsoleted by udev patchset (boo#1193250) - u_Add-udev-rule-for-HyperV-devices.patch * Same as for platform devices, but on HyperV (boo#1193250)- enable build of Xorg on s390x (jira#SLE-18632)- U_hw-xfree86-Propagate-physical-dimensions-from-DRM-co.patch * reverse apply this one to go back to fixed 96 dpi (gitlab fdo/xserver issue#1241) - N_fix-dpi-values.diff * back to version for xserver < 21.1.0- Update to version 21.1.1 * s/__/@/ in inputtestdrv manpage * Make xf86CompatOutput() return NULL when there are no privates * Makefile.am: Add missing meson build files to release tarball- Update to version 21.1.0 * The meson support is now fully mature. While autotools support will still be kept for this release series, it will be dropped afterwards. * Glamor support for Xvfb. * Variable refresh rate support in the modesetting driver. * XInput 2.4 support which adds touchpad gestures. * DMX DDX has been removed. * X server now correctly reports display DPI in more cases. This may affect rendering of client applications that have their own workarounds for hi-DPI screens. * A large number of small features and various bug fixes. - updated xorg-server-provides - supersedes patches * U_Fix-segfault-on-probing-a-non-PCI-platform-device-on.patch * U_dix-window-Use-ConfigureWindow-instead-of-MoveWindow.patch * U_glamor_egl-Reject-OpenGL-2.1-early-on.patch * u_render-Cast-color-masks-to-unsigned-long-before-shifting-them.patch - refreshed patches * N_fix-dpi-values.diff * N_zap_warning_xserver.diff * u_modesetting-Fix-dirty-updates-for-sw-rotation.patch * u_randr-Do-not-crash-if-slave-screen-does-not-have-pro.patch * u_vesa-Add-VBEDPMSGetCapabilities-VBEDPMSGet.patch - disabled n_xserver-optimus-autoconfig-hack.patch, which I believe is superseded by: commit 078277e4d92f05a90c4715d61b89b9d9d38d68ea Author: Dave Airlie Date: Fri Aug 17 09:49:24 2012 +1000 xf86: autobind GPUs to the screen - added pkgconfig(libxcvt) - cvt binary moved to libxcvt0 package- Update to version 1.20.13 * bugfix release - supersedes U_present-get_crtc-should-not-return-crtc-when-its-scr.patch, U_modesetting-unflip-not-possible-when-glamor-is-not-s.patch- U_modesetting-unflip-not-possible-when-glamor-is-not-s.patch * this should fixes crashes of xfce when running under qemu (boo#1188559)- add U_present-get_crtc-should-not-return-crtc-when-its-scr.patch (bsc#1188559) https://gitlab.freedesktop.org/xorg/xserver/-/issues/1195- Update to version 1.20.12 * bugfix release- Drop U_xwayland-Allow-passing-a-fd.patch: We build xwayland in a separate package now, so no need to keep this patch here.- Fix typo in %post: xbb.conf -> xkb.conf- u_modesetting-Fix-dirty-updates-for-sw-rotation.patch * Fixes broken rotation support for DRM drivers without hardware rotation support or direct vram access (bsc#1182955)- disable build of Xwayland, which is now being built in separate xwayland package with more recent sources (boo#1182677)- Update to version 1.20.11 * bugfix release - supersedes U_Fix-XChangeFeedbackControl-request-underflow.patch, U_xkb-Fix-heap-overflow-caused-by-optimized-away-min.patch- U_Fix-XChangeFeedbackControl-request-underflow.patch * Fix XChangeFeedbackControl() request underflow (CVE-2021-3472, ZDI-CAN-1259, bsc#1180128)- reenabled LTO (boo#1133294) * u_no-lto-for-tests.patch disables LTO in test/ subtree, since "-Wl,-wrap" is not supported by LTO * added "%global _lto_cflags %{?_lto_cflags} -ffat-lto-objects"- Update to version 1.20.10: * Check SetMap request length carefully. * Fix XkbSetDeviceInfo() and SetDeviceIndicators() heap overflows * present/wnmd: Translate update region to screen space * modesetting: keep going if a modeset fails on EnterVT * modesetting: check the kms state on EnterVT * configure: Build hashtable for Xres and glvnd * xwayland: Create an xwl_window for toplevel only * xwayland: non-rootless requires the wl_shell protocol * glamor: Update pixmap's devKind when making it exportable * os: Fix instruction pointer written in xorg_backtrace * present/wnmd: Execute copies at target_msc-1 already * present/wnmd: Move up present_wnmd_queue_vblank * present: Add present_vblank::exec_msc field * present: Move flip target_msc adjustment out of present_vblank_create * xwayland: Remove pending stream reference when freeing * xwayland: use drmGetNodeTypeFromFd for checking if a node is a render one * xwayland: Do not discard frame callbacks on allow commits * present/wnmd: Remove dead check from present_wnmd_check_flip * xwayland: Check window pixmap in xwl_present_check_flip2 * present/wnmd: Can't use page flipping for windows clipped by children * xfree86: Take second reference for SavedCursor in xf86CursorSetCursor * glamor: Fix glamor_poly_fill_rect_gl xRectangle::width/height handling * include: Increase the number of max. input devices to 256. * Revert "linux: Make platform device probe less fragile" * Revert "linux: Fix platform device PCI detection for complex bus topologies" * Revert "linux: Fix platform device probe for DT-based PCI" - Remove included pachtes * U_xfree86_take_second_ref_for_xcursor.patch * U_Revert-linux-Fix-platform-device-probe-for-DT-based-.patch * U_Revert-linux-Fix-platform-device-PCI-detection-for-c.patch * U_Revert-linux-Make-platform-device-probe-less-fragile.patch * U_Fix-XkbSetDeviceInfo-and-SetDeviceIndicators-heap-ov.patch * U_Check-SetMap-request-length-carefully.patch- remove unneeded python2 script 'fdi2iclass.py' from xorg-x11-server-sources subpackage (boo#1179591)- U_Check-SetMap-request-length-carefully.patch * XkbSetMap Out-Of-Bounds Access: Insufficient checks on the lengths of the XkbSetMap request can lead to out of bounds memory accesses in the X server. (ZDI-CAN 11572, CVE-2020-14360, bsc#1174908) - U_Fix-XkbSetDeviceInfo-and-SetDeviceIndicators-heap-ov.patch * XkbSetDeviceInfo Heap-based Buffer Overflow: Insufficient checks on input of the XkbSetDeviceInfo request can lead to a buffer overflow on the head in the X server. (ZDI-CAN 11389, CVE-2020-25712, bsc#1177596)- n_xorg-wrapper-anybody.patch * replace default config /etc/X11/Xwrapper, which allows anybody to use the wrapper, by a patch for the code, i.e. [#] rootonly, console, anybody allowed_users=anybody [#] yes, no, auto needs_root_rights=auto is now the default without any Xwrapper config (needs_root_rights=auto was already the default before)- u_xorg-wrapper-Xserver-Options-Whitelist-Filter.patch * replaced by improved version written by Matthias Gerstner of our security team + simplified the option parsing code a bit + changed the "ignore forbidden argument" logic into an "abort on forbidden argument" logic. This is safer and avoids surprises on the user's end that could occur if the desired command line arguments aren't effective but the Xorg server is still started. + tried to adjust to the coding style present in the file (mostly the function name) + added some logic to apply the option filtering only to non-root users when Xorg is actually started as root. This should allow for full flexibility if root calls the wrapper or if the Xorg server only runs with user privileges.- U_Fix-segfault-on-probing-a-non-PCI-platform-device-on.patch, U_Revert-linux-Fix-platform-device-PCI-detection-for-c.patch, U_Revert-linux-Fix-platform-device-probe-for-DT-based-.patch, U_Revert-linux-Make-platform-device-probe-less-fragile.patch * fix Xserver startup on Raspberry Pi 3 (boo#1176203)- n_xorg-wrapper-rename-Xorg.patch * moved Xorg to Xorg.bin and Xorg.sh to Xorg (boo#1175867) - change default for needs_root_rights to auto in Xwrapper.config (boo#1175867)- reenabled SUID wrapper for TW (boo#1175867) - u_xorg-wrapper-Xserver-Options-Whitelist-Filter.patch * Xserver option whitelist filter (boo#1175867)-Add U_xfree86_take_second_ref_for_xcursor.patch: fix use-after-free when switching VTs.- Update to version 1.20.9: * Fix XRecordRegisterClients() Integer underflow * Fix XkbSelectEvents() integer underflow * Fix XIChangeHierarchy() integer underflow * Correct bounds checking in XkbSetNames() * linux: Fix platform device probe for DT-based PCI * linux: Fix platform device PCI detection for complex bus topologies * linux: Make platform device probe less fragile * fix for ZDI-11426 * xfree86: add drm modes on non-GTF panels * present: Check valid region in window mode flips * xwayland: Handle NULL xwl_seat in xwl_seat_can_emulate_pointer_warp * xwayland: Propagate damage x1/y1 coordinates in xwl_present_flip * doc: Update URLs in Xserver-DTrace.xml * xwayland: Use a fixed DPI value for core protocol * xwayland: only use linux-dmabuf if format/modifier was advertised * hw/xfree86: Avoid cursor use after free * Update URL's in man pages * xwayland: Disable the MIT-SCREEN-SAVER extension when rootless * xwayland: Hold a pixmap reference in struct xwl_present_event * randr: Check rrPrivKey in RRHasScanoutPixmap() * modesetting: Fix front_bo leak at drmmode_xf86crtc_resize on XRandR rotation * xwayland: Store xwl_tablet_pad in its own private key * xwayland: Initialise values in xwlVidModeGetGamma() * xwayland: Fix crashes when there is no pointer * xwayland: Clear private on device removal * xwayland: Free all remaining events in xwl_present_cleanup * xwayland: Always use xwl_present_free_event for freeing Present events * present/wnmd: Free flip_queue entries in present_wnmd_clear_window_flip * present/wnmd: Keep pixmap pointer in present_wnmd_clear_window_flip * xwayland: import DMA-BUFs with GBM_BO_USE_RENDERING only * xwayland: Fix infinite loop at startup * modesetting: Disable pageflipping when using a swcursor * dix: do not send focus event when grab actually does not change - Drop patches fixed upstream: * U_0001-Correct-bounds-checking-in-XkbSetNames.patch * U_0002-Fix-XIChangeHierarchy-integer-underflow.patch * U_0003-Fix-XkbSelectEvents-integer-underflow.patch * U_0004-Fix-XRecordRegisterClients-Integer-underflow.patch * U_FixForZDI-11426.patch- U_0001-Correct-bounds-checking-in-XkbSetNames.patch * Correct bounds checking in XkbSetNames() [CVE-2020-14345 / ZDI 11428, boo#1174635] - U_0002-Fix-XIChangeHierarchy-integer-underflow.patch * Fix XIChangeHierarchy() integer underflow [CVE-2020-14346 / ZDI-CAN-11429, boo#1174638] - U_0003-Fix-XkbSelectEvents-integer-underflow.patch * Fix XkbSelectEvents() integer underflow [CVE-2020-14361 / ZDI-CAN 11573, boo#1174910] - U_0004-Fix-XRecordRegisterClients-Integer-underflow.patch * Fix XRecordRegisterClients() Integer underflow [CVE-2020-14362 / ZDI-CAN-11574, boo#1174913]- U_FixForZDI-11426.patch * Leak of uninitialized heap memory form the X server to clients on pixmap allocation (ZDI-CAN-11426, CVE-2020-14347, bsc#1174633)- move xorg_pci_ids dir from /etc/X11 to /usr/share/X11 and xorg-x11-server.macros from /etc/rpm to /usr/lib/rpm/macros.d; no longer package /etc/X11/xorg.conf.d (boo#1173056)- U_glamor_egl-Reject-OpenGL-2.1-early-on.patch * GLAMOR: no longer bail out for OpenGL drivers < 2.1 (boo#1172321)- provide/obsoletes cirrus and ast usermode driver also on openSUSE (jsc#SLE-12127)- Update to version 1.20.8+0: * Revert "dri2: Don't make reference to noClientException" * dix: Check for NULL spriteInfo in GetPairedDevice * os: Ignore dying client in ResetCurrentRequest * modesetting: remove unnecessary error message, fix zaphod leases * Fix building with `-fno-common` * xwayland: clear pixmaps after creation in rootless mode * glamor: Fix a compiler warning since the recent OOM fixes. * Restrict 1x1 pixmap filling optimization to GXcopy * Add xf86OSInputThreadInit to stub os-support as well * Fix old-style definition warning for xf86OSInputThreadInit() * xwayland/glamor-gbm: Handle DRM_FORMAT_MOD_INVALID gracefully * configure: Define GLAMOR_HAS_EGL_QUERY_DRIVER when available * modesetting: Disable atomic support by default * modesetting: Explicitly #include "mi.h" * xfree86/modes: Bail from xf86RotateRedisplay if pScreen->root is NULL * xwayland: Split up xwl_screen_post_damage into two phases * xwayland: Call glamor_block_handler from xwl_screen_post_damage * xwayland: Add xwl_window_create_frame_callback helper * xwayland: Use single frame callback for Present flips and normal updates * xwayland: Use frame callbacks for Present vblank events * xwayland: Delete all frame_callback_list nodes in xwl_unrealize_window * glamor: Propagate FBO allocation failure for picture to texture upload * glamor: Error out on out-of-memory when allocating PBO for FBO access * glamor: Propagate glamor_prepare_access failures in copy helpers * glamor: Fallback to system memory for RW PBO buffer allocation - supersedes u_fno-common.patch- specfile: reenabled XFree86-VidModeExtension (boo#1164020)- u_fno-common.patch * fix build with gcc's -fno-common option (boo#1160423)- Update to version 1.20.7+0: * xserver 1.20.7 * ospoll: Fix Solaris ports implementation to build on Solaris 11.4 * os-support/solaris: Set IOPL for input thread too * Add xf86OSInputThreadInit call from common layer into os-support layer * Add ddxInputThread call from os layer into ddx layer * os-support/solaris: Drop ExtendedEnabled global variable * glamor: Only use dual blending with GLSL >= 1.30 * modesetting: Check whether RandR was initialized before calling rrGetScrPriv * Xi: return AlreadyGrabbed for key grabs > 255 * xwayland: Do flush GPU work in xwl_present_flush * modesetting: Clear new screen pixmap storage on RandR resize * xfree86/modes: Call xf86RotateRedisplay from xf86CrtcRotate * modesetting: Call glamor_finish from drmmode_crtc_set_mode * modesetting: Use EGL_MESA_query_driver to select DRI driver if possible * glamor: Add a function to get the driver name via EGL_MESA_query_driver- Build XWayland also on s390.- Update to version 1.20.6+0: * xfree86: Test presence of isastream() * present/wnmd: Relax assertion on CRTC on abort_vblank() * os: Don't crash in AttendClient if the client is gone * dix: Call SourceValidate before GetImage * mi: Add a default no-op miSourceValidate * compiler.h: Do not include sys/io.h on ARM with glibc * xfree86: Call ScreenInit for protocol screens before GPU screens * modesetting: - Implement ms_covering_randr_crtc() for ms_present_get_crtc() - Fix ms_covering_crtc() segfault with non-xf86Crtc slave- Update to version 1.20.5+24: * Fix crash on XkbSetMap - Drop unneeded obsinfo file and tweak _service.- Update to version 1.20.5+22: * miext/sync: - Make struct _SyncObject::initialized fully ABI compatible - Fix needless ABI change * xf86: Disable unused crtc functions when a lease is revoked * xwayland: - Handle the case of windows being realized before redirection - Refactor surface creation into a separate function - Separate DamagePtr into separate window data - Do not free a NULL GBM bo - Expand the RANDR screen size limits - Update screen pixmap on output resize - Reset scheduled frames after hiding tablet cursor - Check status in GBM pixmap creation - Avoid a crash on pointer enter with a grab * GLX: - Fix previous context validation in xorgGlxMakeCurrent - Set GlxServerExports::{major,minor}Version - Add a function to change a clients vendor list - Use the sending client for looking up XID's - Add a per-client vendor mapping * xsync: Add resource inside of SyncCreate, export SyncCreate * dri2: Sync i965_pci_ids.h from mesa * Xi: Use current device active grab to deliver touch events if any * Revert "present/scmd: Check that the flip and screen pixmap pitches match" * glamor: Make pixmap exportable from `gbm_bo_from_pixmap()` - Drop patches fixed upstream: * U_xwayland-Separate-DamagePtr-into-separate-window-data.patch * 0001-xsync-Add-resource-inside-of-SyncCreate-export-SyncC.patch * 0002-GLX-Add-a-per-client-vendor-mapping.patch * 0003-GLX-Use-the-sending-client-for-looking-up-XID-s.patch * 0004-GLX-Add-a-function-to-change-a-clients-vendor-list.patch * 0005-GLX-Set-GlxServerExports-major-minor-Version.patch - Switch to gitcheckout via source service, use the stable released branch but set explicit commit used in _service.- reintroduce Xvfb subpackage (boo#1151457)- Add U_xwayland-Separate-DamagePtr-into-separate-window-data.patch and U_xwayland-Allow-passing-a-fd.patch: Needed for gnome 3.34 new and experimental xwayland on demand feature. - Rebase patches with quilt.- added patches required for NVIDIA's PRIME render offload support, which is available since release 435.xx: 0001-xsync-Add-resource-inside-of-SyncCreate-export-SyncC.patch, 0002-GLX-Add-a-per-client-vendor-mapping.patch, 0003-GLX-Use-the-sending-client-for-looking-up-XID-s.patch, 0004-GLX-Add-a-function-to-change-a-clients-vendor-list.patch, 0005-GLX-Set-GlxServerExports-major-minor-Version.patch- move xorg.conf.d snippets from /etc/X11/xorg.conf.d to /usr/share/X11/xorg.conf.d (boo#1139692)- Update to version 1.20.5: Minor bugfix release to fix some input, Xwayland, glamor, and Present issues. Thanks to all who contributed fixes and testing.- Disable LTO (boo#1133294).- Add systemd-rpm-macros BuildRequire for %tmpfiles_*.- xorg-server 1.20.4 * A variety of bugfixes across the board, but primarily in Xwayland. Thanks to all who contributed with testing and fixes!- get rid of meta packages still requiring/recommending obsolete drivers packages (boo#1121525)- provide/obsolete no longer existing xf86-video-ast, xf86-video-cirrus on sle15 (bsc#1120282)- u_xfree86-Do-not-claim-pci-slots-if-fb-slot-is-already.patch * X server does not support mixing fbdev with other drivers, so claiming pci slots when a fb slot is already claimed only leads to quiting with fatal error. (bsc#1119431)- xorg-server 1.20.3 (see changelog below) superseded the following patch we used in sle15 before (bsc#1112020, CVE-2018-14665): - U_Disable-logfile-and-modulepath-when-running-with-ele.patch- U_dix-window-Use-ConfigureWindow-instead-of-MoveWindow.patch * Fix abort triggered by some uses of screensaver. (bsc#1114822)- Update to version 1.20.3 * Disable -logfile and -modulepath when running with elevated privileges (bsc#1112020) * LogFilePrep: add a comment to the unsafe format string. * xfree86: fix readlink call- Update to version 1.20.2: Lots of bugfixes all over the map especially for modesetting, glamor and xwayland!- Update n_xserver-optimus-autoconfig-hack.patch to v5. * Fixes provider auto-configuration with nvidia proprietary driver. (bsc#1103816)- Update to version 1.20.1: This bugfix release fixes several issues in RANDR, Xwayland, glamor, the modesetting driver, and elsewhere. - Packaging changes: + Adapt patch N_Install-Avoid-failure-on-wrapper-installation.patch to work with the new version + Remove patch U_Xext-shm-Refuse-to-work-for-remote-clients.patch + Remove patch U_modesetting-use-drmmode_bo_import-for-rotate_fb.patch + Remove patch u_modesetting-Fix-cirrus-24bpp-breakage.patch + Remove patch U_exa-use-picturematchformat.patch- U_exa-use-picturematchformat.patch * Fix breakage of Xfce (bsc#1102979)- fixed build on s390(x)- u_modesetting-Fix-cirrus-24bpp-breakage.patch * Fix breakage of cirrus 24bpp support on modesetting driver (bsc#1101699)- Remove /var/lib/X11 and its symlink, it is no longer needed and doesn't work with transaction-updates (FATE#325524). - Move README.compiled to another location and use tmpfiles to copy it at runtime.- U_modesetting-use-drmmode_bo_import-for-rotate_fb.patch * fixes rotation in modesetting driver (regression with xorg-server 1.20.0, fdo#106715) * might also fix boo#1099812 ...- U_xkb-Fix-heap-overflow-caused-by-optimized-away-min.patch * Fix heap overflow caused by unexpected optimization, which was possible because of relying on undefined behavior. (boo#1099113)- U_Xext-shm-Refuse-to-work-for-remote-clients.patch * Avoid access to System V shared memory segment on the X server side for clients forwarded via SSH. Also prevent them from hanging while waiting for the reply from the ShmCreateSegment request. (boo#1097227)- Remove n_add-dummy-xf86DisableRandR.patch * After upgrade to 1.20.0 the API officially no longer includes xf86DisableRandR, so there is no need to add it back.- Update to version 1.20.0: New features: + RANDR 1.6, which enables leasing RANDR resources to a client for its exclusive use (e.g. head mounted displays) + Depth 30 support in glamor and the modesetting driver + A meson-based build system, parallel to autotools + Pageflipping support for PRIME output sinks + OutputClass device matching for xorg.conf + Input grab and tablet support in Xwayland - Remove upstream patches: + u_xorg-x11-server-reproducible.patch Solved slightly different + u_os-inputthread-Force-unlock-when-stopping-thread.patch + u_xfree86-add-default-modes-for-16-9-and-16-10.patch + U_xwayland-Don-t-process-cursor-warping-without-an-xwl.patch + U_xwayland-Give-up-cleanly-on-Wayland-socket-errors.patch + U_xwayland-avoid-race-condition-on-new-keymap.patch + U_xwayland-remove-dirty-window-unconditionally-on-unre.patch + U_0001-animcur-Use-fixed-size-screen-private.patch + U_0002-animcur-Return-the-next-interval-directly-from-the-t.patch + U_0003-animcur-Run-the-timer-from-the-device-not-the-screen.patch + U_0004-animcur-Fix-transitions-between-animated-cursors.patch + U_xfree86-Remove-broken-RANDR-disabling-logic-v4.patch + U_glx-Do-not-call-into-Composite-if-it-is-disabled.patch - Adapt patches to work with the new release: + N_zap_warning_xserver.diff + N_fix_fglrx_screendepth_issue.patch + n_xserver-optimus-autoconfig-hack.patch + u_Use-better-fallbacks-to-generate-cookies-if-arc4rand.patch + u_xorg-wrapper-build-Build-position-independent-code.patch- U_glx-Do-not-call-into-Composite-if-it-is-disabled.patch * Fixes crash when GLX is enabled and Composite disabled. (bnc#1079607)- n_add-dummy-xf86DisableRandR.patch * Add dummy xf86DisableRandR to fix linking with drivers that still call it. See explanation inside the patch. (bnc#1089601)- U_xfree86-Remove-broken-RANDR-disabling-logic-v4.patch * Fix crash on initialization when fbdev and modesetting are used together. (bnc#1068961) - u_randr-Do-not-crash-if-slave-screen-does-not-have-pro.patch * Fix crash when using randr when fbdev and modesetting are used together. (bnc#1068961)- Update and re-enable n_xserver-optimus-autoconfig-hack.patch. (bnc#1084411)- U_xwayland-Don-t-process-cursor-warping-without-an-xwl.patch, U_xwayland-Give-up-cleanly-on-Wayland-socket-errors.patch, U_xwayland-avoid-race-condition-on-new-keymap.patch, U_xwayland-remove-dirty-window-unconditionally-on-unre.patch: * Various crash and bug fixes in XWayland server (bgo#791383, bgo#790502).- Add u_xorg-x11-server-reproducible.patch to make build reproducible (boo#1047218)- U_0001-animcur-Use-fixed-size-screen-private.patch, U_0002-animcur-Return-the-next-interval-directly-from-the-t.patch, U_0003-animcur-Run-the-timer-from-the-device-not-the-screen.patch, U_0004-animcur-Fix-transitions-between-animated-cursors.patch * There is a bug in version 1.19 of the X.org X server that can cause an infinite recursion in the animated cursor code, which has been fixed by these patches (boo#1080312) - supersedes u_cursors-animation.patch (boo#1020061)- Added u_xfree86-add-default-modes-for-16-9-and-16-10.patch (boo#1075249) Improve user experience for users with 16:9 or 16:10 screens- Update to version 1.19.6: Another collection of fixes from master. There will likely be at east one more 1.19.x release in 2018.- Depend on pkgconfig's gl, egl and gbm instead of Mesa-devel. * Those dependencies are what xorg-x11-server really needs. Mesa-devel is too general and is a bottleneck in distribution build. (bnc#1071297)- Replace references to /var/adm/fillup-templates with new %_fillupdir macro (boo#1069468)- u_os-inputthread-Force-unlock-when-stopping-thread.patch * Prevent dead lock if terminating while on inactive VT. (bnc#1062977)- Update to version 1.19.5: One regression fix since 1.19.4, and fixes for CVE-2017-12176 through CVE-2017-12187.- Update to version 1.19.4: A collection of stability fixes from the development branch, including two minor CVEs (CVE-2017-13721, CVE-2017-13723). - Remove upstream patches: + U_Xi-Do-not-try-to-swap-GenericEvent.patch + U_Xi-Verify-all-events-in-ProcXSendExtensionEvent.patch + U_Xi-Zero-target-buffer-in-SProcXSendExtensionEvent.patch + U_dix-Disallow-GenericEvent-in-SendEvent-request.patch - Adapt patches to work with the new release: + u_Use-better-fallbacks-to-generate-cookies-if-arc4rand.patch- u_cursors-animation.patch fix cursors animation (boo#1020061)- disable Xwayland for s390x again; it was wrong to enable it; there is no Wayland on s390x and will most likely never exist, since there is no gfx card on such systems and no gfx emulation either (bsc#1047173)- u_Use-better-fallbacks-to-generate-cookies-if-arc4rand.patch If arc4random_buf() is not available for generating cookies: * use getentropy(), if available (which was only recently added to glibc) * use getrandom() via syscall(), if available (there was no glibc wrapper for this syscall for a long time) * if all else fails, directly read from /dev/urandom as before, but employ O_CLOEXEC, do an OsAbort() in case the random data couldn't be read to avoid unsecure situations. Don't know if that's too hard a measure but it shouldn't actually occur except on maximum number of FDs reached (bsc#1025084)- U_Xi-Do-not-try-to-swap-GenericEvent.patch, U_Xi-Verify-all-events-in-ProcXSendExtensionEvent.patch, U_Xi-Zero-target-buffer-in-SProcXSendExtensionEvent.patch, U_dix-Disallow-GenericEvent-in-SendEvent-request.patch * Fix security issues in event handling. (bnc#1035283, CVE-2017-10971, CVE-2017-10972)- enable Xwayland also for s390x (bsc#1047173)- includes everything needed for additional sle issue entries: CVE-2017-2624, bnc#1025029, bnc#1025084, bnc#1025035- update build requirements- modesetting.ids: no longer hardcode Intel's Skylake, Broxton, and Kabylake IDs to modesetting driver; xf86-video-intel is no longer installed by default on these, so it will fallback to modesetting driver anyway; still you now can easily switch back to intel driver by installing xf86-video-intel package (boo#1042873)- Update to version 1.19.3: A couple more minor fixes, most notably a revert of a page-flipping change that regressed some drivers. - Remove upstreamd patches: + u_busfault_sigaction-Only-initialize-pointer-when-matched.patch- Update to version 1.19.2: A collection of stability fixes here across glamor, Xwayland, input, and Prime support. Also a security fix for CVE-2017-2624, a timing attack which can brute-force MIT-MAGIC-COOKIE authentication. - Remove upstream patches: + U_xfree86-Take-the-input-lock-for-xf86RecolorCursor.patch + U_xfree86-Take-the-input-lock-for-xf86ScreenCheckHWCursor.patch + U_xfree86-Take-the-input-lock-for-xf86TransparentCursor.patch- U_xfree86-Take-the-input-lock-for-xf86ScreenCheckHWCursor.patch * Add the missing input_lock() around the call into the driver's UseHWCursor() callback (bnc #1023845). - U_xfree86-Take-the-input-lock-for-xf86TransparentCursor.patch * The new input lock is missing for the xf86TransparentCursor() entry point (bnc #1023845).- U_xfree86-Take-the-input-lock-for-xf86RecolorCursor.patch * fixes random crashes in X in multihead mode if one of the monitors is vertically oriented (bnc #1023845)- N_driver-autoconfig.diff: No longer try to load "amdgpu" DDX by default for all GPUs with ATI vendor ID; this is now handled instead by an "OutputClass" section via kernel driver match, which has been added as config file to xf86-video-amdgpu driver package (bnc#1023385)- N_driver-autoconfig.diff: FGLRX does not support new x-server. This change fixes bad behavior(with empty config) when radeon ddx loads with amdgpu kernel module on SI and CIK cards, and x-server cannot start. Radeon ddx with radeon kernel module loads without any problem.- Update to version 1.19.1: First stable 1.19 release, including a few regression fixes.- Replace pkgconfig(libsystemd-*) with pkgconfig(libsystemd) Nowadays pkgconfig(libsystemd) replaces all libsystemd-* libs, which are obsolete.- Update to final 1.19.0- Exchange xorg-x11-fonts-core Requires for Recommends. The corefonts and cursors are not strickly required as long as one have a substitute such as Adwaita installed.- Update to version 1.18.99.901: - Remove upstream pachtes: + U_glamor-Remove-the-FBO-cache.patch + U_kdrive-fix-up-NewInputDeviceRequest-implementation.patch + U_kdrive-set-evdev-driver-for-input-devices-automatica.patch + U_ephyr-don-t-load-ephyr-input-driver-if-seat-option-i.patch + U_kdrive-don-t-let-evdev-driver-overwrite-existing-dev.patch + U_ephyr-ignore-Xorg-multiseat-command-line-options.patch + U_ephyr-enable-option-sw-cursor-by-default-in-multi-se.patch + U_kdrive-introduce-input-hot-plugging-support-for-udev.patch + U_kdrive-add-options-to-set-default-XKB-properties.patch + U_config-udev-distinguish-between-real-keyboards-and-o.patch - Disable u_os-connections-Check-for-stale-FDs.patch (not applicable anymore) - Adapt patches to work with the new release: + n_xserver-optimus-autoconfig-hack.patch (disabled for now as it causes problems) - Remove X.org stack version prefix. We are already atleast at verion 7.7. Plus we are updating individual components anyway. So the stack version is misleading.- Update to version 1.18.4: Another pile of backports from the devel branch, primarily in glamor, xwayland, and the modesetting driver. - Remove included patches: + u_x86emu-include-order.patch + U_modesetting-set-driverPrivate-to-NULL-after-closing-fd.patch - Update patches to reflect upstream changes: + U_glamor-Remove-the-FBO-cache.patch- U_glamor-Remove-the-FBO-cache.patch Fixes (bsc#983743) by not keeping >1 GB of VRAM busy.- U_modesetting-set-driverPrivate-to-NULL-after-closing-fd.patch: modesetting: Avoid crash in FreeRec() by NULLing a pointer which may still be used (boo#981268).- Replace N_Force-swcursor-for-KMS-drivers-without-hw-cursor-sup.patch by N_Disable-HW-Cursor-for-cirrus-and-mgag200-kernel-modules.patch Only disable HW cursor for cirrus and mgag200. This should fix a regression introduced by using modesetting for Intel gen9+ (boo#980124).- modesetting.ids: Add file for PCI IDs of ASICs which the modesetting rather than the native driver should be used for. This includes all Intel Gen9+ hardware (boo#978954).- removed u_exa-only-draw-valid-trapezoids.patch; no longer needed since pixman 0.32.0- removed no longer needed patch u_ad-hoc-fix-for-mmap-s-truncated-offset-parameter-on-.patch, see https://lists.x.org/archives/xorg-devel/2016-April/049493.html for upstream discussion; obsoleted by upstream patch https://cgit.freedesktop.org/xorg/xserver/commit/?id=4962c8c08842d9d3ca66d254b1ce4cacc4fb3756, which is already in xorg-server 1.18.3- Add permission verification for SUID wrapper - Disable SUID wrapper per default until reviewed- n_Install-Avoid-failure-on-wrapper-installation.patch: rename to: N_Install-Avoid-failure-on-wrapper-installation.patch - u_xorg-wrapper-Drop-supplemental-group-IDs.patch: Drop supplementary group privileges. - u_xorg-wrapper-build-Build-position-independent-code.patch: Build position independent.- n_Install-Avoid-failure-on-wrapper-installation.patch: Fix up build for wrapper. - Place SUID wrapper into a separate package: xorg-x11-server-wrapper- Set configure option --enable-suid-wrapper for TW: This way, the SUID wrapper is built which allows to run the Xserver as root even though the the DM instance runs as user. This allows to support drivers which require direct HW access.- Update to version 1.18.3: A few fixes relative to 1.18.2, including one fairly important performance fix to the Present extension. - Remove U_present-Only-requeue-for-next-MSC-after-flip-failure.patch The patch is included in this release.- Add patch U_present-Only-requeue-for-next-MSC-after-flip-failure.patch Fix a hang while using the present extension Bugzilla: https://bugs.freedesktop.org/show_bug.cgi?id=94515 https://bugs.freedesktop.org/show_bug.cgi?id=94596- Add automake, autoconf, libtool, c_compiler, pkgconfig(xorg-macros), pkgconfig(libudev), pkgconfig(libevdev), pkgconfig(mtdev) to Requires: of the SDK. This simplifies the build of Xserver modules.- Add support for a driver specific PCI IDs files supplementing what's in xf86VideoPtrToDriverList(). PCI ID lists may be held in /etc/X11/xorg_pci_ids (boo#972126).- Update version to 1.18.2: A big pile of updates in this one. Highlights include: * glamor is updated to use OpenGL core profiles if available, which should improve memory usage and performance on modern hardware, and got some other performance improvements for rpi and other GLES platforms * DRI2, DRI3, and Present all received correctness fixes for hangs, crashes, and other weirdness * Xwayland server has been updated to support the Xv and the xf86vidmode extensions for better compatibility, and fixed some bugs with output hotplug and pointer updates * Xwin saw improvements to window and clipboard management, and a few new keyboard layouts - Remove upstreamed patches: + U_kdrive-evdev-update-keyboard-LEDs-22302.patch- Backport upstream patches for Xephyr input hot-plugging / single-GPU multi-seat support: * U_kdrive-fix-up-NewInputDeviceRequest-implementation.patch * U_kdrive-set-evdev-driver-for-input-devices-automatica.patch * U_ephyr-don-t-load-ephyr-input-driver-if-seat-option-i.patch * U_kdrive-don-t-let-evdev-driver-overwrite-existing-dev.patch * U_ephyr-ignore-Xorg-multiseat-command-line-options.patch * U_ephyr-enable-option-sw-cursor-by-default-in-multi-se.patch * U_kdrive-introduce-input-hot-plugging-support-for-udev.patch * U_kdrive-add-options-to-set-default-XKB-properties.patch * U_kdrive-evdev-update-keyboard-LEDs-22302.patch * U_config-udev-distinguish-between-real-keyboards-and-o.patch- u_os-connections-Check-for-stale-FDs.patch Ignore file descriptor if socket or devices dies. This prevents the Xserver to loop at 100% when dbus dies (boo#954433).- Add 50-extensions.conf Disable the DGA extension by default (boo#947695).- Replaced u_confine_to_shape.diff by u_01-Improved-ConfineToShape.patch and u_02-DIX-ConfineTo-Don-t-bother-about-the-bounding-box-when-grabbing-a-shaped-window.patch.- u_pci-primary-Fix-up-primary-PCI-device-detection-for-the-platfrom-bus.patch Fix up primary device detection for the platform bus to fix the Xserver on older iMacs (boo#835975).- Update to version 1.18.1: First release in the 1.18 stable branch. Major themes are bugfixes in glamor, the modesetting driver, and the Present extension. Xwayland users may want to apply the following pair of patches in addition to this release: https://patchwork.freedesktop.org/patch/72945/raw/ https://patchwork.freedesktop.org/patch/72951/raw/ which combined fix an input issue when hotplugging monitors. Both are likely to be included in a future release unless testing discovers further problems. - Remove upstreamed patches: + ux_xserver_xvfb-randr.patch + U_systemd-logind-do-not-rely-on-directed-signals.patch + U_kdrive-UnregisterFd-Fix-off-by-one.patch + U_modesetting-should-not-reference-gbm-when-it-s-not-d.patch- u_Panning-Set-panning-state-in-xf86RandR12ScreenSetSize.patch Fix panning when configured in xorg.conf* (boo#771521).- Handle source-file-list in build not prep - N_xorg-x11-server-rpmmacros.patch: Delete: Process xorg-x11-server.macros in install- U_modesetting-should-not-reference-gbm-when-it-s-not-d.patch: fix build when gbm is not defined.- u_busfault_sigaction-Only-initialize-pointer-when-matched.patch Only initialize pointer when matched (boo#961439). - u_kdrive-UnregisterFd-Fix-off-by-one.patch -> U_kdrive-UnregisterFd-Fix-off-by-one.patch- Add test for defined macro %build_xwayland This can be used to enable the build of Xwayland and the package xorg-x11-server-wayland using a macro in projconf (boo#960487).- Split out Xwayland: * Build a package xorg-x11-server-wayland * Limit build to Factory (boo#960487).- Enable XWayland on Leap also (boo#960487)- u_kdrive-UnregisterFd-Fix-off-by-one.patch * Copy open file table correctly by avoiding an off-by-one error (boo#867483).- Update to version 1.18.0 - refreshed N_zap_warning_xserver.diff, N_Force-swcursor-for-KMS-drivers-without-hw-cursor-sup.patch - supersedes u_fbdevhw.diff, U_linux-Add-linux_parse_vt_settings-and-linux_get_keep.patch, U_linux-Add-a-may_fail-paramter-to-linux_parse_vt_sett.patch, U_systemd-logind-Only-use-systemd-logind-integration-t.patch- Update to version 1.17.4: Minor brown-bag release. The important fix here is Martin's clientsWritable change which fixes a crash when built against xproto 7.0.28. - supersedes u_0001-os-make-sure-the-clientsWritable-fd_set-is-initializ.patch- Update to version 1.17.3: Various bugfixes across the board.  The most visible changes include fixing GLX extension setup under Xwayland and other non-Xorg servers (enabling core contexts in more scenarios), and various stability fixes to glamor and the Present extension. - supersededs the following patches: * u_randr_allow_rrselectinput_for_providerchange_and_resourcechange_events.patch * u_CloseConsole-Don-t-report-FatalError-when-shutting-down.patch - removed evdev xorg.conf.d snippet since it's meanwhile shipped with evdev driver itself (since version 2.10.0)- u_vesa-Add-VBEDPMSGetCapabilities-VBEDPMSGet.patch Add VBEDPMSGetCapabilities() and VBEDPMSGet() functions (bsc#947356, boo#947493).- Backport a few upstream fixes for systemd/VT handling (boo#939838): U_linux-Add-linux_parse_vt_settings-and-linux_get_keep.patch U_linux-Add-a-may_fail-paramter-to-linux_parse_vt_sett.patch U_systemd-logind-Only-use-systemd-logind-integration-t.patch U_systemd-logind-do-not-rely-on-directed-signals.patch- Improve conditional enablement of XWayland.- Add patch u_0001-os-make-sure-the-clientsWritable-fd_set-is-initializ.patch Prevent segmentation faults with more than 256 clients (introduced by xproto 7.0.28 increasing the max client count 256 -> 512) Fdo Bug: https://bugs.freedesktop.org/show_bug.cgi?id=91316- Update to version 1.17.2: Pick up a pile of fixes from master. Notable highlights: + Fix for CVE-2015-3164 in Xwayland + Fix int10 setup for vesa + Fix regression in server-interpreted auth + Fix fb setup on big-endian CPUs + Build fix for for gcc5 - Dropped patches: + Patch110: u_connection-avoid-crash-when-CloseWellKnownConnections-gets-called-twice.patch + Patch113: u_symbols-Fix-sdksyms.sh-to-cope-with-gcc5.patch + Patch116: U_os-XDMCP-options-like-query-etc-should-imply-listen.patch + Patch118: U_int10-Fix-error-check-for-pci_device_map_legacy.patch + Patch119: U_xwayland-enable-access-control-on-open-socket.patch + Patch120: U_os-support-new-implicit-local-user-access-mode.patch + Patch121: U_xwayland-default-to-local-user-if-no-xauth-file-given.patch + Patch2000: U_systemd-logind-filter-out-non-signal-messages-from.patch + Patch2001: U_systemd-logind-dont-second-guess-D-Bus-default-tim.patch - Changed patches to work with the new version: + Patch114: u_ad-hoc-fix-for-mmap-s-truncated-offset-parameter-on-.patch- U_os-support-new-implicit-local-user-access-mode.patch, U_xwayland-default-to-local-user-if-no-xauth-file-given.patch, U_xwayland-enable-access-control-on-open-socket.patch * Prevent unauthorized local access. (bnc#934102, CVE-2015-3164)- Fix GNOME X Session for some hybrid graphics (rh#1209347): + add U_systemd-logind-filter-out-non-signal-messages-from.patch + add U_systemd-logind-dont-second-guess-D-Bus-default-tim.patch- Fix build of s390/s390x (bnc#933503)- U_int10-Fix-error-check-for-pci_device_map_legacy.patch * int10: Fix error check for pci_device_map_legacy pci_device_map_legacy returns 0 on success (bsc#932319).- Add xorg-x11-server-byte-order.patch to correctly set X_BYTE_ORDER when compiling tigervnc on ppc64 architecture. Related to bnc#926201- U_os-XDMCP-options-like-query-etc-should-imply-listen.patch * Enable listening on tcp when using -query. (bnc#924914)- Enable systemd-logind integration support: + Add pkgconfig(libsystemd-logind) and pkgconfig(dbus-1) BuildRequires. + Pass --enable-systemd-logind to configure.- u_ad-hoc-fix-for-mmap-s-truncated-offset-parameter-on-.patch * ad hoc fix for mmap's truncated offset parameter on 32bit (bnc#917385) - N_Force-swcursor-for-KMS-drivers-without-hw-cursor-sup.patch * hwcursor still considered broken in cirrus KMS ((bnc#864141, bnc#866152)- Update to version 1.17.1: Fixes for CVE 2015-0255. + xkb: Don't swap XkbSetGeometry data in the input buffer + xkb: Check strings length against request size- u_symbols-Fix-sdksyms.sh-to-cope-with-gcc5.patch Fix sdksyms.sh to work with gcc5 (bnc#916580).- Update to version 1.17.0: + Continued work to strip out stale code and clean up the server. Thousands of lines of unnecessary code have disappeared yet again. + The modesetting driver has been merged into the server code base, simplifying ongoing maintenance by coupling it to the X server ABI/API release schedule. This now includes DRI2 support (so that GLX works correctly) along with Glamor support (which handles DRI3). + Lots of Glamor improvements, including a rewrite of the core protocol rendering functions. - Remove upstream patches: + Patch130: U_BellProc-Send-bell-event-on-core-protocol-bell-when-requested.patch + Patch131: U_fb-Fix-invalid-bpp-for-24bit-depth-window.patch + Patch200: U_kdrive_extend_screen_option_syntax.patch + Patch201: U_ephyr_enable_screen_window_placement.patch + Patch202: U_ephyr_add_output_option_support.patch- Add xorg-x11-server-source package that contains patched xserver sources used to build xorg-x11-Xvnc.- Update to version 1.16.2 - Fix present_pixmap when using present_notify_msc - Fix present_notify to return right away when querying current or past msc.Xext/shm: Detach SHM segment after Pixmap is released - xkb: ignore floating slave devices when updating from master (#81885) - fb: Fix invalid bpp for 24bit depth window - supersedes U_fb-Fix-invalid-bpp-for-24bit-depth-window.patch- fix bashism in post script- XServer looks for dri.pc during configure. dri.pc is currently provided by a Mesa devel package, which is pulled in by other requirements, but it might be better to explicitly require dri.pc./bin/sh/bin/shglamorglamorglamor-eglglamor-eglxf86-video-astxf86-video-cirrusxf86-video-modesettingxf86-video-modesettingxorg-x11-driver-inputxorg-x11-driver-videoxorg-x11-serverxorg-x11-server-glxs390zp38 1761639707  !"#$%*+,-./0123450.410.025.224.421.1.1121.1.1121.1.117.6_17.6_121.1.11-150600.5.20.17.6_21.1.1121.1.11-150600.5.20.121.1.117.6_21.1.1121.1.117.6_21.1.1121.1.117.6_21.1.117.6_17.6_17.6_21.1.11  libglx.soXXorggtfxorg-backtracexkb.confxorgmodulesdriversmodesetting_drv.soextensionslibglx.soxorgxorg-libglx.soinputinputtest_drv.solibexa.solibfbdevhw.solibglamoregl.solibint10.solibshadow.solibshadowfb.solibvgahw.solibwfb.soprotocol.txtxorg.conf.d10-quirks.conf50-extensions.confxorg_pci_idsmodesetting.idsfactoryvarlibxkbcompiledREADME.compiledsysconfig.displaymanager-xorg-x11-serverXorg.1.gzXserver.1.gzXvfb.1.gzgtf.1.gzexa.4.gzfbdevhw.4.gzinputtestdrv.4.gzmodesetting.4.gzxorg.conf.5.gzxorg.conf.d.5.gzxkbcompiled/etc/alternatives//usr/bin//usr/lib/tmpfiles.d//usr/lib64//usr/lib64/xorg//usr/lib64/xorg/modules//usr/lib64/xorg/modules/drivers//usr/lib64/xorg/modules/extensions//usr/lib64/xorg/modules/extensions/xorg//usr/lib64/xorg/modules/input//usr/share/X11//usr/share/X11/xorg.conf.d//usr/share/X11/xorg_pci_ids//usr/share//usr/share/factory//usr/share/factory/var//usr/share/factory/var/lib//usr/share/factory/var/lib/xkb//usr/share/factory/var/lib/xkb/compiled//usr/share/fillup-templates//usr/share/man/man1//usr/share/man/man4//usr/share/man/man5//var/lib//var/lib/xkb/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:41314/SUSE_SLE-15-SP6_Update/fdf4876f833792df2f8d31dd2685cf80-xorg-x11-server.SUSE_SLE-15-SP6_Updatedrpmxz5s390x-suse-linux cannot open `/home/abuild/rpmbuild/BUILDROOT/xorg-x11-server-21.1.11-150600.5.20.1.s390x/etc/alternatives/libglx.so' (No such file or directory)ELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, for GNU/Linux 4.3.0, BuildID[sha1]=1d38052d7c950d6c078828c49c23a16e849dbd46, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, for GNU/Linux 4.3.0, BuildID[sha1]=dc640548c119de889f620f0269cfc9b957fd0a39, strippedPerl script text executableFORTRAN program, ASCII textdirectoryELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=b960c707c25fea49131db1859779a7d20c590499, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=a609a9191452249a46f59618173b7795661b69ec, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=7b38670327bf98532dc90eb7ff1d032c72131769, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=838b8a7d18c66ce6a281cdb697f5f61e2150eebc, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=3a749d2904928b687f880744e98cf6b10574ec09, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=ab0986c58220e2d3cd119569d7182216eb5ecd84, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=c94eddddeeac56baa5979a5c9a98279b6f8a4b29, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=0746554c60778410633aeb481e0939de7097bdb2, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=bc28384d5dd21d499e0a493d959202fdaf73cecb, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=d12c000a4c2fdf30de114ffcd998c7b4bcdebf27, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=7ff25315fb01ffda9394cce382d89b987bc95606, strippedASCII texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)%,-7@DJOZ`dgl%  R,R RR.R&R'R%RRRR RRRRRRRRRRRRRR-RR/R(R!R*R R R+R0R R$R R%RRRRR$R RR.RRRR RRRR-R P RRRRRRRR RRRR PRRRR*R PRRRR P R%RRRRRR#R"R$R P RRRR(R P RRR P RR PRRR(R PRRRR*R l6fU'xorg-x11-fonts-coreutf-8028ff22109a0148ee63935bfa90afb94ed0dcee448df55a39f8553c10bf954f8?7zXZ !t/g]"k% #4ղͰضR{?.`#jjvNCU(*OdƲ>.:34|R CFT~ԡG'mM:~q΢&Gwb^Vz783yCwc*k0 9{VCx,mW(2L ; RUj 2woyERR 6T,){|ODUECHch{<9nJy@dcCc0`b{$>r!ol54U(N@Q. nUw tw65p׍n-3"H>f򓫃IP7LĽT !QK*6Ky?O7eXqхV"Y~"Ic1%^ kZ7N'baG*5p>JFkzݞa+^%O'E=S^OM-VEs)cvs: vN IdEi} sS*+ܭY; N>ݼY>^xؖODz+æzqJ3MaLg/4|b=zNZߪӯ+CtJȶ9oYYvgtVP>m{>n 'I&=q6VOQge0x"TN!o= ^2;tZ z&m*|w I[9v1^dWjEՓH5ԲTLONʣߨp-W6/--zcQ*+ ҩٴR"x 2 W1 {(<\r~@C9I<z -SٓbQ΄]c,0f?DfB L=;sn3ڠTj,PuFpl- T햳9|p:3[cF-.:dXWAE:?  M#pZXR͍̆YZހ.jĿ}*yvZ=˦hng.D.U:Br\7Ez甧o :L_ Ac3[e͹u7 $ N ebE_\΁sqo4 2WMQ0ZFj\ώ[(ϒc-~Z¢ {40OqVl(+ث06 ՁVܙ.{Y/nw۔l\cdvUhe&*H4fjsLةYGQ$Bcdr?/pW&sb2zBD+fRU<f$xztp,l-ΦHrS!cW: N9>pC/m_h% 3Aɻ+'eb*AXX+0n4@Ϻ5Ly\ub57 *R^z)9r$alj:c{Fa =)\Bf>8oqij}rъ僌^ ؾrkW"&5FB}[ lrH;)cƼᱍf7P}YaV*(ރdӇ"lF8 leFO4^Ւ0qBͪeܚDcHoLt@o4\G#Qr` ;t(3A?IGg+l 5uK5ZjޯڞRo< 򑽶r3e-1XQg{.ɼz+=!<y''&7!.wu1 .$3B~p)jJS#K7MZy!z ߬U5;9\9%QuH_Zeuy¼M spI~.@ϛ$7K:HcЭl ?TK'z% &Mpa Bq!VCf›Mc۝ ܻrA.`;Sl'_υ s GQ۰i숽kzxuu "{q[7uD*^CV6ʣWB5%!SoHڣV$rkRZ&Xh&QT^~PTiy@#9&(֑*$dfF|`#;j';($%ket+]: 񡝖 (H¯l-OTUkڍAIj,;rQ-!mF;)+eϴK#A3 :Bf#^` W@@C)-Z.ӁLMtHU==h̝ȨqS,i۳^T)QD@^Q26 {^"׺P!k%Ѷ|$=dO6 3O"- 7\6%*nUJh>]%T pCi[ˌ*.ݪ1[B* mR֯}K=y9 =Ij>tĖ%_Ks̆ZJlJ̱ۜ?Y-J>ϕ R gsy텂ʖհu1gPk]-P |,iK\Z_ċ.t?W/ރ~jJ;O1a&TYp* k>ZiJ^kt"+>mj &ñ!!8$w c/ӟFWzځ$ 2nlL x/D\uW VOk  Ee9H1GL,(B0c^&Da Y<)}do3]z/KjmZ ?@!B{.Nhr#0c:oUz e4RK ECE{oH|Yt/=CҔ~ۀU \Ź+L=!Y^`ˏ=sc!ML!+Jl7e1>\˜]{Zn1\S@T$,|[NNg7Ąʾ灢)^r<8.\PL94V9ЯZorWbjh7AcVRmDDٍJ^O X/() zchۅA*i y^0JJ0VnиGW(ѺO'w(T7L+2@D[/8*oZ}jzT :T/d-5})@l¼80t1&DMv_|c qVе܈0MYaS0Dm,,G/rՈSfD{qgԗqʳe7׉eX[=}86ؒn HeO`"TsUYo?m?[_yp% uҀceqqҀUKAt"'y3*ݹhNXqĹx$QZM}2Tmc퉸yp 3}uMDscRgeЭǢ1~=7&o¡-#8)4f)?پ:,C|*6[ O#{\!XwEBj3ThČ)vrt*.DɍsQtC Rm{a'e4tL 7Oe'.iPz\Y9G}!l\ 4P?pB\'cKq%?PPTQxuG=\&ktc79g\ \ӓqTUS⦽vmC ?)~dp<]r, ӂSx!RhǰÈ۸LaBn)FF%c7Y fk9 WE=C\9s<ɤ9'&Z忚4&Ŕ/{g;e>"8$"ebʝT;To|Uy"uQI3ov;)qѧQc!}p oakbtkȢu.toh ZE6:~gx]r~=X>w>~E9?U |[?c`*8cJ;] $%3TԴ}dXj(A 8b7 1meV꥚pm(*OC.˄J$ZKpĬq3[B d'G;GQ^O m^` u JqRW>QS_/؄`#6ʴ^ %Ӌ5*i,۪i&txŬMZ ؈cin]3qmqBKՆ._B$E#x$VT΅$EI N8)8C.ltWI3qa, -Yys+mvQ|OQƫ ٩{>}!9۾naRnȒG@%(kv<%]Ґ<^eCZG\;fO{Mܫn/oi'ƒ2y e *!GU"zA@ȨATG7XmΛ_'\A.m}߆Hl[r\T;&{`4\ȑh(?& iosgղutLKr6eS1c2\+UQ8k@@{f"{(Ǜh|FJeG@ w'w gC;3O\'f>׆WqXLiKL7xv#N-THlm5X<Mya"S gTb鄒| HŅfb0"Sz(e[d ėe!ļJUu6[+'\7ΐ TXYucad&zèK١QFbaXz~S-mXn_BWoފtcCyhe7pp(7 ʫ+Y qܩ7Ve}5'vy&5@p`*L zbR7Ŏ2Ek8~G c,.Eqn3% X}!Ał什3"5ތ1@-ӓĮTl Sg0IlJ>iP\Z=/^LAg-w,A0XX΂/G|յfƘ/Ы`L4‘ 1 nZoCFNtJƹ;[Td?([!2X'uz'EJ|q jN.tNEd>!ImJÛ=EW^q "gxp_=룩 * 0͍zjx_Jl]KP(b7yeXm/Jp1Oi=jRh>]"9Ev ;2>h,au4UU$1g8B.X(LޭlwŞL!y:: lgѯ܎)b{V凃'Pzsi5c.pC˕&V5m(г@ʢJmPw$xz"7^ _7a 7%ZDhCaj hlD8T (Y*?=h#Aמh_FM1n!MO9Ҕ= lwqHΣ"=agǼRc+O;ݜ-U1P9з~)f?r|iq]}tR?xk.pm!f#& I10Z"+U x3M{7/M,;lW;aw_49*Yd[xr2Y>ebww2iP- "%}r l5a@z7xvHh?M\Q3Vm9%MȪcFn$ǁ_%)0oc)S窝; *98:ㆊp?8FY~Yq^iGtzYS'psQd~>Wy$%5z U PEâ+#}"m-bi۴9!1ׯtzgH4T|SOa, jvTcɲ3\ք/JY`X"a9XG~-mM 싩Wrpge)˲j]s! /O P&2п|ŢDfo=˶M.'n^Vc@h򹙉צ3[m'3%^9cp ܈u.ꮢ&TX%ִT', ~cQ*dd;]b pxep a{e5lhZӯ\P0qÐէu&[}=(\7~/V_фAR^:J4IS5P]zxd7L7\+1[8DY>63rq5p"!Mw_2\(N!E,[&3^ȭ\p|[1Q[!;Rʄ]y[Gy_k67ux&4|W]B_}ͧ5J Ы|q5AYWOkr):(4Y&zeo)0@TO+-YK8E=6ϟ `y9iV\g4 b3t|." E^@/>_=6k5b$&1)ۇ*JӪ".8WW2QC$#*]˞CL\kD:Oy5.خӶ7@&8߰1Ưx W{;5]t/{2$)wX =Œ76 ̞F!s<I@m) 6 4HT]~e"򿠨2 mY e^n6JVoBΘAO Dr]Gh.\JƵmԠOm2J fIs~ m[LATOToH2 ܇lje{M.&IHXKmY8A\(Uah_r>U']Ba\Amox׽aTvVOݞ=PM+Uڟ<ԟszbz LѝEc:\@(KOhJrUͮ޻hU>41~_}Uw,PL~f={U3`֬>.Q(}"C?D~} 7=T5\$DXsh. : d N.#ܷr%.y埕 DB@ }TT cNZ]x?7(Zf(;?¢dhA2V軟L⒥ ~'0pX){򒋵a] p;q:K AFЃqN4D)%/?O#U˘Zߧf#t-w>rkA X ; R9p˶fyP Ym8{M- {0w%.j%>6i$EsgW!@|9 >Q#Miut}[a\OM.WTEKK#{2!Q]oNT8 ^v ?J#Xi<[=WF'~qȵu4ΪEJQ9Wҋ48M-=T@s JCE{ct%oS|*ly kmˏg@ \Q`*RuMUs- Ֆwh?C':@E!Цm*e{I Wq#T N1yp>VoS3Qs^:ӎa)&|f?M7!7•f|*,tijd$R+tq ZߎP3E㠰ws #2sPf>^f2 r-i : i.LߐQm0Gb\tvŘzˉu}O6j쯁l/[[y[G;A՗(hW֐7kըh]<:/W?wx?l85r(07܁w Pp&p8$"dlc ("BєU>" 8BhN 84;nnQ<{iÁ8wsse Sg|`,뇳Aroe$$!֭AΞ8԰t⎛ƂOlS2>(|90Z&-dPlF-h0@mb, N/ӏ:@֤ Iiuf]*%=} Uv-4aH =,|c8qˏ;fPΖ&ȃU/,zLh5\ ;>& tOGb:m3;}4 B9HAl(7֗4l=Tm,LqL]+.x}pVY@Ex|SۅGU%?xæ%;y2nWD9M1吨;v Vr`YsQJJ饏ˇ<_IMf :w_"!WcPeͫ hue._bYŎ~oSmmW~38  4dpoY< 5 `ydiz2t:xs۹̵=dw'IPr_-8vz&yakDإm3 k?l\0\5/p ճ]z)@[>O'-`nZ.HQc_26?}c)x̣ݧa ]fzfBڽH"GW?go 0Ӑ0l<. .HED<#'V\bk<rkɟ=jm* H[fd#3ف/I_(3 ?}kK3@ FccP@vD)UWBgǖ9 ΜqmXCoY y` jPUZ@id'r% /`\  AQb1}O8׀bp6J OOHXjAWp<;H_[ &E1S\~$j(<ۺE, K?FiǹsD7r``2{e@1t3IS{ 6AW|1s@qBnYb]Fai:ұKEa# 9bEfby x@-%֜(KQ}h&s:0G0nVXN3+ pi4 68~5d?$شaea{1q:ػ%Щ[ć*&;2{(-1LϽ]'[oP]D{OO.!sjbjYN}nQâ9Α>,Ҽ>.:Os~֎T"NI/F"mó/ؽ"좢/uK}!~j>}4jTn5>EfQ2c@t'E}?JMTii w( 1)dB;Atmmсc޼xN0h?:0\ &sǏ1A<l Iv(3GpO. ʏzhJQ\mǴ]|`y][xkCłIWFǁ{ˣ̳Yv0Dt*.n,`$qKS6"$^jJ , D͔2Wn^kh ;9J $Mh/j QuopbR[wdJHE%jC"t(ͪ v. .㎇<hoX5Sr7-!T _,LguiŐ y{MLE ^M#CBԯ+U0 v$LhUjΦ2,Gv)Iv?w P*4SRLbz}&"a~N_&ZUK?"q?GD )|!\7\"d>:4Q0zQ8SpI7Sz'RJqS;uı:֯D93SQ2⢽^DzW6I^ NHk(u(Ϟ|g{EfF@7l 9JgT:elQ0kWi͝FCE-v]m~dZL0=kZCt;\^1 Qhe -'Dy0(HMN|n|]ޚlpF6 ?[QtgGfnys2ψq7WS;^1:)D(< !]"J*ACPz}SVP~-&Nԗbl~Dqm?Iݤ,g+Jκ\fIEaY?j~@Xh8o.T'KFTNs1Uu!Q3ӝH!Vb++Z9u"`{0 XN=RBjb|μa-, TeuFb X8'8:eSE)ĕ?{@BZ+ڣHG*5,hW74W21*n[2Z`NG:gQm|0MRl^Py#m!`a] vA-;u֝6(C%rE<؎ZS on`fE'jW)#&sL!r*E[]{wFٵ !(#c?k 77W;a-adÉ :帵NVdAbD?Yy%^QvBtQ,ǮإS,a͵-PN/eI+9^qc<7a:"=>GgD @wXy^YpZ"#+qn6~F] oW15p˜># ڨi"8F>+bp&w+PQpBʠKfDAeCw'ۼx9 TതA?;{?GZ(+V9.2m|(dScQ3uʍߵ ltP {]\f0@hk)W[/~-7 ݃w1(4Ē5K<@2cP)+ukeETm>`[W ɞ&$ p,ioT?M͉se=mY#x1; Le( .My('jlkKu馼23l)qeFU28Kf6|͑Ϟق *6L:L?Xt.iOLn^EJ2ɻoCڈ KCvs8G46mڐẬŽ6<(W7ݹ[CWC3w "J=&쵑Y;]*܈F1 +C=:Ⱦf7s(ĚCepB{P!7]D^?5HlS8҄]Np5d3[qӗ!Uc sg^v`F_魱zۄ"TyZIZ I9%vʒ+AXgkY9%lm,\&eOjj9@|q B)K-D콚]G 6%7b0jAN Х8#CFrz'C4WN05]( d2Dv@:kj ,pI۞9JZswE~dN〕o?| xFփ#d>W.a`S;+h_,(!o>c+ؘ<v¹+w۷}e;_~/[y$5zW8 t42$_y=5s( "Ң\zK'##hTR>\?dX #k8Si#uh22C tb ٵ C&F>̴ ۅ0F3sL;Ұw}-lb*Oq#=6bs^Qw@w#-w| y Q``f٢;̖C[ ߰ ",!|}Y)˨7{P.KH&T=q";a7;6k5RsuY#_6zgo;Nd]<"w&Ngi|IN$,?qA/Kx%Q[@kXoLƟ1ŧ- /O=`V4=`Dt@塦!E!$nA/@ \(п;EY_*H 96ܿhc%Tu+!i/٧;lrPOyFI|x +QYd)zˆ&mIhm~?[Edk|XԵy: u֖Q~%ŮHOzG }ƑSf$ a줼Wk!|YH't?ʢoֹdUZ ;]1d'w?B}6N|rI|;9Sb̂ V|_yoyޟ% : PO_:CȬk=H^ҍ.le)[xAjҳ؁M[lpIE(ff9MX$ңËB~<ϿR2./kٟN /-nmnYUJ(kqE3bڇJ_}{Vd7$e&zѻ ¶:j=-T9t ΃u1:; t~b Aa j8=(5qn4E㉇p;Y ,XW*ePkDק.ǻhk=~6#.P*=)y-MMb[){ATmO"en6UЦ5nUR cDWnҍ阷^y6|]SuK-t|p ֘dkcHϬ^P*Fqgk(Nys8(aoqNvh~r+o]E 7CH=[N}^ik -q%՘ƐtA{zGY! ‹;M2^qC)W< a!d$jm<:S6,Q}fBɝU;=Rxq.`HsA-\,2bh_A[.jim%ƦgJ7s %?pNal$Q&y7&|f0[6NqVz5cG\&sP1eJo^oͲw HgOS[_֋ʗ %.<X}E/dV)n y b,z=f۸ H 'ƾo#؉x=Э  x6'M/ `Z]¿ fǖq&kJɗq>\88K8TyjNEDEmb,+L$kxGHrjlC09³gzazȉH8led#0*WKr60X v~[2$v}x}-HDFegiW372E4H年fq= iVۻ,,[t.ԸHf:}U@a }c Vgn:Ӳb%#]E+$Olxd/!:{{#8%.̑ŕ҆?jTyݷY3lUFҵ2w4krM֚ACw2RW{\_L5`!<*k hVֲH cyBñvi"X􈳷ERN]’r)% ͠(}WL㔍&V~L7hxK{g~_m0tfnNJUB 'i͠5Z$?e=+@cfz.>, 8TlYߎC &ƽpsi8A?PDe~V]7 .n)^A tϒ6š ,HL!U A+ xvཐ&mRxf2vz]@LsD(Ϝ1i;b_eQ_1W5QM0,98(܋{^*{1w\e`VUxNbN${>?)MLzۇ^G9DX560jh% >?lvb .fLB2cر ?}vY|3%D/AePFpaŶ{MKcNNXCжH9 >%? s(x~#qTB Y4ae1 oa^=y-$~pCPL&ekg S^OuDDyD?;#W9 -$MU5g5ng\c''>rSjHW4W L49 'c-,t]ᰞK*/hN&P,Zk+Si0R~]  կ;;NSs7&kSs *$vltxC'eN#QRSPrE_ʳ`5j8ҟ.wC|EDʃt uD {VQ8dN]*/=q?,tݫT9.P&k^PvzO`%YXy6lŋ?&4+JNC?-ɯ[BE`,%@_JL~t+v,z(^R:{(I"B,8VMz w>0;q=擐M5o.FQ8ncNcnHmd E׾1cK ,!-2=a"[0 fsD]pwEm  !{; U\@ #b.wO )+)<]+A* x3b$ˉ .&pOͮvp^|aTu:pD wn3 \YERUvbQm͋]M\L-jΈES6E$嬬,T E3U-ގ-şiyj}DoB wvZ̋ͩϰmk@-A|4s`riIn@'FBlXp-uڽnGx&dؕi {I LP\i lv8e0`Tk*sr2̂~0Dj` aKԢAO4ܹ)~6n‘OzWs020䂍7,E{iDEES1A @q: Tq[M}+ T s.;8J)F02h*o3"xLXjS45٤n^jv0DtdUL8Pw5MotCn"B9Os8h&g"{D֯tN <f.y >ډ!lHM3ֿ! o1])뚤3FmxbUPJ}ϔcG,sK(ptIJF N\R*:&4M u,88L`xFК 4~E_~C53g{ršH`67rJ4gfsŧuF8[n>$_PP9I{yǾ8[0((0gAtLS◴݌њF-ZP~qйȤ&ubKext?^ؤ.6XNb̉]| < I/sh"Iҝ>TqQ{ZpMr&>01) з&O\n9GĒNr歘YF,ܒtp6\ 嘮=|>X;~\.)YkcfW %H$QYX\>f; E~4ӄΉ.5Ht+bg>YSGf5ECKҷ35e% 3}CO63vn{JX1D}})#Sr.zYMooŻPu ܽ+!U˙OğB d8x뀝0NN/SpnPk !\QJԁ!q{xQ_C3PFv-|SV(>dE^ЬNog*~uLEuӥ-B2j\,ЧSG~-OPh-SGu.RG0LʑQE+JKZ 2=D$T(.рx,iMP[ѯG:@]Vʣf/>?ҠS-~Hcnam7M-Vqd&RCqm}g{e4 &G*V?4Үq}#ۢӒIU hc+ ݰ0ԏinEef (4:%rR9߃zf[Luit$9|Iоţ/+ fGt ych/;&AͬUv?+нb;J|Pa(4d Zq<|A7atHa1jNײirwu_ڝChT!$ ^4Uعlgo9%VpawOe1f;dZam(2Є(ӫzϧHԊ# ?6@m-WQeMYrt۝Hl=p7ӿ*FŠtybǾsp9Iv>`D[.vC=^B-Z&T|dYV $0y]ۗRh)4 S9b1Y=k,e; m\yЂbZȷf gq*=-ךa"/)Vfzw=S.9M?O`Ӕf#+'E wr~B{q8:5+I@,@%xeeTnfeddF L;.ΔfD}M&n[ vXbv-yہy:c!ZiZ=A ' lǒH.bFv+ѣ%Of{ "Jw雼~^ .ěp"b$3WL SDVa.ceg;"-`0R8RCE۟:PEni5T.K .q8^N4k}nW@IRcβU_JN,*Rԙ髩7 7Xlz҂юmwobH@^ES\MĮ" 8h;xc*$Zǻd,hbe-JB(KdO )@2 L Za4~RT0[(Sd[1 YI<3wm &QPG$ђy\/cziK*6LGJDҟAo@]P4EFdž혬e8͐`t}kɝ/.m%Ne2Y[NrӎtbEקIb^gcu(KzLƲ' ܪ}zALᨆߚ^gM8<ׂ'L?uZ&ko,RntFPfࣽ,2* `s,þn9x5>4:p.Ips6uV5D7УH!Sݳg E s9VsIi7`_x-ol-=^z,K}z GH$=ۋ0D'ьH;GJŲ4<ւE 7YO>e]@ jڌe CAkR}.7ͪ,%( p[ z$/O5YXDc1ò[ Z:n\sMI6UXcHmZRS7qo7 kNތ=U7eFޒwJH?(&=%Ej(f!p"E̎5><_M~}zh?CykØx0#E8Ͻ4R)yJvA|X,~ʦB>Z/mrxrJSitIц$:N} >ӊ]am8w0 #%Go7C^L *5 T. |)hBUYwQ1ԀJ3D NGȋ^ICXl %KLxr䭎3ԽٓzS֬aNYf\=fΖjJngd:.ֵKxGu񺼾Hm]bmV,^PZ,=~KAb%}ڿ$#7I=iG|IIG\OhoT G~=HlتV,hLowHգAO/Lq8w\}d:24|*2ʴ?` l%V#c <Zc=KЃ<q[Ohk< =}7|SUyu}Y.LmSaA`1#F V~=]qCR̆l7-<|`g$[XhH61o%W:6Y ([Sʆ3Z$4W#%NNk}V0Q^-PIq/=JG{i۠ YM2mr-KgrZYìYU*b62?&) 6-Xx|EyAWk^n8HQ~5bri֩ڙ L;6٘Z@k?-Wf6u x .{[f%:Z%0OĜaO-+"^k$WTN;Dx>KVxs}}DCo">]QaZ7uX4R(!{,#/zk3d2<Сp5`я{W0bD iH(kF:I/0WH2ܳƉLq\6Ker%^;~No{Yq$ݴZMX#!~|pΦr<lSjX٣S_Q#%uj|`Ƨڷ{=cNiۅ;]\WcNYPxt!̨exNBH%/PS<<șZXb? ӫ#G"c ە-: bm:ͯ#Y܋6''_ +)"9K/ aJބ 7〪̍j->H{,ؚY~`~@K@z5 jFM8^5f`'O**U~G4(=n +q]Ϝ0 _@m hJ8ֱqyh~VMӺ]$'<: jW-b@S3;ysL[t.} mX32y<՚HPq6T7o'=c݂t%3\R ,-\.P|y4 f\3Hf{fsz+n!%Л]$W@Dakm4 nhlΜHTTkgtyf2=}.Gö'~'m6qZ=7; 9baQ,bx?aU欥ҋ[Aڑ馳U=~`4`m oqߊq)\.xBB&} Ej/m_l6V?>b` fuLr9SxrK(kqI ##ꯒ"u|!υ(16k ϊͧ$Fq)m 1DaEs _H\#*j2<4P2Dvӣ8qG';\$A4b546edη|M I"qy u&pNAT (5Spw$sC.TޱACH]I)7@u` ָ*w0UPBkPQa|M墹6Egw:ֱo.m*n1>E֟+k80]wg2g~36Eޞphx)7KL< 4T{flb?/r?Heo]bP!`tMzr+6h:BV?]O挴uj(AWok]@G|¤m{:UoT&N%Pl/>J8+Υr}}D:V=Q1UU?ZmwD<kHA.RO }YkY >v^\m˪@_P6Ug`,9)x  J֓ՖӤp^ruK}'z!ڤHHe'\-nu,t S3U^!1}"AC ۱? =ufUR,8 \dOOSvMYKWtߒ'n[ zCtd!E8ZPl~̤D: %DOlxսl A|CK9f\жG#g@ _q|Z^ʖ26V&{ZeMlNbi%2[R{G)R1 LBw.P6]5eۇ.(݀z Uc qw0ͱAֳ麴on^>ک<#t8<'xln BP@%V8`W{uhYsMs㹜NE ?~AKqi,fk6cEȳ왴|ttSH @Kl}COtiy6n']hς5=Zɥy G¬noI,+OҠ@Eli+kj|hڋ{F!(Yuqa4 Y._kzRK;y̠|?jWw-I~ apBodR/0ip+5(jayL冓A $'z8 ɰ$CjQJ$?yі=1XOHfο kVYJ=_" ?rh @ Fu`흄 } ?En^hGIo=O4ձ^"pqS+󁤕Vؓr+=jO/gv1ןb,ݝG3!bp^gNPE_hY8P~3ue}/eki87pfkv@:yŌ]Nrۧuk,J&@qx 8J+2Ƞ-ǐ ]Ŕ]P!m fþ ؏e0ۮ #'u5Uh63'y,T&i28" ƨj46Ɗr=,>]>h @Y: :1ٛ;bqa}437LKE3ZyejvzZ׊G|ytHE!In PWKdm1 Oㅤ4tܜu \ѳ4v/KmlȉG;I='ėI/&A?ە%Ή>hfՇ6U_]|^LL{؃V,WZ^a$%FH8(']wסaK5͹Su[Bma אq,J?I3x[UOfQe 9@Ejx@lUmvih㗵HDУJk*vj6;"d/CR7cQ7vѾ~Ѵcz:c5#Elع3Wr5c?K)'w;uxnX/g*MW7](1' Z8lD! ͤ6u d2FL:qAnT\NՖyrI B[0t`mY烐$>,0_<3oP$<(H4RLSx03\ Hy.8ėEL0΋PH67A 15&R8t#pd.I?b86i[j(S>+1]J^Íڸ b@\o[]Yx54>w3L6s`E;%sP>kY5 qW1lKhh*{Sw3ԐtcDD(cHګ"{!&Mfc:[6}nԹc@VQI56p?憳B dUhPcbqoz~+|G%N/3d f8-z_`&QGX)ҁFzbA\Rd.:5ËLaY$:w5RpǶtuMO}ZrlX|q!6|ػ렾5йyV(!S&  .rXmֆ+ı(G89M%bn:5&@-X,1G,'GLpĸZ?R5/JM\+i`O*y>Ht8ϾN?Z\r-Y7.Ч^? C'1vZۑH~FR1jڊyްǩ OCZ*ANVۮ;q{}x\! _cGM|vQ'hzzob4pBM4?o dZ+ ɒ4VmDGTb(Iz\CφK0'2Yt[6U]`*an2n$(ڃ76c6-JsP~`Ҹ+ȄQ"LO `/+hp@׵(0^c ߪn+Cٳ b!#7#ѩk-_OZm tsQAe"?zRn`u߁jG9r8l0Cr|ő=dP/#w7͵P-c1:jkȥ CU+fXLYp &8?DB$9R*.(=:OzZW )v R&(_wodoʘ,EcݰwI9T}_nم ,Ut7kQrG&(9a8oT̋?;s]ƺwlצ @*˸c?D8W^u#5^{ 7 [" K('rcAcKg&1ĻƛR@0dZJvTc?} 䚭 8|h^ҕ`c!M(DíU^,Q Pgw`r"tno>)ѳu QăW .dspaqO#Ow*TK忒VReNթiK4^M׾h0\)R!Ig[\VdhN99q8n,{a٦W *_؈x&A,II`{O1DE1%">ke#Ŝqx=j[<}4_ϛZ;ow9(݌0Nu(*TCe 6JPӋ ; Eʲ7,dbͿ]9Uqc"> ⧭=~5Kbp{Ov@4е0.kbRDh-ڕAhj%k;L>+T1w/E}R9*Sѷ#5U_zАo>bLj.:>I&B[{ٿN`W}Ӈ-sSdWk1j@9H˾QÓ A: \+, ١<;V`Pq| W>r5H r^wư͖|sߩe wh" v))YϷBJbڌOg8 @%aDq: -S,*1TjLU3`™QB fl83f.7>ճQ\'8%uIt 72&Yg]{r5@u@C,) ^S3.")[:$vDO(Ðy0d?V;gfk˙FLMX-NQ@"JcQ0BnA-9qJ`ВvwG0l~p儴UY2b9xAb*}|e:fdSw'UWP4^iޚyx}v!JBveo|'wAo0"A}7lhm[3*9OAuKmbE r;6(y#㘅 dCSD6y8+|qwO/wd ?;jQi`s`/5D e1:ہ{ _bAЄrY-ל,hjEm/+qf'r`T!*]F^4lfa[ 7 hk&ιyfSǬgXQ[P.,C]YNW+aQ̂ ӕM6Pf3J#jӣǘ< <`> /nz0hNmpI]QP)&uSz~.p-lu y{^]BCT ЃXGR|N.EQ;4ࢩkl\;Psr]ҾКB`q I,l]8xcQlȖrE鋅r+I547!#kK#-}RenK$UpW :Ds}%[zZ~p FS5%'X̊fud\{kJÕksY"x!?[o*m JH(- JaP7i傁 ?jst^i)3y=tYUbUX␾7I6TU~yKv^$T RY梃+l)9H gNFgj988^ 򀨗D#Y#?L03TWzITt赱g,#>S& m zr69v/v䃫H-ex=9!{Of+9 J}8KTWKǘwrS>vGho]- 1$gmHLP2\8C|=s[-cF>:۝`S2}>8tܠd֒[H~W!j qcD3|Q s-#/EeRNB Y"|tb|.:j8яr&;AxG+X^  X tj'ߵ=Ǜ^#}htG}֦"z`?ݫ1gmtV$DlKMQ4iWViJ֒|8EWrCȍٚuI±3֬HҼi^3uuqGpJȃ]z'K|cYQw2^70!9Tz{h.W[7Ն1A.ەi m!Ll؟A-g]G" &E)"frbл ۜen(=!3K͹nU"eqv1;뵕 ?z0[0 @|F*(z$U RsЈC:ph> ЏL|`B=}H͐mj$V1-6w8Q|VSJ-'u?hmV]FXQ=᲏lnM®x>$s5E;\V_5 29JuG UyGUX,(D!&?5L|?A~ 8nmMO7i21|Al(474GnC N;k:kj oҠ嫡/OA)ax 6 9B,OM}&3"7f`s.IFCgv V#%>)5倔#i{  :Cr!Eq2q`oI - ꍛPqZG' =+ݤ_VG 4̀t[Rca~qK./)SUap9 qZz$8Uѻ2Q yV@Dao_}h#p Όe+XYkZ S'4GYEV3{Cx,{Q*;ej 9#I7Yt'UEQ?eZm!Ro*Nfn"a0UđF3XŦn4yUՆ17Hn@cve˔}U:ӻXh07#:MM3!`[ho+&d=]!2۾K4 0D|j8 d z6u- u8zp2Y;lE79}oBac"`B |bdfs2pѽ]aG{ֽoBhuI1zDe8" \~KF>(J.3Mca 9(,0m{6듇K0ד< 0&Ěxcbm][snNUf̢ZSDXN$B'<+0c2̺(ȗ n+#xg̝WȻ0=NZW׍%rHF5ACwZ󕼓EO 17-ENԼb 7J+]zUj߭0퓓:4R7H6;Ũf|ǕQb]d~kv㋧'0bvvQaQNuBYv:ޠU1hEWְ:wjeԲ'mH2Z.-Jc1s 0)2^l=0Ff`FXQK͠:5{$Xlc$3vP,%-8jXܘ*}yrS,}}CiC*ˑVLV,N\2U^ˆn=!Ɂp_f|qo h`ϕz5:0$4X )hsx%0$5?_~00ctwmg\MrSvf&=iUӢ IWIZ|Ey&@:*I?4}]Uz%h,`Sov-:Ȉ1X&y7r> q m1A|U;7&'VqM-^Mq'n0FC!'ceպri0Hl5KX̛m7M&w2$4awD܍|$REct?) f=Gd ˇԠv@AMطUۡaJh9ii9))\!?=:љ&>0qp^ڑOQ»PN ,~sՄdw-79Yc( #hS>-y=BJzd-"Y_"4.lݫ`FM}|OI y֍ on6 QqmBV"Oe7i0'SK[YT@!{89.xN2ԕQn%t-r5BQQ)it x?q(a zd؁;^.}aڱliĺk~nA(…g ~b _i<_] rMpV֏Sh?# {sAUHڬD'L=׫TPjr}mjʏcUnm,B|MHb?g0~DuCƅ  Dze38Bɟ[EBBNj;'GrHCRsqtM6*"Lqoz0<}O"SCzi[O2JmmXZO)#1C&)Zˇ0m7B4M\ ;YSO՜n`9@($Z[aaHGxGNjM"B_X&)č.#E' .lGo6.Aqm?O-)="!>փ:2mfRއ |6qCxsbʯg]ͯ/FSLa _ V]8Brᖚ1&fޯH2] rm#AdʀMnWDD>{P'm, FF CAy m &Oǂ$DŽ: d'aXՑ@vߏxkZpse j㲾'g^)@T1cՌd3P/"iqjYR M!|Lo/~. kf9S $xp"czU=h{3&y [o8J)XWKzgEZ -**hE! uey)+ ٸ~}h$c.@ZRi@"ht`?>OTSrj[w~?՛2̠2^D MS_tk6"z12Kn{(W0ioCx6菥W J9HsU|V*,%2`>ӎh:n%7kRȑ>ܯI70R?ܢ@f0/x q`kAbɁސ&k< ԍnHre+:zlV!ff#ZiMQN)UJZ$ћغY\v:ޙt.1ħan-PQ`si?oU 8!'HE'Y奩*[Zu J,85wi8we AZ{}o[=Z)[{a򲺮_&jT@mMQ{jjaHB`6V7M&Wu䄠!^J@lӏ\ *j_<\^z7q{~ʬ/O!yZxnb^BķD4<69R$ K<\e ӠVKE)52Au<[yvU1&oX錩D._Q5YROVg}w/| /GQdhYJdzza: 8hLI+p+2gAx  ⚸[4vt 2 M&R<ĻTPtX=um5D)y3j"j&-(OQ^Qbt U(PJù tb;$ ^t#$Xa*XM3; L0Jf?}&[7% mlX9(k=f]B/@wSX nwĝ@xͷ\ ±4K.-y}ܨªAݕY[GhĚʩ!&}s"v8) ']9-yB 4ia虦zb?RMȋd[=ai<-3U^Ɖe2~Sl|<8H,hFZ9fԮōu.LkQ[j7{ygxu\z)߅/ˡXnQݑ#is>"pI{%i01!Q=g}ES+=`n8 ^}S6hFM*\ǭ*?յ2dIGXi?%[[& Z ڪ~#'r 6歱B8};mQ3xh'73-:Y~]ɡq=0X} hNr5De^]"?I8W/ZVjާ)qt..,i{8&pIE fR/-Mk3NRJAn<d TC=mD?Ay:qZrY?B 937 2{Ԧ"M'J_Eh΀@!5d˔\ޒr/fs_moHNb5]gVrU[ZSÿVTJU7i"Wl$mypE/T6OE¯,J\K32TTq=Y3Ffk@M7eޤ XMebO0<'a[Jn0jyqt/4h}EE5Udcf.q/I%F9Np27dϷ҆0>$}i/@xZO& ?azy۬7mF1:+MnHu(ګ&hؘptZiѿic|Fhazz#Dxx/OS9hwmBn %!BNO/ɷ 6O* jnRZ*-"ļ,|dK'q];x+px7UqӎB6j\nZ`*"Y^GŸ錜e̢gGgF襊ׅZab+jB{,V ( ȼs@y*F_\F^g1]e G4ujKs#Y_QNX:2 4y; leio%;hW]@>}}!K"$ZZK3~ą4&&:n*N >9.SC|enB')Yä'jm@;DNbmwdWW ao:9/RaSwEH%PmTDt!o.2״klbG)B&s:]6)X -'8A-ynm蔚XeOX3]0ݻAAj{ۢZ' Dn3wS1!" X{:Sau@̳OZ.nC )3쐄-F SL5"QU="Y&h%b%ȏBB!]j@\rl~ peBJ%[jypuӷn>5W=?H 1.ȡPr.!5GZvnw0&0U7#,!ʈ\S~ ,khbyYnF1xΑixkG-Z;%CLtE]Yh0{)@h;l:jqh[AӮaVs1ʝȲV`Y'p%.9X|M.aQyGwefE@ !͠()kO%e6=iZp1\Dz05vcl[ e_"Ԯ NcJ1!KK;= #H#f{Z-2?=dA [A WiyD5$Se6\MUݳ0|+HcbfelrqÃfC6@?z̚Ӏ|zTQ @ssU{KQeCq >DZ>2AworA63*௷ȚuYʚ̧cC)ߐvHP6~Ps(\ӏ,G͟,ZpOFslJWI?uwQ"$F>^hfʨS]~J-*f; U C~OfZ8}p\{2p}7[isxc7@Z v y o#@ȗaVUaѵQ/T+F7ĐgYF}k3q O~Pegu "klc*tp1оi{74m:J:i%Nx5q?;kVaZ#kx񇲹 Qtε|R1 $²4J:z ŠaAs\YEbu.M~WrEhNG=k͝+ @t3U},yi G~yҥ)mZ zc!qn]B6ۏdݮc<߹kDQW_m Nد[@o~X6bfX%/I|Y3iy8ж6oСo F,lN~b@HGZFߊxvw!:|%{wІhO^R\Oqcgr=?ߘHtMfAU-6o?4+Gex}D`e[7'ߵz`% nӢ8Tp=º/.5{ܖ"~B("k]qbvtzW Y̌N0a b=2݇jp59;:ȣÆT#׋īmH$x_i/:&KleLe e3\zUc}]\A =J( ?S&?e|:Ges<@H$jn&(J굈 z{I_ /@u5@b6M51=+gn2ON*gQe\,I-# Zp9QJ祫y]U Z.23 iû˥sY`.$w_` n)$bǍ.}㨲nt )sJbEGo ZI/ Okkzȧ%, ƃlVjl84r ¤;oBhBi~kϼ,˿M!@&[=xd~ݳ}jGhKQ}-NV6#^5I%t]QcjƤ/OArR^x Lxi-naMM0Y/@m^iS;-+`U\M)P?:AhZc&l«.gFVcsrɳRB=#K-N _$rؑ0>&I2UZ!XId 4Ct}5ĉsJ4oΠ(O7+pC4Ce⏋GOp3N/kW A+xJF̻9ӟ6 18T@M0(K@kVь1ۨVu|NIܵ[ CAGͱG5_+{jHﭺA~ ܰIVm_2V谁N^_3 PQGEeH aՕlM~mjͬd,Q9:p BBݔC/70cvXE(л (9] MEC$K? ǀT.gmЏJAf(򃮃2} 4LAxS%rG` (\SRйhNĆpemZDw_@;zhL/50@$֋Ti'ܥϰKn,bY/j*LP`ŷgA՝S"c TdvZU#}3 {؟?z^f P"/sHm).PeevŊD&Zͫ<ߗr<%_DӏIӒ$ v,zNk.w>/faоaKGq ]"M78QAfܳLP` d/v\h؆-8́}Ù)1a'1}4p<],AJ[B}'مhܟ҄$/}|#^7T~eDE)@*H%E 19./˯($=r2w1/"3pjO^ fHb {WxS𜑌_&R| WI_<dp}ݪ vw)OX@e+3n4ZoKѠk0̈p:B ;LojY3]a/3/]ьdpVzC|`:G>hԟ5ZyVN2gB/`xz8Qg4K%|ܓ8d .+VDJAv P[Zbԕ-o , 8,"o<4G,6% mro! )͚;:3emd͗ D&{틑"M3;S!<7vŔ؁ў Ս׻aĹ殉[9^J:F)Ar‰weDگ FֺsKT.R .?M85s^){35c}=Elwyd,$_(6JK&w|qvHCv]Pƅm\a zƗDЧԖ|cҸu9 N6} ?IM}兏J#TzU&~[ -UR6"! 1ERbLlzpcs.{3 *5> &-M)xa/.OB>I+fHDcPR?Ґn z.DDsûn'è#0lI37v9n`֦l\rՎq M9*~b5^fu*~05]Tkvۥ"Q!T[v~WGv+/_=b +^SB_vu'a26Fx^AGZ: *NFAnA5j"ͽ]{ǽ6eeh$~!,MnJ7E7ȘnKl±̼X2% j^i0'o$uLhwbE!{Bӭ5҄Eqka Runbk?86([=(u&kMx~N;,198¯< #fէvvM9]2ܰNqv<Bun ^hS:tu s_xFl^mB瓅'RkTR]_\^GE8*L4еo̲MKˆ [@~Fbl] bs!ShV? YE$J_ LfzG*JZ ֽFL4 0r,^j(s*o0;o1C:UTj@t qU:ɡFq14A @ Usd715Բĺv~PqG"f5\/OrVĊ KE*3M$̑V7fzeeHS.T:ɿZ=6!0  Y| y&- J.0BÙ {y^(M`_Rm)$IaqX'4̈́v_$8u"+7-WQsedPF>3yZNov}hyuGz;_EP ;0zz.WjH|~1E@UmCmgx}% $3US@H$NsN5 ],aNF vuMͮЅd]qt\ir6]l ]SŒtdb4W<~(G,Gv3U}i1f@EE Al7HqreA@U\gd2P:'6w Z%Jo@d0JhM @6vTgrKk#q [`_7[:d*9.C,PǝD➹Dkk\8}̭ӏXsYyѡ~1U*%4':z=Nr+>c?|ɧ~uhZ,t1GGPR"]"0  jaqeU;oZAzLM_y)]Yyߓ<]3m{}{焒z#]C#)\nY hC^Y:E`z}څ&)Spqq^ 6$0 (i*6ܧ#<[@nYԖ="ZfD w.6ZUF;;M43ހgdjCٓ3h@vv@H>\|%Hn[> rbYT/ م&jYa'=6au6B$p@{҆CtP_Q+5Y第!:o(m@QnypsG^6J^(|X;VF=4`aN~C|vbK}w e`_7CxOd wY?r1pQN]Wݲc=^%֥&ϪTo*soG4$0;Skf́rz9̘_*Be/j(pѵZx>2Z*~йL+9& qt# UޙafT5G*ZCj-%UZj;Æ+|Ml V M(putCɒm{[}{~!@suڤ@1'h@" mhSdmX-cZbуfфس_Z5ߕgKOhyisFVҤU5~EJD!s*2$ J!3{xb̜ 6|vR9|3 iZA8$=x̋Kߏ2kdYOB /)fɶ ,808J ?'MBfyȬwgZe)>p@nÏqҋR[qDe9Y[\_]Y}w[ h+B㵮!"d EZ$t!rњy21ᣝklJ )=vJƔM^Kuy]YGXi>H[HFc2|e2ݚ( "4e?o-L!%`50 л$67@Ʈ5L4m7Ҧ␛$Za kWŹNљࡰTa5n~dGjEކ:57,ܶ)7)Gk6 %r@4/^ځSp;J Ts.xc\Vs(Ńw3P;oSj]u %c:(ŊWr\%7~br}WMPYBg;b۬LԴ 4=1ѴSw@_uzʽlpHn\pC]whsRԸ9\ijCWX`ѥKib2sH~k̟T>Q"VSJցœE@9WF;Q>,Id1 8`& u=M_-^]b瑱A0s$+3H[)ꦡ5E49aY1_կLнeZݫ#'+*'o| pǮz&:S"LG@Yy2 lB 6ǟd適'&eH2>^>RA~Wt2 *a̟nكU;&!k|퀎Se4e68~4!# M!cZObTS݃hU>bfvpO%𧜹@6e8iQ-ZC A!ӯ.m:)x |=%Ee7oH{'{"/JW=zeFzi.N5eW2(*nMem3 0a}Þ:U+3!gTUp~pnUxF<꧚I iD>;w[%βl:ɥԗNܳ3z[KO%g0dm6R7=X2s6=B`rgrQ0s^ҷSI/XIAf~z37'6sIi\r\>{Rax> 9$y)r''_o$<<HEOlcb6?QvUƃŃ\3ͬP\Iy'9Pt:N̊G_L=_ɮ^Wvv|hutS\9 ڋ(9zaY^F徊drnRUw8~bbT8'.$*3SKǦë `uGa34'c ub_0Zw;dM{gEWa%Efg'S22;p4b>Y2w&i3`dPfػT[Z/r7߇2.:L)E>k3tꀒ b5Zԗp(H~N^ȂP˷~7x * 2AOeZ$6*Y`A0 db\Xx/8?a*nRre߼A6[·}joZ2`ʻu l9q7@9U+& Nl?߸ttze::p/MkT+d7O_>Yb_-$`@^ se&-ek thH-;xl@G:VEC6rf wBpUcN{XUWÑvm uCe߲)1G3Vd防>W {o-ib:mB;nf쒿:D`Ay>+aaޟE ; 'G]Ze=KM&Bip'89J75}-XQr^AV*{u?-|1K$ Z4Ҧŀ/)|֎MX{ h I&-/YX08Y0o*JR lqT{~l s'9uZL sZ;~HՃa>S<6BئpGCRhV{ {w&E/s HY(#T?eqBb(Щ:7ZN@ N*'58˩nQ1$' ,_sļIa~rDc^Gv]rq*P63Y[-]wMLa~}}N}X)[.0kbr"o(f.Dwo8 "TLmV2z=_-(9m%TG;"ᑁxf,;NYӃ9B?E0'MR'J-_CNuM7zE M4oEzx S})sǔPΑ +8f|L_9*m/.41FCqHY6jay5. (K:}+h{qcfy8o<7gG @мhcC0OUu+@.$b68TQxQWï [밲!}A?;$0kҿsÛ}(Mm;%/}ܶkZ%,Bing{L2&AgZ:EPG,OuJ>'M6 67jH`FY-8j=3XwAe $XS0qX4_J9h|2JC^3cۘ<t YH_܈4~8_lO4!uqJyYZrY:ND䩶ޣ+xW1$ʂlWmBy:ܴ.FsJZ~l ɦ)w`Y{tj5YUm\x-Z>tTnYw/-BnZh1ϸ4g ;i2qc)w- q2*;@4hTp`g_=RszuzL0]M|Nr 3;͂%.)yjQGSϕ.mw .KyPC$)SfGZx&CMb눥Y)2*,?K*j>ƈ {zOOT0ۥs`C[;.}%WM>>$D&&%zb?Pؗ3H,ߤ˱m̛vM//BMy)R]!kx?V#G]aOi߇B[ol[|cjYfQ*2S,93֞bo?|`"áH,Px\ϰ@ >6cpxmZ e{6 yeg( y'QED05vi ^s S ypNMс' { SjJ˗@os,>D5Mw /')Yli6l/]ݹð_}'sR^#Y| Wn1l'BV;+\N8{W*_J>Me‘2mc ܦQE$䍜'5VzN ve1۪PjJuvz}0ÂqSNٺ{y+ S(P=8䈗y! RgaG&FwT&lYM<:[g)镖ЇbOj%id(jϦ%x>ޤڪi9m1#@Ym=?oqX'I2" kr@^C)+/Q _G^c3^MA +pyo$Fj!EZ:P݊=7pVڶb%Cuqd7pR,9!rV6J}62:&x '"HMbW+_S3%t.^U娚_BD<|6kp6rarHYK-&1<}wn"zuG \b'=I;j`&ʨ\Q\ bʓ yDŽJ˞B_qшg}syvB#{NVUR[9d `l%q6 O^Z?=o1H.#61 KiBR&iUx>,mFl;Ej+~=60xyA\/f8H9-؉w&|OTYX6lC |p|8glwIqH/u\(7r#0لyicfNVd_Τǝ0lȱe]N5r1bjӎ;(GS #5!np;XC[ֲ,!bbP :4˖[8 }qLs\I lv&AӝwpP!h+ұ:ŽAm8Q.)S-PpBG?}> #O+#5ߩ/ _JHRodGQ3ֻj8ȅ` ؾCVk)Q,hBrjs/ҽ$uC$']R*кs^Qo9^%!Rèͫ$8m4WT_:_~p~}ȫ-ye-09\LGqrY1kn|#b`|W K[S%NƋ32P&ULz߂ͧ|ݑF=UЛU3GU"?NG8׶| w,{ȕE}nYaxKΦ; K,+:5II2֎,FUK׵v&+[2¹rAOuL!j!ts9 uhRA8n"ye `}ŽMzz:ix`{0VhщwS;ZFr٫`O vϒ~ vH)Kf_gI*6_@'Yo- NaxJA0-`zrp7gʚe\Ke^3px<|C3Drprc@QSU>{a%vJjQvs ed[O0~0?N3'Ύ4ʭDW“KܙLVJ5i E%!uz$8rT߄V5rEubOE#aZ<ڶ<2fAX(@Оs G(zm0 U-/E..ݙhB=E7G0 `y \)a.b_ q2#f_ԙĭiz-KɟHVItIY Α" ,(yӛ%RRXMdHpn Lda7]5zNfoފBLOp& z ]8j[ L0tK۳}@7PZ4GHjAruH8=Yۑe#d3D+,s?25(Y \o Kr?ro9aEJ*y;rw#K 5$ ~e;4i) BhlZpem/L3׭(>. ||Xb8!٣V J[fT8(O!R3U"Pߓ`"䲫]ybxoqEW3hrO-ɴ4ΈϔQ1Pv?0Л? tKπ@k;AOAkFD#4O7U 3}&a {7"xy`]%-zc_e5Q@J/d#+`㤢6I~yihmt HIςַX@H|? V֒f| h ˡm{llWHѠWwMݜRb۵J^9l(Ce_ 3㼶*z// `rsUѿ_2[F&ml%PK]fH}I:|ΡgqL|@KDNj{69:qʣ sɐ\`?% F7YdivzC_uDB/o:D-oO5tMJȳV,Ǵ螁d V[uJsqR[Oq+I0Ob>]_fE,k~p PϞ~rh}b&H0FRa 8]C?idpT OI_|Ml5 3 uDˡ ):mf %\lh"V|߽]?˯K%"VNc"Υ6 ]HΒmT~rf3AbYTA"U.[ 6c;NiRDPR*%ڏLFCnIQ7xBچL#LB0U\s&WC+ ɧ_T8B0ݭrλ;~C)@7+!C3(őZlXꡲ7B i"˅~(U.SbCVZ;*ZyGHk U " +{#U/->7|́0u ÔKBD{Be/`\.ӧs8[|O#ѱ IM(6B̉k3);KQb|Ɛ 7܁8d|?},עTVm@Oc556ȾvUbD.=I=FȾ~y9*aU6 7d… UGlq2`\WP&oFnUDSS^lsEFXE~Mi>+"2{># l?R+#woV:T6w[7+H0) (!% Q v+}>R8g-0J(t eKOSK~Щ.]֙eaGCLCP4R77ЌOl(/LR!\؟H yWV՟a[ Xã#]ɒ}Q_' $MjbCr~G]Ig܇%gk82TY+; OK0 }!"gxŸG*SOhp /2p'ZG饣j(H1 &Z%+%I,=Pf hH22? ?V$+J3 ]S#akis(߮  Q?7ʊiEJn3㜸R z C2/JyWuIwbXy>N M7꛷#GY;` ȑqq=ق9:l,ޙR9O=dAM'suwV\MiŰ2/g9`!4*׈18_'f-#H$= RtG S휇h5SHLLC^DϜ 1$?q*y+Sh9_W e?u?ITK -qCyE5"- Wn=V124-{֏Òf@MЃ*UU$:MJ4 E ks~Ǔa0hWX{ 2̊{UE:D?*lQgq n /𧽰FoCe['T&\c]NiN5mgcM4xTA1S J}iv5ɘBQ}pzyiv6diBG p#HS}:0&ShoE;5-4Yk튫"1vN7-k6,5Lne;e3gKKu%TpX< Xx;jqvl|=X arV6j2)ti'ziFBUʜHCmFY>{ @txn贱ؼ%3xKg1m6U?+"=r&nΣ6hgx`1S kL N [xSs a&PYP6 vIm"8.groR`XQE!g =4xěM䛑lf1b0 rTMZuz9AU•vS&=lڎ|I:ALLս9*D!SEWޒ IY-v*1vX٫O\뛩_h ؄Ԩu֣wA$b|YZI@ru_6qrF0gE+T^uȉ[ޥW&E/V.ף~.gZJ7ӎw{H}c7"1kH[,1$IPZv+`FlvdvkխCcykC{6XPLˁ)wsdzuOCE=~wܹ3nRAON/X-Q*IK?K I' ķljOjv];* _WTr-To#GpyoŶ翎T/zq%7:zg|s$j`wsK+qt$fe}x1+s"3h7;H| UZt}R>w |᱌m}3hNyh@ܰNKX ;]v/5S-)q0$`ͼ1HDӎ9۲P tEv} m/9YWiۘAYyʢ @mQE{w:?7ƇAkjQK5|~h`B :2s|kvd_ECi8”  ^]c..T1I#pY> 5P]屍[~"*ש>v7mB^'|Օ0v#Y{n'*"W|<"_}Oe q ?u%2 E5G_f)C%gc YxuЖhyPJa=\H0Vq\+Q_ޤ7R(!_1DaSVvL㛚Y_=%1l;,[R!{*2!% yB۫SW~-@9Cm{Сh}J'7ZV7R>SƮ%gy:Wװ^pC}H`)HNvhlioܻ6b?<*%?7Rp8ᤒݗ5  I/l~J%Nwvk5@R(?1!VzƇAtoq)'br jЃ (Mww_hh|b>$ʣ ljeD,Kƭ IKY%-Y#j 5*e)W$~ȭu<" p+3*ݝjibx庄0/9;Z7Ʋm Wp(}fAdTfstSxިg |i!Xmo 3CCBOBNWZ%VB]#1,rWKJ/ άӮVyFyOZjZR8%h&('`;ےkCԸP@}L=44(蟁΅I0 L9@y%5fS0@SY+0O 7GBAf3i"LC+-@8 W !ir-ωRo7C>>YS%pcw3=0ŒIlmlzIWP5>Ie?MwywO妬lJe&:a*MkG3rՖm$[He,*7˱"H~5J/{n1-Qۜ(^Ĝv?M)#1,ς"\L_4Sx!qnXɩ:PƆ/ZToyڵkeon/ fAAPC+^􄽳wniqt~h,.[T&|RC7]W1Ps(s/БDA<1 `piJNj1Y;FJHμpZf_7E5aU^B8 r!]S Ὼ\ֿ < h4{kxr ZE=pY|RпPv" :=۷(_& 4LxqOࡎz9As4ǫXBx.Hl&uZ,ңH >'UAb6a(]Hc:%+:hN"J>OՏ 6F5ߵ2}K]{)o:%ȳFQoNf˰mz|,Lts,ƣ%G67MFvE㿥jtVw{.eDO 55UST]uӁ |oW =hSi{ً"Hk[ߜ\_P Y ؚ8n{!kMvn燁.mOnL="zUsf: ѱx8!٘PkHe1_gߒ2JXA -!(_7X9 ""„} >+8Z~.pYo:/t#m;`t7$\NXrbK4 UH`bF䣿G-(+$ޏhVj<@%uC jJߠj(Pj^lsCJ!II I*fz0xq92dq ]ęS6S$W0s<sY{T,^\zd 餐eK}uu)s!z ]߳˩”:1NМm;#$VZ1YEWtQjҦdqg9'xt'"eXcdn=|'C(3m?V}_JJ@{oAU맃ұn8Ж*P7rec܇G%jm\JǂR|Ή:PԔ}e,8ihbQ헞;}ŌbdW)l8(5paA|Qoa@^wZTcn/eU+27b"1Fu06wjqE /P(Zɮcd`֯J= ́E(NÕ|" 0fY0P?CD`1^>@G{?NʂUoIǶ\V V=i42:C$uxc"Z+f;EϞԩdpNL&*fQT1k|}s]`9ܷr_Jj z5TEEрU3Nޚ6BM!6.~[a]2E$ LZ Z.$\~KN$>c eQû"3a.#%)TھF(ўe)4K<$*ə|}8iLٻ1^8of !ϣ:iIu41 AHG&G0c%vu^KJ=*mb=}oc?CfUeܛWJ6z666*MǬ3[9=5~8 ;T 94XӜJhA>f` ;@ ]bVD bck&BWB !p?yĪ{޶ȗB  YZ