@MichaelTBacon Oh yes, the era of the mandatory post-patch-cleanup script to avoid RCE via Solaris' horribly old and exploitable sendmail.
Much have changed, now we can trust Debian and Ubuntu to ship security patches to the degree that automated updates is good on (most packages for most) production servers.