StackPatch is liveSee product

Back to CVE digest
CVE-2024-8354 · cross-distro fix matrix

CVE-2024-8354: Felipe Franciosi, Raphael Norwitz, and Peter Turschmid discovered that the

Affects 3 Linux releases across 50 (distro × package) combinations. First disclosed: 2026-06-09.

Fix per ecosystem

Each block below is a distro release where CVE-2024-8354 has a known fix. Run the listed command on that distro to remediate.

Ubuntu bionic

Source: Ubuntu USN

  • qemu→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu
  • qemu-block-extra→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-block-extra
  • qemu-guest-agent→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-guest-agent
  • qemu-kvm→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-kvm
  • qemu-system→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system
  • qemu-system-arm→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-arm
  • qemu-system-common→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-common
  • qemu-system-mips→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-mips
  • qemu-system-misc→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-misc
  • qemu-system-ppc→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-ppc
  • qemu-system-s390x→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-s390x
  • qemu-system-sparc→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-sparc
  • qemu-system-x86→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-x86
  • qemu-user→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-user
  • qemu-user-binfmt→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-user-binfmt
  • qemu-user-static→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-user-static
  • qemu-utils→ fixed in1:2.11+dfsg-1ubuntu7.42+esm5USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-utils

Ubuntu focal

Source: Ubuntu USN

  • qemu→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu
  • qemu-block-extra→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-block-extra
  • qemu-guest-agent→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-guest-agent
  • qemu-kvm→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-kvm
  • qemu-system→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system
  • qemu-system-arm→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-arm
  • qemu-system-common→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-common
  • qemu-system-data→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-data
  • qemu-system-gui→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-gui
  • qemu-system-mips→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-mips
  • qemu-system-misc→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-misc
  • qemu-system-ppc→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-ppc
  • qemu-system-s390x→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-s390x
  • qemu-system-sparc→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-sparc
  • qemu-system-x86→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-x86
  • qemu-system-x86-microvm→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-x86-microvm
  • qemu-system-x86-xen→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-x86-xen
  • qemu-user→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-user
  • qemu-user-binfmt→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-user-binfmt
  • qemu-user-static→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-user-static
  • qemu-utils→ fixed in1:4.2-3ubuntu6.30+esm1USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-utils

Ubuntu trusty

Source: Ubuntu USN

  • qemu→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu
  • qemu-common→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-common
  • qemu-guest-agent→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-guest-agent
  • qemu-keymaps→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-keymaps
  • qemu-kvm→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-kvm
  • qemu-system→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system
  • qemu-system-aarch64→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-aarch64
  • qemu-system-arm→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-arm
  • qemu-system-common→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-common
  • qemu-system-mips→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-mips
  • qemu-system-misc→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-misc
  • qemu-system-ppc→ fixed in2.0.0+dfsg-2ubuntu1.47+esm6USN-8412-1
    sudo apt-get install --only-upgrade -y qemu-system-ppc
Are YOU affected by CVE-2024-8354?

5-second check on your actual server. Reads /etc/os-release, uname -r, and the distro's package manager; matches against this same cross-source index live.

curl https://mindsparkstack.com/scan.sh | bash
Continuous monitoring beats manual checking

CVE-2024-8354dropped silently in your distro's update channel. Every new CVE is the same story. StackPatch runs the matcher hourly against all 5 sources and emails the exact remediation when something new applies to one of your servers. $99 lifetime, 50 founder seats, 30-day refund.

See StackPatch ($99 lifetime)