Notice USN-8818-5, published on September 30, 2026, covers Linux kernel updates for systems with NVIDIA Tegra. According to the text, some Arm processors could complete a TLB invalidation before globally observing memory writes made through the invalidated mapping. A local attacker could then write after permission had been revoked, bypassing memory protections or escalating privileges (CVE-2025-10263).
The notice also reports kernel flaws that could be used to compromise a system. The update covers ARM64, InfiniBand and network drivers, TCM, exFAT, the NFS client and server, B.A.T.M.A.N., IPv4, IPv6, Netfilter, and RDS. The listed CVEs are CVE-2026-53186, CVE-2026-53216, CVE-2026-53221, CVE-2026-53354, CVE-2026-53355, CVE-2026-53398, CVE-2026-63800, CVE-2026-63808, CVE-2026-63887, CVE-2026-63888, CVE-2026-63912, CVE-2026-63922, CVE-2026-63924, CVE-2026-63984, CVE-2026-63992, CVE-2026-63993, CVE-2026-63994, CVE-2026-64007, and CVE-2026-64091. Consult the original notice in Ubuntu Security by searching for USN-8818-5, and verify the details and applicability to your version before taking action.