Fix #9333. Expose os.symlink on Windows only when usable.

In order to create symlinks on Windows, SeCreateSymbolicLinkPrivilege
is an account privilege that is required to be held by the user. Not only
must the privilege be enabled for the account, the activated privileges for
the currently running application must be adjusted to enable the requested
privilege.

Rather than exposing an additional function to be called prior to the user's
first os.symlink call, we handle the AdjustTokenPrivileges Windows API call
internally and only expose os.symlink when the privilege escalation was
successful.

Due to the change of only exposing os.symlink when it's available, we can
go back to the original test skipping methods of checking via `hasattr`.
diff --git a/Misc/NEWS b/Misc/NEWS
index 27965f1..aeb1f14 100644
--- a/Misc/NEWS
+++ b/Misc/NEWS
@@ -10,6 +10,9 @@
 Core and Builtins
 -----------------
 
+- Issue #9333: Expose os.symlink only when the SeCreateSymbolicLinkPrivilege
+  is held by the user's account, i.e., when the function can actually be used.
+
 - Issue #7475: Added transform() and untransform() methods to both bytes
   and string types.  They can be used to access those codecs providing
   bytes-to-bytes and string-to-string mappings.