./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_cohendiv-ll.c --full-output --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a9b967e5 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_cohendiv-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 7c6261a52ba91bad3864c182e4633afd262bc5fe07cf18f92cb66db83623b9ae --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-a9b967e-m [2024-09-11 20:34:21,132 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-11 20:34:21,192 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-11 20:34:21,196 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-11 20:34:21,197 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-11 20:34:21,214 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-11 20:34:21,215 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-11 20:34:21,215 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-11 20:34:21,216 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-11 20:34:21,216 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-11 20:34:21,216 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-11 20:34:21,217 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-11 20:34:21,217 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-11 20:34:21,218 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-11 20:34:21,218 INFO L153 SettingsManager]: * Use SBE=true [2024-09-11 20:34:21,218 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-11 20:34:21,219 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-11 20:34:21,219 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-11 20:34:21,220 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-11 20:34:21,220 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-11 20:34:21,220 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-11 20:34:21,223 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-11 20:34:21,224 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-11 20:34:21,224 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-11 20:34:21,224 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-11 20:34:21,224 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-11 20:34:21,225 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-11 20:34:21,225 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-11 20:34:21,225 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-11 20:34:21,226 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-11 20:34:21,226 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-11 20:34:21,226 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-11 20:34:21,226 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-11 20:34:21,227 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-11 20:34:21,227 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-11 20:34:21,227 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-11 20:34:21,228 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-11 20:34:21,228 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-11 20:34:21,228 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-11 20:34:21,229 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-11 20:34:21,229 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-11 20:34:21,232 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-11 20:34:21,232 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 7c6261a52ba91bad3864c182e4633afd262bc5fe07cf18f92cb66db83623b9ae Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-11 20:34:21,456 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-11 20:34:21,481 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-11 20:34:21,487 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-11 20:34:21,488 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-11 20:34:21,488 INFO L274 PluginConnector]: CDTParser initialized [2024-09-11 20:34:21,490 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_cohendiv-ll.c [2024-09-11 20:34:22,998 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-11 20:34:23,209 INFO L384 CDTParser]: Found 1 translation units. [2024-09-11 20:34:23,210 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_cohendiv-ll.c [2024-09-11 20:34:23,223 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/eb781d803/e877d21a12c2498bb589bff4682997a2/FLAG9781fb83f [2024-09-11 20:34:23,242 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/eb781d803/e877d21a12c2498bb589bff4682997a2 [2024-09-11 20:34:23,245 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-11 20:34:23,247 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-11 20:34:23,249 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-11 20:34:23,249 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-11 20:34:23,255 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-11 20:34:23,256 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,258 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@23a04d46 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23, skipping insertion in model container [2024-09-11 20:34:23,258 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,282 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-11 20:34:23,476 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_cohendiv-ll.c[1136,1149] [2024-09-11 20:34:23,497 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-11 20:34:23,513 INFO L200 MainTranslator]: Completed pre-run [2024-09-11 20:34:23,525 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_cohendiv-ll.c[1136,1149] [2024-09-11 20:34:23,540 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-11 20:34:23,557 INFO L204 MainTranslator]: Completed translation [2024-09-11 20:34:23,557 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23 WrapperNode [2024-09-11 20:34:23,557 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-11 20:34:23,560 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-11 20:34:23,562 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-11 20:34:23,562 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-11 20:34:23,570 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,583 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,608 INFO L138 Inliner]: procedures = 17, calls = 84, calls flagged for inlining = 3, calls inlined = 3, statements flattened = 71 [2024-09-11 20:34:23,609 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-11 20:34:23,610 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-11 20:34:23,610 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-11 20:34:23,610 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-11 20:34:23,620 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,620 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,624 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,645 INFO L175 MemorySlicer]: Split 49 memory accesses to 7 slices as follows [2, 10, 8, 5, 10, 8, 6]. 20 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0, 0, 0]. The 12 writes are split as follows [0, 2, 3, 1, 1, 3, 2]. [2024-09-11 20:34:23,646 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,646 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,656 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,662 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,663 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,668 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,673 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-11 20:34:23,678 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-11 20:34:23,678 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-11 20:34:23,678 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-11 20:34:23,679 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (1/1) ... [2024-09-11 20:34:23,684 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-11 20:34:23,696 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:23,714 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-11 20:34:23,717 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-11 20:34:23,764 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-11 20:34:23,765 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-11 20:34:23,765 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-11 20:34:23,766 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-11 20:34:23,766 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-11 20:34:23,766 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-11 20:34:23,766 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#5 [2024-09-11 20:34:23,766 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#6 [2024-09-11 20:34:23,768 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-11 20:34:23,768 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_41_to_52_0 [2024-09-11 20:34:23,768 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_41_to_52_0 [2024-09-11 20:34:23,768 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_32_to_55_0 [2024-09-11 20:34:23,769 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_32_to_55_0 [2024-09-11 20:34:23,769 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-11 20:34:23,769 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-11 20:34:23,769 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-11 20:34:23,769 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-11 20:34:23,770 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-11 20:34:23,770 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#5 [2024-09-11 20:34:23,770 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#6 [2024-09-11 20:34:23,771 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-11 20:34:23,771 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-11 20:34:23,771 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-11 20:34:23,772 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-11 20:34:23,772 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-11 20:34:23,772 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-11 20:34:23,773 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-11 20:34:23,773 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#5 [2024-09-11 20:34:23,773 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#6 [2024-09-11 20:34:23,773 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-11 20:34:23,773 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-11 20:34:23,773 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-11 20:34:23,886 INFO L242 CfgBuilder]: Building ICFG [2024-09-11 20:34:23,888 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-11 20:34:24,139 INFO L? ?]: Removed 11 outVars from TransFormulas that were not future-live. [2024-09-11 20:34:24,140 INFO L291 CfgBuilder]: Performing block encoding [2024-09-11 20:34:24,176 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-11 20:34:24,176 INFO L318 CfgBuilder]: Removed 2 assume(true) statements. [2024-09-11 20:34:24,176 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 11.09 08:34:24 BoogieIcfgContainer [2024-09-11 20:34:24,176 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-11 20:34:24,179 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-11 20:34:24,179 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-11 20:34:24,182 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-11 20:34:24,182 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 11.09 08:34:23" (1/3) ... [2024-09-11 20:34:24,183 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@306213e1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 11.09 08:34:24, skipping insertion in model container [2024-09-11 20:34:24,183 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 11.09 08:34:23" (2/3) ... [2024-09-11 20:34:24,184 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@306213e1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 11.09 08:34:24, skipping insertion in model container [2024-09-11 20:34:24,185 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 11.09 08:34:24" (3/3) ... [2024-09-11 20:34:24,186 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_cohendiv-ll.c [2024-09-11 20:34:24,203 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-11 20:34:24,204 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-11 20:34:24,254 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-11 20:34:24,262 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@3e8a116c, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-11 20:34:24,262 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-11 20:34:24,266 INFO L276 IsEmpty]: Start isEmpty. Operand has 40 states, 24 states have (on average 1.2916666666666667) internal successors, (31), 27 states have internal predecessors, (31), 11 states have call successors, (11), 3 states have call predecessors, (11), 3 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) [2024-09-11 20:34:24,276 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 11 [2024-09-11 20:34:24,276 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:24,276 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:24,277 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:24,281 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:24,282 INFO L85 PathProgramCache]: Analyzing trace with hash 779716243, now seen corresponding path program 1 times [2024-09-11 20:34:24,292 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:24,292 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [101873868] [2024-09-11 20:34:24,293 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:24,293 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:24,451 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:24,555 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-11 20:34:24,558 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:24,558 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [101873868] [2024-09-11 20:34:24,559 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [101873868] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:34:24,559 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:34:24,559 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-11 20:34:24,561 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1930249338] [2024-09-11 20:34:24,562 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:24,565 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-11 20:34:24,566 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:24,588 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-11 20:34:24,589 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-11 20:34:24,591 INFO L87 Difference]: Start difference. First operand has 40 states, 24 states have (on average 1.2916666666666667) internal successors, (31), 27 states have internal predecessors, (31), 11 states have call successors, (11), 3 states have call predecessors, (11), 3 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) Second operand has 2 states, 2 states have (on average 4.0) internal successors, (8), 2 states have internal predecessors, (8), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-11 20:34:24,636 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:24,636 INFO L93 Difference]: Finished difference Result 78 states and 114 transitions. [2024-09-11 20:34:24,638 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-11 20:34:24,640 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 4.0) internal successors, (8), 2 states have internal predecessors, (8), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 10 [2024-09-11 20:34:24,640 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:24,647 INFO L225 Difference]: With dead ends: 78 [2024-09-11 20:34:24,647 INFO L226 Difference]: Without dead ends: 38 [2024-09-11 20:34:24,652 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-11 20:34:24,656 INFO L434 NwaCegarLoop]: 47 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 47 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:24,657 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 47 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-11 20:34:24,716 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 38 states. [2024-09-11 20:34:24,764 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 38 to 38. [2024-09-11 20:34:24,767 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 38 states, 23 states have (on average 1.1304347826086956) internal successors, (26), 26 states have internal predecessors, (26), 11 states have call successors, (11), 3 states have call predecessors, (11), 3 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) [2024-09-11 20:34:24,769 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 38 states to 38 states and 47 transitions. [2024-09-11 20:34:24,771 INFO L78 Accepts]: Start accepts. Automaton has 38 states and 47 transitions. Word has length 10 [2024-09-11 20:34:24,771 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:24,771 INFO L474 AbstractCegarLoop]: Abstraction has 38 states and 47 transitions. [2024-09-11 20:34:24,773 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 4.0) internal successors, (8), 2 states have internal predecessors, (8), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-11 20:34:24,774 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:24,775 INFO L276 IsEmpty]: Start isEmpty. Operand 38 states and 47 transitions. [2024-09-11 20:34:24,776 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 11 [2024-09-11 20:34:24,776 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:24,776 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:24,777 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-11 20:34:24,777 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:24,778 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:24,778 INFO L85 PathProgramCache]: Analyzing trace with hash 1459774613, now seen corresponding path program 1 times [2024-09-11 20:34:24,779 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:24,779 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1006861381] [2024-09-11 20:34:24,779 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:24,779 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:24,858 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:24,869 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1346783034] [2024-09-11 20:34:24,870 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:24,870 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:24,870 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:24,872 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:24,874 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-11 20:34:24,997 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:25,004 INFO L262 TraceCheckSpWp]: Trace formula consists of 185 conjuncts, 45 conjuncts are in the unsatisfiable core [2024-09-11 20:34:25,011 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:25,060 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:25,076 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:25,090 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:25,182 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2024-09-11 20:34:25,232 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-11 20:34:25,232 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-11 20:34:25,232 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:25,232 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1006861381] [2024-09-11 20:34:25,233 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:25,233 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1346783034] [2024-09-11 20:34:25,233 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1346783034] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:34:25,233 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:34:25,233 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-11 20:34:25,234 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1439026038] [2024-09-11 20:34:25,235 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:25,236 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-11 20:34:25,236 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:25,237 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-11 20:34:25,237 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-11 20:34:25,237 INFO L87 Difference]: Start difference. First operand 38 states and 47 transitions. Second operand has 8 states, 6 states have (on average 1.3333333333333333) internal successors, (8), 6 states have internal predecessors, (8), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-11 20:34:25,445 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:25,446 INFO L93 Difference]: Finished difference Result 55 states and 66 transitions. [2024-09-11 20:34:25,446 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-11 20:34:25,447 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 1.3333333333333333) internal successors, (8), 6 states have internal predecessors, (8), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 10 [2024-09-11 20:34:25,447 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:25,448 INFO L225 Difference]: With dead ends: 55 [2024-09-11 20:34:25,448 INFO L226 Difference]: Without dead ends: 53 [2024-09-11 20:34:25,449 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-11 20:34:25,450 INFO L434 NwaCegarLoop]: 39 mSDtfsCounter, 15 mSDsluCounter, 197 mSDsCounter, 0 mSdLazyCounter, 91 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 236 SdHoareTripleChecker+Invalid, 97 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 91 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:25,450 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 236 Invalid, 97 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 91 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 20:34:25,451 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2024-09-11 20:34:25,461 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 51. [2024-09-11 20:34:25,461 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 51 states, 32 states have (on average 1.125) internal successors, (36), 35 states have internal predecessors, (36), 13 states have call successors, (13), 5 states have call predecessors, (13), 5 states have return successors, (13), 12 states have call predecessors, (13), 12 states have call successors, (13) [2024-09-11 20:34:25,463 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 51 states to 51 states and 62 transitions. [2024-09-11 20:34:25,463 INFO L78 Accepts]: Start accepts. Automaton has 51 states and 62 transitions. Word has length 10 [2024-09-11 20:34:25,463 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:25,463 INFO L474 AbstractCegarLoop]: Abstraction has 51 states and 62 transitions. [2024-09-11 20:34:25,464 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 1.3333333333333333) internal successors, (8), 6 states have internal predecessors, (8), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-11 20:34:25,464 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:25,464 INFO L276 IsEmpty]: Start isEmpty. Operand 51 states and 62 transitions. [2024-09-11 20:34:25,465 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-11 20:34:25,465 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:25,465 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:25,482 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-11 20:34:25,669 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:25,670 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:25,670 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:25,671 INFO L85 PathProgramCache]: Analyzing trace with hash -860720822, now seen corresponding path program 1 times [2024-09-11 20:34:25,671 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:25,671 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1879854169] [2024-09-11 20:34:25,671 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:25,671 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:25,736 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:25,738 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [276308601] [2024-09-11 20:34:25,738 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:25,739 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:25,739 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:25,744 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:25,747 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-11 20:34:25,857 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:25,859 INFO L262 TraceCheckSpWp]: Trace formula consists of 202 conjuncts, 43 conjuncts are in the unsatisfiable core [2024-09-11 20:34:25,862 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:25,869 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:25,877 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:25,883 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:26,074 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:26,078 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-11 20:34:26,117 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-11 20:34:26,117 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:34:26,213 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-11 20:34:26,213 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:26,214 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1879854169] [2024-09-11 20:34:26,214 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:26,214 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [276308601] [2024-09-11 20:34:26,214 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [276308601] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-11 20:34:26,214 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:34:26,214 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [9] total 9 [2024-09-11 20:34:26,215 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1506422915] [2024-09-11 20:34:26,215 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:26,215 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-11 20:34:26,215 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:26,216 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-11 20:34:26,217 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2024-09-11 20:34:26,217 INFO L87 Difference]: Start difference. First operand 51 states and 62 transitions. Second operand has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-11 20:34:26,385 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:26,385 INFO L93 Difference]: Finished difference Result 60 states and 71 transitions. [2024-09-11 20:34:26,385 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-11 20:34:26,385 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-11 20:34:26,386 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:26,387 INFO L225 Difference]: With dead ends: 60 [2024-09-11 20:34:26,387 INFO L226 Difference]: Without dead ends: 58 [2024-09-11 20:34:26,387 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 33 GetRequests, 19 SyntacticMatches, 4 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=34, Invalid=98, Unknown=0, NotChecked=0, Total=132 [2024-09-11 20:34:26,388 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 15 mSDsluCounter, 201 mSDsCounter, 0 mSdLazyCounter, 103 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 241 SdHoareTripleChecker+Invalid, 110 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 103 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:26,388 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 241 Invalid, 110 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 103 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-11 20:34:26,389 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2024-09-11 20:34:26,398 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 55. [2024-09-11 20:34:26,399 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 35 states have (on average 1.1142857142857143) internal successors, (39), 38 states have internal predecessors, (39), 13 states have call successors, (13), 6 states have call predecessors, (13), 6 states have return successors, (13), 12 states have call predecessors, (13), 12 states have call successors, (13) [2024-09-11 20:34:26,403 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 65 transitions. [2024-09-11 20:34:26,403 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 65 transitions. Word has length 16 [2024-09-11 20:34:26,403 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:26,403 INFO L474 AbstractCegarLoop]: Abstraction has 55 states and 65 transitions. [2024-09-11 20:34:26,403 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-11 20:34:26,404 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:26,404 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 65 transitions. [2024-09-11 20:34:26,405 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-11 20:34:26,405 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:26,405 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:26,423 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-11 20:34:26,609 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:26,610 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:26,610 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:26,610 INFO L85 PathProgramCache]: Analyzing trace with hash 1771378809, now seen corresponding path program 1 times [2024-09-11 20:34:26,610 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:26,610 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [451603807] [2024-09-11 20:34:26,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:26,611 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:26,652 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:26,655 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [604365741] [2024-09-11 20:34:26,655 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:26,655 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:26,655 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:26,657 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:26,658 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-11 20:34:26,770 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:26,773 INFO L262 TraceCheckSpWp]: Trace formula consists of 282 conjuncts, 59 conjuncts are in the unsatisfiable core [2024-09-11 20:34:26,776 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:26,780 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:26,792 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:26,797 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:26,853 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:26,856 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-11 20:34:26,888 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-11 20:34:26,888 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-11 20:34:26,889 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:26,889 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [451603807] [2024-09-11 20:34:26,889 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:26,889 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [604365741] [2024-09-11 20:34:26,890 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [604365741] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:34:26,890 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:34:26,890 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-11 20:34:26,890 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [749238932] [2024-09-11 20:34:26,890 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:26,891 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-11 20:34:26,891 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:26,891 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-11 20:34:26,892 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-11 20:34:26,892 INFO L87 Difference]: Start difference. First operand 55 states and 65 transitions. Second operand has 8 states, 6 states have (on average 2.6666666666666665) internal successors, (16), 6 states have internal predecessors, (16), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-11 20:34:27,116 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:27,117 INFO L93 Difference]: Finished difference Result 76 states and 91 transitions. [2024-09-11 20:34:27,117 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-11 20:34:27,117 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 2.6666666666666665) internal successors, (16), 6 states have internal predecessors, (16), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 26 [2024-09-11 20:34:27,118 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:27,120 INFO L225 Difference]: With dead ends: 76 [2024-09-11 20:34:27,120 INFO L226 Difference]: Without dead ends: 74 [2024-09-11 20:34:27,121 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 19 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-11 20:34:27,122 INFO L434 NwaCegarLoop]: 38 mSDtfsCounter, 19 mSDsluCounter, 175 mSDsCounter, 0 mSdLazyCounter, 131 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 19 SdHoareTripleChecker+Valid, 213 SdHoareTripleChecker+Invalid, 141 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 131 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:27,122 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [19 Valid, 213 Invalid, 141 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 131 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-11 20:34:27,123 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 74 states. [2024-09-11 20:34:27,137 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 70. [2024-09-11 20:34:27,138 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 45 states have (on average 1.1111111111111112) internal successors, (50), 48 states have internal predecessors, (50), 16 states have call successors, (16), 8 states have call predecessors, (16), 8 states have return successors, (17), 15 states have call predecessors, (17), 15 states have call successors, (17) [2024-09-11 20:34:27,139 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 83 transitions. [2024-09-11 20:34:27,139 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 83 transitions. Word has length 26 [2024-09-11 20:34:27,139 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:27,139 INFO L474 AbstractCegarLoop]: Abstraction has 70 states and 83 transitions. [2024-09-11 20:34:27,140 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 2.6666666666666665) internal successors, (16), 6 states have internal predecessors, (16), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-11 20:34:27,140 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:27,140 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 83 transitions. [2024-09-11 20:34:27,141 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-11 20:34:27,141 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:27,141 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:27,159 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-09-11 20:34:27,345 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:27,346 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:27,346 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:27,346 INFO L85 PathProgramCache]: Analyzing trace with hash 1321931825, now seen corresponding path program 1 times [2024-09-11 20:34:27,346 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:27,347 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1733761183] [2024-09-11 20:34:27,347 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:27,347 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:27,386 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:27,388 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [939143594] [2024-09-11 20:34:27,389 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:27,389 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:27,389 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:27,391 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:27,393 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-11 20:34:27,504 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:27,506 INFO L262 TraceCheckSpWp]: Trace formula consists of 226 conjuncts, 17 conjuncts are in the unsatisfiable core [2024-09-11 20:34:27,508 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:27,518 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:27,524 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:27,539 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:27,596 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:27,599 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-11 20:34:27,626 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-11 20:34:27,626 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-11 20:34:27,626 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:27,627 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1733761183] [2024-09-11 20:34:27,627 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:27,627 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [939143594] [2024-09-11 20:34:27,627 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [939143594] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:34:27,627 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:34:27,628 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-09-11 20:34:27,628 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [386824153] [2024-09-11 20:34:27,628 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:27,628 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-09-11 20:34:27,629 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:27,629 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-09-11 20:34:27,629 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-09-11 20:34:27,630 INFO L87 Difference]: Start difference. First operand 70 states and 83 transitions. Second operand has 7 states, 6 states have (on average 2.6666666666666665) internal successors, (16), 6 states have internal predecessors, (16), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-11 20:34:27,834 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:27,834 INFO L93 Difference]: Finished difference Result 80 states and 92 transitions. [2024-09-11 20:34:27,835 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-11 20:34:27,835 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 6 states have (on average 2.6666666666666665) internal successors, (16), 6 states have internal predecessors, (16), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 26 [2024-09-11 20:34:27,835 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:27,836 INFO L225 Difference]: With dead ends: 80 [2024-09-11 20:34:27,837 INFO L226 Difference]: Without dead ends: 70 [2024-09-11 20:34:27,837 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 21 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-09-11 20:34:27,838 INFO L434 NwaCegarLoop]: 14 mSDtfsCounter, 23 mSDsluCounter, 49 mSDsCounter, 0 mSdLazyCounter, 190 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 29 SdHoareTripleChecker+Valid, 63 SdHoareTripleChecker+Invalid, 196 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 190 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:27,838 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [29 Valid, 63 Invalid, 196 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 190 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-11 20:34:27,839 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2024-09-11 20:34:27,865 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 70. [2024-09-11 20:34:27,868 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 45 states have (on average 1.0888888888888888) internal successors, (49), 47 states have internal predecessors, (49), 16 states have call successors, (16), 8 states have call predecessors, (16), 8 states have return successors, (17), 15 states have call predecessors, (17), 15 states have call successors, (17) [2024-09-11 20:34:27,868 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 82 transitions. [2024-09-11 20:34:27,870 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 82 transitions. Word has length 26 [2024-09-11 20:34:27,870 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:27,870 INFO L474 AbstractCegarLoop]: Abstraction has 70 states and 82 transitions. [2024-09-11 20:34:27,871 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 6 states have (on average 2.6666666666666665) internal successors, (16), 6 states have internal predecessors, (16), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-11 20:34:27,871 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:27,871 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 82 transitions. [2024-09-11 20:34:27,872 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2024-09-11 20:34:27,872 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:27,872 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:27,891 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-11 20:34:28,074 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:28,074 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:28,075 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:28,075 INFO L85 PathProgramCache]: Analyzing trace with hash 1358287025, now seen corresponding path program 1 times [2024-09-11 20:34:28,075 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:28,075 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [479803744] [2024-09-11 20:34:28,075 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:28,076 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:28,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:28,133 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2076060088] [2024-09-11 20:34:28,137 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:28,137 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:28,138 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:28,140 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:28,142 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-11 20:34:28,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:28,263 INFO L262 TraceCheckSpWp]: Trace formula consists of 299 conjuncts, 87 conjuncts are in the unsatisfiable core [2024-09-11 20:34:28,266 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:28,271 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:28,274 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:28,279 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:28,284 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:28,542 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:28,545 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-11 20:34:28,549 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2024-09-11 20:34:28,586 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 6 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-11 20:34:28,586 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:34:28,798 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-11 20:34:28,801 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:28,801 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [479803744] [2024-09-11 20:34:28,801 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:28,801 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2076060088] [2024-09-11 20:34:28,802 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2076060088] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-11 20:34:28,802 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:34:28,802 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [11] total 17 [2024-09-11 20:34:28,802 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1544638501] [2024-09-11 20:34:28,802 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:28,802 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2024-09-11 20:34:28,803 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:28,803 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2024-09-11 20:34:28,805 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=42, Invalid=230, Unknown=0, NotChecked=0, Total=272 [2024-09-11 20:34:28,805 INFO L87 Difference]: Start difference. First operand 70 states and 82 transitions. Second operand has 10 states, 8 states have (on average 2.125) internal successors, (17), 7 states have internal predecessors, (17), 4 states have call successors, (6), 4 states have call predecessors, (6), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-11 20:34:29,180 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:29,180 INFO L93 Difference]: Finished difference Result 103 states and 124 transitions. [2024-09-11 20:34:29,181 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-11 20:34:29,181 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 8 states have (on average 2.125) internal successors, (17), 7 states have internal predecessors, (17), 4 states have call successors, (6), 4 states have call predecessors, (6), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 32 [2024-09-11 20:34:29,181 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:29,183 INFO L225 Difference]: With dead ends: 103 [2024-09-11 20:34:29,183 INFO L226 Difference]: Without dead ends: 101 [2024-09-11 20:34:29,183 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 40 SyntacticMatches, 7 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 70 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=60, Invalid=360, Unknown=0, NotChecked=0, Total=420 [2024-09-11 20:34:29,184 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 24 mSDsluCounter, 172 mSDsCounter, 0 mSdLazyCounter, 240 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 204 SdHoareTripleChecker+Invalid, 255 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 240 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:29,185 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 204 Invalid, 255 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 240 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-11 20:34:29,185 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 101 states. [2024-09-11 20:34:29,207 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 101 to 100. [2024-09-11 20:34:29,207 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 63 states have (on average 1.0952380952380953) internal successors, (69), 67 states have internal predecessors, (69), 25 states have call successors, (25), 11 states have call predecessors, (25), 11 states have return successors, (27), 23 states have call predecessors, (27), 24 states have call successors, (27) [2024-09-11 20:34:29,208 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 121 transitions. [2024-09-11 20:34:29,209 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 121 transitions. Word has length 32 [2024-09-11 20:34:29,209 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:29,209 INFO L474 AbstractCegarLoop]: Abstraction has 100 states and 121 transitions. [2024-09-11 20:34:29,210 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 8 states have (on average 2.125) internal successors, (17), 7 states have internal predecessors, (17), 4 states have call successors, (6), 4 states have call predecessors, (6), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-11 20:34:29,210 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:29,210 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 121 transitions. [2024-09-11 20:34:29,211 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2024-09-11 20:34:29,211 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:29,211 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:29,229 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-11 20:34:29,411 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2024-09-11 20:34:29,412 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:29,412 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:29,412 INFO L85 PathProgramCache]: Analyzing trace with hash 1087391719, now seen corresponding path program 1 times [2024-09-11 20:34:29,412 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:29,413 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1880489427] [2024-09-11 20:34:29,413 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:29,413 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:29,437 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:30,362 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 6 [2024-09-11 20:34:30,365 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:30,372 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-11 20:34:30,376 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:30,384 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2024-09-11 20:34:30,387 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:30,389 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-11 20:34:30,392 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:30,397 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2024-09-11 20:34:30,398 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:30,398 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1880489427] [2024-09-11 20:34:30,398 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1880489427] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:34:30,398 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:34:30,398 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [15] imperfect sequences [] total 15 [2024-09-11 20:34:30,398 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [449251250] [2024-09-11 20:34:30,398 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:30,399 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-11 20:34:30,399 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:30,399 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-11 20:34:30,399 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=30, Invalid=180, Unknown=0, NotChecked=0, Total=210 [2024-09-11 20:34:30,400 INFO L87 Difference]: Start difference. First operand 100 states and 121 transitions. Second operand has 15 states, 11 states have (on average 1.6363636363636365) internal successors, (18), 12 states have internal predecessors, (18), 7 states have call successors, (7), 4 states have call predecessors, (7), 1 states have return successors, (4), 2 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-11 20:34:30,780 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:30,780 INFO L93 Difference]: Finished difference Result 106 states and 126 transitions. [2024-09-11 20:34:30,781 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-11 20:34:30,781 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 11 states have (on average 1.6363636363636365) internal successors, (18), 12 states have internal predecessors, (18), 7 states have call successors, (7), 4 states have call predecessors, (7), 1 states have return successors, (4), 2 states have call predecessors, (4), 4 states have call successors, (4) Word has length 38 [2024-09-11 20:34:30,781 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:30,782 INFO L225 Difference]: With dead ends: 106 [2024-09-11 20:34:30,782 INFO L226 Difference]: Without dead ends: 104 [2024-09-11 20:34:30,783 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 31 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 62 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=72, Invalid=434, Unknown=0, NotChecked=0, Total=506 [2024-09-11 20:34:30,784 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 31 mSDsluCounter, 187 mSDsCounter, 0 mSdLazyCounter, 326 mSolverCounterSat, 21 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 32 SdHoareTripleChecker+Valid, 215 SdHoareTripleChecker+Invalid, 347 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 21 IncrementalHoareTripleChecker+Valid, 326 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:30,784 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [32 Valid, 215 Invalid, 347 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [21 Valid, 326 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-11 20:34:30,785 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2024-09-11 20:34:30,808 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 104. [2024-09-11 20:34:30,809 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 104 states, 66 states have (on average 1.0909090909090908) internal successors, (72), 70 states have internal predecessors, (72), 25 states have call successors, (25), 12 states have call predecessors, (25), 12 states have return successors, (27), 23 states have call predecessors, (27), 24 states have call successors, (27) [2024-09-11 20:34:30,810 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 104 states to 104 states and 124 transitions. [2024-09-11 20:34:30,810 INFO L78 Accepts]: Start accepts. Automaton has 104 states and 124 transitions. Word has length 38 [2024-09-11 20:34:30,811 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:30,811 INFO L474 AbstractCegarLoop]: Abstraction has 104 states and 124 transitions. [2024-09-11 20:34:30,811 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 11 states have (on average 1.6363636363636365) internal successors, (18), 12 states have internal predecessors, (18), 7 states have call successors, (7), 4 states have call predecessors, (7), 1 states have return successors, (4), 2 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-11 20:34:30,812 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:30,812 INFO L276 IsEmpty]: Start isEmpty. Operand 104 states and 124 transitions. [2024-09-11 20:34:30,812 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2024-09-11 20:34:30,813 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:30,813 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:30,813 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-09-11 20:34:30,813 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:30,813 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:30,814 INFO L85 PathProgramCache]: Analyzing trace with hash 1075242647, now seen corresponding path program 1 times [2024-09-11 20:34:30,814 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:30,814 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [633499131] [2024-09-11 20:34:30,814 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:30,814 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:30,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:30,850 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2028149379] [2024-09-11 20:34:30,850 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:30,850 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:30,850 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:30,852 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:30,857 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-11 20:34:30,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:30,982 INFO L262 TraceCheckSpWp]: Trace formula consists of 330 conjuncts, 55 conjuncts are in the unsatisfiable core [2024-09-11 20:34:30,986 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:31,002 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:31,099 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:31,106 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:31,467 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:31,504 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 28 treesize of output 16 [2024-09-11 20:34:31,508 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 24 treesize of output 12 [2024-09-11 20:34:31,553 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 24 proven. 10 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-11 20:34:31,554 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:34:31,669 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 23 [2024-09-11 20:34:35,758 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:35,759 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [633499131] [2024-09-11 20:34:35,759 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:35,759 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2028149379] [2024-09-11 20:34:35,759 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2028149379] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 20:34:35,759 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:34:35,759 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14] total 14 [2024-09-11 20:34:35,760 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1680954626] [2024-09-11 20:34:35,760 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 20:34:35,760 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-11 20:34:35,761 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:35,761 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-11 20:34:35,761 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=48, Invalid=258, Unknown=0, NotChecked=0, Total=306 [2024-09-11 20:34:35,762 INFO L87 Difference]: Start difference. First operand 104 states and 124 transitions. Second operand has 15 states, 13 states have (on average 1.7692307692307692) internal successors, (23), 11 states have internal predecessors, (23), 5 states have call successors, (8), 5 states have call predecessors, (8), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-11 20:34:39,785 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:34:40,576 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:40,576 INFO L93 Difference]: Finished difference Result 143 states and 167 transitions. [2024-09-11 20:34:40,577 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-11 20:34:40,578 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 13 states have (on average 1.7692307692307692) internal successors, (23), 11 states have internal predecessors, (23), 5 states have call successors, (8), 5 states have call predecessors, (8), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 45 [2024-09-11 20:34:40,578 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:40,579 INFO L225 Difference]: With dead ends: 143 [2024-09-11 20:34:40,579 INFO L226 Difference]: Without dead ends: 141 [2024-09-11 20:34:40,580 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 25 SyntacticMatches, 10 SemanticMatches, 26 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 137 ImplicationChecksByTransitivity, 4.6s TimeCoverageRelationStatistics Valid=120, Invalid=636, Unknown=0, NotChecked=0, Total=756 [2024-09-11 20:34:40,580 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 80 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 468 mSolverCounterSat, 36 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 190 SdHoareTripleChecker+Invalid, 505 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 36 IncrementalHoareTripleChecker+Valid, 468 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.5s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:40,581 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 190 Invalid, 505 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [36 Valid, 468 Invalid, 1 Unknown, 0 Unchecked, 4.5s Time] [2024-09-11 20:34:40,584 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 141 states. [2024-09-11 20:34:40,627 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 141 to 137. [2024-09-11 20:34:40,627 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 137 states, 87 states have (on average 1.0919540229885059) internal successors, (95), 93 states have internal predecessors, (95), 31 states have call successors, (31), 17 states have call predecessors, (31), 18 states have return successors, (36), 28 states have call predecessors, (36), 29 states have call successors, (36) [2024-09-11 20:34:40,628 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 137 states to 137 states and 162 transitions. [2024-09-11 20:34:40,629 INFO L78 Accepts]: Start accepts. Automaton has 137 states and 162 transitions. Word has length 45 [2024-09-11 20:34:40,629 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:40,629 INFO L474 AbstractCegarLoop]: Abstraction has 137 states and 162 transitions. [2024-09-11 20:34:40,629 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 13 states have (on average 1.7692307692307692) internal successors, (23), 11 states have internal predecessors, (23), 5 states have call successors, (8), 5 states have call predecessors, (8), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-11 20:34:40,630 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:40,630 INFO L276 IsEmpty]: Start isEmpty. Operand 137 states and 162 transitions. [2024-09-11 20:34:40,634 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2024-09-11 20:34:40,634 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:40,634 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:40,654 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-11 20:34:40,838 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:40,839 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:40,839 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:40,840 INFO L85 PathProgramCache]: Analyzing trace with hash 1953050054, now seen corresponding path program 1 times [2024-09-11 20:34:40,840 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:40,840 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1643286949] [2024-09-11 20:34:40,840 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:40,840 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:40,888 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:40,893 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [8997836] [2024-09-11 20:34:40,894 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:40,894 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:40,894 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:40,896 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:40,897 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-11 20:34:41,046 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:41,050 INFO L262 TraceCheckSpWp]: Trace formula consists of 396 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-11 20:34:41,054 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:41,060 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:41,069 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:41,079 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:41,094 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:41,193 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:41,196 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-11 20:34:41,228 INFO L134 CoverageAnalysis]: Checked inductivity of 53 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-11 20:34:41,228 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-11 20:34:41,228 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:41,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1643286949] [2024-09-11 20:34:41,229 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:41,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [8997836] [2024-09-11 20:34:41,229 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [8997836] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:34:41,229 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:34:41,229 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-11 20:34:41,229 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [994851757] [2024-09-11 20:34:41,230 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:34:41,230 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-11 20:34:41,230 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:41,231 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-11 20:34:41,231 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-11 20:34:41,231 INFO L87 Difference]: Start difference. First operand 137 states and 162 transitions. Second operand has 8 states, 7 states have (on average 3.4285714285714284) internal successors, (24), 6 states have internal predecessors, (24), 4 states have call successors, (9), 4 states have call predecessors, (9), 2 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-11 20:34:41,618 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:41,618 INFO L93 Difference]: Finished difference Result 154 states and 185 transitions. [2024-09-11 20:34:41,619 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-11 20:34:41,619 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.4285714285714284) internal successors, (24), 6 states have internal predecessors, (24), 4 states have call successors, (9), 4 states have call predecessors, (9), 2 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 51 [2024-09-11 20:34:41,620 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:41,622 INFO L225 Difference]: With dead ends: 154 [2024-09-11 20:34:41,624 INFO L226 Difference]: Without dead ends: 152 [2024-09-11 20:34:41,624 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 56 GetRequests, 45 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=41, Invalid=115, Unknown=0, NotChecked=0, Total=156 [2024-09-11 20:34:41,625 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 31 mSDsluCounter, 101 mSDsCounter, 0 mSdLazyCounter, 245 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 268 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 245 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:41,625 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 131 Invalid, 268 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 245 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-11 20:34:41,626 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 152 states. [2024-09-11 20:34:41,662 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 152 to 150. [2024-09-11 20:34:41,662 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 150 states, 94 states have (on average 1.0851063829787233) internal successors, (102), 101 states have internal predecessors, (102), 33 states have call successors, (33), 18 states have call predecessors, (33), 22 states have return successors, (45), 31 states have call predecessors, (45), 31 states have call successors, (45) [2024-09-11 20:34:41,664 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 150 states to 150 states and 180 transitions. [2024-09-11 20:34:41,664 INFO L78 Accepts]: Start accepts. Automaton has 150 states and 180 transitions. Word has length 51 [2024-09-11 20:34:41,664 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:41,664 INFO L474 AbstractCegarLoop]: Abstraction has 150 states and 180 transitions. [2024-09-11 20:34:41,665 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.4285714285714284) internal successors, (24), 6 states have internal predecessors, (24), 4 states have call successors, (9), 4 states have call predecessors, (9), 2 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-11 20:34:41,665 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:41,665 INFO L276 IsEmpty]: Start isEmpty. Operand 150 states and 180 transitions. [2024-09-11 20:34:41,666 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2024-09-11 20:34:41,666 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:41,666 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:41,684 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-11 20:34:41,870 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:41,871 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:41,871 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:41,871 INFO L85 PathProgramCache]: Analyzing trace with hash -1796395648, now seen corresponding path program 1 times [2024-09-11 20:34:41,871 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:41,871 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [138338436] [2024-09-11 20:34:41,871 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:41,872 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:41,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:41,917 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2100832390] [2024-09-11 20:34:41,917 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:41,917 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:41,917 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:41,919 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:41,920 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-11 20:34:42,063 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:34:42,069 INFO L262 TraceCheckSpWp]: Trace formula consists of 405 conjuncts, 91 conjuncts are in the unsatisfiable core [2024-09-11 20:34:42,077 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:42,084 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:42,090 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:42,095 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:42,335 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:34:42,339 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 29 treesize of output 17 [2024-09-11 20:34:42,385 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-11 20:34:42,387 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-11 20:34:42,430 INFO L134 CoverageAnalysis]: Checked inductivity of 75 backedges. 36 proven. 11 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2024-09-11 20:34:42,430 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:34:42,619 INFO L134 CoverageAnalysis]: Checked inductivity of 75 backedges. 12 proven. 1 refuted. 0 times theorem prover too weak. 62 trivial. 0 not checked. [2024-09-11 20:34:42,619 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:34:42,620 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [138338436] [2024-09-11 20:34:42,620 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:34:42,620 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2100832390] [2024-09-11 20:34:42,620 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2100832390] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-11 20:34:42,620 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-11 20:34:42,620 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 8] total 15 [2024-09-11 20:34:42,620 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [54068894] [2024-09-11 20:34:42,620 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-11 20:34:42,621 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-11 20:34:42,621 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:34:42,621 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-11 20:34:42,621 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2024-09-11 20:34:42,622 INFO L87 Difference]: Start difference. First operand 150 states and 180 transitions. Second operand has 15 states, 11 states have (on average 3.1818181818181817) internal successors, (35), 11 states have internal predecessors, (35), 8 states have call successors, (17), 6 states have call predecessors, (17), 2 states have return successors, (10), 3 states have call predecessors, (10), 3 states have call successors, (10) [2024-09-11 20:34:43,167 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:34:43,167 INFO L93 Difference]: Finished difference Result 196 states and 239 transitions. [2024-09-11 20:34:43,168 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-11 20:34:43,168 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 11 states have (on average 3.1818181818181817) internal successors, (35), 11 states have internal predecessors, (35), 8 states have call successors, (17), 6 states have call predecessors, (17), 2 states have return successors, (10), 3 states have call predecessors, (10), 3 states have call successors, (10) Word has length 54 [2024-09-11 20:34:43,168 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:34:43,170 INFO L225 Difference]: With dead ends: 196 [2024-09-11 20:34:43,170 INFO L226 Difference]: Without dead ends: 194 [2024-09-11 20:34:43,170 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 84 SyntacticMatches, 9 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 59 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=98, Invalid=454, Unknown=0, NotChecked=0, Total=552 [2024-09-11 20:34:43,171 INFO L434 NwaCegarLoop]: 47 mSDtfsCounter, 77 mSDsluCounter, 232 mSDsCounter, 0 mSdLazyCounter, 370 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 77 SdHoareTripleChecker+Valid, 279 SdHoareTripleChecker+Invalid, 400 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 370 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-11 20:34:43,171 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [77 Valid, 279 Invalid, 400 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 370 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-11 20:34:43,172 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 194 states. [2024-09-11 20:34:43,222 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 194 to 188. [2024-09-11 20:34:43,223 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 188 states, 117 states have (on average 1.0854700854700854) internal successors, (127), 124 states have internal predecessors, (127), 41 states have call successors, (41), 21 states have call predecessors, (41), 29 states have return successors, (62), 43 states have call predecessors, (62), 39 states have call successors, (62) [2024-09-11 20:34:43,224 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 188 states to 188 states and 230 transitions. [2024-09-11 20:34:43,225 INFO L78 Accepts]: Start accepts. Automaton has 188 states and 230 transitions. Word has length 54 [2024-09-11 20:34:43,225 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:34:43,225 INFO L474 AbstractCegarLoop]: Abstraction has 188 states and 230 transitions. [2024-09-11 20:34:43,225 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 11 states have (on average 3.1818181818181817) internal successors, (35), 11 states have internal predecessors, (35), 8 states have call successors, (17), 6 states have call predecessors, (17), 2 states have return successors, (10), 3 states have call predecessors, (10), 3 states have call successors, (10) [2024-09-11 20:34:43,225 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:43,226 INFO L276 IsEmpty]: Start isEmpty. Operand 188 states and 230 transitions. [2024-09-11 20:34:43,226 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2024-09-11 20:34:43,226 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:34:43,226 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:34:43,244 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-11 20:34:43,430 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:43,431 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:34:43,431 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:34:43,432 INFO L85 PathProgramCache]: Analyzing trace with hash -1439706693, now seen corresponding path program 2 times [2024-09-11 20:34:43,432 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:34:43,432 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [419386710] [2024-09-11 20:34:43,432 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:34:43,432 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:34:43,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:34:43,483 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [53607817] [2024-09-11 20:34:43,484 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-11 20:34:43,484 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:34:43,484 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:34:43,486 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:34:43,488 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-11 20:34:43,639 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-11 20:34:43,639 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 20:34:43,643 INFO L262 TraceCheckSpWp]: Trace formula consists of 413 conjuncts, 126 conjuncts are in the unsatisfiable core [2024-09-11 20:34:43,647 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:34:43,651 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:43,652 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:34:43,655 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:43,658 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:43,830 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:43,838 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:34:43,869 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:34:44,565 INFO L349 Elim1Store]: treesize reduction 102, result has 44.6 percent of original size [2024-09-11 20:34:44,565 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 0 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 9 case distinctions, treesize of input 79 treesize of output 130 [2024-09-11 20:34:44,594 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 40 treesize of output 28 [2024-09-11 20:34:44,696 INFO L349 Elim1Store]: treesize reduction 68, result has 31.3 percent of original size [2024-09-11 20:34:44,696 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 5 case distinctions, treesize of input 33 treesize of output 47 [2024-09-11 20:35:04,522 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 103 treesize of output 83 [2024-09-11 20:35:04,743 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-11 20:35:04,744 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 9 select indices, 9 select index equivalence classes, 0 disjoint index pairs (out of 36 index pairs), introduced 9 new quantified variables, introduced 36 case distinctions, treesize of input 221 treesize of output 605 [2024-09-11 20:35:05,063 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-11 20:35:05,063 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 9 select indices, 9 select index equivalence classes, 0 disjoint index pairs (out of 36 index pairs), introduced 9 new quantified variables, introduced 36 case distinctions, treesize of input 321 treesize of output 649 [2024-09-11 20:35:10,334 INFO L134 CoverageAnalysis]: Checked inductivity of 77 backedges. 12 proven. 37 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2024-09-11 20:35:10,334 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:35:10,884 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:35:10,884 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [419386710] [2024-09-11 20:35:10,884 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:35:10,884 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [53607817] [2024-09-11 20:35:10,884 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [53607817] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 20:35:10,884 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:35:10,884 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22] total 22 [2024-09-11 20:35:10,884 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [434399245] [2024-09-11 20:35:10,885 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 20:35:10,885 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-11 20:35:10,885 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:35:10,886 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-11 20:35:10,886 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=88, Invalid=614, Unknown=0, NotChecked=0, Total=702 [2024-09-11 20:35:10,886 INFO L87 Difference]: Start difference. First operand 188 states and 230 transitions. Second operand has 22 states, 18 states have (on average 1.7222222222222223) internal successors, (31), 16 states have internal predecessors, (31), 7 states have call successors, (10), 6 states have call predecessors, (10), 4 states have return successors, (7), 5 states have call predecessors, (7), 5 states have call successors, (7) [2024-09-11 20:35:16,159 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.20s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:35:19,352 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.70s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:35:23,577 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 3.07s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-11 20:35:32,131 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:35:33,148 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:35:33,149 INFO L93 Difference]: Finished difference Result 318 states and 369 transitions. [2024-09-11 20:35:33,150 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2024-09-11 20:35:33,150 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 18 states have (on average 1.7222222222222223) internal successors, (31), 16 states have internal predecessors, (31), 7 states have call successors, (10), 6 states have call predecessors, (10), 4 states have return successors, (7), 5 states have call predecessors, (7), 5 states have call successors, (7) Word has length 57 [2024-09-11 20:35:33,150 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:35:33,153 INFO L225 Difference]: With dead ends: 318 [2024-09-11 20:35:33,153 INFO L226 Difference]: Without dead ends: 316 [2024-09-11 20:35:33,154 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 85 GetRequests, 35 SyntacticMatches, 11 SemanticMatches, 39 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 397 ImplicationChecksByTransitivity, 8.0s TimeCoverageRelationStatistics Valid=193, Invalid=1447, Unknown=0, NotChecked=0, Total=1640 [2024-09-11 20:35:33,154 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 70 mSDsluCounter, 190 mSDsCounter, 0 mSdLazyCounter, 733 mSolverCounterSat, 29 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 18.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 73 SdHoareTripleChecker+Valid, 230 SdHoareTripleChecker+Invalid, 763 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 733 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 18.3s IncrementalHoareTripleChecker+Time [2024-09-11 20:35:33,154 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [73 Valid, 230 Invalid, 763 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 733 Invalid, 1 Unknown, 0 Unchecked, 18.3s Time] [2024-09-11 20:35:33,155 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2024-09-11 20:35:33,755 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 309. [2024-09-11 20:35:33,755 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 309 states, 197 states have (on average 1.0862944162436547) internal successors, (214), 207 states have internal predecessors, (214), 59 states have call successors, (59), 40 states have call predecessors, (59), 52 states have return successors, (89), 62 states have call predecessors, (89), 56 states have call successors, (89) [2024-09-11 20:35:33,757 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 309 states to 309 states and 362 transitions. [2024-09-11 20:35:33,758 INFO L78 Accepts]: Start accepts. Automaton has 309 states and 362 transitions. Word has length 57 [2024-09-11 20:35:33,759 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:35:33,759 INFO L474 AbstractCegarLoop]: Abstraction has 309 states and 362 transitions. [2024-09-11 20:35:33,759 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 18 states have (on average 1.7222222222222223) internal successors, (31), 16 states have internal predecessors, (31), 7 states have call successors, (10), 6 states have call predecessors, (10), 4 states have return successors, (7), 5 states have call predecessors, (7), 5 states have call successors, (7) [2024-09-11 20:35:33,759 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:35:33,759 INFO L276 IsEmpty]: Start isEmpty. Operand 309 states and 362 transitions. [2024-09-11 20:35:33,762 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 70 [2024-09-11 20:35:33,762 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:35:33,762 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:35:33,775 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2024-09-11 20:35:33,962 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-11 20:35:33,963 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:35:33,963 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:35:33,963 INFO L85 PathProgramCache]: Analyzing trace with hash 174167689, now seen corresponding path program 1 times [2024-09-11 20:35:33,963 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:35:33,963 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [873568318] [2024-09-11 20:35:33,963 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:35:33,964 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:35:33,996 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:35:33,997 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [271665696] [2024-09-11 20:35:33,997 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:35:33,998 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:35:33,998 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:35:33,999 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:35:34,002 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-11 20:35:34,149 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:35:34,152 INFO L262 TraceCheckSpWp]: Trace formula consists of 439 conjuncts, 146 conjuncts are in the unsatisfiable core [2024-09-11 20:35:34,157 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:35:34,160 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:35:34,162 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:35:34,165 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:35:34,170 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:35:34,175 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:35:34,199 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:35:34,455 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:35:34,860 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-11 20:35:47,392 INFO L349 Elim1Store]: treesize reduction 20, result has 58.3 percent of original size [2024-09-11 20:35:47,392 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 66 treesize of output 62 [2024-09-11 20:35:47,435 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:35:47,526 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-11 20:35:47,526 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 103 treesize of output 115 [2024-09-11 20:35:47,540 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-11 20:35:47,540 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 134 treesize of output 114 [2024-09-11 20:35:47,546 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 103 treesize of output 79 [2024-09-11 20:35:47,678 INFO L134 CoverageAnalysis]: Checked inductivity of 107 backedges. 61 proven. 17 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-09-11 20:35:47,678 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:35:48,900 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:35:48,901 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [873568318] [2024-09-11 20:35:48,901 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:35:48,901 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [271665696] [2024-09-11 20:35:48,901 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [271665696] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 20:35:48,901 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:35:48,901 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [28] total 28 [2024-09-11 20:35:48,901 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [172113678] [2024-09-11 20:35:48,902 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 20:35:48,902 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-09-11 20:35:48,903 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:35:48,904 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-09-11 20:35:48,904 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=92, Invalid=835, Unknown=3, NotChecked=0, Total=930 [2024-09-11 20:35:48,905 INFO L87 Difference]: Start difference. First operand 309 states and 362 transitions. Second operand has 28 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 21 states have internal predecessors, (39), 9 states have call successors, (11), 6 states have call predecessors, (11), 7 states have return successors, (10), 8 states have call predecessors, (10), 8 states have call successors, (10) [2024-09-11 20:35:52,919 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:35:57,141 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:01,150 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:05,159 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:09,167 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:13,181 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:17,716 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:21,727 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:26,922 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:30,925 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:34,927 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:36:36,245 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:36:36,245 INFO L93 Difference]: Finished difference Result 419 states and 500 transitions. [2024-09-11 20:36:36,246 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 40 states. [2024-09-11 20:36:36,246 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 21 states have internal predecessors, (39), 9 states have call successors, (11), 6 states have call predecessors, (11), 7 states have return successors, (10), 8 states have call predecessors, (10), 8 states have call successors, (10) Word has length 69 [2024-09-11 20:36:36,246 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:36:36,249 INFO L225 Difference]: With dead ends: 419 [2024-09-11 20:36:36,249 INFO L226 Difference]: Without dead ends: 407 [2024-09-11 20:36:36,251 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 108 GetRequests, 46 SyntacticMatches, 2 SemanticMatches, 60 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 883 ImplicationChecksByTransitivity, 14.0s TimeCoverageRelationStatistics Valid=414, Invalid=3365, Unknown=3, NotChecked=0, Total=3782 [2024-09-11 20:36:36,251 INFO L434 NwaCegarLoop]: 20 mSDtfsCounter, 94 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 1424 mSolverCounterSat, 74 mSolverCounterUnsat, 11 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 45.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 97 SdHoareTripleChecker+Valid, 148 SdHoareTripleChecker+Invalid, 1509 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 74 IncrementalHoareTripleChecker+Valid, 1424 IncrementalHoareTripleChecker+Invalid, 11 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 45.5s IncrementalHoareTripleChecker+Time [2024-09-11 20:36:36,251 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [97 Valid, 148 Invalid, 1509 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [74 Valid, 1424 Invalid, 11 Unknown, 0 Unchecked, 45.5s Time] [2024-09-11 20:36:36,252 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 407 states. [2024-09-11 20:36:36,831 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 407 to 396. [2024-09-11 20:36:36,832 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 396 states, 252 states have (on average 1.0873015873015872) internal successors, (274), 264 states have internal predecessors, (274), 76 states have call successors, (76), 51 states have call predecessors, (76), 67 states have return successors, (119), 80 states have call predecessors, (119), 73 states have call successors, (119) [2024-09-11 20:36:36,834 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 396 states to 396 states and 469 transitions. [2024-09-11 20:36:36,835 INFO L78 Accepts]: Start accepts. Automaton has 396 states and 469 transitions. Word has length 69 [2024-09-11 20:36:36,835 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:36:36,835 INFO L474 AbstractCegarLoop]: Abstraction has 396 states and 469 transitions. [2024-09-11 20:36:36,835 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 21 states have internal predecessors, (39), 9 states have call successors, (11), 6 states have call predecessors, (11), 7 states have return successors, (10), 8 states have call predecessors, (10), 8 states have call successors, (10) [2024-09-11 20:36:36,836 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:36:36,836 INFO L276 IsEmpty]: Start isEmpty. Operand 396 states and 469 transitions. [2024-09-11 20:36:36,836 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 74 [2024-09-11 20:36:36,836 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:36:36,837 INFO L216 NwaCegarLoop]: trace histogram [10, 9, 9, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:36:36,851 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Ended with exit code 0 [2024-09-11 20:36:37,037 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-11 20:36:37,037 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:36:37,038 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:36:37,038 INFO L85 PathProgramCache]: Analyzing trace with hash -2118021584, now seen corresponding path program 2 times [2024-09-11 20:36:37,038 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:36:37,038 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [736351873] [2024-09-11 20:36:37,038 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:36:37,038 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:36:37,076 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:36:37,082 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1329207436] [2024-09-11 20:36:37,082 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-11 20:36:37,082 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:36:37,082 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:36:37,086 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:36:37,089 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-11 20:36:37,240 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-11 20:36:37,240 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-11 20:36:37,243 INFO L262 TraceCheckSpWp]: Trace formula consists of 453 conjuncts, 131 conjuncts are in the unsatisfiable core [2024-09-11 20:36:37,247 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:36:37,251 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:36:37,254 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:36:37,259 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:36:37,261 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:36:37,275 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:36:37,278 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:36:37,559 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 40 treesize of output 17 [2024-09-11 20:36:37,566 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:36:37,880 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-11 20:36:42,184 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-11 20:36:42,187 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-11 20:36:42,241 INFO L134 CoverageAnalysis]: Checked inductivity of 172 backedges. 66 proven. 72 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2024-09-11 20:36:42,241 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:36:42,460 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:36:42,460 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [736351873] [2024-09-11 20:36:42,460 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:36:42,460 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1329207436] [2024-09-11 20:36:42,460 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1329207436] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 20:36:42,460 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:36:42,460 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18] total 18 [2024-09-11 20:36:42,460 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1780699061] [2024-09-11 20:36:42,461 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 20:36:42,461 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-11 20:36:42,461 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:36:42,461 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-11 20:36:42,462 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=447, Unknown=1, NotChecked=0, Total=506 [2024-09-11 20:36:42,462 INFO L87 Difference]: Start difference. First operand 396 states and 469 transitions. Second operand has 18 states, 16 states have (on average 2.25) internal successors, (36), 14 states have internal predecessors, (36), 6 states have call successors, (13), 7 states have call predecessors, (13), 4 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-11 20:36:44,188 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:36:44,188 INFO L93 Difference]: Finished difference Result 504 states and 593 transitions. [2024-09-11 20:36:44,189 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2024-09-11 20:36:44,189 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 16 states have (on average 2.25) internal successors, (36), 14 states have internal predecessors, (36), 6 states have call successors, (13), 7 states have call predecessors, (13), 4 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 73 [2024-09-11 20:36:44,189 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:36:44,192 INFO L225 Difference]: With dead ends: 504 [2024-09-11 20:36:44,192 INFO L226 Difference]: Without dead ends: 502 [2024-09-11 20:36:44,193 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 94 GetRequests, 47 SyntacticMatches, 12 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 202 ImplicationChecksByTransitivity, 5.1s TimeCoverageRelationStatistics Valid=147, Invalid=1184, Unknown=1, NotChecked=0, Total=1332 [2024-09-11 20:36:44,194 INFO L434 NwaCegarLoop]: 46 mSDtfsCounter, 79 mSDsluCounter, 351 mSDsCounter, 0 mSdLazyCounter, 782 mSolverCounterSat, 49 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 397 SdHoareTripleChecker+Invalid, 831 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 49 IncrementalHoareTripleChecker+Valid, 782 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-11 20:36:44,195 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 397 Invalid, 831 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [49 Valid, 782 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-11 20:36:44,196 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 502 states. [2024-09-11 20:36:44,885 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 502 to 494. [2024-09-11 20:36:44,886 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 494 states, 318 states have (on average 1.0849056603773586) internal successors, (345), 334 states have internal predecessors, (345), 88 states have call successors, (88), 69 states have call predecessors, (88), 87 states have return successors, (149), 90 states have call predecessors, (149), 83 states have call successors, (149) [2024-09-11 20:36:44,890 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 494 states to 494 states and 582 transitions. [2024-09-11 20:36:44,891 INFO L78 Accepts]: Start accepts. Automaton has 494 states and 582 transitions. Word has length 73 [2024-09-11 20:36:44,891 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:36:44,891 INFO L474 AbstractCegarLoop]: Abstraction has 494 states and 582 transitions. [2024-09-11 20:36:44,892 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 16 states have (on average 2.25) internal successors, (36), 14 states have internal predecessors, (36), 6 states have call successors, (13), 7 states have call predecessors, (13), 4 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-11 20:36:44,892 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:36:44,892 INFO L276 IsEmpty]: Start isEmpty. Operand 494 states and 582 transitions. [2024-09-11 20:36:44,893 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 74 [2024-09-11 20:36:44,893 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:36:44,893 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:36:44,908 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-11 20:36:45,096 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:36:45,097 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:36:45,097 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:36:45,097 INFO L85 PathProgramCache]: Analyzing trace with hash -491901150, now seen corresponding path program 3 times [2024-09-11 20:36:45,097 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:36:45,097 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1305533129] [2024-09-11 20:36:45,097 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:36:45,097 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:36:45,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,050 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 6 [2024-09-11 20:36:46,051 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,053 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-11 20:36:46,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,066 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-09-11 20:36:46,070 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,264 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-11 20:36:46,265 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,270 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-11 20:36:46,271 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,275 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-11 20:36:46,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,280 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 47 [2024-09-11 20:36:46,282 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,284 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2024-09-11 20:36:46,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,289 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2024-09-11 20:36:46,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:46,291 INFO L134 CoverageAnalysis]: Checked inductivity of 141 backedges. 29 proven. 0 refuted. 0 times theorem prover too weak. 112 trivial. 0 not checked. [2024-09-11 20:36:46,291 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:36:46,292 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1305533129] [2024-09-11 20:36:46,292 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1305533129] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-11 20:36:46,292 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-11 20:36:46,292 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [13] imperfect sequences [] total 13 [2024-09-11 20:36:46,292 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [273495864] [2024-09-11 20:36:46,292 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-11 20:36:46,293 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2024-09-11 20:36:46,293 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:36:46,294 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2024-09-11 20:36:46,294 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=25, Invalid=131, Unknown=0, NotChecked=0, Total=156 [2024-09-11 20:36:46,294 INFO L87 Difference]: Start difference. First operand 494 states and 582 transitions. Second operand has 13 states, 10 states have (on average 3.0) internal successors, (30), 10 states have internal predecessors, (30), 7 states have call successors, (13), 4 states have call predecessors, (13), 2 states have return successors, (9), 5 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-11 20:36:46,946 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-11 20:36:46,946 INFO L93 Difference]: Finished difference Result 521 states and 615 transitions. [2024-09-11 20:36:46,947 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-09-11 20:36:46,947 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 10 states have (on average 3.0) internal successors, (30), 10 states have internal predecessors, (30), 7 states have call successors, (13), 4 states have call predecessors, (13), 2 states have return successors, (9), 5 states have call predecessors, (9), 7 states have call successors, (9) Word has length 73 [2024-09-11 20:36:46,947 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-11 20:36:46,949 INFO L225 Difference]: With dead ends: 521 [2024-09-11 20:36:46,949 INFO L226 Difference]: Without dead ends: 260 [2024-09-11 20:36:46,954 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 24 SyntacticMatches, 0 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 57 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=81, Invalid=425, Unknown=0, NotChecked=0, Total=506 [2024-09-11 20:36:46,955 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 35 mSDsluCounter, 120 mSDsCounter, 0 mSdLazyCounter, 440 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 148 SdHoareTripleChecker+Invalid, 463 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 440 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-11 20:36:46,955 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 148 Invalid, 463 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 440 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-11 20:36:46,955 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 260 states. [2024-09-11 20:36:47,043 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 260 to 260. [2024-09-11 20:36:47,044 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 260 states, 169 states have (on average 1.0710059171597632) internal successors, (181), 176 states have internal predecessors, (181), 45 states have call successors, (45), 37 states have call predecessors, (45), 45 states have return successors, (63), 46 states have call predecessors, (63), 42 states have call successors, (63) [2024-09-11 20:36:47,044 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 289 transitions. [2024-09-11 20:36:47,045 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 289 transitions. Word has length 73 [2024-09-11 20:36:47,045 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-11 20:36:47,045 INFO L474 AbstractCegarLoop]: Abstraction has 260 states and 289 transitions. [2024-09-11 20:36:47,045 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 10 states have (on average 3.0) internal successors, (30), 10 states have internal predecessors, (30), 7 states have call successors, (13), 4 states have call predecessors, (13), 2 states have return successors, (9), 5 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-11 20:36:47,046 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:36:47,046 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 289 transitions. [2024-09-11 20:36:47,046 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 82 [2024-09-11 20:36:47,046 INFO L208 NwaCegarLoop]: Found error trace [2024-09-11 20:36:47,047 INFO L216 NwaCegarLoop]: trace histogram [10, 9, 9, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-11 20:36:47,047 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2024-09-11 20:36:47,047 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-11 20:36:47,047 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-11 20:36:47,047 INFO L85 PathProgramCache]: Analyzing trace with hash -385675091, now seen corresponding path program 1 times [2024-09-11 20:36:47,047 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-11 20:36:47,047 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [954732116] [2024-09-11 20:36:47,047 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:36:47,047 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-11 20:36:47,096 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-11 20:36:47,100 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2057171321] [2024-09-11 20:36:47,101 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-11 20:36:47,101 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-11 20:36:47,101 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-11 20:36:47,103 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-11 20:36:47,104 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-11 20:36:47,291 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-11 20:36:47,301 INFO L262 TraceCheckSpWp]: Trace formula consists of 521 conjuncts, 161 conjuncts are in the unsatisfiable core [2024-09-11 20:36:47,308 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-11 20:36:47,314 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:36:47,319 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:36:47,321 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-11 20:36:47,337 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:36:47,343 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-11 20:36:47,360 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-11 20:36:51,783 WARN L876 $PredicateComparison]: unable to prove that (exists ((v_func_to_recursive_line_32_to_55_0_~r.offset_BEFORE_CALL_20 Int) (v_func_to_recursive_line_32_to_55_0_~y.base_BEFORE_CALL_21 Int) (v_func_to_recursive_line_32_to_55_0_~r.base_BEFORE_CALL_20 Int) (v_func_to_recursive_line_32_to_55_0_~y.offset_BEFORE_CALL_23 Int)) (<= (select (select |c_#memory_int#4| v_func_to_recursive_line_32_to_55_0_~y.base_BEFORE_CALL_21) v_func_to_recursive_line_32_to_55_0_~y.offset_BEFORE_CALL_23) (select (select |c_#memory_int#1| v_func_to_recursive_line_32_to_55_0_~r.base_BEFORE_CALL_20) v_func_to_recursive_line_32_to_55_0_~r.offset_BEFORE_CALL_20))) is different from true [2024-09-11 20:36:56,337 WARN L876 $PredicateComparison]: unable to prove that (and (exists ((|v_func_to_recursive_line_41_to_52_0_#in~b.base_BEFORE_CALL_13| Int) (|v_func_to_recursive_line_41_to_52_0_#in~a.base_BEFORE_CALL_7| Int) (|v_func_to_recursive_line_41_to_52_0_#in~y.base_BEFORE_CALL_7| Int) (|v_func_to_recursive_line_41_to_52_0_#in~b.offset_BEFORE_CALL_13| Int) (|v_func_to_recursive_line_41_to_52_0_#in~y.offset_BEFORE_CALL_7| Int) (|v_func_to_recursive_line_41_to_52_0_#in~a.offset_BEFORE_CALL_7| Int)) (<= (select (select |c_#memory_int#2| |v_func_to_recursive_line_41_to_52_0_#in~b.base_BEFORE_CALL_13|) |v_func_to_recursive_line_41_to_52_0_#in~b.offset_BEFORE_CALL_13|) (* (select (select |c_#memory_int#4| |v_func_to_recursive_line_41_to_52_0_#in~y.base_BEFORE_CALL_7|) |v_func_to_recursive_line_41_to_52_0_#in~y.offset_BEFORE_CALL_7|) (select (select |c_#memory_int#5| |v_func_to_recursive_line_41_to_52_0_#in~a.base_BEFORE_CALL_7|) |v_func_to_recursive_line_41_to_52_0_#in~a.offset_BEFORE_CALL_7|)))) (exists ((v_func_to_recursive_line_32_to_55_0_~r.offset_BEFORE_CALL_20 Int) (v_func_to_recursive_line_32_to_55_0_~y.base_BEFORE_CALL_21 Int) (v_func_to_recursive_line_32_to_55_0_~r.base_BEFORE_CALL_20 Int) (v_func_to_recursive_line_32_to_55_0_~y.offset_BEFORE_CALL_23 Int)) (<= (select (select |c_#memory_int#4| v_func_to_recursive_line_32_to_55_0_~y.base_BEFORE_CALL_21) v_func_to_recursive_line_32_to_55_0_~y.offset_BEFORE_CALL_23) (select (select |c_#memory_int#1| v_func_to_recursive_line_32_to_55_0_~r.base_BEFORE_CALL_20) v_func_to_recursive_line_32_to_55_0_~r.offset_BEFORE_CALL_20)))) is different from true [2024-09-11 20:37:00,462 WARN L876 $PredicateComparison]: unable to prove that (and (exists ((|v_func_to_recursive_line_41_to_52_0_#in~a.base_BEFORE_CALL_8| Int) (|v_func_to_recursive_line_41_to_52_0_#in~b.base_BEFORE_CALL_14| Int) (|v_func_to_recursive_line_41_to_52_0_#in~y.base_BEFORE_CALL_8| Int) (|v_func_to_recursive_line_41_to_52_0_#in~b.offset_BEFORE_CALL_14| Int) (|v_func_to_recursive_line_41_to_52_0_#in~y.offset_BEFORE_CALL_8| Int) (|v_func_to_recursive_line_41_to_52_0_#in~a.offset_BEFORE_CALL_8| Int)) (<= (select (select |c_#memory_int#2| |v_func_to_recursive_line_41_to_52_0_#in~b.base_BEFORE_CALL_14|) |v_func_to_recursive_line_41_to_52_0_#in~b.offset_BEFORE_CALL_14|) (* (select (select |c_#memory_int#5| |v_func_to_recursive_line_41_to_52_0_#in~a.base_BEFORE_CALL_8|) |v_func_to_recursive_line_41_to_52_0_#in~a.offset_BEFORE_CALL_8|) (select (select |c_#memory_int#4| |v_func_to_recursive_line_41_to_52_0_#in~y.base_BEFORE_CALL_8|) |v_func_to_recursive_line_41_to_52_0_#in~y.offset_BEFORE_CALL_8|)))) (exists ((v_func_to_recursive_line_32_to_55_0_~r.offset_BEFORE_CALL_20 Int) (v_func_to_recursive_line_32_to_55_0_~y.base_BEFORE_CALL_21 Int) (v_func_to_recursive_line_32_to_55_0_~r.base_BEFORE_CALL_20 Int) (v_func_to_recursive_line_32_to_55_0_~y.offset_BEFORE_CALL_23 Int)) (<= (select (select |c_#memory_int#4| v_func_to_recursive_line_32_to_55_0_~y.base_BEFORE_CALL_21) v_func_to_recursive_line_32_to_55_0_~y.offset_BEFORE_CALL_23) (select (select |c_#memory_int#1| v_func_to_recursive_line_32_to_55_0_~r.base_BEFORE_CALL_20) v_func_to_recursive_line_32_to_55_0_~r.offset_BEFORE_CALL_20)))) is different from true [2024-09-11 20:37:00,844 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 29 treesize of output 17 [2024-09-11 20:37:00,851 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-11 20:37:00,865 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-11 20:37:00,865 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 38 treesize of output 38 [2024-09-11 20:37:00,955 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 36 treesize of output 24 [2024-09-11 20:37:00,958 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 28 treesize of output 16 [2024-09-11 20:37:05,266 INFO L134 CoverageAnalysis]: Checked inductivity of 176 backedges. 63 proven. 10 refuted. 0 times theorem prover too weak. 34 trivial. 69 not checked. [2024-09-11 20:37:05,266 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-11 20:37:11,392 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 43 [2024-09-11 20:37:11,399 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 31 [2024-09-11 20:38:00,826 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-11 20:38:00,827 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [954732116] [2024-09-11 20:38:00,827 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-11 20:38:00,827 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2057171321] [2024-09-11 20:38:00,827 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2057171321] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-11 20:38:00,827 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-11 20:38:00,827 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22] total 22 [2024-09-11 20:38:00,827 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [304148676] [2024-09-11 20:38:00,827 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-11 20:38:00,827 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-11 20:38:00,827 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-11 20:38:00,828 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-11 20:38:00,828 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=82, Invalid=675, Unknown=11, NotChecked=162, Total=930 [2024-09-11 20:38:00,829 INFO L87 Difference]: Start difference. First operand 260 states and 289 transitions. Second operand has 22 states, 18 states have (on average 2.388888888888889) internal successors, (43), 19 states have internal predecessors, (43), 8 states have call successors, (14), 7 states have call predecessors, (14), 7 states have return successors, (11), 5 states have call predecessors, (11), 6 states have call successors, (11) [2024-09-11 20:38:04,959 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:38:09,247 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-11 20:38:13,279 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-11 20:38:17,594 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:38:21,872 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.28s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:38:26,147 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:38:30,406 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.03s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-11 20:38:34,826 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0]