-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

===========================================================================
             AUSCERT External Security Bulletin Redistribution

                               ESB-2019.2809
          IBM Financial Transaction Manager for Digital Payments
                               26 July 2019

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:           IBM Financial Transaction Manager for Digital Payments
Publisher:         IBM
Operating System:  Linux variants
                   Windows
                   AIX
Impact/Access:     Execute Arbitrary Code/Commands -- Remote/Unauthenticated      
                   Modify Arbitrary Files          -- Remote/Unauthenticated      
                   Overwrite Arbitrary Files       -- Remote/Unauthenticated      
                   Delete Arbitrary Files          -- Remote/Unauthenticated      
                   Cross-site Request Forgery      -- Remote with User Interaction
                   Denial of Service               -- Remote/Unauthenticated      
                   Cross-site Scripting            -- Remote with User Interaction
                   Access Confidential Data        -- Existing Account            
Resolution:        Patch/Upgrade
CVE Names:         CVE-2019-4032 CVE-2019-2684 CVE-2018-12547
                   CVE-2018-2026 CVE-2018-1890 CVE-2018-1871
                   CVE-2018-1790 CVE-2018-1670 

Reference:         ESB-2019.2801
                   ESB-2019.2774
                   ESB-2019.2771
                   ESB-2019.2759

Original Bulletin: 
   http://www.ibm.com/support/docview.wss?uid=ibm10869504
   http://www.ibm.com/support/docview.wss?uid=ibm10731597
   http://www.ibm.com/support/docview.wss?uid=ibm10743117
   http://www.ibm.com/support/docview.wss?uid=ibm10795536
   http://www.ibm.com/support/docview.wss?uid=ibm10731497
   http://www.ibm.com/support/docview.wss?uid=ibm10875308
   http://www.ibm.com/support/docview.wss?uid=ibm10884034

Comment: This bulletin contains seven (7) IBM security advisories.

- --------------------------BEGIN INCLUDED TEXT--------------------

    Security Bulletin: Financial Transaction Manager for Digital Payments is
      affected by a potential SQL Injection vulnerability (CVE-2019-4032)

Security Bulletin

Summary

   Financial Transaction Manager for Digital Payments (FTM DP) for
   Multi-Platform has addressed the following vulnerability. A potential
   blind SQL injection on a web service.

Vulnerability Details

   CVEID:  CVE-2019-4032
   DESCRIPTION: IBM Financial Transaction Manager for Digital Payments for
   Multi-Platform is vulnerable to SQL injection. A remote attacker could
   send specially-crafted SQL statements, which could allow the attacker to
   view, add, modify or delete information in the back-end database.
   CVSS Base Score: 6.3
   CVSS Temporal Score: See
   https://exchange.xforce.ibmcloud.com/vulnerabilities/155998  for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L)

Affected Products and Versions

   FTM DP v3.2.0.0-3.2.0.1, v3.2.1.0

Remediation/Fixes

   Product    VRMF             APAR          Remediation/First Fix
   FTM DP     3.2.0.0, 3.2.0.1 PH07875       3.2.0.1-FTM-DP-MP-iFix0002
   FTM DP     3.2.1.0          PH07875       3.2.1.0-FTM-DP-MP-iFix0003

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   25 July 2019: Original version published

   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.


Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM
   FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0, 3.2.1

   Operating system(s): Platform Independent

   Reference #: 0869504

   Modified date: 25 July 2019

- ---------------------------------------------------------------------------

    Security Bulletin: Financial Transaction Manager for Digital Payments is
affected by a potential cross-site request forgery vulnerability (CVE-2018-1790)

Security Bulletin

Summary

   Financial Transaction Manager for Digital Payments (FTM DP) for
   Multi-Platform has addressed the following vulnerability. A potential
   cross-site request forgery which could allow an attacker to execute
   malicious and unauthorized actions transmitted from a user that the
   website trusts.

Vulnerability Details

   CVEID: CVE-2018-1790
   DESCRIPTION: IBM Financial Transaction Manager for Digital Payments for
   Multi-Platform is vulnerable to cross-site request forgery which could
   allow an attacker to execute malicious and unauthorized actions
   transmitted from a user that the website trusts.
   CVSS Base Score: 4.3
   CVSS Temporal Score:
   See https://exchange.xforce.ibmcloud.com/vulnerabilities/148944 for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N)

Affected Products and Versions

   FTM DP v3.2.0.0

Remediation/Fixes

   Product    VRMF       APAR          Remediation/First Fix
   FTM DB     3.2.0.0    PH02840       3.2.0.1-FTM-DP-MP-iFix0002

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   25 July 2019: Original version published


   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.

Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM
   FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0

   Operating system(s): Platform Independent

   Reference #: 0731597

   Modified date: 25 July 2019

- ------------------------------------------------------------------------------

    Security Bulletin: Financial Transaction Manager for Digital Payments is
affected by a potential cross-site scripting (XSS) vulnerability (CVE-2018-1871)

Security Bulletin

Summary

   Financial Transaction Manager for Digital Payments (FTM DP) for
   Multi-Platform has addressed the following vulnerability. A potential
   cross-site scripting vulnerability allows users to embed arbitrary
   JavaScript code in the Web UI thus altering the intended functionality
   potentially leading to credentials disclosure within a trusted session.

Vulnerability Details

   CVEID: CVE-2018-1871
   DESCRIPTION: IBM Financial Transaction Manager for Digital Payments for
   Multi-Platform is vulnerable to cross-site scripting. This vulnerability
   allows users to embed arbitrary JavaScript code in the Web UI thus
   altering the intended functionality potentially leading to credentials
   disclosure within a trusted session.
   CVSS Base Score: 5.4
   CVSS Temporal Score:
   See https://exchange.xforce.ibmcloud.com/vulnerabilities/151329 for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N)

Affected Products and Versions

   FTM DP v3.2.0.0, v3.2.0.1

Remediation/Fixes

   Product    VRMF             APAR          Remediation/First Fix
   FTM DB     3.2.0.0, 3.2.0.1 PH05871       3.2.0.1-FTM-DP-MP-iFix0002

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   25 July 2019: Original version published


   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.

Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM
   FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0

   Operating system(s): Platform Independent

   Reference #: 0743117

   Modified date: 25 July 2019

- -----------------------------------------------------------------------------

    Security Bulletin: Financial Transaction Manager for Digital Payments is
      affected by a potential directory listing of internal product files
                         vulnerability (CVE-2018-2026)

Security Bulletin

Summary

   Financial Transaction Manager for Digital Payments (FTM DP) for
   Multi-Platform has addressed the following vulnerability. A potential
   directory listing vulnerability could allow an authenticated user to
   obtain a directory listing of internal product files.

Vulnerability Details

   CVEID:  CVE-2018-2026
   DESCRIPTION: IBM Fnancial Transaction Manager for Digital Payments could
   allow an authenticated user to obtain a directory listing of internal
   product files.
   CVSS Base Score: 4.3
   CVSS Temporal Score: See
   https://exchange.xforce.ibmcloud.com/vulnerabilities/155552  for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)

Affected Products and Versions

   FTM DP v3.2.0.0 - 3.2.0.1, v3.2.1.0

Remediation/Fixes

   Product    VRMF              APAR          Remediation/First Fix
   FTM DP     3.2.0.0 - 3.2.0.1 PH07379       3.2.0.1-FTM-DP-MP-iFix0002
   FTM DP     3.2.1.0           PH07379       3.2.1.0-FTM-DP-MP-iFix0002

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   21 January 2019: Original version published
   25 July 2019: Updated for v3.2.0

   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.

Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM
   FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0, 3.2.1

   Operating system(s): Platform Independent

   Reference #: 0795536

   Modified date: 25 July 2019

- -----------------------------------------------------------------------

     Security Bulletin: Financial Transaction Manager for Digital Payments:
          Information Leakage in configuration listing (CVE-2018-1670)

Security Bulletin

Summary

   IBM Financial Transaction Manager for Digital Payments (FTM DP) for
   Multi-Platform could allow an authenticated user to obtain sensitive
   product configuration information from log files.

Vulnerability Details

   CVEID: CVE-2018-1670
   DESCRIPTION: IBM Financial Transaction Manager for ACH Services for
   Multi-Platform could allow an authenticated user to obtain sensitive
   product configuration information from log files.
   CVSS Base Score: 3.1
   CVSS Temporal Score:
   See https://exchange.xforce.ibmcloud.com/vulnerabilities/144946 for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N)

Affected Products and Versions

   FTM DP v3.2.0.0

Remediation/Fixes

   Product    VRMF       APAR          Remediation/First Fix
   FTM DB     3.2.0.0    PH02812       3.2.0.1-FTM-DP-MP-iFix0002

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   25 July 2019: Original version published

   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.

Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0

   Operating system(s): Platform Independent

   Reference #: 0731497

   Modified date: 25 July 2019

- --------------------------------------------------------------------------

Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect Financial
                    Transaction Manager for Digital Payments

Security Bulletin

Summary

   There are multiple vulnerabilities in IBM(R) Runtime Environment Java(TM)
   Version 8 used by Financial Transaction Manager for Digital Payments.
   Financial Transaction Manager for Digital Payments (FTM DP) has addressed
   the applicable CVEs.

Vulnerability Details

   CVEID: CVE-2018-1890
   DESCRIPTION: IBM SDK, Java Technology Edition Version 8 on the AIX
   platform uses absolute RPATHs which may facilitate code injection and
   privilege elevation by local users.
   CVSS Base Score: 5.6
   CVSS Temporal Score:
   See https://exchange.xforce.ibmcloud.com/vulnerabilities/152081 for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L)

   CVEID: CVE-2018-12547
   DESCRIPTION: Eclipse OpenJ9 is vulnerable to a buffer overflow, caused by
   improper bounds checking by the jio_snprintf() and jio_vsnprintf()
   functions. By sending an overly long argument, a remote attacker could
   overflow a buffer and execute arbitrary code on the system or cause the
   application to crash.
   CVSS Base Score: 9.8
   CVSS Temporal Score:
   See https://exchange.xforce.ibmcloud.com/vulnerabilities/157512 for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)

Affected Products and Versions

   FTM DP: 3.2.0.0 - 3.2.0.1

Remediation/Fixes

   Product VRMF   APAR    Remediation / First Fix
   FTM DP  3.2.0 PH09460 3.2.0.1-FTM-DP-MP-iFix0002

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

   IBM Java SDK Security Bulletin

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   25 July 2019: Original version published

   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.

Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM
   FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0

   Operating system(s): Platform Independent

   Reference #: 0875308

   Modified date: 25 July 2019

- ---------------------------------------------------------------------------

     Security Bulletin: Vulnerability in IBM Java Runtime affect Financial
                    Transaction Manager for Digital Payments

Security Bulletin

Summary

   There is a vulnerability in IBM(R) Runtime Environment Java(TM) Version 8
   used by Financial Transaction Manager for Digital Payments. Financial
   Transaction Manager for Digital Payments (FTM DP) has addressed the
   applicable CVE.

Vulnerability Details

   CVEID: CVE-2019-2684
   DESCRIPTION: An unspecified vulnerability in Oracle Java SE related to the
   Java SE, Java SE Embedded RMI component could allow an unauthenticated
   attacker to cause no confidentiality impact, high integrity impact, and no
   availability impact.
   CVSS Base Score: 5.9
   CVSS Temporal Score:
   See https://exchange.xforce.ibmcloud.com/vulnerabilities/159776 for the
   current score
   CVSS Environmental Score*: Undefined
   CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)

Affected Products and Versions

   FTM DP: 3.2.0.0 - 3.2.0.1

Remediation/Fixes

   Product       VRMF         APAR    Remediation / First Fix
   FTM DP  3.2.0.0 - 3.2.0.1 PH11961 3.2.0.1-FTM-DP-MP-iFix0002

Workarounds and Mitigations

   None

Get Notified about Future Security Bulletins

   Subscribe to My Notifications to be notified of important product support
   alerts like this.

Reference

   Complete CVSS v3 Guide
   On-line Calculator v3

   IBM Java SDK Security Bulletin

Related Information

   IBM Secure Engineering Web Portal
   IBM Product Security Incident Response Blog

Change History

   25 July 2019: Original version published


   *The CVSS Environment Score is customer environment specific and will
   ultimately impact the Overall CVSS Score. Customers can evaluate the
   impact of this vulnerability in their environments by accessing the links
   in the Reference section of this Security Bulletin.

Disclaimer

   According to the Forum of Incident Response and Security Teams (FIRST),
   the Common Vulnerability Scoring System (CVSS) is an "industry open
   standard designed to convey vulnerability severity and help to determine
   urgency and priority of response." IBM PROVIDES THE CVSS SCORES ""AS IS""
   WITHOUT WARRANTY OF ANY KIND, INCLUDING THE IMPLIED WARRANTIES OF
   MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. CUSTOMERS ARE
   RESPONSIBLE FOR ASSESSING THE IMPACT OF ANY ACTUAL OR POTENTIAL SECURITY
   VULNERABILITY.

Product Alias/Synonym

   FTM
   FTM DP

  Document information

   More support for: Financial Transaction Manager

   Component: Financial Transaction Manager for Digital Payments

   Software version: 3.2.0

   Operating system(s): Platform Independent

   Reference #: 0884034

   Modified date: 25 July 2019

- --------------------------END INCLUDED TEXT--------------------

You have received this e-mail bulletin as a result of your organisation's
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

NOTE: Third Party Rights
This security bulletin is provided as a service to AusCERT's members.  As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content. The decision to follow or act on information or advice
contained in this security bulletin is the responsibility of each user or
organisation, and should be considered in accordance with your organisation's
site policies and procedures. AusCERT takes no responsibility for consequences
which may arise from following or acting on information or advice contained in
this security bulletin.

NOTE: This is only the original release of the security bulletin.  It may
not be updated when updates to the original are made.  If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author's website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above.  If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

        https://www.auscert.org.au/bulletins/

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business hours
                which are GMT+10:00 (AEST).
                On call after hours for member emergencies only.
===========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967

iQIVAwUBXTp+q2aOgq3Tt24GAQjG2BAAzMeaOr0qpFjtEla7moRC2/HbYhvn2FIj
DGxwsTFoZ9xIErs03TT95Fq4s4znMRCbMGi/XNtXaCf9d2bjKD4CZ9AOxIeCMS/d
Zr3MW+SgHWrId7Umu1+2G+sQ6/XX2sKjgVj3gBM6YmOP5B1Ipom/Rr7Efg9cGxjr
PLXVTGvDL8RrbvP2U72mw7YtZLMemY+yy+U6Cm5yYAUCppFKzDYBi8l8eE+/yHs5
Gh4acwYXY8RxDnVjPct/m+4tWuwu+bPhGKSpRYCrtUdCVD3VECbjnGX/rttaE76l
NmHwHDyjnQgDtmbpprpXqoYqpMidwBOmoKtiJwcpseLdbbd0US2bjCFJ10LNM21K
2I0+jvxL4JU2CmilolXr0dEeJDcb+abRXVkZSawB9YZ/XxvAQ/eLqxYIfxqJ/ztF
9U9gmZ+zebptzEKJkVtbm/JMiQe5DqjSs0GxVNRiKkPVCxhB/xxxNBxAjduXSItA
+cpBGgP92uatkTAhKJBj1DlGueIwskZLkONMfg9rskV3hAD4cmYM5hGCCtm6kaBS
jOm2Q1hn0iflIh1CyFOgX4w4iQSVE4EkVNiqSDkt1aqxAb5CkBRwligPXlzgyp6i
lB1qAwV7TmvuwcxQPrIfiIiMxLZyNdxxArzm3EeoIL0U+qKEL82SBZ69Vw+mwNIM
tmz3f85syKI=
=I0Kv
-----END PGP SIGNATURE-----