Skip to main content
  1. Blog
  2. Article

Ishani Ghoshal
on 27 April 2026

Ubuntu 16.04 LTS has reached the end of standard Expanded Security Maintenance with Ubuntu Pro. Here are your options.


Ubuntu 16.04 LTS (Xenial Xerus) reached the end of its five-year Expanded Security Maintenance (ESM) window in April 2026. If you are still running 16.04, it is critical to address your support status to ensure continued security and compliance.

Your support options

Now that 16.04 is in its Legacy phase, you have two primary paths:

  1. Upgrade to a newer LTS: You can move to a more recent release, such as Ubuntu 24.04 LTS, though note there is no direct upgrade path from 16.04; you must move progressively from 16.04 LTS to 24.04 LTS.
  2. Activate Legacy add-on: By adding the Legacy add-on to your Ubuntu Pro subscription, you extend security maintenance for an additional five years, bringing the total lifecycle to 15 years (until April 2031).

What is the Legacy add-on?

The Legacy add-on is a specialized extension for LTS releases that have completed their initial 10-year lifecycle. The Legacy add-on offers security patches for the Linux kernel, critical infrastructure, and thousands of open source packages to LTS releases long past their ESM lifecycle, making it ideal for organizations with specialized hardware or proprietary stacks that cannot yet migrate.

The Legacy add-on is available as a premium add-on to an Ubuntu Pro subscription.

What is covered by the Legacy add-on?

  • While ESM covers years 5-10 for Ubuntu releases, the Legacy add-on covers years 10-15.
  • Canonical provides security maintenance for binary packages across both the ‘main’ and ‘universe’ repositories.
  • Critical patches continue for essential packages, including MySQL 5.7, Python 2.7, PostgreSQL 9.5, and NGINX 1.10.
  • Support includes OpenStack Mitaka and key components like Ceph and Kubernetes where technically feasible.

Why choose the Legacy add-on?

Migrating a decade-old infrastructure is a massive undertaking. Whether it’s due to complex troubleshooting, hardware compatibility, or strict regulatory requirements (like PCI-DSS or the EU Cyber Resillience Act), sometimes an immediate upgrade isn’t possible.

Legacy add-on allows you to:

  • Keep mission-critical systems operational without the risk of unpatched CVEs.
  • Continue meeting security standards while your teams focus on long-term migration planning.
  • Receive ongoing security patches for your machines.
  • Access 24×7 technical support for break fix and bug fix. 

What to do next

Running Ubuntu 16.04 without the Legacy add-on after April 2026 means your systems no longer receive security updates, exposing them to potential breaches.

In order to maintain your security posture, it is strongly recommended that you secure your Legacy coverage for Ubuntu 16.04 LTS.

Get in touch to activate the Legacy add-on

Related posts


Canonical
25 August 2026

Arduino® VENTUNO™ Q is available for pre-order with Ubuntu pre-installed

Canonical announcements Article

London, UK – August 25, 2026 – Following our initial collaboration announcement in March 2026, Canonical and Arduino (a subsidiary of Qualcomm Technologies, Inc.) are excited to announce that VENTUNO Q is now generally available for pre-order, pre-loaded with Ubuntu. VENTUNO Q is a dual-brain developer board designed for edge AI and robot ...


Holly Hall
21 July 2026

Canonical announces the Enterprise Store as part of Ubuntu Pro

Ubuntu Article

Canonical introduces a new way to manage software behind firewalls and in air-gapped environments with the Enterprise Store. The Enterprise Store makes software distribution manageable and scalable behind firewalls or in air-gapped environments. Available with an Ubuntu Pro subscription, the Enterprise Store respects the security protocol ...


Lidia Luna Puerta
17 July 2026

Tracing a memory leak bug in PID 1 and contributing an upstream fix: a Linux support story

Ubuntu Article

How Canonical Support helped a global retail organization trace the cause for an unusual memory leak originating in PID 1. By investigating the issue across three separate system layers our team was able to identify the source and fast-track a patch. ...