./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_ps5-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a9b967e5 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_ps5-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 02d2a7ecaeb1f9a3fd2c207ee063800bfd7475435ba7bc7e95648b1704092bfe --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-a9b967e-m [2024-09-12 16:42:20,065 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-12 16:42:20,128 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-12 16:42:20,133 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-12 16:42:20,134 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-12 16:42:20,157 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-12 16:42:20,157 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-12 16:42:20,157 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-12 16:42:20,158 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-12 16:42:20,161 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-12 16:42:20,161 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-12 16:42:20,161 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-12 16:42:20,162 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-12 16:42:20,162 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-12 16:42:20,163 INFO L153 SettingsManager]: * Use SBE=true [2024-09-12 16:42:20,163 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-12 16:42:20,164 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-12 16:42:20,164 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-12 16:42:20,164 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-12 16:42:20,164 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-12 16:42:20,164 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-12 16:42:20,165 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-12 16:42:20,165 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-12 16:42:20,165 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-12 16:42:20,166 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-12 16:42:20,166 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-12 16:42:20,166 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-12 16:42:20,166 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-12 16:42:20,166 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-12 16:42:20,166 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-12 16:42:20,167 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-12 16:42:20,167 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-12 16:42:20,167 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-12 16:42:20,168 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-12 16:42:20,168 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-12 16:42:20,168 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-12 16:42:20,169 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-12 16:42:20,169 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-12 16:42:20,169 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-12 16:42:20,169 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-12 16:42:20,170 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-12 16:42:20,170 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-12 16:42:20,170 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 02d2a7ecaeb1f9a3fd2c207ee063800bfd7475435ba7bc7e95648b1704092bfe Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-12 16:42:20,407 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-12 16:42:20,426 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-12 16:42:20,428 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-12 16:42:20,429 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-12 16:42:20,429 INFO L274 PluginConnector]: CDTParser initialized [2024-09-12 16:42:20,430 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_ps5-ll.c [2024-09-12 16:42:21,609 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-12 16:42:21,747 INFO L384 CDTParser]: Found 1 translation units. [2024-09-12 16:42:21,747 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_ps5-ll.c [2024-09-12 16:42:21,753 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/589a934ed/62448c26acbd4346903ab6f12de281f2/FLAG4335b952c [2024-09-12 16:42:21,762 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/589a934ed/62448c26acbd4346903ab6f12de281f2 [2024-09-12 16:42:21,764 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-12 16:42:21,765 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-12 16:42:21,766 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-12 16:42:21,766 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-12 16:42:21,770 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-12 16:42:21,770 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:21,771 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@47f69ede and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21, skipping insertion in model container [2024-09-12 16:42:21,771 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:21,786 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-12 16:42:21,905 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_ps5-ll.c[987,1000] [2024-09-12 16:42:21,925 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-12 16:42:21,937 INFO L200 MainTranslator]: Completed pre-run [2024-09-12 16:42:21,947 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_ps5-ll.c[987,1000] [2024-09-12 16:42:21,961 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-12 16:42:21,977 INFO L204 MainTranslator]: Completed translation [2024-09-12 16:42:21,978 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21 WrapperNode [2024-09-12 16:42:21,978 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-12 16:42:21,979 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-12 16:42:21,979 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-12 16:42:21,979 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-12 16:42:21,985 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:21,996 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,002 INFO L138 Inliner]: procedures = 16, calls = 74, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-12 16:42:22,003 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-12 16:42:22,004 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-12 16:42:22,004 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-12 16:42:22,004 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-12 16:42:22,012 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,012 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,014 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,036 INFO L175 MemorySlicer]: Split 51 memory accesses to 5 slices as follows [2, 36, 5, 4, 4]. 71 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0]. The 7 writes are split as follows [0, 2, 2, 1, 2]. [2024-09-12 16:42:22,036 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,036 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,041 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,046 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,047 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,048 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,051 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-12 16:42:22,052 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-12 16:42:22,052 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-12 16:42:22,053 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-12 16:42:22,054 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (1/1) ... [2024-09-12 16:42:22,058 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-12 16:42:22,066 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:22,079 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-12 16:42:22,081 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-12 16:42:22,117 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-12 16:42:22,117 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-12 16:42:22,117 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-12 16:42:22,117 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-12 16:42:22,117 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-12 16:42:22,118 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-12 16:42:22,118 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-12 16:42:22,119 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-12 16:42:22,119 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-12 16:42:22,119 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-12 16:42:22,120 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-12 16:42:22,120 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-12 16:42:22,121 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-12 16:42:22,121 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-12 16:42:22,121 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_27_to_35_0 [2024-09-12 16:42:22,122 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_27_to_35_0 [2024-09-12 16:42:22,122 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-12 16:42:22,195 INFO L242 CfgBuilder]: Building ICFG [2024-09-12 16:42:22,197 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-12 16:42:22,395 INFO L? ?]: Removed 7 outVars from TransFormulas that were not future-live. [2024-09-12 16:42:22,395 INFO L291 CfgBuilder]: Performing block encoding [2024-09-12 16:42:22,413 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-12 16:42:22,415 INFO L318 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-12 16:42:22,415 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.09 04:42:22 BoogieIcfgContainer [2024-09-12 16:42:22,415 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-12 16:42:22,417 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-12 16:42:22,417 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-12 16:42:22,419 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-12 16:42:22,419 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 12.09 04:42:21" (1/3) ... [2024-09-12 16:42:22,419 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@114761d4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.09 04:42:22, skipping insertion in model container [2024-09-12 16:42:22,420 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 04:42:21" (2/3) ... [2024-09-12 16:42:22,420 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@114761d4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.09 04:42:22, skipping insertion in model container [2024-09-12 16:42:22,420 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.09 04:42:22" (3/3) ... [2024-09-12 16:42:22,421 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_ps5-ll.c [2024-09-12 16:42:22,433 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-12 16:42:22,433 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-12 16:42:22,484 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-12 16:42:22,490 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@a8bf5bf, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-12 16:42:22,490 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-12 16:42:22,493 INFO L276 IsEmpty]: Start isEmpty. Operand has 34 states, 19 states have (on average 1.263157894736842) internal successors, (24), 21 states have internal predecessors, (24), 8 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) [2024-09-12 16:42:22,499 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-12 16:42:22,499 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:22,500 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:22,501 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:22,505 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:22,505 INFO L85 PathProgramCache]: Analyzing trace with hash 460517386, now seen corresponding path program 1 times [2024-09-12 16:42:22,512 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:22,512 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [610272620] [2024-09-12 16:42:22,513 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:22,513 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:22,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:22,649 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 16:42:22,651 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:22,655 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-12 16:42:22,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:22,666 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 16:42:22,666 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:22,667 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [610272620] [2024-09-12 16:42:22,667 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [610272620] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 16:42:22,667 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 16:42:22,667 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-12 16:42:22,668 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [38602735] [2024-09-12 16:42:22,669 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 16:42:22,677 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-12 16:42:22,677 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:22,692 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-12 16:42:22,693 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-12 16:42:22,694 INFO L87 Difference]: Start difference. First operand has 34 states, 19 states have (on average 1.263157894736842) internal successors, (24), 21 states have internal predecessors, (24), 8 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) Second operand has 2 states, 2 states have (on average 5.5) internal successors, (11), 2 states have internal predecessors, (11), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-12 16:42:22,713 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:22,714 INFO L93 Difference]: Finished difference Result 60 states and 76 transitions. [2024-09-12 16:42:22,714 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-12 16:42:22,715 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.5) internal successors, (11), 2 states have internal predecessors, (11), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 18 [2024-09-12 16:42:22,716 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:22,720 INFO L225 Difference]: With dead ends: 60 [2024-09-12 16:42:22,721 INFO L226 Difference]: Without dead ends: 30 [2024-09-12 16:42:22,723 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-12 16:42:22,725 INFO L434 NwaCegarLoop]: 35 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 35 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:22,725 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 35 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-12 16:42:22,745 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 30 states. [2024-09-12 16:42:22,757 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 30 to 30. [2024-09-12 16:42:22,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 30 states, 17 states have (on average 1.1176470588235294) internal successors, (19), 19 states have internal predecessors, (19), 8 states have call successors, (8), 5 states have call predecessors, (8), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-12 16:42:22,761 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 30 states to 30 states and 33 transitions. [2024-09-12 16:42:22,763 INFO L78 Accepts]: Start accepts. Automaton has 30 states and 33 transitions. Word has length 18 [2024-09-12 16:42:22,764 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:22,764 INFO L474 AbstractCegarLoop]: Abstraction has 30 states and 33 transitions. [2024-09-12 16:42:22,764 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.5) internal successors, (11), 2 states have internal predecessors, (11), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-12 16:42:22,765 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:22,765 INFO L276 IsEmpty]: Start isEmpty. Operand 30 states and 33 transitions. [2024-09-12 16:42:22,766 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-12 16:42:22,766 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:22,766 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:22,767 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-12 16:42:22,767 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:22,767 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:22,767 INFO L85 PathProgramCache]: Analyzing trace with hash 1161581964, now seen corresponding path program 1 times [2024-09-12 16:42:22,768 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:22,768 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [475381034] [2024-09-12 16:42:22,768 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:22,768 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:22,814 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:22,818 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [94165872] [2024-09-12 16:42:22,820 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:22,821 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:22,821 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:22,822 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:22,824 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-12 16:42:22,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:22,926 INFO L262 TraceCheckSpWp]: Trace formula consists of 184 conjuncts, 39 conjuncts are in the unsatisfiable core [2024-09-12 16:42:22,941 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:23,009 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:23,019 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:23,152 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 16:42:23,152 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-12 16:42:23,152 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:23,153 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [475381034] [2024-09-12 16:42:23,153 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:42:23,154 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [94165872] [2024-09-12 16:42:23,154 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [94165872] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 16:42:23,154 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 16:42:23,154 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-12 16:42:23,155 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [111107243] [2024-09-12 16:42:23,155 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 16:42:23,156 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-12 16:42:23,156 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:23,157 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-12 16:42:23,158 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-12 16:42:23,158 INFO L87 Difference]: Start difference. First operand 30 states and 33 transitions. Second operand has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-12 16:42:23,300 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:23,300 INFO L93 Difference]: Finished difference Result 44 states and 48 transitions. [2024-09-12 16:42:23,301 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-12 16:42:23,301 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 18 [2024-09-12 16:42:23,301 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:23,302 INFO L225 Difference]: With dead ends: 44 [2024-09-12 16:42:23,302 INFO L226 Difference]: Without dead ends: 42 [2024-09-12 16:42:23,302 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-12 16:42:23,303 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 12 mSDsluCounter, 129 mSDsCounter, 0 mSdLazyCounter, 76 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 12 SdHoareTripleChecker+Valid, 153 SdHoareTripleChecker+Invalid, 80 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 76 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:23,303 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [12 Valid, 153 Invalid, 80 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 76 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-12 16:42:23,304 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 42 states. [2024-09-12 16:42:23,315 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 42 to 41. [2024-09-12 16:42:23,315 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 25 states have (on average 1.12) internal successors, (28), 27 states have internal predecessors, (28), 9 states have call successors, (9), 7 states have call predecessors, (9), 6 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-12 16:42:23,317 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 45 transitions. [2024-09-12 16:42:23,317 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 45 transitions. Word has length 18 [2024-09-12 16:42:23,317 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:23,318 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 45 transitions. [2024-09-12 16:42:23,318 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-12 16:42:23,319 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:23,319 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 45 transitions. [2024-09-12 16:42:23,319 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-12 16:42:23,320 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:23,320 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:23,338 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2024-09-12 16:42:23,524 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:23,525 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:23,525 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:23,525 INFO L85 PathProgramCache]: Analyzing trace with hash -915195064, now seen corresponding path program 1 times [2024-09-12 16:42:23,525 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:23,526 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1080729357] [2024-09-12 16:42:23,526 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:23,526 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:23,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:23,567 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [71258676] [2024-09-12 16:42:23,567 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:23,568 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:23,568 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:23,569 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:23,570 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-12 16:42:23,670 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:23,672 INFO L262 TraceCheckSpWp]: Trace formula consists of 276 conjuncts, 95 conjuncts are in the unsatisfiable core [2024-09-12 16:42:23,676 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:23,686 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:23,689 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:23,693 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:23,861 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:42:23,865 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:42:24,038 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 16:42:24,038 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:42:24,211 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-12 16:42:24,212 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:24,212 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1080729357] [2024-09-12 16:42:24,212 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:42:24,212 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [71258676] [2024-09-12 16:42:24,212 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [71258676] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 16:42:24,212 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-12 16:42:24,213 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 8] total 15 [2024-09-12 16:42:24,213 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [697109576] [2024-09-12 16:42:24,213 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-12 16:42:24,213 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-12 16:42:24,213 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:24,214 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-12 16:42:24,214 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2024-09-12 16:42:24,214 INFO L87 Difference]: Start difference. First operand 41 states and 45 transitions. Second operand has 15 states, 11 states have (on average 2.4545454545454546) internal successors, (27), 11 states have internal predecessors, (27), 8 states have call successors, (11), 6 states have call predecessors, (11), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-12 16:42:24,650 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:24,650 INFO L93 Difference]: Finished difference Result 71 states and 78 transitions. [2024-09-12 16:42:24,651 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-12 16:42:24,651 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 11 states have (on average 2.4545454545454546) internal successors, (27), 11 states have internal predecessors, (27), 8 states have call successors, (11), 6 states have call predecessors, (11), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 28 [2024-09-12 16:42:24,651 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:24,653 INFO L225 Difference]: With dead ends: 71 [2024-09-12 16:42:24,653 INFO L226 Difference]: Without dead ends: 69 [2024-09-12 16:42:24,654 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 64 GetRequests, 39 SyntacticMatches, 3 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 53 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=98, Invalid=454, Unknown=0, NotChecked=0, Total=552 [2024-09-12 16:42:24,654 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 42 mSDsluCounter, 179 mSDsCounter, 0 mSdLazyCounter, 215 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 205 SdHoareTripleChecker+Invalid, 226 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 215 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:24,655 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 205 Invalid, 226 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 215 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 16:42:24,655 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2024-09-12 16:42:24,673 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 57. [2024-09-12 16:42:24,673 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 35 states have (on average 1.1142857142857143) internal successors, (39), 38 states have internal predecessors, (39), 11 states have call successors, (11), 9 states have call predecessors, (11), 10 states have return successors, (14), 10 states have call predecessors, (14), 9 states have call successors, (14) [2024-09-12 16:42:24,674 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 64 transitions. [2024-09-12 16:42:24,674 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 64 transitions. Word has length 28 [2024-09-12 16:42:24,675 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:24,675 INFO L474 AbstractCegarLoop]: Abstraction has 57 states and 64 transitions. [2024-09-12 16:42:24,675 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 11 states have (on average 2.4545454545454546) internal successors, (27), 11 states have internal predecessors, (27), 8 states have call successors, (11), 6 states have call predecessors, (11), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-12 16:42:24,675 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:24,675 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 64 transitions. [2024-09-12 16:42:24,676 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-12 16:42:24,676 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:24,676 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:24,688 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-12 16:42:24,876 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:24,877 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:24,877 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:24,877 INFO L85 PathProgramCache]: Analyzing trace with hash 1701306935, now seen corresponding path program 1 times [2024-09-12 16:42:24,877 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:24,877 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1942656060] [2024-09-12 16:42:24,877 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:24,878 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:24,917 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:24,919 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1725982181] [2024-09-12 16:42:24,919 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:24,919 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:24,919 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:24,923 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:24,926 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-12 16:42:24,995 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:24,996 INFO L262 TraceCheckSpWp]: Trace formula consists of 228 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-12 16:42:24,998 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:25,002 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:25,005 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:25,082 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 16:42:25,082 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-12 16:42:25,082 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:25,082 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1942656060] [2024-09-12 16:42:25,082 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:42:25,083 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1725982181] [2024-09-12 16:42:25,083 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1725982181] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 16:42:25,083 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 16:42:25,083 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-09-12 16:42:25,083 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2113864824] [2024-09-12 16:42:25,083 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 16:42:25,083 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-09-12 16:42:25,084 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:25,084 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-09-12 16:42:25,084 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-09-12 16:42:25,084 INFO L87 Difference]: Start difference. First operand 57 states and 64 transitions. Second operand has 7 states, 6 states have (on average 3.0) internal successors, (18), 6 states have internal predecessors, (18), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-12 16:42:25,194 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:25,194 INFO L93 Difference]: Finished difference Result 68 states and 75 transitions. [2024-09-12 16:42:25,194 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-12 16:42:25,195 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 6 states have (on average 3.0) internal successors, (18), 6 states have internal predecessors, (18), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 28 [2024-09-12 16:42:25,195 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:25,196 INFO L225 Difference]: With dead ends: 68 [2024-09-12 16:42:25,197 INFO L226 Difference]: Without dead ends: 66 [2024-09-12 16:42:25,197 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 30 GetRequests, 23 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-09-12 16:42:25,198 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 13 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 117 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 67 SdHoareTripleChecker+Invalid, 125 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 117 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:25,198 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 67 Invalid, 125 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 117 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-12 16:42:25,200 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 66 states. [2024-09-12 16:42:25,228 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 66 to 65. [2024-09-12 16:42:25,229 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 65 states, 40 states have (on average 1.1) internal successors, (44), 43 states have internal predecessors, (44), 12 states have call successors, (12), 10 states have call predecessors, (12), 12 states have return successors, (16), 11 states have call predecessors, (16), 10 states have call successors, (16) [2024-09-12 16:42:25,230 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 65 states to 65 states and 72 transitions. [2024-09-12 16:42:25,231 INFO L78 Accepts]: Start accepts. Automaton has 65 states and 72 transitions. Word has length 28 [2024-09-12 16:42:25,231 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:25,232 INFO L474 AbstractCegarLoop]: Abstraction has 65 states and 72 transitions. [2024-09-12 16:42:25,232 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 6 states have (on average 3.0) internal successors, (18), 6 states have internal predecessors, (18), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-12 16:42:25,232 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:25,232 INFO L276 IsEmpty]: Start isEmpty. Operand 65 states and 72 transitions. [2024-09-12 16:42:25,233 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-12 16:42:25,233 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:25,233 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:25,245 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-12 16:42:25,437 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:25,438 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:25,438 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:25,438 INFO L85 PathProgramCache]: Analyzing trace with hash -2032764367, now seen corresponding path program 1 times [2024-09-12 16:42:25,438 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:25,438 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1802217028] [2024-09-12 16:42:25,438 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:25,438 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:25,465 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:25,467 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [635566290] [2024-09-12 16:42:25,467 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:25,467 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:25,467 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:25,468 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:25,469 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-12 16:42:25,541 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:25,542 INFO L262 TraceCheckSpWp]: Trace formula consists of 245 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-09-12 16:42:25,544 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:25,547 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:42:25,551 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:25,554 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:25,653 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2024-09-12 16:42:25,678 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 16:42:25,678 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:42:25,949 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:25,949 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1802217028] [2024-09-12 16:42:25,949 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:42:25,949 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [635566290] [2024-09-12 16:42:25,949 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [635566290] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:42:25,950 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:42:25,950 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10] total 10 [2024-09-12 16:42:25,950 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1794761797] [2024-09-12 16:42:25,950 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:42:25,950 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2024-09-12 16:42:25,950 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:25,951 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2024-09-12 16:42:25,951 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=124, Unknown=0, NotChecked=0, Total=156 [2024-09-12 16:42:25,951 INFO L87 Difference]: Start difference. First operand 65 states and 72 transitions. Second operand has 10 states, 8 states have (on average 2.75) internal successors, (22), 9 states have internal predecessors, (22), 5 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-09-12 16:42:26,208 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:26,209 INFO L93 Difference]: Finished difference Result 73 states and 79 transitions. [2024-09-12 16:42:26,209 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-12 16:42:26,209 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 8 states have (on average 2.75) internal successors, (22), 9 states have internal predecessors, (22), 5 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 34 [2024-09-12 16:42:26,210 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:26,211 INFO L225 Difference]: With dead ends: 73 [2024-09-12 16:42:26,211 INFO L226 Difference]: Without dead ends: 57 [2024-09-12 16:42:26,212 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 57 GetRequests, 38 SyntacticMatches, 3 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 37 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=65, Invalid=241, Unknown=0, NotChecked=0, Total=306 [2024-09-12 16:42:26,212 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 29 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 202 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 31 SdHoareTripleChecker+Valid, 70 SdHoareTripleChecker+Invalid, 217 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 202 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:26,213 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [31 Valid, 70 Invalid, 217 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 202 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 16:42:26,215 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2024-09-12 16:42:26,236 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 57. [2024-09-12 16:42:26,239 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 35 states have (on average 1.0857142857142856) internal successors, (38), 37 states have internal predecessors, (38), 11 states have call successors, (11), 9 states have call predecessors, (11), 10 states have return successors, (14), 10 states have call predecessors, (14), 9 states have call successors, (14) [2024-09-12 16:42:26,240 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 63 transitions. [2024-09-12 16:42:26,243 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 63 transitions. Word has length 34 [2024-09-12 16:42:26,243 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:26,243 INFO L474 AbstractCegarLoop]: Abstraction has 57 states and 63 transitions. [2024-09-12 16:42:26,243 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 8 states have (on average 2.75) internal successors, (22), 9 states have internal predecessors, (22), 5 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-09-12 16:42:26,244 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:26,244 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 63 transitions. [2024-09-12 16:42:26,244 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-12 16:42:26,245 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:26,245 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:26,259 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-12 16:42:26,449 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:26,450 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:26,450 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:26,450 INFO L85 PathProgramCache]: Analyzing trace with hash 937633571, now seen corresponding path program 1 times [2024-09-12 16:42:26,450 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:26,450 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1383098218] [2024-09-12 16:42:26,450 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:26,451 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:26,490 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:26,492 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [237808421] [2024-09-12 16:42:26,492 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:26,492 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:26,493 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:26,494 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:26,495 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-12 16:42:26,587 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:26,589 INFO L262 TraceCheckSpWp]: Trace formula consists of 322 conjuncts, 73 conjuncts are in the unsatisfiable core [2024-09-12 16:42:26,592 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:26,598 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:26,602 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:26,742 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:42:26,747 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:42:26,852 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 4 proven. 6 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-12 16:42:26,852 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:42:31,352 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 85 treesize of output 33 [2024-09-12 16:42:31,360 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 29 [2024-09-12 16:42:35,921 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:35,921 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1383098218] [2024-09-12 16:42:35,921 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:42:35,921 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [237808421] [2024-09-12 16:42:35,922 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [237808421] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:42:35,922 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:42:35,922 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11] total 11 [2024-09-12 16:42:35,922 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [70857335] [2024-09-12 16:42:35,922 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:42:35,922 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-12 16:42:35,922 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:35,923 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-12 16:42:35,923 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=38, Invalid=170, Unknown=2, NotChecked=0, Total=210 [2024-09-12 16:42:35,923 INFO L87 Difference]: Start difference. First operand 57 states and 63 transitions. Second operand has 11 states, 8 states have (on average 2.875) internal successors, (23), 9 states have internal predecessors, (23), 6 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-12 16:42:36,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:36,144 INFO L93 Difference]: Finished difference Result 66 states and 72 transitions. [2024-09-12 16:42:36,145 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-12 16:42:36,145 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 8 states have (on average 2.875) internal successors, (23), 9 states have internal predecessors, (23), 6 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) Word has length 40 [2024-09-12 16:42:36,145 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:36,146 INFO L225 Difference]: With dead ends: 66 [2024-09-12 16:42:36,146 INFO L226 Difference]: Without dead ends: 64 [2024-09-12 16:42:36,146 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 56 GetRequests, 39 SyntacticMatches, 2 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 8.9s TimeCoverageRelationStatistics Valid=52, Invalid=218, Unknown=2, NotChecked=0, Total=272 [2024-09-12 16:42:36,146 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 16 mSDsluCounter, 63 mSDsCounter, 0 mSdLazyCounter, 221 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 79 SdHoareTripleChecker+Invalid, 229 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 221 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:36,147 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 79 Invalid, 229 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 221 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 16:42:36,147 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2024-09-12 16:42:36,167 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 63. [2024-09-12 16:42:36,167 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 39 states have (on average 1.0769230769230769) internal successors, (42), 41 states have internal predecessors, (42), 12 states have call successors, (12), 10 states have call predecessors, (12), 11 states have return successors, (15), 11 states have call predecessors, (15), 10 states have call successors, (15) [2024-09-12 16:42:36,168 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 69 transitions. [2024-09-12 16:42:36,168 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 69 transitions. Word has length 40 [2024-09-12 16:42:36,168 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:36,168 INFO L474 AbstractCegarLoop]: Abstraction has 63 states and 69 transitions. [2024-09-12 16:42:36,169 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 8 states have (on average 2.875) internal successors, (23), 9 states have internal predecessors, (23), 6 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-12 16:42:36,170 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:36,170 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 69 transitions. [2024-09-12 16:42:36,171 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2024-09-12 16:42:36,171 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:36,171 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:36,188 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-12 16:42:36,372 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2024-09-12 16:42:36,372 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:36,372 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:36,372 INFO L85 PathProgramCache]: Analyzing trace with hash 1024286237, now seen corresponding path program 1 times [2024-09-12 16:42:36,373 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:36,373 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1422963441] [2024-09-12 16:42:36,373 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:36,373 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:36,422 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:36,426 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [696003908] [2024-09-12 16:42:36,426 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:36,426 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:36,426 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:36,428 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:36,429 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-12 16:42:36,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 16:42:36,518 INFO L262 TraceCheckSpWp]: Trace formula consists of 339 conjuncts, 80 conjuncts are in the unsatisfiable core [2024-09-12 16:42:36,521 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:36,524 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-12 16:42:36,531 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:36,534 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:36,699 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 42 treesize of output 19 [2024-09-12 16:42:36,701 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:36,835 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:42:36,941 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 12 proven. 8 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-12 16:42:36,941 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:42:37,527 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 53 treesize of output 49 [2024-09-12 16:42:37,532 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 33 [2024-09-12 16:42:41,999 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:42:41,999 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1422963441] [2024-09-12 16:42:41,999 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:42:41,999 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [696003908] [2024-09-12 16:42:41,999 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [696003908] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:42:42,000 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:42:42,000 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16] total 16 [2024-09-12 16:42:42,000 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [533180765] [2024-09-12 16:42:42,000 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:42:42,000 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2024-09-12 16:42:42,000 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:42:42,000 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2024-09-12 16:42:42,001 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=71, Invalid=480, Unknown=1, NotChecked=0, Total=552 [2024-09-12 16:42:42,001 INFO L87 Difference]: Start difference. First operand 63 states and 69 transitions. Second operand has 16 states, 13 states have (on average 2.076923076923077) internal successors, (27), 14 states have internal predecessors, (27), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 5 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-12 16:42:42,453 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:42:42,453 INFO L93 Difference]: Finished difference Result 71 states and 76 transitions. [2024-09-12 16:42:42,453 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-09-12 16:42:42,453 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 13 states have (on average 2.076923076923077) internal successors, (27), 14 states have internal predecessors, (27), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 5 states have call predecessors, (7), 6 states have call successors, (7) Word has length 46 [2024-09-12 16:42:42,453 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:42:42,454 INFO L225 Difference]: With dead ends: 71 [2024-09-12 16:42:42,454 INFO L226 Difference]: Without dead ends: 53 [2024-09-12 16:42:42,455 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 74 GetRequests, 42 SyntacticMatches, 3 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 179 ImplicationChecksByTransitivity, 4.8s TimeCoverageRelationStatistics Valid=118, Invalid=811, Unknown=1, NotChecked=0, Total=930 [2024-09-12 16:42:42,456 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 19 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 376 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 64 SdHoareTripleChecker+Invalid, 386 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 376 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 16:42:42,456 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 64 Invalid, 386 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 376 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 16:42:42,456 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2024-09-12 16:42:42,466 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2024-09-12 16:42:42,467 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 33 states have (on average 1.0606060606060606) internal successors, (35), 34 states have internal predecessors, (35), 11 states have call successors, (11), 9 states have call predecessors, (11), 8 states have return successors, (12), 9 states have call predecessors, (12), 9 states have call successors, (12) [2024-09-12 16:42:42,467 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 58 transitions. [2024-09-12 16:42:42,467 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 58 transitions. Word has length 46 [2024-09-12 16:42:42,468 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:42:42,468 INFO L474 AbstractCegarLoop]: Abstraction has 53 states and 58 transitions. [2024-09-12 16:42:42,468 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 13 states have (on average 2.076923076923077) internal successors, (27), 14 states have internal predecessors, (27), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 5 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-12 16:42:42,468 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:42,468 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 58 transitions. [2024-09-12 16:42:42,469 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2024-09-12 16:42:42,469 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:42:42,469 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:42:42,482 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-12 16:42:42,669 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:42,670 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:42:42,670 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:42:42,670 INFO L85 PathProgramCache]: Analyzing trace with hash 586229519, now seen corresponding path program 2 times [2024-09-12 16:42:42,670 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:42:42,670 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1693710076] [2024-09-12 16:42:42,670 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:42:42,670 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:42:42,716 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:42:42,721 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [113636227] [2024-09-12 16:42:42,721 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 16:42:42,721 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:42:42,721 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:42:42,724 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:42:42,725 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-12 16:42:42,953 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 16:42:42,953 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 16:42:42,956 INFO L262 TraceCheckSpWp]: Trace formula consists of 416 conjuncts, 125 conjuncts are in the unsatisfiable core [2024-09-12 16:42:42,960 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:42:42,972 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:42,976 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:42,979 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:42:43,310 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 33 [2024-09-12 16:42:43,316 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:42:43,410 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 6 proven. 21 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-09-12 16:42:43,411 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:42:49,233 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 85 treesize of output 33 [2024-09-12 16:42:49,244 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 29 [2024-09-12 16:43:05,387 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 16:43:05,387 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1693710076] [2024-09-12 16:43:05,387 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-12 16:43:05,387 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [113636227] [2024-09-12 16:43:05,387 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [113636227] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 16:43:05,387 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-12 16:43:05,387 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16] total 16 [2024-09-12 16:43:05,387 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1477027697] [2024-09-12 16:43:05,387 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-12 16:43:05,388 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2024-09-12 16:43:05,388 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 16:43:05,388 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2024-09-12 16:43:05,388 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=67, Invalid=437, Unknown=2, NotChecked=0, Total=506 [2024-09-12 16:43:05,388 INFO L87 Difference]: Start difference. First operand 53 states and 58 transitions. Second operand has 16 states, 13 states have (on average 2.1538461538461537) internal successors, (28), 13 states have internal predecessors, (28), 8 states have call successors, (10), 4 states have call predecessors, (10), 5 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-12 16:43:10,789 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 16:43:10,789 INFO L93 Difference]: Finished difference Result 64 states and 71 transitions. [2024-09-12 16:43:10,789 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-12 16:43:10,789 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 13 states have (on average 2.1538461538461537) internal successors, (28), 13 states have internal predecessors, (28), 8 states have call successors, (10), 4 states have call predecessors, (10), 5 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) Word has length 52 [2024-09-12 16:43:10,790 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 16:43:10,790 INFO L225 Difference]: With dead ends: 64 [2024-09-12 16:43:10,790 INFO L226 Difference]: Without dead ends: 62 [2024-09-12 16:43:10,791 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 68 GetRequests, 43 SyntacticMatches, 0 SemanticMatches, 25 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 91 ImplicationChecksByTransitivity, 26.1s TimeCoverageRelationStatistics Valid=96, Invalid=604, Unknown=2, NotChecked=0, Total=702 [2024-09-12 16:43:10,791 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 26 mSDsluCounter, 100 mSDsCounter, 0 mSdLazyCounter, 376 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 116 SdHoareTripleChecker+Invalid, 393 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 376 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-12 16:43:10,791 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [28 Valid, 116 Invalid, 393 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 376 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-12 16:43:10,792 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2024-09-12 16:43:10,810 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 61. [2024-09-12 16:43:10,810 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 38 states have (on average 1.0526315789473684) internal successors, (40), 39 states have internal predecessors, (40), 12 states have call successors, (12), 10 states have call predecessors, (12), 10 states have return successors, (16), 11 states have call predecessors, (16), 10 states have call successors, (16) [2024-09-12 16:43:10,811 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 68 transitions. [2024-09-12 16:43:10,811 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 68 transitions. Word has length 52 [2024-09-12 16:43:10,811 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 16:43:10,811 INFO L474 AbstractCegarLoop]: Abstraction has 61 states and 68 transitions. [2024-09-12 16:43:10,811 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 13 states have (on average 2.1538461538461537) internal successors, (28), 13 states have internal predecessors, (28), 8 states have call successors, (10), 4 states have call predecessors, (10), 5 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-12 16:43:10,812 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:43:10,815 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 68 transitions. [2024-09-12 16:43:10,816 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2024-09-12 16:43:10,816 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 16:43:10,816 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 16:43:10,830 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2024-09-12 16:43:11,016 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:43:11,016 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 16:43:11,017 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 16:43:11,017 INFO L85 PathProgramCache]: Analyzing trace with hash 680927739, now seen corresponding path program 3 times [2024-09-12 16:43:11,017 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 16:43:11,017 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1092998752] [2024-09-12 16:43:11,017 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 16:43:11,017 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 16:43:11,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-12 16:43:11,088 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [412822482] [2024-09-12 16:43:11,088 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-12 16:43:11,088 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 16:43:11,088 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 16:43:11,092 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 16:43:11,092 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-12 16:43:11,752 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-09-12 16:43:11,753 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 16:43:11,756 INFO L262 TraceCheckSpWp]: Trace formula consists of 508 conjuncts, 166 conjuncts are in the unsatisfiable core [2024-09-12 16:43:11,761 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 16:43:11,780 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-12 16:43:11,945 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 29 [2024-09-12 16:43:12,251 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-12 16:43:12,392 INFO L134 CoverageAnalysis]: Checked inductivity of 77 backedges. 22 proven. 22 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-09-12 16:43:12,392 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 16:43:25,569 WARN L293 SmtUtils]: Spent 5.83s on a formula simplification that was a NOOP. DAG size: 68 (called from [L 279] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.cfg.transitions.TransFormulaUtils.sequentialComposition) [2024-09-12 16:43:46,972 WARN L293 SmtUtils]: Spent 8.24s on a formula simplification that was a NOOP. DAG size: 87 (called from [L 279] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.cfg.transitions.TransFormulaUtils.sequentialComposition) [2024-09-12 16:43:54,231 WARN L293 SmtUtils]: Spent 7.22s on a formula simplification that was a NOOP. DAG size: 65 (called from [L 302] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.cfg.transitions.TransFormulaUtils.sequentialComposition) [2024-09-12 16:44:01,815 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-12 16:44:01,816 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 712 treesize of output 711 [2024-09-12 16:44:12,483 WARN L854 $PredicateComparison]: unable to prove that (let ((.cse3 (select |c_#memory_int#1| c_func_to_recursive_line_27_to_35_0_~y.base))) (let ((.cse0 (select .cse3 c_func_to_recursive_line_27_to_35_0_~y.offset))) (let ((.cse2 (* .cse0 .cse0 .cse0 .cse0 .cse0 6))) (or (and (= |c_func_to_recursive_line_27_to_35_0_#in~x.base| c_func_to_recursive_line_27_to_35_0_~x.base) (= c_func_to_recursive_line_27_to_35_0_~x.offset |c_func_to_recursive_line_27_to_35_0_#in~x.offset|) (let ((.cse1 (select (select (store |c_#memory_int#1| c_func_to_recursive_line_27_to_35_0_~y.base (store .cse3 c_func_to_recursive_line_27_to_35_0_~y.offset (+ .cse0 2))) |c_func_to_recursive_line_27_to_35_0_#in~y.base|) |c_func_to_recursive_line_27_to_35_0_#in~y.offset|))) (= (+ (* 960 .cse0) (* (* .cse0 .cse0 .cse0) 240) (* 900 (* .cse0 .cse0)) 510 .cse1 (* 30 (div (+ (* .cse0 .cse0 .cse0 .cse0 45) (* .cse0 .cse0 .cse0 130) .cse2 (* 119 .cse0)) 30)) (* 30 (* .cse0 .cse0 .cse0 .cse0))) (+ (* 6 (* .cse1 .cse1 .cse1 .cse1 .cse1)) (* (* .cse1 .cse1 .cse1) 10) (* (* .cse1 .cse1 .cse1 .cse1) 15))))) (not (= (mod (+ (* .cse0 .cse0 .cse0 10) .cse2 (* 29 .cse0) (* .cse0 .cse0 .cse0 .cse0 15)) 30) 0)))))) is different from false [2024-09-12 16:44:24,524 WARN L293 SmtUtils]: Spent 8.00s on a formula simplification that was a NOOP. DAG size: 24 (called from [L 731] de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher.simplify) [2024-09-12 16:44:29,555 WARN L876 $PredicateComparison]: unable to prove that (let ((.cse4 (select |c_old(#memory_int#1)| |c_func_to_recursive_line_27_to_35_0_#in~y.base|))) (let ((.cse0 (select .cse4 |c_func_to_recursive_line_27_to_35_0_#in~y.offset|))) (let ((.cse1 (* .cse0 .cse0 .cse0 .cse0 .cse0 6))) (and (or (= (mod (+ (* 29 .cse0) .cse1 (* .cse0 .cse0 .cse0 10) (* .cse0 .cse0 .cse0 .cse0 15)) 30) 0) (forall ((|v_func_to_recursive_line_27_to_35_0_#in~y.base_BEFORE_CALL_19| Int) (|v_func_to_recursive_line_27_to_35_0_#in~x.offset_BEFORE_CALL_16| Int) (|v_func_to_recursive_line_27_to_35_0_#in~y.offset_BEFORE_CALL_19| Int) (|v_func_to_recursive_line_27_to_35_0_#in~x.base_BEFORE_CALL_16| Int)) (let ((.cse2 (select (select |c_#memory_int#1| |v_func_to_recursive_line_27_to_35_0_#in~y.base_BEFORE_CALL_19|) |v_func_to_recursive_line_27_to_35_0_#in~y.offset_BEFORE_CALL_19|))) (= (+ (* (* .cse2 .cse2 .cse2) 10) (* 6 (* .cse2 .cse2 .cse2 .cse2 .cse2)) (* (* .cse2 .cse2 .cse2 .cse2) 15)) (+ (* (select (select |c_#memory_int#2| |v_func_to_recursive_line_27_to_35_0_#in~x.base_BEFORE_CALL_16|) |v_func_to_recursive_line_27_to_35_0_#in~x.offset_BEFORE_CALL_16|) 30) .cse2))))) (forall ((|v_func_to_recursive_line_27_to_35_0_#in~y.base_BEFORE_CALL_19| Int) (|v_func_to_recursive_line_27_to_35_0_#in~y.offset_BEFORE_CALL_19| Int)) (or (not (let ((.cse3 (select (select (store |c_old(#memory_int#1)| |c_func_to_recursive_line_27_to_35_0_#in~y.base| (store .cse4 |c_func_to_recursive_line_27_to_35_0_#in~y.offset| (+ .cse0 2))) |v_func_to_recursive_line_27_to_35_0_#in~y.base_BEFORE_CALL_19|) |v_func_to_recursive_line_27_to_35_0_#in~y.offset_BEFORE_CALL_19|))) (= (+ (* (* .cse3 .cse3 .cse3) 10) (* (* .cse3 .cse3 .cse3 .cse3) 15) (* 6 (* .cse3 .cse3 .cse3 .cse3 .cse3))) (+ (* 900 (* .cse0 .cse0)) .cse3 (* (* .cse0 .cse0 .cse0) 240) (* 30 (div (+ (* .cse0 .cse0 .cse0 .cse0 45) .cse1 (* 119 .cse0) (* .cse0 .cse0 .cse0 130)) 30)) (* 960 .cse0) 510 (* 30 (* .cse0 .cse0 .cse0 .cse0)))))) (let ((.cse5 (select (select |c_#memory_int#1| |v_func_to_recursive_line_27_to_35_0_#in~y.base_BEFORE_CALL_19|) |v_func_to_recursive_line_27_to_35_0_#in~y.offset_BEFORE_CALL_19|))) (= (+ .cse5 (* (select (select |c_#memory_int#2| |c_func_to_recursive_line_27_to_35_0_#in~x.base|) |c_func_to_recursive_line_27_to_35_0_#in~x.offset|) 30)) (+ (* (* .cse5 .cse5 .cse5) 10) (* 6 (* .cse5 .cse5 .cse5 .cse5 .cse5)) (* (* .cse5 .cse5 .cse5 .cse5) 15)))))))))) is different from true [2024-09-12 16:44:44,410 WARN L293 SmtUtils]: Spent 10.84s on a formula simplification that was a NOOP. DAG size: 24 (called from [L 731] de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher.simplify) [2024-09-12 16:44:53,135 WARN L293 SmtUtils]: Spent 8.07s on a formula simplification that was a NOOP. DAG size: 87 (called from [L 279] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.cfg.transitions.TransFormulaUtils.sequentialComposition) [2024-09-12 16:45:09,490 WARN L293 SmtUtils]: Spent 12.22s on a formula simplification that was a NOOP. DAG size: 65 (called from [L 302] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.cfg.transitions.TransFormulaUtils.sequentialComposition)