Package: sysstat Version: 12.7.5-2 Severity: wishlist Tags: patch Systemd provides the ability to enable a number of kernel sandboxing facilities as documented at https://manpages.debian.org/unstable/systemd/systemd.exec.5.en.html#SANDBOXING
Enabling these features limits the ability of the sandboxed process to make changes to (and in some cases observe the state of) the system on which it's running. This helps to protect against impact of bugs in the software, whether they're triggered accidentally or maliciously. noah -- System Information: Debian Release: trixie/sid APT prefers unstable APT policy: (500, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 6.12.3-amd64 (SMP w/1 CPU thread; PREEMPT) Locale: LANG=C.UTF-8, LC_CTYPE=C.UTF-8 (charmap=UTF-8), LANGUAGE not set Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled Versions of packages sysstat depends on: ii debconf [debconf-2.0] 1.5.87 ii libc6 2.40-4 ii libsensors5 1:3.6.0-10+b1 ii ucf 3.0045 ii xz-utils 5.6.3-1+b1 Versions of packages sysstat recommends: ii systemd 257-1 Versions of packages sysstat suggests: pn isag <none> -- debconf information excluded