[RFC PATCH v4 2/4] mseal: add mseal syscall