java -Xmx6000000000 -jar ./plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data ./data --generate-csv --csv-dir ../../../releaseScripts/default/UAutomizer-linux/csv --cacsl2boogietranslator.bitprecise.bitfields false -tc ../../../trunk/examples/toolchains/AutomizerC.xml -s ../../../trunk/examples/settings/cade18-smtinterpol/svcomp-DerefFreeMemtrack-32bit-Automizer_z3.epf -i ../../../trunk/examples/svcomp/ldv-memsafety-bitfields/test-bitfields-1_false-valid-deref.i -------------------------------------------------------------------------------- This is Ultimate 0.1.23-666feb3-m [2018-04-11 18:38:07,991 INFO L170 SettingsManager]: Resetting all preferences to default values... [2018-04-11 18:38:07,992 INFO L174 SettingsManager]: Resetting UltimateCore preferences to default values [2018-04-11 18:38:08,004 INFO L177 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2018-04-11 18:38:08,004 INFO L174 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2018-04-11 18:38:08,005 INFO L174 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2018-04-11 18:38:08,006 INFO L174 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2018-04-11 18:38:08,007 INFO L174 SettingsManager]: Resetting LassoRanker preferences to default values [2018-04-11 18:38:08,009 INFO L174 SettingsManager]: Resetting Reaching Definitions preferences to default values [2018-04-11 18:38:08,010 INFO L174 SettingsManager]: Resetting SyntaxChecker preferences to default values [2018-04-11 18:38:08,010 INFO L177 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2018-04-11 18:38:08,011 INFO L174 SettingsManager]: Resetting LTL2Aut preferences to default values [2018-04-11 18:38:08,011 INFO L174 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2018-04-11 18:38:08,012 INFO L174 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2018-04-11 18:38:08,013 INFO L174 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2018-04-11 18:38:08,015 INFO L174 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2018-04-11 18:38:08,016 INFO L174 SettingsManager]: Resetting CodeCheck preferences to default values [2018-04-11 18:38:08,018 INFO L174 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2018-04-11 18:38:08,019 INFO L174 SettingsManager]: Resetting RCFGBuilder preferences to default values [2018-04-11 18:38:08,020 INFO L174 SettingsManager]: Resetting TraceAbstraction preferences to default values [2018-04-11 18:38:08,021 INFO L177 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2018-04-11 18:38:08,022 INFO L177 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2018-04-11 18:38:08,022 INFO L174 SettingsManager]: Resetting IcfgTransformer preferences to default values [2018-04-11 18:38:08,023 INFO L174 SettingsManager]: Resetting Boogie Printer preferences to default values [2018-04-11 18:38:08,023 INFO L174 SettingsManager]: Resetting Witness Printer preferences to default values [2018-04-11 18:38:08,024 INFO L177 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2018-04-11 18:38:08,025 INFO L174 SettingsManager]: Resetting CDTParser preferences to default values [2018-04-11 18:38:08,025 INFO L174 SettingsManager]: Resetting PEA to Boogie preferences to default values [2018-04-11 18:38:08,025 INFO L177 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2018-04-11 18:38:08,026 INFO L174 SettingsManager]: Resetting Witness Parser preferences to default values [2018-04-11 18:38:08,026 INFO L181 SettingsManager]: Finished resetting all preferences to default values... [2018-04-11 18:38:08,026 INFO L98 SettingsManager]: Beginning loading settings from /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/cade18-smtinterpol/svcomp-DerefFreeMemtrack-32bit-Automizer_z3.epf [2018-04-11 18:38:08,048 INFO L110 SettingsManager]: Loading preferences was successful [2018-04-11 18:38:08,048 INFO L112 SettingsManager]: Preferences different from defaults after loading the file: [2018-04-11 18:38:08,050 INFO L131 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * Create parallel compositions if possible=false [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * Use SBE=true [2018-04-11 18:38:08,050 INFO L131 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * sizeof long=4 [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * Check unreachability of error function in SV-COMP mode=false [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * Overapproximate operations on floating types=true [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * sizeof POINTER=4 [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * Check division by zero=IGNORE [2018-04-11 18:38:08,050 INFO L133 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * Bitprecise bitfields=true [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * sizeof long double=12 [2018-04-11 18:38:08,051 INFO L131 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * Size of a code block=SequenceOfStatements [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * To the following directory=./dump/ [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * SMT solver=External_DefaultMode [2018-04-11 18:38:08,051 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-04-11 18:38:08,051 INFO L131 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2018-04-11 18:38:08,052 INFO L133 SettingsManager]: * Compute Interpolants along a Counterexample=Craig_NestedInterpolation [2018-04-11 18:38:08,052 INFO L133 SettingsManager]: * SMT solver=External_Z3InterpolationMode [2018-04-11 18:38:08,052 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Bitprecise bitfields -> false [2018-04-11 18:38:08,080 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2018-04-11 18:38:08,087 INFO L266 ainManager$Toolchain]: [Toolchain 1]: Parser(s) successfully (re)initialized [2018-04-11 18:38:08,089 INFO L222 ainManager$Toolchain]: [Toolchain 1]: Toolchain data selected. [2018-04-11 18:38:08,090 INFO L271 PluginConnector]: Initializing CDTParser... [2018-04-11 18:38:08,091 INFO L276 PluginConnector]: CDTParser initialized [2018-04-11 18:38:08,091 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/ldv-memsafety-bitfields/test-bitfields-1_false-valid-deref.i [2018-04-11 18:38:08,390 INFO L225 CDTParser]: Created temporary CDT project at /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/data/FLAGccfccf038 [2018-04-11 18:38:08,475 INFO L287 CDTParser]: IsIndexed: true [2018-04-11 18:38:08,476 INFO L288 CDTParser]: Found 1 translation units. [2018-04-11 18:38:08,476 INFO L168 CDTParser]: Scanning test-bitfields-1_false-valid-deref.i [2018-04-11 18:38:08,476 INFO L210 ultiparseSymbolTable]: Include resolver: [2018-04-11 18:38:08,476 INFO L215 ultiparseSymbolTable]: [2018-04-11 18:38:08,477 INFO L218 ultiparseSymbolTable]: Function table: [2018-04-11 18:38:08,477 INFO L221 ultiparseSymbolTable]: Function definition of null ('main') in test-bitfields-1_false-valid-deref.i [2018-04-11 18:38:08,477 INFO L227 ultiparseSymbolTable]: Global variable table: [2018-04-11 18:38:08,477 INFO L230 ultiparseSymbolTable]: Global variable declaration of __U_MULTI_ftest_bitfields___false_valid_deref_i__size_t in test-bitfields-1_false-valid-deref.i [2018-04-11 18:38:08,488 INFO L330 CDTParser]: Deleted temporary CDT project at /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/data/FLAGccfccf038 [2018-04-11 18:38:08,491 INFO L304 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2018-04-11 18:38:08,493 INFO L131 ToolchainWalker]: Walking toolchain with 4 elements. [2018-04-11 18:38:08,493 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2018-04-11 18:38:08,493 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2018-04-11 18:38:08,499 INFO L276 PluginConnector]: CACSL2BoogieTranslator initialized [2018-04-11 18:38:08,500 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,502 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@77d23d0e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08, skipping insertion in model container [2018-04-11 18:38:08,502 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,514 INFO L167 Dispatcher]: Using SV-COMP mode [2018-04-11 18:38:08,523 INFO L167 Dispatcher]: Using SV-COMP mode [2018-04-11 18:38:08,634 INFO L175 PostProcessor]: Settings: Checked method=main [2018-04-11 18:38:08,656 INFO L175 PostProcessor]: Settings: Checked method=main [2018-04-11 18:38:08,660 INFO L100 SccComputation]: Graph consists of 0 InCaSumBalls and 11 non ball SCCs. Number of states in SCCs 11. [2018-04-11 18:38:08,667 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08 WrapperNode [2018-04-11 18:38:08,668 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2018-04-11 18:38:08,668 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2018-04-11 18:38:08,668 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2018-04-11 18:38:08,668 INFO L276 PluginConnector]: Boogie Preprocessor initialized [2018-04-11 18:38:08,678 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,678 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,684 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,685 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,690 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,692 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,693 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... [2018-04-11 18:38:08,695 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2018-04-11 18:38:08,695 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2018-04-11 18:38:08,695 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2018-04-11 18:38:08,696 INFO L276 PluginConnector]: RCFGBuilder initialized [2018-04-11 18:38:08,696 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (1/1) ... No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-04-11 18:38:08,734 INFO L136 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2018-04-11 18:38:08,734 INFO L136 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2018-04-11 18:38:08,734 INFO L136 BoogieDeclarations]: Found implementation of procedure main [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure memcpy [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure malloc [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure free [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure main [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure #Ultimate.alloc [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure write~int [2018-04-11 18:38:08,734 INFO L128 BoogieDeclarations]: Found specification of procedure read~int [2018-04-11 18:38:08,735 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2018-04-11 18:38:08,735 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2018-04-11 18:38:08,735 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2018-04-11 18:38:08,735 INFO L128 BoogieDeclarations]: Found specification of procedure write~unchecked~int [2018-04-11 18:38:08,982 INFO L259 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2018-04-11 18:38:08,983 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 11.04 06:38:08 BoogieIcfgContainer [2018-04-11 18:38:08,983 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2018-04-11 18:38:08,984 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2018-04-11 18:38:08,984 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2018-04-11 18:38:08,987 INFO L276 PluginConnector]: TraceAbstraction initialized [2018-04-11 18:38:08,987 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 11.04 06:38:08" (1/3) ... [2018-04-11 18:38:08,988 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3b9ef13a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 11.04 06:38:08, skipping insertion in model container [2018-04-11 18:38:08,988 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.04 06:38:08" (2/3) ... [2018-04-11 18:38:08,988 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3b9ef13a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 11.04 06:38:08, skipping insertion in model container [2018-04-11 18:38:08,988 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 11.04 06:38:08" (3/3) ... [2018-04-11 18:38:08,990 INFO L107 eAbstractionObserver]: Analyzing ICFG test-bitfields-1_false-valid-deref.i [2018-04-11 18:38:08,998 INFO L131 ceAbstractionStarter]: Automizer settings: Hoare:false NWA Interpolation:Craig_NestedInterpolation Determinization: PREDICATE_ABSTRACTION [2018-04-11 18:38:09,005 INFO L143 ceAbstractionStarter]: Appying trace abstraction to program that has 27 error locations. [2018-04-11 18:38:09,035 INFO L128 ementStrategyFactory]: Using default assertion order modulation [2018-04-11 18:38:09,036 INFO L369 AbstractCegarLoop]: Interprodecural is true [2018-04-11 18:38:09,036 INFO L370 AbstractCegarLoop]: Hoare is false [2018-04-11 18:38:09,036 INFO L371 AbstractCegarLoop]: Compute interpolants for Craig_NestedInterpolation [2018-04-11 18:38:09,036 INFO L372 AbstractCegarLoop]: Backedges is CANONICAL [2018-04-11 18:38:09,036 INFO L373 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2018-04-11 18:38:09,036 INFO L374 AbstractCegarLoop]: Difference is false [2018-04-11 18:38:09,036 INFO L375 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2018-04-11 18:38:09,036 INFO L380 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2018-04-11 18:38:09,037 INFO L87 2NestedWordAutomaton]: Mode: main mode - execution starts in main procedure [2018-04-11 18:38:09,049 INFO L276 IsEmpty]: Start isEmpty. Operand 66 states. [2018-04-11 18:38:09,057 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2018-04-11 18:38:09,057 INFO L347 BasicCegarLoop]: Found error trace [2018-04-11 18:38:09,058 INFO L355 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-04-11 18:38:09,058 INFO L408 AbstractCegarLoop]: === Iteration 1 === [mainErr13RequiresViolation, mainErr25AssertViolationMEMORY_FREE, mainErr26EnsuresViolationMEMORY_LEAK, mainErr10AssertViolationMEMORY_FREE, mainErr18RequiresViolation, mainErr0RequiresViolation, mainErr21RequiresViolation, mainErr17AssertViolationMEMORY_FREE, mainErr3RequiresViolation, mainErr15RequiresViolation, mainErr2RequiresViolation, mainErr12RequiresViolation, mainErr6RequiresViolation, mainErr19RequiresViolation, mainErr24AssertViolationMEMORY_FREE, mainErr1RequiresViolation, mainErr23AssertViolationMEMORY_FREE, mainErr9RequiresViolation, mainErr4AssertViolationMEMORY_FREE, mainErr11AssertViolationMEMORY_FREE, mainErr22AssertViolationMEMORY_FREE, mainErr7RequiresViolation, mainErr20RequiresViolation, mainErr8RequiresViolation, mainErr16AssertViolationMEMORY_FREE, mainErr14RequiresViolation, mainErr5AssertViolationMEMORY_FREE]=== [2018-04-11 18:38:09,061 INFO L82 PathProgramCache]: Analyzing trace with hash -815339273, now seen corresponding path program 1 times No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 2 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 2 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-04-11 18:38:09,070 INFO L68 tionRefinementEngine]: Using refinement strategy FixedRefinementStrategy [2018-04-11 18:38:09,090 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,096 WARN L195 Executor]: ExternalInterpolator (z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in) stderr output: WARNING: array quantifier [2018-04-11 18:38:09,104 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,104 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,105 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,105 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,131 WARN L1033 $PredicateComparison]: unable to prove that (exists ((%0 (Array Int Int))) (! (forall ((%1 Int)) (! (= (store |c_#valid| %1 1) (store %0 %1 1)) :qid itp)) :qid itp)) is different from true [2018-04-11 18:38:09,164 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,168 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,188 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-04-11 18:38:09,188 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2018-04-11 18:38:09,189 INFO L142 lantAutomatonBuilder]: Constructing canonical interpolant automaton, with selfloop in false state [2018-04-11 18:38:09,189 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,190 INFO L182 omatonBuilderFactory]: Interpolants [69#true, 70#false, 74#(exists ((%0 (Array Int Int))) (! (forall ((%1 Int)) (! (= (store |#valid| %1 1) (store %0 %1 1)) :qid itp)) :qid itp)), 75#(= 1 (select |#valid| |main_#t~malloc0.base|)), 76#(= 1 (select |#valid| main_~p~0.base)), 77#(and (= |#valid| |old(#valid)|) (= |#NULL.base| |old(#NULL.base)|) (= |#NULL.offset| |old(#NULL.offset)|))] [2018-04-11 18:38:09,190 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,190 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2018-04-11 18:38:09,198 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2018-04-11 18:38:09,198 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=14, Unknown=1, NotChecked=6, Total=30 [2018-04-11 18:38:09,200 INFO L87 Difference]: Start difference. First operand 66 states. Second operand 6 states. [2018-04-11 18:38:09,456 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-04-11 18:38:09,456 INFO L93 Difference]: Finished difference Result 96 states and 102 transitions. [2018-04-11 18:38:09,456 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2018-04-11 18:38:09,458 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 9 [2018-04-11 18:38:09,458 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-04-11 18:38:09,467 INFO L225 Difference]: With dead ends: 96 [2018-04-11 18:38:09,467 INFO L226 Difference]: Without dead ends: 93 [2018-04-11 18:38:09,469 INFO L567 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=28, Unknown=2, NotChecked=10, Total=56 [2018-04-11 18:38:09,485 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 93 states. [2018-04-11 18:38:09,498 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 93 to 59. [2018-04-11 18:38:09,499 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 59 states. [2018-04-11 18:38:09,500 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 66 transitions. [2018-04-11 18:38:09,501 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 66 transitions. Word has length 9 [2018-04-11 18:38:09,502 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-04-11 18:38:09,502 INFO L459 AbstractCegarLoop]: Abstraction has 59 states and 66 transitions. [2018-04-11 18:38:09,502 INFO L460 AbstractCegarLoop]: Interpolant automaton has 6 states. [2018-04-11 18:38:09,502 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 66 transitions. [2018-04-11 18:38:09,502 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2018-04-11 18:38:09,502 INFO L347 BasicCegarLoop]: Found error trace [2018-04-11 18:38:09,503 INFO L355 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-04-11 18:38:09,503 INFO L408 AbstractCegarLoop]: === Iteration 2 === [mainErr13RequiresViolation, mainErr25AssertViolationMEMORY_FREE, mainErr26EnsuresViolationMEMORY_LEAK, mainErr10AssertViolationMEMORY_FREE, mainErr18RequiresViolation, mainErr0RequiresViolation, mainErr21RequiresViolation, mainErr17AssertViolationMEMORY_FREE, mainErr3RequiresViolation, mainErr15RequiresViolation, mainErr2RequiresViolation, mainErr12RequiresViolation, mainErr6RequiresViolation, mainErr19RequiresViolation, mainErr24AssertViolationMEMORY_FREE, mainErr1RequiresViolation, mainErr23AssertViolationMEMORY_FREE, mainErr9RequiresViolation, mainErr4AssertViolationMEMORY_FREE, mainErr11AssertViolationMEMORY_FREE, mainErr22AssertViolationMEMORY_FREE, mainErr7RequiresViolation, mainErr20RequiresViolation, mainErr8RequiresViolation, mainErr16AssertViolationMEMORY_FREE, mainErr14RequiresViolation, mainErr5AssertViolationMEMORY_FREE]=== [2018-04-11 18:38:09,503 INFO L82 PathProgramCache]: Analyzing trace with hash -815339272, now seen corresponding path program 1 times No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 3 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 3 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-04-11 18:38:09,509 INFO L68 tionRefinementEngine]: Using refinement strategy FixedRefinementStrategy [2018-04-11 18:38:09,515 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,519 WARN L195 Executor]: ExternalInterpolator (z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in) stderr output: WARNING: array quantifier [2018-04-11 18:38:09,521 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,521 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,521 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,522 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,527 WARN L1033 $PredicateComparison]: unable to prove that (exists ((%0 (Array Int Int))) (! (forall ((%1 Int)) (! (= (store %0 %1 2) (store |c_#length| %1 2)) :qid itp)) :qid itp)) is different from true [2018-04-11 18:38:09,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,558 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,585 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-04-11 18:38:09,585 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2018-04-11 18:38:09,585 INFO L142 lantAutomatonBuilder]: Constructing canonical interpolant automaton, with selfloop in false state [2018-04-11 18:38:09,585 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,585 INFO L182 omatonBuilderFactory]: Interpolants [242#(exists ((%0 (Array Int Int))) (! (forall ((%1 Int)) (! (= (store %0 %1 2) (store |#length| %1 2)) :qid itp)) :qid itp)), 243#(and (= 2 (select |#length| |main_#t~malloc0.base|)) (= 0 |main_#t~malloc0.offset|)), 244#(and (<= 0 main_~p~0.offset) (<= (+ main_~p~0.offset 1) (select |#length| main_~p~0.base))), 245#(and (= |#valid| |old(#valid)|) (= |#NULL.base| |old(#NULL.base)|) (= |#NULL.offset| |old(#NULL.offset)|)), 237#true, 238#false] [2018-04-11 18:38:09,586 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,587 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2018-04-11 18:38:09,587 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2018-04-11 18:38:09,587 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=14, Unknown=1, NotChecked=6, Total=30 [2018-04-11 18:38:09,587 INFO L87 Difference]: Start difference. First operand 59 states and 66 transitions. Second operand 6 states. [2018-04-11 18:38:09,702 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-04-11 18:38:09,702 INFO L93 Difference]: Finished difference Result 57 states and 64 transitions. [2018-04-11 18:38:09,703 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2018-04-11 18:38:09,703 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 9 [2018-04-11 18:38:09,703 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-04-11 18:38:09,704 INFO L225 Difference]: With dead ends: 57 [2018-04-11 18:38:09,704 INFO L226 Difference]: Without dead ends: 57 [2018-04-11 18:38:09,705 INFO L567 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=27, Unknown=3, NotChecked=10, Total=56 [2018-04-11 18:38:09,705 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2018-04-11 18:38:09,708 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 57. [2018-04-11 18:38:09,708 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 57 states. [2018-04-11 18:38:09,709 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 64 transitions. [2018-04-11 18:38:09,709 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 64 transitions. Word has length 9 [2018-04-11 18:38:09,710 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-04-11 18:38:09,710 INFO L459 AbstractCegarLoop]: Abstraction has 57 states and 64 transitions. [2018-04-11 18:38:09,710 INFO L460 AbstractCegarLoop]: Interpolant automaton has 6 states. [2018-04-11 18:38:09,710 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 64 transitions. [2018-04-11 18:38:09,710 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2018-04-11 18:38:09,711 INFO L347 BasicCegarLoop]: Found error trace [2018-04-11 18:38:09,711 INFO L355 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-04-11 18:38:09,711 INFO L408 AbstractCegarLoop]: === Iteration 3 === [mainErr13RequiresViolation, mainErr25AssertViolationMEMORY_FREE, mainErr26EnsuresViolationMEMORY_LEAK, mainErr10AssertViolationMEMORY_FREE, mainErr18RequiresViolation, mainErr0RequiresViolation, mainErr21RequiresViolation, mainErr17AssertViolationMEMORY_FREE, mainErr3RequiresViolation, mainErr15RequiresViolation, mainErr2RequiresViolation, mainErr12RequiresViolation, mainErr6RequiresViolation, mainErr19RequiresViolation, mainErr24AssertViolationMEMORY_FREE, mainErr1RequiresViolation, mainErr23AssertViolationMEMORY_FREE, mainErr9RequiresViolation, mainErr4AssertViolationMEMORY_FREE, mainErr11AssertViolationMEMORY_FREE, mainErr22AssertViolationMEMORY_FREE, mainErr7RequiresViolation, mainErr20RequiresViolation, mainErr8RequiresViolation, mainErr16AssertViolationMEMORY_FREE, mainErr14RequiresViolation, mainErr5AssertViolationMEMORY_FREE]=== [2018-04-11 18:38:09,711 INFO L82 PathProgramCache]: Analyzing trace with hash -1732241770, now seen corresponding path program 1 times No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 4 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 4 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-04-11 18:38:09,714 INFO L68 tionRefinementEngine]: Using refinement strategy FixedRefinementStrategy [2018-04-11 18:38:09,720 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,758 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,760 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,776 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-04-11 18:38:09,776 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-04-11 18:38:09,776 INFO L142 lantAutomatonBuilder]: Constructing canonical interpolant automaton, with selfloop in false state [2018-04-11 18:38:09,777 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,777 INFO L182 omatonBuilderFactory]: Interpolants [369#(= 0 |main_#t~malloc0.offset|), 370#(= 0 main_~p~0.offset), 371#(and (= |#valid| |old(#valid)|) (= |#NULL.base| |old(#NULL.base)|) (= |#NULL.offset| |old(#NULL.offset)|)), 364#true, 365#false] [2018-04-11 18:38:09,777 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,777 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2018-04-11 18:38:09,777 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2018-04-11 18:38:09,777 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2018-04-11 18:38:09,778 INFO L87 Difference]: Start difference. First operand 57 states and 64 transitions. Second operand 5 states. [2018-04-11 18:38:09,849 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-04-11 18:38:09,849 INFO L93 Difference]: Finished difference Result 52 states and 58 transitions. [2018-04-11 18:38:09,849 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2018-04-11 18:38:09,850 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 12 [2018-04-11 18:38:09,850 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-04-11 18:38:09,850 INFO L225 Difference]: With dead ends: 52 [2018-04-11 18:38:09,850 INFO L226 Difference]: Without dead ends: 52 [2018-04-11 18:38:09,851 INFO L567 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2018-04-11 18:38:09,851 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 52 states. [2018-04-11 18:38:09,853 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 52 to 52. [2018-04-11 18:38:09,854 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 52 states. [2018-04-11 18:38:09,855 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 58 transitions. [2018-04-11 18:38:09,855 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 58 transitions. Word has length 12 [2018-04-11 18:38:09,855 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-04-11 18:38:09,856 INFO L459 AbstractCegarLoop]: Abstraction has 52 states and 58 transitions. [2018-04-11 18:38:09,856 INFO L460 AbstractCegarLoop]: Interpolant automaton has 5 states. [2018-04-11 18:38:09,856 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 58 transitions. [2018-04-11 18:38:09,856 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2018-04-11 18:38:09,856 INFO L347 BasicCegarLoop]: Found error trace [2018-04-11 18:38:09,856 INFO L355 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-04-11 18:38:09,856 INFO L408 AbstractCegarLoop]: === Iteration 4 === [mainErr13RequiresViolation, mainErr25AssertViolationMEMORY_FREE, mainErr26EnsuresViolationMEMORY_LEAK, mainErr10AssertViolationMEMORY_FREE, mainErr18RequiresViolation, mainErr0RequiresViolation, mainErr21RequiresViolation, mainErr17AssertViolationMEMORY_FREE, mainErr3RequiresViolation, mainErr15RequiresViolation, mainErr2RequiresViolation, mainErr12RequiresViolation, mainErr6RequiresViolation, mainErr19RequiresViolation, mainErr24AssertViolationMEMORY_FREE, mainErr1RequiresViolation, mainErr23AssertViolationMEMORY_FREE, mainErr9RequiresViolation, mainErr4AssertViolationMEMORY_FREE, mainErr11AssertViolationMEMORY_FREE, mainErr22AssertViolationMEMORY_FREE, mainErr7RequiresViolation, mainErr20RequiresViolation, mainErr8RequiresViolation, mainErr16AssertViolationMEMORY_FREE, mainErr14RequiresViolation, mainErr5AssertViolationMEMORY_FREE]=== [2018-04-11 18:38:09,857 INFO L82 PathProgramCache]: Analyzing trace with hash -1732241543, now seen corresponding path program 1 times No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 5 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 5 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-04-11 18:38:09,859 INFO L68 tionRefinementEngine]: Using refinement strategy FixedRefinementStrategy [2018-04-11 18:38:09,866 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,886 WARN L195 Executor]: ExternalInterpolator (z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in) stderr output: WARNING: array quantifier [2018-04-11 18:38:09,888 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,888 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,889 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,889 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:09,895 WARN L1033 $PredicateComparison]: unable to prove that (exists ((%0 (Array Int Int))) (! (forall ((%1 Int)) (! (= (store %0 %1 2) (store |c_#length| %1 2)) :qid itp)) :qid itp)) is different from true [2018-04-11 18:38:09,934 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:09,935 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,952 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-04-11 18:38:09,952 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2018-04-11 18:38:09,952 INFO L142 lantAutomatonBuilder]: Constructing canonical interpolant automaton, with selfloop in false state [2018-04-11 18:38:09,952 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,952 INFO L182 omatonBuilderFactory]: Interpolants [483#(exists ((%0 (Array Int Int))) (! (forall ((%1 Int)) (! (= (store %0 %1 2) (store |#length| %1 2)) :qid itp)) :qid itp)), 484#(and (= 2 (select |#length| |main_#t~malloc0.base|)) (= 0 |main_#t~malloc0.offset|)), 485#(or (and (<= 0 (+ main_~p~0.offset 1)) (<= (+ main_~p~0.offset 2) (select |#length| main_~p~0.base))) (< (select |#length| main_~p~0.base) (+ main_~p~0.offset 1))), 486#(and (<= 0 (+ main_~p~0.offset 1)) (<= (+ main_~p~0.offset 2) (select |#length| main_~p~0.base))), 487#(and (= |#valid| |old(#valid)|) (= |#NULL.base| |old(#NULL.base)|) (= |#NULL.offset| |old(#NULL.offset)|)), 478#true, 479#false] [2018-04-11 18:38:09,953 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:09,953 INFO L442 AbstractCegarLoop]: Interpolant automaton has 7 states [2018-04-11 18:38:09,953 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2018-04-11 18:38:09,953 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=21, Unknown=1, NotChecked=8, Total=42 [2018-04-11 18:38:09,953 INFO L87 Difference]: Start difference. First operand 52 states and 58 transitions. Second operand 7 states. [2018-04-11 18:38:10,053 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-04-11 18:38:10,053 INFO L93 Difference]: Finished difference Result 50 states and 55 transitions. [2018-04-11 18:38:10,053 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2018-04-11 18:38:10,053 INFO L78 Accepts]: Start accepts. Automaton has 7 states. Word has length 12 [2018-04-11 18:38:10,054 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-04-11 18:38:10,054 INFO L225 Difference]: With dead ends: 50 [2018-04-11 18:38:10,054 INFO L226 Difference]: Without dead ends: 50 [2018-04-11 18:38:10,054 INFO L567 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=38, Unknown=2, NotChecked=12, Total=72 [2018-04-11 18:38:10,055 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2018-04-11 18:38:10,057 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 50. [2018-04-11 18:38:10,057 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 50 states. [2018-04-11 18:38:10,057 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 50 states to 50 states and 55 transitions. [2018-04-11 18:38:10,058 INFO L78 Accepts]: Start accepts. Automaton has 50 states and 55 transitions. Word has length 12 [2018-04-11 18:38:10,058 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-04-11 18:38:10,058 INFO L459 AbstractCegarLoop]: Abstraction has 50 states and 55 transitions. [2018-04-11 18:38:10,058 INFO L460 AbstractCegarLoop]: Interpolant automaton has 7 states. [2018-04-11 18:38:10,058 INFO L276 IsEmpty]: Start isEmpty. Operand 50 states and 55 transitions. [2018-04-11 18:38:10,058 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2018-04-11 18:38:10,058 INFO L347 BasicCegarLoop]: Found error trace [2018-04-11 18:38:10,059 INFO L355 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-04-11 18:38:10,059 INFO L408 AbstractCegarLoop]: === Iteration 5 === [mainErr13RequiresViolation, mainErr25AssertViolationMEMORY_FREE, mainErr26EnsuresViolationMEMORY_LEAK, mainErr10AssertViolationMEMORY_FREE, mainErr18RequiresViolation, mainErr0RequiresViolation, mainErr21RequiresViolation, mainErr17AssertViolationMEMORY_FREE, mainErr3RequiresViolation, mainErr15RequiresViolation, mainErr2RequiresViolation, mainErr12RequiresViolation, mainErr6RequiresViolation, mainErr19RequiresViolation, mainErr24AssertViolationMEMORY_FREE, mainErr1RequiresViolation, mainErr23AssertViolationMEMORY_FREE, mainErr9RequiresViolation, mainErr4AssertViolationMEMORY_FREE, mainErr11AssertViolationMEMORY_FREE, mainErr22AssertViolationMEMORY_FREE, mainErr7RequiresViolation, mainErr20RequiresViolation, mainErr8RequiresViolation, mainErr16AssertViolationMEMORY_FREE, mainErr14RequiresViolation, mainErr5AssertViolationMEMORY_FREE]=== [2018-04-11 18:38:10,059 INFO L82 PathProgramCache]: Analyzing trace with hash -1182458942, now seen corresponding path program 1 times No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 6 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 6 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-04-11 18:38:10,062 INFO L68 tionRefinementEngine]: Using refinement strategy FixedRefinementStrategy [2018-04-11 18:38:10,066 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:10,072 WARN L195 Executor]: ExternalInterpolator (z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in) stderr output: WARNING: array quantifier WARNING: array quantifier [2018-04-11 18:38:10,074 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,074 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,074 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,074 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,075 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,075 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,098 WARN L1033 $PredicateComparison]: unable to prove that (forall ((%0 Int)) (! (exists ((%1 (Array Int Int)) (%2 (Array Int (Array Int Int)))) (! (and (forall ((%3 Int)) (! (let ((.cse0 (store %1 0 1))) (= (store |c_#memory_int| %3 .cse0) (store %2 %3 .cse0))) :qid itp)) (= %1 (select |c_#memory_int| %0))) :qid itp)) :qid itp)) is different from true [2018-04-11 18:38:10,099 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,100 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,100 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,100 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,100 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,100 WARN L251 NnfTransformerHelper]: thrown away annotations [(:qid itp)] [2018-04-11 18:38:10,168 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-04-11 18:38:10,169 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:10,187 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-04-11 18:38:10,187 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2018-04-11 18:38:10,187 INFO L142 lantAutomatonBuilder]: Constructing canonical interpolant automaton, with selfloop in false state [2018-04-11 18:38:10,188 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:10,188 INFO L182 omatonBuilderFactory]: Interpolants [592#true, 593#false, 597#(forall ((%0 Int)) (! (exists ((%1 (Array Int Int)) (%2 (Array Int (Array Int Int)))) (! (and (forall ((%3 Int)) (! (= (store |#memory_int| %3 (store %1 0 1)) (store %2 %3 (store %1 0 1))) :qid itp)) (= %1 (select |#memory_int| %0))) :qid itp)) :qid itp)), 598#(= 0 |main_#t~malloc0.offset|), 599#(= 0 main_~p~0.offset), 600#(= 1 (select (select |#memory_int| main_~p~0.base) main_~p~0.offset)), 601#(and (<= 1 (+ (* 256 (div |main_#t~mem1| 256)) (mod |main_#t~mem1| 256))) (<= (+ (* 256 (div |main_#t~mem1| 256)) (mod |main_#t~mem1| 256)) 1)), 602#(and (= |#valid| |old(#valid)|) (= |#NULL.base| |old(#NULL.base)|) (= |#NULL.offset| |old(#NULL.offset)|))] [2018-04-11 18:38:10,188 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-04-11 18:38:10,188 INFO L442 AbstractCegarLoop]: Interpolant automaton has 8 states [2018-04-11 18:38:10,188 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2018-04-11 18:38:10,188 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=32, Unknown=1, NotChecked=10, Total=56 [2018-04-11 18:38:10,188 INFO L87 Difference]: Start difference. First operand 50 states and 55 transitions. Second operand 8 states. [2018-04-11 18:38:10,292 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-04-11 18:38:10,292 INFO L93 Difference]: Finished difference Result 45 states and 49 transitions. [2018-04-11 18:38:10,292 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2018-04-11 18:38:10,293 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 15 [2018-04-11 18:38:10,293 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-04-11 18:38:10,293 INFO L225 Difference]: With dead ends: 45 [2018-04-11 18:38:10,293 INFO L226 Difference]: Without dead ends: 45 [2018-04-11 18:38:10,294 INFO L567 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=34, Invalid=78, Unknown=2, NotChecked=18, Total=132 [2018-04-11 18:38:10,294 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 45 states. [2018-04-11 18:38:10,296 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 45 to 45. [2018-04-11 18:38:10,296 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 45 states. [2018-04-11 18:38:10,296 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 49 transitions. [2018-04-11 18:38:10,297 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 49 transitions. Word has length 15 [2018-04-11 18:38:10,297 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-04-11 18:38:10,297 INFO L459 AbstractCegarLoop]: Abstraction has 45 states and 49 transitions. [2018-04-11 18:38:10,297 INFO L460 AbstractCegarLoop]: Interpolant automaton has 8 states. [2018-04-11 18:38:10,297 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 49 transitions. [2018-04-11 18:38:10,298 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2018-04-11 18:38:10,298 INFO L347 BasicCegarLoop]: Found error trace [2018-04-11 18:38:10,298 INFO L355 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-04-11 18:38:10,298 INFO L408 AbstractCegarLoop]: === Iteration 6 === [mainErr13RequiresViolation, mainErr25AssertViolationMEMORY_FREE, mainErr26EnsuresViolationMEMORY_LEAK, mainErr10AssertViolationMEMORY_FREE, mainErr18RequiresViolation, mainErr0RequiresViolation, mainErr21RequiresViolation, mainErr17AssertViolationMEMORY_FREE, mainErr3RequiresViolation, mainErr15RequiresViolation, mainErr2RequiresViolation, mainErr12RequiresViolation, mainErr6RequiresViolation, mainErr19RequiresViolation, mainErr24AssertViolationMEMORY_FREE, mainErr1RequiresViolation, mainErr23AssertViolationMEMORY_FREE, mainErr9RequiresViolation, mainErr4AssertViolationMEMORY_FREE, mainErr11AssertViolationMEMORY_FREE, mainErr22AssertViolationMEMORY_FREE, mainErr7RequiresViolation, mainErr20RequiresViolation, mainErr8RequiresViolation, mainErr16AssertViolationMEMORY_FREE, mainErr14RequiresViolation, mainErr5AssertViolationMEMORY_FREE]=== [2018-04-11 18:38:10,298 INFO L82 PathProgramCache]: Analyzing trace with hash -1175777463, now seen corresponding path program 1 times No working directory specified, using /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 7 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 7 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-04-11 18:38:10,300 INFO L68 tionRefinementEngine]: Using refinement strategy FixedRefinementStrategy [2018-04-11 18:38:10,305 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2018-04-11 18:38:10,310 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2018-04-11 18:38:10,336 INFO L421 BasicCegarLoop]: Counterexample might be feasible [2018-04-11 18:38:10,349 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 11.04 06:38:10 BoogieIcfgContainer [2018-04-11 18:38:10,350 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2018-04-11 18:38:10,350 INFO L168 Benchmark]: Toolchain (without parser) took 1858.40 ms. Allocated memory was 403.2 MB in the beginning and 588.8 MB in the end (delta: 185.6 MB). Free memory was 340.2 MB in the beginning and 497.4 MB in the end (delta: -157.2 MB). Peak memory consumption was 28.4 MB. Max. memory is 5.3 GB. [2018-04-11 18:38:10,352 INFO L168 Benchmark]: CDTParser took 0.13 ms. Allocated memory is still 403.2 MB. Free memory is still 361.6 MB. There was no memory consumed. Max. memory is 5.3 GB. [2018-04-11 18:38:10,352 INFO L168 Benchmark]: CACSL2BoogieTranslator took 174.62 ms. Allocated memory is still 403.2 MB. Free memory was 339.7 MB in the beginning and 329.1 MB in the end (delta: 10.6 MB). Peak memory consumption was 10.6 MB. Max. memory is 5.3 GB. [2018-04-11 18:38:10,353 INFO L168 Benchmark]: Boogie Preprocessor took 26.81 ms. Allocated memory is still 403.2 MB. Free memory is still 329.1 MB. There was no memory consumed. Max. memory is 5.3 GB. [2018-04-11 18:38:10,353 INFO L168 Benchmark]: RCFGBuilder took 287.76 ms. Allocated memory was 403.2 MB in the beginning and 588.8 MB in the end (delta: 185.6 MB). Free memory was 329.1 MB in the beginning and 547.5 MB in the end (delta: -218.4 MB). Peak memory consumption was 25.0 MB. Max. memory is 5.3 GB. [2018-04-11 18:38:10,353 INFO L168 Benchmark]: TraceAbstraction took 1365.81 ms. Allocated memory is still 588.8 MB. Free memory was 547.5 MB in the beginning and 497.4 MB in the end (delta: 50.1 MB). Peak memory consumption was 50.1 MB. Max. memory is 5.3 GB. [2018-04-11 18:38:10,355 INFO L344 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.13 ms. Allocated memory is still 403.2 MB. Free memory is still 361.6 MB. There was no memory consumed. Max. memory is 5.3 GB. * CACSL2BoogieTranslator took 174.62 ms. Allocated memory is still 403.2 MB. Free memory was 339.7 MB in the beginning and 329.1 MB in the end (delta: 10.6 MB). Peak memory consumption was 10.6 MB. Max. memory is 5.3 GB. * Boogie Preprocessor took 26.81 ms. Allocated memory is still 403.2 MB. Free memory is still 329.1 MB. There was no memory consumed. Max. memory is 5.3 GB. * RCFGBuilder took 287.76 ms. Allocated memory was 403.2 MB in the beginning and 588.8 MB in the end (delta: 185.6 MB). Free memory was 329.1 MB in the beginning and 547.5 MB in the end (delta: -218.4 MB). Peak memory consumption was 25.0 MB. Max. memory is 5.3 GB. * TraceAbstraction took 1365.81 ms. Allocated memory is still 588.8 MB. Free memory was 547.5 MB in the beginning and 497.4 MB in the end (delta: 50.1 MB). Peak memory consumption was 50.1 MB. Max. memory is 5.3 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - CounterExampleResult [Line: 33]: pointer dereference may fail pointer dereference may fail We found a FailurePath: [L23] struct A *p; [L24] EXPR, FCALL malloc(2) VAL [malloc(2)={8:0}] [L24] p = malloc(2) VAL [malloc(2)={8:0}, p={8:0}] [L25] FCALL p->a = 1 VAL [malloc(2)={8:0}, p={8:0}] [L26] EXPR, FCALL p->a VAL [malloc(2)={8:0}, p={8:0}, p->a=1] [L26] COND FALSE !(p->a != 1) [L29] FCALL p->b = 2 VAL [malloc(2)={8:0}, p={8:0}] [L30] EXPR, FCALL p->b VAL [malloc(2)={8:0}, p={8:0}, p->b=2] [L30] COND FALSE !(p->b != 2) [L33] FCALL p->c = 3 - StatisticsResult: Ultimate Automizer benchmark data CFG has 3 procedures, 66 locations, 27 error locations. UNSAFE Result, 1.3s OverallTime, 6 OverallIterations, 1 TraceHistogramMax, 0.6s AutomataDifference, 0.0s DeadEndRemovalTime, 0.0s HoareAnnotationTime, HoareTripleCheckerStatistics: 99 SDtfs, 500 SDslu, 85 SDs, 0 SdLazy, 479 SolverSat, 49 SolverUnsat, 4 SolverUnknown, 0 SolverNotchecked, 0.4s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 47 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 33 ConstructedPredicates, 4 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=66occurred in iteration=0, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s AbstIntTime, 0 AbstIntIterations, 0 AbstIntStrong, NaN AbsIntWeakeningRatio, NaN AbsIntAvgWeakeningVarsNumRemoved, NaN AbsIntAvgWeakenedConjuncts, 0.0s DumpTime, AutomataMinimizationStatistics: 0.0s AutomataMinimizationTime, 5 MinimizatonAttempts, 34 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TraceCheckStatistics: 0.0s SsaConstructionTime, 0.0s SatisfiabilityAnalysisTime, 0.3s InterpolantComputationTime, 72 NumberOfCodeBlocks, 72 NumberOfCodeBlocksAsserted, 6 NumberOfCheckSat, 52 ConstructedInterpolants, 8 QuantifiedInterpolants, 3968 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 5 InterpolantComputations, 5 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, InvariantSynthesisStatistics: No data available, InterpolantConsolidationStatistics: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! Written .csv to /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/test-bitfields-1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_z3.epf_AutomizerC.xml/Csv-Benchmark-0-2018-04-11_18-38-10-363.csv Written .csv to /home/ultimate/work/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/test-bitfields-1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_z3.epf_AutomizerC.xml/Csv-TraceAbstractionBenchmarks-0-2018-04-11_18-38-10-363.csv Received shutdown request...