./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/nla-digbench/hard2.c --full-output --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a9b967e5 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/nla-digbench/hard2.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 966f2b433cfe84d90040e5149c3cdda56fb59546e621a76bee869282a92c61d4 --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-a9b967e-m [2024-09-11 19:40:22,457 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-11 19:40:22,540 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-11 19:40:22,545 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-11 19:40:22,546 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-11 19:40:22,574 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-11 19:40:22,575 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-11 19:40:22,575 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-11 19:40:22,576 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-11 19:40:22,578 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-11 19:40:22,578 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-11 19:40:22,580 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-11 19:40:22,581 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-11 19:40:22,582 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-11 19:40:22,583 INFO L153 SettingsManager]: * Use SBE=true [2024-09-11 19:40:22,583 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-11 19:40:22,583 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-11 19:40:22,584 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-11 19:40:22,584 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-11 19:40:22,584 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-11 19:40:22,584 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-11 19:40:22,585 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-11 19:40:22,585 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-11 19:40:22,586 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-11 19:40:22,586 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-11 19:40:22,587 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-11 19:40:22,587 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-11 19:40:22,587 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-11 19:40:22,587 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-11 19:40:22,588 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-11 19:40:22,588 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-11 19:40:22,589 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-11 19:40:22,589 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-11 19:40:22,589 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-11 19:40:22,590 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-11 19:40:22,590 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-11 19:40:22,590 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-11 19:40:22,591 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-11 19:40:22,591 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-11 19:40:22,591 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-11 19:40:22,591 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-11 19:40:22,592 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-11 19:40:22,592 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 966f2b433cfe84d90040e5149c3cdda56fb59546e621a76bee869282a92c61d4 Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-11 19:40:22,814 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-11 19:40:22,832 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-11 19:40:22,834 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-11 19:40:22,835 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-11 19:40:22,835 INFO L274 PluginConnector]: CDTParser initialized [2024-09-11 19:40:22,836 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/nla-digbench/hard2.c [2024-09-11 19:40:24,213 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-11 19:40:24,379 INFO L384 CDTParser]: Found 1 translation units. [2024-09-11 19:40:24,379 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench/hard2.c [2024-09-11 19:40:24,385 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/e350b20fe/21735b89fcfb43c1b5b4db5c6e5cecf5/FLAGa31e8dec5 [2024-09-11 19:40:24,770 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/e350b20fe/21735b89fcfb43c1b5b4db5c6e5cecf5 [2024-09-11 19:40:24,773 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-11 19:40:24,774 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-11 19:40:24,775 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-11 19:40:24,776 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-11 19:40:24,781 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-11 19:40:24,781 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:24,782 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@661cda25 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24, skipping insertion in model container [2024-09-11 19:40:24,782 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:24,801 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-11 19:40:24,945 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench/hard2.c[526,539] [2024-09-11 19:40:24,958 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-11 19:40:24,966 INFO L200 MainTranslator]: Completed pre-run [2024-09-11 19:40:24,976 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench/hard2.c[526,539] [2024-09-11 19:40:24,983 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-11 19:40:24,997 INFO L204 MainTranslator]: Completed translation [2024-09-11 19:40:24,997 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24 WrapperNode [2024-09-11 19:40:24,998 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-11 19:40:24,998 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-11 19:40:24,999 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-11 19:40:24,999 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-11 19:40:25,004 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,009 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,024 INFO L138 Inliner]: procedures = 14, calls = 22, calls flagged for inlining = 2, calls inlined = 2, statements flattened = 60 [2024-09-11 19:40:25,024 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-11 19:40:25,025 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-11 19:40:25,025 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-11 19:40:25,025 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-11 19:40:25,034 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,034 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,035 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,048 INFO L175 MemorySlicer]: Split 10 memory accesses to 2 slices as follows [2, 8]. 80 percent of accesses are in the largest equivalence class. The 10 initializations are split as follows [2, 8]. The 0 writes are split as follows [0, 0]. [2024-09-11 19:40:25,049 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,049 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,052 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,055 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,055 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,056 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,058 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-11 19:40:25,058 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-11 19:40:25,058 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-11 19:40:25,059 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-11 19:40:25,059 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (1/1) ... [2024-09-11 19:40:25,064 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-11 19:40:25,075 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:25,088 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-11 19:40:25,091 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-11 19:40:25,139 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-11 19:40:25,139 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-11 19:40:25,139 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-11 19:40:25,139 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-11 19:40:25,139 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-11 19:40:25,139 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-11 19:40:25,140 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-11 19:40:25,206 INFO L242 CfgBuilder]: Building ICFG [2024-09-11 19:40:25,208 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-11 19:40:25,359 INFO L? ?]: Removed 5 outVars from TransFormulas that were not future-live. [2024-09-11 19:40:25,359 INFO L291 CfgBuilder]: Performing block encoding [2024-09-11 19:40:25,382 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-11 19:40:25,382 INFO L318 CfgBuilder]: Removed 2 assume(true) statements. [2024-09-11 19:40:25,383 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 11.09 07:40:25 BoogieIcfgContainer [2024-09-11 19:40:25,383 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-11 19:40:25,385 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-11 19:40:25,385 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-11 19:40:25,388 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-11 19:40:25,389 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 11.09 07:40:24" (1/3) ... [2024-09-11 19:40:25,389 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@51fa0b1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 11.09 07:40:25, skipping insertion in model container [2024-09-11 19:40:25,389 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 07:40:24" (2/3) ... [2024-09-11 19:40:25,392 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@51fa0b1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 11.09 07:40:25, skipping insertion in model container [2024-09-11 19:40:25,392 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 11.09 07:40:25" (3/3) ... [2024-09-11 19:40:25,393 INFO L112 eAbstractionObserver]: Analyzing ICFG hard2.c [2024-09-11 19:40:25,408 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-11 19:40:25,409 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-11 19:40:25,455 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-11 19:40:25,462 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@52a0264e, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-11 19:40:25,462 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-11 19:40:25,466 INFO L276 IsEmpty]: Start isEmpty. Operand has 21 states, 11 states have (on average 1.8181818181818181) internal successors, (20), 12 states have internal predecessors, (20), 7 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-11 19:40:25,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 7 [2024-09-11 19:40:25,472 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:25,472 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1] [2024-09-11 19:40:25,473 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:25,478 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:25,478 INFO L85 PathProgramCache]: Analyzing trace with hash -1133642604, now seen corresponding path program 1 times [2024-09-11 19:40:25,485 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:25,485 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [583507162] [2024-09-11 19:40:25,485 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:25,486 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:25,569 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:25,752 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-11 19:40:25,753 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:25,753 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [583507162] [2024-09-11 19:40:25,754 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [583507162] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 19:40:25,754 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 19:40:25,754 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-09-11 19:40:25,756 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [633945108] [2024-09-11 19:40:25,757 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 19:40:25,760 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-11 19:40:25,761 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:25,788 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-11 19:40:25,789 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-11 19:40:25,791 INFO L87 Difference]: Start difference. First operand has 21 states, 11 states have (on average 1.8181818181818181) internal successors, (20), 12 states have internal predecessors, (20), 7 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Second operand has 5 states, 5 states have (on average 1.0) internal successors, (5), 3 states have internal predecessors, (5), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-11 19:40:25,903 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:25,904 INFO L93 Difference]: Finished difference Result 53 states and 98 transitions. [2024-09-11 19:40:25,906 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-11 19:40:25,908 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 1.0) internal successors, (5), 3 states have internal predecessors, (5), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 6 [2024-09-11 19:40:25,908 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:25,914 INFO L225 Difference]: With dead ends: 53 [2024-09-11 19:40:25,915 INFO L226 Difference]: Without dead ends: 30 [2024-09-11 19:40:25,920 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-11 19:40:25,924 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 9 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 28 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 80 SdHoareTripleChecker+Invalid, 28 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 28 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:25,924 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 80 Invalid, 28 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 28 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-11 19:40:25,940 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 30 states. [2024-09-11 19:40:25,966 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 30 to 23. [2024-09-11 19:40:25,967 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 23 states, 13 states have (on average 1.3076923076923077) internal successors, (17), 14 states have internal predecessors, (17), 7 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-11 19:40:25,968 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 23 states to 23 states and 30 transitions. [2024-09-11 19:40:25,974 INFO L78 Accepts]: Start accepts. Automaton has 23 states and 30 transitions. Word has length 6 [2024-09-11 19:40:25,974 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:25,976 INFO L474 AbstractCegarLoop]: Abstraction has 23 states and 30 transitions. [2024-09-11 19:40:25,976 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 1.0) internal successors, (5), 3 states have internal predecessors, (5), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-11 19:40:25,977 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:25,977 INFO L276 IsEmpty]: Start isEmpty. Operand 23 states and 30 transitions. [2024-09-11 19:40:25,977 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2024-09-11 19:40:25,978 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:25,978 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:25,978 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-11 19:40:25,979 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:25,979 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:25,979 INFO L85 PathProgramCache]: Analyzing trace with hash 372697474, now seen corresponding path program 1 times [2024-09-11 19:40:25,980 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:25,980 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [761398316] [2024-09-11 19:40:25,981 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:25,981 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:26,000 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:26,120 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-11 19:40:26,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:26,132 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-11 19:40:26,133 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:26,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [761398316] [2024-09-11 19:40:26,134 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [761398316] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 19:40:26,134 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 19:40:26,135 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-11 19:40:26,135 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [33333840] [2024-09-11 19:40:26,135 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 19:40:26,136 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-11 19:40:26,137 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:26,138 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-11 19:40:26,138 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-11 19:40:26,138 INFO L87 Difference]: Start difference. First operand 23 states and 30 transitions. Second operand has 5 states, 5 states have (on average 1.6) internal successors, (8), 4 states have internal predecessors, (8), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-11 19:40:26,244 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:26,244 INFO L93 Difference]: Finished difference Result 36 states and 47 transitions. [2024-09-11 19:40:26,246 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-11 19:40:26,246 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 1.6) internal successors, (8), 4 states have internal predecessors, (8), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 11 [2024-09-11 19:40:26,246 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:26,247 INFO L225 Difference]: With dead ends: 36 [2024-09-11 19:40:26,247 INFO L226 Difference]: Without dead ends: 34 [2024-09-11 19:40:26,248 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-11 19:40:26,249 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 9 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 35 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 73 SdHoareTripleChecker+Invalid, 35 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 35 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:26,251 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 73 Invalid, 35 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 35 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 19:40:26,253 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 34 states. [2024-09-11 19:40:26,262 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 34 to 27. [2024-09-11 19:40:26,265 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 27 states, 16 states have (on average 1.25) internal successors, (20), 17 states have internal predecessors, (20), 7 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-11 19:40:26,269 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 27 states to 27 states and 33 transitions. [2024-09-11 19:40:26,269 INFO L78 Accepts]: Start accepts. Automaton has 27 states and 33 transitions. Word has length 11 [2024-09-11 19:40:26,269 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:26,270 INFO L474 AbstractCegarLoop]: Abstraction has 27 states and 33 transitions. [2024-09-11 19:40:26,271 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 1.6) internal successors, (8), 4 states have internal predecessors, (8), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-11 19:40:26,271 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:26,275 INFO L276 IsEmpty]: Start isEmpty. Operand 27 states and 33 transitions. [2024-09-11 19:40:26,276 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-11 19:40:26,276 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:26,276 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:26,276 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-11 19:40:26,276 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:26,277 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:26,277 INFO L85 PathProgramCache]: Analyzing trace with hash -413140716, now seen corresponding path program 1 times [2024-09-11 19:40:26,277 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:26,277 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [123851468] [2024-09-11 19:40:26,277 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:26,278 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:26,297 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:40:26,301 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [189827767] [2024-09-11 19:40:26,304 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:26,305 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:26,305 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:26,307 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:26,309 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-11 19:40:26,369 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:26,371 INFO L262 TraceCheckSpWp]: Trace formula consists of 77 conjuncts, 9 conjuncts are in the unsatisfiable core [2024-09-11 19:40:26,377 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:26,499 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-11 19:40:26,499 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-11 19:40:26,500 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:26,500 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [123851468] [2024-09-11 19:40:26,500 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:40:26,500 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [189827767] [2024-09-11 19:40:26,501 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [189827767] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 19:40:26,501 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 19:40:26,501 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-11 19:40:26,501 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1174393936] [2024-09-11 19:40:26,503 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 19:40:26,503 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-11 19:40:26,503 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:26,505 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-11 19:40:26,505 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-11 19:40:26,506 INFO L87 Difference]: Start difference. First operand 27 states and 33 transitions. Second operand has 5 states, 5 states have (on average 1.6) internal successors, (8), 4 states have internal predecessors, (8), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-11 19:40:26,577 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:26,578 INFO L93 Difference]: Finished difference Result 53 states and 70 transitions. [2024-09-11 19:40:26,578 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-11 19:40:26,579 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 1.6) internal successors, (8), 4 states have internal predecessors, (8), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 16 [2024-09-11 19:40:26,579 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:26,580 INFO L225 Difference]: With dead ends: 53 [2024-09-11 19:40:26,582 INFO L226 Difference]: Without dead ends: 40 [2024-09-11 19:40:26,582 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-11 19:40:26,583 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 5 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 40 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 8 SdHoareTripleChecker+Valid, 75 SdHoareTripleChecker+Invalid, 42 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 40 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:26,584 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [8 Valid, 75 Invalid, 42 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 40 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 19:40:26,584 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 40 states. [2024-09-11 19:40:26,597 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 40 to 40. [2024-09-11 19:40:26,598 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 40 states, 23 states have (on average 1.2173913043478262) internal successors, (28), 24 states have internal predecessors, (28), 12 states have call successors, (12), 4 states have call predecessors, (12), 4 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) [2024-09-11 19:40:26,600 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 40 states to 40 states and 51 transitions. [2024-09-11 19:40:26,603 INFO L78 Accepts]: Start accepts. Automaton has 40 states and 51 transitions. Word has length 16 [2024-09-11 19:40:26,603 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:26,603 INFO L474 AbstractCegarLoop]: Abstraction has 40 states and 51 transitions. [2024-09-11 19:40:26,604 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 1.6) internal successors, (8), 4 states have internal predecessors, (8), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-11 19:40:26,604 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:26,605 INFO L276 IsEmpty]: Start isEmpty. Operand 40 states and 51 transitions. [2024-09-11 19:40:26,605 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2024-09-11 19:40:26,605 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:26,606 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:26,624 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-11 19:40:26,810 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:26,811 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:26,811 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:26,811 INFO L85 PathProgramCache]: Analyzing trace with hash 1334915055, now seen corresponding path program 1 times [2024-09-11 19:40:26,812 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:26,812 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [730589541] [2024-09-11 19:40:26,812 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:26,812 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:26,830 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:40:26,831 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1321088297] [2024-09-11 19:40:26,831 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:26,831 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:26,831 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:26,833 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:26,837 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-11 19:40:26,889 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:26,891 INFO L262 TraceCheckSpWp]: Trace formula consists of 88 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-11 19:40:26,893 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:26,971 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-11 19:40:26,971 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-11 19:40:26,971 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:26,972 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [730589541] [2024-09-11 19:40:26,972 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:40:26,972 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1321088297] [2024-09-11 19:40:26,974 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1321088297] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 19:40:26,974 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 19:40:26,975 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-11 19:40:26,975 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [845314803] [2024-09-11 19:40:26,975 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 19:40:26,975 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-11 19:40:26,975 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:26,976 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-11 19:40:26,976 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-11 19:40:26,976 INFO L87 Difference]: Start difference. First operand 40 states and 51 transitions. Second operand has 5 states, 5 states have (on average 2.0) internal successors, (10), 4 states have internal predecessors, (10), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-11 19:40:27,051 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:27,052 INFO L93 Difference]: Finished difference Result 53 states and 68 transitions. [2024-09-11 19:40:27,052 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-11 19:40:27,053 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.0) internal successors, (10), 4 states have internal predecessors, (10), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 23 [2024-09-11 19:40:27,053 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:27,054 INFO L225 Difference]: With dead ends: 53 [2024-09-11 19:40:27,056 INFO L226 Difference]: Without dead ends: 51 [2024-09-11 19:40:27,056 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 19 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-11 19:40:27,057 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 7 mSDsluCounter, 41 mSDsCounter, 0 mSdLazyCounter, 42 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 57 SdHoareTripleChecker+Invalid, 45 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 42 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:27,058 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 57 Invalid, 45 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 42 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 19:40:27,059 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 51 states. [2024-09-11 19:40:27,071 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 51 to 50. [2024-09-11 19:40:27,072 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 50 states, 29 states have (on average 1.2413793103448276) internal successors, (36), 31 states have internal predecessors, (36), 15 states have call successors, (15), 5 states have call predecessors, (15), 5 states have return successors, (14), 13 states have call predecessors, (14), 14 states have call successors, (14) [2024-09-11 19:40:27,073 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 50 states to 50 states and 65 transitions. [2024-09-11 19:40:27,074 INFO L78 Accepts]: Start accepts. Automaton has 50 states and 65 transitions. Word has length 23 [2024-09-11 19:40:27,074 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:27,074 INFO L474 AbstractCegarLoop]: Abstraction has 50 states and 65 transitions. [2024-09-11 19:40:27,074 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.0) internal successors, (10), 4 states have internal predecessors, (10), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-11 19:40:27,075 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:27,075 INFO L276 IsEmpty]: Start isEmpty. Operand 50 states and 65 transitions. [2024-09-11 19:40:27,076 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-11 19:40:27,076 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:27,076 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1] [2024-09-11 19:40:27,093 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-11 19:40:27,280 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:27,282 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:27,283 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:27,284 INFO L85 PathProgramCache]: Analyzing trace with hash 1951602144, now seen corresponding path program 1 times [2024-09-11 19:40:27,284 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:27,284 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2031985376] [2024-09-11 19:40:27,284 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:27,284 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:27,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:40:27,312 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1799581230] [2024-09-11 19:40:27,312 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:27,313 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:27,313 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:27,317 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:27,320 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-11 19:40:27,377 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:27,380 INFO L262 TraceCheckSpWp]: Trace formula consists of 110 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-09-11 19:40:27,382 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:27,518 INFO L134 CoverageAnalysis]: Checked inductivity of 54 backedges. 10 proven. 4 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-11 19:40:27,518 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:40:27,617 INFO L134 CoverageAnalysis]: Checked inductivity of 54 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 44 trivial. 0 not checked. [2024-09-11 19:40:27,618 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:27,619 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2031985376] [2024-09-11 19:40:27,619 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:40:27,619 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1799581230] [2024-09-11 19:40:27,619 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1799581230] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-11 19:40:27,619 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-11 19:40:27,619 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [6] total 7 [2024-09-11 19:40:27,619 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1107586679] [2024-09-11 19:40:27,620 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 19:40:27,620 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-11 19:40:27,620 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:27,620 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-11 19:40:27,621 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2024-09-11 19:40:27,621 INFO L87 Difference]: Start difference. First operand 50 states and 65 transitions. Second operand has 5 states, 5 states have (on average 1.8) internal successors, (9), 4 states have internal predecessors, (9), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-11 19:40:28,907 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.22s for a HTC check with result INVALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [] [2024-09-11 19:40:28,915 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:28,916 INFO L93 Difference]: Finished difference Result 60 states and 77 transitions. [2024-09-11 19:40:28,916 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-11 19:40:28,916 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 1.8) internal successors, (9), 4 states have internal predecessors, (9), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 33 [2024-09-11 19:40:28,917 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:28,918 INFO L225 Difference]: With dead ends: 60 [2024-09-11 19:40:28,918 INFO L226 Difference]: Without dead ends: 58 [2024-09-11 19:40:28,919 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 65 GetRequests, 57 SyntacticMatches, 2 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2024-09-11 19:40:28,919 INFO L434 NwaCegarLoop]: 21 mSDtfsCounter, 5 mSDsluCounter, 47 mSDsCounter, 0 mSdLazyCounter, 40 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 7 SdHoareTripleChecker+Valid, 68 SdHoareTripleChecker+Invalid, 41 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 40 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:28,920 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [7 Valid, 68 Invalid, 41 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 40 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-11 19:40:28,921 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2024-09-11 19:40:28,937 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 57. [2024-09-11 19:40:28,938 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 33 states have (on average 1.2121212121212122) internal successors, (40), 36 states have internal predecessors, (40), 17 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (16), 14 states have call predecessors, (16), 16 states have call successors, (16) [2024-09-11 19:40:28,940 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 73 transitions. [2024-09-11 19:40:28,941 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 73 transitions. Word has length 33 [2024-09-11 19:40:28,941 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:28,941 INFO L474 AbstractCegarLoop]: Abstraction has 57 states and 73 transitions. [2024-09-11 19:40:28,942 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 1.8) internal successors, (9), 4 states have internal predecessors, (9), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-11 19:40:28,942 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:28,943 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 73 transitions. [2024-09-11 19:40:28,943 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-11 19:40:28,944 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:28,945 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:28,961 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-11 19:40:29,148 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:29,149 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:29,149 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:29,149 INFO L85 PathProgramCache]: Analyzing trace with hash -1956440568, now seen corresponding path program 1 times [2024-09-11 19:40:29,149 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:29,149 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1626199202] [2024-09-11 19:40:29,149 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:29,150 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:29,159 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,229 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-11 19:40:29,230 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,235 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-11 19:40:29,236 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,242 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-11 19:40:29,243 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,249 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-09-11 19:40:29,252 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,257 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2024-09-11 19:40:29,261 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,265 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2024-09-11 19:40:29,266 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,273 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 12 proven. 0 refuted. 0 times theorem prover too weak. 60 trivial. 0 not checked. [2024-09-11 19:40:29,273 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:29,273 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1626199202] [2024-09-11 19:40:29,273 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1626199202] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 19:40:29,273 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 19:40:29,274 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-11 19:40:29,274 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [556126953] [2024-09-11 19:40:29,274 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 19:40:29,274 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-11 19:40:29,274 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:29,275 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-11 19:40:29,275 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-11 19:40:29,275 INFO L87 Difference]: Start difference. First operand 57 states and 73 transitions. Second operand has 5 states, 5 states have (on average 2.2) internal successors, (11), 4 states have internal predecessors, (11), 1 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) [2024-09-11 19:40:29,329 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:29,329 INFO L93 Difference]: Finished difference Result 65 states and 81 transitions. [2024-09-11 19:40:29,329 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-11 19:40:29,329 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.2) internal successors, (11), 4 states have internal predecessors, (11), 1 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) Word has length 39 [2024-09-11 19:40:29,330 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:29,331 INFO L225 Difference]: With dead ends: 65 [2024-09-11 19:40:29,331 INFO L226 Difference]: Without dead ends: 53 [2024-09-11 19:40:29,332 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-11 19:40:29,332 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 3 mSDsluCounter, 60 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 85 SdHoareTripleChecker+Invalid, 30 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:29,334 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 85 Invalid, 30 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-11 19:40:29,342 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2024-09-11 19:40:29,358 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2024-09-11 19:40:29,359 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 31 states have (on average 1.1935483870967742) internal successors, (37), 34 states have internal predecessors, (37), 15 states have call successors, (15), 6 states have call predecessors, (15), 6 states have return successors, (14), 12 states have call predecessors, (14), 14 states have call successors, (14) [2024-09-11 19:40:29,360 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 66 transitions. [2024-09-11 19:40:29,360 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 66 transitions. Word has length 39 [2024-09-11 19:40:29,360 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:29,360 INFO L474 AbstractCegarLoop]: Abstraction has 53 states and 66 transitions. [2024-09-11 19:40:29,361 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.2) internal successors, (11), 4 states have internal predecessors, (11), 1 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) [2024-09-11 19:40:29,361 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:29,361 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 66 transitions. [2024-09-11 19:40:29,362 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2024-09-11 19:40:29,364 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:29,365 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:29,365 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-09-11 19:40:29,365 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:29,365 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:29,365 INFO L85 PathProgramCache]: Analyzing trace with hash -1082893162, now seen corresponding path program 1 times [2024-09-11 19:40:29,365 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:29,366 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1544822174] [2024-09-11 19:40:29,366 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:29,366 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:29,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:40:29,444 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2123313563] [2024-09-11 19:40:29,444 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:29,444 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:29,444 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:29,446 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:29,448 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-11 19:40:29,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:29,498 INFO L262 TraceCheckSpWp]: Trace formula consists of 150 conjuncts, 33 conjuncts are in the unsatisfiable core [2024-09-11 19:40:29,503 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:29,792 INFO L134 CoverageAnalysis]: Checked inductivity of 135 backedges. 15 proven. 29 refuted. 0 times theorem prover too weak. 91 trivial. 0 not checked. [2024-09-11 19:40:29,793 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:40:31,263 INFO L134 CoverageAnalysis]: Checked inductivity of 135 backedges. 15 proven. 29 refuted. 0 times theorem prover too weak. 91 trivial. 0 not checked. [2024-09-11 19:40:31,263 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:31,263 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1544822174] [2024-09-11 19:40:31,263 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:40:31,263 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2123313563] [2024-09-11 19:40:31,264 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2123313563] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:40:31,264 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-11 19:40:31,264 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 9] total 15 [2024-09-11 19:40:31,264 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [844100469] [2024-09-11 19:40:31,264 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-11 19:40:31,265 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-11 19:40:31,265 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:31,265 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-11 19:40:31,266 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=43, Invalid=167, Unknown=0, NotChecked=0, Total=210 [2024-09-11 19:40:31,266 INFO L87 Difference]: Start difference. First operand 53 states and 66 transitions. Second operand has 15 states, 15 states have (on average 2.066666666666667) internal successors, (31), 14 states have internal predecessors, (31), 7 states have call successors, (18), 3 states have call predecessors, (18), 2 states have return successors, (16), 4 states have call predecessors, (16), 5 states have call successors, (16) [2024-09-11 19:40:32,078 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:32,080 INFO L93 Difference]: Finished difference Result 128 states and 173 transitions. [2024-09-11 19:40:32,080 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-11 19:40:32,080 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.066666666666667) internal successors, (31), 14 states have internal predecessors, (31), 7 states have call successors, (18), 3 states have call predecessors, (18), 2 states have return successors, (16), 4 states have call predecessors, (16), 5 states have call successors, (16) Word has length 53 [2024-09-11 19:40:32,081 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:32,082 INFO L225 Difference]: With dead ends: 128 [2024-09-11 19:40:32,084 INFO L226 Difference]: Without dead ends: 105 [2024-09-11 19:40:32,085 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 108 GetRequests, 91 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 28 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=76, Invalid=266, Unknown=0, NotChecked=0, Total=342 [2024-09-11 19:40:32,086 INFO L434 NwaCegarLoop]: 21 mSDtfsCounter, 31 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 247 mSolverCounterSat, 58 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 143 SdHoareTripleChecker+Invalid, 305 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 58 IncrementalHoareTripleChecker+Valid, 247 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:32,087 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [36 Valid, 143 Invalid, 305 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [58 Valid, 247 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-11 19:40:32,087 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 105 states. [2024-09-11 19:40:32,127 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 105 to 103. [2024-09-11 19:40:32,128 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 61 states have (on average 1.2295081967213115) internal successors, (75), 66 states have internal predecessors, (75), 31 states have call successors, (31), 10 states have call predecessors, (31), 10 states have return successors, (30), 26 states have call predecessors, (30), 30 states have call successors, (30) [2024-09-11 19:40:32,130 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 136 transitions. [2024-09-11 19:40:32,132 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 136 transitions. Word has length 53 [2024-09-11 19:40:32,132 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:32,132 INFO L474 AbstractCegarLoop]: Abstraction has 103 states and 136 transitions. [2024-09-11 19:40:32,133 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.066666666666667) internal successors, (31), 14 states have internal predecessors, (31), 7 states have call successors, (18), 3 states have call predecessors, (18), 2 states have return successors, (16), 4 states have call predecessors, (16), 5 states have call successors, (16) [2024-09-11 19:40:32,133 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:32,133 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 136 transitions. [2024-09-11 19:40:32,134 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2024-09-11 19:40:32,135 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:32,135 INFO L216 NwaCegarLoop]: trace histogram [11, 10, 10, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:32,153 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-11 19:40:32,336 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:32,336 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:32,337 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:32,337 INFO L85 PathProgramCache]: Analyzing trace with hash -288720889, now seen corresponding path program 1 times [2024-09-11 19:40:32,337 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:32,337 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1740048769] [2024-09-11 19:40:32,337 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:32,337 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:32,366 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:40:32,367 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [172224966] [2024-09-11 19:40:32,367 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:32,367 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:32,367 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:32,369 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:32,371 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-11 19:40:32,431 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:32,436 INFO L262 TraceCheckSpWp]: Trace formula consists of 170 conjuncts, 35 conjuncts are in the unsatisfiable core [2024-09-11 19:40:32,438 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:32,691 INFO L134 CoverageAnalysis]: Checked inductivity of 209 backedges. 19 proven. 37 refuted. 0 times theorem prover too weak. 153 trivial. 0 not checked. [2024-09-11 19:40:32,691 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:40:33,169 INFO L134 CoverageAnalysis]: Checked inductivity of 209 backedges. 19 proven. 37 refuted. 0 times theorem prover too weak. 153 trivial. 0 not checked. [2024-09-11 19:40:33,169 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:33,169 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1740048769] [2024-09-11 19:40:33,169 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:40:33,170 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [172224966] [2024-09-11 19:40:33,170 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [172224966] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:40:33,170 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-11 19:40:33,170 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9] total 16 [2024-09-11 19:40:33,170 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [750007894] [2024-09-11 19:40:33,170 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-11 19:40:33,171 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2024-09-11 19:40:33,173 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:33,173 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2024-09-11 19:40:33,173 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=53, Invalid=187, Unknown=0, NotChecked=0, Total=240 [2024-09-11 19:40:33,174 INFO L87 Difference]: Start difference. First operand 103 states and 136 transitions. Second operand has 16 states, 14 states have (on average 2.357142857142857) internal successors, (33), 15 states have internal predecessors, (33), 8 states have call successors, (22), 3 states have call predecessors, (22), 2 states have return successors, (20), 5 states have call predecessors, (20), 6 states have call successors, (20) [2024-09-11 19:40:33,920 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:33,921 INFO L93 Difference]: Finished difference Result 158 states and 211 transitions. [2024-09-11 19:40:33,921 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-11 19:40:33,921 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 14 states have (on average 2.357142857142857) internal successors, (33), 15 states have internal predecessors, (33), 8 states have call successors, (22), 3 states have call predecessors, (22), 2 states have return successors, (20), 5 states have call predecessors, (20), 6 states have call successors, (20) Word has length 64 [2024-09-11 19:40:33,922 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:33,924 INFO L225 Difference]: With dead ends: 158 [2024-09-11 19:40:33,924 INFO L226 Difference]: Without dead ends: 126 [2024-09-11 19:40:33,925 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 129 GetRequests, 112 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 28 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=79, Invalid=263, Unknown=0, NotChecked=0, Total=342 [2024-09-11 19:40:33,925 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 16 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 273 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 147 SdHoareTripleChecker+Invalid, 303 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 273 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:33,925 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 147 Invalid, 303 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 273 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-09-11 19:40:33,929 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 126 states. [2024-09-11 19:40:33,961 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 126 to 100. [2024-09-11 19:40:33,961 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 60 states have (on average 1.1833333333333333) internal successors, (71), 65 states have internal predecessors, (71), 28 states have call successors, (28), 11 states have call predecessors, (28), 11 states have return successors, (27), 23 states have call predecessors, (27), 27 states have call successors, (27) [2024-09-11 19:40:33,962 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 126 transitions. [2024-09-11 19:40:33,962 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 126 transitions. Word has length 64 [2024-09-11 19:40:33,963 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:33,963 INFO L474 AbstractCegarLoop]: Abstraction has 100 states and 126 transitions. [2024-09-11 19:40:33,963 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 14 states have (on average 2.357142857142857) internal successors, (33), 15 states have internal predecessors, (33), 8 states have call successors, (22), 3 states have call predecessors, (22), 2 states have return successors, (20), 5 states have call predecessors, (20), 6 states have call successors, (20) [2024-09-11 19:40:33,964 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:33,964 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 126 transitions. [2024-09-11 19:40:33,967 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 70 [2024-09-11 19:40:33,969 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:33,969 INFO L216 NwaCegarLoop]: trace histogram [12, 11, 11, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:40:33,989 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-11 19:40:34,173 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable7 [2024-09-11 19:40:34,174 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:34,174 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:34,174 INFO L85 PathProgramCache]: Analyzing trace with hash -1505880913, now seen corresponding path program 1 times [2024-09-11 19:40:34,174 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:34,174 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1459118608] [2024-09-11 19:40:34,174 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:34,175 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:34,190 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,547 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-11 19:40:34,549 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,551 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-11 19:40:34,552 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,555 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-11 19:40:34,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,558 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-09-11 19:40:34,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,566 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2024-09-11 19:40:34,568 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,574 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-11 19:40:34,576 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,587 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2024-09-11 19:40:34,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,594 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-09-11 19:40:34,596 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,600 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 49 [2024-09-11 19:40:34,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,603 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 54 [2024-09-11 19:40:34,604 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,606 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 60 [2024-09-11 19:40:34,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,608 INFO L134 CoverageAnalysis]: Checked inductivity of 251 backedges. 22 proven. 9 refuted. 0 times theorem prover too weak. 220 trivial. 0 not checked. [2024-09-11 19:40:34,609 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:34,609 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1459118608] [2024-09-11 19:40:34,609 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1459118608] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 19:40:34,609 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1452045703] [2024-09-11 19:40:34,609 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:34,609 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:34,610 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:34,611 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:34,613 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-11 19:40:34,665 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:40:34,666 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 19 conjuncts are in the unsatisfiable core [2024-09-11 19:40:34,668 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:34,812 INFO L134 CoverageAnalysis]: Checked inductivity of 251 backedges. 22 proven. 9 refuted. 0 times theorem prover too weak. 220 trivial. 0 not checked. [2024-09-11 19:40:34,813 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:40:35,179 INFO L134 CoverageAnalysis]: Checked inductivity of 251 backedges. 22 proven. 9 refuted. 0 times theorem prover too weak. 220 trivial. 0 not checked. [2024-09-11 19:40:35,180 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1452045703] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:40:35,180 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-11 19:40:35,180 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 7, 7] total 14 [2024-09-11 19:40:35,180 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1858213922] [2024-09-11 19:40:35,180 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-11 19:40:35,181 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-11 19:40:35,181 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:35,182 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-11 19:40:35,183 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=40, Invalid=142, Unknown=0, NotChecked=0, Total=182 [2024-09-11 19:40:35,183 INFO L87 Difference]: Start difference. First operand 100 states and 126 transitions. Second operand has 14 states, 14 states have (on average 2.7142857142857144) internal successors, (38), 12 states have internal predecessors, (38), 8 states have call successors, (35), 3 states have call predecessors, (35), 1 states have return successors, (32), 8 states have call predecessors, (32), 8 states have call successors, (32) [2024-09-11 19:40:35,369 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:40:35,369 INFO L93 Difference]: Finished difference Result 119 states and 145 transitions. [2024-09-11 19:40:35,369 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-11 19:40:35,369 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.7142857142857144) internal successors, (38), 12 states have internal predecessors, (38), 8 states have call successors, (35), 3 states have call predecessors, (35), 1 states have return successors, (32), 8 states have call predecessors, (32), 8 states have call successors, (32) Word has length 69 [2024-09-11 19:40:35,370 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:40:35,371 INFO L225 Difference]: With dead ends: 119 [2024-09-11 19:40:35,371 INFO L226 Difference]: Without dead ends: 90 [2024-09-11 19:40:35,371 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 167 GetRequests, 151 SyntacticMatches, 2 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 52 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=52, Invalid=188, Unknown=0, NotChecked=0, Total=240 [2024-09-11 19:40:35,372 INFO L434 NwaCegarLoop]: 29 mSDtfsCounter, 13 mSDsluCounter, 111 mSDsCounter, 0 mSdLazyCounter, 121 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 13 SdHoareTripleChecker+Valid, 140 SdHoareTripleChecker+Invalid, 131 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 121 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 19:40:35,372 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [13 Valid, 140 Invalid, 131 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 121 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 19:40:35,372 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 90 states. [2024-09-11 19:40:35,396 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 90 to 90. [2024-09-11 19:40:35,397 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 55 states have (on average 1.1272727272727272) internal successors, (62), 58 states have internal predecessors, (62), 23 states have call successors, (23), 11 states have call predecessors, (23), 11 states have return successors, (22), 20 states have call predecessors, (22), 22 states have call successors, (22) [2024-09-11 19:40:35,397 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 107 transitions. [2024-09-11 19:40:35,398 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 107 transitions. Word has length 69 [2024-09-11 19:40:35,398 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:40:35,398 INFO L474 AbstractCegarLoop]: Abstraction has 90 states and 107 transitions. [2024-09-11 19:40:35,398 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.7142857142857144) internal successors, (38), 12 states have internal predecessors, (38), 8 states have call successors, (35), 3 states have call predecessors, (35), 1 states have return successors, (32), 8 states have call predecessors, (32), 8 states have call successors, (32) [2024-09-11 19:40:35,399 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:35,399 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 107 transitions. [2024-09-11 19:40:35,400 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 84 [2024-09-11 19:40:35,402 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:40:35,402 INFO L216 NwaCegarLoop]: trace histogram [14, 13, 13, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1] [2024-09-11 19:40:35,415 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-11 19:40:35,602 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:35,603 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:40:35,603 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:40:35,603 INFO L85 PathProgramCache]: Analyzing trace with hash 1759922767, now seen corresponding path program 2 times [2024-09-11 19:40:35,603 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:40:35,603 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [205160565] [2024-09-11 19:40:35,603 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:40:35,603 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:40:35,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:40:35,627 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1704989170] [2024-09-11 19:40:35,627 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-11 19:40:35,627 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:40:35,627 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:40:35,629 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:40:35,630 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-11 19:40:35,690 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-11 19:40:35,690 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 19:40:35,692 INFO L262 TraceCheckSpWp]: Trace formula consists of 212 conjuncts, 44 conjuncts are in the unsatisfiable core [2024-09-11 19:40:35,694 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:40:36,149 INFO L134 CoverageAnalysis]: Checked inductivity of 362 backedges. 28 proven. 58 refuted. 0 times theorem prover too weak. 276 trivial. 0 not checked. [2024-09-11 19:40:36,149 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:40:50,977 INFO L134 CoverageAnalysis]: Checked inductivity of 362 backedges. 28 proven. 58 refuted. 0 times theorem prover too weak. 276 trivial. 0 not checked. [2024-09-11 19:40:50,978 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:40:50,978 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [205160565] [2024-09-11 19:40:50,978 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:40:50,978 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1704989170] [2024-09-11 19:40:50,978 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1704989170] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:40:50,978 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-11 19:40:50,978 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 14] total 25 [2024-09-11 19:40:50,978 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1915526324] [2024-09-11 19:40:50,978 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-11 19:40:50,979 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-11 19:40:50,979 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:40:50,980 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-11 19:40:50,980 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=107, Invalid=493, Unknown=0, NotChecked=0, Total=600 [2024-09-11 19:40:50,981 INFO L87 Difference]: Start difference. First operand 90 states and 107 transitions. Second operand has 25 states, 25 states have (on average 1.64) internal successors, (41), 23 states have internal predecessors, (41), 13 states have call successors, (28), 3 states have call predecessors, (28), 2 states have return successors, (26), 11 states have call predecessors, (26), 11 states have call successors, (26) [2024-09-11 19:41:04,150 WARN L293 SmtUtils]: Spent 9.82s on a formula simplification. DAG size of input: 221 DAG size of output: 125 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-11 19:41:04,391 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:41:04,392 INFO L93 Difference]: Finished difference Result 203 states and 265 transitions. [2024-09-11 19:41:04,392 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2024-09-11 19:41:04,393 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 25 states have (on average 1.64) internal successors, (41), 23 states have internal predecessors, (41), 13 states have call successors, (28), 3 states have call predecessors, (28), 2 states have return successors, (26), 11 states have call predecessors, (26), 11 states have call successors, (26) Word has length 83 [2024-09-11 19:41:04,393 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:41:04,395 INFO L225 Difference]: With dead ends: 203 [2024-09-11 19:41:04,395 INFO L226 Difference]: Without dead ends: 170 [2024-09-11 19:41:04,396 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 181 GetRequests, 141 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 242 ImplicationChecksByTransitivity, 14.6s TimeCoverageRelationStatistics Valid=359, Invalid=1363, Unknown=0, NotChecked=0, Total=1722 [2024-09-11 19:41:04,397 INFO L434 NwaCegarLoop]: 34 mSDtfsCounter, 42 mSDsluCounter, 306 mSDsCounter, 0 mSdLazyCounter, 572 mSolverCounterSat, 151 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 44 SdHoareTripleChecker+Valid, 340 SdHoareTripleChecker+Invalid, 723 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 151 IncrementalHoareTripleChecker+Valid, 572 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2024-09-11 19:41:04,397 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [44 Valid, 340 Invalid, 723 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [151 Valid, 572 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2024-09-11 19:41:04,398 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 170 states. [2024-09-11 19:41:04,466 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 170 to 150. [2024-09-11 19:41:04,467 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 150 states, 92 states have (on average 1.1630434782608696) internal successors, (107), 96 states have internal predecessors, (107), 41 states have call successors, (41), 16 states have call predecessors, (41), 16 states have return successors, (40), 37 states have call predecessors, (40), 40 states have call successors, (40) [2024-09-11 19:41:04,468 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 150 states to 150 states and 188 transitions. [2024-09-11 19:41:04,468 INFO L78 Accepts]: Start accepts. Automaton has 150 states and 188 transitions. Word has length 83 [2024-09-11 19:41:04,469 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:41:04,469 INFO L474 AbstractCegarLoop]: Abstraction has 150 states and 188 transitions. [2024-09-11 19:41:04,470 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 25 states have (on average 1.64) internal successors, (41), 23 states have internal predecessors, (41), 13 states have call successors, (28), 3 states have call predecessors, (28), 2 states have return successors, (26), 11 states have call predecessors, (26), 11 states have call successors, (26) [2024-09-11 19:41:04,470 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:04,470 INFO L276 IsEmpty]: Start isEmpty. Operand 150 states and 188 transitions. [2024-09-11 19:41:04,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2024-09-11 19:41:04,472 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:41:04,472 INFO L216 NwaCegarLoop]: trace histogram [15, 14, 14, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1] [2024-09-11 19:41:04,487 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-11 19:41:04,676 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:04,676 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:41:04,677 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:04,677 INFO L85 PathProgramCache]: Analyzing trace with hash 425213927, now seen corresponding path program 3 times [2024-09-11 19:41:04,677 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:41:04,677 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1829075582] [2024-09-11 19:41:04,677 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:41:04,677 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:41:04,710 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:41:04,711 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1200101150] [2024-09-11 19:41:04,711 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-11 19:41:04,712 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:04,712 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:41:04,715 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:41:04,716 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-11 19:41:04,765 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-09-11 19:41:04,765 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 19:41:04,766 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 26 conjuncts are in the unsatisfiable core [2024-09-11 19:41:04,768 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:41:04,872 INFO L134 CoverageAnalysis]: Checked inductivity of 418 backedges. 79 proven. 39 refuted. 0 times theorem prover too weak. 300 trivial. 0 not checked. [2024-09-11 19:41:04,872 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:41:05,879 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:41:05,879 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1829075582] [2024-09-11 19:41:05,879 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:41:05,879 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1200101150] [2024-09-11 19:41:05,879 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1200101150] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 19:41:05,879 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 19:41:05,879 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9] total 9 [2024-09-11 19:41:05,879 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2123364304] [2024-09-11 19:41:05,880 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 19:41:05,880 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-11 19:41:05,880 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:41:05,881 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-11 19:41:05,881 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=124, Unknown=0, NotChecked=0, Total=156 [2024-09-11 19:41:05,881 INFO L87 Difference]: Start difference. First operand 150 states and 188 transitions. Second operand has 9 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 8 states have internal predecessors, (21), 3 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-09-11 19:41:06,032 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:41:06,032 INFO L93 Difference]: Finished difference Result 169 states and 203 transitions. [2024-09-11 19:41:06,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-11 19:41:06,032 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 8 states have internal predecessors, (21), 3 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 88 [2024-09-11 19:41:06,032 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:41:06,034 INFO L225 Difference]: With dead ends: 169 [2024-09-11 19:41:06,034 INFO L226 Difference]: Without dead ends: 167 [2024-09-11 19:41:06,034 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 102 GetRequests, 89 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 24 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=47, Invalid=163, Unknown=0, NotChecked=0, Total=210 [2024-09-11 19:41:06,034 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 15 mSDsluCounter, 50 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 65 SdHoareTripleChecker+Invalid, 119 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 19:41:06,035 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 65 Invalid, 119 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 19:41:06,035 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 167 states. [2024-09-11 19:41:06,096 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 167 to 166. [2024-09-11 19:41:06,096 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 166 states, 104 states have (on average 1.1442307692307692) internal successors, (119), 108 states have internal predecessors, (119), 41 states have call successors, (41), 20 states have call predecessors, (41), 20 states have return successors, (40), 37 states have call predecessors, (40), 40 states have call successors, (40) [2024-09-11 19:41:06,097 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 166 states to 166 states and 200 transitions. [2024-09-11 19:41:06,098 INFO L78 Accepts]: Start accepts. Automaton has 166 states and 200 transitions. Word has length 88 [2024-09-11 19:41:06,098 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:41:06,098 INFO L474 AbstractCegarLoop]: Abstraction has 166 states and 200 transitions. [2024-09-11 19:41:06,098 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 8 states have internal predecessors, (21), 3 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-09-11 19:41:06,099 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:06,099 INFO L276 IsEmpty]: Start isEmpty. Operand 166 states and 200 transitions. [2024-09-11 19:41:06,100 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2024-09-11 19:41:06,100 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:41:06,100 INFO L216 NwaCegarLoop]: trace histogram [16, 15, 15, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1] [2024-09-11 19:41:06,112 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-11 19:41:06,301 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:06,301 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:41:06,301 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:06,301 INFO L85 PathProgramCache]: Analyzing trace with hash -1439503186, now seen corresponding path program 2 times [2024-09-11 19:41:06,302 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:41:06,302 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [171026632] [2024-09-11 19:41:06,302 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:41:06,302 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:41:06,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:41:06,343 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1643798034] [2024-09-11 19:41:06,343 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-11 19:41:06,344 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:06,344 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:41:06,345 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:41:06,347 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-11 19:41:06,404 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-11 19:41:06,404 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 19:41:06,406 INFO L262 TraceCheckSpWp]: Trace formula consists of 232 conjuncts, 48 conjuncts are in the unsatisfiable core [2024-09-11 19:41:06,408 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:41:06,763 INFO L134 CoverageAnalysis]: Checked inductivity of 478 backedges. 32 proven. 68 refuted. 0 times theorem prover too weak. 378 trivial. 0 not checked. [2024-09-11 19:41:06,763 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:41:06,985 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:41:06,985 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [171026632] [2024-09-11 19:41:06,985 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:41:06,985 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1643798034] [2024-09-11 19:41:06,985 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1643798034] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 19:41:06,985 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 19:41:06,985 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15] total 15 [2024-09-11 19:41:06,985 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1845231233] [2024-09-11 19:41:06,985 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 19:41:06,985 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-11 19:41:06,985 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:41:06,986 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-11 19:41:06,986 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=75, Invalid=305, Unknown=0, NotChecked=0, Total=380 [2024-09-11 19:41:06,986 INFO L87 Difference]: Start difference. First operand 166 states and 200 transitions. Second operand has 15 states, 14 states have (on average 1.7142857142857142) internal successors, (24), 14 states have internal predecessors, (24), 7 states have call successors, (16), 2 states have call predecessors, (16), 2 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) [2024-09-11 19:41:07,275 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:41:07,275 INFO L93 Difference]: Finished difference Result 220 states and 257 transitions. [2024-09-11 19:41:07,275 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-11 19:41:07,276 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 14 states have (on average 1.7142857142857142) internal successors, (24), 14 states have internal predecessors, (24), 7 states have call successors, (16), 2 states have call predecessors, (16), 2 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) Word has length 94 [2024-09-11 19:41:07,276 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:41:07,277 INFO L225 Difference]: With dead ends: 220 [2024-09-11 19:41:07,277 INFO L226 Difference]: Without dead ends: 162 [2024-09-11 19:41:07,278 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 113 GetRequests, 94 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 46 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=82, Invalid=338, Unknown=0, NotChecked=0, Total=420 [2024-09-11 19:41:07,279 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 5 mSDsluCounter, 273 mSDsCounter, 0 mSdLazyCounter, 468 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 8 SdHoareTripleChecker+Valid, 301 SdHoareTripleChecker+Invalid, 476 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 468 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-11 19:41:07,279 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [8 Valid, 301 Invalid, 476 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 468 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-11 19:41:07,280 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 162 states. [2024-09-11 19:41:07,330 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 162 to 156. [2024-09-11 19:41:07,330 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 156 states, 98 states have (on average 1.1224489795918366) internal successors, (110), 102 states have internal predecessors, (110), 37 states have call successors, (37), 20 states have call predecessors, (37), 20 states have return successors, (36), 33 states have call predecessors, (36), 36 states have call successors, (36) [2024-09-11 19:41:07,331 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 156 states to 156 states and 183 transitions. [2024-09-11 19:41:07,332 INFO L78 Accepts]: Start accepts. Automaton has 156 states and 183 transitions. Word has length 94 [2024-09-11 19:41:07,332 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:41:07,332 INFO L474 AbstractCegarLoop]: Abstraction has 156 states and 183 transitions. [2024-09-11 19:41:07,332 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 14 states have (on average 1.7142857142857142) internal successors, (24), 14 states have internal predecessors, (24), 7 states have call successors, (16), 2 states have call predecessors, (16), 2 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) [2024-09-11 19:41:07,332 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:07,332 INFO L276 IsEmpty]: Start isEmpty. Operand 156 states and 183 transitions. [2024-09-11 19:41:07,333 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2024-09-11 19:41:07,333 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:41:07,333 INFO L216 NwaCegarLoop]: trace histogram [16, 15, 15, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:41:07,347 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-11 19:41:07,534 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-11 19:41:07,534 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:41:07,535 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:07,535 INFO L85 PathProgramCache]: Analyzing trace with hash 1267116208, now seen corresponding path program 1 times [2024-09-11 19:41:07,535 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:41:07,535 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [444171281] [2024-09-11 19:41:07,535 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:41:07,535 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:41:07,555 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:41:07,556 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2007747884] [2024-09-11 19:41:07,556 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:41:07,556 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:07,557 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:41:07,558 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:41:07,563 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-11 19:41:07,622 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:07,624 INFO L262 TraceCheckSpWp]: Trace formula consists of 228 conjuncts, 46 conjuncts are in the unsatisfiable core [2024-09-11 19:41:07,626 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:41:08,003 INFO L134 CoverageAnalysis]: Checked inductivity of 478 backedges. 29 proven. 71 refuted. 0 times theorem prover too weak. 378 trivial. 0 not checked. [2024-09-11 19:41:08,003 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:41:08,844 INFO L134 CoverageAnalysis]: Checked inductivity of 478 backedges. 29 proven. 71 refuted. 0 times theorem prover too weak. 378 trivial. 0 not checked. [2024-09-11 19:41:08,845 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:41:08,845 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [444171281] [2024-09-11 19:41:08,845 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:41:08,845 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2007747884] [2024-09-11 19:41:08,845 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2007747884] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:41:08,845 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-11 19:41:08,845 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 13] total 24 [2024-09-11 19:41:08,845 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2067028692] [2024-09-11 19:41:08,845 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-11 19:41:08,846 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-11 19:41:08,846 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:41:08,846 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-11 19:41:08,847 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=124, Invalid=428, Unknown=0, NotChecked=0, Total=552 [2024-09-11 19:41:08,847 INFO L87 Difference]: Start difference. First operand 156 states and 183 transitions. Second operand has 24 states, 22 states have (on average 1.9545454545454546) internal successors, (43), 22 states have internal predecessors, (43), 13 states have call successors, (32), 3 states have call predecessors, (32), 2 states have return successors, (30), 10 states have call predecessors, (30), 11 states have call successors, (30) [2024-09-11 19:41:09,765 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:41:09,765 INFO L93 Difference]: Finished difference Result 200 states and 252 transitions. [2024-09-11 19:41:09,765 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-11 19:41:09,765 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 22 states have (on average 1.9545454545454546) internal successors, (43), 22 states have internal predecessors, (43), 13 states have call successors, (32), 3 states have call predecessors, (32), 2 states have return successors, (30), 10 states have call predecessors, (30), 11 states have call successors, (30) Word has length 94 [2024-09-11 19:41:09,766 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:41:09,767 INFO L225 Difference]: With dead ends: 200 [2024-09-11 19:41:09,767 INFO L226 Difference]: Without dead ends: 198 [2024-09-11 19:41:09,768 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 194 GetRequests, 163 SyntacticMatches, 1 SemanticMatches, 30 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 157 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=246, Invalid=746, Unknown=0, NotChecked=0, Total=992 [2024-09-11 19:41:09,768 INFO L434 NwaCegarLoop]: 27 mSDtfsCounter, 29 mSDsluCounter, 224 mSDsCounter, 0 mSdLazyCounter, 469 mSolverCounterSat, 76 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 251 SdHoareTripleChecker+Invalid, 545 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 76 IncrementalHoareTripleChecker+Valid, 469 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-11 19:41:09,769 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 251 Invalid, 545 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [76 Valid, 469 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-11 19:41:09,769 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 198 states. [2024-09-11 19:41:09,832 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 198 to 171. [2024-09-11 19:41:09,832 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 171 states, 107 states have (on average 1.1682242990654206) internal successors, (125), 111 states have internal predecessors, (125), 43 states have call successors, (43), 20 states have call predecessors, (43), 20 states have return successors, (42), 39 states have call predecessors, (42), 42 states have call successors, (42) [2024-09-11 19:41:09,833 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 171 states to 171 states and 210 transitions. [2024-09-11 19:41:09,834 INFO L78 Accepts]: Start accepts. Automaton has 171 states and 210 transitions. Word has length 94 [2024-09-11 19:41:09,834 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:41:09,834 INFO L474 AbstractCegarLoop]: Abstraction has 171 states and 210 transitions. [2024-09-11 19:41:09,834 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 22 states have (on average 1.9545454545454546) internal successors, (43), 22 states have internal predecessors, (43), 13 states have call successors, (32), 3 states have call predecessors, (32), 2 states have return successors, (30), 10 states have call predecessors, (30), 11 states have call successors, (30) [2024-09-11 19:41:09,834 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:09,834 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 210 transitions. [2024-09-11 19:41:09,835 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2024-09-11 19:41:09,835 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:41:09,835 INFO L216 NwaCegarLoop]: trace histogram [17, 16, 16, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 19:41:09,848 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-11 19:41:10,039 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2024-09-11 19:41:10,040 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:41:10,040 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:10,040 INFO L85 PathProgramCache]: Analyzing trace with hash -621318040, now seen corresponding path program 2 times [2024-09-11 19:41:10,040 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:41:10,040 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1630845163] [2024-09-11 19:41:10,041 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:41:10,041 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:41:10,062 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,376 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-11 19:41:10,377 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,380 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-11 19:41:10,381 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,383 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-11 19:41:10,384 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,386 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-09-11 19:41:10,387 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,389 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2024-09-11 19:41:10,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,392 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-11 19:41:10,393 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,396 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2024-09-11 19:41:10,397 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,398 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-09-11 19:41:10,399 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,401 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2024-09-11 19:41:10,402 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,405 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2024-09-11 19:41:10,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,409 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2024-09-11 19:41:10,410 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,412 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-09-11 19:41:10,414 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,417 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 71 [2024-09-11 19:41:10,418 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,421 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2024-09-11 19:41:10,422 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,430 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 84 [2024-09-11 19:41:10,431 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,433 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 90 [2024-09-11 19:41:10,434 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 19:41:10,436 INFO L134 CoverageAnalysis]: Checked inductivity of 540 backedges. 32 proven. 28 refuted. 0 times theorem prover too weak. 480 trivial. 0 not checked. [2024-09-11 19:41:10,436 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:41:10,436 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1630845163] [2024-09-11 19:41:10,436 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1630845163] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 19:41:10,436 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1489742851] [2024-09-11 19:41:10,436 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-11 19:41:10,436 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:10,437 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:41:10,438 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:41:10,439 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-11 19:41:10,498 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-11 19:41:10,499 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 19:41:10,505 INFO L262 TraceCheckSpWp]: Trace formula consists of 241 conjuncts, 39 conjuncts are in the unsatisfiable core [2024-09-11 19:41:10,507 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:41:10,704 INFO L134 CoverageAnalysis]: Checked inductivity of 540 backedges. 34 proven. 71 refuted. 0 times theorem prover too weak. 435 trivial. 0 not checked. [2024-09-11 19:41:10,704 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:41:11,430 INFO L134 CoverageAnalysis]: Checked inductivity of 540 backedges. 34 proven. 71 refuted. 0 times theorem prover too weak. 435 trivial. 0 not checked. [2024-09-11 19:41:11,431 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1489742851] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:41:11,431 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-11 19:41:11,431 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 11, 10] total 21 [2024-09-11 19:41:11,431 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [778565834] [2024-09-11 19:41:11,431 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-11 19:41:11,431 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-11 19:41:11,431 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:41:11,432 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-11 19:41:11,432 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=78, Invalid=342, Unknown=0, NotChecked=0, Total=420 [2024-09-11 19:41:11,432 INFO L87 Difference]: Start difference. First operand 171 states and 210 transitions. Second operand has 21 states, 21 states have (on average 2.761904761904762) internal successors, (58), 20 states have internal predecessors, (58), 13 states have call successors, (49), 3 states have call predecessors, (49), 2 states have return successors, (47), 13 states have call predecessors, (47), 13 states have call successors, (47) [2024-09-11 19:41:11,791 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 19:41:11,791 INFO L93 Difference]: Finished difference Result 217 states and 257 transitions. [2024-09-11 19:41:11,791 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-11 19:41:11,792 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 2.761904761904762) internal successors, (58), 20 states have internal predecessors, (58), 13 states have call successors, (49), 3 states have call predecessors, (49), 2 states have return successors, (47), 13 states have call predecessors, (47), 13 states have call successors, (47) Word has length 99 [2024-09-11 19:41:11,792 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 19:41:11,793 INFO L225 Difference]: With dead ends: 217 [2024-09-11 19:41:11,793 INFO L226 Difference]: Without dead ends: 129 [2024-09-11 19:41:11,794 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 239 GetRequests, 217 SyntacticMatches, 0 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 114 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=106, Invalid=446, Unknown=0, NotChecked=0, Total=552 [2024-09-11 19:41:11,794 INFO L434 NwaCegarLoop]: 27 mSDtfsCounter, 17 mSDsluCounter, 231 mSDsCounter, 0 mSdLazyCounter, 377 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 19 SdHoareTripleChecker+Valid, 258 SdHoareTripleChecker+Invalid, 400 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 377 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-11 19:41:11,794 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [19 Valid, 258 Invalid, 400 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 377 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-11 19:41:11,795 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 129 states. [2024-09-11 19:41:11,831 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 129 to 121. [2024-09-11 19:41:11,832 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 77 states have (on average 1.0909090909090908) internal successors, (84), 80 states have internal predecessors, (84), 26 states have call successors, (26), 17 states have call predecessors, (26), 17 states have return successors, (25), 23 states have call predecessors, (25), 25 states have call successors, (25) [2024-09-11 19:41:11,832 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 135 transitions. [2024-09-11 19:41:11,832 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 135 transitions. Word has length 99 [2024-09-11 19:41:11,833 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 19:41:11,833 INFO L474 AbstractCegarLoop]: Abstraction has 121 states and 135 transitions. [2024-09-11 19:41:11,833 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 2.761904761904762) internal successors, (58), 20 states have internal predecessors, (58), 13 states have call successors, (49), 3 states have call predecessors, (49), 2 states have return successors, (47), 13 states have call predecessors, (47), 13 states have call successors, (47) [2024-09-11 19:41:11,833 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:11,833 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 135 transitions. [2024-09-11 19:41:11,834 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 101 [2024-09-11 19:41:11,834 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 19:41:11,834 INFO L216 NwaCegarLoop]: trace histogram [17, 16, 16, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1] [2024-09-11 19:41:11,846 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-11 19:41:12,035 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-11 19:41:12,035 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 19:41:12,036 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 19:41:12,036 INFO L85 PathProgramCache]: Analyzing trace with hash -1705850365, now seen corresponding path program 4 times [2024-09-11 19:41:12,036 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 19:41:12,036 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [145304514] [2024-09-11 19:41:12,036 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 19:41:12,036 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 19:41:12,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 19:41:12,055 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [488630082] [2024-09-11 19:41:12,055 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-11 19:41:12,055 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 19:41:12,055 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 19:41:12,057 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 19:41:12,069 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-11 19:41:12,167 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-11 19:41:12,167 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 19:41:12,173 INFO L262 TraceCheckSpWp]: Trace formula consists of 198 conjuncts, 61 conjuncts are in the unsatisfiable core [2024-09-11 19:41:12,175 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 19:41:44,525 INFO L134 CoverageAnalysis]: Checked inductivity of 551 backedges. 144 proven. 92 refuted. 0 times theorem prover too weak. 315 trivial. 0 not checked. [2024-09-11 19:41:44,525 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 19:43:07,276 INFO L134 CoverageAnalysis]: Checked inductivity of 551 backedges. 151 proven. 32 refuted. 0 times theorem prover too weak. 368 trivial. 0 not checked. [2024-09-11 19:43:07,277 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 19:43:07,277 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [145304514] [2024-09-11 19:43:07,277 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 19:43:07,277 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [488630082] [2024-09-11 19:43:07,277 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [488630082] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 19:43:07,277 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-11 19:43:07,277 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 16] total 28 [2024-09-11 19:43:07,277 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1520743736] [2024-09-11 19:43:07,277 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-11 19:43:07,278 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-09-11 19:43:07,278 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 19:43:07,278 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-09-11 19:43:07,279 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=153, Invalid=603, Unknown=0, NotChecked=0, Total=756 [2024-09-11 19:43:07,279 INFO L87 Difference]: Start difference. First operand 121 states and 135 transitions. Second operand has 28 states, 27 states have (on average 1.4814814814814814) internal successors, (40), 21 states have internal predecessors, (40), 16 states have call successors, (30), 2 states have call predecessors, (30), 2 states have return successors, (29), 15 states have call predecessors, (29), 14 states have call successors, (29) [2024-09-11 19:43:31,608 WARN L293 SmtUtils]: Spent 23.20s on a formula simplification. DAG size of input: 199 DAG size of output: 94 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-11 19:43:37,972 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [0] [2024-09-11 19:43:43,097 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.19s for a HTC check with result VALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [] [2024-09-11 19:43:45,702 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.60s for a HTC check with result VALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [] [2024-09-11 19:44:04,156 WARN L293 SmtUtils]: Spent 10.41s on a formula simplification. DAG size of input: 168 DAG size of output: 59 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-11 19:44:05,874 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.68s for a HTC check with result INVALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [0] [2024-09-11 19:44:10,773 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.57s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [0] [2024-09-11 19:44:15,092 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [0] [2024-09-11 19:44:26,876 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [0] [2024-09-11 19:44:31,312 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [0]