apparmor: prohibit /sys/firmware/** from being accessed Upstream-commit: 07b5311147c319a003324e8f26ceb829ed5cc240 Component: engine