From 30546809478d9c6d12d329bfa5d8ddcc113f3646 Mon Sep 17 00:00:00 2001 From: orbisai0security Date: Sat, 16 May 2026 08:46:05 +0000 Subject: [PATCH] fix: V-001 security vulnerability Automated security fix generated by Orbis Security AI --- code/NALib/src/NAVisual/Core/NAImage.c | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/code/NALib/src/NAVisual/Core/NAImage.c b/code/NALib/src/NAVisual/Core/NAImage.c index 78c44e7b..f34fd749 100755 --- a/code/NALib/src/NAVisual/Core/NAImage.c +++ b/code/NALib/src/NAVisual/Core/NAImage.c @@ -72,7 +72,9 @@ NA_HIDEF size_t na_GetImageDataSize(const NAImage* image) { if(!image) naCrash("image is nullptr"); #endif - return na_GetImagePixelCount(image) * sizeof(NAColor); + size_t pixelCount = na_GetImagePixelCount(image); + if(pixelCount > SIZE_MAX / sizeof(NAColor)) { abort(); } + return pixelCount * sizeof(NAColor); }