./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursive/Ackermann03.c --full-output --witness-type correctness_witness --validate ../results/automizer-verification-files/SV-COMP24_unreach-call/Ackermann03.yml/witness-2.1.yml --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 5189fb62 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReachWitnessValidation.xml -i ../sv-benchmarks/c/recursive/Ackermann03.c ../results/automizer-verification-files/SV-COMP24_unreach-call/Ackermann03.yml/witness-2.1.yml -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --traceabstraction.positions.where.we.compute.the.hoare.annotation None --- Real Ultimate output --- This is Ultimate 0.2.4-dev-5189fb6-m [2024-09-13 06:24:46,655 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-13 06:24:46,715 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-13 06:24:46,718 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-13 06:24:46,718 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-13 06:24:46,757 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-13 06:24:46,757 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-13 06:24:46,758 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-13 06:24:46,758 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-13 06:24:46,770 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-13 06:24:46,770 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-13 06:24:46,771 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-13 06:24:46,771 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-13 06:24:46,771 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-13 06:24:46,772 INFO L153 SettingsManager]: * Use SBE=true [2024-09-13 06:24:46,772 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-13 06:24:46,772 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-13 06:24:46,772 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-13 06:24:46,773 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-13 06:24:46,773 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-13 06:24:46,773 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-13 06:24:46,773 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-13 06:24:46,774 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-13 06:24:46,774 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-13 06:24:46,774 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-13 06:24:46,774 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-13 06:24:46,775 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-13 06:24:46,775 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-13 06:24:46,775 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-13 06:24:46,775 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-13 06:24:46,775 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-13 06:24:46,776 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-13 06:24:46,776 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-13 06:24:46,776 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-13 06:24:46,776 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-13 06:24:46,777 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-13 06:24:46,777 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-13 06:24:46,777 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-13 06:24:46,777 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-13 06:24:46,777 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-13 06:24:46,778 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-13 06:24:46,778 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-13 06:24:46,778 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> None [2024-09-13 06:24:47,018 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-13 06:24:47,040 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-13 06:24:47,042 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-13 06:24:47,044 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-13 06:24:47,044 INFO L274 PluginConnector]: CDTParser initialized [2024-09-13 06:24:47,045 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursive/Ackermann03.c [2024-09-13 06:24:48,337 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-13 06:24:48,505 INFO L384 CDTParser]: Found 1 translation units. [2024-09-13 06:24:48,506 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursive/Ackermann03.c [2024-09-13 06:24:48,513 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/9a3694358/50de291200674a659c5567513634bfd2/FLAG458d2416c [2024-09-13 06:24:48,525 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/9a3694358/50de291200674a659c5567513634bfd2 [2024-09-13 06:24:48,528 INFO L270 PluginConnector]: Initializing Witness Parser... [2024-09-13 06:24:48,529 INFO L274 PluginConnector]: Witness Parser initialized [2024-09-13 06:24:48,530 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../results/automizer-verification-files/SV-COMP24_unreach-call/Ackermann03.yml/witness-2.1.yml [2024-09-13 06:24:48,569 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-13 06:24:48,570 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2024-09-13 06:24:48,571 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-13 06:24:48,571 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-13 06:24:48,575 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-13 06:24:48,576 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.09 06:24:48" (1/2) ... [2024-09-13 06:24:48,577 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4557789d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 06:24:48, skipping insertion in model container [2024-09-13 06:24:48,577 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.09 06:24:48" (1/2) ... [2024-09-13 06:24:48,578 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.CACSL2BoogieTranslatorObserver@c6f09e3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 06:24:48, skipping insertion in model container [2024-09-13 06:24:48,578 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 13.09 06:24:48" (2/2) ... [2024-09-13 06:24:48,579 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4557789d and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48, skipping insertion in model container [2024-09-13 06:24:48,579 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 13.09 06:24:48" (2/2) ... [2024-09-13 06:24:48,583 INFO L93 nessWitnessExtractor]: Found the following entries in the witness: [2024-09-13 06:24:48,584 INFO L1541 ArrayList]: Function contract at [L16]: requires null, ensures (((((((((((((((((\result == 5) && (\old(n) == 3)) || (((\result == 3) && (\old(n) == 1)) && (\old(m) == 1))) || (\old(m) == 0)) || (((2 <= \old(m)) && (3 <= \old(n))) && (5 <= \result))) || (((\old(n) == 0) && (\result == 2)) && (\old(m) == 1))) || (((2 <= \old(m)) && (2 <= \old(n))) && (\result == 7))) || ((\result == 5) && (\old(n) == 1))) || (((\result == 7) && (5 <= \old(n))) && (\old(m) == 1))) || (((\old(n) == 0) && (2 <= \old(m))) && (\result == 3))) || ((\result == 6) && (\old(n) == 4))) || (((5 <= \result) && (6 <= \old(n))) && (\old(m) == 1))) || (((\result == 4) && (\old(n) == 2)) && (\old(m) == 1))) || ((3 <= \old(m)) && (3 <= \result))) && ((0 < \old(m)) || (\result == ((long long) \old(n) + 1)))) && (((((\result == 3) && (\old(m) == 1)) || (1 < \old(m))) || (\result == 2)) || (\old(n) != 1))) && (((\old(m) == 0) || (\old(n) == 0)) || (0 < \old(n)))) [2024-09-13 06:24:48,602 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-13 06:24:48,769 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursive/Ackermann03.c[1168,1181] [2024-09-13 06:24:48,773 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-13 06:24:48,785 INFO L200 MainTranslator]: Completed pre-run Start Parsing Global [2024-09-13 06:24:48,848 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursive/Ackermann03.c[1168,1181] [2024-09-13 06:24:48,851 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-13 06:24:48,872 INFO L204 MainTranslator]: Completed translation [2024-09-13 06:24:48,874 INFO L201 PluginConnector]: Adding new model witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48 WrapperNode [2024-09-13 06:24:48,874 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-13 06:24:48,875 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-13 06:24:48,875 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-13 06:24:48,876 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-13 06:24:48,885 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,891 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,910 INFO L138 Inliner]: procedures = 13, calls = 11, calls flagged for inlining = 2, calls inlined = 2, statements flattened = 33 [2024-09-13 06:24:48,911 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-13 06:24:48,912 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-13 06:24:48,912 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-13 06:24:48,912 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-13 06:24:48,922 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,923 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,925 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,939 WARN L109 MemorySlicer]: Omit memory slicing because it failed with the following exception: Unsupported: Procedure ackermann is not part of the Ultimate memory model but has specification other that is not a ModifiesSpecification [2024-09-13 06:24:48,940 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,940 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,944 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,946 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,946 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,947 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,961 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-13 06:24:48,963 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-13 06:24:48,964 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-13 06:24:48,964 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-13 06:24:48,965 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (1/1) ... [2024-09-13 06:24:48,971 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-13 06:24:48,977 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:24:48,992 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-13 06:24:48,997 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-13 06:24:49,038 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-13 06:24:49,040 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-13 06:24:49,040 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-13 06:24:49,040 INFO L130 BoogieDeclarations]: Found specification of procedure ackermann [2024-09-13 06:24:49,040 INFO L138 BoogieDeclarations]: Found implementation of procedure ackermann [2024-09-13 06:24:49,040 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2024-09-13 06:24:49,106 INFO L242 CfgBuilder]: Building ICFG [2024-09-13 06:24:49,108 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-13 06:24:49,282 INFO L? ?]: Removed 18 outVars from TransFormulas that were not future-live. [2024-09-13 06:24:49,282 INFO L291 CfgBuilder]: Performing block encoding [2024-09-13 06:24:49,299 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-13 06:24:49,299 INFO L318 CfgBuilder]: Removed 0 assume(true) statements. [2024-09-13 06:24:49,300 INFO L201 PluginConnector]: Adding new model witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.09 06:24:49 BoogieIcfgContainer [2024-09-13 06:24:49,300 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-13 06:24:49,302 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-13 06:24:49,303 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-13 06:24:49,307 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-13 06:24:49,307 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.09 06:24:48" (1/4) ... [2024-09-13 06:24:49,308 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@854ed76 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.09 06:24:49, skipping insertion in model container [2024-09-13 06:24:49,309 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 13.09 06:24:48" (2/4) ... [2024-09-13 06:24:49,310 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@854ed76 and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CORRECTNESS_WITNESS 13.09 06:24:49, skipping insertion in model container [2024-09-13 06:24:49,310 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 06:24:48" (3/4) ... [2024-09-13 06:24:49,310 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@854ed76 and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CORRECTNESS_WITNESS 13.09 06:24:49, skipping insertion in model container [2024-09-13 06:24:49,311 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.09 06:24:49" (4/4) ... [2024-09-13 06:24:49,312 INFO L112 eAbstractionObserver]: Analyzing ICFG Ackermann03.c [2024-09-13 06:24:49,328 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:None NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-13 06:24:49,329 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 2 error locations. [2024-09-13 06:24:49,369 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-13 06:24:49,376 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=None, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@182513be, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-13 06:24:49,376 INFO L337 AbstractCegarLoop]: Starting to check reachability of 2 error locations. [2024-09-13 06:24:49,380 INFO L276 IsEmpty]: Start isEmpty. Operand has 22 states, 14 states have (on average 1.5) internal successors, (21), 16 states have internal predecessors, (21), 4 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-13 06:24:49,386 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 8 [2024-09-13 06:24:49,386 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:49,387 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:49,388 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:49,392 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:49,393 INFO L85 PathProgramCache]: Analyzing trace with hash -26348941, now seen corresponding path program 1 times [2024-09-13 06:24:49,401 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:49,402 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1029917481] [2024-09-13 06:24:49,402 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:49,403 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:49,507 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:49,874 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:49,874 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:49,874 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1029917481] [2024-09-13 06:24:49,875 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1029917481] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 06:24:49,875 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 06:24:49,875 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 06:24:49,878 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [358777736] [2024-09-13 06:24:49,878 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 06:24:49,889 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-13 06:24:49,890 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:49,922 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-13 06:24:49,923 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-13 06:24:49,926 INFO L87 Difference]: Start difference. First operand has 22 states, 14 states have (on average 1.5) internal successors, (21), 16 states have internal predecessors, (21), 4 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) Second operand has 6 states, 5 states have (on average 1.2) internal successors, (6), 5 states have internal predecessors, (6), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:24:50,101 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:50,101 INFO L93 Difference]: Finished difference Result 39 states and 50 transitions. [2024-09-13 06:24:50,102 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-13 06:24:50,104 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 1.2) internal successors, (6), 5 states have internal predecessors, (6), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 7 [2024-09-13 06:24:50,104 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:50,110 INFO L225 Difference]: With dead ends: 39 [2024-09-13 06:24:50,111 INFO L226 Difference]: Without dead ends: 36 [2024-09-13 06:24:50,113 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-13 06:24:50,117 INFO L434 NwaCegarLoop]: 14 mSDtfsCounter, 12 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 104 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 105 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 104 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:50,118 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 49 Invalid, 105 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 104 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 06:24:50,134 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 36 states. [2024-09-13 06:24:50,149 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 36 to 30. [2024-09-13 06:24:50,150 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 30 states, 20 states have (on average 1.3) internal successors, (26), 21 states have internal predecessors, (26), 6 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-13 06:24:50,151 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 30 states to 30 states and 39 transitions. [2024-09-13 06:24:50,152 INFO L78 Accepts]: Start accepts. Automaton has 30 states and 39 transitions. Word has length 7 [2024-09-13 06:24:50,153 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:50,153 INFO L474 AbstractCegarLoop]: Abstraction has 30 states and 39 transitions. [2024-09-13 06:24:50,153 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 1.2) internal successors, (6), 5 states have internal predecessors, (6), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:24:50,153 INFO L276 IsEmpty]: Start isEmpty. Operand 30 states and 39 transitions. [2024-09-13 06:24:50,154 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2024-09-13 06:24:50,155 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:50,155 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:50,155 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-13 06:24:50,155 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:50,156 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:50,157 INFO L85 PathProgramCache]: Analyzing trace with hash 1506041859, now seen corresponding path program 1 times [2024-09-13 06:24:50,158 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:50,158 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1250511433] [2024-09-13 06:24:50,158 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:50,158 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:50,174 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:50,381 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:50,382 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:50,382 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1250511433] [2024-09-13 06:24:50,383 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1250511433] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 06:24:50,383 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 06:24:50,383 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-09-13 06:24:50,384 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [853315673] [2024-09-13 06:24:50,384 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 06:24:50,385 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 06:24:50,386 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:50,387 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 06:24:50,388 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-13 06:24:50,388 INFO L87 Difference]: Start difference. First operand 30 states and 39 transitions. Second operand has 5 states, 4 states have (on average 2.25) internal successors, (9), 4 states have internal predecessors, (9), 1 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:24:50,450 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:50,450 INFO L93 Difference]: Finished difference Result 42 states and 53 transitions. [2024-09-13 06:24:50,451 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 06:24:50,451 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 2.25) internal successors, (9), 4 states have internal predecessors, (9), 1 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 11 [2024-09-13 06:24:50,451 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:50,452 INFO L225 Difference]: With dead ends: 42 [2024-09-13 06:24:50,452 INFO L226 Difference]: Without dead ends: 42 [2024-09-13 06:24:50,452 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-13 06:24:50,453 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 13 mSDsluCounter, 28 mSDsCounter, 0 mSdLazyCounter, 47 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 56 SdHoareTripleChecker+Invalid, 50 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 47 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:50,453 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 56 Invalid, 50 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 47 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 06:24:50,454 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 42 states. [2024-09-13 06:24:50,460 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 42 to 40. [2024-09-13 06:24:50,461 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 40 states, 27 states have (on average 1.2962962962962963) internal successors, (35), 28 states have internal predecessors, (35), 8 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (9), 8 states have call predecessors, (9), 8 states have call successors, (9) [2024-09-13 06:24:50,464 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 40 states to 40 states and 52 transitions. [2024-09-13 06:24:50,464 INFO L78 Accepts]: Start accepts. Automaton has 40 states and 52 transitions. Word has length 11 [2024-09-13 06:24:50,465 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:50,465 INFO L474 AbstractCegarLoop]: Abstraction has 40 states and 52 transitions. [2024-09-13 06:24:50,465 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 2.25) internal successors, (9), 4 states have internal predecessors, (9), 1 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:24:50,465 INFO L276 IsEmpty]: Start isEmpty. Operand 40 states and 52 transitions. [2024-09-13 06:24:50,466 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2024-09-13 06:24:50,466 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:50,466 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:50,466 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-13 06:24:50,467 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:50,467 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:50,467 INFO L85 PathProgramCache]: Analyzing trace with hash 1508872004, now seen corresponding path program 1 times [2024-09-13 06:24:50,467 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:50,468 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1891273057] [2024-09-13 06:24:50,468 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:50,468 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:50,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:50,515 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:50,516 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:50,516 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1891273057] [2024-09-13 06:24:50,517 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1891273057] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 06:24:50,517 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 06:24:50,517 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-09-13 06:24:50,517 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1154715958] [2024-09-13 06:24:50,518 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 06:24:50,518 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-13 06:24:50,518 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:50,520 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-13 06:24:50,520 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-13 06:24:50,521 INFO L87 Difference]: Start difference. First operand 40 states and 52 transitions. Second operand has 4 states, 4 states have (on average 2.25) internal successors, (9), 3 states have internal predecessors, (9), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:24:50,572 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:50,573 INFO L93 Difference]: Finished difference Result 57 states and 76 transitions. [2024-09-13 06:24:50,573 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 06:24:50,574 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 2.25) internal successors, (9), 3 states have internal predecessors, (9), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 11 [2024-09-13 06:24:50,574 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:50,574 INFO L225 Difference]: With dead ends: 57 [2024-09-13 06:24:50,575 INFO L226 Difference]: Without dead ends: 57 [2024-09-13 06:24:50,575 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-13 06:24:50,576 INFO L434 NwaCegarLoop]: 38 mSDtfsCounter, 15 mSDsluCounter, 31 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 69 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:50,576 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 69 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 06:24:50,577 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2024-09-13 06:24:50,587 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 53. [2024-09-13 06:24:50,588 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 35 states have (on average 1.3142857142857143) internal successors, (46), 37 states have internal predecessors, (46), 11 states have call successors, (11), 4 states have call predecessors, (11), 5 states have return successors, (16), 11 states have call predecessors, (16), 11 states have call successors, (16) [2024-09-13 06:24:50,589 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 73 transitions. [2024-09-13 06:24:50,590 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 73 transitions. Word has length 11 [2024-09-13 06:24:50,590 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:50,590 INFO L474 AbstractCegarLoop]: Abstraction has 53 states and 73 transitions. [2024-09-13 06:24:50,591 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 2.25) internal successors, (9), 3 states have internal predecessors, (9), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:24:50,591 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 73 transitions. [2024-09-13 06:24:50,591 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2024-09-13 06:24:50,591 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:50,592 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:50,592 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-09-13 06:24:50,592 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:50,592 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:50,593 INFO L85 PathProgramCache]: Analyzing trace with hash 1484759222, now seen corresponding path program 1 times [2024-09-13 06:24:50,593 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:50,593 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [178065885] [2024-09-13 06:24:50,593 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:50,594 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:50,604 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:50,629 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:50,632 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:50,663 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:50,663 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:50,664 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [178065885] [2024-09-13 06:24:50,664 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [178065885] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 06:24:50,664 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 06:24:50,664 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 06:24:50,664 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1979261375] [2024-09-13 06:24:50,665 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 06:24:50,665 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 06:24:50,665 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:50,666 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 06:24:50,666 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2024-09-13 06:24:50,666 INFO L87 Difference]: Start difference. First operand 53 states and 73 transitions. Second operand has 5 states, 5 states have (on average 1.8) internal successors, (9), 5 states have internal predecessors, (9), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 06:24:50,711 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:50,711 INFO L93 Difference]: Finished difference Result 58 states and 77 transitions. [2024-09-13 06:24:50,712 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 06:24:50,712 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 1.8) internal successors, (9), 5 states have internal predecessors, (9), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 11 [2024-09-13 06:24:50,712 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:50,713 INFO L225 Difference]: With dead ends: 58 [2024-09-13 06:24:50,714 INFO L226 Difference]: Without dead ends: 54 [2024-09-13 06:24:50,714 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2024-09-13 06:24:50,715 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 9 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 44 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 40 SdHoareTripleChecker+Invalid, 44 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 44 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:50,715 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 40 Invalid, 44 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 44 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 06:24:50,716 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 54 states. [2024-09-13 06:24:50,720 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 54 to 52. [2024-09-13 06:24:50,721 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 34 states have (on average 1.2941176470588236) internal successors, (44), 36 states have internal predecessors, (44), 11 states have call successors, (11), 4 states have call predecessors, (11), 5 states have return successors, (16), 11 states have call predecessors, (16), 11 states have call successors, (16) [2024-09-13 06:24:50,722 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 71 transitions. [2024-09-13 06:24:50,722 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 71 transitions. Word has length 11 [2024-09-13 06:24:50,722 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:50,722 INFO L474 AbstractCegarLoop]: Abstraction has 52 states and 71 transitions. [2024-09-13 06:24:50,722 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 1.8) internal successors, (9), 5 states have internal predecessors, (9), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 06:24:50,723 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 71 transitions. [2024-09-13 06:24:50,723 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 15 [2024-09-13 06:24:50,723 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:50,723 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:50,723 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-09-13 06:24:50,724 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:50,724 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:50,724 INFO L85 PathProgramCache]: Analyzing trace with hash 1264662995, now seen corresponding path program 1 times [2024-09-13 06:24:50,724 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:50,724 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [359740690] [2024-09-13 06:24:50,725 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:50,725 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:50,736 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:51,057 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-13 06:24:51,061 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:51,143 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:51,143 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:51,143 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [359740690] [2024-09-13 06:24:51,144 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [359740690] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:24:51,144 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [798254308] [2024-09-13 06:24:51,144 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:51,144 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:51,144 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:24:51,148 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:24:51,152 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-13 06:24:51,193 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:51,199 INFO L262 TraceCheckSpWp]: Trace formula consists of 67 conjuncts, 23 conjuncts are in the unsatisfiable core [2024-09-13 06:24:51,207 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:24:51,331 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:51,332 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:24:52,402 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 06:24:52,403 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [798254308] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:24:52,403 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:24:52,403 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 9] total 20 [2024-09-13 06:24:52,404 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1114483635] [2024-09-13 06:24:52,404 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:24:52,406 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-13 06:24:52,406 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:52,407 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-13 06:24:52,407 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=83, Invalid=337, Unknown=0, NotChecked=0, Total=420 [2024-09-13 06:24:52,407 INFO L87 Difference]: Start difference. First operand 52 states and 71 transitions. Second operand has 21 states, 15 states have (on average 1.6666666666666667) internal successors, (25), 18 states have internal predecessors, (25), 4 states have call successors, (4), 2 states have call predecessors, (4), 3 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-13 06:24:52,988 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:52,989 INFO L93 Difference]: Finished difference Result 76 states and 118 transitions. [2024-09-13 06:24:52,989 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2024-09-13 06:24:52,989 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 15 states have (on average 1.6666666666666667) internal successors, (25), 18 states have internal predecessors, (25), 4 states have call successors, (4), 2 states have call predecessors, (4), 3 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 14 [2024-09-13 06:24:52,990 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:52,991 INFO L225 Difference]: With dead ends: 76 [2024-09-13 06:24:52,991 INFO L226 Difference]: Without dead ends: 76 [2024-09-13 06:24:52,991 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 46 GetRequests, 15 SyntacticMatches, 3 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 167 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=189, Invalid=681, Unknown=0, NotChecked=0, Total=870 [2024-09-13 06:24:52,992 INFO L434 NwaCegarLoop]: 11 mSDtfsCounter, 50 mSDsluCounter, 74 mSDsCounter, 0 mSdLazyCounter, 354 mSolverCounterSat, 52 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 85 SdHoareTripleChecker+Invalid, 406 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 52 IncrementalHoareTripleChecker+Valid, 354 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:52,992 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [58 Valid, 85 Invalid, 406 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [52 Valid, 354 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-13 06:24:52,993 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2024-09-13 06:24:52,999 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 54. [2024-09-13 06:24:52,999 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 54 states, 36 states have (on average 1.25) internal successors, (45), 38 states have internal predecessors, (45), 11 states have call successors, (11), 4 states have call predecessors, (11), 5 states have return successors, (16), 11 states have call predecessors, (16), 11 states have call successors, (16) [2024-09-13 06:24:53,000 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 54 states to 54 states and 72 transitions. [2024-09-13 06:24:53,000 INFO L78 Accepts]: Start accepts. Automaton has 54 states and 72 transitions. Word has length 14 [2024-09-13 06:24:53,000 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:53,000 INFO L474 AbstractCegarLoop]: Abstraction has 54 states and 72 transitions. [2024-09-13 06:24:53,000 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 15 states have (on average 1.6666666666666667) internal successors, (25), 18 states have internal predecessors, (25), 4 states have call successors, (4), 2 states have call predecessors, (4), 3 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-13 06:24:53,001 INFO L276 IsEmpty]: Start isEmpty. Operand 54 states and 72 transitions. [2024-09-13 06:24:53,001 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-13 06:24:53,001 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:53,001 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:53,018 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-13 06:24:53,205 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:53,206 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:53,206 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:53,206 INFO L85 PathProgramCache]: Analyzing trace with hash -507496426, now seen corresponding path program 1 times [2024-09-13 06:24:53,207 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:53,207 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1757068295] [2024-09-13 06:24:53,207 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:53,207 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:53,219 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:53,247 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:53,251 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:53,274 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:53,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:53,280 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 06:24:53,280 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:53,280 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1757068295] [2024-09-13 06:24:53,280 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1757068295] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:24:53,281 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [156140003] [2024-09-13 06:24:53,281 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:53,281 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:53,281 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:24:53,283 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:24:53,285 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-13 06:24:53,331 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:53,332 INFO L262 TraceCheckSpWp]: Trace formula consists of 82 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-09-13 06:24:53,333 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:24:53,396 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 06:24:53,396 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:24:53,479 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 06:24:53,481 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [156140003] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:24:53,482 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:24:53,482 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 10 [2024-09-13 06:24:53,482 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [819785816] [2024-09-13 06:24:53,482 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:24:53,482 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2024-09-13 06:24:53,482 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:53,483 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2024-09-13 06:24:53,484 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=63, Unknown=0, NotChecked=0, Total=90 [2024-09-13 06:24:53,485 INFO L87 Difference]: Start difference. First operand 54 states and 72 transitions. Second operand has 10 states, 10 states have (on average 2.6) internal successors, (26), 10 states have internal predecessors, (26), 4 states have call successors, (4), 1 states have call predecessors, (4), 4 states have return successors, (6), 5 states have call predecessors, (6), 4 states have call successors, (6) [2024-09-13 06:24:53,619 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:53,621 INFO L93 Difference]: Finished difference Result 77 states and 120 transitions. [2024-09-13 06:24:53,622 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-13 06:24:53,622 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 2.6) internal successors, (26), 10 states have internal predecessors, (26), 4 states have call successors, (4), 1 states have call predecessors, (4), 4 states have return successors, (6), 5 states have call predecessors, (6), 4 states have call successors, (6) Word has length 18 [2024-09-13 06:24:53,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:53,623 INFO L225 Difference]: With dead ends: 77 [2024-09-13 06:24:53,623 INFO L226 Difference]: Without dead ends: 72 [2024-09-13 06:24:53,624 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 46 GetRequests, 36 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2024-09-13 06:24:53,626 INFO L434 NwaCegarLoop]: 17 mSDtfsCounter, 33 mSDsluCounter, 37 mSDsCounter, 0 mSdLazyCounter, 121 mSolverCounterSat, 32 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 54 SdHoareTripleChecker+Invalid, 153 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 121 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:53,626 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 54 Invalid, 153 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 121 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 06:24:53,629 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 72 states. [2024-09-13 06:24:53,638 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 72 to 57. [2024-09-13 06:24:53,639 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 38 states have (on average 1.236842105263158) internal successors, (47), 39 states have internal predecessors, (47), 12 states have call successors, (12), 4 states have call predecessors, (12), 5 states have return successors, (16), 13 states have call predecessors, (16), 12 states have call successors, (16) [2024-09-13 06:24:53,643 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 75 transitions. [2024-09-13 06:24:53,643 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 75 transitions. Word has length 18 [2024-09-13 06:24:53,644 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:53,644 INFO L474 AbstractCegarLoop]: Abstraction has 57 states and 75 transitions. [2024-09-13 06:24:53,644 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 2.6) internal successors, (26), 10 states have internal predecessors, (26), 4 states have call successors, (4), 1 states have call predecessors, (4), 4 states have return successors, (6), 5 states have call predecessors, (6), 4 states have call successors, (6) [2024-09-13 06:24:53,644 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 75 transitions. [2024-09-13 06:24:53,645 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-13 06:24:53,645 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:53,645 INFO L216 NwaCegarLoop]: trace histogram [5, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:53,663 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-13 06:24:53,845 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2024-09-13 06:24:53,846 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:53,846 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:53,847 INFO L85 PathProgramCache]: Analyzing trace with hash 1491759416, now seen corresponding path program 1 times [2024-09-13 06:24:53,847 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:53,847 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1734877686] [2024-09-13 06:24:53,847 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:53,847 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:53,858 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:54,181 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-13 06:24:54,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:54,254 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:54,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:54,329 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2024-09-13 06:24:54,332 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:54,371 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 8 proven. 17 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-13 06:24:54,372 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:54,372 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1734877686] [2024-09-13 06:24:54,372 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1734877686] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:24:54,372 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1322912163] [2024-09-13 06:24:54,373 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:54,373 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:54,373 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:24:54,374 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:24:54,376 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-13 06:24:54,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:54,432 INFO L262 TraceCheckSpWp]: Trace formula consists of 124 conjuncts, 37 conjuncts are in the unsatisfiable core [2024-09-13 06:24:54,434 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:24:54,592 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 9 proven. 18 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-13 06:24:54,592 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:24:56,225 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 8 proven. 19 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-13 06:24:56,226 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1322912163] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:24:56,226 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:24:56,226 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 13, 13] total 24 [2024-09-13 06:24:56,226 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2047603745] [2024-09-13 06:24:56,226 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:24:56,226 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-13 06:24:56,226 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:56,227 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-13 06:24:56,227 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=87, Invalid=513, Unknown=0, NotChecked=0, Total=600 [2024-09-13 06:24:56,227 INFO L87 Difference]: Start difference. First operand 57 states and 75 transitions. Second operand has 25 states, 23 states have (on average 1.826086956521739) internal successors, (42), 21 states have internal predecessors, (42), 8 states have call successors, (9), 2 states have call predecessors, (9), 5 states have return successors, (8), 5 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-13 06:24:57,959 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:57,959 INFO L93 Difference]: Finished difference Result 133 states and 232 transitions. [2024-09-13 06:24:57,961 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 31 states. [2024-09-13 06:24:57,961 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 23 states have (on average 1.826086956521739) internal successors, (42), 21 states have internal predecessors, (42), 8 states have call successors, (9), 2 states have call predecessors, (9), 5 states have return successors, (8), 5 states have call predecessors, (8), 7 states have call successors, (8) Word has length 31 [2024-09-13 06:24:57,962 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:57,963 INFO L225 Difference]: With dead ends: 133 [2024-09-13 06:24:57,963 INFO L226 Difference]: Without dead ends: 129 [2024-09-13 06:24:57,964 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 107 GetRequests, 57 SyntacticMatches, 1 SemanticMatches, 49 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 636 ImplicationChecksByTransitivity, 1.7s TimeCoverageRelationStatistics Valid=433, Invalid=2117, Unknown=0, NotChecked=0, Total=2550 [2024-09-13 06:24:57,964 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 128 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 692 mSolverCounterSat, 188 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 136 SdHoareTripleChecker+Valid, 85 SdHoareTripleChecker+Invalid, 880 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 188 IncrementalHoareTripleChecker+Valid, 692 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:57,965 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [136 Valid, 85 Invalid, 880 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [188 Valid, 692 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-13 06:24:57,965 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 129 states. [2024-09-13 06:24:57,980 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 129 to 102. [2024-09-13 06:24:57,980 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 68 states have (on average 1.161764705882353) internal successors, (79), 66 states have internal predecessors, (79), 19 states have call successors, (19), 6 states have call predecessors, (19), 13 states have return successors, (61), 29 states have call predecessors, (61), 19 states have call successors, (61) [2024-09-13 06:24:57,981 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 159 transitions. [2024-09-13 06:24:57,982 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 159 transitions. Word has length 31 [2024-09-13 06:24:57,982 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:57,982 INFO L474 AbstractCegarLoop]: Abstraction has 102 states and 159 transitions. [2024-09-13 06:24:57,982 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 23 states have (on average 1.826086956521739) internal successors, (42), 21 states have internal predecessors, (42), 8 states have call successors, (9), 2 states have call predecessors, (9), 5 states have return successors, (8), 5 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-13 06:24:57,982 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 159 transitions. [2024-09-13 06:24:57,984 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-09-13 06:24:57,987 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:57,987 INFO L216 NwaCegarLoop]: trace histogram [10, 7, 6, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1] [2024-09-13 06:24:58,004 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-09-13 06:24:58,188 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-13 06:24:58,188 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:58,189 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:58,189 INFO L85 PathProgramCache]: Analyzing trace with hash 1840574351, now seen corresponding path program 2 times [2024-09-13 06:24:58,189 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:58,189 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1279915307] [2024-09-13 06:24:58,189 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:58,189 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:58,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,387 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-09-13 06:24:58,398 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,447 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:58,455 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,519 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:58,527 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,554 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:58,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,582 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:24:58,585 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,589 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2024-09-13 06:24:58,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:58,606 INFO L134 CoverageAnalysis]: Checked inductivity of 160 backedges. 56 proven. 28 refuted. 0 times theorem prover too weak. 76 trivial. 0 not checked. [2024-09-13 06:24:58,607 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:58,607 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1279915307] [2024-09-13 06:24:58,607 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1279915307] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:24:58,607 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [26321829] [2024-09-13 06:24:58,607 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-13 06:24:58,607 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:58,608 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:24:58,609 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:24:58,616 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-13 06:24:58,674 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-13 06:24:58,674 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:24:58,676 INFO L262 TraceCheckSpWp]: Trace formula consists of 215 conjuncts, 9 conjuncts are in the unsatisfiable core [2024-09-13 06:24:58,678 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:24:58,760 INFO L134 CoverageAnalysis]: Checked inductivity of 160 backedges. 69 proven. 49 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-13 06:24:58,760 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:24:58,876 INFO L134 CoverageAnalysis]: Checked inductivity of 160 backedges. 42 proven. 58 refuted. 0 times theorem prover too weak. 60 trivial. 0 not checked. [2024-09-13 06:24:58,877 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [26321829] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:24:58,877 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:24:58,877 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 10, 10] total 19 [2024-09-13 06:24:58,877 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1861824558] [2024-09-13 06:24:58,878 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:24:58,878 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-13 06:24:58,878 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:24:58,879 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-13 06:24:58,879 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=53, Invalid=289, Unknown=0, NotChecked=0, Total=342 [2024-09-13 06:24:58,880 INFO L87 Difference]: Start difference. First operand 102 states and 159 transitions. Second operand has 19 states, 19 states have (on average 2.736842105263158) internal successors, (52), 15 states have internal predecessors, (52), 10 states have call successors, (18), 6 states have call predecessors, (18), 6 states have return successors, (14), 6 states have call predecessors, (14), 8 states have call successors, (14) [2024-09-13 06:24:59,322 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:24:59,322 INFO L93 Difference]: Finished difference Result 152 states and 275 transitions. [2024-09-13 06:24:59,322 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-09-13 06:24:59,322 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 2.736842105263158) internal successors, (52), 15 states have internal predecessors, (52), 10 states have call successors, (18), 6 states have call predecessors, (18), 6 states have return successors, (14), 6 states have call predecessors, (14), 8 states have call successors, (14) Word has length 59 [2024-09-13 06:24:59,323 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:24:59,324 INFO L225 Difference]: With dead ends: 152 [2024-09-13 06:24:59,324 INFO L226 Difference]: Without dead ends: 147 [2024-09-13 06:24:59,324 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 157 GetRequests, 117 SyntacticMatches, 5 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 253 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=280, Invalid=1052, Unknown=0, NotChecked=0, Total=1332 [2024-09-13 06:24:59,325 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 92 mSDsluCounter, 105 mSDsCounter, 0 mSdLazyCounter, 536 mSolverCounterSat, 70 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 92 SdHoareTripleChecker+Valid, 133 SdHoareTripleChecker+Invalid, 606 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 70 IncrementalHoareTripleChecker+Valid, 536 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-13 06:24:59,325 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [92 Valid, 133 Invalid, 606 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [70 Valid, 536 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-13 06:24:59,325 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 147 states. [2024-09-13 06:24:59,342 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 147 to 120. [2024-09-13 06:24:59,346 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 120 states, 81 states have (on average 1.1358024691358024) internal successors, (92), 76 states have internal predecessors, (92), 22 states have call successors, (22), 7 states have call predecessors, (22), 15 states have return successors, (65), 36 states have call predecessors, (65), 22 states have call successors, (65) [2024-09-13 06:24:59,347 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 120 states to 120 states and 179 transitions. [2024-09-13 06:24:59,347 INFO L78 Accepts]: Start accepts. Automaton has 120 states and 179 transitions. Word has length 59 [2024-09-13 06:24:59,347 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:24:59,348 INFO L474 AbstractCegarLoop]: Abstraction has 120 states and 179 transitions. [2024-09-13 06:24:59,348 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 2.736842105263158) internal successors, (52), 15 states have internal predecessors, (52), 10 states have call successors, (18), 6 states have call predecessors, (18), 6 states have return successors, (14), 6 states have call predecessors, (14), 8 states have call successors, (14) [2024-09-13 06:24:59,348 INFO L276 IsEmpty]: Start isEmpty. Operand 120 states and 179 transitions. [2024-09-13 06:24:59,350 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-09-13 06:24:59,350 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:24:59,350 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:24:59,363 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-13 06:24:59,554 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:59,555 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:24:59,555 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:24:59,555 INFO L85 PathProgramCache]: Analyzing trace with hash -506552652, now seen corresponding path program 1 times [2024-09-13 06:24:59,555 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:24:59,555 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [266052511] [2024-09-13 06:24:59,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:59,555 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:24:59,563 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,632 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:59,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,724 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:59,733 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,789 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:59,792 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,807 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:24:59,809 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,826 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:24:59,828 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,830 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:24:59,832 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,834 INFO L134 CoverageAnalysis]: Checked inductivity of 67 backedges. 6 proven. 27 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2024-09-13 06:24:59,835 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:24:59,835 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [266052511] [2024-09-13 06:24:59,835 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [266052511] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:24:59,835 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1096020894] [2024-09-13 06:24:59,835 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:24:59,835 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:24:59,835 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:24:59,837 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:24:59,837 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-13 06:24:59,879 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:24:59,882 INFO L262 TraceCheckSpWp]: Trace formula consists of 170 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-13 06:24:59,884 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:24:59,922 INFO L134 CoverageAnalysis]: Checked inductivity of 67 backedges. 6 proven. 24 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-13 06:24:59,922 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:00,209 INFO L134 CoverageAnalysis]: Checked inductivity of 67 backedges. 6 proven. 27 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2024-09-13 06:25:00,209 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1096020894] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:00,209 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:00,209 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 7] total 11 [2024-09-13 06:25:00,210 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2003916795] [2024-09-13 06:25:00,210 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:00,210 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-13 06:25:00,210 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:00,210 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-13 06:25:00,210 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=74, Unknown=0, NotChecked=0, Total=110 [2024-09-13 06:25:00,211 INFO L87 Difference]: Start difference. First operand 120 states and 179 transitions. Second operand has 11 states, 11 states have (on average 2.909090909090909) internal successors, (32), 11 states have internal predecessors, (32), 5 states have call successors, (8), 1 states have call predecessors, (8), 4 states have return successors, (8), 2 states have call predecessors, (8), 5 states have call successors, (8) [2024-09-13 06:25:00,281 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:00,281 INFO L93 Difference]: Finished difference Result 144 states and 195 transitions. [2024-09-13 06:25:00,281 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-13 06:25:00,281 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 2.909090909090909) internal successors, (32), 11 states have internal predecessors, (32), 5 states have call successors, (8), 1 states have call predecessors, (8), 4 states have return successors, (8), 2 states have call predecessors, (8), 5 states have call successors, (8) Word has length 44 [2024-09-13 06:25:00,282 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:00,286 INFO L225 Difference]: With dead ends: 144 [2024-09-13 06:25:00,287 INFO L226 Difference]: Without dead ends: 121 [2024-09-13 06:25:00,287 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 109 GetRequests, 93 SyntacticMatches, 5 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 34 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=54, Invalid=102, Unknown=0, NotChecked=0, Total=156 [2024-09-13 06:25:00,287 INFO L434 NwaCegarLoop]: 19 mSDtfsCounter, 23 mSDsluCounter, 54 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 29 SdHoareTripleChecker+Valid, 73 SdHoareTripleChecker+Invalid, 120 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:00,287 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [29 Valid, 73 Invalid, 120 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 06:25:00,288 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2024-09-13 06:25:00,292 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 100. [2024-09-13 06:25:00,293 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 66 states have (on average 1.1363636363636365) internal successors, (75), 65 states have internal predecessors, (75), 20 states have call successors, (20), 6 states have call predecessors, (20), 12 states have return successors, (34), 28 states have call predecessors, (34), 20 states have call successors, (34) [2024-09-13 06:25:00,294 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 129 transitions. [2024-09-13 06:25:00,294 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 129 transitions. Word has length 44 [2024-09-13 06:25:00,295 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:00,295 INFO L474 AbstractCegarLoop]: Abstraction has 100 states and 129 transitions. [2024-09-13 06:25:00,295 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 2.909090909090909) internal successors, (32), 11 states have internal predecessors, (32), 5 states have call successors, (8), 1 states have call predecessors, (8), 4 states have return successors, (8), 2 states have call predecessors, (8), 5 states have call successors, (8) [2024-09-13 06:25:00,295 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 129 transitions. [2024-09-13 06:25:00,296 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2024-09-13 06:25:00,296 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:00,296 INFO L216 NwaCegarLoop]: trace histogram [10, 7, 6, 5, 5, 4, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:25:00,309 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-13 06:25:00,500 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:00,501 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:00,501 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:00,501 INFO L85 PathProgramCache]: Analyzing trace with hash -585932244, now seen corresponding path program 3 times [2024-09-13 06:25:00,502 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:00,502 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [966621423] [2024-09-13 06:25:00,502 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:00,502 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:00,514 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:00,814 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2024-09-13 06:25:00,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,007 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:01,012 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,154 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:01,158 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,262 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:01,264 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,322 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:01,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,352 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:01,354 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,368 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 54 [2024-09-13 06:25:01,370 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:01,385 INFO L134 CoverageAnalysis]: Checked inductivity of 173 backedges. 36 proven. 71 refuted. 0 times theorem prover too weak. 66 trivial. 0 not checked. [2024-09-13 06:25:01,385 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:01,385 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [966621423] [2024-09-13 06:25:01,385 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [966621423] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:01,386 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [39686384] [2024-09-13 06:25:01,386 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-13 06:25:01,386 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:01,386 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:01,387 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:01,389 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-13 06:25:01,444 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 8 check-sat command(s) [2024-09-13 06:25:01,445 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:01,447 INFO L262 TraceCheckSpWp]: Trace formula consists of 223 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-13 06:25:01,449 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:01,722 INFO L134 CoverageAnalysis]: Checked inductivity of 173 backedges. 42 proven. 57 refuted. 0 times theorem prover too weak. 74 trivial. 0 not checked. [2024-09-13 06:25:01,722 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:03,642 INFO L134 CoverageAnalysis]: Checked inductivity of 173 backedges. 44 proven. 81 refuted. 0 times theorem prover too weak. 48 trivial. 0 not checked. [2024-09-13 06:25:03,643 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [39686384] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:03,643 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:03,643 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 17, 25] total 47 [2024-09-13 06:25:03,643 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [876192305] [2024-09-13 06:25:03,643 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:03,644 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 48 states [2024-09-13 06:25:03,644 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:03,644 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 48 interpolants. [2024-09-13 06:25:03,645 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=280, Invalid=1976, Unknown=0, NotChecked=0, Total=2256 [2024-09-13 06:25:03,645 INFO L87 Difference]: Start difference. First operand 100 states and 129 transitions. Second operand has 48 states, 44 states have (on average 1.7272727272727273) internal successors, (76), 40 states have internal predecessors, (76), 17 states have call successors, (18), 1 states have call predecessors, (18), 12 states have return successors, (21), 15 states have call predecessors, (21), 16 states have call successors, (21) [2024-09-13 06:25:05,195 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:05,195 INFO L93 Difference]: Finished difference Result 152 states and 224 transitions. [2024-09-13 06:25:05,196 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2024-09-13 06:25:05,196 INFO L78 Accepts]: Start accepts. Automaton has has 48 states, 44 states have (on average 1.7272727272727273) internal successors, (76), 40 states have internal predecessors, (76), 17 states have call successors, (18), 1 states have call predecessors, (18), 12 states have return successors, (21), 15 states have call predecessors, (21), 16 states have call successors, (21) Word has length 61 [2024-09-13 06:25:05,196 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:05,197 INFO L225 Difference]: With dead ends: 152 [2024-09-13 06:25:05,197 INFO L226 Difference]: Without dead ends: 144 [2024-09-13 06:25:05,199 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 182 GetRequests, 110 SyntacticMatches, 1 SemanticMatches, 71 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 917 ImplicationChecksByTransitivity, 1.9s TimeCoverageRelationStatistics Valid=796, Invalid=4460, Unknown=0, NotChecked=0, Total=5256 [2024-09-13 06:25:05,199 INFO L434 NwaCegarLoop]: 14 mSDtfsCounter, 62 mSDsluCounter, 95 mSDsCounter, 0 mSdLazyCounter, 988 mSolverCounterSat, 95 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 109 SdHoareTripleChecker+Invalid, 1083 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 95 IncrementalHoareTripleChecker+Valid, 988 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:05,199 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 109 Invalid, 1083 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [95 Valid, 988 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-13 06:25:05,200 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 144 states. [2024-09-13 06:25:05,220 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 144 to 110. [2024-09-13 06:25:05,221 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 110 states, 72 states have (on average 1.125) internal successors, (81), 71 states have internal predecessors, (81), 22 states have call successors, (22), 6 states have call predecessors, (22), 14 states have return successors, (40), 32 states have call predecessors, (40), 22 states have call successors, (40) [2024-09-13 06:25:05,221 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 110 states to 110 states and 143 transitions. [2024-09-13 06:25:05,221 INFO L78 Accepts]: Start accepts. Automaton has 110 states and 143 transitions. Word has length 61 [2024-09-13 06:25:05,223 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:05,223 INFO L474 AbstractCegarLoop]: Abstraction has 110 states and 143 transitions. [2024-09-13 06:25:05,223 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 48 states, 44 states have (on average 1.7272727272727273) internal successors, (76), 40 states have internal predecessors, (76), 17 states have call successors, (18), 1 states have call predecessors, (18), 12 states have return successors, (21), 15 states have call predecessors, (21), 16 states have call successors, (21) [2024-09-13 06:25:05,223 INFO L276 IsEmpty]: Start isEmpty. Operand 110 states and 143 transitions. [2024-09-13 06:25:05,224 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 63 [2024-09-13 06:25:05,227 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:05,227 INFO L216 NwaCegarLoop]: trace histogram [10, 7, 7, 4, 4, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1] [2024-09-13 06:25:05,257 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-13 06:25:05,427 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-09-13 06:25:05,428 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:05,429 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:05,429 INFO L85 PathProgramCache]: Analyzing trace with hash -704301563, now seen corresponding path program 4 times [2024-09-13 06:25:05,430 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:05,430 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1254722943] [2024-09-13 06:25:05,430 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:05,430 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:05,444 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,560 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2024-09-13 06:25:05,567 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,631 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:05,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,681 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:05,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,709 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:05,711 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,753 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:05,755 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,778 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-09-13 06:25:05,781 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,815 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:05,817 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:05,819 INFO L134 CoverageAnalysis]: Checked inductivity of 175 backedges. 43 proven. 40 refuted. 0 times theorem prover too weak. 92 trivial. 0 not checked. [2024-09-13 06:25:05,820 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:05,820 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1254722943] [2024-09-13 06:25:05,820 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1254722943] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:05,820 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1811366074] [2024-09-13 06:25:05,820 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-13 06:25:05,820 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:05,821 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:05,823 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:05,830 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-13 06:25:05,890 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-13 06:25:05,890 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:05,892 INFO L262 TraceCheckSpWp]: Trace formula consists of 174 conjuncts, 23 conjuncts are in the unsatisfiable core [2024-09-13 06:25:05,894 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:06,016 INFO L134 CoverageAnalysis]: Checked inductivity of 175 backedges. 47 proven. 59 refuted. 0 times theorem prover too weak. 69 trivial. 0 not checked. [2024-09-13 06:25:06,016 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:06,277 INFO L134 CoverageAnalysis]: Checked inductivity of 175 backedges. 47 proven. 61 refuted. 0 times theorem prover too weak. 67 trivial. 0 not checked. [2024-09-13 06:25:06,277 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1811366074] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:06,277 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:06,278 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 12, 13] total 31 [2024-09-13 06:25:06,278 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1385699079] [2024-09-13 06:25:06,278 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:06,278 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-13 06:25:06,278 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:06,279 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-13 06:25:06,279 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=114, Invalid=816, Unknown=0, NotChecked=0, Total=930 [2024-09-13 06:25:06,279 INFO L87 Difference]: Start difference. First operand 110 states and 143 transitions. Second operand has 31 states, 25 states have (on average 2.48) internal successors, (62), 28 states have internal predecessors, (62), 11 states have call successors, (15), 1 states have call predecessors, (15), 11 states have return successors, (19), 12 states have call predecessors, (19), 11 states have call successors, (19) [2024-09-13 06:25:06,728 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:06,729 INFO L93 Difference]: Finished difference Result 134 states and 173 transitions. [2024-09-13 06:25:06,732 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2024-09-13 06:25:06,733 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 25 states have (on average 2.48) internal successors, (62), 28 states have internal predecessors, (62), 11 states have call successors, (15), 1 states have call predecessors, (15), 11 states have return successors, (19), 12 states have call predecessors, (19), 11 states have call successors, (19) Word has length 62 [2024-09-13 06:25:06,733 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:06,734 INFO L225 Difference]: With dead ends: 134 [2024-09-13 06:25:06,734 INFO L226 Difference]: Without dead ends: 125 [2024-09-13 06:25:06,735 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 177 GetRequests, 126 SyntacticMatches, 1 SemanticMatches, 50 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 448 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=492, Invalid=2160, Unknown=0, NotChecked=0, Total=2652 [2024-09-13 06:25:06,735 INFO L434 NwaCegarLoop]: 11 mSDtfsCounter, 83 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 390 mSolverCounterSat, 90 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 83 SdHoareTripleChecker+Valid, 91 SdHoareTripleChecker+Invalid, 480 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 90 IncrementalHoareTripleChecker+Valid, 390 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:06,735 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [83 Valid, 91 Invalid, 480 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [90 Valid, 390 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-13 06:25:06,736 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 125 states. [2024-09-13 06:25:06,740 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 125 to 109. [2024-09-13 06:25:06,740 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 109 states, 71 states have (on average 1.1267605633802817) internal successors, (80), 71 states have internal predecessors, (80), 22 states have call successors, (22), 6 states have call predecessors, (22), 14 states have return successors, (38), 31 states have call predecessors, (38), 21 states have call successors, (38) [2024-09-13 06:25:06,741 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 109 states to 109 states and 140 transitions. [2024-09-13 06:25:06,741 INFO L78 Accepts]: Start accepts. Automaton has 109 states and 140 transitions. Word has length 62 [2024-09-13 06:25:06,741 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:06,741 INFO L474 AbstractCegarLoop]: Abstraction has 109 states and 140 transitions. [2024-09-13 06:25:06,742 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 25 states have (on average 2.48) internal successors, (62), 28 states have internal predecessors, (62), 11 states have call successors, (15), 1 states have call predecessors, (15), 11 states have return successors, (19), 12 states have call predecessors, (19), 11 states have call successors, (19) [2024-09-13 06:25:06,742 INFO L276 IsEmpty]: Start isEmpty. Operand 109 states and 140 transitions. [2024-09-13 06:25:06,743 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 72 [2024-09-13 06:25:06,743 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:06,743 INFO L216 NwaCegarLoop]: trace histogram [11, 9, 7, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1] [2024-09-13 06:25:06,769 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-13 06:25:06,943 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:06,944 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:06,944 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:06,944 INFO L85 PathProgramCache]: Analyzing trace with hash 258141017, now seen corresponding path program 5 times [2024-09-13 06:25:06,945 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:06,945 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1990279698] [2024-09-13 06:25:06,945 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:06,945 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:06,959 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,095 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-13 06:25:07,102 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,156 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:07,162 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,205 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:07,209 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,233 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:07,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,276 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:07,278 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,300 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2024-09-13 06:25:07,305 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,348 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:07,351 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,388 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:07,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,392 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:07,395 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:07,398 INFO L134 CoverageAnalysis]: Checked inductivity of 233 backedges. 59 proven. 78 refuted. 0 times theorem prover too weak. 96 trivial. 0 not checked. [2024-09-13 06:25:07,398 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:07,399 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1990279698] [2024-09-13 06:25:07,399 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1990279698] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:07,399 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1980964226] [2024-09-13 06:25:07,399 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-13 06:25:07,399 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:07,399 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:07,401 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:07,403 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-13 06:25:07,468 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 8 check-sat command(s) [2024-09-13 06:25:07,468 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:07,469 INFO L262 TraceCheckSpWp]: Trace formula consists of 183 conjuncts, 19 conjuncts are in the unsatisfiable core [2024-09-13 06:25:07,471 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:07,542 INFO L134 CoverageAnalysis]: Checked inductivity of 233 backedges. 59 proven. 71 refuted. 0 times theorem prover too weak. 103 trivial. 0 not checked. [2024-09-13 06:25:07,543 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:08,187 INFO L134 CoverageAnalysis]: Checked inductivity of 233 backedges. 77 proven. 61 refuted. 0 times theorem prover too weak. 95 trivial. 0 not checked. [2024-09-13 06:25:08,187 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1980964226] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:08,187 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:08,187 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 13, 16] total 28 [2024-09-13 06:25:08,188 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1590226635] [2024-09-13 06:25:08,188 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:08,188 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-09-13 06:25:08,188 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:08,189 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-09-13 06:25:08,189 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=101, Invalid=655, Unknown=0, NotChecked=0, Total=756 [2024-09-13 06:25:08,190 INFO L87 Difference]: Start difference. First operand 109 states and 140 transitions. Second operand has 28 states, 27 states have (on average 2.074074074074074) internal successors, (56), 23 states have internal predecessors, (56), 10 states have call successors, (12), 1 states have call predecessors, (12), 11 states have return successors, (18), 12 states have call predecessors, (18), 10 states have call successors, (18) [2024-09-13 06:25:08,546 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:08,546 INFO L93 Difference]: Finished difference Result 126 states and 162 transitions. [2024-09-13 06:25:08,546 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-13 06:25:08,547 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 27 states have (on average 2.074074074074074) internal successors, (56), 23 states have internal predecessors, (56), 10 states have call successors, (12), 1 states have call predecessors, (12), 11 states have return successors, (18), 12 states have call predecessors, (18), 10 states have call successors, (18) Word has length 71 [2024-09-13 06:25:08,547 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:08,548 INFO L225 Difference]: With dead ends: 126 [2024-09-13 06:25:08,548 INFO L226 Difference]: Without dead ends: 121 [2024-09-13 06:25:08,548 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 198 GetRequests, 146 SyntacticMatches, 8 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 350 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=366, Invalid=1704, Unknown=0, NotChecked=0, Total=2070 [2024-09-13 06:25:08,549 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 46 mSDsluCounter, 73 mSDsCounter, 0 mSdLazyCounter, 394 mSolverCounterSat, 51 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 86 SdHoareTripleChecker+Invalid, 445 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 51 IncrementalHoareTripleChecker+Valid, 394 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:08,549 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 86 Invalid, 445 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [51 Valid, 394 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-13 06:25:08,549 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2024-09-13 06:25:08,553 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 109. [2024-09-13 06:25:08,553 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 109 states, 71 states have (on average 1.1267605633802817) internal successors, (80), 71 states have internal predecessors, (80), 22 states have call successors, (22), 6 states have call predecessors, (22), 14 states have return successors, (37), 31 states have call predecessors, (37), 21 states have call successors, (37) [2024-09-13 06:25:08,554 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 109 states to 109 states and 139 transitions. [2024-09-13 06:25:08,554 INFO L78 Accepts]: Start accepts. Automaton has 109 states and 139 transitions. Word has length 71 [2024-09-13 06:25:08,554 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:08,555 INFO L474 AbstractCegarLoop]: Abstraction has 109 states and 139 transitions. [2024-09-13 06:25:08,555 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 27 states have (on average 2.074074074074074) internal successors, (56), 23 states have internal predecessors, (56), 10 states have call successors, (12), 1 states have call predecessors, (12), 11 states have return successors, (18), 12 states have call predecessors, (18), 10 states have call successors, (18) [2024-09-13 06:25:08,555 INFO L276 IsEmpty]: Start isEmpty. Operand 109 states and 139 transitions. [2024-09-13 06:25:08,556 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2024-09-13 06:25:08,556 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:08,556 INFO L216 NwaCegarLoop]: trace histogram [15, 13, 9, 6, 6, 6, 5, 5, 5, 5, 5, 3, 3, 3, 3, 1, 1, 1, 1, 1] [2024-09-13 06:25:08,573 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-13 06:25:08,760 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:08,761 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:08,761 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:08,761 INFO L85 PathProgramCache]: Analyzing trace with hash 400355383, now seen corresponding path program 6 times [2024-09-13 06:25:08,761 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:08,761 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2040696276] [2024-09-13 06:25:08,762 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:08,762 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:08,782 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,607 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-13 06:25:09,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,711 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:09,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,761 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:09,764 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,779 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:09,781 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,809 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:09,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,813 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2024-09-13 06:25:09,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:09,981 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:09,989 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,092 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:10,098 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,181 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:10,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,231 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:10,234 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,270 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:10,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,305 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:10,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,319 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2024-09-13 06:25:10,321 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:10,336 INFO L134 CoverageAnalysis]: Checked inductivity of 466 backedges. 69 proven. 234 refuted. 0 times theorem prover too weak. 163 trivial. 0 not checked. [2024-09-13 06:25:10,336 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:10,336 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2040696276] [2024-09-13 06:25:10,336 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2040696276] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:10,336 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1744158732] [2024-09-13 06:25:10,336 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-13 06:25:10,336 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:10,336 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:10,338 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:10,339 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-13 06:25:10,421 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 11 check-sat command(s) [2024-09-13 06:25:10,421 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:10,424 INFO L262 TraceCheckSpWp]: Trace formula consists of 333 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-13 06:25:10,426 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:10,563 INFO L134 CoverageAnalysis]: Checked inductivity of 466 backedges. 98 proven. 197 refuted. 0 times theorem prover too weak. 171 trivial. 0 not checked. [2024-09-13 06:25:10,564 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:11,874 INFO L134 CoverageAnalysis]: Checked inductivity of 466 backedges. 102 proven. 214 refuted. 0 times theorem prover too weak. 150 trivial. 0 not checked. [2024-09-13 06:25:11,874 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1744158732] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:11,874 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:11,874 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [25, 23, 31] total 46 [2024-09-13 06:25:11,874 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [548172847] [2024-09-13 06:25:11,874 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:11,875 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 47 states [2024-09-13 06:25:11,875 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:11,875 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 47 interpolants. [2024-09-13 06:25:11,876 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=244, Invalid=1918, Unknown=0, NotChecked=0, Total=2162 [2024-09-13 06:25:11,876 INFO L87 Difference]: Start difference. First operand 109 states and 139 transitions. Second operand has 47 states, 42 states have (on average 2.0238095238095237) internal successors, (85), 41 states have internal predecessors, (85), 16 states have call successors, (21), 1 states have call predecessors, (21), 15 states have return successors, (28), 16 states have call predecessors, (28), 16 states have call successors, (28) [2024-09-13 06:25:18,549 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:18,549 INFO L93 Difference]: Finished difference Result 375 states and 667 transitions. [2024-09-13 06:25:18,549 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 129 states. [2024-09-13 06:25:18,549 INFO L78 Accepts]: Start accepts. Automaton has has 47 states, 42 states have (on average 2.0238095238095237) internal successors, (85), 41 states have internal predecessors, (85), 16 states have call successors, (21), 1 states have call predecessors, (21), 15 states have return successors, (28), 16 states have call predecessors, (28), 16 states have call successors, (28) Word has length 97 [2024-09-13 06:25:18,550 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:18,552 INFO L225 Difference]: With dead ends: 375 [2024-09-13 06:25:18,552 INFO L226 Difference]: Without dead ends: 348 [2024-09-13 06:25:18,558 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 382 GetRequests, 213 SyntacticMatches, 2 SemanticMatches, 167 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7704 ImplicationChecksByTransitivity, 5.4s TimeCoverageRelationStatistics Valid=4772, Invalid=23620, Unknown=0, NotChecked=0, Total=28392 [2024-09-13 06:25:18,559 INFO L434 NwaCegarLoop]: 35 mSDtfsCounter, 261 mSDsluCounter, 223 mSDsCounter, 0 mSdLazyCounter, 4009 mSolverCounterSat, 466 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 266 SdHoareTripleChecker+Valid, 258 SdHoareTripleChecker+Invalid, 4475 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 466 IncrementalHoareTripleChecker+Valid, 4009 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:18,559 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [266 Valid, 258 Invalid, 4475 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [466 Valid, 4009 Invalid, 0 Unknown, 0 Unchecked, 1.9s Time] [2024-09-13 06:25:18,560 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 348 states. [2024-09-13 06:25:18,573 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 348 to 199. [2024-09-13 06:25:18,576 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 199 states, 135 states have (on average 1.1481481481481481) internal successors, (155), 126 states have internal predecessors, (155), 37 states have call successors, (37), 11 states have call predecessors, (37), 25 states have return successors, (137), 61 states have call predecessors, (137), 35 states have call successors, (137) [2024-09-13 06:25:18,577 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 199 states to 199 states and 329 transitions. [2024-09-13 06:25:18,578 INFO L78 Accepts]: Start accepts. Automaton has 199 states and 329 transitions. Word has length 97 [2024-09-13 06:25:18,578 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:18,578 INFO L474 AbstractCegarLoop]: Abstraction has 199 states and 329 transitions. [2024-09-13 06:25:18,578 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 47 states, 42 states have (on average 2.0238095238095237) internal successors, (85), 41 states have internal predecessors, (85), 16 states have call successors, (21), 1 states have call predecessors, (21), 15 states have return successors, (28), 16 states have call predecessors, (28), 16 states have call successors, (28) [2024-09-13 06:25:18,578 INFO L276 IsEmpty]: Start isEmpty. Operand 199 states and 329 transitions. [2024-09-13 06:25:18,579 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2024-09-13 06:25:18,579 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:18,583 INFO L216 NwaCegarLoop]: trace histogram [17, 15, 10, 7, 6, 6, 6, 6, 6, 6, 6, 4, 4, 3, 3, 1, 1, 1, 1, 1] [2024-09-13 06:25:18,600 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-13 06:25:18,783 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2024-09-13 06:25:18,784 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:18,784 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:18,784 INFO L85 PathProgramCache]: Analyzing trace with hash 914157467, now seen corresponding path program 7 times [2024-09-13 06:25:18,784 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:18,784 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [21880950] [2024-09-13 06:25:18,784 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:18,784 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:18,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,058 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-13 06:25:19,064 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,126 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,170 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,173 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,194 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,197 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,240 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:19,242 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,264 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2024-09-13 06:25:19,274 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,365 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,373 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,429 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,476 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,509 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,512 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,547 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:19,549 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,551 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:19,553 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,555 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:19,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,559 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2024-09-13 06:25:19,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,562 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-09-13 06:25:19,563 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,566 INFO L134 CoverageAnalysis]: Checked inductivity of 611 backedges. 151 proven. 223 refuted. 0 times theorem prover too weak. 237 trivial. 0 not checked. [2024-09-13 06:25:19,566 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:19,566 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [21880950] [2024-09-13 06:25:19,566 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [21880950] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:19,566 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [465919529] [2024-09-13 06:25:19,566 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-13 06:25:19,566 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:19,566 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:19,567 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:19,568 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-13 06:25:19,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:19,652 INFO L262 TraceCheckSpWp]: Trace formula consists of 390 conjuncts, 25 conjuncts are in the unsatisfiable core [2024-09-13 06:25:19,654 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:19,740 INFO L134 CoverageAnalysis]: Checked inductivity of 611 backedges. 159 proven. 196 refuted. 0 times theorem prover too weak. 256 trivial. 0 not checked. [2024-09-13 06:25:19,741 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:20,825 INFO L134 CoverageAnalysis]: Checked inductivity of 611 backedges. 175 proven. 217 refuted. 0 times theorem prover too weak. 219 trivial. 0 not checked. [2024-09-13 06:25:20,825 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [465919529] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:20,825 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:20,825 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 16, 21] total 29 [2024-09-13 06:25:20,825 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [487439939] [2024-09-13 06:25:20,825 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:20,826 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-09-13 06:25:20,826 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:20,826 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-09-13 06:25:20,826 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=112, Invalid=700, Unknown=0, NotChecked=0, Total=812 [2024-09-13 06:25:20,827 INFO L87 Difference]: Start difference. First operand 199 states and 329 transitions. Second operand has 29 states, 28 states have (on average 2.4642857142857144) internal successors, (69), 26 states have internal predecessors, (69), 15 states have call successors, (17), 1 states have call predecessors, (17), 13 states have return successors, (27), 12 states have call predecessors, (27), 15 states have call successors, (27) [2024-09-13 06:25:21,408 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:21,408 INFO L93 Difference]: Finished difference Result 324 states and 793 transitions. [2024-09-13 06:25:21,408 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-13 06:25:21,409 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 28 states have (on average 2.4642857142857144) internal successors, (69), 26 states have internal predecessors, (69), 15 states have call successors, (17), 1 states have call predecessors, (17), 13 states have return successors, (27), 12 states have call predecessors, (27), 15 states have call successors, (27) Word has length 110 [2024-09-13 06:25:21,409 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:21,411 INFO L225 Difference]: With dead ends: 324 [2024-09-13 06:25:21,411 INFO L226 Difference]: Without dead ends: 324 [2024-09-13 06:25:21,412 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 293 GetRequests, 233 SyntacticMatches, 15 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 424 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=380, Invalid=1782, Unknown=0, NotChecked=0, Total=2162 [2024-09-13 06:25:21,412 INFO L434 NwaCegarLoop]: 19 mSDtfsCounter, 80 mSDsluCounter, 135 mSDsCounter, 0 mSdLazyCounter, 812 mSolverCounterSat, 73 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 80 SdHoareTripleChecker+Valid, 154 SdHoareTripleChecker+Invalid, 885 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 73 IncrementalHoareTripleChecker+Valid, 812 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:21,413 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [80 Valid, 154 Invalid, 885 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [73 Valid, 812 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-13 06:25:21,414 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 324 states. [2024-09-13 06:25:21,437 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 324 to 271. [2024-09-13 06:25:21,438 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 271 states, 185 states have (on average 1.162162162162162) internal successors, (215), 168 states have internal predecessors, (215), 47 states have call successors, (47), 11 states have call predecessors, (47), 37 states have return successors, (339), 91 states have call predecessors, (339), 45 states have call successors, (339) [2024-09-13 06:25:21,440 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 271 states to 271 states and 601 transitions. [2024-09-13 06:25:21,441 INFO L78 Accepts]: Start accepts. Automaton has 271 states and 601 transitions. Word has length 110 [2024-09-13 06:25:21,441 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:21,441 INFO L474 AbstractCegarLoop]: Abstraction has 271 states and 601 transitions. [2024-09-13 06:25:21,441 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 28 states have (on average 2.4642857142857144) internal successors, (69), 26 states have internal predecessors, (69), 15 states have call successors, (17), 1 states have call predecessors, (17), 13 states have return successors, (27), 12 states have call predecessors, (27), 15 states have call successors, (27) [2024-09-13 06:25:21,441 INFO L276 IsEmpty]: Start isEmpty. Operand 271 states and 601 transitions. [2024-09-13 06:25:21,442 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2024-09-13 06:25:21,442 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:21,443 INFO L216 NwaCegarLoop]: trace histogram [14, 11, 9, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 3, 3, 1, 1, 1, 1, 1] [2024-09-13 06:25:21,460 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Ended with exit code 0 [2024-09-13 06:25:21,643 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-13 06:25:21,644 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:21,644 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:21,644 INFO L85 PathProgramCache]: Analyzing trace with hash 1379601416, now seen corresponding path program 8 times [2024-09-13 06:25:21,645 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:21,645 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [558342435] [2024-09-13 06:25:21,645 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:21,645 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:21,661 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:21,841 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2024-09-13 06:25:21,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:21,917 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:21,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:21,979 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:21,982 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,006 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:22,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,057 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:22,059 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,083 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-09-13 06:25:22,094 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,152 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:22,159 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,203 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:22,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,244 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:22,247 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,249 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:22,251 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,256 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:22,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:22,261 INFO L134 CoverageAnalysis]: Checked inductivity of 376 backedges. 90 proven. 125 refuted. 0 times theorem prover too weak. 161 trivial. 0 not checked. [2024-09-13 06:25:22,261 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:22,261 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [558342435] [2024-09-13 06:25:22,261 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [558342435] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:22,261 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [151713697] [2024-09-13 06:25:22,261 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-13 06:25:22,261 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:22,261 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:22,264 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:22,271 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-13 06:25:22,360 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-13 06:25:22,360 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:22,362 INFO L262 TraceCheckSpWp]: Trace formula consists of 314 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-13 06:25:22,364 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:22,429 INFO L134 CoverageAnalysis]: Checked inductivity of 376 backedges. 90 proven. 114 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-13 06:25:22,429 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:23,083 INFO L134 CoverageAnalysis]: Checked inductivity of 376 backedges. 106 proven. 112 refuted. 0 times theorem prover too weak. 158 trivial. 0 not checked. [2024-09-13 06:25:23,083 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [151713697] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:23,083 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:23,084 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 14, 17] total 25 [2024-09-13 06:25:23,084 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1991927492] [2024-09-13 06:25:23,084 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:23,084 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-13 06:25:23,084 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:23,085 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-13 06:25:23,085 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=90, Invalid=510, Unknown=0, NotChecked=0, Total=600 [2024-09-13 06:25:23,085 INFO L87 Difference]: Start difference. First operand 271 states and 601 transitions. Second operand has 25 states, 24 states have (on average 2.375) internal successors, (57), 22 states have internal predecessors, (57), 11 states have call successors, (13), 1 states have call predecessors, (13), 11 states have return successors, (19), 10 states have call predecessors, (19), 11 states have call successors, (19) [2024-09-13 06:25:23,434 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:23,434 INFO L93 Difference]: Finished difference Result 174 states and 261 transitions. [2024-09-13 06:25:23,436 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-13 06:25:23,436 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 24 states have (on average 2.375) internal successors, (57), 22 states have internal predecessors, (57), 11 states have call successors, (13), 1 states have call predecessors, (13), 11 states have return successors, (19), 10 states have call predecessors, (19), 11 states have call successors, (19) Word has length 88 [2024-09-13 06:25:23,436 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:23,437 INFO L225 Difference]: With dead ends: 174 [2024-09-13 06:25:23,437 INFO L226 Difference]: Without dead ends: 167 [2024-09-13 06:25:23,438 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 242 GetRequests, 184 SyntacticMatches, 13 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 430 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=432, Invalid=1730, Unknown=0, NotChecked=0, Total=2162 [2024-09-13 06:25:23,438 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 64 mSDsluCounter, 68 mSDsCounter, 0 mSdLazyCounter, 388 mSolverCounterSat, 75 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 81 SdHoareTripleChecker+Invalid, 463 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 75 IncrementalHoareTripleChecker+Valid, 388 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:23,439 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 81 Invalid, 463 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [75 Valid, 388 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-13 06:25:23,441 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 167 states. [2024-09-13 06:25:23,448 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 167 to 153. [2024-09-13 06:25:23,448 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 153 states, 99 states have (on average 1.1414141414141414) internal successors, (113), 97 states have internal predecessors, (113), 30 states have call successors, (30), 6 states have call predecessors, (30), 22 states have return successors, (83), 49 states have call predecessors, (83), 29 states have call successors, (83) [2024-09-13 06:25:23,449 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 153 states to 153 states and 226 transitions. [2024-09-13 06:25:23,449 INFO L78 Accepts]: Start accepts. Automaton has 153 states and 226 transitions. Word has length 88 [2024-09-13 06:25:23,450 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:23,450 INFO L474 AbstractCegarLoop]: Abstraction has 153 states and 226 transitions. [2024-09-13 06:25:23,450 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 24 states have (on average 2.375) internal successors, (57), 22 states have internal predecessors, (57), 11 states have call successors, (13), 1 states have call predecessors, (13), 11 states have return successors, (19), 10 states have call predecessors, (19), 11 states have call successors, (19) [2024-09-13 06:25:23,450 INFO L276 IsEmpty]: Start isEmpty. Operand 153 states and 226 transitions. [2024-09-13 06:25:23,452 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2024-09-13 06:25:23,452 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:23,452 INFO L216 NwaCegarLoop]: trace histogram [12, 11, 6, 6, 5, 5, 5, 5, 5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:25:23,468 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-13 06:25:23,653 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-13 06:25:23,653 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting ackermannErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:23,653 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:23,654 INFO L85 PathProgramCache]: Analyzing trace with hash -120782228, now seen corresponding path program 9 times [2024-09-13 06:25:23,654 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:23,654 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [220768179] [2024-09-13 06:25:23,654 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:23,654 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:23,669 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:24,093 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-13 06:25:24,106 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:24,421 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:24,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:24,633 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:24,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:24,792 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:24,797 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:24,920 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:24,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,007 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:25,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,067 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:25,069 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,103 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:25,104 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,116 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2024-09-13 06:25:25,117 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,128 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-09-13 06:25:25,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,141 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 72 [2024-09-13 06:25:25,143 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:25,156 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 12 proven. 172 refuted. 0 times theorem prover too weak. 124 trivial. 0 not checked. [2024-09-13 06:25:25,156 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:25,156 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [220768179] [2024-09-13 06:25:25,156 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [220768179] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:25,156 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [749132734] [2024-09-13 06:25:25,156 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-13 06:25:25,156 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:25,156 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:25,157 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:25,158 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-13 06:25:25,238 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-13 06:25:25,238 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:25,240 INFO L262 TraceCheckSpWp]: Trace formula consists of 177 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-09-13 06:25:25,242 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:26,051 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 61 proven. 32 refuted. 0 times theorem prover too weak. 215 trivial. 0 not checked. [2024-09-13 06:25:26,051 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 06:25:27,316 WARN L137 XnfTransformerHelper]: expecting exponential blowup for input size 12 [2024-09-13 06:25:34,352 WARN L293 SmtUtils]: Spent 6.84s on a formula simplification. DAG size of input: 438 DAG size of output: 58 (called from [L 279] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.cfg.transitions.TransFormulaUtils.sequentialComposition) [2024-09-13 06:25:36,620 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 61 proven. 21 refuted. 0 times theorem prover too weak. 226 trivial. 0 not checked. [2024-09-13 06:25:36,620 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [749132734] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 06:25:36,621 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 06:25:36,621 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [26, 11, 8] total 41 [2024-09-13 06:25:36,621 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1230159878] [2024-09-13 06:25:36,621 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 06:25:36,621 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 42 states [2024-09-13 06:25:36,622 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:36,622 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 42 interpolants. [2024-09-13 06:25:36,623 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=153, Invalid=1569, Unknown=0, NotChecked=0, Total=1722 [2024-09-13 06:25:36,623 INFO L87 Difference]: Start difference. First operand 153 states and 226 transitions. Second operand has 42 states, 34 states have (on average 1.7941176470588236) internal successors, (61), 33 states have internal predecessors, (61), 14 states have call successors, (17), 2 states have call predecessors, (17), 11 states have return successors, (18), 16 states have call predecessors, (18), 13 states have call successors, (18) [2024-09-13 06:25:38,952 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:38,952 INFO L93 Difference]: Finished difference Result 198 states and 311 transitions. [2024-09-13 06:25:38,952 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 43 states. [2024-09-13 06:25:38,953 INFO L78 Accepts]: Start accepts. Automaton has has 42 states, 34 states have (on average 1.7941176470588236) internal successors, (61), 33 states have internal predecessors, (61), 14 states have call successors, (17), 2 states have call predecessors, (17), 11 states have return successors, (18), 16 states have call predecessors, (18), 13 states have call successors, (18) Word has length 79 [2024-09-13 06:25:38,953 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:38,954 INFO L225 Difference]: With dead ends: 198 [2024-09-13 06:25:38,954 INFO L226 Difference]: Without dead ends: 180 [2024-09-13 06:25:38,956 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 244 GetRequests, 169 SyntacticMatches, 1 SemanticMatches, 74 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 915 ImplicationChecksByTransitivity, 2.9s TimeCoverageRelationStatistics Valid=684, Invalid=5016, Unknown=0, NotChecked=0, Total=5700 [2024-09-13 06:25:38,957 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 49 mSDsluCounter, 95 mSDsCounter, 0 mSdLazyCounter, 1372 mSolverCounterSat, 71 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 108 SdHoareTripleChecker+Invalid, 1443 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 71 IncrementalHoareTripleChecker+Valid, 1372 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:38,957 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 108 Invalid, 1443 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [71 Valid, 1372 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-09-13 06:25:38,957 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 180 states. [2024-09-13 06:25:38,964 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 180 to 138. [2024-09-13 06:25:38,964 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 138 states, 88 states have (on average 1.0340909090909092) internal successors, (91), 90 states have internal predecessors, (91), 27 states have call successors, (27), 8 states have call predecessors, (27), 22 states have return successors, (61), 39 states have call predecessors, (61), 27 states have call successors, (61) [2024-09-13 06:25:38,965 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 138 states to 138 states and 179 transitions. [2024-09-13 06:25:38,965 INFO L78 Accepts]: Start accepts. Automaton has 138 states and 179 transitions. Word has length 79 [2024-09-13 06:25:38,965 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:38,965 INFO L474 AbstractCegarLoop]: Abstraction has 138 states and 179 transitions. [2024-09-13 06:25:38,966 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 42 states, 34 states have (on average 1.7941176470588236) internal successors, (61), 33 states have internal predecessors, (61), 14 states have call successors, (17), 2 states have call predecessors, (17), 11 states have return successors, (18), 16 states have call predecessors, (18), 13 states have call successors, (18) [2024-09-13 06:25:38,966 INFO L276 IsEmpty]: Start isEmpty. Operand 138 states and 179 transitions. [2024-09-13 06:25:38,967 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 157 [2024-09-13 06:25:38,968 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 06:25:38,968 INFO L216 NwaCegarLoop]: trace histogram [23, 23, 13, 10, 9, 9, 9, 9, 9, 9, 9, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 06:25:38,985 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Ended with exit code 0 [2024-09-13 06:25:39,168 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-13 06:25:39,168 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ackermannErr0ENSURES_VIOLATIONPOST_CONDITION] === [2024-09-13 06:25:39,169 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 06:25:39,169 INFO L85 PathProgramCache]: Analyzing trace with hash -1800834689, now seen corresponding path program 2 times [2024-09-13 06:25:39,169 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 06:25:39,169 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1532230156] [2024-09-13 06:25:39,169 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 06:25:39,169 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 06:25:39,203 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:39,716 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:39,752 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,165 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,180 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,380 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,383 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,390 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,392 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,396 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,398 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,400 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,405 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:40,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,408 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2024-09-13 06:25:40,417 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,534 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,539 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,593 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,597 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,632 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,634 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,654 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,655 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,690 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:40,691 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,716 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:40,718 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,729 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2024-09-13 06:25:40,731 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,742 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 95 [2024-09-13 06:25:40,750 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,823 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,886 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,891 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,927 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,930 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,969 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 06:25:40,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,973 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-13 06:25:40,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,977 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-09-13 06:25:40,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,981 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2024-09-13 06:25:40,983 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 06:25:40,985 INFO L134 CoverageAnalysis]: Checked inductivity of 1246 backedges. 421 proven. 311 refuted. 0 times theorem prover too weak. 514 trivial. 0 not checked. [2024-09-13 06:25:40,986 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 06:25:40,986 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1532230156] [2024-09-13 06:25:40,986 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1532230156] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 06:25:40,986 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1209504735] [2024-09-13 06:25:40,986 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-13 06:25:40,986 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 06:25:40,986 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 06:25:40,988 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 06:25:40,989 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-13 06:25:41,075 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 1 check-sat command(s) [2024-09-13 06:25:41,076 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 06:25:41,077 INFO L262 TraceCheckSpWp]: Trace formula consists of 59 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-13 06:25:41,079 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 06:25:41,474 INFO L134 CoverageAnalysis]: Checked inductivity of 1246 backedges. 22 proven. 0 refuted. 0 times theorem prover too weak. 1224 trivial. 0 not checked. [2024-09-13 06:25:41,474 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-13 06:25:41,474 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1209504735] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 06:25:41,474 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-13 06:25:41,474 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [24] total 27 [2024-09-13 06:25:41,474 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [303774680] [2024-09-13 06:25:41,474 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 06:25:41,475 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 06:25:41,475 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 06:25:41,475 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 06:25:41,475 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=79, Invalid=623, Unknown=0, NotChecked=0, Total=702 [2024-09-13 06:25:41,476 INFO L87 Difference]: Start difference. First operand 138 states and 179 transitions. Second operand has 5 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2024-09-13 06:25:41,509 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 06:25:41,509 INFO L93 Difference]: Finished difference Result 136 states and 177 transitions. [2024-09-13 06:25:41,509 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 06:25:41,510 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 156 [2024-09-13 06:25:41,510 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 06:25:41,510 INFO L225 Difference]: With dead ends: 136 [2024-09-13 06:25:41,510 INFO L226 Difference]: Without dead ends: 0 [2024-09-13 06:25:41,510 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 230 GetRequests, 205 SyntacticMatches, 0 SemanticMatches, 25 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 170 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=79, Invalid=623, Unknown=0, NotChecked=0, Total=702 [2024-09-13 06:25:41,511 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 0 mSDsluCounter, 32 mSDsCounter, 0 mSdLazyCounter, 34 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 47 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 34 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 06:25:41,511 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 47 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 34 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 06:25:41,511 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-09-13 06:25:41,512 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-09-13 06:25:41,512 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 06:25:41,512 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-09-13 06:25:41,512 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 156 [2024-09-13 06:25:41,512 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 06:25:41,512 INFO L474 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-09-13 06:25:41,512 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2024-09-13 06:25:41,512 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-09-13 06:25:41,512 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-09-13 06:25:41,515 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION (1 of 2 remaining) [2024-09-13 06:25:41,515 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ackermannErr0ENSURES_VIOLATIONPOST_CONDITION (0 of 2 remaining) [2024-09-13 06:25:41,528 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Forceful destruction successful, exit code 0 [2024-09-13 06:25:41,715 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-13 06:25:41,719 INFO L408 BasicCegarLoop]: Path program histogram: [9, 2, 1, 1, 1, 1, 1, 1] [2024-09-13 06:25:41,721 INFO L165 ceAbstractionStarter]: Computing trace abstraction results [2024-09-13 06:25:41,723 INFO L201 PluginConnector]: Adding new model witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.09 06:25:41 BoogieIcfgContainer [2024-09-13 06:25:41,723 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-09-13 06:25:41,724 INFO L158 Benchmark]: Toolchain (without parser) took 53153.49ms. Allocated memory was 142.6MB in the beginning and 799.0MB in the end (delta: 656.4MB). Free memory was 71.7MB in the beginning and 337.4MB in the end (delta: -265.6MB). Peak memory consumption was 392.2MB. Max. memory is 16.1GB. [2024-09-13 06:25:41,724 INFO L158 Benchmark]: CDTParser took 0.16ms. Allocated memory is still 142.6MB. Free memory is still 107.9MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-13 06:25:41,724 INFO L158 Benchmark]: Witness Parser took 0.42ms. Allocated memory is still 142.6MB. Free memory is still 73.6MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-13 06:25:41,724 INFO L158 Benchmark]: CACSL2BoogieTranslator took 303.45ms. Allocated memory is still 142.6MB. Free memory was 71.5MB in the beginning and 58.3MB in the end (delta: 13.3MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2024-09-13 06:25:41,725 INFO L158 Benchmark]: Boogie Procedure Inliner took 35.52ms. Allocated memory is still 142.6MB. Free memory was 58.3MB in the beginning and 56.8MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-09-13 06:25:41,725 INFO L158 Benchmark]: Boogie Preprocessor took 50.64ms. Allocated memory was 142.6MB in the beginning and 220.2MB in the end (delta: 77.6MB). Free memory was 56.8MB in the beginning and 191.4MB in the end (delta: -134.5MB). Peak memory consumption was 8.7MB. Max. memory is 16.1GB. [2024-09-13 06:25:41,725 INFO L158 Benchmark]: RCFGBuilder took 337.18ms. Allocated memory is still 220.2MB. Free memory was 191.3MB in the beginning and 178.3MB in the end (delta: 13.0MB). Peak memory consumption was 15.2MB. Max. memory is 16.1GB. [2024-09-13 06:25:41,725 INFO L158 Benchmark]: TraceAbstraction took 52420.90ms. Allocated memory was 220.2MB in the beginning and 799.0MB in the end (delta: 578.8MB). Free memory was 177.3MB in the beginning and 337.4MB in the end (delta: -160.1MB). Peak memory consumption was 418.7MB. Max. memory is 16.1GB. [2024-09-13 06:25:41,730 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.16ms. Allocated memory is still 142.6MB. Free memory is still 107.9MB. There was no memory consumed. Max. memory is 16.1GB. * Witness Parser took 0.42ms. Allocated memory is still 142.6MB. Free memory is still 73.6MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 303.45ms. Allocated memory is still 142.6MB. Free memory was 71.5MB in the beginning and 58.3MB in the end (delta: 13.3MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 35.52ms. Allocated memory is still 142.6MB. Free memory was 58.3MB in the beginning and 56.8MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 50.64ms. Allocated memory was 142.6MB in the beginning and 220.2MB in the end (delta: 77.6MB). Free memory was 56.8MB in the beginning and 191.4MB in the end (delta: -134.5MB). Peak memory consumption was 8.7MB. Max. memory is 16.1GB. * RCFGBuilder took 337.18ms. Allocated memory is still 220.2MB. Free memory was 191.3MB in the beginning and 178.3MB in the end (delta: 13.0MB). Peak memory consumption was 15.2MB. Max. memory is 16.1GB. * TraceAbstraction took 52420.90ms. Allocated memory was 220.2MB in the beginning and 799.0MB in the end (delta: 578.8MB). Free memory was 177.3MB in the beginning and 337.4MB in the end (delta: -160.1MB). Peak memory consumption was 418.7MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 45]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - PositiveResult [Line: 16]: procedure postcondition always holds For all program executions holds that procedure postcondition always holds at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 2 procedures, 22 locations, 2 error locations. Started 1 CEGAR loops. OverallTime: 52.4s, OverallIterations: 17, TraceHistogramMax: 23, PathProgramHistogramMax: 9, EmptinessCheckTime: 0.0s, AutomataDifference: 15.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1086 SdHoareTripleChecker+Valid, 5.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1020 mSDsluCounter, 1578 SdHoareTripleChecker+Invalid, 4.5s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1260 mSDsCounter, 1282 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 10417 IncrementalHoareTripleChecker+Invalid, 11699 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1282 mSolverCounterUnsat, 318 mSDtfsCounter, 10417 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2435 GetRequests, 1713 SyntacticMatches, 55 SemanticMatches, 667 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12457 ImplicationChecksByTransitivity, 15.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=271occurred in iteration=14, InterpolantAutomatonStates: 409, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 17 MinimizatonAttempts, 446 StatesRemovedByMinimization, 16 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 32.3s InterpolantComputationTime, 1820 NumberOfCodeBlocks, 1612 NumberOfCodeBlocksAsserted, 60 NumberOfCheckSat, 2512 ConstructedInterpolants, 0 QuantifiedInterpolants, 11683 SizeOfPredicates, 46 NumberOfNonLiveVariables, 2511 ConjunctsInSsa, 360 ConjunctsInUnsatCore, 42 InterpolantComputations, 5 PerfectInterpolantSequences, 7297/10323 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 2 specifications checked. All of them hold RESULT: Ultimate proved your program to be correct! [2024-09-13 06:25:41,767 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE