Ubuntu Raspberry Pi Kernel Updates Address Security Flaws
Quick Answer
Ubuntu published USN-8871-1 for Linux kernel (Raspberry Pi) vulnerabilities on Ubuntu 22.04 (jammy) LTS. Ubuntu does not state a CVSS base score in this notice. Install the fixed source-package versions from the supported security or ESM channel and reboot into the new kernel.
Match USN-8871-1 To Ubuntu Releases And Update
What to do now: Inventory affected Ubuntu releases, compare installed source-package versions with USN-8871-1, install the supported updates and reboot, validate dependent workloads, and retain evidence.
Last verified: 2026-10-05 UTC. Recheck the authoritative advisory and supported distribution channel before changing production.
Scope And Authority
| Product scope | Linux kernel (Raspberry Pi) vulnerabilities on Ubuntu 22.04 (jammy) LTS |
|---|---|
| Advisory | USN-8871-1 |
| CVEs | CVE-2025-10263, CVE-2026-53131, CVE-2026-53186, CVE-2026-53216, CVE-2026-53221, CVE-2026-53354, CVE-2026-53355, CVE-2026-53398, CVE-2026-63800, CVE-2026-63808, CVE-2026-63887, CVE-2026-63888, CVE-2026-63912, CVE-2026-63922, CVE-2026-63924, CVE-2026-63984, CVE-2026-63992, CVE-2026-63993, CVE-2026-63994, CVE-2026-64007, CVE-2026-64091 |
| Authoritative release date | 2026-10-05 14:47:40.256386 UTC |
| Authority revision date | 2026-10-05 14:47:40.256386 UTC |
| Affected versions | The Ubuntu releases and source packages enumerated in USN-8871-1: Ubuntu 22.04 (jammy) LTS. |
| Fixed version | jammy: linux-raspi 5.15.0-1110.113 |
| CVSS base score | Not provided by the authority |
| CVSS severity | Not provided by the authority |
| Exploitation status | Not stated by the authority; no exploitation claim is inferred. |
What Changed
Several security issues were fixed in the Linux kernel. After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well.
What To Validate Now
- Inventory. Locate systems on Ubuntu 22.04 (jammy) LTS; record the installed source package, repository pocket, ESM entitlement where applicable, owner, exposure, and dependencies.
- Establish applicability. Match the Ubuntu codename and source package to USN-8871-1. Do not infer applicability from the binary package name, a generic kernel label, or the number of CVEs alone.
- Remediate. Install the fixed Ubuntu source-package versions listed in USN-8871-1 through the supported security or ESM channel. Reboot into the updated kernel.
- Validate. Confirm the installed running kernel and boot entry, test representative Linux kernel (Raspberry Pi) functions and recovery paths, and document any exception.
- Retain evidence. Preserve asset and owner identifiers, the applicability decision, before-and-after versions, change approval, installation output, validation results, and any exception or rollback record.
Operational Cautions
A kernel package transaction alone does not activate the fix; coordinate reboot, third-party modules, Secure Boot, clustering, and rollback. Preserve package-manager output, before-and-after versions, validation results, and rollback evidence.
Evidence To Retain
- Exact product, release stream, package or application version, enabled feature, environment, and accountable owner.
- UTC timestamps, authority revision, approved change record, installer or package-manager output, and resulting version.
- Relevant logs and monitoring evidence, test results, exceptions, compensating controls, and rollback decisions.
Related TechGeeks Resources
Authoritative References
Correction policy: If the authority changes affected versions, fixed versions, severity, exploitation information, mitigations, or required action, TechGeeks will update this notice and its verification date.

