From 1bd087cbff409385f83e019f4c132c5008e5b454 Mon Sep 17 00:00:00 2001 From: TrueCharts-Bot Date: Tue, 14 Jun 2022 21:33:32 +0000 Subject: [PATCH] Commit new App releases for TrueCharts Signed-off-by: TrueCharts-Bot --- incubator/dashdot/0.0.1/CHANGELOG.md | 10 + incubator/dashdot/0.0.1/Chart.lock | 6 + incubator/dashdot/0.0.1/Chart.yaml | 27 + incubator/dashdot/0.0.1/README.md | 38 + incubator/dashdot/0.0.1/app-readme.md | 3 + .../dashdot/0.0.1/charts/common-10.0.9.tgz | Bin 0 -> 46480 bytes incubator/dashdot/0.0.1/ix_values.yaml | 44 + incubator/dashdot/0.0.1/questions.yaml | 2512 ++++++++++++++ incubator/dashdot/0.0.1/security.md | 85 + incubator/dashdot/0.0.1/templates/common.yaml | 1 + incubator/dashdot/0.0.1/values.yaml | 0 incubator/dashdot/item.yaml | 4 + incubator/jump/0.0.1/CHANGELOG.md | 10 + incubator/jump/0.0.1/Chart.lock | 6 + incubator/jump/0.0.1/Chart.yaml | 27 + incubator/jump/0.0.1/README.md | 38 + incubator/jump/0.0.1/app-readme.md | 3 + incubator/jump/0.0.1/charts/common-10.0.9.tgz | Bin 0 -> 46480 bytes incubator/jump/0.0.1/ix_values.yaml | 33 + incubator/jump/0.0.1/questions.yaml | 2892 +++++++++++++++++ incubator/jump/0.0.1/security.md | 83 + incubator/jump/0.0.1/templates/common.yaml | 1 + incubator/jump/0.0.1/values.yaml | 0 incubator/jump/item.yaml | 4 + 24 files changed, 5827 insertions(+) create mode 100644 incubator/dashdot/0.0.1/CHANGELOG.md create mode 100644 incubator/dashdot/0.0.1/Chart.lock create mode 100644 incubator/dashdot/0.0.1/Chart.yaml create mode 100644 incubator/dashdot/0.0.1/README.md create mode 100644 incubator/dashdot/0.0.1/app-readme.md create mode 100644 incubator/dashdot/0.0.1/charts/common-10.0.9.tgz create mode 100644 incubator/dashdot/0.0.1/ix_values.yaml create mode 100644 incubator/dashdot/0.0.1/questions.yaml create mode 100644 incubator/dashdot/0.0.1/security.md create mode 100644 incubator/dashdot/0.0.1/templates/common.yaml create mode 100644 incubator/dashdot/0.0.1/values.yaml create mode 100644 incubator/dashdot/item.yaml create mode 100644 incubator/jump/0.0.1/CHANGELOG.md create mode 100644 incubator/jump/0.0.1/Chart.lock create mode 100644 incubator/jump/0.0.1/Chart.yaml create mode 100644 incubator/jump/0.0.1/README.md create mode 100644 incubator/jump/0.0.1/app-readme.md create mode 100644 incubator/jump/0.0.1/charts/common-10.0.9.tgz create mode 100644 incubator/jump/0.0.1/ix_values.yaml create mode 100644 incubator/jump/0.0.1/questions.yaml create mode 100644 incubator/jump/0.0.1/security.md create mode 100644 incubator/jump/0.0.1/templates/common.yaml create mode 100644 incubator/jump/0.0.1/values.yaml create mode 100644 incubator/jump/item.yaml diff --git a/incubator/dashdot/0.0.1/CHANGELOG.md b/incubator/dashdot/0.0.1/CHANGELOG.md new file mode 100644 index 00000000000..8fadd7648ea --- /dev/null +++ b/incubator/dashdot/0.0.1/CHANGELOG.md @@ -0,0 +1,10 @@ +# Changelog
+ + + +### dashdot-0.0.1 (2022-06-14) + +#### Feat + +* add dashdot and jump ([#2867](https://github.com/truecharts/apps/issues/2867)) + diff --git a/incubator/dashdot/0.0.1/Chart.lock b/incubator/dashdot/0.0.1/Chart.lock new file mode 100644 index 00000000000..f2c0690cb11 --- /dev/null +++ b/incubator/dashdot/0.0.1/Chart.lock @@ -0,0 +1,6 @@ +dependencies: +- name: common + repository: https://library-charts.truecharts.org + version: 10.0.9 +digest: sha256:ecc7cc7417a00bc40309e68f23ad56ec383550afcbe45fce648a9d9771712609 +generated: "2022-06-14T21:28:49.285898701Z" diff --git a/incubator/dashdot/0.0.1/Chart.yaml b/incubator/dashdot/0.0.1/Chart.yaml new file mode 100644 index 00000000000..229acea3503 --- /dev/null +++ b/incubator/dashdot/0.0.1/Chart.yaml @@ -0,0 +1,27 @@ +apiVersion: v2 +appVersion: "3.2.1" +dependencies: +- name: common + repository: https://library-charts.truecharts.org + version: 10.0.9 +description: dash. (or dashdot) is a modern server dashboard, running on the latest tech, designed with glassmorphism in mind. +home: https://github.com/truecharts/apps/tree/master/charts/stable/dashdot +icon: https://truecharts.org/_static/img/appicons/dashdot.png +keywords: +- dashboard +- dashdot +kubeVersion: '>=1.16.0-0' +maintainers: +- email: info@truecharts.org + name: TrueCharts + url: https://truecharts.org +name: dashdot +sources: +- https://github.com/MauriceNino/dashdot +- https://hub.docker.com/r/mauricenino/dashdot +version: 0.0.1 +annotations: + truecharts.org/catagories: | + - media + truecharts.org/SCALE-support: "true" + truecharts.org/grade: U diff --git a/incubator/dashdot/0.0.1/README.md b/incubator/dashdot/0.0.1/README.md new file mode 100644 index 00000000000..d85614986a2 --- /dev/null +++ b/incubator/dashdot/0.0.1/README.md @@ -0,0 +1,38 @@ +# Introduction + +dash. (or dashdot) is a modern server dashboard, running on the latest tech, designed with glassmorphism in mind. + +TrueCharts are designed to be installed as TrueNAS SCALE app only. We can not guarantee this charts works as a stand-alone helm installation. +**This chart is not maintained by the upstream project and any issues with the chart should be raised [here](https://github.com/truecharts/apps/issues/new/choose)** + +## Source Code + +* +* + +## Requirements + +Kubernetes: `>=1.16.0-0` + +## Dependencies + +| Repository | Name | Version | +|------------|------|---------| +| https://library-charts.truecharts.org | common | 10.0.9 | + +## Installing the Chart + +To install this App on TrueNAS SCALE check our [Quick-Start Guide](https://truecharts.org/manual/Quick-Start%20Guides/02-Installing-an-App/). + +## Upgrading, Rolling Back and Uninstalling the Chart + +To upgrade, rollback or delete this App from TrueNAS SCALE check our [Quick-Start Guide](https://truecharts.org/manual/Quick-Start%20Guides/04-Upgrade-rollback-delete-an-App/). + +## Support + +- Please check our [quick-start guides](https://truecharts.org/manual/Quick-Start%20Guides/01-Adding-TrueCharts/) first. +- See the [Wiki](https://truecharts.org) +- Check our [Discord](https://discord.gg/tVsPTHWTtr) +- Open a [issue](https://github.com/truecharts/apps/issues/new/choose) +--- +All Rights Reserved - The TrueCharts Project diff --git a/incubator/dashdot/0.0.1/app-readme.md b/incubator/dashdot/0.0.1/app-readme.md new file mode 100644 index 00000000000..1e5d3becd26 --- /dev/null +++ b/incubator/dashdot/0.0.1/app-readme.md @@ -0,0 +1,3 @@ +dash. (or dashdot) is a modern server dashboard, running on the latest tech, designed with glassmorphism in mind. + +This App is supplied by TrueCharts, for more information please visit https://truecharts.org diff --git a/incubator/dashdot/0.0.1/charts/common-10.0.9.tgz b/incubator/dashdot/0.0.1/charts/common-10.0.9.tgz new file mode 100644 index 0000000000000000000000000000000000000000..dc464f87024f316bfbb4cf1115dda68443020bb0 GIT binary patch literal 46480 zcmV)ZK&!tWiwG0|00000|0w_~VMtOiV@ORlOnEsqVl!4SWK%V1T2nbTPgYhoO;>Dc zVQyr3R8em|NM&qo0PMYcciT9UC_aDdQ{cy>x9z#s)AA$Q$=r22Nw-hu;bS}LyE{9_ zfk;Tgm?GH#C`XgdcmEwc36P*f`IThG+}Vyr0);}MP*o@t3Sl~*r%CsC1_|pd;XMA+ z-9NovueU!Oihp~(UishN{%-$I{o!D*-yiPp_6C3I^#{YfgFk`ZJ>XJ#a>^k2Q}5Po zl{@#HJTSu_5TQ6tMqn{$!7MXBW5^I?tq9SO;EaiPuks}1e}Nc}2_#D}NeQ?hIT8#+ zTeEbIMqtKRMn~Q56th`A?u6;Q%SetwQKk#CjCL78s5^(0A<|XvB`daY$Q#li-~uv8 zXh(v|DI#H-FqAL>HSZqm4|~0Xy}i~IT3)9lqN7$D6pgjo8q>CT(P{(L%vC-{rmH{x z^?AS3-|zI=y&qe1h!X~Jf`|Zy<`BmtfRjo3Uj^V!N~SFU63F{&5deUk#0C1L3bMGu zfGsmL(&)7o8kc^r)9XBIJ<#~8`M-d1j_5rJfR*#V-yiM{56biZVDLEqALMxg+HLSI zL&=BJw}56S#1kBXFij?SniI(9dg}@JuLwH07^m7hLv?i39z5cV|VRSGY9QKBL{r+Bm|5@)K z-0kI?$S5IgI zxgni(`Sq|IDi1n)ot`G|!2nIdgXmztA05KoAsoZ~{lVVuK`-j}`UgF<8}=hKnM}s$ zpbrPpuph!_gM+;g4F=D8gJ<3$F15W8brZzsEKS*_)YbLsscRrNq^>T%9#*}u81%=J z!R|ifOnmq(+#8Sg_J#-J-ab0)9qx_?5beXTzZ)UM*>x~RlOF8%`f%LaoAi6ThYi}U zr|waF4VP5WHB2K!5m_LzDP@bA^|a+>+6sI_@>*3IL3CJn*clcq+}|A^9`v3K!^z;; z?sziX8yp-)=-D9($A`OUyw{uTMu+>83F_?~9*l<*IEnV7aIp6*+TA~ZLoW+go8O3w zVVvOvZAxibtDee75^6&NOK9uhIAq=J^!GXg!@SQ>v^zZP!5%`x-N^x*>>u_gDB6pL zlW@@A+w1Sc@uVLP`v^v8|Jm;0c(5NGhR?!5c(8Z4ySC}g#BNI2lpy;1=7QJMTp@Z3 z=uL&MsnGP1k4eVE^DS+THCPMEwZv?)Jj{ zAv`?jNBzkd4MVg$45NK?_^kJAA5Dh+aW6WAa37BM_I7uN&l)t{l&;e_9mBYw3Ss~z zAYC9raD;?IL7F6Jf6s{qF)g6!~0*|6j*8y}-Du@ES1olFZf`b8gnxuqJ9ZdN*jX$4S z#0J4%SlusZTxw|!KY=`f3y5Pr^+YY}_ale; zlmj7XfhkTCFvFDV8W7_-W@6OkhhOCT*ZlPe?6z9i(O^>07rM$-TyCjC6S?ne)r8Wx zLT7?=6r+%(1i&~>uc^=q2+}3UaCn82DS#ltlL;b)_a(w1+W~lb?2Lvy0)hA)v{b`dGbmo4&tVd6(QN}qD|$W+gm<{53W=%gfdR>suBgpFTUC#u zNY=oK5ix+J8d5Ii6yU=@UTSEa))R0_Ft=~wrKiK_6C?1*ZHM#0u|@)1;5qtdnxNLj z|BS%hacQDP=p7k3PY9 z7NZd-qyz>*m{XR{!O5wp%gc^H|Jk6^-#_f^?|1gSAYq=eIb=A5al8am$YzL3Qk-x@ zo{Ij7dg{e#O4tbO@9$d#U9Bp!G-_pObmUQo9>w8R8?7f+V@+C+R>yj6r)s`-HCl7D z{L0LMYN7H1F+}D#K@?oi5GQmoljM})RRPHp3a&Amfs2d(*4)%-F}Bn!bwhBJMK~z{ zik~h>F@M1?DZ&5bkYaF}M&KxCDGgzaNNK6?mk3h<>#wbusdAb|MFl>8<`5@R4^$?G z;zvuPT;U`VQwx%*(E7ZH-6n@72+TjpQorIPvJ{Olo7L=;1yJPLcnx4$@a8zd^L!5A zJk1lvAuIFZN6JMT&ER$70ooVu<~TXi#>nkK_IeU1{B(Cf4|`U(k5AvfXE?_H6w~Mw zkq{*eI(qyrnt6lfDOuLEBsuX|+E^5k1r8AmL*82LQdJc@lEqxE6X4#!D`_w}(%-EH zw)pymPn?XTV?=jAk~01eVqvG#5q1~{cOrO;Ab=^DOG6AMpkIQv1LnL6 zDdvIWbYbL6Sy0OrpoD8#K*!4QD7KTXQ*tGjO~&dMo`7~^FIDMb`q9a7Cwl&=60Nnm`U z0Z_~F#Fshd!w3W@p}T?dKj93{N9u3o>D@yq3g!Cw(WFhd^t5`!U z3;Q}UwN+;-MeRP8jB~*-sZt+C08B_a7oIH5Mb{f61>7g_gX%K}n%s}wpuu&W0EPn@s1mYZ4wrx+n#KzR z5*nxJRh|J%X)bL|F$}-jGN0uc<#OpKtPL~a z2NB(DtAgDpFbompY};ltq+f5hq_{elKVReIin?5=9o45K<@LFlMZn1muyy+WGqZ6`ybKl6cA6eT8ErWxm-37h6cDy536~!dTge z1^}nP+f*QKs)eNyamHlzsKj`J!etnvx{jFwmioI8MyKV5zQ%FPxsBw>4p*-*0XV_T zl-L0f@Y%uVFP&s9dUO)jr z<4`q?OI^UJIpI9*d12Ra4iK1+lxZa(!T1G=;qn}XX%f*9==apu z3=u4pZ0S9hkZI1$hduRv0&$!ZbTK1{a)kMpB2FWM_(r^LrkS7F&F6dJb_4y9-8W%( zmuz>;?|$Il8pEGUov<;xD_!Dec4`B?V^&wN9~pfUMz@J}$87EceHTn#X6Au<|Ky2u zwa*buD8LNNxSb5<@RQiqPbXmS&%3?n{kQo?OHF)OHlM%7Q8 z{a&jjEmr8n_qj_CF}9F_>lqGba=RDD!sk%DaTg;$Qec4vb3`eeBC{U2CYUjlbaZpl zPF!Us5+s~;A+kQUVTQYW)gPxYY7<1$oP>yWxe2-Gcb}LAQMjSNU@=xrCH7`=BO_A`6FLFeiS~bkFQ`Hk70Oqk-ko+^j-3jkd%DZzFG^zFj zsR%URdVCGwBM%B{O$DO}MPMw~bt>%CEaCW4lHxgzAl0YTQO zfSPjwwI>5q2Tn=4;GM1sDwPUg4wu5sgMQC3k)p6BE~#=@;f844=*U8SmlUWKy@`Fn zC|-%9oX8?nS7i7gb17J*Xjo@b@M;Bt%5i3LgG%qfUl2H%;II_6p#??3VTwOEQ-v@t zV6GS0EN3afFfLr}T`8g4IO}f90rX-sszDuRDoCPZPk>|^qjLtss~vDEw8V=X#_GkH z90&7820mo3;2g(G?I5;5lmg&z1}3~H);nE=?iS9i0*#Z?#c+rJci(OT>pc$7s7t?d zgW9c)S@bb*9m}pWmZIMCJ~q-R%k2{xWifL{n=~rRp_^3tIg`YM0g~im%3ye%!O_e z!N8)crB$okD|Zx`=(X7U7r|%6UYq#RaYy%K0s12!F?I44MQT}Q4TI6mI57vrr0?2V ztKoz)1S616tafy6w)V+2rJqMR)@5U@_A)rlX2MtK!JG+F5VUid}|!2_`>V zf=dA}*{y&3d&_FI*34FAn%LPz(c2l?3QoPDt)uRm8`_!#U{(08UzX~VKex2BP4uE) zmg-jS-O@J11uIPLqnxENPOfa)$HRVUuUU3-E zjHDB6U~nyF;+Bqs*mlt2IHoxR=u?(b6ZxoGM@iJqsnWxfGHsO%YxCKUllB-=9J+DS zy6t}ns?Tk<(!l}W=CV#JFIQRVX(!_CMj)BuI$=Cla2Nbnz^utkA=@P7_~>Nh(qQC8gr5 zr$EY$FVGrVgqK?umpmjZG<;iyqjqAmX7wVKK{hLp;s6T!mwzf&JOyT_kj*-v8A`zH zT6CRv(t9j)Ma1o8Zc`%_j?r?s7~a;#1<>O4@d^maWyBg=WxV%P_AU(pZ^3RB#&;~%8s|N zt=jUkg<4a-Sx@f^xl-$13{7l)gO!F=_NGe>3F1c;tzW;^FqsTEdxa)^cg=dkAn03h znA-AyUFnFaTh+<(0@fW*b?f>p1p&YmlScq_^5v2|HV0RL9oDY}*Cb6xU<}DBPP;Xi zH5@|~L01!eR^Vf{S5-`V1y?6tL2R~^Qwbn?G{xwmPec&vlyLzINniz{&Kp*IbsK(dB&D6FxgQG zZ>N}YJ3?8Bq$ix=M2v*Blawv&Wz{4lp~+p7iNr{}FBa*4!*MK3AF*yqmL|m-QEmXa zoa1mj$6bFDo(h&qWhEm%(m0Y=7JV(K3N^9CEWvW^nJwEySTxd^%`wo45NL_AIe)vqc%KBw7CoOOyRk|3veff7JvuVkmH_47n{j8O!( zEHt)vK$1FDg%K(OkiBL@0H6iOp|};OBRI7;-drLW5>#3 z0Rhd&Z5hs$P|b&CB@h)eRQupXBsq~elEpD|GgtW7wP`*Uiw1?3oJ}On;8dNMaOB{T zIG^(-wX-&AiO5R4`lfJYrpk~P*0BHq=4ph?oGG0BV-8ENW>(@juZB zJbU)+XI%Crq+;zNSyCRNoJpykXK4aHiX2#ZqKKkQDm}CI~V<>Qj}7M$uzO2-XnlyhgOx z$;AJZVq-4A0o5Bd1jW=)xd_1%(3cbByI_q4Byl>WH{^{4Bwb$pkvkrkJEW{e^DGsY z8!6hX9BE$qhQrL}**7@AYIOhg2KV8nKFRCT_BELLBu^gsVq?B|DQy+rJy{n_5n8MndySjDw#MO1hVCoJ2QO1ymv+nsj^dUGEi4mHZ-ol`EJI|D zDHSdVdFCXXrPqnf7dM-$l#LXz)1qKyed}5DtJOxsCBHcs!iVLf#{8pitv+AAuzPcE zr{&NUFP52b@$jWjI78u;K2*WTQn?OXOf^n?n5@0EC=EqIUFEz>iT2jG6s{(RDmf4Y zF*a}?=%|A#!^*(ougJI3E!BX1wg2k2>??bG_e`weKC<#xVr8|qEI7E1?_|ODTqhn~ z!E~1M^E>uNTK&C0pQOxnD7}VqBt9sRe6i2zb_?%`mMqdsB7dFhb-UQ^0Z$4C_Q<>f z+BYX%D#Jm~`Xo0B=F7HD)KkM(dV8%2Yw5D?mPAj$iMac>m70x1F(L)Rid?KgDnfMA898^+uC6+Lwy|LS`if$BFcnq3L?#I zU$R9|M|d0@9C)Rj8ZNm{Tpca(zKDAgc?NTeh}j_nCVFVTY)?s=XWjX-ZHjmqG?~x_ z+?h;hL)J_t^!9uyvwsyA81#D`b+&mm^=%7|cg)=NSDXc>=^XLDgGWAJA}e3$zYVuk(W33x|<*c1aXrp&tLfv?f?tkR10+H5kh89JALZ_xhWXDoj? zJ9yy?!K|&`wMF2nqWW7dLFE1tCwQ19lo5zU0{o2(9+}P&C(|}s$k385q!dpRk@hG_ zBh-D8h>JGmVbbju|8?#hEwv;R1#lwH#4IhGWUlIs6X`WUO}EyDNz{f3!)^U$yQTl~ zAj#4!jnnD!JmXA#d`nFAS#fbhT%Hrx4Ya9fp7C5xI#1ntEp~Sqq-Lm>&#uaB)O6Gp2-|I;!U@(=EtPKJk zrWvO5K)<`bzV0~h-As@=Re|1=rJyUXzM?e=`Z_I>-C)!LPrz>o9uYojBxjKG+t04H1*h;vdi zF7T<0kE4L(30Kutnof07O^g|f5eID$*#R^UXT0$@IKg~)J38bcN=?**?uS(^Ph?*u z6(?yNr`IBR?-LMnaj^qn^pBh}c{l`8kRUG8AzAK-&Z}(baw$sUB^VQNoB~c5BH+h@ z#y^VN6vc>011Ze%5g7J*y}9y1&&Ac4hd*PH?@ErMRkU9!xYv7w6%*)WoqW2etFcbs zm(mT1XyKnv-;YXlCh!W0_+ri-LQCr{BFbos|JTF`ilRFIqCEO3|8~;`wt)Uny5vgK z*Z1m8(&CQ2N`3XgwKgu)rDa^_$)x%+ih^5l3q)Yd``;E9P^#3AGF-)E?TbVZjtW#- z86^p$$RulD*|Lev{BZhKHQxaztU=R2T>&Ug#o=US$mewg$(GXIcXP{3~(97acswUOdwgd6*;<3%-#3xMV9y-rSimZX9?$V3xGvt zA0xDlbly*Kx2Er2O%;W;BLXQFSprf5?0fgkotmnkeQqy935Q*C3#}|yf3jRPSa@UP zE?R^VhM^35REc=CpOZIs?xYP7vZW2T4GeDZDxYiyDZNffBsY1|e5y|!=(Uq^JOWd; zh%UUsaeRJ_Sva$HPSGcET}GrbKhw*T)5Xw4m-@c$mvb;E+0VOTCDqgvETxvMp`knQ zpj@jQ4;9B&u4Hp?T4w*$`IKbjvi2uu37|MaA+#MQ zaz*ZT8@|~IxDPo|boXZB!m5A2Qo|vh)vCJNRoJ=3{j1t}#aE`7^PYB1wS}Ls9YF@$ z5hn5gycO^nrz+zHOF>3tBhF}OK%vN`E_)_!h&2w&b{pnKz_dY>Tq@CKvpx7zw!4*W>A+_J^GZ1 zt7@?JIA`)ge?x1hI^a_>f^-1i_jIxZRa|Us2S!9J#7N=9`-l8*{0i7BoPOtC= zmfC8ANw>esTrxN|wUt0~Q^~;g+DSJwiww{k8AYb{1DZq@iG2o9VW&8^A#x6TfA*Sp z`*nJS#RtwEZUoYWNeLmCXKIdpN)tfUa$&1p#Hl{jXEHu0D~DI;{<*^oc$e&|@f*75p@))I_7$nU(4~W-^xvWau>2!_ROc))fX>@0kL*uY&au_`CVvB@aYpo=qf+$@uAaug=QS)DMQk|{zNO1RO65#^xNtt=^J zTm$_c7X_A;TUu%kt(&@>8!7@%pB^;!S2PX@ifEvjK6LN25;@0U0uZE2CGG`dB`HJd zEcN@d*XQa&YD*{ZF?jJ4=iZ#e*4E+~iZI>0TZC6@)+15$VLLVFj2(?P@0P0AtYfP1 z19vS=rs<8kCM!1Vnk@WKUHjAHO>zd1?x?+p0ds)3WxWlseW^MF(z25$CDE{sB zdgXt62fO`0^@oGKet)>X+Z+6;H|X{D_x}WXcimavlT!xCpL(}$tK7No zW+s`7SYD~U>T#T-jNn9O0eY#J0vN6^H`vOHNr}1Dyp@|%`D)Yk{Yj_w=kAv;tQ1=zNfN&@@iRFz(<_$9%=5uMt!Q2~4I4JjF?bKJ9>~ zSRgujZYtwXFDuPBH&Fu)soie3V20JAYXpL;L)r-w+zFF#!WWH;e$cwYNi+g#AL>Zl z-pvh@7bgF0YmOL{kytv=8GmYj{tTX$?;;j21%LBm_ojZXBCij zYd>_9g`f*ORVi!rrt|2z$fK<*nJX-CB6falTw^@${62* zxy)OkZ9~APIGGaOzMSTUm^y9n6gYxkOM2*I&zUVH0;hPg6sl{aW4FPL zB>pL=FK%*9gKeubwzb&=Jr}o|wQA-!|I^h+mweDDU;lu>25FWt1?WJ_YP&ldQ#TL@ z%1#u$(F?m0@)qirMdDkOSu6?{5XXG=5eP*huO^T%1Q3nl|0X}s|4jlAwA*c=Prd3z z3OtW);d0yRm-N^eFU}c~DJLbVP1L|<%11`7RPJ0bN{Pj^6Ds|(hA3G+j&b-aT1uk) z0a$u2jy-`tz<7U%lF-#Z9JDwS+W@o-6lx0F);BlsP(42P`K;CdxA6PxXN~^f9qjLy z^#A_uVE0k~Kg1*a|7VC1j21|QtaZhn9hbb;#R>pZD`H{2AHOV@Z5QHtMP@u*>Z-oc zbFjr_uu({b^YHlt)QJv?OWn3u}-*CZ&m9IOVxmi}BJXvZR? zWt(iTon&@*#kDg!d`V`}Z`8##U3;o<6MS>?9uy0t)kHGQIqjPrkj?7i38=@|OkvHA zqI$VdRx3kqZl zSEvXdP%Ip1|5ae}DFq;C^ViFazm{j30}w1M+!O}etEd)LCxecwuqd^1n&|)tcexM%?=>8eJKn#(&&NU~`xw+S2{)aq&r~0e;Xc6ko1jLSlJgt5)nKRn9jIe)Ew4)J}88P66y`-Ls9!S^Wo9N|Efc}@vC?XMxN(Y9&od0sL1x;ORp8&nkVt@^pByJ`6^k>(`K+ z^Y(^MPjv{-O$`MZ?BksGm$^KO&eenFCB^vzfk91|+8}7Rg)zYYycMc}YN-}Lk$?mI zVe%$e0mEWkeI}We=hjN8vXgWXN;LIxVhxSL)=N$x^-jkALKFeUu|J* z>D$9`G6hr23bS^*7uH{nh9A)!){*ecfVBoW5=i*X6sh&li9Y zW^jyS%rH{Y5k^swtM~28i_4=IZ%*E}Ht-J{s(qi{VZ%UoC&0_yB&&uXpB$>a3ZfxT95R1;-OnF|4onXFaOhiCI8dz!Q=VQ2YKq^|LiQ64;=ib zn_dj*VL+rd=Z^9eW_CL^bKo=wb>| zC03{&rW-X>{Z!mSE-s$AgUGA~u~;jI_&afd{98Zk^}iX;`||(v5B7E|{-5FF`tL!W zI{%M-{m%pYe{|CuEg${a`)d61{h z{`+wH_A8ivi!5=hK3*omRO!i*4Jf#CnITs}qu)W0W+)M$R@bO?{!3&ED8O%>nD(wQ zLDL+PwK%S6(T3w`vy#HqYi=yEL>n3&WQt4etput6KJMk*N~?yvgj+x%6Z*6jT{rJ8L0Iu&l0>|=w#Z~f-{zt1nBq-{bf|`=*wtn$-1+!Y-4riE* zkE9ZR!R;Mgvq`W6FB{_pN)V-|Bpr)}oEJ^w9olPJxu0l?M)u$R=KtvJ4=Vfr!`;XG zzaQkepZp)?Rb%_62{{^wo2Rz8*&wp}XB z*T-}(ewSfGzsu0?cd2&r^5y?Ke*ON%%NK87Ui|j%?AP`i#Pu%U$z5FF5_@7*N$ERs@l(SS^ad$8G ze+{bnKl;1F$NV1;@+kWc(<1k&IK)l?qyU0(oFgHrg!Y{orT|$Q0ch9)q~ewj3fK%X z00{yiL6D)Sl~bHd)q;_88i?_jK(btEM9TX`W*M|E40$Tggl}~3d{LRd-T2CSRd<#_ zUA2H?eYY-p)OWvRuoNb!@3Z$`h+?1NcW(UDfUGNIRBO)-j^*25>^syQ({9VXGqQA( z&$hYU(Yf~CS=DMvJa?~s4~j1H~ zh)Q#uoS`hnA*4=C>%CQ7ZBNbNCx4~ly;W&fRYHv5(5CdHgy-?;`}YjT_@9vBG&w~i zLrlS;AnveoFc0c54F}|@!3s#;qA#AG*8L$ zE;}<95O30-2Dmh{6YBK;?X&(A&pQ3zFXw;n?++jE|9O~aBmEC!efI7R%<6SM*JC)j znbI#M54r>GZ4lm2hr8z&Z>`Cz$05G~eeTkxs@2`^H`DD+vpAI+Ghk&BgE=BoR9u-Y zwYQ~@A{?@9uQT7?@6%rY?QO?Skn62123y6dYrDEZSW*+U$iXB@nUKoOFtp11(X3@B-=p7vYTciKE*6)?|fB!N6)5AO) z>;DsVSM0rLe{-ei9qE1rZ$r&*Ux#~ZyIRVXhm^BXhr7|LWE7m9l{0T*Ga1_Pp z8WJhK13zjq&C08C1ubMt@!uuDV(KeEl{OuT&Rdk>-qvdmqR*YZza1c^^M8pMT`60p zT?M<~Djy?~Ackm2qM&dZmiN~iqGM3GZNtSH$z3m%hH+jug5_bEdq-rx;b6?0jl+D^ z5X^5u{rdK63BN&eRhpLss%Q9xw46IHjKo?;FF(gtVHsNRQCT&KRy0U`jcr%@TlPKp zBZ$3%u&Aa)p>$d(bGOE2VT<~QcUV+6h<$E~it`{~1fmJPGF>nDs)N%mNpmKyV`gNT zr8r?Ua2(LZ2m3nUYcv)CR5}u;X*1S{t7dE-s6-4sjKAeZ4i>#{WXDn&jl5b|Vl}N;TuIq&Br1#P2eb02Rt2C9W+}B(a9co3<&G#*Ok!T`^JhW2j-Zz{ zejZU}%j*KB*m*lf`XX%rDmR^#M5q0~(h4SEVk${x5a3TCA}sJX_Ox?`MDSVX3@tF1 z1YU`bC!kZHQ;VV?fmO~B!!NWwBWiw-JTAgQ)Cep*w9bF|24TinRt#$f+003y zZUsDvZ}#W`eZt=?zkEh;yILbt%L&fq#-oK27LKT>!*w29>t}B>8-dh^$^*lV9nFV>Oj9db_@T zS}@kyrphF%n}YwszV15zuL?ty;nBDB0P^_YTdbq*(|hn%qrYwEK}=jbUB zn2jk>w)jFv;BSHQ5d?oPIXh}#p%tKBYDmpMDYV+FKx*uEKmpx578RLeR{U}YOO%v< z`xhg2IX-(T*F~`uIMRp;K|FyL7f45THm-aq)&w~FDNe(y+7F!&N5uUqAU+otV-$-e zRlG1&c|Cc8p&pXm4*C?L%&{%y8{d+7MWwcL0hiY}bw_Lc8y8{e{F53qgCR2Wb{lMo z%y5D{+m(*WL?e}I9c!k_93wSFUVh3rLkRh|T~>p9@XI4ofnzACNxvEy+nBG2lLF8h zC>{aUA6T%fq+f@gO^6DP*2kuZ+VD2V_6DqD3;RY)V^yfKOXZ`>C>768LM^hD^cL_e z8{4&ooCTjAv^rdya#LOXTkz3J3T?zeDZs`?Y36L&c?I zFKj2PUv)Vp+rsdwXfOWqQGY$^uSfmWSo%EbuSfm$J?pQBR9~OJN(!ht|8KSk?j>_f((iXY$^k;~3)k{X_$2i?Fy2#N)ZOuf1p&2_RNG zZEIY%WmurrUF*(SXZk+P7U9M&?7MOBDkxmBZCTDDr)1C$N`a6X->Mf_e_7dNnGQv7 zOw3$LoIT-EtNvmIw8E$CWxMh@BflqEH)qo+C8lkH7{m$iIc@8mu2vUSeMQz_hT?gL z&bs={XIpJ`jKCE_S<9o!AI^W=++pl-aho4EzdPUKMvfg@0<_H)*8vFtuf% zh#{u=Zig+MAsGEeFhlQ>5CtMBqqTAGo+5o*^X_(vkm}WV~$8kaFiXj;3ny}LMj{awy>40 z!sFcT_>BjR66N*1K=uBr+@1pVl6^P zecJE;M^r%jJ67Ha?sM66+B}BJ*FwRXPnK)`lX}*ush^Y&ya}-X${MHaBjXOH41ZKt zEnh8AJZn@9B$J@yOeG- z*0-nAF?wyRFEvL0GrYT<_nRa3*gcU|214bwkCH3dSyC^6qAJw3RBdJ76{mfWHVb*dKDVQaW;W89S+|a*U6Ey72dAthA0Fp8S_P1otVW7$raX z+^@B=+d7LAvz(yr^*b+)AD==xnE-!2tGSZm*`3jidZ}+W3&lXn_6K zp0wV*4Nuw2v9ddNnELOXQ~dND4=c>JmvIH>ZH9k;ol6kr2k|;adK#l`KPKI{I5GR5 zq>?e&1e;Frz3o+gkLG}{Wcf^)vI|Ql2ph1v=vs^G8j<`{1N5TEQplZqyB0(3oQnFT z@eeyZ40f~L%~jj|N#9j*qJ?}1ML^`vOcI-OGrfxIdXO#uNjO2^jEqW`0F_?;L=t;3 z8Qm4nZz)cs3Jr7D^x1NlW+~rQR@YWPb2sr0M&i=&sA~lzqJYdS9p4uHhg7CcJGy*p z%;V{~Lf7JhuyYg&<&5v*`M9jSf=RllYsh4J=4i9a5VrU)`z6-aZw^&TT2xqL19(Tm zES7ME*H;YzoMxq*>+H=W!s}Z5WpM&fvvQddd8GFdHKjk|M46^?9WD(owReCZXNtR@ z_MO}>ptm>irFRABfe^T3pOArwx*tFcsJrz3z3`ZH9~LZtn#Gaa>yxztp2|-d=GTyA z99-zMmdXozq^)mX$n+t5+}Wr1B$=3tlY+N*w^q`S0gqL5i$7K8`E#|p4E}D{Aoj9% zU2x#W5c4Js^*$#5Jw&1VYzB=cXRUujin9g-P&SYgDP8;xlbD>l@(>n>c&{A*}PVX5|D~qX%U&!abq^AVqLl~>{4LtS0kr1xj8!&xw3x;3M z7`$^mYdY}6$1&~AnkixH^QT?9LJQUmp-mXNPa?t1Z<5K=U;p?|1qO09m-k(UXUO*< zTgW;FJyZSKu-Vmt45mR5g88!d+VSEYH1K$V=xO_62>;L4_W5Lv3+(v(*lLtLcSV{L zc0K(#GI!3PwSUbKI?X@K$+ClwW0w>67$ar`eqe8Y>+nI=VIPsNW=B0a{=;Z{qE%~7 zq?tWx3{yyN9g}=+9DhS?E$wnOY0k#P^VfGrGd7o7wBQ zy~|RKf%gHpE3#Jx_j8+x{!oy{5J+y>y94m9xdT(xgIJ>}NlNHb0zew%KBFS)}&=KBE z)a1Dq$ zjvO@JAd~HavqJTPiIZZDeQ1BJAPwSn;&MteO?0V$sk46mm+%``#03{{)Y{bC$es0y zjV4;aHcuJ}%;#!yJKpt9M}OOax$M2(6dYVosywWH{`Nm!CyqSS9V^v6laRR8_TG>0$!rG{4>!b)c5UXEBFR!E^!0Vva<% ztd_0=!_@!kaz|9xyY4cs$hv<%E_L88$CC7p6IO^`*_{pBFF-4<3NN8xraij4L|RFT z)o0?4EG5KpNzxhwVmY5ruIAKR{$-Er=b)xWYJ@IKK_M6!-BFoJA=uk}ilUUzPG>zR zTI6+Km0)88i?+tj-T71fEku^)cI;blspHW4A4ubazwe(3b!ZCP)#pxM4f{H?hVbfhZrG77g>8Y;;;(2nCjFFGwLG0P34xOdNvzez=-#^(*8Pq5@C?H%=H%U_dF;J_ z5b2F#rAVejeO^r@`Nu4Le^7x>SxC-4 ze?};}dRy3xvXgX<@CSSNB{el_Xr4P(JXuc-TDe*Vg{Z7`I_a;K(Tb#2CVSmByO9<~d zZ`{;h*3tBPxFj{HIW|{U3RiaDiC)Ljs-%JnVxi2cdsu=(XGSN3F@ArYiNmCbH4FS`F3j zCkKV})!I8L@ycV#M|4`8qgZG=GCsIlhDZo$MWm7!FblCLV=8DMLzaboMl9~Hlzlrx+{2!S*CyOLw>Vge1qn8%tU*z=7jwRleu|B zlESaB=y0M_JyK?GImX$`KXV@0$@JkUr$`8;2Pw0X4|@lFj|pn%7I2srs@^JovIB7; z-bRKThq$00(~{AMo`0mVd6-~XN#_^zOraqgYrT2MeX}qdW{gh3v!}8LCOH`f9UsHUH}C=X*QU4_OCdKdPz?)K#$Y zGhP@**@amWRZFWr4q=h6bprMiI)FoxOd~q9&JJ*PcBVcKxzydfqm-P4Tgg zcEjOam0d(rrEs7cG=E6KaaP~(h{BsbS9&&m3^qsV@)<#zL|T4Ad*an|+poLY=AAgr zX^jdQjhA`xBPr` zdKNxrY^cNp^ys7G^FM97$2Oe#{`h+{bt5jdzWUcIk$3u0HX~?vKj=-ay?iI;_<-bE z7Jt(2F&E{m^hy>#F;G;<(teZzpYZonZpycYN%-?ycab%Zb3tW$-YYU?L#KH`k43e0 z=}Uy0HH0dA_MV6uy>h0nu`Jxfedsk|)YVmiPU!I-sI#>Z@&pG_P6y|RPJ8FWjH8j& zw|?tBQocq!T1wp421#Ve$9CAG%3O0EDlT}YMa~5}q8E8Q(abi#eyh1uDC0ZHF=8PapFjXSbo8jiRw*&1a4 z$?@@Q#cY$Nx`i}b=HKsC<}l3x_1(q=KQTv8i3AsJHRxPx9xd$@nhTlM_oT>uawz44 zJ;iUnVTCpl7LzNen&h{f`?ILQyo$M(DT$E}{uvl<8_T7J(zNo8&s+lYtqeDoAMJk3 zhMew?RD4a;Por!7DE^b*t-e+BB(MJijak-gGmmc~%VcykgH>8f2h$Cx{WaMj+j|tK zYt$VF1hBvqdjPBu(@lr7+};oWJ%@d(%qlgheJ#CEu`bc+>QU%O21?Iq;#@iT+p8~o z?y=atZtLXun`24q%r_^) zIr~dk%ce)+CrUajsU4QT$Vy8w)#OF{FfV)fx)W8CSozEN}U1va>irV zj|Dj%Pz@}I$}XgRy#{9C5y~*Q(Gmf?nf_)HpUiF(07A3=mI$NthW~! zxJt@s^PB(%lg+czn?5X3vJMPLd}K_omL87eO==(#$2(Ht3@TOZZ=;i(IxI8(=T0Tv z%_KWXM=s*CGm7YOzZXze>tI|(!DR%>Od@v^Cu?pd4BLGaGyn4zbGu^8mTjgCM#;9Y zB^Y{rbsb`i9+*ST#`7k+uuhHJHq4NVK0tQqnlu*tq=iGyYo0g(h98Wcg}o;2cOPea z&ue*XXE!0pg`fF zrls?-OobO&+!t!V$Qy^124CDE+EC3;ZM`o^`CtG38ii`F?Rp#gO{h+^sX@V|RcLIm zmB>%g5(0RC`EYfnMZ|fHzc`W1v5uv#MJSyYBNO-KBIxs=qsJue&iOLnC+5%6rww;Z z@&yp))fWIvXzDhGr-+MHs7A_TSUyC5dYxD$u#~;*%`EuxcMY}F;g@=ZA6=T zg({@6wl{Idp3UAoJK~^zHht|cgcNT6xfGERUp*^(lluUx-I{Zh;p@R(ukv-;mueu? z;8eXqZ}_|>4u+}rR}WGHW>Zw$q?SFjn$&8NW&%p|x?vkCW3X_-&Bn%wO@0D>DMF4T zTBXcFwV^y)X$IRlHkaM^3S`%gOH4nZAR^PHiLl==8%2pq9brQ`tEzh&5WM6`Y*2pQCm$zZYR_LTTuwxc^r`XKzwvr`-4;Vw7jt1i zp11^wEc6N$uO}Z_xh^DDX(zf6OG`lm{r|H%#;5s8x>=Jgky5t!ZRrUo@ zXIuPX=@#QQI|#U`yVb*=QMR5|(GjuL{^wr><9c`AaBQL%IJ3W`5on7gF1VO9?za#` z=_A^(A=~M8A4%7DIx~|`&If^AX;mJsQrqFLp*&i}s_}=I%hvD)P`64>qbc^S$1!X9 ztswOXbm?dugBJ>oTvdrROz&^uw0@0i#HaHNaP;1wvV{5W44xzki;vUWZIz6EGk0%^~I-|+0L;`LEQ zbY~VwpnlAKZ!^F?u9G;#$7wA)wVPBu7{QEQF~L5LG)&ty@zts3UB&R}PS`SI>}_Mx z>ciJtaFi35nS{fJ!rlBZfQxG^jy*$!#F!#tIJf(kbahQM$lW$%kh=is3zt-h2b`iP z>BwZcYV97mS7jKyJ#$M_dPhSXyHN=_Q7K3_zitT~v7lk-%vv=wkJM4?3T+izk&dRm z;)yf$6N3uxQe~%=9Xhy6Cl7NfaVfN$D^{`f4{(%@%~LMI5?o=$rfpRc05$fx!6zVG zaP3z2lk!0QtF5vN-d5W-8?%HtT9a53n)QWDg-yUVC}+VVnyHcHg_tAQ_bd$DQpPqB z7obMbpF{s110jw3&OKxrc-BJA8L3cpHmScpZ%UgnG;Y4Q%t*N{92*5+8{D8Z<+Q%= z?TpI+s>n`z&#`7*2tKiIWmqwdQsqh4*`~V3TKxVwiq6W6<>_I?%}w8>X;@T#uT73d zZNh6$_b(UBh?N~rY+p=lUpiAy&i%>RLn3a27FQ(7bD=Ho3{xm|WtuiQlOF?v-i@cZ zs2jspi#i>@K!{^~g6>APnS{Dw9P(U{;)k#V0cyi}S4rRRgdT%`=He+ouNlUatr8(y z2W_M?PQwUJC^v0;M6l7N@Pho{iBiQjOhveF*XfVa z&bxPCh7qzc@CJl>3SDi`XY-5WnORBYYiW=|p&2rFp|S4Pt8?h(AURUksN3}7KanlZ zjZC;fPvj{1THmxt-#Qyff3)#q>0@i%8d0Po>L7i*=I-DZ5ajo|n%QH!7|%$k6`0EQ z$?Ljg(h+EW^N)1?qAXP&qiM+xqmAa&&7ILWSL=Sk%BmDIJ^}J}zuy-5yD&>@HM~re zcPl`rqEFfAYgcLik=jawYY9QN(oocqkM~iRJ;e3Hsejh*?#&C09Pj8!Lwsk?Zbw_J z47Q^Sj;MV;=(BWp@;ZyInTdN#5VDwH?K;2d6&)0jV!>)9Kgs5X)|WGjzslAnQFg=KW`Y z25?jShC)fn9zM-K87FQlZuRD$%7a<_?~!|gx=V__JIeYYmJiVtcI^_=4J?a&&b1d9 z$ENzb$9xK6tn%*@t1{)Uu2repx|Qnm)nTV2f*)DNk@D!66QWd4Y=s_fR+Ydos1 z<@W`!%@oLzM@CEUL}kG%x_Ex)QK-B|gNyWof(e)0Y~5q1f`<315dGa>_(v6=u+Y%i zYWH7~@HB)DHHg|kQQQlo!GD>IIl|4uHz-hr40;g(6tdsWiX*c>_Fwl<>Hs z;Q5_+krNzV@+?g5)+)*@Bgzap36<8Z=X}S)o<-_ET$8E+{|dtfU93^8+*{^ny`YIm zB_sUF0eLnToKFn-X~s_=hTjKPzcNetZV?A`2z|8W36ss~W`p@~Q|3qN5*<&B>@m(M zrudk}aVifls+|)YiM>5G?TdO>tWmv(Lw~(qLLt#_ir~!_dP_+>x2&6AK9JVyb+{ns z5KXAj{ApmurlKOot|uQ&#lb;HpyU1vbFxc|5U?qaVL}tqCQg!mLy4GanWeK-JCN_#=K-Z2k= z=;+KS@QHu({1v45Ljw#b;a@%hyM^iy(Z0&kH_*>)bx4Q11IW)^7XaJZ-~wRlyS}Nu zDJ9thwzH)6j6{G~oKEnj^1L^Gz&+O~ba$v4uI{cwJS6@IKv;o(l*A#gTj{pDysZ^Z zG8AiNQ4~bO@Opzi$^FRBcIh3B?JZ`ps_DTK3q0%rB=_FaHZ5Sx*6hM`@lebiHm$oGNIHvi_zFbDJvjnvYItNIee&na&e^}1x60N}U;&2Ya7hc43#I?xKk+xFib(>G@TpiaglrfdG$WVwRshe8V zb|3k9obHA$^B7V-=XrA8Cf(6`Zu9kU>{)rIw$;1(x^l0kb*8ZES;_Fk#T0Q<0H83u zNt_1-162z&%3n%IihMJGqkrJi);d{=(yjOzG zoeZ+Nn`5EGNF5}D1<5HmaJh7r9f$@fS|DQI>pfJ4v~<_RQ;xJmrfu^~#Bv5Kq~LiD$WY+?-0(r zU>e#Xb?fKo?ug?kuJvnGUS!ARD}yidiqrC1sR&ngrst^cw(@t+odcDV$@Pj&i7;>W zLct1@^PVDKr5*7U(aGqD zz3CO^(LQi(1OIr-9B@#4+-NeC5PlSVX#ZK>Kjl@adOCIRtS^K<55P%3?neR$Pa7|Z zFCEW4>!y(Rxb?s0yN=C<73Md1sEZQAKu83tUqI*C!Yh0V_Xxz&hx$W#?)G|h7D2)x z6~sn5dOg-f%>O-1=Z;#YZKj#MW~O~+WCD8FOf^NX1A*T*r}B*>8c;8V~6i@w;>M5cO3FK@Ar*7Ivx68Ue= zwYrNtA&w_C(Fi^s9WrkMZ(y;tz}oIVWmdly;= z&2D9J+Y-1h>{Jo3*@iHuVhS@?9+jO4SRD&m9g_$i2^W4Y{qL&)zo@lvYI3c-L|^nh zVky5U)1Eb1#XQN9ME0(eRK9hulW+`y{2p|sN5 zisEmRnFlwo&rF2vvdh0cPN|U9isZadSWV6>reBz2~U9Vcu!nd~EroY0pt?DsR zdPH7YD<}o%noRZERu~hnyYUc3DT$=PAlu~2pVouFA#6o#I7m<1B-mfi=7>&4@r-V* z6|jN%8y*miC>zEK{|<;h37FraD$mLB>$D$R*obgWJBYGIFqB*;`fRzvF%$nLu28Q? zMI0x>#VKj#`vF8VoOAOcBcqED{ZWuG!JF|hm_+>BeX&IBS6rr4{E+J4QT{zbWU@`w zt(AYKXwdE|Jvz>cA1ZfS8e$iWQI32uPgOL%3^pe)eNS61N33#bzH}^t(_r$8hIPHo zNkF2@2?*NJd)YsZTQQ2hSB#e$IN-F*^q)<>a%uJ&$3?9>5YYd|mR>@N-)WmFE~?Uv za)Q@CJNs4x_u^eA2xEBdJ9>du8r3W}l^l37^p(n^Rfk+%oRmpZIy{y0<0skj{$iDY zZ*mgUHOp^7SDV-V>?grnhxFU$Zn{Zu>lY0ysNs)}D>bdBWb+Ok-fKReI*WqWtq<0G zH|9=TGQBJAqCYEZxa$tI&;KaoJ}rM))xazWLo$2F4Yh>1HkiY*3%!_;cwPaa-;2id zx0jv)(vdG41-LZ8N=7spFa-gH6=u9uUU;;~P|Br3({9%Xm|?kGg;Vs|`gy zG>#OpMV^Q#HXE_CJBj`N2}9Cta@v`+kuc#mnipnEu6Q>mwwl}kvW!6Rw0KIh&{~x& z(4SzoDCCpGu~R8BT<8&1+1C5|PpjvY!ZJCCaap4}DOTg(Ec5!`aOO>}Z+Z7qh3T@* z_?fYr!t&4)P|%fAC>C66LoQOC(rg~YIkeKydGtc?D`)}3LizLy6R^H3LE4PEZx(^eW7;fYQCLWvc~7+Smqlm^C4A@5~_Y!?u9o`EvM>!+$M?jyF+ z*>=V+{-D!bSpXHGqd{f&QJ(LCmIFxzCpM!=NqdNI?fdQ)JFFE}~r!C0A_DZM_FsqT{Cl*IGz`g&+>p-t>*?UD( znnS=X3sz_`d;I+zXY%M1%jM{O?b*1)$@=1NR~JeN5AI2XLNl4TGvzB+lzhd^GEz zR6gX^&hq2z3y@gRpx)*3q0Y{VH4tB-CH^j`FF+{y{DK_Th8V-SJ#kle09c5NH8_D$ z9A6$gG>d^9#UC*cFrw%EC5Zn>xECs6#Jq#+k72_Hl!$^7TV)4kYKijA=s4=aiy0KO za$O!6oiI%Je3^*!M2lT_f{&h!Fp&3a~6K7(Z;#5+YT=A1;o6QCsiaz|F!Mv4T% zdxJsf33$8d!RZ*T9G?B>(Kq7z>T)@OW1)e)mA=MFt9f9-2F3&qR!R}fvRE2A%wQ>V zZ-%SAXkNE`(A5}Am19N=J_eIb))P*uHnouY^O#vvil~EsBjo~#(>Vda3~gM*JQ-al zIppG-empR-I`sJ8!q0>Q161;#p`=GyvTVMHiKCH(= zdOh$`=>#3)XzKQvShkhL6A+m)Fhpy@TB)XJYjB0nk|ZkTmp(|JWjn_g(j>Ohp05)N>~j@6P^cwQVM$@fJzx66oJ`S^J#hcoUl)oopYJL z!IdAEc8M#9r$Gj|5)Y?WI{qy!12dvyt1&T@(oDBox}>2-?B9T=iA%uei9=V?fm4{w zvEh1W=|q#D(jYx>L3%?htY}cl^ZBGwOi3VCGayV*6eC8gJD!Eeeu$C-o)4BtL9Q+0 zC#7_hPk(}h7_vVvTQk#BL~+UxqaqbtvcQ!;)A8ETOa@E7JG`E6DHe_4&Yo)j;^=>GFtB0p9QH@2`ejbcPo=Ah9j}Z{re~-v(XEA{x8iCzVZo#{zUWLInF?VNSe*pS9)V zKCUJ`pfvBf1++t8-$$FAXuexj$*`lb2t!&B{oAC(2yi6kp}!93;;0}P=TcKR>ppxv z**cj&6WILxtYZN8o6x2;#c(BdJMHU{n_;)Ar>Zu>Fp_1B$GN%5&e4Jxx$EKDHY@Gj zSXj4fFukl7QfA--A4aNEkm(PmIbStr_W(3Idu1<09^`M>gs*2dn*!?|ooqPq)@m#X zl5aIQb0?M13XOxDRCJhH7+hAgdjHOpT&B~OeL}LV4hjaXOT9t{~EZ_T% zlfMT*g`nr`yUVkczRw&n$TB#H0Bw+sgqCzEObqpg6hb?SG4>e1E!qghwyx(N#e&+_ z3%#phEr?$2YTdb@e)lTyfM!XXuq(h;oD1a4U2L(lZDe9v6Nww>(>EiRtS+Ejw2laG z&eP^5|EWMUm-sBjrqa@t)0Vd=`$23^3GroF!<9^0oF*>t+sVUP-X{1D6Xe44?-MA( z!SR;{{cFM#XxwZ+?LbuR;p+83oO~Pr-(Zm_e{=V9sTOE#($6LQ6}H60mP#D?xoS*# zF>WhOKr>*lsOyK?G}ka=!!PSxl?8*hod89Cmemi0KdsPHciX;GW?Dc;HPM!JKI?g! z??9429P7Jwu<4uvS9ROK&5xJ^QOs+uV~{7#;@goQBdsfVUDGN0bn2;swoL~8j4oh{ zmp#zQUo~z2q2pVR)jF_38$OB9hbP0PTBGos0du+pWLm5Po6Qi{=cadz2lk7o+~T#y z9;kGN)rK|S*&)=3&d@aUJ671Q+WrQ&T(5WXWzT{qHP+VNfm1&RKN-$dhB?g zqR(tjMvm~7KgWSq%Rlwi#0e9{1e}Zt2n3$+e#;Q#Tlv_>$;$7tH<6#1hh8UR6{M=C z?`WjlxW_F(-g6_GT&M!sP#SF#*b$x@P%wKKS0qFnrq$B{? z6Q~p<@s4@=Z!MPr2f4bntQ(~5vHBLWM{-|iUiHf*g8?!9+)yE+=lCbYzxSdu3bi|6 zSe%&zDQx+P?G$B^9wN2P73W~z7Z4B6wP;)QXU{s|{q6Mv9-%YJuyBk#YJs?|q;$5O zA$|BQYa5U#0cYb>q>JM5H!PTGmZpjffoqc}{JSFySzgUi{X80hCeb4l5AMvbcW5~y zaX0_ho&D&49J8A>AAJ$aZMO-mnPhpvZ`l zID+3an}I$O@A2HX2g;ZR;OvHZQT*+NoL^LdbyHZVD+$AF2J_fzy^_ApiJG_byo@Jh z-#GYLfTTJAs`aDsXFPO0_bCQ)u;}>AZ{VR8`r!rm2DuQO2RyP0Gl4W7qdj%Zij9#E zZLl33pVF$xx7W@j(CvTQX~opX`)bKt4o*;jTMB7_i#^!I0ig5_5WatY?^`-ew*dZw z4l_{{$V$*&T7^Gce!Cv@M=Nlnpx9l_5ZPqKhE7dyCTk>{=#3&lY1T396rC?d*$}2G zBc(x-H>R5hA5+16aBsC_e_JylmVR#@quz zLVIt9)h}~OWIx;KX4w$kIyn5yt5|rwR*L>{UM7jRxE1ipK51LimEVKpFC3p&wqFZt zfQ;e?`uAsy;S9t-VSQ0J_T-!I3!Wag;NL^dc;LS$40&tF{dDDV`Wdn6%%YbPkS4Bj_zr=&o3M{Kw2CwWj*Cp<2u3S94;b=wE*4nz9otCh&> zyjS>9Wu&kc&A+RgSivN6m<=pFl@sWx*j3h-XK+->4t{QlT3ZEQfQ3w<-!1RDS`QkA2yK^1cTauLgd+ zQ4DxS0e*i%F90UIKYV7odZsY8?!~$teL3t;FdM;kJT;5B`Q^;4@w=0gh!N9-G6Wpb zM>q(3!g}8Mj!-mQB@L!87(Q?uYBwe*>DT*7>d~+`IaD)|gcm41RN<-1$vK7%e0z86 z$2Ry~?6giiCgsvQ0(Z3`8taNSA3Y_rFVRoJe7v7Z(4B0XB-5P)5Iz?3$}taTqOB-< z#P^=vHF&>G*rD@T_lbUo2xTKHHTwZ2ViP zP(UMxysRf`NKZ=(DjE@rs+4XJ0l4v({+9>eYvq80d{-2Xm2b$r8b(-u>{i88iUYOI z>nhW@RbC38%Zm{3a%ibr(M_7<8w}8YKR4pHNVT?6d(tR|@z9PdlO*&Nx_70he3^14 zaT4>6P5Ngqr5jjhhPGAA*=$(-HgL;93KO4M2pYmb}SlZ8WE9)N3A>14~n&T zSfd!o1%G_16`<5U@LGxJNsRAa>w2L7HJHZ+E#E7<#n`^F;R(495|dV$X}!@>ZDj1t zzE6g9rkix3apqrLK=jsLdUcxCHF-pHSC2B26?nbH!dW#N=I2sWxz(A zb!)ln^_O-R@z&!8eHN{qOlA(2h5NurSDjRI07J;u_W2jOtOiTDHtL5!4JghjkrFu2 z_5dTmZ{v#vfCV#CuR+H`!|%4-;}ct&%lW`TBepWNq7^=gB?b&5vWb1Rw%wn%d}tR6 z`Ir4U%AFq;l9F{Mx~F&5V`ozuoMt*S4S8z!R-jOf1f}P9IwCgBJh6In(HGtCZhN6E z4fVe#D7L>BzNu{i$jI;I*=1wK_lv*pz2P2&*Zuf?P^$y;`tk;R!aeT1z>4`|+^^Sf z*DPHpy;_+Jh6wH0?4V4&+9p&`!Lv(Ke!+g1aGLsDfA9SLyxZ@xQRCpsM@rra*I_Oc z*;@$pQSPVD4td*vlZOtLQRSSXVw@xmnG@pbduJ)Vfg4ta4lU>N%hyY6X0@6pho*3hd|kCR!998_oU7L3C2w|^(6)fu-<2u4|AuYs_lQt z+OiL8DGiUi|6^u8l79*{0)z;S>Qfqg&XWA^NNRB7KgPc%>lFVwPtdf~v?&g-w!^2R zElV{<-@O>Cx_GJ{0$!U=$npGzuQ$Ns1qH9*Z{!!CcL+ty>%>BTI}_9%?2<6C800D! z<+2FoR0Uc!L5j~mwLRaXGSqMePql729JQ~P55s__y4yyn>gI#jALI@WP8s4hm_g$` z^l)m@%5~aokMfL=6{W?S{a2riGgZ6Lh@E@VKI5?()r(($%)}n)eYMXOf0xYa&=^n=FMxU1i@hmBFuNK-zVD`@D#D8&J>ZIe1?p_}O|M z&^fW>j@Zs!{)t$R?%#4*J>z3X)I7;cZRiEmH$tH?#g`#-%vq#fGOJ~2FWj6Tx5Gjq zKo8ek$c5Dvn|yILifT}~O8rQOP>GEO`o$#znKjMNji(icL3R zYT99xkB&j_NPlbb^D7u<{mBOcqkE+-kpq9If+g;k5g6u0zkt6x^FIwX7y7XV2Mh^) zK-atl5z&uVzTsJY0zX4Q3pb;W;M5(_eL#4y=MEGbm2CASx6wnpaCY-r+^6W%HRDe* z_h`MZ>PybHqiP%wM?!XYq!TAtgCP4_@(o(c;yq7bj-UG|Fo8{+^y~Xo*UIYbr1D@L z?$zCuW?Lr=31XiQp@QgY7FQn?Oafupt5PVX;`%V_yOAt8K>hPFC6?peH~ zgA%x26nD3!YMuwWZ#d#Fql#Ucf8`1K@Vw?M$)V#zzYh ztp^Uc=(*5t{ip~wwHn(&Z4tqCKZsY$vKpI`Zk08F9C)0*8p3z`T|Z(@fHk%OiXG8+ zL6ubT03f(#?Up&;NWfN>bFjyOx~7@^3zU}P*gf=p5Hc(`MBPZPT-#a0VCyS&*q=O2azJl()DoD-Y0jG3f)L*!P4E}ufe1uvP3dL(VWRjk5Iu9*D#I6)8;b?9)@ETQ;pPtP=GD7+JiyGeWpO=)#y-XgWXl|}L9;%Z= zK&syic`oaNn~hzU7Dr6Mexc9lt7tPa`51&DBk;Mq0~Aj0GqeWd^hnzxAuzhV|+L&Zr1wbNq66f>;`^YIe!!3vZ__}77Z@I zOd$v;5nN`%b^1XZ=7EgSA2F|hc&3sUgvOeKr}*_Wvf-}?pt1A%>L6Kp5ILVSUh7U= zx!3DYhQpU@ul~1OC!QpjJ#}&4Ok&BFh4)eZNt|rgicxNT{F_ z<5LG@_v*hNf4|l389&TX!)E)?z0sg;YLfeBPan0PJASEvL6vn^fW#Ni;Pvq`rUxpL zEL|7&9^^Nhy$=^9dTQKFx)D5Ao=?X#kVvZa-OM^9zAFt}C!8-7RG*T?<89<+7nV~P zrXIu15;?Zq)6PVjd#$&DoZ*E}qJX>b4MfRZ;Jq{SO(_fkB2oL#C7}kV4;2vnUyEQ1 z@pk7{X>_&{P2O};=|KA1NqxR~`b+uNtqaWb*=H6+MbY)#7{kJEWHF$O;o&iKwc=7f`Jh$QQR3nkO^hSTz)W@@?h%_+*}DG z@obtGGS!9-Jbc+O68t4bjzqvB8^`=q(ka)vef9P@T*a zLZwMu&dWe`C?JTtF$=UG-Bv?Rf`pVh>GJUMo%$c+wV*eD{x+#v+@|lnLZM~%z|^EC zArpdbQ~lDQ(2IY)L@bT{?nP0lZaTFIz%WEm_VFUo{;8lk~D z0!)LVge;Kwclw& zmP!dG3?Y{$b;uWFvO5s>jPMh|eaOQAWar(QJ3!_${A|uhUE0Ai-9bT0`l?{Y=_`!& z)s&B-nZ{k{@ns`=YXdV=$P>novHfvjhC5&GrWPET@hCODY9mm9Q+ zU{IuJRg6`O>8WkFsK0oarO{ReXP2|{*5iYliE=vw9TCHe<1wR7SG@A`z1Wth zW}BOf&5v;|bI~a#6>TBS&UV5-y&o1iyiR%UQqFN;9Md-_5^{bG+Bf889Tu!iDh$jk z6gu#}lXx=(%fC$R4Ylbef4b@Eft32%6UG0OnnfFu^Zc^^9LCq*1|U@zm4ujnlfG!T zYFzhLd-(;{dj2`x=rH5Fp=kXwA7k9Z4!6R!-9ovfdik|C3W&1B@|S~=2;>}pr-70~ zb8GnxtZnh0Mi-k`Esx2L87T}0anB))WT+$9$W3=P@v=$Rv}OF>4G-S^X;K!l>y)}H z_j$I~|c{5vDGR z%i$8iWBg7S=$V;0=*{ArWO5tGpa0V5ekdp{rym-9=00okC`6B3D5$>ETpYeBDz#A* zmD!AHy;~sSyMp3GHd0- z!uU;ax)vE}k@MomTi$~m9? zvdFh3;sSa&zSy40=nlM|&6SX@YP6sk2SP=e^Rm&}jBCEfei2~*?xq%`*X9NN>j2JY z;-~O}rn1lHwg4-H!K5F2|1VWEs>?)xEZJ`$LxFI7v4Lo*bLRu$I`sn~=&l(F@uK%o zXtt(+)HD{%%)b5~us}Fof!mbCt7s<=ghFQ5NVSG78p$3pKT%qu6vY9`c;#0ycq!UI z95Xm)Ns@`Na=OVq$Fayg(J|Xt^ zWAxe8`#dq$M?lgP1(Yoc!5+YxWYlCGyx-Gy3Rm9m>A0cabsR#x=-KaSWv(5)-{T6e zj7adlwzF(6h*H`7wcw@93}mVa#4(cVVA{#VVc%QFV`^Im)86Y~YOI54c^!D>c${S! z+uGOv17Lnc%3V96vwp|P_wAEEwN3uC_vBA>`$$02JL^{TgfIkfOG$*|_pH|>Vcee* zRr5sj+3V!UV&7Z)JgK!}#Eag2_Dg-9Xoie8bbGmY+>?1HhR(ik=(9!mO?nHzi6Q(Z zn(*_6Zf8e_=<}?T{>#2^=(9zLO?nHliNV+=B_ZbY6JjURPD(HPzM;<+<~8Zfye0~SAlBCZzCvhh2%)hig!KNaH7@+e z?_RyVcy@92^V^H7i*H^&|M}VTw-@KnuTH_>hTw1@JyJ0NFD~BzoB^0+c*Tq~J|b?% zt>)U<_1Gq&#=S+<*bq@;O+>jpPn+D?Nw-}vJ89Yl77;b>EuzMTh#G4m${l*99WL!G zu)!IH?@`8VZyaY7MiDnSw#h1mAri+;xuKC+`(qIiBE**@RlkC50^VGG146`;i>!lZ;n;p}j_n&9+b?nK zey6DJ%W~Cn6C2R zT-oW43&*i99M85{yxyC|Gd7D?-YlNM074Ro15~<3fb|hZptz-j=?81b&lW%e(+u(J zg4h}p-|zvMwhUrZ12T2(?l#Z1lf2$L$*l~CQ$HZuPP)GS?;~(^{p{iuAA*a^Z{Y^B zg;81u9ru)DKTfDWe-tlzcH7Y-iv%RI+qI-PwNX3bMQ>8d8mglO?znxOf76q0j+^O; z-ErgClv$^@GV2)1tW#2E`}TP@>(=Mltf9{qW!CAf%sPfL>y(t))_tz=E%2WX<~*6FR>I)>bKO3JM>uQ}z7$ckHC;wm=Q#c9VbPMf-D5vxvbvFaFN)hUTp zr=QbcI_}u#aZ{fyQq}1#RUJc!I3=mt(_J|27Qe&3Z|Ji{g7l8vn2)@f(Pt?^nD`ia z^E$z)1SC@t;1NhsOm5gXaOe~-B6I{W4?tHpQHqi9Ix;rT%Gem$wIjh^^d5ekbAJ2XY!K9-SG_fl|j6hqTdnyF;k>?wI9&3H>>GhaQyRD(gw24>LD*)_8 z?>>7*pMAa0Cp8Y3{5tT3s5#4+XNp3c$^LdbRGCbzhboLXTYr0M1M`vR8vXTZ``a&t zf$2wLC~~`N(lLBzVh`V8#M{QBr=~C;d5$q2u09_9G=)jGtPJ*jL!aw41@@wEpWV69 zXI)cp`+4psZa0l^;#xIAMxdq7Ezjrb`g~IEvpcWtvs}nZG2#K4Aztz@O$z=UE&{Mk zqrYZ+*Q;bT9RHguN7nAtr6GwIcgi)G8C^QjyJS6#s2m9M>FX%!Cr$&Kc5N!1+gqh` z4VBK-RXWFH(=^?IEswK>pE#DQLe5;*~5#BPR_cyt;aK~+j?G~#Vuak zX)Bt`bKI+=-PFUeExU~ROM!f{_<2Ln&Q<8 zr78elW2<#_Bj0PASLkG)wFu#S{@CCcPnmH0Pb zg&|5ZUYLX}yVW`nd1^7a9a-1BO+DFDLqqk{HBYC7=GmX4 zSvqLbID0FchCnaWO?T*9y+8NCWi1`FDQCTPGeb3-XdU#-a}OBZ!d)gKEFsgR;ReZM zHkrahmLNbW9jdC|BvykWhN9b{^Vpu_F}IwA&HEmN%}0jYYpf52XzV^Ln4{zSBNKA#vw}iE&D3}PV~N;rtLR5Vy#L?-`*P@DOc~k)j4BMZ?|X%-<~`< zw;WZ?`<_&tnA7Xjc2J#DU2KvF@t7CxjLGmOiSQB!yo8?2oBamU7;doWddCxI-+tnJ zVwu~MzH@t0p4*f1+`1L6n-Q5q&TSr1pBTq0faAQ{wmO)z^`L(8PWn!sk?MO=p1f)T zU`~Co%_!Lv=ZFzppoohJRsMV=r>`Spnpqi>E$g>;(yx*8J8Pak6^hQ6tsakFTrahT zaTv)7l_G_YLC35y-<~yQ%K+}306Z;62hA)CAZJgyJzhP4F2}CPyE^pi3{~xAF)ST- zwmr~dYSE{ref6nnS)ZDg^(k{{;8v9wPRkECp`S`v)AK#Xa-#Z(BQZ~Y;B~Gl3gT`)^y`qk{BDk}e zEfb4LJ?U#wPs%3sq-0Xpq|tM)FW4sFoI%a&Ub=oqQ_|8@%IvZ4P2a7EjNoSv{1O8oz7^T1GN%v6E87s)OZnbKEsUBLlaiFzPE&I& zJ|moc%JM~Mvp^|GNJdvF%6^GJN(coB%(7dOhPFP`3-aDYDvTNxlae5Bd*tTLx@juj z%&Mu_N>cQ$NMRJDn3M#0O)Y^dVHxl8#G()-5!o@*`KY8*OI4d6o}H7Jq7Nce$2;l9 z6ugrLrcf{RdzY#(DpgEMLceA(c&1z!Vv0!&BLE`|vkVEj&s_+4(V=x|Y{WQp6AIpm z)o*L7G10rk#Mm4Mr*<6F&c!iJNw^K9-vnL0Jr~o@{@Q(aSsoaDAVfJoF&rJapFKg` zmQUR~o!U2InZ|p@<17r-^h>t`>!+xQ`I5l!8yLYjKq)w5<08A?O$GGqo>Jcy*yQ&P zZ1Ro3CSMP1a)(Y!f1x++<`DI!R)?r>3wQE+hCA_=GozCydM8^RIC&jIGd+7~rf-XJ z@_WZP`9_SBug5s)om3%eg*gM_kWhXU>GIvpl#MXXNFrRMS_-H)?WPuaQ>)?X+oGcU z-ceD$5f$a@QBh9AjR*_j|2-~Ll2cwd!cie^Azq=3vJslj{Mm9m6{FGd1kx+VR5WKk zd49(&DFv01(zo7FVb#+LFst|z}~J=JTu{#|3U9HXOSy`yG9`fY}C z&n=Ud`ni(O)#x)hFM2Nn&lnwF8=ab% z|4VV<&+vH=;Uq&Kfhh&v5r82~_}K(6>&R?(_D7&DR^eme&bsY4ch(TY6|*MG zIngygM#;bm-=J6=CAl4sQC#~mif@ae@_R;6v6gdVcpQCrX2x9q-`k9WBqcXEMBo;t ze0%ZE2kQ+9!4hI|oCdd)Bq-hBEaTFjkHn;#MdMDa7L9KS;PU$haQP!cft~BaQ1w?c z%kBoIjHk$DAuJl2BDjfgj6k>m+ce4mTv}?-!~%42*&rdh$z{MdNOQUWN#(X z&>?5FgPCtRRqPDs8ZyWCuM9U zqkd9)7Y;J&26^R4v6E3hDgDd!n4{seA*25Kl9RsImz<2uqCw@+u*ITV%lPyi4X1RY z<4JLkNHZOd&8~BL+jWj%*EyP9=gdWbuZ5KQ{o?dCY8=C;aWtc54=MH2wX-h2qM{m|DrGS6rRGimOro z$|)4rW-{v4$==1U9CK2p?Z~LtgL>CyGDjLQWxRn#r)Svb&^Ux#lWy_R}(BB-gE0@uCkkGehnPNE#`w zdD-g*zDIyZ?VHYu4AG1ycZwWsavSs1O)YkRKJR3o&F2>LY-SU?v)*ENW{BOHDR%9b zg_KORdAIZDx$XFQW)tVL-r{^_i1V2#&Rt7-#w||KY75hl-vh?)23sL2@BgU{84;*# z)c4xHyrpAMuW#T=9f)}QUgZA0y?iC(1=;$96x<>ZlK8Kb9~eB{A$kbNmIAVrSL$24 zRL2Qsy_K3-S*e+sN=>CltbK$iigxNEvTeN0P?-0Q`|tA|hhlzNRq2Z*N!fVVdRV6{ z&H5@!v$BFRGxVfN_hg?)WQi@;Z(I}Ikl!6=L5h=l|M<+J@67t@JF~LBGc)v^nn@D} z6*oz2M()_?ty7F#J(BhKAx$(i^G)E}YBpBJje2z1}Xg>nzwnzxeL_HQ3-Zl~X(E zlsq$^oLH{)4Yx^z1GaP&CkkW?Ay36KG&H$T1k2MN;-*SF4E$rQqja1IRGxUgtvc&AT!*Rs>Dhjxok{KHv_|V5!TFN_09TPeN*EyoS9+q71fIM zW%?RrG~EVN6usb!o!@=Kc%>E~TMSjPltZkfUblR%xh5DU@NDRtd1+cS=} zW~b~UMHwwZm#~QVop-A|GPe~Tkpx*NQNm%ciKa`C0KRz+ zE?!+-pS^tf{26$5@%s7s^~?X}7_US=?7_hhT=E<}5Uf$~o*M!`{j$Zu`ytyR6s)#5 zL|GvU3jRML>FRg`<1LJi{~zAsinaKQ=e*!;jvaS+7KS)p4U4sKd+gQNrYURmLxN%e!B1R3brEGT zx;+logkKx&-WE93BOhbWHU>bpoSg`&4rY{BoZ@4|C zU;d>+qs4*+IOZHdoINO}$XO=e)2s*Fhriera)~wI#88q)7H2RC z*+znFq?zhmYLRU^4?%7=2mj-O}*AJ&h`h+iG}5kxrS3+Si8a0s__JvbV~ zBu0aOsTHXWB*Vt{2#yhe>56a9Y{V9AhC@``#W@^qGn5WPNZ~NVDIcsN-Ijugh;6~Gqs}tC@()op#XJ@qlm3DVXjjm z-H!P*N&lYKO{HupmMR8c>grlc;oareBSq?_Ma6RKJFvpkw!eQ!1Sb)4fT{dqzd-N; zQ;-&V^J2$~DagWLkjWnIOTN1Lj_n#d=8;JG7u;E6sGOU=hPNDog4Pn!H!wrfaSc52 zVu)haGBiPtz>jMbg9V{$ZQ`J~wf2aQb1Dg9goxs3Ns0o*YzbsxU1id)#F=iDwC5ji z#wP74UJ4+uR+5Uc^yk$DzH0}Tav!V@#+~)%Y%G8(1k05DZd1qx$*c2xhF}2 zVid|uC7q#Bu323yK}@K~+7hb*CW&aQG#t5~H)I>r1g_OC<%W~S2}E?l_v|aZH!-5w znvlw->>>1WP=&;!DcQ1x&3~2``R1ivFkSQQdr88U(y)f^PCPxQa34e0p!Z|vIVO{r z>yYn>ljpcP^6|V~OD>+IWJ4j2?qR9qptPlu>qik;3Dr7VV}7dv*X|?o9(P|R3QvdlzL^Q7Fd@xr@?Pta~kx1Yc9uRt~nj@J*~MMSI0G%x9hm(Mto72bhEXVK)TMv z0$K3{PliS?I}4!qxJD#0P;XwpWPo1sFN&r&N!)tL8-_`~;NM=p%4NxCrTFK8hr^pB zJ~X;L5(IvWBUE0I1GxhRr%ak24b-9b;B;_&lf=iW?VxzYjN!rQfWhJ>1D8aqJryr= zFnq;dN}C(X;<)%fNW`zGVG}EhpPUPgM49kx3B0|0HL`bSlpn*F1$T*fM#PV69IW{w zQ)`R0R3`31%H6U7Yr`e|0UAC&8k(*k7E9@S7=}y*77Jj3mTXPXlz&Nyz%F(cr0Wr1 zoP|5u*n@1h$)YC}a_gB+cgDa&@VfB?wl`X`14-#UF|kiiE7R_3*hgXUpqN3F#0JL7 zt_L<^rgAI}4oog~o-*@*Vi;vIz$0c@Wq%o}E2->0<$Hx+;xUAW;D8>JHZBs~4P;*^2C#mMMK^Ej zSB#0K!>ZAMw?JHnth$EABX8uWC3NB;FFbKPG?_2F>3lMF=F^EchtN4eC;kF0LeFu= zA)HRfON8cdF%9Ofi^j_d`{($i1yyPtDNCerDantXW`}zgR1ryNSpw%u3oR<|YaSP_ z&@vf1V#`i*_NyDFZT4D zrX-3`x@Rbvm-0x)|&#YX%mKQo34-zdNG;?@D2O`WXmSt+Zf(J9Pzc(2SurU84=SWDO&ApaLY>< zY?D|>-;xwO%W-E%O!vm2GDeu@`&wN<_EbuTL+)BDQ7OC)S8@`rP%WSz;%6vA z6jhrSphw^tU!n{Iz^jAY39*UC5-JA|aARmJghFTy!Y-~vaO zVq|Rk0Sv>z=}-SU8iXlH*uOX%I4@4Ac~k>iuVtfU6zDL?mNKJKS&T2{g-kWMZi0Ob$+e5-$g*1759la5UhHZ*V$r2fzL6 zXpkY825Xe%^P-Lm!LwIa>ijo5%9U3Y9w%zQ3N&B?cOXR>iEa>xvxt!Q+eDp5kXWR= zXzr5?(QP7EZy0Aa8n4`|&s0PRC17wKZ8M6}Z*iK@0l-V{&v}&}egLiy@NHE3^hZqB z--$2lS}~y}C=p^!8uBl3{64cQ8^==75J}^rY?*Xt*d58mjZ>Y>TG?tS&v|gXI+hNI zAxuP46r1Xy{P6gR@b@!2n68of`B3(;&K>nV#Bn{{BXC_&&#riCo8lFx;Or1w|IaCS zbA1lJIRuwyS64qiI|YCJ^;a-@Ew3Kn@tD8;_E&ITe83+R-+Y^rjrdaeiin15DU_43{Ee=r_(_HM7fieP@ zd9;{fX@W$?uNb~nL>4d_Ew@p`m_ly&G>AzQQ=B56VZrd=xKJA;G@ME1Tiq=BXKfI| z7!dV|>Vdc!H$Q%rq;tq@EAxu!mig1)OKo1>2Zv&sV)5%SqQNoyG6O@ffl0#1y0~Ot zrzn$6*?Z1o@4k0o7!D=+Atl^3g=jG36bx@MUGskqp`iQtFz=~iS~cVRW06pze_0f~ z*paQM+?{h7d;meeQyifc~7+mn9<#R#xPieR<_2@c*X^L)t@kJb4v zGuMv*-XtWYFs7EBsUkA=`Vv@E`7zq-PAER?>rL1|9RF3p8R?{s*sDF(Z+_HNZ<*fm zLm;L+EZF?<*#EE&$(9l(kn5KI*_M)sz0(FpaAy^N!mrjMDLoQVLEJabFY;%rRNN?> z>8)!B5VG%E`~ijE<1ma6xR9&BWGSeV4dhWeO(9z1_xc+q!#F2QV1N`?WfQc46bC%Y?3}C28P}Qf z*)GOihsM)ElLW<~fGjdaIMM=3mdE1cEyYVs-fdO+gt9@P=quLW(+nj{TSJE>LKt;q z%cHSKCUxA6!i(aN2U1o?nse=+oPY6ulvxMgl0) zDVZyk>4p_glA2d(u=?U^7_|JhEpOh`vl*qtDyV;8CR6G1K25fCo*;Cg?UL!RduFtP zNF;ykYUIrKOta&yg^Db`QvyL8LgQH6^O_y8t;zm}XfPU$4oBdEE7K`r#B78&3C6%x z0FE@xk<(1#Xji=Etzh~dg-miv%E2c4FHr-U=;Y&_nj_?u% zyTFW<`t4msFD|}Rlgrkjac-wBBeiJS>a}*UO7+}Uel*&qb#92D?Ahdd3C6-s5WX3% zBeG2?+3cIwFR$3A+YD&|o2&!Rz8UEl8_%5cYgX+C&N`TWr_BmUy}4F`-{F{9w%dcP zf}wi0>^h^_$XAEUQ-3!07p?sF(>?Sk15!o&HqK5FPHdl^5+LjRoJF^AmsMyp;*QO!DZ}nCH>%-2 zgjFP!>EXPEs@a)1lh7ag4hm<18;<=Y3f+@%5xVYdwwO&(u$V3be>Qbpe-Vt`&>x4; z^POPqcyN3&nd~D-o1R;ezR!npkA+?SyiQD1fR2!|-pkUCsVyW`C9LE}d`_@bEDSK+ zjX4a;RK#DU-~DGKb?3kT70(prt*&TODZLdE!=7#7Un zHG<)fDW>R$I1rA{v*OF#C0}Haij07fFi3>KK;#bPrkT)WHY7y3^&_MB#c=J&Hq9?o zlG)(te|6i=qV;h>)limwo9GUFf?d2QShQYSsBvX?Cgt=9;7`7NgQ(^}FN0u|EDxmOs-q`dKvm`@5t3RD=@n*Wq7fbU~&=UuB2*uOmgvI@R?@BE3 z-AJxMrpH2%Z5KoCn8my{g2(_@zT2?a(s_kYOfylQ(?Vf2#wxi9RB%<5mGjRl(N(9# z#pp-!pWj^`f#fDQ0%()a-7}mXNk`aG5qo-6lsRScUYupu)473(I()F{5zpmovgCCc zR5C?~ni z!Vs&>vMMxae~Ja6_vZm;Vk7`CsMbU&vAo1=yp{Oa_k3XcD9lPrt}4bn0%d`%33lI+ zjB=(bsv{5_YqgE@7)VC%F@v%s5zoRU`T4l09zJABA<1&;`w;(REonIf*FQY_0mx`t zuEr3qOaH%M4KuKa7|PJZZ0or#k#&LN9{H=a80xpnfX5-WhYuBFtnTpoIr)Nw_1Drqo9 zPC_S^m?Oy$z0~e!vc&!H(_pTd>X$i*IJjU_>&EQBx@6`{WB<*rc6IOIZ!A-hwE@8%bY*bWF=+x!G*SgDVR)IFG30FgLn$T4LLS zM>y}bL$O~6@6m2>I#5+021kQLR9@NahP-b7@n$#7-~RS5Lot_V1>9zv&miSbU^W>& zvK!Ij!$t#I4rD9q*}(gW4Yq6zQ|{BRKSRnB#gqd_A)y5Drg@q4(nVF-o%kEa72>q2 zKnQ9_8x-Pg?Ky!8I+R~f0tVls4M}%{V!c5?H_0*sPhX#XKU_f0Bl*G7E~993sQb#zp zc!3pJmt;q_{466=5m$h_m3gin2LxoVt;|* z)Mqq}oYc>D5^rECE1mrz_O2xN^WVIR(9e0|)2&ro{S4ls}RVFqcU7mhVP4%7TdCDaSTRb_MS^;vGaMz zXD-;a-y?j3Vw7b=W)WikFJ3%+n+ydF>fDU~F;bt~D0`{i^Y81{Y8lQ*o$l9|vYfqO zVd4v~B9<{k`yh_5MmRYCT)M3qxgH!W<6aIdQk+`3o&2?6IysD)GOT#r%5p^Q0 z5ryELn442xJmj6cFik*TlPJs-ELAK)vTFlsT|dm=lEL-)B^$pi4=v%t$3Nq>?PEfv z_clMNugp!pfNdl68if$IS)4hf`(2$m*vj%O5Vl&MMNjR6@USbiKzq+iv^-|_wnj~` zwO#ont5h;q+YnvJ*Lzl|gmS;@Qv$85PKB)1+RREFsDbjJ>rx@T=T)hX)V;0AGSHe% z-1~auCGDH_&%987gZ8Nd>ZyB{>-twT&k}|%dZ%o-4`CHaRpazV$|?##7&&pG=n!dY(U-dax$7!yrhho9O~t z*RAsE09oJWHHkzfvG(^jI1W{H8U||=6z}$%>Sg;@M^gt+;<^LaCTiuoMw9-m>J4ZK z{SIIYcs;Tqx=bCf6>cH%HGkJcT(;%SZ21KFYk5XmC1eC}97J1HB?2zU4U$J{p<>4{ z2=dd<6ot4+6~kGxSZWy$AjNWo)d*rh4N?MSX4yKEUDds)ZA3G8KBj|Rk;8t%*?#L zm^wVqnj4&9S#Ai%y9Eh%0=b$+?O0!49I(WZl%cBFrZKCRZ!Vrm$Jv|j z&#wM4IQ2?1b17>uyva}sE}ns>tid5b@y+lCra)EKiFPF<_5MB{6>^#48yuk(dY%O^ z;>%q6(vAjt0Z_Jls+B~K28n7P=FQYO@M}Wox4F|>U5di}gRcnpBZ}X;_yTJx3aGj; zt!j7W_5b#`ob&JQR=G=6xX}syw3WL`NcL&QRmPtWrU?os-@*-!a7~>Vrl{fsEY*9y zwTh#Ck=~N$AzxhHjE~rVr&c7pIz{b@7pl0TFnC|lQg9;GG7XRR{Smn2IVaDyFp@vW z@;&)4Ra)-1Xio|BJ*SIV=SBW_Byd>#Hh`h?q5J3BGi#4T5)3)Hy`z~Hl zN2&p2OhR;NDK=FKh*95(kSxV3UJ@9710xs*DCGj-mHJLiflRu;Ymv&lmMnwEGvZk% z4jcPsE24F+1|}AD(;H!Qta!xX?kRU|6j3xT%TXQi9m2-~x36#SMOC$ks($c0euT*|*Sp;U7+ zrI~hdS&Ep@xuh)2=HKo@Lm=`W&fCc{3gh5vt1jvPSz6 zfC3246w^YXbmCFHFmzt+QX{bA9&FUnIanI<5ctYaK2xRDim}v!hQzJfBn0U;79~d| zq|((l0s^1r(JF-jx>~ohVQ%3cCnOx+ zxW`ZON@|Dys?fASSq4|g7P0(^2^zW$Bw33~KNwLYlH#=HR$QguL6HKR(MR5LFU}e~HSsnhXXH7a>&)G8Uf*g4(Rg{{xF`O}PuCmnX~F zba{f72dnC1%fL z$u + +## Helm-Chart + +##### Scan Results + +#### Chart Object: dashdot/templates/common.yaml + + + +| Type | Misconfiguration ID | Check | Severity | Explaination | Links | +|:----------------|:------------------:|:-----------:|:------------------:|-----------------------------------------|-----------------------------------------| +| Kubernetes Security Check | KSV001 | Process can elevate its own privileges | MEDIUM |
Expand... A program inside the container can elevate its own privileges and run as root, which might give the program control over the container and node.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.allowPrivilegeEscalation' to false
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv001
| +| Kubernetes Security Check | KSV003 | Default capabilities not dropped | LOW |
Expand... The container should drop all default capabilities and add only those that are needed for its execution.


Container 'RELEASE-NAME-dashdot' of Deployment 'RELEASE-NAME-dashdot' should add 'ALL' to 'securityContext.capabilities.drop'
|
Expand...https://kubesec.io/basics/containers-securitycontext-capabilities-drop-index-all/
https://avd.aquasec.com/appshield/ksv003
| +| Kubernetes Security Check | KSV003 | Default capabilities not dropped | LOW |
Expand... The container should drop all default capabilities and add only those that are needed for its execution.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should add 'ALL' to 'securityContext.capabilities.drop'
|
Expand...https://kubesec.io/basics/containers-securitycontext-capabilities-drop-index-all/
https://avd.aquasec.com/appshield/ksv003
| +| Kubernetes Security Check | KSV012 | Runs as root user | MEDIUM |
Expand... 'runAsNonRoot' forces the running image to run as a non-root user to ensure least privileges.


Container 'RELEASE-NAME-dashdot' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.runAsNonRoot' to true
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv012
| +| Kubernetes Security Check | KSV012 | Runs as root user | MEDIUM |
Expand... 'runAsNonRoot' forces the running image to run as a non-root user to ensure least privileges.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.runAsNonRoot' to true
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv012
| +| Kubernetes Security Check | KSV014 | Root file system is not read-only | LOW |
Expand... An immutable root file system prevents applications from writing to their local disk. This can limit intrusions, as attackers will not be able to tamper with the file system or write foreign executables to disk.


Container 'RELEASE-NAME-dashdot' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.readOnlyRootFilesystem' to true
|
Expand...https://kubesec.io/basics/containers-securitycontext-readonlyrootfilesystem-true/
https://avd.aquasec.com/appshield/ksv014
| +| Kubernetes Security Check | KSV014 | Root file system is not read-only | LOW |
Expand... An immutable root file system prevents applications from writing to their local disk. This can limit intrusions, as attackers will not be able to tamper with the file system or write foreign executables to disk.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.readOnlyRootFilesystem' to true
|
Expand...https://kubesec.io/basics/containers-securitycontext-readonlyrootfilesystem-true/
https://avd.aquasec.com/appshield/ksv014
| +| Kubernetes Security Check | KSV017 | Privileged container | HIGH |
Expand... Privileged containers share namespaces with the host system and do not offer any security. They should be used exclusively for system containers that require high privileges.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.privileged' to false
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#baseline
https://avd.aquasec.com/appshield/ksv017
| +| Kubernetes Security Check | KSV020 | Runs with low user ID | MEDIUM |
Expand... Force the container to run with user ID > 10000 to avoid conflicts with the host’s user table.


Container 'RELEASE-NAME-dashdot' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.runAsUser' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv020
| +| Kubernetes Security Check | KSV020 | Runs with low user ID | MEDIUM |
Expand... Force the container to run with user ID > 10000 to avoid conflicts with the host’s user table.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.runAsUser' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv020
| +| Kubernetes Security Check | KSV021 | Runs with low group ID | MEDIUM |
Expand... Force the container to run with group ID > 10000 to avoid conflicts with the host’s user table.


Container 'RELEASE-NAME-dashdot' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.runAsGroup' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv021
| +| Kubernetes Security Check | KSV021 | Runs with low group ID | MEDIUM |
Expand... Force the container to run with group ID > 10000 to avoid conflicts with the host’s user table.


Container 'autopermissions' of Deployment 'RELEASE-NAME-dashdot' should set 'securityContext.runAsGroup' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv021
| +| Kubernetes Security Check | KSV022 | Non-default capabilities added | MEDIUM |
Expand... Adding NET_RAW or capabilities beyond the default set must be disallowed.


Container 'RELEASE-NAME-dashdot' of Deployment 'RELEASE-NAME-dashdot' should not set 'securityContext.capabilities.add'
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#baseline
https://avd.aquasec.com/appshield/ksv022
| +| Kubernetes Security Check | KSV023 | hostPath volumes mounted | MEDIUM |
Expand... HostPath volumes must be forbidden.


Deployment 'RELEASE-NAME-dashdot' should not set 'spec.template.volumes.hostPath'
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#baseline
https://avd.aquasec.com/appshield/ksv023
| +| Kubernetes Security Check | KSV029 | A root primary or supplementary GID set | LOW |
Expand... Containers should be forbidden from running with a root primary or supplementary GID.


Deployment 'RELEASE-NAME-dashdot' should set 'spec.securityContext.runAsGroup', 'spec.securityContext.supplementalGroups[*]' and 'spec.securityContext.fsGroup' to integer greater than 0
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv029
| + +## Containers + +##### Detected Containers + + tccr.io/truecharts/alpine:v3.15.2@sha256:29ed3480a0ee43f7af681fed5d4fc215516abf1c41eade6938b26d8c9c2c7583 + mauricenino/dashdot:3.2.1@sha256:0b1fb7b078b6865bb3c13363cc00f2d336b2cbd8cfb065e10d75f6c979af7fb5 + +##### Scan Results + + +#### Container: tccr.io/truecharts/alpine:v3.15.2@sha256:29ed3480a0ee43f7af681fed5d4fc215516abf1c41eade6938b26d8c9c2c7583 (alpine 3.15.2) + + +**alpine** + + +| Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | +|:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| +| busybox | CVE-2022-28391 | CRITICAL | 1.34.1-r4 | 1.34.1-r5 |
Expand...https://access.redhat.com/security/cve/CVE-2022-28391
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-28391
https://git.alpinelinux.org/aports/plain/main/busybox/0001-libbb-sockaddr2str-ensure-only-printable-characters-.patch
https://git.alpinelinux.org/aports/plain/main/busybox/0002-nslookup-sanitize-all-printed-strings-with-printable.patch
https://gitlab.alpinelinux.org/alpine/aports/-/issues/13661
https://nvd.nist.gov/vuln/detail/CVE-2022-28391
| +| curl | CVE-2022-22576 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-22576
https://curl.se/docs/CVE-2022-22576.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22576
https://hackerone.com/reports/1526328
https://nvd.nist.gov/vuln/detail/CVE-2022-22576
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| curl | CVE-2022-27775 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27775
https://curl.se/docs/CVE-2022-27775.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27775
https://hackerone.com/reports/1546268
https://nvd.nist.gov/vuln/detail/CVE-2022-27775
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| curl | CVE-2022-27774 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27774
https://curl.se/docs/CVE-2022-27774.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27774
https://hackerone.com/reports/1543773
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| curl | CVE-2022-27776 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27776
https://curl.se/docs/CVE-2022-27776.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27776
https://hackerone.com/reports/1547048
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-22576 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-22576
https://curl.se/docs/CVE-2022-22576.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22576
https://hackerone.com/reports/1526328
https://nvd.nist.gov/vuln/detail/CVE-2022-22576
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-27775 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27775
https://curl.se/docs/CVE-2022-27775.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27775
https://hackerone.com/reports/1546268
https://nvd.nist.gov/vuln/detail/CVE-2022-27775
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-27774 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27774
https://curl.se/docs/CVE-2022-27774.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27774
https://hackerone.com/reports/1543773
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-27776 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27776
https://curl.se/docs/CVE-2022-27776.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27776
https://hackerone.com/reports/1547048
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| ssl_client | CVE-2022-28391 | CRITICAL | 1.34.1-r4 | 1.34.1-r5 |
Expand...https://access.redhat.com/security/cve/CVE-2022-28391
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-28391
https://git.alpinelinux.org/aports/plain/main/busybox/0001-libbb-sockaddr2str-ensure-only-printable-characters-.patch
https://git.alpinelinux.org/aports/plain/main/busybox/0002-nslookup-sanitize-all-printed-strings-with-printable.patch
https://gitlab.alpinelinux.org/alpine/aports/-/issues/13661
https://nvd.nist.gov/vuln/detail/CVE-2022-28391
| +| zlib | CVE-2018-25032 | HIGH | 1.2.11-r3 | 1.2.12-r0 |
Expand...http://seclists.org/fulldisclosure/2022/May/33
http://seclists.org/fulldisclosure/2022/May/35
http://seclists.org/fulldisclosure/2022/May/38
http://www.openwall.com/lists/oss-security/2022/03/25/2
http://www.openwall.com/lists/oss-security/2022/03/26/1
https://access.redhat.com/security/cve/CVE-2018-25032
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-25032
https://errata.almalinux.org/8/ALSA-2022-2201.html
https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531
https://github.com/madler/zlib/compare/v1.2.11...v1.2.12
https://github.com/madler/zlib/issues/605
https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.4
https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-v6gp-9mmm-c6p5
https://groups.google.com/g/ruby-security-ann/c/vX7qSjsvWis/m/TJWN4oOKBwAJ
https://linux.oracle.com/cve/CVE-2018-25032.html
https://linux.oracle.com/errata/ELSA-2022-2213.html
https://lists.debian.org/debian-lts-announce/2022/04/msg00000.html
https://lists.debian.org/debian-lts-announce/2022/05/msg00008.html
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NS2D2GFPFGOJUL4WQ3DUAY7HF4VWQ77F/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VOKNP2L734AEL47NRYGVZIKEFOUBQY5Y/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XOKFMSNQ5D5WGMALBNBXU3GE442V74WU/
https://nvd.nist.gov/vuln/detail/CVE-2018-25032
https://security.netapp.com/advisory/ntap-20220526-0009/
https://support.apple.com/kb/HT213255
https://support.apple.com/kb/HT213256
https://support.apple.com/kb/HT213257
https://ubuntu.com/security/notices/USN-5355-1
https://ubuntu.com/security/notices/USN-5355-2
https://ubuntu.com/security/notices/USN-5359-1
https://ubuntu.com/security/notices/USN-5359-2
https://www.debian.org/security/2022/dsa-5111
https://www.openwall.com/lists/oss-security/2022/03/24/1
https://www.openwall.com/lists/oss-security/2022/03/28/1
https://www.openwall.com/lists/oss-security/2022/03/28/3
| + + +#### Container: mauricenino/dashdot:3.2.1@sha256:0b1fb7b078b6865bb3c13363cc00f2d336b2cbd8cfb065e10d75f6c979af7fb5 (alpine 3.16.0) + + +**alpine** + + +| No Vulnerabilities found | +|:---------------------------------| + + + +**node-pkg** + + +| No Vulnerabilities found | +|:---------------------------------| + + + diff --git a/incubator/dashdot/0.0.1/templates/common.yaml b/incubator/dashdot/0.0.1/templates/common.yaml new file mode 100644 index 00000000000..c1a366e1cf0 --- /dev/null +++ b/incubator/dashdot/0.0.1/templates/common.yaml @@ -0,0 +1 @@ +{{ include "tc.common.loader.all" . }} diff --git a/incubator/dashdot/0.0.1/values.yaml b/incubator/dashdot/0.0.1/values.yaml new file mode 100644 index 00000000000..e69de29bb2d diff --git a/incubator/dashdot/item.yaml b/incubator/dashdot/item.yaml new file mode 100644 index 00000000000..42cbc7f2c41 --- /dev/null +++ b/incubator/dashdot/item.yaml @@ -0,0 +1,4 @@ +icon_url: https://truecharts.org/_static/img/appicons/dashdot.png +categories: +- media + diff --git a/incubator/jump/0.0.1/CHANGELOG.md b/incubator/jump/0.0.1/CHANGELOG.md new file mode 100644 index 00000000000..a49eb4e98ea --- /dev/null +++ b/incubator/jump/0.0.1/CHANGELOG.md @@ -0,0 +1,10 @@ +# Changelog
+ + + +### jump-0.0.1 (2022-06-14) + +#### Feat + +* add dashdot and jump ([#2867](https://github.com/truecharts/apps/issues/2867)) + diff --git a/incubator/jump/0.0.1/Chart.lock b/incubator/jump/0.0.1/Chart.lock new file mode 100644 index 00000000000..6fe908bae39 --- /dev/null +++ b/incubator/jump/0.0.1/Chart.lock @@ -0,0 +1,6 @@ +dependencies: +- name: common + repository: https://library-charts.truecharts.org + version: 10.0.9 +digest: sha256:ecc7cc7417a00bc40309e68f23ad56ec383550afcbe45fce648a9d9771712609 +generated: "2022-06-14T21:28:49.293951489Z" diff --git a/incubator/jump/0.0.1/Chart.yaml b/incubator/jump/0.0.1/Chart.yaml new file mode 100644 index 00000000000..98832aab279 --- /dev/null +++ b/incubator/jump/0.0.1/Chart.yaml @@ -0,0 +1,27 @@ +apiVersion: v2 +appVersion: "1.2.1" +dependencies: +- name: common + repository: https://library-charts.truecharts.org + version: 10.0.9 +description: Jump is yet another self-hosted startpage for your server designed to be simple, stylish, fast and secure. +home: https://github.com/truecharts/apps/tree/master/charts/stable/jump +icon: https://truecharts.org/_static/img/appicons/jump.png +keywords: +- dashboard +- jump +kubeVersion: '>=1.16.0-0' +maintainers: +- email: info@truecharts.org + name: TrueCharts + url: https://truecharts.org +name: jump +sources: +- https://github.com/daledavies/jump +- https://hub.docker.com/r/daledavies/jump +version: 0.0.1 +annotations: + truecharts.org/catagories: | + - media + truecharts.org/SCALE-support: "true" + truecharts.org/grade: U diff --git a/incubator/jump/0.0.1/README.md b/incubator/jump/0.0.1/README.md new file mode 100644 index 00000000000..a22c9f953cf --- /dev/null +++ b/incubator/jump/0.0.1/README.md @@ -0,0 +1,38 @@ +# Introduction + +Jump is yet another self-hosted startpage for your server designed to be simple, stylish, fast and secure. + +TrueCharts are designed to be installed as TrueNAS SCALE app only. We can not guarantee this charts works as a stand-alone helm installation. +**This chart is not maintained by the upstream project and any issues with the chart should be raised [here](https://github.com/truecharts/apps/issues/new/choose)** + +## Source Code + +* +* + +## Requirements + +Kubernetes: `>=1.16.0-0` + +## Dependencies + +| Repository | Name | Version | +|------------|------|---------| +| https://library-charts.truecharts.org | common | 10.0.9 | + +## Installing the Chart + +To install this App on TrueNAS SCALE check our [Quick-Start Guide](https://truecharts.org/manual/Quick-Start%20Guides/02-Installing-an-App/). + +## Upgrading, Rolling Back and Uninstalling the Chart + +To upgrade, rollback or delete this App from TrueNAS SCALE check our [Quick-Start Guide](https://truecharts.org/manual/Quick-Start%20Guides/04-Upgrade-rollback-delete-an-App/). + +## Support + +- Please check our [quick-start guides](https://truecharts.org/manual/Quick-Start%20Guides/01-Adding-TrueCharts/) first. +- See the [Wiki](https://truecharts.org) +- Check our [Discord](https://discord.gg/tVsPTHWTtr) +- Open a [issue](https://github.com/truecharts/apps/issues/new/choose) +--- +All Rights Reserved - The TrueCharts Project diff --git a/incubator/jump/0.0.1/app-readme.md b/incubator/jump/0.0.1/app-readme.md new file mode 100644 index 00000000000..bf8d40d06a2 --- /dev/null +++ b/incubator/jump/0.0.1/app-readme.md @@ -0,0 +1,3 @@ +Jump is yet another self-hosted startpage for your server designed to be simple, stylish, fast and secure. + +This App is supplied by TrueCharts, for more information please visit https://truecharts.org diff --git a/incubator/jump/0.0.1/charts/common-10.0.9.tgz b/incubator/jump/0.0.1/charts/common-10.0.9.tgz new file mode 100644 index 0000000000000000000000000000000000000000..dc464f87024f316bfbb4cf1115dda68443020bb0 GIT binary patch literal 46480 zcmV)ZK&!tWiwG0|00000|0w_~VMtOiV@ORlOnEsqVl!4SWK%V1T2nbTPgYhoO;>Dc zVQyr3R8em|NM&qo0PMYcciT9UC_aDdQ{cy>x9z#s)AA$Q$=r22Nw-hu;bS}LyE{9_ zfk;Tgm?GH#C`XgdcmEwc36P*f`IThG+}Vyr0);}MP*o@t3Sl~*r%CsC1_|pd;XMA+ z-9NovueU!Oihp~(UishN{%-$I{o!D*-yiPp_6C3I^#{YfgFk`ZJ>XJ#a>^k2Q}5Po zl{@#HJTSu_5TQ6tMqn{$!7MXBW5^I?tq9SO;EaiPuks}1e}Nc}2_#D}NeQ?hIT8#+ zTeEbIMqtKRMn~Q56th`A?u6;Q%SetwQKk#CjCL78s5^(0A<|XvB`daY$Q#li-~uv8 zXh(v|DI#H-FqAL>HSZqm4|~0Xy}i~IT3)9lqN7$D6pgjo8q>CT(P{(L%vC-{rmH{x z^?AS3-|zI=y&qe1h!X~Jf`|Zy<`BmtfRjo3Uj^V!N~SFU63F{&5deUk#0C1L3bMGu zfGsmL(&)7o8kc^r)9XBIJ<#~8`M-d1j_5rJfR*#V-yiM{56biZVDLEqALMxg+HLSI zL&=BJw}56S#1kBXFij?SniI(9dg}@JuLwH07^m7hLv?i39z5cV|VRSGY9QKBL{r+Bm|5@)K z-0kI?$S5IgI zxgni(`Sq|IDi1n)ot`G|!2nIdgXmztA05KoAsoZ~{lVVuK`-j}`UgF<8}=hKnM}s$ zpbrPpuph!_gM+;g4F=D8gJ<3$F15W8brZzsEKS*_)YbLsscRrNq^>T%9#*}u81%=J z!R|ifOnmq(+#8Sg_J#-J-ab0)9qx_?5beXTzZ)UM*>x~RlOF8%`f%LaoAi6ThYi}U zr|waF4VP5WHB2K!5m_LzDP@bA^|a+>+6sI_@>*3IL3CJn*clcq+}|A^9`v3K!^z;; z?sziX8yp-)=-D9($A`OUyw{uTMu+>83F_?~9*l<*IEnV7aIp6*+TA~ZLoW+go8O3w zVVvOvZAxibtDee75^6&NOK9uhIAq=J^!GXg!@SQ>v^zZP!5%`x-N^x*>>u_gDB6pL zlW@@A+w1Sc@uVLP`v^v8|Jm;0c(5NGhR?!5c(8Z4ySC}g#BNI2lpy;1=7QJMTp@Z3 z=uL&MsnGP1k4eVE^DS+THCPMEwZv?)Jj{ zAv`?jNBzkd4MVg$45NK?_^kJAA5Dh+aW6WAa37BM_I7uN&l)t{l&;e_9mBYw3Ss~z zAYC9raD;?IL7F6Jf6s{qF)g6!~0*|6j*8y}-Du@ES1olFZf`b8gnxuqJ9ZdN*jX$4S z#0J4%SlusZTxw|!KY=`f3y5Pr^+YY}_ale; zlmj7XfhkTCFvFDV8W7_-W@6OkhhOCT*ZlPe?6z9i(O^>07rM$-TyCjC6S?ne)r8Wx zLT7?=6r+%(1i&~>uc^=q2+}3UaCn82DS#ltlL;b)_a(w1+W~lb?2Lvy0)hA)v{b`dGbmo4&tVd6(QN}qD|$W+gm<{53W=%gfdR>suBgpFTUC#u zNY=oK5ix+J8d5Ii6yU=@UTSEa))R0_Ft=~wrKiK_6C?1*ZHM#0u|@)1;5qtdnxNLj z|BS%hacQDP=p7k3PY9 z7NZd-qyz>*m{XR{!O5wp%gc^H|Jk6^-#_f^?|1gSAYq=eIb=A5al8am$YzL3Qk-x@ zo{Ij7dg{e#O4tbO@9$d#U9Bp!G-_pObmUQo9>w8R8?7f+V@+C+R>yj6r)s`-HCl7D z{L0LMYN7H1F+}D#K@?oi5GQmoljM})RRPHp3a&Amfs2d(*4)%-F}Bn!bwhBJMK~z{ zik~h>F@M1?DZ&5bkYaF}M&KxCDGgzaNNK6?mk3h<>#wbusdAb|MFl>8<`5@R4^$?G z;zvuPT;U`VQwx%*(E7ZH-6n@72+TjpQorIPvJ{Olo7L=;1yJPLcnx4$@a8zd^L!5A zJk1lvAuIFZN6JMT&ER$70ooVu<~TXi#>nkK_IeU1{B(Cf4|`U(k5AvfXE?_H6w~Mw zkq{*eI(qyrnt6lfDOuLEBsuX|+E^5k1r8AmL*82LQdJc@lEqxE6X4#!D`_w}(%-EH zw)pymPn?XTV?=jAk~01eVqvG#5q1~{cOrO;Ab=^DOG6AMpkIQv1LnL6 zDdvIWbYbL6Sy0OrpoD8#K*!4QD7KTXQ*tGjO~&dMo`7~^FIDMb`q9a7Cwl&=60Nnm`U z0Z_~F#Fshd!w3W@p}T?dKj93{N9u3o>D@yq3g!Cw(WFhd^t5`!U z3;Q}UwN+;-MeRP8jB~*-sZt+C08B_a7oIH5Mb{f61>7g_gX%K}n%s}wpuu&W0EPn@s1mYZ4wrx+n#KzR z5*nxJRh|J%X)bL|F$}-jGN0uc<#OpKtPL~a z2NB(DtAgDpFbompY};ltq+f5hq_{elKVReIin?5=9o45K<@LFlMZn1muyy+WGqZ6`ybKl6cA6eT8ErWxm-37h6cDy536~!dTge z1^}nP+f*QKs)eNyamHlzsKj`J!etnvx{jFwmioI8MyKV5zQ%FPxsBw>4p*-*0XV_T zl-L0f@Y%uVFP&s9dUO)jr z<4`q?OI^UJIpI9*d12Ra4iK1+lxZa(!T1G=;qn}XX%f*9==apu z3=u4pZ0S9hkZI1$hduRv0&$!ZbTK1{a)kMpB2FWM_(r^LrkS7F&F6dJb_4y9-8W%( zmuz>;?|$Il8pEGUov<;xD_!Dec4`B?V^&wN9~pfUMz@J}$87EceHTn#X6Au<|Ky2u zwa*buD8LNNxSb5<@RQiqPbXmS&%3?n{kQo?OHF)OHlM%7Q8 z{a&jjEmr8n_qj_CF}9F_>lqGba=RDD!sk%DaTg;$Qec4vb3`eeBC{U2CYUjlbaZpl zPF!Us5+s~;A+kQUVTQYW)gPxYY7<1$oP>yWxe2-Gcb}LAQMjSNU@=xrCH7`=BO_A`6FLFeiS~bkFQ`Hk70Oqk-ko+^j-3jkd%DZzFG^zFj zsR%URdVCGwBM%B{O$DO}MPMw~bt>%CEaCW4lHxgzAl0YTQO zfSPjwwI>5q2Tn=4;GM1sDwPUg4wu5sgMQC3k)p6BE~#=@;f844=*U8SmlUWKy@`Fn zC|-%9oX8?nS7i7gb17J*Xjo@b@M;Bt%5i3LgG%qfUl2H%;II_6p#??3VTwOEQ-v@t zV6GS0EN3afFfLr}T`8g4IO}f90rX-sszDuRDoCPZPk>|^qjLtss~vDEw8V=X#_GkH z90&7820mo3;2g(G?I5;5lmg&z1}3~H);nE=?iS9i0*#Z?#c+rJci(OT>pc$7s7t?d zgW9c)S@bb*9m}pWmZIMCJ~q-R%k2{xWifL{n=~rRp_^3tIg`YM0g~im%3ye%!O_e z!N8)crB$okD|Zx`=(X7U7r|%6UYq#RaYy%K0s12!F?I44MQT}Q4TI6mI57vrr0?2V ztKoz)1S616tafy6w)V+2rJqMR)@5U@_A)rlX2MtK!JG+F5VUid}|!2_`>V zf=dA}*{y&3d&_FI*34FAn%LPz(c2l?3QoPDt)uRm8`_!#U{(08UzX~VKex2BP4uE) zmg-jS-O@J11uIPLqnxENPOfa)$HRVUuUU3-E zjHDB6U~nyF;+Bqs*mlt2IHoxR=u?(b6ZxoGM@iJqsnWxfGHsO%YxCKUllB-=9J+DS zy6t}ns?Tk<(!l}W=CV#JFIQRVX(!_CMj)BuI$=Cla2Nbnz^utkA=@P7_~>Nh(qQC8gr5 zr$EY$FVGrVgqK?umpmjZG<;iyqjqAmX7wVKK{hLp;s6T!mwzf&JOyT_kj*-v8A`zH zT6CRv(t9j)Ma1o8Zc`%_j?r?s7~a;#1<>O4@d^maWyBg=WxV%P_AU(pZ^3RB#&;~%8s|N zt=jUkg<4a-Sx@f^xl-$13{7l)gO!F=_NGe>3F1c;tzW;^FqsTEdxa)^cg=dkAn03h znA-AyUFnFaTh+<(0@fW*b?f>p1p&YmlScq_^5v2|HV0RL9oDY}*Cb6xU<}DBPP;Xi zH5@|~L01!eR^Vf{S5-`V1y?6tL2R~^Qwbn?G{xwmPec&vlyLzINniz{&Kp*IbsK(dB&D6FxgQG zZ>N}YJ3?8Bq$ix=M2v*Blawv&Wz{4lp~+p7iNr{}FBa*4!*MK3AF*yqmL|m-QEmXa zoa1mj$6bFDo(h&qWhEm%(m0Y=7JV(K3N^9CEWvW^nJwEySTxd^%`wo45NL_AIe)vqc%KBw7CoOOyRk|3veff7JvuVkmH_47n{j8O!( zEHt)vK$1FDg%K(OkiBL@0H6iOp|};OBRI7;-drLW5>#3 z0Rhd&Z5hs$P|b&CB@h)eRQupXBsq~elEpD|GgtW7wP`*Uiw1?3oJ}On;8dNMaOB{T zIG^(-wX-&AiO5R4`lfJYrpk~P*0BHq=4ph?oGG0BV-8ENW>(@juZB zJbU)+XI%Crq+;zNSyCRNoJpykXK4aHiX2#ZqKKkQDm}CI~V<>Qj}7M$uzO2-XnlyhgOx z$;AJZVq-4A0o5Bd1jW=)xd_1%(3cbByI_q4Byl>WH{^{4Bwb$pkvkrkJEW{e^DGsY z8!6hX9BE$qhQrL}**7@AYIOhg2KV8nKFRCT_BELLBu^gsVq?B|DQy+rJy{n_5n8MndySjDw#MO1hVCoJ2QO1ymv+nsj^dUGEi4mHZ-ol`EJI|D zDHSdVdFCXXrPqnf7dM-$l#LXz)1qKyed}5DtJOxsCBHcs!iVLf#{8pitv+AAuzPcE zr{&NUFP52b@$jWjI78u;K2*WTQn?OXOf^n?n5@0EC=EqIUFEz>iT2jG6s{(RDmf4Y zF*a}?=%|A#!^*(ougJI3E!BX1wg2k2>??bG_e`weKC<#xVr8|qEI7E1?_|ODTqhn~ z!E~1M^E>uNTK&C0pQOxnD7}VqBt9sRe6i2zb_?%`mMqdsB7dFhb-UQ^0Z$4C_Q<>f z+BYX%D#Jm~`Xo0B=F7HD)KkM(dV8%2Yw5D?mPAj$iMac>m70x1F(L)Rid?KgDnfMA898^+uC6+Lwy|LS`if$BFcnq3L?#I zU$R9|M|d0@9C)Rj8ZNm{Tpca(zKDAgc?NTeh}j_nCVFVTY)?s=XWjX-ZHjmqG?~x_ z+?h;hL)J_t^!9uyvwsyA81#D`b+&mm^=%7|cg)=NSDXc>=^XLDgGWAJA}e3$zYVuk(W33x|<*c1aXrp&tLfv?f?tkR10+H5kh89JALZ_xhWXDoj? zJ9yy?!K|&`wMF2nqWW7dLFE1tCwQ19lo5zU0{o2(9+}P&C(|}s$k385q!dpRk@hG_ zBh-D8h>JGmVbbju|8?#hEwv;R1#lwH#4IhGWUlIs6X`WUO}EyDNz{f3!)^U$yQTl~ zAj#4!jnnD!JmXA#d`nFAS#fbhT%Hrx4Ya9fp7C5xI#1ntEp~Sqq-Lm>&#uaB)O6Gp2-|I;!U@(=EtPKJk zrWvO5K)<`bzV0~h-As@=Re|1=rJyUXzM?e=`Z_I>-C)!LPrz>o9uYojBxjKG+t04H1*h;vdi zF7T<0kE4L(30Kutnof07O^g|f5eID$*#R^UXT0$@IKg~)J38bcN=?**?uS(^Ph?*u z6(?yNr`IBR?-LMnaj^qn^pBh}c{l`8kRUG8AzAK-&Z}(baw$sUB^VQNoB~c5BH+h@ z#y^VN6vc>011Ze%5g7J*y}9y1&&Ac4hd*PH?@ErMRkU9!xYv7w6%*)WoqW2etFcbs zm(mT1XyKnv-;YXlCh!W0_+ri-LQCr{BFbos|JTF`ilRFIqCEO3|8~;`wt)Uny5vgK z*Z1m8(&CQ2N`3XgwKgu)rDa^_$)x%+ih^5l3q)Yd``;E9P^#3AGF-)E?TbVZjtW#- z86^p$$RulD*|Lev{BZhKHQxaztU=R2T>&Ug#o=US$mewg$(GXIcXP{3~(97acswUOdwgd6*;<3%-#3xMV9y-rSimZX9?$V3xGvt zA0xDlbly*Kx2Er2O%;W;BLXQFSprf5?0fgkotmnkeQqy935Q*C3#}|yf3jRPSa@UP zE?R^VhM^35REc=CpOZIs?xYP7vZW2T4GeDZDxYiyDZNffBsY1|e5y|!=(Uq^JOWd; zh%UUsaeRJ_Sva$HPSGcET}GrbKhw*T)5Xw4m-@c$mvb;E+0VOTCDqgvETxvMp`knQ zpj@jQ4;9B&u4Hp?T4w*$`IKbjvi2uu37|MaA+#MQ zaz*ZT8@|~IxDPo|boXZB!m5A2Qo|vh)vCJNRoJ=3{j1t}#aE`7^PYB1wS}Ls9YF@$ z5hn5gycO^nrz+zHOF>3tBhF}OK%vN`E_)_!h&2w&b{pnKz_dY>Tq@CKvpx7zw!4*W>A+_J^GZ1 zt7@?JIA`)ge?x1hI^a_>f^-1i_jIxZRa|Us2S!9J#7N=9`-l8*{0i7BoPOtC= zmfC8ANw>esTrxN|wUt0~Q^~;g+DSJwiww{k8AYb{1DZq@iG2o9VW&8^A#x6TfA*Sp z`*nJS#RtwEZUoYWNeLmCXKIdpN)tfUa$&1p#Hl{jXEHu0D~DI;{<*^oc$e&|@f*75p@))I_7$nU(4~W-^xvWau>2!_ROc))fX>@0kL*uY&au_`CVvB@aYpo=qf+$@uAaug=QS)DMQk|{zNO1RO65#^xNtt=^J zTm$_c7X_A;TUu%kt(&@>8!7@%pB^;!S2PX@ifEvjK6LN25;@0U0uZE2CGG`dB`HJd zEcN@d*XQa&YD*{ZF?jJ4=iZ#e*4E+~iZI>0TZC6@)+15$VLLVFj2(?P@0P0AtYfP1 z19vS=rs<8kCM!1Vnk@WKUHjAHO>zd1?x?+p0ds)3WxWlseW^MF(z25$CDE{sB zdgXt62fO`0^@oGKet)>X+Z+6;H|X{D_x}WXcimavlT!xCpL(}$tK7No zW+s`7SYD~U>T#T-jNn9O0eY#J0vN6^H`vOHNr}1Dyp@|%`D)Yk{Yj_w=kAv;tQ1=zNfN&@@iRFz(<_$9%=5uMt!Q2~4I4JjF?bKJ9>~ zSRgujZYtwXFDuPBH&Fu)soie3V20JAYXpL;L)r-w+zFF#!WWH;e$cwYNi+g#AL>Zl z-pvh@7bgF0YmOL{kytv=8GmYj{tTX$?;;j21%LBm_ojZXBCij zYd>_9g`f*ORVi!rrt|2z$fK<*nJX-CB6falTw^@${62* zxy)OkZ9~APIGGaOzMSTUm^y9n6gYxkOM2*I&zUVH0;hPg6sl{aW4FPL zB>pL=FK%*9gKeubwzb&=Jr}o|wQA-!|I^h+mweDDU;lu>25FWt1?WJ_YP&ldQ#TL@ z%1#u$(F?m0@)qirMdDkOSu6?{5XXG=5eP*huO^T%1Q3nl|0X}s|4jlAwA*c=Prd3z z3OtW);d0yRm-N^eFU}c~DJLbVP1L|<%11`7RPJ0bN{Pj^6Ds|(hA3G+j&b-aT1uk) z0a$u2jy-`tz<7U%lF-#Z9JDwS+W@o-6lx0F);BlsP(42P`K;CdxA6PxXN~^f9qjLy z^#A_uVE0k~Kg1*a|7VC1j21|QtaZhn9hbb;#R>pZD`H{2AHOV@Z5QHtMP@u*>Z-oc zbFjr_uu({b^YHlt)QJv?OWn3u}-*CZ&m9IOVxmi}BJXvZR? zWt(iTon&@*#kDg!d`V`}Z`8##U3;o<6MS>?9uy0t)kHGQIqjPrkj?7i38=@|OkvHA zqI$VdRx3kqZl zSEvXdP%Ip1|5ae}DFq;C^ViFazm{j30}w1M+!O}etEd)LCxecwuqd^1n&|)tcexM%?=>8eJKn#(&&NU~`xw+S2{)aq&r~0e;Xc6ko1jLSlJgt5)nKRn9jIe)Ew4)J}88P66y`-Ls9!S^Wo9N|Efc}@vC?XMxN(Y9&od0sL1x;ORp8&nkVt@^pByJ`6^k>(`K+ z^Y(^MPjv{-O$`MZ?BksGm$^KO&eenFCB^vzfk91|+8}7Rg)zYYycMc}YN-}Lk$?mI zVe%$e0mEWkeI}We=hjN8vXgWXN;LIxVhxSL)=N$x^-jkALKFeUu|J* z>D$9`G6hr23bS^*7uH{nh9A)!){*ecfVBoW5=i*X6sh&li9Y zW^jyS%rH{Y5k^swtM~28i_4=IZ%*E}Ht-J{s(qi{VZ%UoC&0_yB&&uXpB$>a3ZfxT95R1;-OnF|4onXFaOhiCI8dz!Q=VQ2YKq^|LiQ64;=ib zn_dj*VL+rd=Z^9eW_CL^bKo=wb>| zC03{&rW-X>{Z!mSE-s$AgUGA~u~;jI_&afd{98Zk^}iX;`||(v5B7E|{-5FF`tL!W zI{%M-{m%pYe{|CuEg${a`)d61{h z{`+wH_A8ivi!5=hK3*omRO!i*4Jf#CnITs}qu)W0W+)M$R@bO?{!3&ED8O%>nD(wQ zLDL+PwK%S6(T3w`vy#HqYi=yEL>n3&WQt4etput6KJMk*N~?yvgj+x%6Z*6jT{rJ8L0Iu&l0>|=w#Z~f-{zt1nBq-{bf|`=*wtn$-1+!Y-4riE* zkE9ZR!R;Mgvq`W6FB{_pN)V-|Bpr)}oEJ^w9olPJxu0l?M)u$R=KtvJ4=Vfr!`;XG zzaQkepZp)?Rb%_62{{^wo2Rz8*&wp}XB z*T-}(ewSfGzsu0?cd2&r^5y?Ke*ON%%NK87Ui|j%?AP`i#Pu%U$z5FF5_@7*N$ERs@l(SS^ad$8G ze+{bnKl;1F$NV1;@+kWc(<1k&IK)l?qyU0(oFgHrg!Y{orT|$Q0ch9)q~ewj3fK%X z00{yiL6D)Sl~bHd)q;_88i?_jK(btEM9TX`W*M|E40$Tggl}~3d{LRd-T2CSRd<#_ zUA2H?eYY-p)OWvRuoNb!@3Z$`h+?1NcW(UDfUGNIRBO)-j^*25>^syQ({9VXGqQA( z&$hYU(Yf~CS=DMvJa?~s4~j1H~ zh)Q#uoS`hnA*4=C>%CQ7ZBNbNCx4~ly;W&fRYHv5(5CdHgy-?;`}YjT_@9vBG&w~i zLrlS;AnveoFc0c54F}|@!3s#;qA#AG*8L$ zE;}<95O30-2Dmh{6YBK;?X&(A&pQ3zFXw;n?++jE|9O~aBmEC!efI7R%<6SM*JC)j znbI#M54r>GZ4lm2hr8z&Z>`Cz$05G~eeTkxs@2`^H`DD+vpAI+Ghk&BgE=BoR9u-Y zwYQ~@A{?@9uQT7?@6%rY?QO?Skn62123y6dYrDEZSW*+U$iXB@nUKoOFtp11(X3@B-=p7vYTciKE*6)?|fB!N6)5AO) z>;DsVSM0rLe{-ei9qE1rZ$r&*Ux#~ZyIRVXhm^BXhr7|LWE7m9l{0T*Ga1_Pp z8WJhK13zjq&C08C1ubMt@!uuDV(KeEl{OuT&Rdk>-qvdmqR*YZza1c^^M8pMT`60p zT?M<~Djy?~Ackm2qM&dZmiN~iqGM3GZNtSH$z3m%hH+jug5_bEdq-rx;b6?0jl+D^ z5X^5u{rdK63BN&eRhpLss%Q9xw46IHjKo?;FF(gtVHsNRQCT&KRy0U`jcr%@TlPKp zBZ$3%u&Aa)p>$d(bGOE2VT<~QcUV+6h<$E~it`{~1fmJPGF>nDs)N%mNpmKyV`gNT zr8r?Ua2(LZ2m3nUYcv)CR5}u;X*1S{t7dE-s6-4sjKAeZ4i>#{WXDn&jl5b|Vl}N;TuIq&Br1#P2eb02Rt2C9W+}B(a9co3<&G#*Ok!T`^JhW2j-Zz{ zejZU}%j*KB*m*lf`XX%rDmR^#M5q0~(h4SEVk${x5a3TCA}sJX_Ox?`MDSVX3@tF1 z1YU`bC!kZHQ;VV?fmO~B!!NWwBWiw-JTAgQ)Cep*w9bF|24TinRt#$f+003y zZUsDvZ}#W`eZt=?zkEh;yILbt%L&fq#-oK27LKT>!*w29>t}B>8-dh^$^*lV9nFV>Oj9db_@T zS}@kyrphF%n}YwszV15zuL?ty;nBDB0P^_YTdbq*(|hn%qrYwEK}=jbUB zn2jk>w)jFv;BSHQ5d?oPIXh}#p%tKBYDmpMDYV+FKx*uEKmpx578RLeR{U}YOO%v< z`xhg2IX-(T*F~`uIMRp;K|FyL7f45THm-aq)&w~FDNe(y+7F!&N5uUqAU+otV-$-e zRlG1&c|Cc8p&pXm4*C?L%&{%y8{d+7MWwcL0hiY}bw_Lc8y8{e{F53qgCR2Wb{lMo z%y5D{+m(*WL?e}I9c!k_93wSFUVh3rLkRh|T~>p9@XI4ofnzACNxvEy+nBG2lLF8h zC>{aUA6T%fq+f@gO^6DP*2kuZ+VD2V_6DqD3;RY)V^yfKOXZ`>C>768LM^hD^cL_e z8{4&ooCTjAv^rdya#LOXTkz3J3T?zeDZs`?Y36L&c?I zFKj2PUv)Vp+rsdwXfOWqQGY$^uSfmWSo%EbuSfm$J?pQBR9~OJN(!ht|8KSk?j>_f((iXY$^k;~3)k{X_$2i?Fy2#N)ZOuf1p&2_RNG zZEIY%WmurrUF*(SXZk+P7U9M&?7MOBDkxmBZCTDDr)1C$N`a6X->Mf_e_7dNnGQv7 zOw3$LoIT-EtNvmIw8E$CWxMh@BflqEH)qo+C8lkH7{m$iIc@8mu2vUSeMQz_hT?gL z&bs={XIpJ`jKCE_S<9o!AI^W=++pl-aho4EzdPUKMvfg@0<_H)*8vFtuf% zh#{u=Zig+MAsGEeFhlQ>5CtMBqqTAGo+5o*^X_(vkm}WV~$8kaFiXj;3ny}LMj{awy>40 z!sFcT_>BjR66N*1K=uBr+@1pVl6^P zecJE;M^r%jJ67Ha?sM66+B}BJ*FwRXPnK)`lX}*ush^Y&ya}-X${MHaBjXOH41ZKt zEnh8AJZn@9B$J@yOeG- z*0-nAF?wyRFEvL0GrYT<_nRa3*gcU|214bwkCH3dSyC^6qAJw3RBdJ76{mfWHVb*dKDVQaW;W89S+|a*U6Ey72dAthA0Fp8S_P1otVW7$raX z+^@B=+d7LAvz(yr^*b+)AD==xnE-!2tGSZm*`3jidZ}+W3&lXn_6K zp0wV*4Nuw2v9ddNnELOXQ~dND4=c>JmvIH>ZH9k;ol6kr2k|;adK#l`KPKI{I5GR5 zq>?e&1e;Frz3o+gkLG}{Wcf^)vI|Ql2ph1v=vs^G8j<`{1N5TEQplZqyB0(3oQnFT z@eeyZ40f~L%~jj|N#9j*qJ?}1ML^`vOcI-OGrfxIdXO#uNjO2^jEqW`0F_?;L=t;3 z8Qm4nZz)cs3Jr7D^x1NlW+~rQR@YWPb2sr0M&i=&sA~lzqJYdS9p4uHhg7CcJGy*p z%;V{~Lf7JhuyYg&<&5v*`M9jSf=RllYsh4J=4i9a5VrU)`z6-aZw^&TT2xqL19(Tm zES7ME*H;YzoMxq*>+H=W!s}Z5WpM&fvvQddd8GFdHKjk|M46^?9WD(owReCZXNtR@ z_MO}>ptm>irFRABfe^T3pOArwx*tFcsJrz3z3`ZH9~LZtn#Gaa>yxztp2|-d=GTyA z99-zMmdXozq^)mX$n+t5+}Wr1B$=3tlY+N*w^q`S0gqL5i$7K8`E#|p4E}D{Aoj9% zU2x#W5c4Js^*$#5Jw&1VYzB=cXRUujin9g-P&SYgDP8;xlbD>l@(>n>c&{A*}PVX5|D~qX%U&!abq^AVqLl~>{4LtS0kr1xj8!&xw3x;3M z7`$^mYdY}6$1&~AnkixH^QT?9LJQUmp-mXNPa?t1Z<5K=U;p?|1qO09m-k(UXUO*< zTgW;FJyZSKu-Vmt45mR5g88!d+VSEYH1K$V=xO_62>;L4_W5Lv3+(v(*lLtLcSV{L zc0K(#GI!3PwSUbKI?X@K$+ClwW0w>67$ar`eqe8Y>+nI=VIPsNW=B0a{=;Z{qE%~7 zq?tWx3{yyN9g}=+9DhS?E$wnOY0k#P^VfGrGd7o7wBQ zy~|RKf%gHpE3#Jx_j8+x{!oy{5J+y>y94m9xdT(xgIJ>}NlNHb0zew%KBFS)}&=KBE z)a1Dq$ zjvO@JAd~HavqJTPiIZZDeQ1BJAPwSn;&MteO?0V$sk46mm+%``#03{{)Y{bC$es0y zjV4;aHcuJ}%;#!yJKpt9M}OOax$M2(6dYVosywWH{`Nm!CyqSS9V^v6laRR8_TG>0$!rG{4>!b)c5UXEBFR!E^!0Vva<% ztd_0=!_@!kaz|9xyY4cs$hv<%E_L88$CC7p6IO^`*_{pBFF-4<3NN8xraij4L|RFT z)o0?4EG5KpNzxhwVmY5ruIAKR{$-Er=b)xWYJ@IKK_M6!-BFoJA=uk}ilUUzPG>zR zTI6+Km0)88i?+tj-T71fEku^)cI;blspHW4A4ubazwe(3b!ZCP)#pxM4f{H?hVbfhZrG77g>8Y;;;(2nCjFFGwLG0P34xOdNvzez=-#^(*8Pq5@C?H%=H%U_dF;J_ z5b2F#rAVejeO^r@`Nu4Le^7x>SxC-4 ze?};}dRy3xvXgX<@CSSNB{el_Xr4P(JXuc-TDe*Vg{Z7`I_a;K(Tb#2CVSmByO9<~d zZ`{;h*3tBPxFj{HIW|{U3RiaDiC)Ljs-%JnVxi2cdsu=(XGSN3F@ArYiNmCbH4FS`F3j zCkKV})!I8L@ycV#M|4`8qgZG=GCsIlhDZo$MWm7!FblCLV=8DMLzaboMl9~Hlzlrx+{2!S*CyOLw>Vge1qn8%tU*z=7jwRleu|B zlESaB=y0M_JyK?GImX$`KXV@0$@JkUr$`8;2Pw0X4|@lFj|pn%7I2srs@^JovIB7; z-bRKThq$00(~{AMo`0mVd6-~XN#_^zOraqgYrT2MeX}qdW{gh3v!}8LCOH`f9UsHUH}C=X*QU4_OCdKdPz?)K#$Y zGhP@**@amWRZFWr4q=h6bprMiI)FoxOd~q9&JJ*PcBVcKxzydfqm-P4Tgg zcEjOam0d(rrEs7cG=E6KaaP~(h{BsbS9&&m3^qsV@)<#zL|T4Ad*an|+poLY=AAgr zX^jdQjhA`xBPr` zdKNxrY^cNp^ys7G^FM97$2Oe#{`h+{bt5jdzWUcIk$3u0HX~?vKj=-ay?iI;_<-bE z7Jt(2F&E{m^hy>#F;G;<(teZzpYZonZpycYN%-?ycab%Zb3tW$-YYU?L#KH`k43e0 z=}Uy0HH0dA_MV6uy>h0nu`Jxfedsk|)YVmiPU!I-sI#>Z@&pG_P6y|RPJ8FWjH8j& zw|?tBQocq!T1wp421#Ve$9CAG%3O0EDlT}YMa~5}q8E8Q(abi#eyh1uDC0ZHF=8PapFjXSbo8jiRw*&1a4 z$?@@Q#cY$Nx`i}b=HKsC<}l3x_1(q=KQTv8i3AsJHRxPx9xd$@nhTlM_oT>uawz44 zJ;iUnVTCpl7LzNen&h{f`?ILQyo$M(DT$E}{uvl<8_T7J(zNo8&s+lYtqeDoAMJk3 zhMew?RD4a;Por!7DE^b*t-e+BB(MJijak-gGmmc~%VcykgH>8f2h$Cx{WaMj+j|tK zYt$VF1hBvqdjPBu(@lr7+};oWJ%@d(%qlgheJ#CEu`bc+>QU%O21?Iq;#@iT+p8~o z?y=atZtLXun`24q%r_^) zIr~dk%ce)+CrUajsU4QT$Vy8w)#OF{FfV)fx)W8CSozEN}U1va>irV zj|Dj%Pz@}I$}XgRy#{9C5y~*Q(Gmf?nf_)HpUiF(07A3=mI$NthW~! zxJt@s^PB(%lg+czn?5X3vJMPLd}K_omL87eO==(#$2(Ht3@TOZZ=;i(IxI8(=T0Tv z%_KWXM=s*CGm7YOzZXze>tI|(!DR%>Od@v^Cu?pd4BLGaGyn4zbGu^8mTjgCM#;9Y zB^Y{rbsb`i9+*ST#`7k+uuhHJHq4NVK0tQqnlu*tq=iGyYo0g(h98Wcg}o;2cOPea z&ue*XXE!0pg`fF zrls?-OobO&+!t!V$Qy^124CDE+EC3;ZM`o^`CtG38ii`F?Rp#gO{h+^sX@V|RcLIm zmB>%g5(0RC`EYfnMZ|fHzc`W1v5uv#MJSyYBNO-KBIxs=qsJue&iOLnC+5%6rww;Z z@&yp))fWIvXzDhGr-+MHs7A_TSUyC5dYxD$u#~;*%`EuxcMY}F;g@=ZA6=T zg({@6wl{Idp3UAoJK~^zHht|cgcNT6xfGERUp*^(lluUx-I{Zh;p@R(ukv-;mueu? z;8eXqZ}_|>4u+}rR}WGHW>Zw$q?SFjn$&8NW&%p|x?vkCW3X_-&Bn%wO@0D>DMF4T zTBXcFwV^y)X$IRlHkaM^3S`%gOH4nZAR^PHiLl==8%2pq9brQ`tEzh&5WM6`Y*2pQCm$zZYR_LTTuwxc^r`XKzwvr`-4;Vw7jt1i zp11^wEc6N$uO}Z_xh^DDX(zf6OG`lm{r|H%#;5s8x>=Jgky5t!ZRrUo@ zXIuPX=@#QQI|#U`yVb*=QMR5|(GjuL{^wr><9c`AaBQL%IJ3W`5on7gF1VO9?za#` z=_A^(A=~M8A4%7DIx~|`&If^AX;mJsQrqFLp*&i}s_}=I%hvD)P`64>qbc^S$1!X9 ztswOXbm?dugBJ>oTvdrROz&^uw0@0i#HaHNaP;1wvV{5W44xzki;vUWZIz6EGk0%^~I-|+0L;`LEQ zbY~VwpnlAKZ!^F?u9G;#$7wA)wVPBu7{QEQF~L5LG)&ty@zts3UB&R}PS`SI>}_Mx z>ciJtaFi35nS{fJ!rlBZfQxG^jy*$!#F!#tIJf(kbahQM$lW$%kh=is3zt-h2b`iP z>BwZcYV97mS7jKyJ#$M_dPhSXyHN=_Q7K3_zitT~v7lk-%vv=wkJM4?3T+izk&dRm z;)yf$6N3uxQe~%=9Xhy6Cl7NfaVfN$D^{`f4{(%@%~LMI5?o=$rfpRc05$fx!6zVG zaP3z2lk!0QtF5vN-d5W-8?%HtT9a53n)QWDg-yUVC}+VVnyHcHg_tAQ_bd$DQpPqB z7obMbpF{s110jw3&OKxrc-BJA8L3cpHmScpZ%UgnG;Y4Q%t*N{92*5+8{D8Z<+Q%= z?TpI+s>n`z&#`7*2tKiIWmqwdQsqh4*`~V3TKxVwiq6W6<>_I?%}w8>X;@T#uT73d zZNh6$_b(UBh?N~rY+p=lUpiAy&i%>RLn3a27FQ(7bD=Ho3{xm|WtuiQlOF?v-i@cZ zs2jspi#i>@K!{^~g6>APnS{Dw9P(U{;)k#V0cyi}S4rRRgdT%`=He+ouNlUatr8(y z2W_M?PQwUJC^v0;M6l7N@Pho{iBiQjOhveF*XfVa z&bxPCh7qzc@CJl>3SDi`XY-5WnORBYYiW=|p&2rFp|S4Pt8?h(AURUksN3}7KanlZ zjZC;fPvj{1THmxt-#Qyff3)#q>0@i%8d0Po>L7i*=I-DZ5ajo|n%QH!7|%$k6`0EQ z$?Ljg(h+EW^N)1?qAXP&qiM+xqmAa&&7ILWSL=Sk%BmDIJ^}J}zuy-5yD&>@HM~re zcPl`rqEFfAYgcLik=jawYY9QN(oocqkM~iRJ;e3Hsejh*?#&C09Pj8!Lwsk?Zbw_J z47Q^Sj;MV;=(BWp@;ZyInTdN#5VDwH?K;2d6&)0jV!>)9Kgs5X)|WGjzslAnQFg=KW`Y z25?jShC)fn9zM-K87FQlZuRD$%7a<_?~!|gx=V__JIeYYmJiVtcI^_=4J?a&&b1d9 z$ENzb$9xK6tn%*@t1{)Uu2repx|Qnm)nTV2f*)DNk@D!66QWd4Y=s_fR+Ydos1 z<@W`!%@oLzM@CEUL}kG%x_Ex)QK-B|gNyWof(e)0Y~5q1f`<315dGa>_(v6=u+Y%i zYWH7~@HB)DHHg|kQQQlo!GD>IIl|4uHz-hr40;g(6tdsWiX*c>_Fwl<>Hs z;Q5_+krNzV@+?g5)+)*@Bgzap36<8Z=X}S)o<-_ET$8E+{|dtfU93^8+*{^ny`YIm zB_sUF0eLnToKFn-X~s_=hTjKPzcNetZV?A`2z|8W36ss~W`p@~Q|3qN5*<&B>@m(M zrudk}aVifls+|)YiM>5G?TdO>tWmv(Lw~(qLLt#_ir~!_dP_+>x2&6AK9JVyb+{ns z5KXAj{ApmurlKOot|uQ&#lb;HpyU1vbFxc|5U?qaVL}tqCQg!mLy4GanWeK-JCN_#=K-Z2k= z=;+KS@QHu({1v45Ljw#b;a@%hyM^iy(Z0&kH_*>)bx4Q11IW)^7XaJZ-~wRlyS}Nu zDJ9thwzH)6j6{G~oKEnj^1L^Gz&+O~ba$v4uI{cwJS6@IKv;o(l*A#gTj{pDysZ^Z zG8AiNQ4~bO@Opzi$^FRBcIh3B?JZ`ps_DTK3q0%rB=_FaHZ5Sx*6hM`@lebiHm$oGNIHvi_zFbDJvjnvYItNIee&na&e^}1x60N}U;&2Ya7hc43#I?xKk+xFib(>G@TpiaglrfdG$WVwRshe8V zb|3k9obHA$^B7V-=XrA8Cf(6`Zu9kU>{)rIw$;1(x^l0kb*8ZES;_Fk#T0Q<0H83u zNt_1-162z&%3n%IihMJGqkrJi);d{=(yjOzG zoeZ+Nn`5EGNF5}D1<5HmaJh7r9f$@fS|DQI>pfJ4v~<_RQ;xJmrfu^~#Bv5Kq~LiD$WY+?-0(r zU>e#Xb?fKo?ug?kuJvnGUS!ARD}yidiqrC1sR&ngrst^cw(@t+odcDV$@Pj&i7;>W zLct1@^PVDKr5*7U(aGqD zz3CO^(LQi(1OIr-9B@#4+-NeC5PlSVX#ZK>Kjl@adOCIRtS^K<55P%3?neR$Pa7|Z zFCEW4>!y(Rxb?s0yN=C<73Md1sEZQAKu83tUqI*C!Yh0V_Xxz&hx$W#?)G|h7D2)x z6~sn5dOg-f%>O-1=Z;#YZKj#MW~O~+WCD8FOf^NX1A*T*r}B*>8c;8V~6i@w;>M5cO3FK@Ar*7Ivx68Ue= zwYrNtA&w_C(Fi^s9WrkMZ(y;tz}oIVWmdly;= z&2D9J+Y-1h>{Jo3*@iHuVhS@?9+jO4SRD&m9g_$i2^W4Y{qL&)zo@lvYI3c-L|^nh zVky5U)1Eb1#XQN9ME0(eRK9hulW+`y{2p|sN5 zisEmRnFlwo&rF2vvdh0cPN|U9isZadSWV6>reBz2~U9Vcu!nd~EroY0pt?DsR zdPH7YD<}o%noRZERu~hnyYUc3DT$=PAlu~2pVouFA#6o#I7m<1B-mfi=7>&4@r-V* z6|jN%8y*miC>zEK{|<;h37FraD$mLB>$D$R*obgWJBYGIFqB*;`fRzvF%$nLu28Q? zMI0x>#VKj#`vF8VoOAOcBcqED{ZWuG!JF|hm_+>BeX&IBS6rr4{E+J4QT{zbWU@`w zt(AYKXwdE|Jvz>cA1ZfS8e$iWQI32uPgOL%3^pe)eNS61N33#bzH}^t(_r$8hIPHo zNkF2@2?*NJd)YsZTQQ2hSB#e$IN-F*^q)<>a%uJ&$3?9>5YYd|mR>@N-)WmFE~?Uv za)Q@CJNs4x_u^eA2xEBdJ9>du8r3W}l^l37^p(n^Rfk+%oRmpZIy{y0<0skj{$iDY zZ*mgUHOp^7SDV-V>?grnhxFU$Zn{Zu>lY0ysNs)}D>bdBWb+Ok-fKReI*WqWtq<0G zH|9=TGQBJAqCYEZxa$tI&;KaoJ}rM))xazWLo$2F4Yh>1HkiY*3%!_;cwPaa-;2id zx0jv)(vdG41-LZ8N=7spFa-gH6=u9uUU;;~P|Br3({9%Xm|?kGg;Vs|`gy zG>#OpMV^Q#HXE_CJBj`N2}9Cta@v`+kuc#mnipnEu6Q>mwwl}kvW!6Rw0KIh&{~x& z(4SzoDCCpGu~R8BT<8&1+1C5|PpjvY!ZJCCaap4}DOTg(Ec5!`aOO>}Z+Z7qh3T@* z_?fYr!t&4)P|%fAC>C66LoQOC(rg~YIkeKydGtc?D`)}3LizLy6R^H3LE4PEZx(^eW7;fYQCLWvc~7+Smqlm^C4A@5~_Y!?u9o`EvM>!+$M?jyF+ z*>=V+{-D!bSpXHGqd{f&QJ(LCmIFxzCpM!=NqdNI?fdQ)JFFE}~r!C0A_DZM_FsqT{Cl*IGz`g&+>p-t>*?UD( znnS=X3sz_`d;I+zXY%M1%jM{O?b*1)$@=1NR~JeN5AI2XLNl4TGvzB+lzhd^GEz zR6gX^&hq2z3y@gRpx)*3q0Y{VH4tB-CH^j`FF+{y{DK_Th8V-SJ#kle09c5NH8_D$ z9A6$gG>d^9#UC*cFrw%EC5Zn>xECs6#Jq#+k72_Hl!$^7TV)4kYKijA=s4=aiy0KO za$O!6oiI%Je3^*!M2lT_f{&h!Fp&3a~6K7(Z;#5+YT=A1;o6QCsiaz|F!Mv4T% zdxJsf33$8d!RZ*T9G?B>(Kq7z>T)@OW1)e)mA=MFt9f9-2F3&qR!R}fvRE2A%wQ>V zZ-%SAXkNE`(A5}Am19N=J_eIb))P*uHnouY^O#vvil~EsBjo~#(>Vda3~gM*JQ-al zIppG-empR-I`sJ8!q0>Q161;#p`=GyvTVMHiKCH(= zdOh$`=>#3)XzKQvShkhL6A+m)Fhpy@TB)XJYjB0nk|ZkTmp(|JWjn_g(j>Ohp05)N>~j@6P^cwQVM$@fJzx66oJ`S^J#hcoUl)oopYJL z!IdAEc8M#9r$Gj|5)Y?WI{qy!12dvyt1&T@(oDBox}>2-?B9T=iA%uei9=V?fm4{w zvEh1W=|q#D(jYx>L3%?htY}cl^ZBGwOi3VCGayV*6eC8gJD!Eeeu$C-o)4BtL9Q+0 zC#7_hPk(}h7_vVvTQk#BL~+UxqaqbtvcQ!;)A8ETOa@E7JG`E6DHe_4&Yo)j;^=>GFtB0p9QH@2`ejbcPo=Ah9j}Z{re~-v(XEA{x8iCzVZo#{zUWLInF?VNSe*pS9)V zKCUJ`pfvBf1++t8-$$FAXuexj$*`lb2t!&B{oAC(2yi6kp}!93;;0}P=TcKR>ppxv z**cj&6WILxtYZN8o6x2;#c(BdJMHU{n_;)Ar>Zu>Fp_1B$GN%5&e4Jxx$EKDHY@Gj zSXj4fFukl7QfA--A4aNEkm(PmIbStr_W(3Idu1<09^`M>gs*2dn*!?|ooqPq)@m#X zl5aIQb0?M13XOxDRCJhH7+hAgdjHOpT&B~OeL}LV4hjaXOT9t{~EZ_T% zlfMT*g`nr`yUVkczRw&n$TB#H0Bw+sgqCzEObqpg6hb?SG4>e1E!qghwyx(N#e&+_ z3%#phEr?$2YTdb@e)lTyfM!XXuq(h;oD1a4U2L(lZDe9v6Nww>(>EiRtS+Ejw2laG z&eP^5|EWMUm-sBjrqa@t)0Vd=`$23^3GroF!<9^0oF*>t+sVUP-X{1D6Xe44?-MA( z!SR;{{cFM#XxwZ+?LbuR;p+83oO~Pr-(Zm_e{=V9sTOE#($6LQ6}H60mP#D?xoS*# zF>WhOKr>*lsOyK?G}ka=!!PSxl?8*hod89Cmemi0KdsPHciX;GW?Dc;HPM!JKI?g! z??9429P7Jwu<4uvS9ROK&5xJ^QOs+uV~{7#;@goQBdsfVUDGN0bn2;swoL~8j4oh{ zmp#zQUo~z2q2pVR)jF_38$OB9hbP0PTBGos0du+pWLm5Po6Qi{=cadz2lk7o+~T#y z9;kGN)rK|S*&)=3&d@aUJ671Q+WrQ&T(5WXWzT{qHP+VNfm1&RKN-$dhB?g zqR(tjMvm~7KgWSq%Rlwi#0e9{1e}Zt2n3$+e#;Q#Tlv_>$;$7tH<6#1hh8UR6{M=C z?`WjlxW_F(-g6_GT&M!sP#SF#*b$x@P%wKKS0qFnrq$B{? z6Q~p<@s4@=Z!MPr2f4bntQ(~5vHBLWM{-|iUiHf*g8?!9+)yE+=lCbYzxSdu3bi|6 zSe%&zDQx+P?G$B^9wN2P73W~z7Z4B6wP;)QXU{s|{q6Mv9-%YJuyBk#YJs?|q;$5O zA$|BQYa5U#0cYb>q>JM5H!PTGmZpjffoqc}{JSFySzgUi{X80hCeb4l5AMvbcW5~y zaX0_ho&D&49J8A>AAJ$aZMO-mnPhpvZ`l zID+3an}I$O@A2HX2g;ZR;OvHZQT*+NoL^LdbyHZVD+$AF2J_fzy^_ApiJG_byo@Jh z-#GYLfTTJAs`aDsXFPO0_bCQ)u;}>AZ{VR8`r!rm2DuQO2RyP0Gl4W7qdj%Zij9#E zZLl33pVF$xx7W@j(CvTQX~opX`)bKt4o*;jTMB7_i#^!I0ig5_5WatY?^`-ew*dZw z4l_{{$V$*&T7^Gce!Cv@M=Nlnpx9l_5ZPqKhE7dyCTk>{=#3&lY1T396rC?d*$}2G zBc(x-H>R5hA5+16aBsC_e_JylmVR#@quz zLVIt9)h}~OWIx;KX4w$kIyn5yt5|rwR*L>{UM7jRxE1ipK51LimEVKpFC3p&wqFZt zfQ;e?`uAsy;S9t-VSQ0J_T-!I3!Wag;NL^dc;LS$40&tF{dDDV`Wdn6%%YbPkS4Bj_zr=&o3M{Kw2CwWj*Cp<2u3S94;b=wE*4nz9otCh&> zyjS>9Wu&kc&A+RgSivN6m<=pFl@sWx*j3h-XK+->4t{QlT3ZEQfQ3w<-!1RDS`QkA2yK^1cTauLgd+ zQ4DxS0e*i%F90UIKYV7odZsY8?!~$teL3t;FdM;kJT;5B`Q^;4@w=0gh!N9-G6Wpb zM>q(3!g}8Mj!-mQB@L!87(Q?uYBwe*>DT*7>d~+`IaD)|gcm41RN<-1$vK7%e0z86 z$2Ry~?6giiCgsvQ0(Z3`8taNSA3Y_rFVRoJe7v7Z(4B0XB-5P)5Iz?3$}taTqOB-< z#P^=vHF&>G*rD@T_lbUo2xTKHHTwZ2ViP zP(UMxysRf`NKZ=(DjE@rs+4XJ0l4v({+9>eYvq80d{-2Xm2b$r8b(-u>{i88iUYOI z>nhW@RbC38%Zm{3a%ibr(M_7<8w}8YKR4pHNVT?6d(tR|@z9PdlO*&Nx_70he3^14 zaT4>6P5Ngqr5jjhhPGAA*=$(-HgL;93KO4M2pYmb}SlZ8WE9)N3A>14~n&T zSfd!o1%G_16`<5U@LGxJNsRAa>w2L7HJHZ+E#E7<#n`^F;R(495|dV$X}!@>ZDj1t zzE6g9rkix3apqrLK=jsLdUcxCHF-pHSC2B26?nbH!dW#N=I2sWxz(A zb!)ln^_O-R@z&!8eHN{qOlA(2h5NurSDjRI07J;u_W2jOtOiTDHtL5!4JghjkrFu2 z_5dTmZ{v#vfCV#CuR+H`!|%4-;}ct&%lW`TBepWNq7^=gB?b&5vWb1Rw%wn%d}tR6 z`Ir4U%AFq;l9F{Mx~F&5V`ozuoMt*S4S8z!R-jOf1f}P9IwCgBJh6In(HGtCZhN6E z4fVe#D7L>BzNu{i$jI;I*=1wK_lv*pz2P2&*Zuf?P^$y;`tk;R!aeT1z>4`|+^^Sf z*DPHpy;_+Jh6wH0?4V4&+9p&`!Lv(Ke!+g1aGLsDfA9SLyxZ@xQRCpsM@rra*I_Oc z*;@$pQSPVD4td*vlZOtLQRSSXVw@xmnG@pbduJ)Vfg4ta4lU>N%hyY6X0@6pho*3hd|kCR!998_oU7L3C2w|^(6)fu-<2u4|AuYs_lQt z+OiL8DGiUi|6^u8l79*{0)z;S>Qfqg&XWA^NNRB7KgPc%>lFVwPtdf~v?&g-w!^2R zElV{<-@O>Cx_GJ{0$!U=$npGzuQ$Ns1qH9*Z{!!CcL+ty>%>BTI}_9%?2<6C800D! z<+2FoR0Uc!L5j~mwLRaXGSqMePql729JQ~P55s__y4yyn>gI#jALI@WP8s4hm_g$` z^l)m@%5~aokMfL=6{W?S{a2riGgZ6Lh@E@VKI5?()r(($%)}n)eYMXOf0xYa&=^n=FMxU1i@hmBFuNK-zVD`@D#D8&J>ZIe1?p_}O|M z&^fW>j@Zs!{)t$R?%#4*J>z3X)I7;cZRiEmH$tH?#g`#-%vq#fGOJ~2FWj6Tx5Gjq zKo8ek$c5Dvn|yILifT}~O8rQOP>GEO`o$#znKjMNji(icL3R zYT99xkB&j_NPlbb^D7u<{mBOcqkE+-kpq9If+g;k5g6u0zkt6x^FIwX7y7XV2Mh^) zK-atl5z&uVzTsJY0zX4Q3pb;W;M5(_eL#4y=MEGbm2CASx6wnpaCY-r+^6W%HRDe* z_h`MZ>PybHqiP%wM?!XYq!TAtgCP4_@(o(c;yq7bj-UG|Fo8{+^y~Xo*UIYbr1D@L z?$zCuW?Lr=31XiQp@QgY7FQn?Oafupt5PVX;`%V_yOAt8K>hPFC6?peH~ zgA%x26nD3!YMuwWZ#d#Fql#Ucf8`1K@Vw?M$)V#zzYh ztp^Uc=(*5t{ip~wwHn(&Z4tqCKZsY$vKpI`Zk08F9C)0*8p3z`T|Z(@fHk%OiXG8+ zL6ubT03f(#?Up&;NWfN>bFjyOx~7@^3zU}P*gf=p5Hc(`MBPZPT-#a0VCyS&*q=O2azJl()DoD-Y0jG3f)L*!P4E}ufe1uvP3dL(VWRjk5Iu9*D#I6)8;b?9)@ETQ;pPtP=GD7+JiyGeWpO=)#y-XgWXl|}L9;%Z= zK&syic`oaNn~hzU7Dr6Mexc9lt7tPa`51&DBk;Mq0~Aj0GqeWd^hnzxAuzhV|+L&Zr1wbNq66f>;`^YIe!!3vZ__}77Z@I zOd$v;5nN`%b^1XZ=7EgSA2F|hc&3sUgvOeKr}*_Wvf-}?pt1A%>L6Kp5ILVSUh7U= zx!3DYhQpU@ul~1OC!QpjJ#}&4Ok&BFh4)eZNt|rgicxNT{F_ z<5LG@_v*hNf4|l389&TX!)E)?z0sg;YLfeBPan0PJASEvL6vn^fW#Ni;Pvq`rUxpL zEL|7&9^^Nhy$=^9dTQKFx)D5Ao=?X#kVvZa-OM^9zAFt}C!8-7RG*T?<89<+7nV~P zrXIu15;?Zq)6PVjd#$&DoZ*E}qJX>b4MfRZ;Jq{SO(_fkB2oL#C7}kV4;2vnUyEQ1 z@pk7{X>_&{P2O};=|KA1NqxR~`b+uNtqaWb*=H6+MbY)#7{kJEWHF$O;o&iKwc=7f`Jh$QQR3nkO^hSTz)W@@?h%_+*}DG z@obtGGS!9-Jbc+O68t4bjzqvB8^`=q(ka)vef9P@T*a zLZwMu&dWe`C?JTtF$=UG-Bv?Rf`pVh>GJUMo%$c+wV*eD{x+#v+@|lnLZM~%z|^EC zArpdbQ~lDQ(2IY)L@bT{?nP0lZaTFIz%WEm_VFUo{;8lk~D z0!)LVge;Kwclw& zmP!dG3?Y{$b;uWFvO5s>jPMh|eaOQAWar(QJ3!_${A|uhUE0Ai-9bT0`l?{Y=_`!& z)s&B-nZ{k{@ns`=YXdV=$P>novHfvjhC5&GrWPET@hCODY9mm9Q+ zU{IuJRg6`O>8WkFsK0oarO{ReXP2|{*5iYliE=vw9TCHe<1wR7SG@A`z1Wth zW}BOf&5v;|bI~a#6>TBS&UV5-y&o1iyiR%UQqFN;9Md-_5^{bG+Bf889Tu!iDh$jk z6gu#}lXx=(%fC$R4Ylbef4b@Eft32%6UG0OnnfFu^Zc^^9LCq*1|U@zm4ujnlfG!T zYFzhLd-(;{dj2`x=rH5Fp=kXwA7k9Z4!6R!-9ovfdik|C3W&1B@|S~=2;>}pr-70~ zb8GnxtZnh0Mi-k`Esx2L87T}0anB))WT+$9$W3=P@v=$Rv}OF>4G-S^X;K!l>y)}H z_j$I~|c{5vDGR z%i$8iWBg7S=$V;0=*{ArWO5tGpa0V5ekdp{rym-9=00okC`6B3D5$>ETpYeBDz#A* zmD!AHy;~sSyMp3GHd0- z!uU;ax)vE}k@MomTi$~m9? zvdFh3;sSa&zSy40=nlM|&6SX@YP6sk2SP=e^Rm&}jBCEfei2~*?xq%`*X9NN>j2JY z;-~O}rn1lHwg4-H!K5F2|1VWEs>?)xEZJ`$LxFI7v4Lo*bLRu$I`sn~=&l(F@uK%o zXtt(+)HD{%%)b5~us}Fof!mbCt7s<=ghFQ5NVSG78p$3pKT%qu6vY9`c;#0ycq!UI z95Xm)Ns@`Na=OVq$Fayg(J|Xt^ zWAxe8`#dq$M?lgP1(Yoc!5+YxWYlCGyx-Gy3Rm9m>A0cabsR#x=-KaSWv(5)-{T6e zj7adlwzF(6h*H`7wcw@93}mVa#4(cVVA{#VVc%QFV`^Im)86Y~YOI54c^!D>c${S! z+uGOv17Lnc%3V96vwp|P_wAEEwN3uC_vBA>`$$02JL^{TgfIkfOG$*|_pH|>Vcee* zRr5sj+3V!UV&7Z)JgK!}#Eag2_Dg-9Xoie8bbGmY+>?1HhR(ik=(9!mO?nHzi6Q(Z zn(*_6Zf8e_=<}?T{>#2^=(9zLO?nHliNV+=B_ZbY6JjURPD(HPzM;<+<~8Zfye0~SAlBCZzCvhh2%)hig!KNaH7@+e z?_RyVcy@92^V^H7i*H^&|M}VTw-@KnuTH_>hTw1@JyJ0NFD~BzoB^0+c*Tq~J|b?% zt>)U<_1Gq&#=S+<*bq@;O+>jpPn+D?Nw-}vJ89Yl77;b>EuzMTh#G4m${l*99WL!G zu)!IH?@`8VZyaY7MiDnSw#h1mAri+;xuKC+`(qIiBE**@RlkC50^VGG146`;i>!lZ;n;p}j_n&9+b?nK zey6DJ%W~Cn6C2R zT-oW43&*i99M85{yxyC|Gd7D?-YlNM074Ro15~<3fb|hZptz-j=?81b&lW%e(+u(J zg4h}p-|zvMwhUrZ12T2(?l#Z1lf2$L$*l~CQ$HZuPP)GS?;~(^{p{iuAA*a^Z{Y^B zg;81u9ru)DKTfDWe-tlzcH7Y-iv%RI+qI-PwNX3bMQ>8d8mglO?znxOf76q0j+^O; z-ErgClv$^@GV2)1tW#2E`}TP@>(=Mltf9{qW!CAf%sPfL>y(t))_tz=E%2WX<~*6FR>I)>bKO3JM>uQ}z7$ckHC;wm=Q#c9VbPMf-D5vxvbvFaFN)hUTp zr=QbcI_}u#aZ{fyQq}1#RUJc!I3=mt(_J|27Qe&3Z|Ji{g7l8vn2)@f(Pt?^nD`ia z^E$z)1SC@t;1NhsOm5gXaOe~-B6I{W4?tHpQHqi9Ix;rT%Gem$wIjh^^d5ekbAJ2XY!K9-SG_fl|j6hqTdnyF;k>?wI9&3H>>GhaQyRD(gw24>LD*)_8 z?>>7*pMAa0Cp8Y3{5tT3s5#4+XNp3c$^LdbRGCbzhboLXTYr0M1M`vR8vXTZ``a&t zf$2wLC~~`N(lLBzVh`V8#M{QBr=~C;d5$q2u09_9G=)jGtPJ*jL!aw41@@wEpWV69 zXI)cp`+4psZa0l^;#xIAMxdq7Ezjrb`g~IEvpcWtvs}nZG2#K4Aztz@O$z=UE&{Mk zqrYZ+*Q;bT9RHguN7nAtr6GwIcgi)G8C^QjyJS6#s2m9M>FX%!Cr$&Kc5N!1+gqh` z4VBK-RXWFH(=^?IEswK>pE#DQLe5;*~5#BPR_cyt;aK~+j?G~#Vuak zX)Bt`bKI+=-PFUeExU~ROM!f{_<2Ln&Q<8 zr78elW2<#_Bj0PASLkG)wFu#S{@CCcPnmH0Pb zg&|5ZUYLX}yVW`nd1^7a9a-1BO+DFDLqqk{HBYC7=GmX4 zSvqLbID0FchCnaWO?T*9y+8NCWi1`FDQCTPGeb3-XdU#-a}OBZ!d)gKEFsgR;ReZM zHkrahmLNbW9jdC|BvykWhN9b{^Vpu_F}IwA&HEmN%}0jYYpf52XzV^Ln4{zSBNKA#vw}iE&D3}PV~N;rtLR5Vy#L?-`*P@DOc~k)j4BMZ?|X%-<~`< zw;WZ?`<_&tnA7Xjc2J#DU2KvF@t7CxjLGmOiSQB!yo8?2oBamU7;doWddCxI-+tnJ zVwu~MzH@t0p4*f1+`1L6n-Q5q&TSr1pBTq0faAQ{wmO)z^`L(8PWn!sk?MO=p1f)T zU`~Co%_!Lv=ZFzppoohJRsMV=r>`Spnpqi>E$g>;(yx*8J8Pak6^hQ6tsakFTrahT zaTv)7l_G_YLC35y-<~yQ%K+}306Z;62hA)CAZJgyJzhP4F2}CPyE^pi3{~xAF)ST- zwmr~dYSE{ref6nnS)ZDg^(k{{;8v9wPRkECp`S`v)AK#Xa-#Z(BQZ~Y;B~Gl3gT`)^y`qk{BDk}e zEfb4LJ?U#wPs%3sq-0Xpq|tM)FW4sFoI%a&Ub=oqQ_|8@%IvZ4P2a7EjNoSv{1O8oz7^T1GN%v6E87s)OZnbKEsUBLlaiFzPE&I& zJ|moc%JM~Mvp^|GNJdvF%6^GJN(coB%(7dOhPFP`3-aDYDvTNxlae5Bd*tTLx@juj z%&Mu_N>cQ$NMRJDn3M#0O)Y^dVHxl8#G()-5!o@*`KY8*OI4d6o}H7Jq7Nce$2;l9 z6ugrLrcf{RdzY#(DpgEMLceA(c&1z!Vv0!&BLE`|vkVEj&s_+4(V=x|Y{WQp6AIpm z)o*L7G10rk#Mm4Mr*<6F&c!iJNw^K9-vnL0Jr~o@{@Q(aSsoaDAVfJoF&rJapFKg` zmQUR~o!U2InZ|p@<17r-^h>t`>!+xQ`I5l!8yLYjKq)w5<08A?O$GGqo>Jcy*yQ&P zZ1Ro3CSMP1a)(Y!f1x++<`DI!R)?r>3wQE+hCA_=GozCydM8^RIC&jIGd+7~rf-XJ z@_WZP`9_SBug5s)om3%eg*gM_kWhXU>GIvpl#MXXNFrRMS_-H)?WPuaQ>)?X+oGcU z-ceD$5f$a@QBh9AjR*_j|2-~Ll2cwd!cie^Azq=3vJslj{Mm9m6{FGd1kx+VR5WKk zd49(&DFv01(zo7FVb#+LFst|z}~J=JTu{#|3U9HXOSy`yG9`fY}C z&n=Ud`ni(O)#x)hFM2Nn&lnwF8=ab% z|4VV<&+vH=;Uq&Kfhh&v5r82~_}K(6>&R?(_D7&DR^eme&bsY4ch(TY6|*MG zIngygM#;bm-=J6=CAl4sQC#~mif@ae@_R;6v6gdVcpQCrX2x9q-`k9WBqcXEMBo;t ze0%ZE2kQ+9!4hI|oCdd)Bq-hBEaTFjkHn;#MdMDa7L9KS;PU$haQP!cft~BaQ1w?c z%kBoIjHk$DAuJl2BDjfgj6k>m+ce4mTv}?-!~%42*&rdh$z{MdNOQUWN#(X z&>?5FgPCtRRqPDs8ZyWCuM9U zqkd9)7Y;J&26^R4v6E3hDgDd!n4{seA*25Kl9RsImz<2uqCw@+u*ITV%lPyi4X1RY z<4JLkNHZOd&8~BL+jWj%*EyP9=gdWbuZ5KQ{o?dCY8=C;aWtc54=MH2wX-h2qM{m|DrGS6rRGimOro z$|)4rW-{v4$==1U9CK2p?Z~LtgL>CyGDjLQWxRn#r)Svb&^Ux#lWy_R}(BB-gE0@uCkkGehnPNE#`w zdD-g*zDIyZ?VHYu4AG1ycZwWsavSs1O)YkRKJR3o&F2>LY-SU?v)*ENW{BOHDR%9b zg_KORdAIZDx$XFQW)tVL-r{^_i1V2#&Rt7-#w||KY75hl-vh?)23sL2@BgU{84;*# z)c4xHyrpAMuW#T=9f)}QUgZA0y?iC(1=;$96x<>ZlK8Kb9~eB{A$kbNmIAVrSL$24 zRL2Qsy_K3-S*e+sN=>CltbK$iigxNEvTeN0P?-0Q`|tA|hhlzNRq2Z*N!fVVdRV6{ z&H5@!v$BFRGxVfN_hg?)WQi@;Z(I}Ikl!6=L5h=l|M<+J@67t@JF~LBGc)v^nn@D} z6*oz2M()_?ty7F#J(BhKAx$(i^G)E}YBpBJje2z1}Xg>nzwnzxeL_HQ3-Zl~X(E zlsq$^oLH{)4Yx^z1GaP&CkkW?Ay36KG&H$T1k2MN;-*SF4E$rQqja1IRGxUgtvc&AT!*Rs>Dhjxok{KHv_|V5!TFN_09TPeN*EyoS9+q71fIM zW%?RrG~EVN6usb!o!@=Kc%>E~TMSjPltZkfUblR%xh5DU@NDRtd1+cS=} zW~b~UMHwwZm#~QVop-A|GPe~Tkpx*NQNm%ciKa`C0KRz+ zE?!+-pS^tf{26$5@%s7s^~?X}7_US=?7_hhT=E<}5Uf$~o*M!`{j$Zu`ytyR6s)#5 zL|GvU3jRML>FRg`<1LJi{~zAsinaKQ=e*!;jvaS+7KS)p4U4sKd+gQNrYURmLxN%e!B1R3brEGT zx;+logkKx&-WE93BOhbWHU>bpoSg`&4rY{BoZ@4|C zU;d>+qs4*+IOZHdoINO}$XO=e)2s*Fhriera)~wI#88q)7H2RC z*+znFq?zhmYLRU^4?%7=2mj-O}*AJ&h`h+iG}5kxrS3+Si8a0s__JvbV~ zBu0aOsTHXWB*Vt{2#yhe>56a9Y{V9AhC@``#W@^qGn5WPNZ~NVDIcsN-Ijugh;6~Gqs}tC@()op#XJ@qlm3DVXjjm z-H!P*N&lYKO{HupmMR8c>grlc;oareBSq?_Ma6RKJFvpkw!eQ!1Sb)4fT{dqzd-N; zQ;-&V^J2$~DagWLkjWnIOTN1Lj_n#d=8;JG7u;E6sGOU=hPNDog4Pn!H!wrfaSc52 zVu)haGBiPtz>jMbg9V{$ZQ`J~wf2aQb1Dg9goxs3Ns0o*YzbsxU1id)#F=iDwC5ji z#wP74UJ4+uR+5Uc^yk$DzH0}Tav!V@#+~)%Y%G8(1k05DZd1qx$*c2xhF}2 zVid|uC7q#Bu323yK}@K~+7hb*CW&aQG#t5~H)I>r1g_OC<%W~S2}E?l_v|aZH!-5w znvlw->>>1WP=&;!DcQ1x&3~2``R1ivFkSQQdr88U(y)f^PCPxQa34e0p!Z|vIVO{r z>yYn>ljpcP^6|V~OD>+IWJ4j2?qR9qptPlu>qik;3Dr7VV}7dv*X|?o9(P|R3QvdlzL^Q7Fd@xr@?Pta~kx1Yc9uRt~nj@J*~MMSI0G%x9hm(Mto72bhEXVK)TMv z0$K3{PliS?I}4!qxJD#0P;XwpWPo1sFN&r&N!)tL8-_`~;NM=p%4NxCrTFK8hr^pB zJ~X;L5(IvWBUE0I1GxhRr%ak24b-9b;B;_&lf=iW?VxzYjN!rQfWhJ>1D8aqJryr= zFnq;dN}C(X;<)%fNW`zGVG}EhpPUPgM49kx3B0|0HL`bSlpn*F1$T*fM#PV69IW{w zQ)`R0R3`31%H6U7Yr`e|0UAC&8k(*k7E9@S7=}y*77Jj3mTXPXlz&Nyz%F(cr0Wr1 zoP|5u*n@1h$)YC}a_gB+cgDa&@VfB?wl`X`14-#UF|kiiE7R_3*hgXUpqN3F#0JL7 zt_L<^rgAI}4oog~o-*@*Vi;vIz$0c@Wq%o}E2->0<$Hx+;xUAW;D8>JHZBs~4P;*^2C#mMMK^Ej zSB#0K!>ZAMw?JHnth$EABX8uWC3NB;FFbKPG?_2F>3lMF=F^EchtN4eC;kF0LeFu= zA)HRfON8cdF%9Ofi^j_d`{($i1yyPtDNCerDantXW`}zgR1ryNSpw%u3oR<|YaSP_ z&@vf1V#`i*_NyDFZT4D zrX-3`x@Rbvm-0x)|&#YX%mKQo34-zdNG;?@D2O`WXmSt+Zf(J9Pzc(2SurU84=SWDO&ApaLY>< zY?D|>-;xwO%W-E%O!vm2GDeu@`&wN<_EbuTL+)BDQ7OC)S8@`rP%WSz;%6vA z6jhrSphw^tU!n{Iz^jAY39*UC5-JA|aARmJghFTy!Y-~vaO zVq|Rk0Sv>z=}-SU8iXlH*uOX%I4@4Ac~k>iuVtfU6zDL?mNKJKS&T2{g-kWMZi0Ob$+e5-$g*1759la5UhHZ*V$r2fzL6 zXpkY825Xe%^P-Lm!LwIa>ijo5%9U3Y9w%zQ3N&B?cOXR>iEa>xvxt!Q+eDp5kXWR= zXzr5?(QP7EZy0Aa8n4`|&s0PRC17wKZ8M6}Z*iK@0l-V{&v}&}egLiy@NHE3^hZqB z--$2lS}~y}C=p^!8uBl3{64cQ8^==75J}^rY?*Xt*d58mjZ>Y>TG?tS&v|gXI+hNI zAxuP46r1Xy{P6gR@b@!2n68of`B3(;&K>nV#Bn{{BXC_&&#riCo8lFx;Or1w|IaCS zbA1lJIRuwyS64qiI|YCJ^;a-@Ew3Kn@tD8;_E&ITe83+R-+Y^rjrdaeiin15DU_43{Ee=r_(_HM7fieP@ zd9;{fX@W$?uNb~nL>4d_Ew@p`m_ly&G>AzQQ=B56VZrd=xKJA;G@ME1Tiq=BXKfI| z7!dV|>Vdc!H$Q%rq;tq@EAxu!mig1)OKo1>2Zv&sV)5%SqQNoyG6O@ffl0#1y0~Ot zrzn$6*?Z1o@4k0o7!D=+Atl^3g=jG36bx@MUGskqp`iQtFz=~iS~cVRW06pze_0f~ z*paQM+?{h7d;meeQyifc~7+mn9<#R#xPieR<_2@c*X^L)t@kJb4v zGuMv*-XtWYFs7EBsUkA=`Vv@E`7zq-PAER?>rL1|9RF3p8R?{s*sDF(Z+_HNZ<*fm zLm;L+EZF?<*#EE&$(9l(kn5KI*_M)sz0(FpaAy^N!mrjMDLoQVLEJabFY;%rRNN?> z>8)!B5VG%E`~ijE<1ma6xR9&BWGSeV4dhWeO(9z1_xc+q!#F2QV1N`?WfQc46bC%Y?3}C28P}Qf z*)GOihsM)ElLW<~fGjdaIMM=3mdE1cEyYVs-fdO+gt9@P=quLW(+nj{TSJE>LKt;q z%cHSKCUxA6!i(aN2U1o?nse=+oPY6ulvxMgl0) zDVZyk>4p_glA2d(u=?U^7_|JhEpOh`vl*qtDyV;8CR6G1K25fCo*;Cg?UL!RduFtP zNF;ykYUIrKOta&yg^Db`QvyL8LgQH6^O_y8t;zm}XfPU$4oBdEE7K`r#B78&3C6%x z0FE@xk<(1#Xji=Etzh~dg-miv%E2c4FHr-U=;Y&_nj_?u% zyTFW<`t4msFD|}Rlgrkjac-wBBeiJS>a}*UO7+}Uel*&qb#92D?Ahdd3C6-s5WX3% zBeG2?+3cIwFR$3A+YD&|o2&!Rz8UEl8_%5cYgX+C&N`TWr_BmUy}4F`-{F{9w%dcP zf}wi0>^h^_$XAEUQ-3!07p?sF(>?Sk15!o&HqK5FPHdl^5+LjRoJF^AmsMyp;*QO!DZ}nCH>%-2 zgjFP!>EXPEs@a)1lh7ag4hm<18;<=Y3f+@%5xVYdwwO&(u$V3be>Qbpe-Vt`&>x4; z^POPqcyN3&nd~D-o1R;ezR!npkA+?SyiQD1fR2!|-pkUCsVyW`C9LE}d`_@bEDSK+ zjX4a;RK#DU-~DGKb?3kT70(prt*&TODZLdE!=7#7Un zHG<)fDW>R$I1rA{v*OF#C0}Haij07fFi3>KK;#bPrkT)WHY7y3^&_MB#c=J&Hq9?o zlG)(te|6i=qV;h>)limwo9GUFf?d2QShQYSsBvX?Cgt=9;7`7NgQ(^}FN0u|EDxmOs-q`dKvm`@5t3RD=@n*Wq7fbU~&=UuB2*uOmgvI@R?@BE3 z-AJxMrpH2%Z5KoCn8my{g2(_@zT2?a(s_kYOfylQ(?Vf2#wxi9RB%<5mGjRl(N(9# z#pp-!pWj^`f#fDQ0%()a-7}mXNk`aG5qo-6lsRScUYupu)473(I()F{5zpmovgCCc zR5C?~ni z!Vs&>vMMxae~Ja6_vZm;Vk7`CsMbU&vAo1=yp{Oa_k3XcD9lPrt}4bn0%d`%33lI+ zjB=(bsv{5_YqgE@7)VC%F@v%s5zoRU`T4l09zJABA<1&;`w;(REonIf*FQY_0mx`t zuEr3qOaH%M4KuKa7|PJZZ0or#k#&LN9{H=a80xpnfX5-WhYuBFtnTpoIr)Nw_1Drqo9 zPC_S^m?Oy$z0~e!vc&!H(_pTd>X$i*IJjU_>&EQBx@6`{WB<*rc6IOIZ!A-hwE@8%bY*bWF=+x!G*SgDVR)IFG30FgLn$T4LLS zM>y}bL$O~6@6m2>I#5+021kQLR9@NahP-b7@n$#7-~RS5Lot_V1>9zv&miSbU^W>& zvK!Ij!$t#I4rD9q*}(gW4Yq6zQ|{BRKSRnB#gqd_A)y5Drg@q4(nVF-o%kEa72>q2 zKnQ9_8x-Pg?Ky!8I+R~f0tVls4M}%{V!c5?H_0*sPhX#XKU_f0Bl*G7E~993sQb#zp zc!3pJmt;q_{466=5m$h_m3gin2LxoVt;|* z)Mqq}oYc>D5^rECE1mrz_O2xN^WVIR(9e0|)2&ro{S4ls}RVFqcU7mhVP4%7TdCDaSTRb_MS^;vGaMz zXD-;a-y?j3Vw7b=W)WikFJ3%+n+ydF>fDU~F;bt~D0`{i^Y81{Y8lQ*o$l9|vYfqO zVd4v~B9<{k`yh_5MmRYCT)M3qxgH!W<6aIdQk+`3o&2?6IysD)GOT#r%5p^Q0 z5ryELn442xJmj6cFik*TlPJs-ELAK)vTFlsT|dm=lEL-)B^$pi4=v%t$3Nq>?PEfv z_clMNugp!pfNdl68if$IS)4hf`(2$m*vj%O5Vl&MMNjR6@USbiKzq+iv^-|_wnj~` zwO#ont5h;q+YnvJ*Lzl|gmS;@Qv$85PKB)1+RREFsDbjJ>rx@T=T)hX)V;0AGSHe% z-1~auCGDH_&%987gZ8Nd>ZyB{>-twT&k}|%dZ%o-4`CHaRpazV$|?##7&&pG=n!dY(U-dax$7!yrhho9O~t z*RAsE09oJWHHkzfvG(^jI1W{H8U||=6z}$%>Sg;@M^gt+;<^LaCTiuoMw9-m>J4ZK z{SIIYcs;Tqx=bCf6>cH%HGkJcT(;%SZ21KFYk5XmC1eC}97J1HB?2zU4U$J{p<>4{ z2=dd<6ot4+6~kGxSZWy$AjNWo)d*rh4N?MSX4yKEUDds)ZA3G8KBj|Rk;8t%*?#L zm^wVqnj4&9S#Ai%y9Eh%0=b$+?O0!49I(WZl%cBFrZKCRZ!Vrm$Jv|j z&#wM4IQ2?1b17>uyva}sE}ns>tid5b@y+lCra)EKiFPF<_5MB{6>^#48yuk(dY%O^ z;>%q6(vAjt0Z_Jls+B~K28n7P=FQYO@M}Wox4F|>U5di}gRcnpBZ}X;_yTJx3aGj; zt!j7W_5b#`ob&JQR=G=6xX}syw3WL`NcL&QRmPtWrU?os-@*-!a7~>Vrl{fsEY*9y zwTh#Ck=~N$AzxhHjE~rVr&c7pIz{b@7pl0TFnC|lQg9;GG7XRR{Smn2IVaDyFp@vW z@;&)4Ra)-1Xio|BJ*SIV=SBW_Byd>#Hh`h?q5J3BGi#4T5)3)Hy`z~Hl zN2&p2OhR;NDK=FKh*95(kSxV3UJ@9710xs*DCGj-mHJLiflRu;Ymv&lmMnwEGvZk% z4jcPsE24F+1|}AD(;H!Qta!xX?kRU|6j3xT%TXQi9m2-~x36#SMOC$ks($c0euT*|*Sp;U7+ zrI~hdS&Ep@xuh)2=HKo@Lm=`W&fCc{3gh5vt1jvPSz6 zfC3246w^YXbmCFHFmzt+QX{bA9&FUnIanI<5ctYaK2xRDim}v!hQzJfBn0U;79~d| zq|((l0s^1r(JF-jx>~ohVQ%3cCnOx+ zxW`ZON@|Dys?fASSq4|g7P0(^2^zW$Bw33~KNwLYlH#=HR$QguL6HKR(MR5LFU}e~HSsnhXXH7a>&)G8Uf*g4(Rg{{xF`O}PuCmnX~F zba{f72dnC1%fL z$u + +## Helm-Chart + +##### Scan Results + +#### Chart Object: jump/templates/common.yaml + + + +| Type | Misconfiguration ID | Check | Severity | Explaination | Links | +|:----------------|:------------------:|:-----------:|:------------------:|-----------------------------------------|-----------------------------------------| +| Kubernetes Security Check | KSV001 | Process can elevate its own privileges | MEDIUM |
Expand... A program inside the container can elevate its own privileges and run as root, which might give the program control over the container and node.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.allowPrivilegeEscalation' to false
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv001
| +| Kubernetes Security Check | KSV003 | Default capabilities not dropped | LOW |
Expand... The container should drop all default capabilities and add only those that are needed for its execution.


Container 'RELEASE-NAME-jump' of Deployment 'RELEASE-NAME-jump' should add 'ALL' to 'securityContext.capabilities.drop'
|
Expand...https://kubesec.io/basics/containers-securitycontext-capabilities-drop-index-all/
https://avd.aquasec.com/appshield/ksv003
| +| Kubernetes Security Check | KSV003 | Default capabilities not dropped | LOW |
Expand... The container should drop all default capabilities and add only those that are needed for its execution.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should add 'ALL' to 'securityContext.capabilities.drop'
|
Expand...https://kubesec.io/basics/containers-securitycontext-capabilities-drop-index-all/
https://avd.aquasec.com/appshield/ksv003
| +| Kubernetes Security Check | KSV012 | Runs as root user | MEDIUM |
Expand... 'runAsNonRoot' forces the running image to run as a non-root user to ensure least privileges.


Container 'RELEASE-NAME-jump' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.runAsNonRoot' to true
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv012
| +| Kubernetes Security Check | KSV012 | Runs as root user | MEDIUM |
Expand... 'runAsNonRoot' forces the running image to run as a non-root user to ensure least privileges.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.runAsNonRoot' to true
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv012
| +| Kubernetes Security Check | KSV014 | Root file system is not read-only | LOW |
Expand... An immutable root file system prevents applications from writing to their local disk. This can limit intrusions, as attackers will not be able to tamper with the file system or write foreign executables to disk.


Container 'RELEASE-NAME-jump' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.readOnlyRootFilesystem' to true
|
Expand...https://kubesec.io/basics/containers-securitycontext-readonlyrootfilesystem-true/
https://avd.aquasec.com/appshield/ksv014
| +| Kubernetes Security Check | KSV014 | Root file system is not read-only | LOW |
Expand... An immutable root file system prevents applications from writing to their local disk. This can limit intrusions, as attackers will not be able to tamper with the file system or write foreign executables to disk.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.readOnlyRootFilesystem' to true
|
Expand...https://kubesec.io/basics/containers-securitycontext-readonlyrootfilesystem-true/
https://avd.aquasec.com/appshield/ksv014
| +| Kubernetes Security Check | KSV017 | Privileged container | HIGH |
Expand... Privileged containers share namespaces with the host system and do not offer any security. They should be used exclusively for system containers that require high privileges.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.privileged' to false
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#baseline
https://avd.aquasec.com/appshield/ksv017
| +| Kubernetes Security Check | KSV020 | Runs with low user ID | MEDIUM |
Expand... Force the container to run with user ID > 10000 to avoid conflicts with the host’s user table.


Container 'RELEASE-NAME-jump' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.runAsUser' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv020
| +| Kubernetes Security Check | KSV020 | Runs with low user ID | MEDIUM |
Expand... Force the container to run with user ID > 10000 to avoid conflicts with the host’s user table.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.runAsUser' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv020
| +| Kubernetes Security Check | KSV021 | Runs with low group ID | MEDIUM |
Expand... Force the container to run with group ID > 10000 to avoid conflicts with the host’s user table.


Container 'RELEASE-NAME-jump' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.runAsGroup' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv021
| +| Kubernetes Security Check | KSV021 | Runs with low group ID | MEDIUM |
Expand... Force the container to run with group ID > 10000 to avoid conflicts with the host’s user table.


Container 'autopermissions' of Deployment 'RELEASE-NAME-jump' should set 'securityContext.runAsGroup' > 10000
|
Expand...https://kubesec.io/basics/containers-securitycontext-runasuser/
https://avd.aquasec.com/appshield/ksv021
| +| Kubernetes Security Check | KSV029 | A root primary or supplementary GID set | LOW |
Expand... Containers should be forbidden from running with a root primary or supplementary GID.


Deployment 'RELEASE-NAME-jump' should set 'spec.securityContext.runAsGroup', 'spec.securityContext.supplementalGroups[*]' and 'spec.securityContext.fsGroup' to integer greater than 0
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv029
| + +## Containers + +##### Detected Containers + + tccr.io/truecharts/alpine:v3.15.2@sha256:29ed3480a0ee43f7af681fed5d4fc215516abf1c41eade6938b26d8c9c2c7583 + daledavies/jump:v1.2.1@sha256:d7726d922000400e58c47555a5a6b6ac74bf04c435e526682bb07c0de6d35c75 + +##### Scan Results + + +#### Container: tccr.io/truecharts/alpine:v3.15.2@sha256:29ed3480a0ee43f7af681fed5d4fc215516abf1c41eade6938b26d8c9c2c7583 (alpine 3.15.2) + + +**alpine** + + +| Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | +|:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| +| busybox | CVE-2022-28391 | CRITICAL | 1.34.1-r4 | 1.34.1-r5 |
Expand...https://access.redhat.com/security/cve/CVE-2022-28391
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-28391
https://git.alpinelinux.org/aports/plain/main/busybox/0001-libbb-sockaddr2str-ensure-only-printable-characters-.patch
https://git.alpinelinux.org/aports/plain/main/busybox/0002-nslookup-sanitize-all-printed-strings-with-printable.patch
https://gitlab.alpinelinux.org/alpine/aports/-/issues/13661
https://nvd.nist.gov/vuln/detail/CVE-2022-28391
| +| curl | CVE-2022-22576 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-22576
https://curl.se/docs/CVE-2022-22576.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22576
https://hackerone.com/reports/1526328
https://nvd.nist.gov/vuln/detail/CVE-2022-22576
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| curl | CVE-2022-27775 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27775
https://curl.se/docs/CVE-2022-27775.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27775
https://hackerone.com/reports/1546268
https://nvd.nist.gov/vuln/detail/CVE-2022-27775
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| curl | CVE-2022-27774 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27774
https://curl.se/docs/CVE-2022-27774.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27774
https://hackerone.com/reports/1543773
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| curl | CVE-2022-27776 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27776
https://curl.se/docs/CVE-2022-27776.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27776
https://hackerone.com/reports/1547048
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-22576 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-22576
https://curl.se/docs/CVE-2022-22576.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22576
https://hackerone.com/reports/1526328
https://nvd.nist.gov/vuln/detail/CVE-2022-22576
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-27775 | HIGH | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27775
https://curl.se/docs/CVE-2022-27775.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27775
https://hackerone.com/reports/1546268
https://nvd.nist.gov/vuln/detail/CVE-2022-27775
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-27774 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27774
https://curl.se/docs/CVE-2022-27774.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27774
https://hackerone.com/reports/1543773
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| libcurl | CVE-2022-27776 | MEDIUM | 7.80.0-r0 | 7.80.0-r1 |
Expand...https://access.redhat.com/security/cve/CVE-2022-27776
https://curl.se/docs/CVE-2022-27776.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27776
https://hackerone.com/reports/1547048
https://security.netapp.com/advisory/ntap-20220609-0008/
https://ubuntu.com/security/notices/USN-5397-1
| +| ssl_client | CVE-2022-28391 | CRITICAL | 1.34.1-r4 | 1.34.1-r5 |
Expand...https://access.redhat.com/security/cve/CVE-2022-28391
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-28391
https://git.alpinelinux.org/aports/plain/main/busybox/0001-libbb-sockaddr2str-ensure-only-printable-characters-.patch
https://git.alpinelinux.org/aports/plain/main/busybox/0002-nslookup-sanitize-all-printed-strings-with-printable.patch
https://gitlab.alpinelinux.org/alpine/aports/-/issues/13661
https://nvd.nist.gov/vuln/detail/CVE-2022-28391
| +| zlib | CVE-2018-25032 | HIGH | 1.2.11-r3 | 1.2.12-r0 |
Expand...http://seclists.org/fulldisclosure/2022/May/33
http://seclists.org/fulldisclosure/2022/May/35
http://seclists.org/fulldisclosure/2022/May/38
http://www.openwall.com/lists/oss-security/2022/03/25/2
http://www.openwall.com/lists/oss-security/2022/03/26/1
https://access.redhat.com/security/cve/CVE-2018-25032
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-25032
https://errata.almalinux.org/8/ALSA-2022-2201.html
https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531
https://github.com/madler/zlib/compare/v1.2.11...v1.2.12
https://github.com/madler/zlib/issues/605
https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.4
https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-v6gp-9mmm-c6p5
https://groups.google.com/g/ruby-security-ann/c/vX7qSjsvWis/m/TJWN4oOKBwAJ
https://linux.oracle.com/cve/CVE-2018-25032.html
https://linux.oracle.com/errata/ELSA-2022-2213.html
https://lists.debian.org/debian-lts-announce/2022/04/msg00000.html
https://lists.debian.org/debian-lts-announce/2022/05/msg00008.html
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NS2D2GFPFGOJUL4WQ3DUAY7HF4VWQ77F/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VOKNP2L734AEL47NRYGVZIKEFOUBQY5Y/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XOKFMSNQ5D5WGMALBNBXU3GE442V74WU/
https://nvd.nist.gov/vuln/detail/CVE-2018-25032
https://security.netapp.com/advisory/ntap-20220526-0009/
https://support.apple.com/kb/HT213255
https://support.apple.com/kb/HT213256
https://support.apple.com/kb/HT213257
https://ubuntu.com/security/notices/USN-5355-1
https://ubuntu.com/security/notices/USN-5355-2
https://ubuntu.com/security/notices/USN-5359-1
https://ubuntu.com/security/notices/USN-5359-2
https://www.debian.org/security/2022/dsa-5111
https://www.openwall.com/lists/oss-security/2022/03/24/1
https://www.openwall.com/lists/oss-security/2022/03/28/1
https://www.openwall.com/lists/oss-security/2022/03/28/3
| + + +#### Container: daledavies/jump:v1.2.1@sha256:d7726d922000400e58c47555a5a6b6ac74bf04c435e526682bb07c0de6d35c75 (alpine 3.16.0) + + +**alpine** + + +| Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | +|:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| +| pcre2 | CVE-2022-1586 | CRITICAL | 10.39-r0 | 10.40-r0 |
Expand...https://access.redhat.com/security/cve/CVE-2022-1586
https://bugzilla.redhat.com/show_bug.cgi?id=2077976,
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1586
https://github.com/PCRE2Project/pcre2/commit/50a51cb7e67268e6ad417eb07c9de9bfea5cc55a,
https://github.com/PCRE2Project/pcre2/commit/d4fa336fbcc388f89095b184ba6d99422cfc676c
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DWNG2NS3GINO6LQYUVC4BZLUQPJ3DYHA/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JXINO3KKI5DICQ45E2FKD6MKVMGJLEKJ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KAX7767BCUFC7JMDGP7GOQ5GIZCAUGBB/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/M2GLQQUEY5VFM57CFYXVIFOXN2HUZPDM/
https://nvd.nist.gov/vuln/detail/CVE-2022-1586
| +| pcre2 | CVE-2022-1587 | CRITICAL | 10.39-r0 | 10.40-r0 |
Expand...https://access.redhat.com/security/cve/CVE-2022-1587
https://bugzilla.redhat.com/show_bug.cgi?id=2077983,
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1587
https://github.com/PCRE2Project/pcre2/commit/03654e751e7f0700693526b67dfcadda6b42c9d0
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DWNG2NS3GINO6LQYUVC4BZLUQPJ3DYHA/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JXINO3KKI5DICQ45E2FKD6MKVMGJLEKJ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KAX7767BCUFC7JMDGP7GOQ5GIZCAUGBB/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/M2GLQQUEY5VFM57CFYXVIFOXN2HUZPDM/
https://nvd.nist.gov/vuln/detail/CVE-2022-1587
| + +**composer** + + +| Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | +|:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| +| guzzlehttp/guzzle | CVE-2022-31042 | HIGH | 6.5.6 | 7.4.4, 6.5.7 |
Expand...https://github.com/advisories/GHSA-f2wf-25xc-69c9
https://github.com/guzzle/guzzle/commit/e3ff079b22820c2029d4c2a87796b6a0b8716ad8
https://github.com/guzzle/guzzle/security/advisories/GHSA-f2wf-25xc-69c9
https://www.drupal.org/sa-core-2022-011
https://www.rfc-editor.org/rfc/rfc9110.html#name-redirection-3xx
| +| guzzlehttp/guzzle | CVE-2022-31043 | HIGH | 6.5.6 | 7.4.4, 6.5.7 |
Expand...https://github.com/advisories/GHSA-w248-ffj2-4v5q
https://github.com/guzzle/guzzle/commit/e3ff079b22820c2029d4c2a87796b6a0b8716ad8
https://github.com/guzzle/guzzle/security/advisories/GHSA-w248-ffj2-4v5q
https://www.drupal.org/sa-core-2022-011
https://www.rfc-editor.org/rfc/rfc9110.html#name-redirection-3xx
| + diff --git a/incubator/jump/0.0.1/templates/common.yaml b/incubator/jump/0.0.1/templates/common.yaml new file mode 100644 index 00000000000..c1a366e1cf0 --- /dev/null +++ b/incubator/jump/0.0.1/templates/common.yaml @@ -0,0 +1 @@ +{{ include "tc.common.loader.all" . }} diff --git a/incubator/jump/0.0.1/values.yaml b/incubator/jump/0.0.1/values.yaml new file mode 100644 index 00000000000..e69de29bb2d diff --git a/incubator/jump/item.yaml b/incubator/jump/item.yaml new file mode 100644 index 00000000000..08fcd80d3c5 --- /dev/null +++ b/incubator/jump/item.yaml @@ -0,0 +1,4 @@ +icon_url: https://truecharts.org/_static/img/appicons/jump.png +categories: +- media +