./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_egcd-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a9b967e5 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_egcd-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 494d69f416dd1b0b56dc0371ee72744b83dbc298da37778d271d6f779b4cdcdc --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-a9b967e-m [2024-09-12 16:36:35,396 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-12 16:36:35,458 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-12 16:36:35,462 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-12 16:36:35,462 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-12 16:36:35,495 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-12 16:36:35,496 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-12 16:36:35,496 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-12 16:36:35,497 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-12 16:36:35,500 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-12 16:36:35,501 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-12 16:36:35,501 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-12 16:36:35,502 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-12 16:36:35,502 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-12 16:36:35,502 INFO L153 SettingsManager]: * Use SBE=true [2024-09-12 16:36:35,502 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-12 16:36:35,503 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-12 16:36:35,503 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-12 16:36:35,503 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-12 16:36:35,503 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-12 16:36:35,504 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-12 16:36:35,508 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-12 16:36:35,509 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-12 16:36:35,509 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-12 16:36:35,509 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-12 16:36:35,509 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-12 16:36:35,510 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-12 16:36:35,510 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-12 16:36:35,510 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-12 16:36:35,510 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-12 16:36:35,510 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-12 16:36:35,511 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-12 16:36:35,511 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-12 16:36:35,511 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-12 16:36:35,511 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-12 16:36:35,511 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-12 16:36:35,512 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-12 16:36:35,512 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-12 16:36:35,513 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-12 16:36:35,514 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-12 16:36:35,514 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-12 16:36:35,515 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-12 16:36:35,515 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 494d69f416dd1b0b56dc0371ee72744b83dbc298da37778d271d6f779b4cdcdc Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-12 16:36:35,857 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-12 16:36:35,884 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-12 16:36:35,887 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-12 16:36:35,888 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-12 16:36:35,889 INFO L274 PluginConnector]: CDTParser initialized [2024-09-12 16:36:35,890 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_egcd-ll.c [2024-09-12 16:36:37,454 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-12 16:36:37,678 INFO L384 CDTParser]: Found 1 translation units. [2024-09-12 16:36:37,679 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_egcd-ll.c [2024-09-12 16:36:37,690 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/1ee17473b/0fab6543846d483c963fcdaa117d6c56/FLAGf27a55d2d [2024-09-12 16:36:37,710 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/1ee17473b/0fab6543846d483c963fcdaa117d6c56 [2024-09-12 16:36:37,713 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-12 16:36:37,715 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-12 16:36:37,719 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-12 16:36:37,719 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-12 16:36:37,725 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-12 16:36:37,726 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.09 04:36:37" (1/1) ... [2024-09-12 16:36:37,727 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6162e1ab and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:37, skipping insertion in model container [2024-09-12 16:36:37,727 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.09 04:36:37" (1/1) ... [2024-09-12 16:36:37,753 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-12 16:36:37,937 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_egcd-ll.c[1019,1032] [2024-09-12 16:36:37,971 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-12 16:36:37,991 INFO L200 MainTranslator]: Completed pre-run [2024-09-12 16:36:38,002 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_egcd-ll.c[1019,1032] [2024-09-12 16:36:38,028 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-12 16:36:38,047 INFO L204 MainTranslator]: Completed translation [2024-09-12 16:36:38,048 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38 WrapperNode [2024-09-12 16:36:38,048 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-12 16:36:38,050 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-12 16:36:38,050 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-12 16:36:38,051 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-12 16:36:38,058 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,066 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,074 INFO L138 Inliner]: procedures = 16, calls = 106, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-12 16:36:38,075 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-12 16:36:38,076 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-12 16:36:38,076 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-12 16:36:38,077 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-12 16:36:38,087 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,087 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,090 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,123 INFO L175 MemorySlicer]: Split 66 memory accesses to 9 slices as follows [2, 7, 7, 8, 8, 10, 8, 8, 8]. 15 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0, 0, 0, 0, 0]. The 14 writes are split as follows [0, 1, 1, 2, 2, 2, 2, 2, 2]. [2024-09-12 16:36:38,127 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,130 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,143 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,145 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,147 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,152 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,158 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-12 16:36:38,159 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-12 16:36:38,159 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-12 16:36:38,160 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-12 16:36:38,161 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (1/1) ... [2024-09-12 16:36:38,167 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-12 16:36:38,179 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:36:38,198 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-12 16:36:38,205 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-12 16:36:38,258 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-12 16:36:38,259 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_33_to_48_0 [2024-09-12 16:36:38,259 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_33_to_48_0 [2024-09-12 16:36:38,259 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-12 16:36:38,260 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-12 16:36:38,260 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-12 16:36:38,260 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-12 16:36:38,262 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-12 16:36:38,262 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-12 16:36:38,262 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-12 16:36:38,262 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-12 16:36:38,262 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-12 16:36:38,263 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#5 [2024-09-12 16:36:38,263 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#6 [2024-09-12 16:36:38,263 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#7 [2024-09-12 16:36:38,263 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#8 [2024-09-12 16:36:38,264 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-12 16:36:38,264 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-12 16:36:38,264 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-12 16:36:38,264 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-12 16:36:38,264 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-12 16:36:38,265 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-12 16:36:38,265 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#5 [2024-09-12 16:36:38,266 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#6 [2024-09-12 16:36:38,266 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#7 [2024-09-12 16:36:38,266 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#8 [2024-09-12 16:36:38,266 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-12 16:36:38,266 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-12 16:36:38,266 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-12 16:36:38,267 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#5 [2024-09-12 16:36:38,268 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#6 [2024-09-12 16:36:38,269 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#7 [2024-09-12 16:36:38,269 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#8 [2024-09-12 16:36:38,269 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-12 16:36:38,269 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-12 16:36:38,269 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-12 16:36:38,417 INFO L242 CfgBuilder]: Building ICFG [2024-09-12 16:36:38,419 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-12 16:36:38,782 INFO L? ?]: Removed 12 outVars from TransFormulas that were not future-live. [2024-09-12 16:36:38,782 INFO L291 CfgBuilder]: Performing block encoding [2024-09-12 16:36:38,811 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-12 16:36:38,811 INFO L318 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-12 16:36:38,811 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.09 04:36:38 BoogieIcfgContainer [2024-09-12 16:36:38,812 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-12 16:36:38,813 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-12 16:36:38,814 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-12 16:36:38,817 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-12 16:36:38,817 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 12.09 04:36:37" (1/3) ... [2024-09-12 16:36:38,818 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3750057b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.09 04:36:38, skipping insertion in model container [2024-09-12 16:36:38,819 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:36:38" (2/3) ... [2024-09-12 16:36:38,819 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3750057b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.09 04:36:38, skipping insertion in model container [2024-09-12 16:36:38,820 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.09 04:36:38" (3/3) ... [2024-09-12 16:36:38,821 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_egcd-ll.c [2024-09-12 16:36:38,838 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-12 16:36:38,839 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-12 16:36:38,908 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-12 16:36:38,915 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@424a8893, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-12 16:36:38,916 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-12 16:36:38,920 INFO L276 IsEmpty]: Start isEmpty. Operand has 45 states, 25 states have (on average 1.24) internal successors, (31), 27 states have internal predecessors, (31), 13 states have call successors, (13), 5 states have call predecessors, (13), 5 states have return successors, (13), 13 states have call predecessors, (13), 13 states have call successors, (13) [2024-09-12 16:36:38,927 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-12 16:36:38,928 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:36:38,929 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:36:38,929 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:36:38,934 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:38,935 INFO L85 PathProgramCache]: Analyzing trace with hash -1455850366, now seen corresponding path program 1 times [2024-09-12 16:36:38,944 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:36:38,944 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1440579519] [2024-09-12 16:36:38,945 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:38,945 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:36:39,126 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:39,206 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 16:36:39,212 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:39,223 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-12 16:36:39,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:39,232 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-12 16:36:39,234 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:39,238 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 16:36:39,239 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:36:39,239 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1440579519] [2024-09-12 16:36:39,240 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1440579519] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 16:36:39,240 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 16:36:39,240 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-12 16:36:39,241 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [788571715] [2024-09-12 16:36:39,246 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 16:36:39,252 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-12 16:36:39,252 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:36:39,277 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-12 16:36:39,277 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-12 16:36:39,281 INFO L87 Difference]: Start difference. First operand has 45 states, 25 states have (on average 1.24) internal successors, (31), 27 states have internal predecessors, (31), 13 states have call successors, (13), 5 states have call predecessors, (13), 5 states have return successors, (13), 13 states have call predecessors, (13), 13 states have call successors, (13) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-12 16:36:39,316 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:36:39,317 INFO L93 Difference]: Finished difference Result 84 states and 118 transitions. [2024-09-12 16:36:39,318 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-12 16:36:39,320 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 24 [2024-09-12 16:36:39,320 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:36:39,328 INFO L225 Difference]: With dead ends: 84 [2024-09-12 16:36:39,329 INFO L226 Difference]: Without dead ends: 41 [2024-09-12 16:36:39,332 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-12 16:36:39,337 INFO L434 NwaCegarLoop]: 52 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 52 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-12 16:36:39,339 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 52 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-12 16:36:39,356 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 41 states. [2024-09-12 16:36:39,385 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 41 to 41. [2024-09-12 16:36:39,389 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 23 states have (on average 1.1304347826086956) internal successors, (26), 25 states have internal predecessors, (26), 13 states have call successors, (13), 5 states have call predecessors, (13), 4 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) [2024-09-12 16:36:39,391 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 50 transitions. [2024-09-12 16:36:39,395 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 50 transitions. Word has length 24 [2024-09-12 16:36:39,397 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:36:39,397 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 50 transitions. [2024-09-12 16:36:39,398 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-12 16:36:39,398 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:39,399 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 50 transitions. [2024-09-12 16:36:39,400 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-12 16:36:39,402 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:36:39,402 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:36:39,402 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-12 16:36:39,404 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:36:39,404 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:39,404 INFO L85 PathProgramCache]: Analyzing trace with hash 1951833606, now seen corresponding path program 1 times [2024-09-12 16:36:39,404 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:36:39,405 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2003998930] [2024-09-12 16:36:39,405 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:39,405 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:36:39,546 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:36:39,558 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [260353526] [2024-09-12 16:36:39,563 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:39,564 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:39,564 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:36:39,569 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:36:39,577 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-12 16:36:39,826 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:39,830 INFO L262 TraceCheckSpWp]: Trace formula consists of 279 conjuncts, 61 conjuncts are in the unsatisfiable core [2024-09-12 16:36:39,838 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:36:39,906 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:39,919 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:39,929 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:39,940 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:40,177 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 16:36:40,178 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-12 16:36:40,178 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:36:40,178 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2003998930] [2024-09-12 16:36:40,179 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:36:40,179 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [260353526] [2024-09-12 16:36:40,179 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [260353526] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 16:36:40,179 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 16:36:40,179 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-12 16:36:40,180 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1341321814] [2024-09-12 16:36:40,180 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 16:36:40,181 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-12 16:36:40,181 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:36:40,185 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-12 16:36:40,185 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-12 16:36:40,186 INFO L87 Difference]: Start difference. First operand 41 states and 50 transitions. Second operand has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-12 16:36:40,560 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:36:40,561 INFO L93 Difference]: Finished difference Result 64 states and 79 transitions. [2024-09-12 16:36:40,561 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-12 16:36:40,562 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 24 [2024-09-12 16:36:40,562 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:36:40,564 INFO L225 Difference]: With dead ends: 64 [2024-09-12 16:36:40,564 INFO L226 Difference]: Without dead ends: 62 [2024-09-12 16:36:40,566 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 26 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-12 16:36:40,567 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 20 mSDsluCounter, 186 mSDsCounter, 0 mSdLazyCounter, 125 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 22 SdHoareTripleChecker+Valid, 223 SdHoareTripleChecker+Invalid, 133 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 125 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 16:36:40,569 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [22 Valid, 223 Invalid, 133 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 125 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 16:36:40,570 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2024-09-12 16:36:40,588 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 56. [2024-09-12 16:36:40,588 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 33 states have (on average 1.121212121212121) internal successors, (37), 35 states have internal predecessors, (37), 16 states have call successors, (16), 7 states have call predecessors, (16), 6 states have return successors, (15), 14 states have call predecessors, (15), 14 states have call successors, (15) [2024-09-12 16:36:40,590 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 68 transitions. [2024-09-12 16:36:40,590 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 68 transitions. Word has length 24 [2024-09-12 16:36:40,590 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:36:40,591 INFO L474 AbstractCegarLoop]: Abstraction has 56 states and 68 transitions. [2024-09-12 16:36:40,591 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-12 16:36:40,591 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:40,591 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 68 transitions. [2024-09-12 16:36:40,592 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-12 16:36:40,592 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:36:40,592 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:36:40,611 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2024-09-12 16:36:40,793 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:40,793 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:36:40,794 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:40,794 INFO L85 PathProgramCache]: Analyzing trace with hash 1266928978, now seen corresponding path program 1 times [2024-09-12 16:36:40,794 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:36:40,794 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1382321008] [2024-09-12 16:36:40,794 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:40,795 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:36:40,855 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:36:40,859 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1564324943] [2024-09-12 16:36:40,860 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:40,860 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:40,864 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:36:40,866 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:36:40,868 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-12 16:36:41,014 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:41,020 INFO L262 TraceCheckSpWp]: Trace formula consists of 298 conjuncts, 59 conjuncts are in the unsatisfiable core [2024-09-12 16:36:41,024 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:36:41,030 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:36:41,038 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:41,049 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:41,055 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:36:41,262 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:36:41,268 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-12 16:36:41,315 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 16:36:41,316 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:36:41,483 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:36:41,484 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1382321008] [2024-09-12 16:36:41,484 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:36:41,484 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1564324943] [2024-09-12 16:36:41,484 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1564324943] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:36:41,484 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:36:41,484 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9] total 9 [2024-09-12 16:36:41,485 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [951301853] [2024-09-12 16:36:41,485 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:36:41,485 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-12 16:36:41,485 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:36:41,486 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-12 16:36:41,486 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=24, Invalid=86, Unknown=0, NotChecked=0, Total=110 [2024-09-12 16:36:41,487 INFO L87 Difference]: Start difference. First operand 56 states and 68 transitions. Second operand has 9 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 7 states have internal predecessors, (16), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-12 16:36:41,895 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:36:41,895 INFO L93 Difference]: Finished difference Result 94 states and 115 transitions. [2024-09-12 16:36:41,898 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-12 16:36:41,898 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 7 states have internal predecessors, (16), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 30 [2024-09-12 16:36:41,898 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:36:41,901 INFO L225 Difference]: With dead ends: 94 [2024-09-12 16:36:41,901 INFO L226 Difference]: Without dead ends: 92 [2024-09-12 16:36:41,904 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 39 GetRequests, 23 SyntacticMatches, 3 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=49, Invalid=161, Unknown=0, NotChecked=0, Total=210 [2024-09-12 16:36:41,904 INFO L434 NwaCegarLoop]: 35 mSDtfsCounter, 46 mSDsluCounter, 160 mSDsCounter, 0 mSdLazyCounter, 179 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 195 SdHoareTripleChecker+Invalid, 195 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 179 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-12 16:36:41,907 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 195 Invalid, 195 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 179 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-12 16:36:41,908 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 92 states. [2024-09-12 16:36:41,946 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 92 to 87. [2024-09-12 16:36:41,947 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 87 states, 52 states have (on average 1.1346153846153846) internal successors, (59), 55 states have internal predecessors, (59), 24 states have call successors, (24), 10 states have call predecessors, (24), 10 states have return successors, (25), 22 states have call predecessors, (25), 21 states have call successors, (25) [2024-09-12 16:36:41,949 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 87 states to 87 states and 108 transitions. [2024-09-12 16:36:41,949 INFO L78 Accepts]: Start accepts. Automaton has 87 states and 108 transitions. Word has length 30 [2024-09-12 16:36:41,950 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:36:41,950 INFO L474 AbstractCegarLoop]: Abstraction has 87 states and 108 transitions. [2024-09-12 16:36:41,950 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 7 states have internal predecessors, (16), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-12 16:36:41,951 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:41,951 INFO L276 IsEmpty]: Start isEmpty. Operand 87 states and 108 transitions. [2024-09-12 16:36:41,951 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2024-09-12 16:36:41,952 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:36:41,952 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:36:41,970 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-12 16:36:42,156 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:42,157 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:36:42,157 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:42,157 INFO L85 PathProgramCache]: Analyzing trace with hash 1236409500, now seen corresponding path program 1 times [2024-09-12 16:36:42,157 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:36:42,158 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1137077815] [2024-09-12 16:36:42,158 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:42,158 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:36:42,230 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:36:42,236 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1267914341] [2024-09-12 16:36:42,240 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:42,240 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:42,241 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:36:42,243 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:36:42,245 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-12 16:36:42,377 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:42,380 INFO L262 TraceCheckSpWp]: Trace formula consists of 317 conjuncts, 59 conjuncts are in the unsatisfiable core [2024-09-12 16:36:42,385 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:36:42,390 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:36:42,401 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:42,406 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:42,412 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:36:42,696 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:36:42,701 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-12 16:36:42,748 INFO L134 CoverageAnalysis]: Checked inductivity of 12 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-12 16:36:42,749 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:36:42,889 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:36:42,890 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1137077815] [2024-09-12 16:36:42,890 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:36:42,890 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1267914341] [2024-09-12 16:36:42,890 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1267914341] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:36:42,890 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:36:42,891 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9] total 9 [2024-09-12 16:36:42,891 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1650044370] [2024-09-12 16:36:42,891 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:36:42,892 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-12 16:36:42,892 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:36:42,892 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-12 16:36:42,892 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=24, Invalid=86, Unknown=0, NotChecked=0, Total=110 [2024-09-12 16:36:42,893 INFO L87 Difference]: Start difference. First operand 87 states and 108 transitions. Second operand has 9 states, 7 states have (on average 2.4285714285714284) internal successors, (17), 7 states have internal predecessors, (17), 4 states have call successors, (8), 4 states have call predecessors, (8), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-12 16:36:43,325 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:36:43,326 INFO L93 Difference]: Finished difference Result 145 states and 178 transitions. [2024-09-12 16:36:43,326 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-12 16:36:43,326 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 7 states have (on average 2.4285714285714284) internal successors, (17), 7 states have internal predecessors, (17), 4 states have call successors, (8), 4 states have call predecessors, (8), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 36 [2024-09-12 16:36:43,327 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:36:43,328 INFO L225 Difference]: With dead ends: 145 [2024-09-12 16:36:43,329 INFO L226 Difference]: Without dead ends: 143 [2024-09-12 16:36:43,329 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 27 SyntacticMatches, 5 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=49, Invalid=161, Unknown=0, NotChecked=0, Total=210 [2024-09-12 16:36:43,330 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 45 mSDsluCounter, 159 mSDsCounter, 0 mSdLazyCounter, 211 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 226 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 211 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-12 16:36:43,330 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 189 Invalid, 226 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 211 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-12 16:36:43,331 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 143 states. [2024-09-12 16:36:43,375 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 143 to 139. [2024-09-12 16:36:43,378 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 85 states have (on average 1.1411764705882352) internal successors, (97), 89 states have internal predecessors, (97), 36 states have call successors, (36), 16 states have call predecessors, (36), 17 states have return successors, (38), 34 states have call predecessors, (38), 31 states have call successors, (38) [2024-09-12 16:36:43,379 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 171 transitions. [2024-09-12 16:36:43,380 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 171 transitions. Word has length 36 [2024-09-12 16:36:43,380 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:36:43,380 INFO L474 AbstractCegarLoop]: Abstraction has 139 states and 171 transitions. [2024-09-12 16:36:43,380 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 7 states have (on average 2.4285714285714284) internal successors, (17), 7 states have internal predecessors, (17), 4 states have call successors, (8), 4 states have call predecessors, (8), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-12 16:36:43,380 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:43,381 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 171 transitions. [2024-09-12 16:36:43,386 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2024-09-12 16:36:43,386 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:36:43,386 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:36:43,405 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-12 16:36:43,587 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:43,587 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:36:43,588 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:43,588 INFO L85 PathProgramCache]: Analyzing trace with hash -598293826, now seen corresponding path program 1 times [2024-09-12 16:36:43,588 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:36:43,589 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [61199456] [2024-09-12 16:36:43,589 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:43,589 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:36:43,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,063 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 16:36:44,065 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,067 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-12 16:36:44,069 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,071 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-12 16:36:44,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,093 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-12 16:36:44,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,284 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-12 16:36:44,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,292 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-12 16:36:44,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,302 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-12 16:36:44,305 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:44,311 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-12 16:36:44,312 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:36:44,312 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [61199456] [2024-09-12 16:36:44,312 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [61199456] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 16:36:44,312 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 16:36:44,313 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2024-09-12 16:36:44,313 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [186831228] [2024-09-12 16:36:44,313 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 16:36:44,314 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2024-09-12 16:36:44,314 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:36:44,315 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2024-09-12 16:36:44,315 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2024-09-12 16:36:44,315 INFO L87 Difference]: Start difference. First operand 139 states and 171 transitions. Second operand has 10 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 7 states have internal predecessors, (21), 3 states have call successors, (9), 3 states have call predecessors, (9), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2024-09-12 16:36:44,785 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:36:44,785 INFO L93 Difference]: Finished difference Result 159 states and 190 transitions. [2024-09-12 16:36:44,786 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2024-09-12 16:36:44,786 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 7 states have internal predecessors, (21), 3 states have call successors, (9), 3 states have call predecessors, (9), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 46 [2024-09-12 16:36:44,786 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:36:44,788 INFO L225 Difference]: With dead ends: 159 [2024-09-12 16:36:44,788 INFO L226 Difference]: Without dead ends: 157 [2024-09-12 16:36:44,789 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 29 GetRequests, 15 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=48, Invalid=192, Unknown=0, NotChecked=0, Total=240 [2024-09-12 16:36:44,793 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 29 mSDsluCounter, 96 mSDsCounter, 0 mSdLazyCounter, 293 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 119 SdHoareTripleChecker+Invalid, 310 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 293 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-12 16:36:44,794 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 119 Invalid, 310 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 293 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-12 16:36:44,795 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 157 states. [2024-09-12 16:36:44,856 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 157 to 157. [2024-09-12 16:36:44,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 157 states, 98 states have (on average 1.1224489795918366) internal successors, (110), 102 states have internal predecessors, (110), 36 states have call successors, (36), 20 states have call predecessors, (36), 22 states have return successors, (39), 34 states have call predecessors, (39), 31 states have call successors, (39) [2024-09-12 16:36:44,863 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 157 states to 157 states and 185 transitions. [2024-09-12 16:36:44,863 INFO L78 Accepts]: Start accepts. Automaton has 157 states and 185 transitions. Word has length 46 [2024-09-12 16:36:44,864 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:36:44,864 INFO L474 AbstractCegarLoop]: Abstraction has 157 states and 185 transitions. [2024-09-12 16:36:44,866 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 7 states have internal predecessors, (21), 3 states have call successors, (9), 3 states have call predecessors, (9), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2024-09-12 16:36:44,866 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:44,867 INFO L276 IsEmpty]: Start isEmpty. Operand 157 states and 185 transitions. [2024-09-12 16:36:44,868 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-09-12 16:36:44,868 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:36:44,868 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:36:44,868 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-09-12 16:36:44,869 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:36:44,871 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:36:44,872 INFO L85 PathProgramCache]: Analyzing trace with hash 729356253, now seen corresponding path program 1 times [2024-09-12 16:36:44,872 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:36:44,872 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [414969660] [2024-09-12 16:36:44,872 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:44,872 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:36:44,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:36:44,948 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [123141990] [2024-09-12 16:36:44,948 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:36:44,948 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:36:44,948 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:36:44,950 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:36:44,951 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-12 16:36:45,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:36:45,138 INFO L262 TraceCheckSpWp]: Trace formula consists of 432 conjuncts, 104 conjuncts are in the unsatisfiable core [2024-09-12 16:36:45,143 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:36:45,149 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:45,153 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:45,158 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:45,164 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:36:45,555 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:36:45,562 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 13 [2024-09-12 16:36:45,686 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-12 16:36:45,686 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:37:05,929 WARN L854 $PredicateComparison]: unable to prove that (forall ((|v_func_to_recursive_line_33_to_48_0_#t~mem6_6| Int)) (or (< (select (select |c_#memory_int#4| |c_func_to_recursive_line_33_to_48_0_#in~r.base|) |c_func_to_recursive_line_33_to_48_0_#in~r.offset|) |v_func_to_recursive_line_33_to_48_0_#t~mem6_6|) (= (* (select (select |c_#memory_int#8| |c_func_to_recursive_line_33_to_48_0_#in~p.base|) |c_func_to_recursive_line_33_to_48_0_#in~p.offset|) (select (select |c_#memory_int#3| |c_func_to_recursive_line_33_to_48_0_#in~s.base|) |c_func_to_recursive_line_33_to_48_0_#in~s.offset|)) (+ (* |v_func_to_recursive_line_33_to_48_0_#t~mem6_6| (select (select |c_#memory_int#7| |c_func_to_recursive_line_33_to_48_0_#in~q.base|) |c_func_to_recursive_line_33_to_48_0_#in~q.offset|)) 1)))) is different from false [2024-09-12 16:37:09,970 WARN L854 $PredicateComparison]: unable to prove that (forall ((|v_func_to_recursive_line_33_to_48_0_#t~mem6_6| Int)) (let ((.cse0 (select (select |c_#memory_int#3| c_func_to_recursive_line_33_to_48_0_~s.base) c_func_to_recursive_line_33_to_48_0_~s.offset))) (or (< (select (select |c_#memory_int#4| c_func_to_recursive_line_33_to_48_0_~r.base) c_func_to_recursive_line_33_to_48_0_~r.offset) (+ |v_func_to_recursive_line_33_to_48_0_#t~mem6_6| .cse0)) (= (let ((.cse1 (select (select |c_#memory_int#7| c_func_to_recursive_line_33_to_48_0_~q.base) c_func_to_recursive_line_33_to_48_0_~q.offset))) (+ (* .cse1 |v_func_to_recursive_line_33_to_48_0_#t~mem6_6|) (* .cse1 .cse0) 1)) (* .cse0 (select (select |c_#memory_int#8| c_func_to_recursive_line_33_to_48_0_~p.base) c_func_to_recursive_line_33_to_48_0_~p.offset)))))) is different from false [2024-09-12 16:37:10,068 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:37:10,068 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [414969660] [2024-09-12 16:37:10,068 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:37:10,068 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [123141990] [2024-09-12 16:37:10,068 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [123141990] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:37:10,068 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:37:10,069 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11] total 11 [2024-09-12 16:37:10,069 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1353770370] [2024-09-12 16:37:10,069 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:37:10,069 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-12 16:37:10,069 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:37:10,070 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-12 16:37:10,071 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=33, Invalid=127, Unknown=4, NotChecked=46, Total=210 [2024-09-12 16:37:10,071 INFO L87 Difference]: Start difference. First operand 157 states and 185 transitions. Second operand has 11 states, 9 states have (on average 2.4444444444444446) internal successors, (22), 8 states have internal predecessors, (22), 5 states have call successors, (10), 5 states have call predecessors, (10), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-12 16:37:10,528 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:37:10,529 INFO L93 Difference]: Finished difference Result 180 states and 213 transitions. [2024-09-12 16:37:10,529 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2024-09-12 16:37:10,529 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 9 states have (on average 2.4444444444444446) internal successors, (22), 8 states have internal predecessors, (22), 5 states have call successors, (10), 5 states have call predecessors, (10), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 47 [2024-09-12 16:37:10,529 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:37:10,531 INFO L225 Difference]: With dead ends: 180 [2024-09-12 16:37:10,531 INFO L226 Difference]: Without dead ends: 178 [2024-09-12 16:37:10,532 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 37 SyntacticMatches, 7 SemanticMatches, 17 ConstructedPredicates, 2 IntricatePredicates, 0 DeprecatedPredicates, 23 ImplicationChecksByTransitivity, 24.4s TimeCoverageRelationStatistics Valid=56, Invalid=220, Unknown=4, NotChecked=62, Total=342 [2024-09-12 16:37:10,533 INFO L434 NwaCegarLoop]: 46 mSDtfsCounter, 40 mSDsluCounter, 243 mSDsCounter, 0 mSdLazyCounter, 278 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 289 SdHoareTripleChecker+Invalid, 292 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 278 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-12 16:37:10,533 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 289 Invalid, 292 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 278 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-12 16:37:10,534 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 178 states. [2024-09-12 16:37:10,579 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 178 to 175. [2024-09-12 16:37:10,580 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 175 states, 109 states have (on average 1.1192660550458715) internal successors, (122), 114 states have internal predecessors, (122), 40 states have call successors, (40), 22 states have call predecessors, (40), 25 states have return successors, (46), 38 states have call predecessors, (46), 35 states have call successors, (46) [2024-09-12 16:37:10,581 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 175 states to 175 states and 208 transitions. [2024-09-12 16:37:10,582 INFO L78 Accepts]: Start accepts. Automaton has 175 states and 208 transitions. Word has length 47 [2024-09-12 16:37:10,582 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:37:10,582 INFO L474 AbstractCegarLoop]: Abstraction has 175 states and 208 transitions. [2024-09-12 16:37:10,583 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 9 states have (on average 2.4444444444444446) internal successors, (22), 8 states have internal predecessors, (22), 5 states have call successors, (10), 5 states have call predecessors, (10), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-12 16:37:10,583 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:10,583 INFO L276 IsEmpty]: Start isEmpty. Operand 175 states and 208 transitions. [2024-09-12 16:37:10,584 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-09-12 16:37:10,584 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:37:10,584 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:37:10,604 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-09-12 16:37:10,785 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:10,785 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:37:10,785 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:10,785 INFO L85 PathProgramCache]: Analyzing trace with hash -79990373, now seen corresponding path program 1 times [2024-09-12 16:37:10,786 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:37:10,786 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1557611709] [2024-09-12 16:37:10,786 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:10,786 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:37:10,847 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:37:10,850 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [679875664] [2024-09-12 16:37:10,850 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:10,850 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:10,850 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:37:10,852 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:37:10,854 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-12 16:37:11,000 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:37:11,004 INFO L262 TraceCheckSpWp]: Trace formula consists of 432 conjuncts, 107 conjuncts are in the unsatisfiable core [2024-09-12 16:37:11,009 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:37:11,022 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:11,027 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:11,032 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:11,038 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:11,369 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 13 [2024-09-12 16:37:11,378 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:37:11,488 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-12 16:37:11,489 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:37:11,768 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 6 proven. 1 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2024-09-12 16:37:11,768 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:37:11,768 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1557611709] [2024-09-12 16:37:11,768 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:37:11,768 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [679875664] [2024-09-12 16:37:11,769 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [679875664] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 16:37:11,769 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-12 16:37:11,769 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 8] total 15 [2024-09-12 16:37:11,769 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1731636869] [2024-09-12 16:37:11,769 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-12 16:37:11,769 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-12 16:37:11,769 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:37:11,770 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-12 16:37:11,770 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2024-09-12 16:37:11,771 INFO L87 Difference]: Start difference. First operand 175 states and 208 transitions. Second operand has 15 states, 11 states have (on average 3.090909090909091) internal successors, (34), 11 states have internal predecessors, (34), 8 states have call successors, (16), 6 states have call predecessors, (16), 2 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-12 16:37:13,122 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:37:13,123 INFO L93 Difference]: Finished difference Result 213 states and 262 transitions. [2024-09-12 16:37:13,125 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-12 16:37:13,125 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 11 states have (on average 3.090909090909091) internal successors, (34), 11 states have internal predecessors, (34), 8 states have call successors, (16), 6 states have call predecessors, (16), 2 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 47 [2024-09-12 16:37:13,125 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:37:13,128 INFO L225 Difference]: With dead ends: 213 [2024-09-12 16:37:13,128 INFO L226 Difference]: Without dead ends: 211 [2024-09-12 16:37:13,131 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 103 GetRequests, 73 SyntacticMatches, 7 SemanticMatches, 23 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 59 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=106, Invalid=494, Unknown=0, NotChecked=0, Total=600 [2024-09-12 16:37:13,132 INFO L434 NwaCegarLoop]: 42 mSDtfsCounter, 66 mSDsluCounter, 257 mSDsCounter, 0 mSdLazyCounter, 366 mSolverCounterSat, 33 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 68 SdHoareTripleChecker+Valid, 299 SdHoareTripleChecker+Invalid, 399 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 366 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-12 16:37:13,132 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [68 Valid, 299 Invalid, 399 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 366 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-12 16:37:13,133 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 211 states. [2024-09-12 16:37:13,206 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 211 to 207. [2024-09-12 16:37:13,206 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 207 states, 129 states have (on average 1.1085271317829457) internal successors, (143), 135 states have internal predecessors, (143), 44 states have call successors, (44), 26 states have call predecessors, (44), 33 states have return successors, (62), 45 states have call predecessors, (62), 39 states have call successors, (62) [2024-09-12 16:37:13,207 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 207 states to 207 states and 249 transitions. [2024-09-12 16:37:13,208 INFO L78 Accepts]: Start accepts. Automaton has 207 states and 249 transitions. Word has length 47 [2024-09-12 16:37:13,208 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:37:13,208 INFO L474 AbstractCegarLoop]: Abstraction has 207 states and 249 transitions. [2024-09-12 16:37:13,208 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 11 states have (on average 3.090909090909091) internal successors, (34), 11 states have internal predecessors, (34), 8 states have call successors, (16), 6 states have call predecessors, (16), 2 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-12 16:37:13,209 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:13,209 INFO L276 IsEmpty]: Start isEmpty. Operand 207 states and 249 transitions. [2024-09-12 16:37:13,210 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2024-09-12 16:37:13,210 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:37:13,210 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:37:13,224 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-12 16:37:13,410 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-12 16:37:13,411 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:37:13,411 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:13,412 INFO L85 PathProgramCache]: Analyzing trace with hash 183627405, now seen corresponding path program 1 times [2024-09-12 16:37:13,412 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:37:13,412 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [652800595] [2024-09-12 16:37:13,412 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:13,412 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:37:13,441 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:37:13,443 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1506832708] [2024-09-12 16:37:13,443 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:13,443 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:13,444 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:37:13,445 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:37:13,446 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-12 16:37:13,589 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:37:13,590 INFO L262 TraceCheckSpWp]: Trace formula consists of 357 conjuncts, 40 conjuncts are in the unsatisfiable core [2024-09-12 16:37:13,594 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:37:13,597 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:37:13,604 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:13,606 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:37:13,608 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:13,612 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:13,617 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:13,630 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:13,727 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:37:13,850 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:37:13,853 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-12 16:37:13,891 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 18 proven. 2 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-12 16:37:13,891 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:37:14,055 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:37:14,055 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [652800595] [2024-09-12 16:37:14,055 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:37:14,055 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1506832708] [2024-09-12 16:37:14,055 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1506832708] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:37:14,055 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:37:14,055 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12] total 12 [2024-09-12 16:37:14,055 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1043478574] [2024-09-12 16:37:14,055 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:37:14,056 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-12 16:37:14,056 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:37:14,056 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-12 16:37:14,056 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=37, Invalid=173, Unknown=0, NotChecked=0, Total=210 [2024-09-12 16:37:14,057 INFO L87 Difference]: Start difference. First operand 207 states and 249 transitions. Second operand has 12 states, 10 states have (on average 2.5) internal successors, (25), 9 states have internal predecessors, (25), 5 states have call successors, (10), 4 states have call predecessors, (10), 3 states have return successors, (8), 4 states have call predecessors, (8), 4 states have call successors, (8) [2024-09-12 16:37:14,750 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:37:14,750 INFO L93 Difference]: Finished difference Result 215 states and 255 transitions. [2024-09-12 16:37:14,751 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-12 16:37:14,751 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 10 states have (on average 2.5) internal successors, (25), 9 states have internal predecessors, (25), 5 states have call successors, (10), 4 states have call predecessors, (10), 3 states have return successors, (8), 4 states have call predecessors, (8), 4 states have call successors, (8) Word has length 52 [2024-09-12 16:37:14,752 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:37:14,754 INFO L225 Difference]: With dead ends: 215 [2024-09-12 16:37:14,757 INFO L226 Difference]: Without dead ends: 213 [2024-09-12 16:37:14,758 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 44 SyntacticMatches, 2 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 50 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=88, Invalid=374, Unknown=0, NotChecked=0, Total=462 [2024-09-12 16:37:14,758 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 46 mSDsluCounter, 91 mSDsCounter, 0 mSdLazyCounter, 366 mSolverCounterSat, 32 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 113 SdHoareTripleChecker+Invalid, 398 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 366 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-12 16:37:14,758 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 113 Invalid, 398 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 366 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-12 16:37:14,759 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 213 states. [2024-09-12 16:37:14,843 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 213 to 211. [2024-09-12 16:37:14,845 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 211 states, 132 states have (on average 1.106060606060606) internal successors, (146), 138 states have internal predecessors, (146), 44 states have call successors, (44), 27 states have call predecessors, (44), 34 states have return successors, (62), 45 states have call predecessors, (62), 39 states have call successors, (62) [2024-09-12 16:37:14,846 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 211 states to 211 states and 252 transitions. [2024-09-12 16:37:14,847 INFO L78 Accepts]: Start accepts. Automaton has 211 states and 252 transitions. Word has length 52 [2024-09-12 16:37:14,847 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:37:14,847 INFO L474 AbstractCegarLoop]: Abstraction has 211 states and 252 transitions. [2024-09-12 16:37:14,847 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 10 states have (on average 2.5) internal successors, (25), 9 states have internal predecessors, (25), 5 states have call successors, (10), 4 states have call predecessors, (10), 3 states have return successors, (8), 4 states have call predecessors, (8), 4 states have call successors, (8) [2024-09-12 16:37:14,848 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:14,848 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 252 transitions. [2024-09-12 16:37:14,850 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2024-09-12 16:37:14,850 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:37:14,850 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:37:14,871 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-12 16:37:15,051 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:15,053 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:37:15,053 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:15,054 INFO L85 PathProgramCache]: Analyzing trace with hash -528266775, now seen corresponding path program 2 times [2024-09-12 16:37:15,054 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:37:15,054 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [351423798] [2024-09-12 16:37:15,054 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:15,054 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:37:15,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:37:15,088 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1542170743] [2024-09-12 16:37:15,088 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 16:37:15,089 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:15,089 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:37:15,090 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:37:15,091 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-12 16:37:15,308 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 16:37:15,308 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 16:37:15,312 INFO L262 TraceCheckSpWp]: Trace formula consists of 451 conjuncts, 175 conjuncts are in the unsatisfiable core [2024-09-12 16:37:15,318 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:37:15,322 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:37:15,324 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:37:15,327 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:15,330 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:15,334 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:15,342 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:15,349 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:15,357 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:15,933 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:37:15,940 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 21 [2024-09-12 16:37:15,943 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 29 treesize of output 21 [2024-09-12 16:37:15,949 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 13 [2024-09-12 16:37:16,127 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-12 16:37:16,130 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-12 16:37:16,133 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-12 16:37:16,177 INFO L134 CoverageAnalysis]: Checked inductivity of 41 backedges. 6 proven. 25 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-12 16:37:16,178 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:37:16,685 INFO L134 CoverageAnalysis]: Checked inductivity of 41 backedges. 8 proven. 5 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2024-09-12 16:37:16,685 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:37:16,685 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [351423798] [2024-09-12 16:37:16,685 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:37:16,685 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1542170743] [2024-09-12 16:37:16,686 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1542170743] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 16:37:16,686 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-12 16:37:16,686 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 10] total 22 [2024-09-12 16:37:16,686 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [781030164] [2024-09-12 16:37:16,686 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-12 16:37:16,686 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-12 16:37:16,686 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:37:16,687 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-12 16:37:16,687 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=403, Unknown=0, NotChecked=0, Total=462 [2024-09-12 16:37:16,687 INFO L87 Difference]: Start difference. First operand 211 states and 252 transitions. Second operand has 22 states, 18 states have (on average 2.5) internal successors, (45), 16 states have internal predecessors, (45), 9 states have call successors, (18), 9 states have call predecessors, (18), 4 states have return successors, (11), 5 states have call predecessors, (11), 5 states have call successors, (11) [2024-09-12 16:37:21,373 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.70s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-12 16:37:21,956 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:37:21,956 INFO L93 Difference]: Finished difference Result 292 states and 345 transitions. [2024-09-12 16:37:21,957 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-12 16:37:21,957 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 18 states have (on average 2.5) internal successors, (45), 16 states have internal predecessors, (45), 9 states have call successors, (18), 9 states have call predecessors, (18), 4 states have return successors, (11), 5 states have call predecessors, (11), 5 states have call successors, (11) Word has length 53 [2024-09-12 16:37:21,958 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:37:21,965 INFO L225 Difference]: With dead ends: 292 [2024-09-12 16:37:21,966 INFO L226 Difference]: Without dead ends: 290 [2024-09-12 16:37:21,966 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 122 GetRequests, 79 SyntacticMatches, 6 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 249 ImplicationChecksByTransitivity, 2.2s TimeCoverageRelationStatistics Valid=222, Invalid=1260, Unknown=0, NotChecked=0, Total=1482 [2024-09-12 16:37:21,967 INFO L434 NwaCegarLoop]: 48 mSDtfsCounter, 143 mSDsluCounter, 360 mSDsCounter, 0 mSdLazyCounter, 730 mSolverCounterSat, 58 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 146 SdHoareTripleChecker+Valid, 408 SdHoareTripleChecker+Invalid, 788 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 58 IncrementalHoareTripleChecker+Valid, 730 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.5s IncrementalHoareTripleChecker+Time [2024-09-12 16:37:21,967 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [146 Valid, 408 Invalid, 788 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [58 Valid, 730 Invalid, 0 Unknown, 0 Unchecked, 3.5s Time] [2024-09-12 16:37:21,969 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 290 states. [2024-09-12 16:37:22,065 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 290 to 269. [2024-09-12 16:37:22,065 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 269 states, 171 states have (on average 1.105263157894737) internal successors, (189), 178 states have internal predecessors, (189), 52 states have call successors, (52), 36 states have call predecessors, (52), 45 states have return successors, (75), 54 states have call predecessors, (75), 46 states have call successors, (75) [2024-09-12 16:37:22,067 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 269 states to 269 states and 316 transitions. [2024-09-12 16:37:22,067 INFO L78 Accepts]: Start accepts. Automaton has 269 states and 316 transitions. Word has length 53 [2024-09-12 16:37:22,068 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:37:22,068 INFO L474 AbstractCegarLoop]: Abstraction has 269 states and 316 transitions. [2024-09-12 16:37:22,068 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 18 states have (on average 2.5) internal successors, (45), 16 states have internal predecessors, (45), 9 states have call successors, (18), 9 states have call predecessors, (18), 4 states have return successors, (11), 5 states have call predecessors, (11), 5 states have call successors, (11) [2024-09-12 16:37:22,068 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:22,068 INFO L276 IsEmpty]: Start isEmpty. Operand 269 states and 316 transitions. [2024-09-12 16:37:22,069 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2024-09-12 16:37:22,069 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:37:22,069 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:37:22,077 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2024-09-12 16:37:22,269 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:22,270 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:37:22,270 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:22,270 INFO L85 PathProgramCache]: Analyzing trace with hash 250711066, now seen corresponding path program 1 times [2024-09-12 16:37:22,271 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:37:22,271 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1057360778] [2024-09-12 16:37:22,271 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:22,271 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:37:22,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:37:22,296 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1016820728] [2024-09-12 16:37:22,296 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:22,296 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:22,297 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:37:22,298 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:37:22,301 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-12 16:37:22,447 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:37:22,455 INFO L262 TraceCheckSpWp]: Trace formula consists of 374 conjuncts, 29 conjuncts are in the unsatisfiable core [2024-09-12 16:37:22,460 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:37:22,465 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:22,469 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:22,473 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:22,480 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:22,777 INFO L134 CoverageAnalysis]: Checked inductivity of 54 backedges. 30 proven. 4 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-09-12 16:37:22,778 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:37:27,114 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:37:27,115 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1057360778] [2024-09-12 16:37:27,115 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:37:27,115 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1016820728] [2024-09-12 16:37:27,115 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1016820728] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:37:27,115 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:37:27,115 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8] total 8 [2024-09-12 16:37:27,115 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [170532850] [2024-09-12 16:37:27,115 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:37:27,116 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-12 16:37:27,116 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:37:27,116 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-12 16:37:27,116 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=23, Invalid=86, Unknown=1, NotChecked=0, Total=110 [2024-09-12 16:37:27,117 INFO L87 Difference]: Start difference. First operand 269 states and 316 transitions. Second operand has 8 states, 7 states have (on average 3.7142857142857144) internal successors, (26), 7 states have internal predecessors, (26), 4 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-12 16:37:27,523 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:37:27,523 INFO L93 Difference]: Finished difference Result 277 states and 322 transitions. [2024-09-12 16:37:27,523 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-12 16:37:27,523 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.7142857142857144) internal successors, (26), 7 states have internal predecessors, (26), 4 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 58 [2024-09-12 16:37:27,524 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:37:27,525 INFO L225 Difference]: With dead ends: 277 [2024-09-12 16:37:27,525 INFO L226 Difference]: Without dead ends: 273 [2024-09-12 16:37:27,526 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 86 GetRequests, 68 SyntacticMatches, 5 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 4.3s TimeCoverageRelationStatistics Valid=49, Invalid=160, Unknown=1, NotChecked=0, Total=210 [2024-09-12 16:37:27,526 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 32 mSDsluCounter, 87 mSDsCounter, 0 mSdLazyCounter, 221 mSolverCounterSat, 29 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 110 SdHoareTripleChecker+Invalid, 251 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 221 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 16:37:27,526 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 110 Invalid, 251 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 221 Invalid, 1 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 16:37:27,527 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 273 states. [2024-09-12 16:37:27,618 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 273 to 271. [2024-09-12 16:37:27,618 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 271 states, 173 states have (on average 1.0982658959537572) internal successors, (190), 179 states have internal predecessors, (190), 52 states have call successors, (52), 37 states have call predecessors, (52), 45 states have return successors, (75), 54 states have call predecessors, (75), 46 states have call successors, (75) [2024-09-12 16:37:27,620 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 271 states to 271 states and 317 transitions. [2024-09-12 16:37:27,620 INFO L78 Accepts]: Start accepts. Automaton has 271 states and 317 transitions. Word has length 58 [2024-09-12 16:37:27,620 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:37:27,621 INFO L474 AbstractCegarLoop]: Abstraction has 271 states and 317 transitions. [2024-09-12 16:37:27,621 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.7142857142857144) internal successors, (26), 7 states have internal predecessors, (26), 4 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-12 16:37:27,621 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:27,621 INFO L276 IsEmpty]: Start isEmpty. Operand 271 states and 317 transitions. [2024-09-12 16:37:27,622 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-09-12 16:37:27,622 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:37:27,623 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:37:27,643 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-12 16:37:27,823 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:27,823 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:37:27,824 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:27,824 INFO L85 PathProgramCache]: Analyzing trace with hash 1798650033, now seen corresponding path program 2 times [2024-09-12 16:37:27,824 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:37:27,824 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1638433803] [2024-09-12 16:37:27,824 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:27,824 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:37:27,865 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:37:27,867 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1331175523] [2024-09-12 16:37:27,868 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 16:37:27,868 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:27,868 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:37:27,870 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:37:27,872 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-12 16:37:28,101 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 16:37:28,101 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 16:37:28,105 INFO L262 TraceCheckSpWp]: Trace formula consists of 470 conjuncts, 187 conjuncts are in the unsatisfiable core [2024-09-12 16:37:28,110 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:37:28,117 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:37:28,119 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:37:28,123 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:28,126 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:28,129 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:28,134 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:28,139 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:28,145 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:28,685 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:37:28,691 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 27 [2024-09-12 16:37:28,694 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 21 [2024-09-12 16:37:28,702 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 13 [2024-09-12 16:37:29,040 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-12 16:37:29,044 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-12 16:37:29,048 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-12 16:37:29,105 INFO L134 CoverageAnalysis]: Checked inductivity of 61 backedges. 3 proven. 41 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-09-12 16:37:29,106 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:37:29,690 INFO L134 CoverageAnalysis]: Checked inductivity of 61 backedges. 10 proven. 7 refuted. 0 times theorem prover too weak. 44 trivial. 0 not checked. [2024-09-12 16:37:29,690 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:37:29,690 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1638433803] [2024-09-12 16:37:29,690 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:37:29,690 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1331175523] [2024-09-12 16:37:29,690 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1331175523] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 16:37:29,690 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-12 16:37:29,691 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 10] total 22 [2024-09-12 16:37:29,691 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1359854095] [2024-09-12 16:37:29,691 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-12 16:37:29,691 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-12 16:37:29,691 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:37:29,692 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-12 16:37:29,692 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=403, Unknown=0, NotChecked=0, Total=462 [2024-09-12 16:37:29,692 INFO L87 Difference]: Start difference. First operand 271 states and 317 transitions. Second operand has 22 states, 18 states have (on average 2.611111111111111) internal successors, (47), 16 states have internal predecessors, (47), 9 states have call successors, (20), 9 states have call predecessors, (20), 4 states have return successors, (13), 5 states have call predecessors, (13), 5 states have call successors, (13) [2024-09-12 16:37:33,103 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:37:33,103 INFO L93 Difference]: Finished difference Result 364 states and 420 transitions. [2024-09-12 16:37:33,105 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-12 16:37:33,105 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 18 states have (on average 2.611111111111111) internal successors, (47), 16 states have internal predecessors, (47), 9 states have call successors, (20), 9 states have call predecessors, (20), 4 states have return successors, (13), 5 states have call predecessors, (13), 5 states have call successors, (13) Word has length 59 [2024-09-12 16:37:33,106 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:37:33,108 INFO L225 Difference]: With dead ends: 364 [2024-09-12 16:37:33,108 INFO L226 Difference]: Without dead ends: 362 [2024-09-12 16:37:33,109 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 134 GetRequests, 89 SyntacticMatches, 8 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 233 ImplicationChecksByTransitivity, 1.9s TimeCoverageRelationStatistics Valid=222, Invalid=1260, Unknown=0, NotChecked=0, Total=1482 [2024-09-12 16:37:33,110 INFO L434 NwaCegarLoop]: 48 mSDtfsCounter, 103 mSDsluCounter, 332 mSDsCounter, 0 mSdLazyCounter, 694 mSolverCounterSat, 44 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 106 SdHoareTripleChecker+Valid, 380 SdHoareTripleChecker+Invalid, 738 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 44 IncrementalHoareTripleChecker+Valid, 694 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.1s IncrementalHoareTripleChecker+Time [2024-09-12 16:37:33,110 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [106 Valid, 380 Invalid, 738 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [44 Valid, 694 Invalid, 0 Unknown, 0 Unchecked, 2.1s Time] [2024-09-12 16:37:33,111 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 362 states. [2024-09-12 16:37:33,243 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 362 to 192. [2024-09-12 16:37:33,243 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 192 states, 125 states have (on average 1.088) internal successors, (136), 129 states have internal predecessors, (136), 32 states have call successors, (32), 29 states have call predecessors, (32), 34 states have return successors, (48), 33 states have call predecessors, (48), 29 states have call successors, (48) [2024-09-12 16:37:33,244 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 192 states to 192 states and 216 transitions. [2024-09-12 16:37:33,245 INFO L78 Accepts]: Start accepts. Automaton has 192 states and 216 transitions. Word has length 59 [2024-09-12 16:37:33,245 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:37:33,245 INFO L474 AbstractCegarLoop]: Abstraction has 192 states and 216 transitions. [2024-09-12 16:37:33,246 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 18 states have (on average 2.611111111111111) internal successors, (47), 16 states have internal predecessors, (47), 9 states have call successors, (20), 9 states have call predecessors, (20), 4 states have return successors, (13), 5 states have call predecessors, (13), 5 states have call successors, (13) [2024-09-12 16:37:33,246 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:33,247 INFO L276 IsEmpty]: Start isEmpty. Operand 192 states and 216 transitions. [2024-09-12 16:37:33,248 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2024-09-12 16:37:33,248 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:37:33,248 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:37:33,261 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-12 16:37:33,448 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-12 16:37:33,449 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:37:33,449 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:37:33,449 INFO L85 PathProgramCache]: Analyzing trace with hash 811390181, now seen corresponding path program 1 times [2024-09-12 16:37:33,449 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:37:33,449 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [193783085] [2024-09-12 16:37:33,449 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:33,450 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:37:33,493 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:37:33,498 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [274971932] [2024-09-12 16:37:33,498 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:37:33,499 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:37:33,499 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:37:33,501 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:37:33,502 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-12 16:37:33,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:37:33,675 INFO L262 TraceCheckSpWp]: Trace formula consists of 393 conjuncts, 44 conjuncts are in the unsatisfiable core [2024-09-12 16:37:33,678 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:37:33,683 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:33,688 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:33,693 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:37:33,707 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:33,722 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:33,729 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:37:33,838 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:38:02,452 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:38:02,468 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:38:02,469 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 30 treesize of output 30 [2024-09-12 16:38:02,488 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:38:02,488 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 38 treesize of output 34 [2024-09-12 16:38:02,553 INFO L134 CoverageAnalysis]: Checked inductivity of 76 backedges. 44 proven. 12 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-09-12 16:38:02,553 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:38:27,707 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:38:27,707 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [193783085] [2024-09-12 16:38:27,707 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:38:27,707 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [274971932] [2024-09-12 16:38:27,707 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [274971932] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:38:27,707 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:38:27,707 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13] total 13 [2024-09-12 16:38:27,708 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1279076825] [2024-09-12 16:38:27,708 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:38:27,708 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2024-09-12 16:38:27,708 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:38:27,709 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2024-09-12 16:38:27,709 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=63, Invalid=309, Unknown=8, NotChecked=0, Total=380 [2024-09-12 16:38:27,709 INFO L87 Difference]: Start difference. First operand 192 states and 216 transitions. Second operand has 13 states, 11 states have (on average 2.727272727272727) internal successors, (30), 11 states have internal predecessors, (30), 6 states have call successors, (12), 5 states have call predecessors, (12), 4 states have return successors, (10), 4 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-12 16:38:39,786 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:08,512 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:12,851 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:17,393 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:21,750 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.03s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:25,902 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.03s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-12 16:39:29,948 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:34,071 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:38,125 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-12 16:39:42,180 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-12 16:39:42,348 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:39:42,348 INFO L93 Difference]: Finished difference Result 268 states and 304 transitions. [2024-09-12 16:39:42,348 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-12 16:39:42,349 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 11 states have (on average 2.727272727272727) internal successors, (30), 11 states have internal predecessors, (30), 6 states have call successors, (12), 5 states have call predecessors, (12), 4 states have return successors, (10), 4 states have call predecessors, (10), 5 states have call successors, (10) Word has length 64 [2024-09-12 16:39:42,349 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:39:42,350 INFO L225 Difference]: With dead ends: 268 [2024-09-12 16:39:42,350 INFO L226 Difference]: Without dead ends: 242 [2024-09-12 16:39:42,351 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 103 GetRequests, 70 SyntacticMatches, 5 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 116 ImplicationChecksByTransitivity, 73.0s TimeCoverageRelationStatistics Valid=163, Invalid=696, Unknown=11, NotChecked=0, Total=870 [2024-09-12 16:39:42,351 INFO L434 NwaCegarLoop]: 19 mSDtfsCounter, 44 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 434 mSolverCounterSat, 34 mSolverCounterUnsat, 14 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 53.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 50 SdHoareTripleChecker+Valid, 101 SdHoareTripleChecker+Invalid, 482 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 34 IncrementalHoareTripleChecker+Valid, 434 IncrementalHoareTripleChecker+Invalid, 14 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 53.1s IncrementalHoareTripleChecker+Time [2024-09-12 16:39:42,351 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [50 Valid, 101 Invalid, 482 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [34 Valid, 434 Invalid, 14 Unknown, 0 Unchecked, 53.1s Time] [2024-09-12 16:39:42,352 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 242 states. [2024-09-12 16:39:42,457 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 242 to 168. [2024-09-12 16:39:42,457 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 168 states, 109 states have (on average 1.091743119266055) internal successors, (119), 113 states have internal predecessors, (119), 28 states have call successors, (28), 25 states have call predecessors, (28), 30 states have return successors, (44), 29 states have call predecessors, (44), 26 states have call successors, (44) [2024-09-12 16:39:42,458 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 168 states to 168 states and 191 transitions. [2024-09-12 16:39:42,459 INFO L78 Accepts]: Start accepts. Automaton has 168 states and 191 transitions. Word has length 64 [2024-09-12 16:39:42,459 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:39:42,459 INFO L474 AbstractCegarLoop]: Abstraction has 168 states and 191 transitions. [2024-09-12 16:39:42,459 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 11 states have (on average 2.727272727272727) internal successors, (30), 11 states have internal predecessors, (30), 6 states have call successors, (12), 5 states have call predecessors, (12), 4 states have return successors, (10), 4 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-12 16:39:42,459 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:39:42,460 INFO L276 IsEmpty]: Start isEmpty. Operand 168 states and 191 transitions. [2024-09-12 16:39:42,460 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2024-09-12 16:39:42,460 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:39:42,461 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:39:42,479 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-12 16:39:42,661 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-12 16:39:42,662 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:39:42,662 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:39:42,662 INFO L85 PathProgramCache]: Analyzing trace with hash -538069386, now seen corresponding path program 1 times [2024-09-12 16:39:42,662 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:39:42,662 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1960959368] [2024-09-12 16:39:42,662 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:39:42,662 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:39:42,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:39:42,697 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1458037630] [2024-09-12 16:39:42,697 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:39:42,697 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:39:42,698 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:39:42,699 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:39:42,700 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-12 16:39:42,905 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:39:42,910 INFO L262 TraceCheckSpWp]: Trace formula consists of 512 conjuncts, 140 conjuncts are in the unsatisfiable core [2024-09-12 16:39:42,916 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:39:44,922 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:39:45,029 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:39:45,137 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:39:45,255 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:39:45,421 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-12 16:39:45,531 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:39:46,307 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:39:46,545 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:40:13,771 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 13 [2024-09-12 16:40:14,002 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:40:14,107 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 21 [2024-09-12 16:40:15,532 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:40:15,533 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 36 treesize of output 36 [2024-09-12 16:40:22,842 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:40:22,842 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 30 treesize of output 30 [2024-09-12 16:40:23,095 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:40:23,095 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 48 treesize of output 40 [2024-09-12 16:40:23,854 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:40:23,854 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 38 treesize of output 54 [2024-09-12 16:40:26,613 INFO L134 CoverageAnalysis]: Checked inductivity of 113 backedges. 25 proven. 28 refuted. 0 times theorem prover too weak. 60 trivial. 0 not checked. [2024-09-12 16:40:26,613 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:40:46,285 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:40:46,285 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1960959368] [2024-09-12 16:40:46,285 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:40:46,285 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1458037630] [2024-09-12 16:40:46,285 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1458037630] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:40:46,285 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:40:46,286 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [25] total 25 [2024-09-12 16:40:46,286 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [75824861] [2024-09-12 16:40:46,286 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:40:46,286 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-12 16:40:46,286 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:40:46,287 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-12 16:40:46,287 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=109, Invalid=883, Unknown=0, NotChecked=0, Total=992 [2024-09-12 16:40:46,287 INFO L87 Difference]: Start difference. First operand 168 states and 191 transitions. Second operand has 25 states, 20 states have (on average 1.8) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (14), 6 states have call predecessors, (14), 6 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-12 16:40:50,643 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0]