Hi,
Yes Azure Update Manager just executes commands relevant to the tool that is used for updating the linux packages. If that is apt-get it will use that. Generally only specific package names and versions will be updated to avoid any new packages that might have appeared after the latest assessment and having mismatch of what is selected in Azure Update Manager and what is installed on the machines. You can check the logs on the machine via this article Troubleshoot issues with Azure Update Manager to see what is being executed locally as commands.
Please "Accept the answer" if the information helped you. This will help us and others in the community as well.