./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursive/Primes.c --full-output --witness-type correctness_witness --validate ../results/automizer-verification-files/SV-COMP24_unreach-call/Primes.yml/witness-2.1.yml --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 1d5fa637 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReachWitnessValidation.xml -i ../sv-benchmarks/c/recursive/Primes.c ../results/automizer-verification-files/SV-COMP24_unreach-call/Primes.yml/witness-2.1.yml -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --traceabstraction.positions.where.we.compute.the.hoare.annotation None --- Real Ultimate output --- This is Ultimate 0.2.4-dev-1d5fa63-m [2024-09-13 10:27:26,017 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-13 10:27:26,105 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-13 10:27:26,109 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-13 10:27:26,111 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-13 10:27:26,141 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-13 10:27:26,143 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-13 10:27:26,143 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-13 10:27:26,144 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-13 10:27:26,145 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-13 10:27:26,146 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-13 10:27:26,146 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-13 10:27:26,147 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-13 10:27:26,147 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-13 10:27:26,149 INFO L153 SettingsManager]: * Use SBE=true [2024-09-13 10:27:26,149 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-13 10:27:26,149 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-13 10:27:26,150 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-13 10:27:26,150 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-13 10:27:26,150 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-13 10:27:26,150 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-13 10:27:26,151 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-13 10:27:26,151 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-13 10:27:26,154 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-13 10:27:26,155 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-13 10:27:26,155 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-13 10:27:26,155 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-13 10:27:26,155 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-13 10:27:26,155 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-13 10:27:26,156 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-13 10:27:26,156 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-13 10:27:26,156 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-13 10:27:26,156 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-13 10:27:26,156 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-13 10:27:26,157 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-13 10:27:26,157 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-13 10:27:26,157 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-13 10:27:26,157 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-13 10:27:26,157 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-13 10:27:26,157 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-13 10:27:26,158 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-13 10:27:26,159 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-13 10:27:26,160 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> None [2024-09-13 10:27:26,420 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-13 10:27:26,446 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-13 10:27:26,451 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-13 10:27:26,452 INFO L270 PluginConnector]: Initializing Witness Parser... [2024-09-13 10:27:26,452 INFO L274 PluginConnector]: Witness Parser initialized [2024-09-13 10:27:26,453 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../results/automizer-verification-files/SV-COMP24_unreach-call/Primes.yml/witness-2.1.yml [2024-09-13 10:27:26,517 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-13 10:27:26,518 INFO L274 PluginConnector]: CDTParser initialized [2024-09-13 10:27:26,518 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursive/Primes.c [2024-09-13 10:27:27,987 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-13 10:27:28,180 INFO L384 CDTParser]: Found 1 translation units. [2024-09-13 10:27:28,181 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursive/Primes.c [2024-09-13 10:27:28,193 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/10deb2011/671d2f579c064e148dfd0c56fe725821/FLAGc2d020be3 [2024-09-13 10:27:28,210 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/10deb2011/671d2f579c064e148dfd0c56fe725821 [2024-09-13 10:27:28,210 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-13 10:27:28,211 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2024-09-13 10:27:28,213 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-13 10:27:28,213 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-13 10:27:28,218 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-13 10:27:28,219 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 13.09 10:27:26" (1/2) ... [2024-09-13 10:27:28,220 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2968a46e and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 10:27:28, skipping insertion in model container [2024-09-13 10:27:28,221 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 13.09 10:27:26" (1/2) ... [2024-09-13 10:27:28,223 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.CACSL2BoogieTranslatorObserver@3bf1d9f5 and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 13.09 10:27:28, skipping insertion in model container [2024-09-13 10:27:28,223 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.09 10:27:28" (2/2) ... [2024-09-13 10:27:28,224 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2968a46e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28, skipping insertion in model container [2024-09-13 10:27:28,224 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.09 10:27:28" (2/2) ... [2024-09-13 10:27:28,231 INFO L93 nessWitnessExtractor]: Found the following entries in the witness: [2024-09-13 10:27:28,231 INFO L1541 ArrayList]: Function contract at [L17]: requires null, ensures ((((2 < \result) || (\result == 0)) || (\old(m) < 2)) || (\old(n) < 2)) [2024-09-13 10:27:28,232 INFO L1541 ArrayList]: Function contract at [L31]: requires null, ensures (((((((long long) \old(m) * 2) < ((long long) \old(n) + 1)) || (\old(n) == \old(m))) || (\old(n) == 0)) || ((\old(n) + \old(m)) < 1)) || (\old(m) < 1)) [2024-09-13 10:27:28,232 INFO L1541 ArrayList]: Function contract at [L52]: requires null, ensures ((\old(n) < 3) || (\result == 0)) [2024-09-13 10:27:28,251 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-13 10:27:28,401 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursive/Primes.c[2190,2203] [2024-09-13 10:27:28,406 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-13 10:27:28,421 INFO L200 MainTranslator]: Completed pre-run Start Parsing Global Start Parsing Global Start Parsing Global [2024-09-13 10:27:28,476 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursive/Primes.c[2190,2203] [2024-09-13 10:27:28,477 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-13 10:27:28,531 INFO L204 MainTranslator]: Completed translation [2024-09-13 10:27:28,532 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28 WrapperNode [2024-09-13 10:27:28,533 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-13 10:27:28,534 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-13 10:27:28,534 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-13 10:27:28,534 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-13 10:27:28,542 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,550 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,572 INFO L138 Inliner]: procedures = 16, calls = 17, calls flagged for inlining = 3, calls inlined = 3, statements flattened = 56 [2024-09-13 10:27:28,573 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-13 10:27:28,574 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-13 10:27:28,575 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-13 10:27:28,575 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-13 10:27:28,585 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,585 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,587 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,602 WARN L109 MemorySlicer]: Omit memory slicing because it failed with the following exception: Unsupported: Procedure multiple_of is not part of the Ultimate memory model but has specification other that is not a ModifiesSpecification [2024-09-13 10:27:28,606 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,606 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,610 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,616 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,618 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,619 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,624 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-13 10:27:28,625 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-13 10:27:28,626 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-13 10:27:28,626 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-13 10:27:28,626 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (1/1) ... [2024-09-13 10:27:28,637 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-13 10:27:28,644 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:28,658 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-13 10:27:28,660 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-13 10:27:28,701 INFO L130 BoogieDeclarations]: Found specification of procedure multiple_of [2024-09-13 10:27:28,701 INFO L138 BoogieDeclarations]: Found implementation of procedure multiple_of [2024-09-13 10:27:28,702 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-13 10:27:28,702 INFO L130 BoogieDeclarations]: Found specification of procedure mult [2024-09-13 10:27:28,702 INFO L138 BoogieDeclarations]: Found implementation of procedure mult [2024-09-13 10:27:28,702 INFO L130 BoogieDeclarations]: Found specification of procedure is_prime_ [2024-09-13 10:27:28,702 INFO L138 BoogieDeclarations]: Found implementation of procedure is_prime_ [2024-09-13 10:27:28,703 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2024-09-13 10:27:28,703 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-13 10:27:28,703 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-13 10:27:28,765 INFO L242 CfgBuilder]: Building ICFG [2024-09-13 10:27:28,767 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-13 10:27:29,009 INFO L? ?]: Removed 35 outVars from TransFormulas that were not future-live. [2024-09-13 10:27:29,009 INFO L291 CfgBuilder]: Performing block encoding [2024-09-13 10:27:29,035 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-13 10:27:29,036 INFO L318 CfgBuilder]: Removed 0 assume(true) statements. [2024-09-13 10:27:29,036 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.09 10:27:29 BoogieIcfgContainer [2024-09-13 10:27:29,036 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-13 10:27:29,040 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-13 10:27:29,042 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-13 10:27:29,045 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-13 10:27:29,045 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 13.09 10:27:26" (1/4) ... [2024-09-13 10:27:29,047 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@76d38a23 and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CORRECTNESS_WITNESS 13.09 10:27:29, skipping insertion in model container [2024-09-13 10:27:29,047 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.09 10:27:28" (2/4) ... [2024-09-13 10:27:29,047 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@76d38a23 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.09 10:27:29, skipping insertion in model container [2024-09-13 10:27:29,047 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 10:27:28" (3/4) ... [2024-09-13 10:27:29,048 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@76d38a23 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.09 10:27:29, skipping insertion in model container [2024-09-13 10:27:29,048 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.09 10:27:29" (4/4) ... [2024-09-13 10:27:29,050 INFO L112 eAbstractionObserver]: Analyzing ICFG Primes.c [2024-09-13 10:27:29,071 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:None NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-13 10:27:29,071 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 4 error locations. [2024-09-13 10:27:29,122 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-13 10:27:29,128 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=None, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@19dba98e, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-13 10:27:29,129 INFO L337 AbstractCegarLoop]: Starting to check reachability of 4 error locations. [2024-09-13 10:27:29,132 INFO L276 IsEmpty]: Start isEmpty. Operand has 53 states, 36 states have (on average 1.5833333333333333) internal successors, (57), 40 states have internal predecessors, (57), 9 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) [2024-09-13 10:27:29,137 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2024-09-13 10:27:29,137 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:29,138 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:29,138 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:29,143 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:29,143 INFO L85 PathProgramCache]: Analyzing trace with hash -1099352103, now seen corresponding path program 1 times [2024-09-13 10:27:29,152 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:29,152 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [667723700] [2024-09-13 10:27:29,153 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:29,153 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:29,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:29,385 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:29,391 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:29,425 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:29,426 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:29,426 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [667723700] [2024-09-13 10:27:29,427 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [667723700] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:29,427 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:29,427 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-09-13 10:27:29,429 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1779861820] [2024-09-13 10:27:29,429 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:29,434 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:29,435 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:29,478 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:29,479 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:29,481 INFO L87 Difference]: Start difference. First operand has 53 states, 36 states have (on average 1.5833333333333333) internal successors, (57), 40 states have internal predecessors, (57), 9 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 5 states, 4 states have (on average 1.75) internal successors, (7), 4 states have internal predecessors, (7), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:29,570 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:29,570 INFO L93 Difference]: Finished difference Result 57 states and 79 transitions. [2024-09-13 10:27:29,571 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:29,572 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 1.75) internal successors, (7), 4 states have internal predecessors, (7), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 9 [2024-09-13 10:27:29,573 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:29,579 INFO L225 Difference]: With dead ends: 57 [2024-09-13 10:27:29,579 INFO L226 Difference]: Without dead ends: 55 [2024-09-13 10:27:29,581 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:29,584 INFO L434 NwaCegarLoop]: 70 mSDtfsCounter, 0 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 22 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 272 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 22 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:29,585 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 272 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 22 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:29,596 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2024-09-13 10:27:29,614 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2024-09-13 10:27:29,615 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 38 states have (on average 1.4210526315789473) internal successors, (54), 41 states have internal predecessors, (54), 9 states have call successors, (9), 3 states have call predecessors, (9), 4 states have return successors, (11), 10 states have call predecessors, (11), 9 states have call successors, (11) [2024-09-13 10:27:29,621 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 74 transitions. [2024-09-13 10:27:29,623 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 74 transitions. Word has length 9 [2024-09-13 10:27:29,623 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:29,623 INFO L474 AbstractCegarLoop]: Abstraction has 55 states and 74 transitions. [2024-09-13 10:27:29,624 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 1.75) internal successors, (7), 4 states have internal predecessors, (7), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:29,624 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 74 transitions. [2024-09-13 10:27:29,625 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 11 [2024-09-13 10:27:29,625 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:29,626 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:29,626 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-13 10:27:29,626 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:29,627 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:29,627 INFO L85 PathProgramCache]: Analyzing trace with hash 291538719, now seen corresponding path program 1 times [2024-09-13 10:27:29,627 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:29,627 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1519652906] [2024-09-13 10:27:29,629 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:29,631 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:29,655 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:29,745 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:29,749 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:29,820 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:29,821 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:29,821 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1519652906] [2024-09-13 10:27:29,821 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1519652906] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:29,822 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:29,822 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 10:27:29,822 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [928106931] [2024-09-13 10:27:29,822 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:29,826 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-13 10:27:29,827 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:29,828 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-13 10:27:29,828 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:29,828 INFO L87 Difference]: Start difference. First operand 55 states and 74 transitions. Second operand has 6 states, 4 states have (on average 2.0) internal successors, (8), 6 states have internal predecessors, (8), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:29,933 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:29,933 INFO L93 Difference]: Finished difference Result 66 states and 88 transitions. [2024-09-13 10:27:29,934 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-13 10:27:29,934 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 4 states have (on average 2.0) internal successors, (8), 6 states have internal predecessors, (8), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 10 [2024-09-13 10:27:29,934 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:29,936 INFO L225 Difference]: With dead ends: 66 [2024-09-13 10:27:29,936 INFO L226 Difference]: Without dead ends: 66 [2024-09-13 10:27:29,936 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2024-09-13 10:27:29,937 INFO L434 NwaCegarLoop]: 60 mSDtfsCounter, 13 mSDsluCounter, 217 mSDsCounter, 0 mSdLazyCounter, 68 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 277 SdHoareTripleChecker+Invalid, 71 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 68 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:29,937 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 277 Invalid, 71 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 68 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:29,940 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 66 states. [2024-09-13 10:27:29,948 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 66 to 58. [2024-09-13 10:27:29,948 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 40 states have (on average 1.4) internal successors, (56), 43 states have internal predecessors, (56), 9 states have call successors, (9), 3 states have call predecessors, (9), 5 states have return successors, (13), 11 states have call predecessors, (13), 9 states have call successors, (13) [2024-09-13 10:27:29,950 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 78 transitions. [2024-09-13 10:27:29,950 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 78 transitions. Word has length 10 [2024-09-13 10:27:29,950 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:29,950 INFO L474 AbstractCegarLoop]: Abstraction has 58 states and 78 transitions. [2024-09-13 10:27:29,951 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 4 states have (on average 2.0) internal successors, (8), 6 states have internal predecessors, (8), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:29,951 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 78 transitions. [2024-09-13 10:27:29,951 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2024-09-13 10:27:29,951 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:29,952 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:29,952 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-13 10:27:29,952 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:29,952 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:29,953 INFO L85 PathProgramCache]: Analyzing trace with hash 1463084227, now seen corresponding path program 1 times [2024-09-13 10:27:29,953 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:29,953 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [272743623] [2024-09-13 10:27:29,953 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:29,953 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:29,963 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,027 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:30,031 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,084 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,085 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,085 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [272743623] [2024-09-13 10:27:30,085 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [272743623] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,085 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,087 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 10:27:30,087 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [350887962] [2024-09-13 10:27:30,087 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,087 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-13 10:27:30,087 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,088 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-13 10:27:30,088 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:30,088 INFO L87 Difference]: Start difference. First operand 58 states and 78 transitions. Second operand has 6 states, 4 states have (on average 2.5) internal successors, (10), 6 states have internal predecessors, (10), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,170 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,170 INFO L93 Difference]: Finished difference Result 62 states and 83 transitions. [2024-09-13 10:27:30,171 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-13 10:27:30,171 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 4 states have (on average 2.5) internal successors, (10), 6 states have internal predecessors, (10), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 12 [2024-09-13 10:27:30,171 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,172 INFO L225 Difference]: With dead ends: 62 [2024-09-13 10:27:30,173 INFO L226 Difference]: Without dead ends: 62 [2024-09-13 10:27:30,173 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2024-09-13 10:27:30,176 INFO L434 NwaCegarLoop]: 64 mSDtfsCounter, 10 mSDsluCounter, 229 mSDsCounter, 0 mSdLazyCounter, 52 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 293 SdHoareTripleChecker+Invalid, 52 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 52 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,177 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 293 Invalid, 52 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 52 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:30,177 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2024-09-13 10:27:30,185 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 58. [2024-09-13 10:27:30,186 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 40 states have (on average 1.4) internal successors, (56), 43 states have internal predecessors, (56), 9 states have call successors, (9), 3 states have call predecessors, (9), 5 states have return successors, (13), 11 states have call predecessors, (13), 9 states have call successors, (13) [2024-09-13 10:27:30,189 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 78 transitions. [2024-09-13 10:27:30,190 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 78 transitions. Word has length 12 [2024-09-13 10:27:30,190 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,191 INFO L474 AbstractCegarLoop]: Abstraction has 58 states and 78 transitions. [2024-09-13 10:27:30,191 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 4 states have (on average 2.5) internal successors, (10), 6 states have internal predecessors, (10), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,191 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 78 transitions. [2024-09-13 10:27:30,192 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 15 [2024-09-13 10:27:30,193 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,193 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,193 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-09-13 10:27:30,194 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,194 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,195 INFO L85 PathProgramCache]: Analyzing trace with hash -1523424089, now seen corresponding path program 1 times [2024-09-13 10:27:30,195 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,195 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1263181896] [2024-09-13 10:27:30,195 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,195 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,210 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,247 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,247 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,247 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1263181896] [2024-09-13 10:27:30,248 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1263181896] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,248 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,248 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-09-13 10:27:30,248 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [566029247] [2024-09-13 10:27:30,248 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,249 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-13 10:27:30,249 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,250 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-13 10:27:30,250 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-13 10:27:30,251 INFO L87 Difference]: Start difference. First operand 58 states and 78 transitions. Second operand has 4 states, 3 states have (on average 4.0) internal successors, (12), 4 states have internal predecessors, (12), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:30,321 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,322 INFO L93 Difference]: Finished difference Result 64 states and 90 transitions. [2024-09-13 10:27:30,322 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:30,323 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 4.0) internal successors, (12), 4 states have internal predecessors, (12), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 14 [2024-09-13 10:27:30,323 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,324 INFO L225 Difference]: With dead ends: 64 [2024-09-13 10:27:30,325 INFO L226 Difference]: Without dead ends: 64 [2024-09-13 10:27:30,325 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:30,326 INFO L434 NwaCegarLoop]: 58 mSDtfsCounter, 16 mSDsluCounter, 98 mSDsCounter, 0 mSdLazyCounter, 43 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 156 SdHoareTripleChecker+Invalid, 50 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 43 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,326 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 156 Invalid, 50 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 43 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:30,327 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2024-09-13 10:27:30,339 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 62. [2024-09-13 10:27:30,341 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 43 states have (on average 1.372093023255814) internal successors, (59), 45 states have internal predecessors, (59), 9 states have call successors, (9), 3 states have call predecessors, (9), 6 states have return successors, (17), 13 states have call predecessors, (17), 9 states have call successors, (17) [2024-09-13 10:27:30,343 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 85 transitions. [2024-09-13 10:27:30,343 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 85 transitions. Word has length 14 [2024-09-13 10:27:30,343 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,344 INFO L474 AbstractCegarLoop]: Abstraction has 62 states and 85 transitions. [2024-09-13 10:27:30,344 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 4.0) internal successors, (12), 4 states have internal predecessors, (12), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:30,345 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 85 transitions. [2024-09-13 10:27:30,345 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 15 [2024-09-13 10:27:30,345 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,345 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,346 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-09-13 10:27:30,346 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,347 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,347 INFO L85 PathProgramCache]: Analyzing trace with hash -1221831092, now seen corresponding path program 1 times [2024-09-13 10:27:30,347 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,347 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [724100467] [2024-09-13 10:27:30,347 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,347 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,392 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:30,393 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,396 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,397 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,397 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [724100467] [2024-09-13 10:27:30,397 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [724100467] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,397 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,397 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-09-13 10:27:30,398 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1071738505] [2024-09-13 10:27:30,398 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,398 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-09-13 10:27:30,398 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,399 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-09-13 10:27:30,399 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-13 10:27:30,399 INFO L87 Difference]: Start difference. First operand 62 states and 85 transitions. Second operand has 3 states, 3 states have (on average 4.0) internal successors, (12), 3 states have internal predecessors, (12), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,415 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,417 INFO L93 Difference]: Finished difference Result 63 states and 85 transitions. [2024-09-13 10:27:30,418 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-09-13 10:27:30,418 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.0) internal successors, (12), 3 states have internal predecessors, (12), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 14 [2024-09-13 10:27:30,418 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,419 INFO L225 Difference]: With dead ends: 63 [2024-09-13 10:27:30,419 INFO L226 Difference]: Without dead ends: 62 [2024-09-13 10:27:30,419 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-13 10:27:30,420 INFO L434 NwaCegarLoop]: 68 mSDtfsCounter, 0 mSDsluCounter, 63 mSDsCounter, 0 mSdLazyCounter, 6 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 6 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 6 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,420 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 131 Invalid, 6 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 6 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:30,425 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2024-09-13 10:27:30,432 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 62. [2024-09-13 10:27:30,433 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 43 states have (on average 1.3488372093023255) internal successors, (58), 45 states have internal predecessors, (58), 9 states have call successors, (9), 3 states have call predecessors, (9), 6 states have return successors, (17), 13 states have call predecessors, (17), 9 states have call successors, (17) [2024-09-13 10:27:30,434 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 84 transitions. [2024-09-13 10:27:30,437 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 84 transitions. Word has length 14 [2024-09-13 10:27:30,437 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,437 INFO L474 AbstractCegarLoop]: Abstraction has 62 states and 84 transitions. [2024-09-13 10:27:30,437 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.0) internal successors, (12), 3 states have internal predecessors, (12), 1 states have call successors, (1), 1 states have call predecessors, (1), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,437 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 84 transitions. [2024-09-13 10:27:30,438 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2024-09-13 10:27:30,438 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,438 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,438 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-09-13 10:27:30,438 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,439 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,439 INFO L85 PathProgramCache]: Analyzing trace with hash 18494327, now seen corresponding path program 1 times [2024-09-13 10:27:30,439 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,439 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1404103588] [2024-09-13 10:27:30,439 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,439 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,455 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,510 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,512 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,512 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1404103588] [2024-09-13 10:27:30,512 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1404103588] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,513 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,513 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 10:27:30,513 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1264124116] [2024-09-13 10:27:30,513 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,514 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:30,514 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,515 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:30,515 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:30,516 INFO L87 Difference]: Start difference. First operand 62 states and 84 transitions. Second operand has 5 states, 5 states have (on average 2.6) internal successors, (13), 4 states have internal predecessors, (13), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:30,583 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,583 INFO L93 Difference]: Finished difference Result 79 states and 106 transitions. [2024-09-13 10:27:30,585 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:30,585 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.6) internal successors, (13), 4 states have internal predecessors, (13), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 15 [2024-09-13 10:27:30,585 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,587 INFO L225 Difference]: With dead ends: 79 [2024-09-13 10:27:30,587 INFO L226 Difference]: Without dead ends: 79 [2024-09-13 10:27:30,587 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:30,588 INFO L434 NwaCegarLoop]: 60 mSDtfsCounter, 24 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 50 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 56 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 50 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,588 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 222 Invalid, 56 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 50 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:30,589 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-13 10:27:30,596 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 75. [2024-09-13 10:27:30,597 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 53 states have (on average 1.3396226415094339) internal successors, (71), 54 states have internal predecessors, (71), 11 states have call successors, (11), 4 states have call predecessors, (11), 7 states have return successors, (19), 16 states have call predecessors, (19), 11 states have call successors, (19) [2024-09-13 10:27:30,598 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 101 transitions. [2024-09-13 10:27:30,598 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 101 transitions. Word has length 15 [2024-09-13 10:27:30,598 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,599 INFO L474 AbstractCegarLoop]: Abstraction has 75 states and 101 transitions. [2024-09-13 10:27:30,599 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.6) internal successors, (13), 4 states have internal predecessors, (13), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:30,599 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 101 transitions. [2024-09-13 10:27:30,600 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-09-13 10:27:30,600 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,600 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,604 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-09-13 10:27:30,604 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting multErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,605 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,605 INFO L85 PathProgramCache]: Analyzing trace with hash 205082885, now seen corresponding path program 1 times [2024-09-13 10:27:30,605 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,606 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [468188653] [2024-09-13 10:27:30,606 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,606 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,617 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,680 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:30,683 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,699 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,699 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,700 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [468188653] [2024-09-13 10:27:30,700 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [468188653] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,700 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,700 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-09-13 10:27:30,700 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [799005166] [2024-09-13 10:27:30,700 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,701 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-09-13 10:27:30,701 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,702 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-09-13 10:27:30,702 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-09-13 10:27:30,702 INFO L87 Difference]: Start difference. First operand 75 states and 101 transitions. Second operand has 7 states, 7 states have (on average 2.0) internal successors, (14), 6 states have internal predecessors, (14), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,741 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,741 INFO L93 Difference]: Finished difference Result 84 states and 111 transitions. [2024-09-13 10:27:30,742 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-13 10:27:30,742 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 2.0) internal successors, (14), 6 states have internal predecessors, (14), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-09-13 10:27:30,742 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,743 INFO L225 Difference]: With dead ends: 84 [2024-09-13 10:27:30,743 INFO L226 Difference]: Without dead ends: 79 [2024-09-13 10:27:30,743 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-09-13 10:27:30,744 INFO L434 NwaCegarLoop]: 64 mSDtfsCounter, 0 mSDsluCounter, 309 mSDsCounter, 0 mSdLazyCounter, 33 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 373 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 33 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,745 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 373 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 33 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:30,748 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-13 10:27:30,759 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 79. [2024-09-13 10:27:30,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 79 states, 55 states have (on average 1.3272727272727274) internal successors, (73), 58 states have internal predecessors, (73), 11 states have call successors, (11), 4 states have call predecessors, (11), 9 states have return successors, (21), 16 states have call predecessors, (21), 11 states have call successors, (21) [2024-09-13 10:27:30,761 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 105 transitions. [2024-09-13 10:27:30,761 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 105 transitions. Word has length 17 [2024-09-13 10:27:30,761 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,761 INFO L474 AbstractCegarLoop]: Abstraction has 79 states and 105 transitions. [2024-09-13 10:27:30,761 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 2.0) internal successors, (14), 6 states have internal predecessors, (14), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,762 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 105 transitions. [2024-09-13 10:27:30,762 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-13 10:27:30,762 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,762 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,763 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-09-13 10:27:30,763 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting multErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,763 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,763 INFO L85 PathProgramCache]: Analyzing trace with hash 823654987, now seen corresponding path program 1 times [2024-09-13 10:27:30,763 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,764 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1162587974] [2024-09-13 10:27:30,764 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,764 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,775 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,797 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:30,799 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,801 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,801 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,801 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1162587974] [2024-09-13 10:27:30,801 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1162587974] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,802 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,802 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-13 10:27:30,802 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [800917951] [2024-09-13 10:27:30,802 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,802 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-09-13 10:27:30,803 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,803 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-09-13 10:27:30,803 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-13 10:27:30,803 INFO L87 Difference]: Start difference. First operand 79 states and 105 transitions. Second operand has 3 states, 2 states have (on average 7.5) internal successors, (15), 3 states have internal predecessors, (15), 1 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,819 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,819 INFO L93 Difference]: Finished difference Result 81 states and 109 transitions. [2024-09-13 10:27:30,820 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-09-13 10:27:30,820 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 7.5) internal successors, (15), 3 states have internal predecessors, (15), 1 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2024-09-13 10:27:30,820 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,821 INFO L225 Difference]: With dead ends: 81 [2024-09-13 10:27:30,821 INFO L226 Difference]: Without dead ends: 81 [2024-09-13 10:27:30,822 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-13 10:27:30,822 INFO L434 NwaCegarLoop]: 66 mSDtfsCounter, 1 mSDsluCounter, 61 mSDsCounter, 0 mSdLazyCounter, 8 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 127 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 8 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,823 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 127 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 8 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:30,827 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2024-09-13 10:27:30,835 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 80. [2024-09-13 10:27:30,836 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 56 states have (on average 1.3214285714285714) internal successors, (74), 59 states have internal predecessors, (74), 11 states have call successors, (11), 4 states have call predecessors, (11), 9 states have return successors, (21), 16 states have call predecessors, (21), 11 states have call successors, (21) [2024-09-13 10:27:30,837 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 106 transitions. [2024-09-13 10:27:30,838 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 106 transitions. Word has length 18 [2024-09-13 10:27:30,838 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,838 INFO L474 AbstractCegarLoop]: Abstraction has 80 states and 106 transitions. [2024-09-13 10:27:30,838 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 7.5) internal successors, (15), 3 states have internal predecessors, (15), 1 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,839 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 106 transitions. [2024-09-13 10:27:30,839 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2024-09-13 10:27:30,840 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,840 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,840 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-09-13 10:27:30,840 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting multErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,841 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,841 INFO L85 PathProgramCache]: Analyzing trace with hash -236498330, now seen corresponding path program 1 times [2024-09-13 10:27:30,841 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,841 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [909089896] [2024-09-13 10:27:30,841 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,842 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,849 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,879 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:30,881 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:30,883 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:30,883 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:30,884 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [909089896] [2024-09-13 10:27:30,884 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [909089896] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:30,884 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:30,884 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-09-13 10:27:30,884 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1413323899] [2024-09-13 10:27:30,884 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:30,885 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-13 10:27:30,885 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:30,885 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-13 10:27:30,885 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-13 10:27:30,886 INFO L87 Difference]: Start difference. First operand 80 states and 106 transitions. Second operand has 4 states, 3 states have (on average 5.333333333333333) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,938 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:30,938 INFO L93 Difference]: Finished difference Result 84 states and 114 transitions. [2024-09-13 10:27:30,939 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:30,939 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 5.333333333333333) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2024-09-13 10:27:30,940 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:30,940 INFO L225 Difference]: With dead ends: 84 [2024-09-13 10:27:30,941 INFO L226 Difference]: Without dead ends: 84 [2024-09-13 10:27:30,941 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:30,941 INFO L434 NwaCegarLoop]: 56 mSDtfsCounter, 9 mSDsluCounter, 101 mSDsCounter, 0 mSdLazyCounter, 39 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 11 SdHoareTripleChecker+Valid, 157 SdHoareTripleChecker+Invalid, 45 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 39 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:30,942 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [11 Valid, 157 Invalid, 45 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 39 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:30,943 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-09-13 10:27:30,951 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 80. [2024-09-13 10:27:30,955 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 56 states have (on average 1.3214285714285714) internal successors, (74), 59 states have internal predecessors, (74), 11 states have call successors, (11), 4 states have call predecessors, (11), 9 states have return successors, (21), 16 states have call predecessors, (21), 11 states have call successors, (21) [2024-09-13 10:27:30,956 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 106 transitions. [2024-09-13 10:27:30,956 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 106 transitions. Word has length 19 [2024-09-13 10:27:30,957 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:30,957 INFO L474 AbstractCegarLoop]: Abstraction has 80 states and 106 transitions. [2024-09-13 10:27:30,957 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 5.333333333333333) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:30,957 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 106 transitions. [2024-09-13 10:27:30,958 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2024-09-13 10:27:30,958 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:30,958 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:30,959 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2024-09-13 10:27:30,959 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:30,959 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:30,962 INFO L85 PathProgramCache]: Analyzing trace with hash 627455585, now seen corresponding path program 1 times [2024-09-13 10:27:30,963 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:30,963 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [503056130] [2024-09-13 10:27:30,963 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:30,963 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:30,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:31,084 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:31,084 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:31,085 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [503056130] [2024-09-13 10:27:31,085 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [503056130] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:31,085 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1070805495] [2024-09-13 10:27:31,085 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:31,085 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:31,086 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:31,087 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:31,089 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-13 10:27:31,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:31,132 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-13 10:27:31,137 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:31,224 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:31,224 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:27:31,314 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:31,315 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1070805495] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 10:27:31,315 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 10:27:31,315 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 8 [2024-09-13 10:27:31,315 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1138710625] [2024-09-13 10:27:31,315 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 10:27:31,316 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-13 10:27:31,316 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:31,316 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-13 10:27:31,316 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-13 10:27:31,317 INFO L87 Difference]: Start difference. First operand 80 states and 106 transitions. Second operand has 8 states, 8 states have (on average 2.25) internal successors, (18), 5 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:31,562 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:31,562 INFO L93 Difference]: Finished difference Result 117 states and 153 transitions. [2024-09-13 10:27:31,563 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2024-09-13 10:27:31,563 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 2.25) internal successors, (18), 5 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 21 [2024-09-13 10:27:31,563 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:31,564 INFO L225 Difference]: With dead ends: 117 [2024-09-13 10:27:31,564 INFO L226 Difference]: Without dead ends: 117 [2024-09-13 10:27:31,565 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 55 GetRequests, 36 SyntacticMatches, 6 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2024-09-13 10:27:31,569 INFO L434 NwaCegarLoop]: 56 mSDtfsCounter, 61 mSDsluCounter, 274 mSDsCounter, 0 mSdLazyCounter, 242 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 330 SdHoareTripleChecker+Invalid, 264 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 242 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:31,569 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 330 Invalid, 264 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 242 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-13 10:27:31,570 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 117 states. [2024-09-13 10:27:31,578 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 117 to 107. [2024-09-13 10:27:31,581 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 107 states, 76 states have (on average 1.3157894736842106) internal successors, (100), 78 states have internal predecessors, (100), 15 states have call successors, (15), 6 states have call predecessors, (15), 12 states have return successors, (28), 22 states have call predecessors, (28), 15 states have call successors, (28) [2024-09-13 10:27:31,582 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 107 states to 107 states and 143 transitions. [2024-09-13 10:27:31,582 INFO L78 Accepts]: Start accepts. Automaton has 107 states and 143 transitions. Word has length 21 [2024-09-13 10:27:31,582 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:31,582 INFO L474 AbstractCegarLoop]: Abstraction has 107 states and 143 transitions. [2024-09-13 10:27:31,582 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 2.25) internal successors, (18), 5 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:31,582 INFO L276 IsEmpty]: Start isEmpty. Operand 107 states and 143 transitions. [2024-09-13 10:27:31,584 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-13 10:27:31,584 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:31,584 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:31,602 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-13 10:27:31,789 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-09-13 10:27:31,790 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:31,790 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:31,790 INFO L85 PathProgramCache]: Analyzing trace with hash -1797805098, now seen corresponding path program 1 times [2024-09-13 10:27:31,790 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:31,790 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [396462316] [2024-09-13 10:27:31,790 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:31,791 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:31,798 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:31,845 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:31,846 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:31,850 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2024-09-13 10:27:31,852 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:31,872 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:31,872 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:31,872 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [396462316] [2024-09-13 10:27:31,872 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [396462316] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:31,873 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:31,873 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-09-13 10:27:31,873 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1024122902] [2024-09-13 10:27:31,873 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:31,874 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-13 10:27:31,874 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:31,877 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-13 10:27:31,877 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:31,878 INFO L87 Difference]: Start difference. First operand 107 states and 143 transitions. Second operand has 6 states, 6 states have (on average 3.0) internal successors, (18), 5 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-13 10:27:31,914 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:31,914 INFO L93 Difference]: Finished difference Result 111 states and 148 transitions. [2024-09-13 10:27:31,915 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-13 10:27:31,915 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.0) internal successors, (18), 5 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2024-09-13 10:27:31,915 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:31,917 INFO L225 Difference]: With dead ends: 111 [2024-09-13 10:27:31,917 INFO L226 Difference]: Without dead ends: 109 [2024-09-13 10:27:31,917 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:31,918 INFO L434 NwaCegarLoop]: 65 mSDtfsCounter, 1 mSDsluCounter, 239 mSDsCounter, 0 mSdLazyCounter, 26 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2 SdHoareTripleChecker+Valid, 304 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 26 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:31,918 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [2 Valid, 304 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 26 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:31,919 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 109 states. [2024-09-13 10:27:31,927 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 109 to 109. [2024-09-13 10:27:31,928 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 109 states, 77 states have (on average 1.3116883116883118) internal successors, (101), 80 states have internal predecessors, (101), 15 states have call successors, (15), 6 states have call predecessors, (15), 13 states have return successors, (30), 22 states have call predecessors, (30), 15 states have call successors, (30) [2024-09-13 10:27:31,929 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 109 states to 109 states and 146 transitions. [2024-09-13 10:27:31,930 INFO L78 Accepts]: Start accepts. Automaton has 109 states and 146 transitions. Word has length 22 [2024-09-13 10:27:31,930 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:31,930 INFO L474 AbstractCegarLoop]: Abstraction has 109 states and 146 transitions. [2024-09-13 10:27:31,930 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.0) internal successors, (18), 5 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-13 10:27:31,930 INFO L276 IsEmpty]: Start isEmpty. Operand 109 states and 146 transitions. [2024-09-13 10:27:31,931 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-13 10:27:31,934 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:31,934 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:31,934 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2024-09-13 10:27:31,934 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:31,935 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:31,935 INFO L85 PathProgramCache]: Analyzing trace with hash 768263070, now seen corresponding path program 1 times [2024-09-13 10:27:31,935 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:31,935 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1127332763] [2024-09-13 10:27:31,935 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:31,935 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:31,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:31,994 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-13 10:27:31,994 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:31,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1127332763] [2024-09-13 10:27:31,994 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1127332763] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:31,995 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:31,995 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 10:27:31,995 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [380609491] [2024-09-13 10:27:31,995 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:31,995 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:31,995 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:31,996 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:31,996 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:31,996 INFO L87 Difference]: Start difference. First operand 109 states and 146 transitions. Second operand has 5 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 3 states have call successors, (4), 3 states have call predecessors, (4), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:32,036 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:32,036 INFO L93 Difference]: Finished difference Result 83 states and 103 transitions. [2024-09-13 10:27:32,037 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:32,037 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 3 states have call successors, (4), 3 states have call predecessors, (4), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2024-09-13 10:27:32,037 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:32,038 INFO L225 Difference]: With dead ends: 83 [2024-09-13 10:27:32,038 INFO L226 Difference]: Without dead ends: 83 [2024-09-13 10:27:32,038 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:32,038 INFO L434 NwaCegarLoop]: 57 mSDtfsCounter, 26 mSDsluCounter, 142 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 199 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:32,039 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [28 Valid, 199 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:32,040 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 83 states. [2024-09-13 10:27:32,044 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 83 to 81. [2024-09-13 10:27:32,044 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 57 states have (on average 1.263157894736842) internal successors, (72), 63 states have internal predecessors, (72), 10 states have call successors, (10), 5 states have call predecessors, (10), 10 states have return successors, (18), 12 states have call predecessors, (18), 10 states have call successors, (18) [2024-09-13 10:27:32,045 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 100 transitions. [2024-09-13 10:27:32,045 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 100 transitions. Word has length 24 [2024-09-13 10:27:32,045 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:32,045 INFO L474 AbstractCegarLoop]: Abstraction has 81 states and 100 transitions. [2024-09-13 10:27:32,045 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 3 states have call successors, (4), 3 states have call predecessors, (4), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:32,045 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 100 transitions. [2024-09-13 10:27:32,046 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2024-09-13 10:27:32,046 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:32,046 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:32,048 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2024-09-13 10:27:32,048 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:32,048 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:32,048 INFO L85 PathProgramCache]: Analyzing trace with hash 800554609, now seen corresponding path program 1 times [2024-09-13 10:27:32,049 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:32,049 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2143640769] [2024-09-13 10:27:32,049 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:32,049 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:32,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,082 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:32,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,086 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2024-09-13 10:27:32,088 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,104 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:32,105 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:32,105 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2143640769] [2024-09-13 10:27:32,105 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2143640769] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:32,105 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:32,105 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 10:27:32,105 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1162209747] [2024-09-13 10:27:32,105 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:32,107 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:32,107 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:32,107 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:32,107 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:32,107 INFO L87 Difference]: Start difference. First operand 81 states and 100 transitions. Second operand has 5 states, 5 states have (on average 3.8) internal successors, (19), 5 states have internal predecessors, (19), 1 states have call successors, (2), 1 states have call predecessors, (2), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-13 10:27:32,162 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:32,164 INFO L93 Difference]: Finished difference Result 86 states and 108 transitions. [2024-09-13 10:27:32,164 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-13 10:27:32,164 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 3.8) internal successors, (19), 5 states have internal predecessors, (19), 1 states have call successors, (2), 1 states have call predecessors, (2), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2024-09-13 10:27:32,164 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:32,165 INFO L225 Difference]: With dead ends: 86 [2024-09-13 10:27:32,165 INFO L226 Difference]: Without dead ends: 84 [2024-09-13 10:27:32,165 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:32,166 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 8 mSDsluCounter, 137 mSDsCounter, 0 mSdLazyCounter, 59 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 188 SdHoareTripleChecker+Invalid, 65 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 59 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:32,166 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 188 Invalid, 65 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 59 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:32,166 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-09-13 10:27:32,172 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 80. [2024-09-13 10:27:32,174 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 56 states have (on average 1.2678571428571428) internal successors, (71), 62 states have internal predecessors, (71), 10 states have call successors, (10), 5 states have call predecessors, (10), 10 states have return successors, (18), 12 states have call predecessors, (18), 10 states have call successors, (18) [2024-09-13 10:27:32,174 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 99 transitions. [2024-09-13 10:27:32,175 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 99 transitions. Word has length 23 [2024-09-13 10:27:32,175 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:32,175 INFO L474 AbstractCegarLoop]: Abstraction has 80 states and 99 transitions. [2024-09-13 10:27:32,175 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 3.8) internal successors, (19), 5 states have internal predecessors, (19), 1 states have call successors, (2), 1 states have call predecessors, (2), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-13 10:27:32,176 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 99 transitions. [2024-09-13 10:27:32,176 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-13 10:27:32,176 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:32,176 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:32,176 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2024-09-13 10:27:32,177 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting multErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:32,178 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:32,178 INFO L85 PathProgramCache]: Analyzing trace with hash 614810523, now seen corresponding path program 1 times [2024-09-13 10:27:32,178 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:32,178 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [34142992] [2024-09-13 10:27:32,178 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:32,179 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:32,187 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,248 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:32,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,255 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-09-13 10:27:32,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,282 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:32,283 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:32,283 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [34142992] [2024-09-13 10:27:32,283 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [34142992] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:32,284 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1176744753] [2024-09-13 10:27:32,284 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:32,284 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:32,284 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:32,286 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:32,287 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-13 10:27:32,329 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,330 INFO L262 TraceCheckSpWp]: Trace formula consists of 105 conjuncts, 5 conjuncts are in the unsatisfiable core [2024-09-13 10:27:32,331 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:32,367 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-13 10:27:32,368 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:27:32,476 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:32,477 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1176744753] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 10:27:32,477 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 10:27:32,477 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 4, 5] total 11 [2024-09-13 10:27:32,477 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1513602936] [2024-09-13 10:27:32,477 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 10:27:32,477 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-13 10:27:32,477 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:32,478 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-13 10:27:32,478 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=76, Unknown=0, NotChecked=0, Total=110 [2024-09-13 10:27:32,478 INFO L87 Difference]: Start difference. First operand 80 states and 99 transitions. Second operand has 11 states, 10 states have (on average 3.5) internal successors, (35), 11 states have internal predecessors, (35), 4 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-13 10:27:32,599 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:32,599 INFO L93 Difference]: Finished difference Result 87 states and 106 transitions. [2024-09-13 10:27:32,600 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-13 10:27:32,600 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 10 states have (on average 3.5) internal successors, (35), 11 states have internal predecessors, (35), 4 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) Word has length 26 [2024-09-13 10:27:32,600 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:32,601 INFO L225 Difference]: With dead ends: 87 [2024-09-13 10:27:32,601 INFO L226 Difference]: Without dead ends: 79 [2024-09-13 10:27:32,601 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 65 GetRequests, 49 SyntacticMatches, 2 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 33 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=80, Invalid=160, Unknown=0, NotChecked=0, Total=240 [2024-09-13 10:27:32,601 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 30 mSDsluCounter, 186 mSDsCounter, 0 mSdLazyCounter, 74 mSolverCounterSat, 21 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 237 SdHoareTripleChecker+Invalid, 95 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 21 IncrementalHoareTripleChecker+Valid, 74 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:32,602 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 237 Invalid, 95 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [21 Valid, 74 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:32,603 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-13 10:27:32,605 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 79. [2024-09-13 10:27:32,607 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 79 states, 55 states have (on average 1.2545454545454546) internal successors, (69), 62 states have internal predecessors, (69), 10 states have call successors, (10), 5 states have call predecessors, (10), 10 states have return successors, (16), 11 states have call predecessors, (16), 9 states have call successors, (16) [2024-09-13 10:27:32,608 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 95 transitions. [2024-09-13 10:27:32,608 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 95 transitions. Word has length 26 [2024-09-13 10:27:32,609 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:32,610 INFO L474 AbstractCegarLoop]: Abstraction has 79 states and 95 transitions. [2024-09-13 10:27:32,610 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 10 states have (on average 3.5) internal successors, (35), 11 states have internal predecessors, (35), 4 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-13 10:27:32,610 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 95 transitions. [2024-09-13 10:27:32,610 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-13 10:27:32,611 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:32,611 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:32,627 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-13 10:27:32,811 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-13 10:27:32,812 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:32,812 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:32,812 INFO L85 PathProgramCache]: Analyzing trace with hash 127590859, now seen corresponding path program 2 times [2024-09-13 10:27:32,812 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:32,813 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1603477061] [2024-09-13 10:27:32,813 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:32,813 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:32,820 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:32,957 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 4 proven. 12 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:32,957 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:32,957 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1603477061] [2024-09-13 10:27:32,958 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1603477061] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:32,958 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1974528532] [2024-09-13 10:27:32,958 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-13 10:27:32,958 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:32,958 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:32,960 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:32,961 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-13 10:27:33,006 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 1 check-sat command(s) [2024-09-13 10:27:33,006 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 10:27:33,007 INFO L262 TraceCheckSpWp]: Trace formula consists of 65 conjuncts, 5 conjuncts are in the unsatisfiable core [2024-09-13 10:27:33,008 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:33,064 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-13 10:27:33,065 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-13 10:27:33,065 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1974528532] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:33,065 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-13 10:27:33,065 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [11] total 14 [2024-09-13 10:27:33,065 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1322078842] [2024-09-13 10:27:33,066 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:33,066 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:33,066 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:33,066 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:33,067 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=156, Unknown=0, NotChecked=0, Total=182 [2024-09-13 10:27:33,067 INFO L87 Difference]: Start difference. First operand 79 states and 95 transitions. Second operand has 5 states, 4 states have (on average 4.5) internal successors, (18), 5 states have internal predecessors, (18), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:33,122 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:33,122 INFO L93 Difference]: Finished difference Result 87 states and 109 transitions. [2024-09-13 10:27:33,123 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-13 10:27:33,123 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 4.5) internal successors, (18), 5 states have internal predecessors, (18), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 27 [2024-09-13 10:27:33,123 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:33,124 INFO L225 Difference]: With dead ends: 87 [2024-09-13 10:27:33,124 INFO L226 Difference]: Without dead ends: 87 [2024-09-13 10:27:33,124 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 38 GetRequests, 25 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=31, Invalid=179, Unknown=0, NotChecked=0, Total=210 [2024-09-13 10:27:33,125 INFO L434 NwaCegarLoop]: 50 mSDtfsCounter, 11 mSDsluCounter, 132 mSDsCounter, 0 mSdLazyCounter, 49 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 182 SdHoareTripleChecker+Invalid, 51 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 49 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:33,125 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 182 Invalid, 51 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 49 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:33,125 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-09-13 10:27:33,129 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 82. [2024-09-13 10:27:33,130 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 82 states, 57 states have (on average 1.2456140350877194) internal successors, (71), 64 states have internal predecessors, (71), 10 states have call successors, (10), 5 states have call predecessors, (10), 11 states have return successors, (19), 12 states have call predecessors, (19), 9 states have call successors, (19) [2024-09-13 10:27:33,131 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 82 states to 82 states and 100 transitions. [2024-09-13 10:27:33,131 INFO L78 Accepts]: Start accepts. Automaton has 82 states and 100 transitions. Word has length 27 [2024-09-13 10:27:33,131 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:33,131 INFO L474 AbstractCegarLoop]: Abstraction has 82 states and 100 transitions. [2024-09-13 10:27:33,131 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 4.5) internal successors, (18), 5 states have internal predecessors, (18), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:33,131 INFO L276 IsEmpty]: Start isEmpty. Operand 82 states and 100 transitions. [2024-09-13 10:27:33,132 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-13 10:27:33,132 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:33,133 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:33,149 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-13 10:27:33,333 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-13 10:27:33,334 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting multErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:33,334 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:33,334 INFO L85 PathProgramCache]: Analyzing trace with hash 824286641, now seen corresponding path program 1 times [2024-09-13 10:27:33,334 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:33,334 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1029271877] [2024-09-13 10:27:33,334 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:33,335 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:33,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,405 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:33,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,409 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2024-09-13 10:27:33,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,428 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 1 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-13 10:27:33,429 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:33,429 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1029271877] [2024-09-13 10:27:33,429 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1029271877] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:33,429 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1912728374] [2024-09-13 10:27:33,429 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:33,430 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:33,430 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:33,431 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:33,432 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-13 10:27:33,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,478 INFO L262 TraceCheckSpWp]: Trace formula consists of 117 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-09-13 10:27:33,480 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:33,513 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-13 10:27:33,513 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-13 10:27:33,513 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1912728374] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:33,513 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-13 10:27:33,513 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [5] total 9 [2024-09-13 10:27:33,514 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [420212776] [2024-09-13 10:27:33,514 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:33,514 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:33,514 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:33,515 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:33,515 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=56, Unknown=0, NotChecked=0, Total=72 [2024-09-13 10:27:33,515 INFO L87 Difference]: Start difference. First operand 82 states and 100 transitions. Second operand has 5 states, 5 states have (on average 4.2) internal successors, (21), 4 states have internal predecessors, (21), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-13 10:27:33,558 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:33,559 INFO L93 Difference]: Finished difference Result 93 states and 112 transitions. [2024-09-13 10:27:33,559 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:33,560 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.2) internal successors, (21), 4 states have internal predecessors, (21), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 30 [2024-09-13 10:27:33,560 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:33,560 INFO L225 Difference]: With dead ends: 93 [2024-09-13 10:27:33,561 INFO L226 Difference]: Without dead ends: 91 [2024-09-13 10:27:33,561 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 39 GetRequests, 31 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=70, Unknown=0, NotChecked=0, Total=90 [2024-09-13 10:27:33,562 INFO L434 NwaCegarLoop]: 50 mSDtfsCounter, 15 mSDsluCounter, 145 mSDsCounter, 0 mSdLazyCounter, 41 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 195 SdHoareTripleChecker+Invalid, 44 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 41 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:33,562 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 195 Invalid, 44 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 41 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:33,563 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2024-09-13 10:27:33,565 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 89. [2024-09-13 10:27:33,565 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 63 states have (on average 1.2380952380952381) internal successors, (78), 69 states have internal predecessors, (78), 11 states have call successors, (11), 6 states have call predecessors, (11), 11 states have return successors, (19), 13 states have call predecessors, (19), 10 states have call successors, (19) [2024-09-13 10:27:33,566 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 108 transitions. [2024-09-13 10:27:33,566 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 108 transitions. Word has length 30 [2024-09-13 10:27:33,566 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:33,566 INFO L474 AbstractCegarLoop]: Abstraction has 89 states and 108 transitions. [2024-09-13 10:27:33,566 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.2) internal successors, (21), 4 states have internal predecessors, (21), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-13 10:27:33,567 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 108 transitions. [2024-09-13 10:27:33,568 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-13 10:27:33,568 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:33,568 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:33,584 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-13 10:27:33,771 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:33,772 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting multErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:33,772 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:33,772 INFO L85 PathProgramCache]: Analyzing trace with hash 1901915468, now seen corresponding path program 1 times [2024-09-13 10:27:33,772 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:33,772 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [833324486] [2024-09-13 10:27:33,772 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:33,773 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:33,779 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,828 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:33,829 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,830 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-09-13 10:27:33,832 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,844 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:33,844 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:33,845 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [833324486] [2024-09-13 10:27:33,845 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [833324486] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:33,845 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2022056344] [2024-09-13 10:27:33,845 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:33,845 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:33,845 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:33,847 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:33,848 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-13 10:27:33,891 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:33,891 INFO L262 TraceCheckSpWp]: Trace formula consists of 106 conjuncts, 6 conjuncts are in the unsatisfiable core [2024-09-13 10:27:33,893 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:33,929 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:33,929 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:27:34,016 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:34,016 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2022056344] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 10:27:34,016 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 10:27:34,016 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 10 [2024-09-13 10:27:34,016 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [94888916] [2024-09-13 10:27:34,016 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 10:27:34,017 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-13 10:27:34,017 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:34,017 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-13 10:27:34,018 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=29, Invalid=81, Unknown=0, NotChecked=0, Total=110 [2024-09-13 10:27:34,018 INFO L87 Difference]: Start difference. First operand 89 states and 108 transitions. Second operand has 11 states, 10 states have (on average 3.1) internal successors, (31), 8 states have internal predecessors, (31), 3 states have call successors, (4), 1 states have call predecessors, (4), 3 states have return successors, (4), 4 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-13 10:27:34,090 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:34,090 INFO L93 Difference]: Finished difference Result 95 states and 115 transitions. [2024-09-13 10:27:34,091 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-13 10:27:34,091 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 10 states have (on average 3.1) internal successors, (31), 8 states have internal predecessors, (31), 3 states have call successors, (4), 1 states have call predecessors, (4), 3 states have return successors, (4), 4 states have call predecessors, (4), 3 states have call successors, (4) Word has length 27 [2024-09-13 10:27:34,091 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:34,092 INFO L225 Difference]: With dead ends: 95 [2024-09-13 10:27:34,092 INFO L226 Difference]: Without dead ends: 94 [2024-09-13 10:27:34,092 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 63 GetRequests, 51 SyntacticMatches, 1 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 25 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=42, Invalid=114, Unknown=0, NotChecked=0, Total=156 [2024-09-13 10:27:34,092 INFO L434 NwaCegarLoop]: 54 mSDtfsCounter, 5 mSDsluCounter, 390 mSDsCounter, 0 mSdLazyCounter, 78 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 7 SdHoareTripleChecker+Valid, 444 SdHoareTripleChecker+Invalid, 80 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 78 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:34,093 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [7 Valid, 444 Invalid, 80 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 78 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:34,093 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 94 states. [2024-09-13 10:27:34,096 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 94 to 86. [2024-09-13 10:27:34,096 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 86 states, 62 states have (on average 1.1935483870967742) internal successors, (74), 66 states have internal predecessors, (74), 10 states have call successors, (10), 6 states have call predecessors, (10), 11 states have return successors, (19), 13 states have call predecessors, (19), 10 states have call successors, (19) [2024-09-13 10:27:34,097 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 86 states to 86 states and 103 transitions. [2024-09-13 10:27:34,097 INFO L78 Accepts]: Start accepts. Automaton has 86 states and 103 transitions. Word has length 27 [2024-09-13 10:27:34,097 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:34,097 INFO L474 AbstractCegarLoop]: Abstraction has 86 states and 103 transitions. [2024-09-13 10:27:34,097 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 10 states have (on average 3.1) internal successors, (31), 8 states have internal predecessors, (31), 3 states have call successors, (4), 1 states have call predecessors, (4), 3 states have return successors, (4), 4 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-13 10:27:34,097 INFO L276 IsEmpty]: Start isEmpty. Operand 86 states and 103 transitions. [2024-09-13 10:27:34,098 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-13 10:27:34,098 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:34,098 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:34,115 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-13 10:27:34,298 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-13 10:27:34,299 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:34,299 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:34,299 INFO L85 PathProgramCache]: Analyzing trace with hash 13306861, now seen corresponding path program 1 times [2024-09-13 10:27:34,299 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:34,299 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [208311113] [2024-09-13 10:27:34,299 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:34,300 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:34,306 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:34,397 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-09-13 10:27:34,399 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:34,462 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 1 proven. 16 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:34,463 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:34,463 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [208311113] [2024-09-13 10:27:34,463 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [208311113] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:34,463 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1458929382] [2024-09-13 10:27:34,463 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:34,463 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:34,463 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:34,465 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:34,467 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-13 10:27:34,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:34,509 INFO L262 TraceCheckSpWp]: Trace formula consists of 100 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-13 10:27:34,510 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:34,665 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 7 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:34,666 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:27:34,839 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 1 proven. 16 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:34,841 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1458929382] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 10:27:34,841 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 10:27:34,841 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 11, 11] total 21 [2024-09-13 10:27:34,841 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1936559956] [2024-09-13 10:27:34,841 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 10:27:34,842 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-13 10:27:34,842 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:34,842 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-13 10:27:34,842 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=61, Invalid=359, Unknown=0, NotChecked=0, Total=420 [2024-09-13 10:27:34,843 INFO L87 Difference]: Start difference. First operand 86 states and 103 transitions. Second operand has 21 states, 19 states have (on average 2.5789473684210527) internal successors, (49), 15 states have internal predecessors, (49), 7 states have call successors, (8), 7 states have call predecessors, (8), 1 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-13 10:27:35,215 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:35,215 INFO L93 Difference]: Finished difference Result 151 states and 183 transitions. [2024-09-13 10:27:35,216 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-13 10:27:35,216 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 19 states have (on average 2.5789473684210527) internal successors, (49), 15 states have internal predecessors, (49), 7 states have call successors, (8), 7 states have call predecessors, (8), 1 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 30 [2024-09-13 10:27:35,216 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:35,217 INFO L225 Difference]: With dead ends: 151 [2024-09-13 10:27:35,217 INFO L226 Difference]: Without dead ends: 144 [2024-09-13 10:27:35,217 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 80 GetRequests, 46 SyntacticMatches, 6 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 147 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=159, Invalid=711, Unknown=0, NotChecked=0, Total=870 [2024-09-13 10:27:35,218 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 117 mSDsluCounter, 356 mSDsCounter, 0 mSdLazyCounter, 404 mSolverCounterSat, 35 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 121 SdHoareTripleChecker+Valid, 393 SdHoareTripleChecker+Invalid, 439 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 35 IncrementalHoareTripleChecker+Valid, 404 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:35,218 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [121 Valid, 393 Invalid, 439 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [35 Valid, 404 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-13 10:27:35,218 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 144 states. [2024-09-13 10:27:35,223 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 144 to 127. [2024-09-13 10:27:35,227 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 127 states, 95 states have (on average 1.1894736842105262) internal successors, (113), 95 states have internal predecessors, (113), 16 states have call successors, (16), 10 states have call predecessors, (16), 13 states have return successors, (23), 21 states have call predecessors, (23), 16 states have call successors, (23) [2024-09-13 10:27:35,227 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 127 states to 127 states and 152 transitions. [2024-09-13 10:27:35,228 INFO L78 Accepts]: Start accepts. Automaton has 127 states and 152 transitions. Word has length 30 [2024-09-13 10:27:35,228 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:35,228 INFO L474 AbstractCegarLoop]: Abstraction has 127 states and 152 transitions. [2024-09-13 10:27:35,228 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 19 states have (on average 2.5789473684210527) internal successors, (49), 15 states have internal predecessors, (49), 7 states have call successors, (8), 7 states have call predecessors, (8), 1 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-13 10:27:35,228 INFO L276 IsEmpty]: Start isEmpty. Operand 127 states and 152 transitions. [2024-09-13 10:27:35,230 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-13 10:27:35,230 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:35,230 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:35,246 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-13 10:27:35,430 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable17 [2024-09-13 10:27:35,431 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:35,431 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:35,431 INFO L85 PathProgramCache]: Analyzing trace with hash 1937323607, now seen corresponding path program 1 times [2024-09-13 10:27:35,431 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:35,432 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [803967551] [2024-09-13 10:27:35,432 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:35,432 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:35,440 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:35,535 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-13 10:27:35,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:35,551 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2024-09-13 10:27:35,553 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:35,601 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 4 [2024-09-13 10:27:35,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:35,619 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:35,619 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:35,620 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [803967551] [2024-09-13 10:27:35,620 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [803967551] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:35,620 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [674286290] [2024-09-13 10:27:35,620 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:35,620 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:35,620 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:35,622 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:35,624 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-13 10:27:35,668 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:35,670 INFO L262 TraceCheckSpWp]: Trace formula consists of 112 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-13 10:27:35,671 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:35,835 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:35,835 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:27:36,139 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-13 10:27:36,139 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [674286290] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 10:27:36,139 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 10:27:36,139 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 12, 12] total 25 [2024-09-13 10:27:36,139 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1072806224] [2024-09-13 10:27:36,139 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 10:27:36,140 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-13 10:27:36,140 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:36,142 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-13 10:27:36,144 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=70, Invalid=530, Unknown=0, NotChecked=0, Total=600 [2024-09-13 10:27:36,144 INFO L87 Difference]: Start difference. First operand 127 states and 152 transitions. Second operand has 25 states, 22 states have (on average 2.227272727272727) internal successors, (49), 18 states have internal predecessors, (49), 7 states have call successors, (7), 1 states have call predecessors, (7), 5 states have return successors, (9), 8 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-13 10:27:36,519 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:36,519 INFO L93 Difference]: Finished difference Result 154 states and 185 transitions. [2024-09-13 10:27:36,519 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-13 10:27:36,520 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 22 states have (on average 2.227272727272727) internal successors, (49), 18 states have internal predecessors, (49), 7 states have call successors, (7), 1 states have call predecessors, (7), 5 states have return successors, (9), 8 states have call predecessors, (9), 7 states have call successors, (9) Word has length 31 [2024-09-13 10:27:36,520 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:36,520 INFO L225 Difference]: With dead ends: 154 [2024-09-13 10:27:36,521 INFO L226 Difference]: Without dead ends: 129 [2024-09-13 10:27:36,521 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 88 GetRequests, 52 SyntacticMatches, 3 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 202 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=134, Invalid=1056, Unknown=0, NotChecked=0, Total=1190 [2024-09-13 10:27:36,522 INFO L434 NwaCegarLoop]: 42 mSDtfsCounter, 38 mSDsluCounter, 453 mSDsCounter, 0 mSdLazyCounter, 337 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 495 SdHoareTripleChecker+Invalid, 359 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 337 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:36,522 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 495 Invalid, 359 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 337 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-13 10:27:36,523 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 129 states. [2024-09-13 10:27:36,526 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 129 to 119. [2024-09-13 10:27:36,527 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 119 states, 89 states have (on average 1.146067415730337) internal successors, (102), 90 states have internal predecessors, (102), 16 states have call successors, (16), 10 states have call predecessors, (16), 11 states have return successors, (20), 18 states have call predecessors, (20), 16 states have call successors, (20) [2024-09-13 10:27:36,527 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 119 states to 119 states and 138 transitions. [2024-09-13 10:27:36,528 INFO L78 Accepts]: Start accepts. Automaton has 119 states and 138 transitions. Word has length 31 [2024-09-13 10:27:36,528 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:36,528 INFO L474 AbstractCegarLoop]: Abstraction has 119 states and 138 transitions. [2024-09-13 10:27:36,528 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 22 states have (on average 2.227272727272727) internal successors, (49), 18 states have internal predecessors, (49), 7 states have call successors, (7), 1 states have call predecessors, (7), 5 states have return successors, (9), 8 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-13 10:27:36,528 INFO L276 IsEmpty]: Start isEmpty. Operand 119 states and 138 transitions. [2024-09-13 10:27:36,529 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-09-13 10:27:36,529 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:36,530 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:36,547 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-13 10:27:36,730 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:36,731 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:36,731 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:36,731 INFO L85 PathProgramCache]: Analyzing trace with hash 1927089745, now seen corresponding path program 1 times [2024-09-13 10:27:36,731 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:36,731 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2105684367] [2024-09-13 10:27:36,731 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:36,732 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:36,739 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:36,754 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-09-13 10:27:36,757 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:36,767 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2024-09-13 10:27:36,769 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:36,783 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-13 10:27:36,783 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:36,783 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2105684367] [2024-09-13 10:27:36,783 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2105684367] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:36,783 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 10:27:36,783 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-13 10:27:36,784 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1504809547] [2024-09-13 10:27:36,784 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:36,784 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:36,784 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:36,785 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:36,785 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:36,785 INFO L87 Difference]: Start difference. First operand 119 states and 138 transitions. Second operand has 5 states, 4 states have (on average 5.75) internal successors, (23), 5 states have internal predecessors, (23), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-13 10:27:36,828 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:36,828 INFO L93 Difference]: Finished difference Result 119 states and 137 transitions. [2024-09-13 10:27:36,829 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:36,829 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 5.75) internal successors, (23), 5 states have internal predecessors, (23), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 37 [2024-09-13 10:27:36,829 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:36,830 INFO L225 Difference]: With dead ends: 119 [2024-09-13 10:27:36,830 INFO L226 Difference]: Without dead ends: 119 [2024-09-13 10:27:36,830 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=12, Invalid=18, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:36,831 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 11 mSDsluCounter, 115 mSDsCounter, 0 mSdLazyCounter, 49 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 13 SdHoareTripleChecker+Valid, 159 SdHoareTripleChecker+Invalid, 53 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 49 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:36,831 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [13 Valid, 159 Invalid, 53 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 49 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:36,831 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 119 states. [2024-09-13 10:27:36,834 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 119 to 117. [2024-09-13 10:27:36,834 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 117 states, 87 states have (on average 1.160919540229885) internal successors, (101), 90 states have internal predecessors, (101), 16 states have call successors, (16), 10 states have call predecessors, (16), 11 states have return successors, (18), 16 states have call predecessors, (18), 16 states have call successors, (18) [2024-09-13 10:27:36,835 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 135 transitions. [2024-09-13 10:27:36,835 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 135 transitions. Word has length 37 [2024-09-13 10:27:36,835 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:36,835 INFO L474 AbstractCegarLoop]: Abstraction has 117 states and 135 transitions. [2024-09-13 10:27:36,836 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 5.75) internal successors, (23), 5 states have internal predecessors, (23), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-13 10:27:36,836 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 135 transitions. [2024-09-13 10:27:36,836 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-09-13 10:27:36,836 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:36,836 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 4, 4, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:36,837 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19 [2024-09-13 10:27:36,837 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:36,837 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:36,837 INFO L85 PathProgramCache]: Analyzing trace with hash -28372123, now seen corresponding path program 1 times [2024-09-13 10:27:36,837 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:36,837 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1294964583] [2024-09-13 10:27:36,838 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:36,838 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:36,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:36,874 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2024-09-13 10:27:36,876 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:36,877 INFO L134 CoverageAnalysis]: Checked inductivity of 62 backedges. 29 proven. 8 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2024-09-13 10:27:36,877 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:36,877 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1294964583] [2024-09-13 10:27:36,877 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1294964583] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:36,878 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1182954611] [2024-09-13 10:27:36,878 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:36,878 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:36,878 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:36,880 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:36,881 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-13 10:27:36,930 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:36,931 INFO L262 TraceCheckSpWp]: Trace formula consists of 138 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-09-13 10:27:36,932 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:36,949 INFO L134 CoverageAnalysis]: Checked inductivity of 62 backedges. 44 proven. 0 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2024-09-13 10:27:36,949 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-13 10:27:36,949 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1182954611] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 10:27:36,950 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-13 10:27:36,950 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [5] total 5 [2024-09-13 10:27:36,950 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1164408243] [2024-09-13 10:27:36,950 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 10:27:36,950 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-13 10:27:36,950 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:36,951 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-13 10:27:36,951 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-13 10:27:36,951 INFO L87 Difference]: Start difference. First operand 117 states and 135 transitions. Second operand has 5 states, 4 states have (on average 6.25) internal successors, (25), 4 states have internal predecessors, (25), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:36,989 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:36,989 INFO L93 Difference]: Finished difference Result 129 states and 149 transitions. [2024-09-13 10:27:36,989 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-13 10:27:36,990 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 6.25) internal successors, (25), 4 states have internal predecessors, (25), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 44 [2024-09-13 10:27:36,990 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:36,990 INFO L225 Difference]: With dead ends: 129 [2024-09-13 10:27:36,990 INFO L226 Difference]: Without dead ends: 129 [2024-09-13 10:27:36,991 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 52 GetRequests, 47 SyntacticMatches, 1 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-13 10:27:36,991 INFO L434 NwaCegarLoop]: 58 mSDtfsCounter, 17 mSDsluCounter, 141 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 199 SdHoareTripleChecker+Invalid, 40 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:36,991 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 199 Invalid, 40 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 10:27:36,992 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 129 states. [2024-09-13 10:27:36,994 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 129 to 124. [2024-09-13 10:27:36,995 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 124 states, 93 states have (on average 1.1505376344086022) internal successors, (107), 95 states have internal predecessors, (107), 17 states have call successors, (17), 11 states have call predecessors, (17), 11 states have return successors, (17), 17 states have call predecessors, (17), 17 states have call successors, (17) [2024-09-13 10:27:36,995 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 124 states to 124 states and 141 transitions. [2024-09-13 10:27:36,996 INFO L78 Accepts]: Start accepts. Automaton has 124 states and 141 transitions. Word has length 44 [2024-09-13 10:27:36,996 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:36,996 INFO L474 AbstractCegarLoop]: Abstraction has 124 states and 141 transitions. [2024-09-13 10:27:36,996 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 6.25) internal successors, (25), 4 states have internal predecessors, (25), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:36,996 INFO L276 IsEmpty]: Start isEmpty. Operand 124 states and 141 transitions. [2024-09-13 10:27:36,996 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-13 10:27:36,997 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:27:36,997 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:37,013 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-13 10:27:37,197 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable20,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:37,198 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION === [multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION, multErr0ENSURES_VIOLATIONPOST_CONDITION, ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (and 1 more)] === [2024-09-13 10:27:37,198 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:27:37,199 INFO L85 PathProgramCache]: Analyzing trace with hash -1987244588, now seen corresponding path program 2 times [2024-09-13 10:27:37,199 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:27:37,199 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1337561845] [2024-09-13 10:27:37,199 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:27:37,199 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:27:37,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:37,286 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2024-09-13 10:27:37,288 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 10:27:37,327 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 27 proven. 14 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-13 10:27:37,328 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:27:37,328 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1337561845] [2024-09-13 10:27:37,328 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1337561845] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:27:37,328 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [28389532] [2024-09-13 10:27:37,328 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-13 10:27:37,328 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:27:37,328 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:27:37,330 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:27:37,332 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-13 10:27:37,375 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-13 10:27:37,375 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 10:27:37,376 INFO L262 TraceCheckSpWp]: Trace formula consists of 126 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-13 10:27:37,378 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:27:37,513 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 1 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:37,517 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:27:37,690 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 1 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 10:27:37,690 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [28389532] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 10:27:37,691 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-13 10:27:37,691 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 14, 14] total 18 [2024-09-13 10:27:37,691 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1137518504] [2024-09-13 10:27:37,691 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-13 10:27:37,691 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-13 10:27:37,691 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:27:37,692 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-13 10:27:37,692 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=261, Unknown=0, NotChecked=0, Total=306 [2024-09-13 10:27:37,692 INFO L87 Difference]: Start difference. First operand 124 states and 141 transitions. Second operand has 18 states, 18 states have (on average 3.0) internal successors, (54), 13 states have internal predecessors, (54), 6 states have call successors, (9), 6 states have call predecessors, (9), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:37,984 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:27:37,985 INFO L93 Difference]: Finished difference Result 43 states and 45 transitions. [2024-09-13 10:27:37,985 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-13 10:27:37,985 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 3.0) internal successors, (54), 13 states have internal predecessors, (54), 6 states have call successors, (9), 6 states have call predecessors, (9), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2024-09-13 10:27:37,985 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:27:37,985 INFO L225 Difference]: With dead ends: 43 [2024-09-13 10:27:37,985 INFO L226 Difference]: Without dead ends: 0 [2024-09-13 10:27:37,986 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 104 GetRequests, 65 SyntacticMatches, 11 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 147 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=170, Invalid=700, Unknown=0, NotChecked=0, Total=870 [2024-09-13 10:27:37,987 INFO L434 NwaCegarLoop]: 7 mSDtfsCounter, 63 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 243 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 63 SdHoareTripleChecker+Valid, 32 SdHoareTripleChecker+Invalid, 254 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 243 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-13 10:27:37,987 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [63 Valid, 32 Invalid, 254 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 243 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-13 10:27:37,987 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-09-13 10:27:37,990 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-09-13 10:27:37,990 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-13 10:27:37,991 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-09-13 10:27:37,991 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 40 [2024-09-13 10:27:37,991 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:27:37,991 INFO L474 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-09-13 10:27:37,991 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 3.0) internal successors, (54), 13 states have internal predecessors, (54), 6 states have call successors, (9), 6 states have call predecessors, (9), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-13 10:27:37,991 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-09-13 10:27:37,991 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-09-13 10:27:37,994 INFO L785 garLoopResultBuilder]: Registering result SAFE for location multiple_ofErr0ENSURES_VIOLATIONPOST_CONDITION (3 of 4 remaining) [2024-09-13 10:27:37,994 INFO L785 garLoopResultBuilder]: Registering result SAFE for location multErr0ENSURES_VIOLATIONPOST_CONDITION (2 of 4 remaining) [2024-09-13 10:27:37,994 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONPOST_CONDITION (1 of 4 remaining) [2024-09-13 10:27:37,994 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION (0 of 4 remaining) [2024-09-13 10:27:38,011 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-13 10:27:38,198 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-13 10:27:38,201 INFO L408 BasicCegarLoop]: Path program histogram: [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:27:38,203 INFO L165 ceAbstractionStarter]: Computing trace abstraction results [2024-09-13 10:27:38,205 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.09 10:27:38 BoogieIcfgContainer [2024-09-13 10:27:38,205 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-09-13 10:27:38,206 INFO L158 Benchmark]: Toolchain (without parser) took 9994.55ms. Allocated memory was 209.7MB in the beginning and 268.4MB in the end (delta: 58.7MB). Free memory was 139.4MB in the beginning and 215.9MB in the end (delta: -76.6MB). There was no memory consumed. Max. memory is 16.1GB. [2024-09-13 10:27:38,206 INFO L158 Benchmark]: Witness Parser took 0.67ms. Allocated memory is still 109.1MB. Free memory is still 71.4MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-13 10:27:38,206 INFO L158 Benchmark]: CDTParser took 0.86ms. Allocated memory is still 209.7MB. Free memory is still 186.2MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-13 10:27:38,207 INFO L158 Benchmark]: CACSL2BoogieTranslator took 320.50ms. Allocated memory is still 209.7MB. Free memory was 139.2MB in the beginning and 182.7MB in the end (delta: -43.5MB). Peak memory consumption was 19.8MB. Max. memory is 16.1GB. [2024-09-13 10:27:38,207 INFO L158 Benchmark]: Boogie Procedure Inliner took 39.97ms. Allocated memory is still 209.7MB. Free memory was 182.7MB in the beginning and 180.8MB in the end (delta: 1.8MB). There was no memory consumed. Max. memory is 16.1GB. [2024-09-13 10:27:38,207 INFO L158 Benchmark]: Boogie Preprocessor took 50.58ms. Allocated memory is still 209.7MB. Free memory was 180.8MB in the beginning and 178.8MB in the end (delta: 2.0MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2024-09-13 10:27:38,207 INFO L158 Benchmark]: RCFGBuilder took 412.32ms. Allocated memory is still 209.7MB. Free memory was 178.8MB in the beginning and 162.0MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-09-13 10:27:38,208 INFO L158 Benchmark]: TraceAbstraction took 9165.64ms. Allocated memory was 209.7MB in the beginning and 268.4MB in the end (delta: 58.7MB). Free memory was 161.2MB in the beginning and 215.9MB in the end (delta: -54.7MB). Peak memory consumption was 3.6MB. Max. memory is 16.1GB. [2024-09-13 10:27:38,209 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * Witness Parser took 0.67ms. Allocated memory is still 109.1MB. Free memory is still 71.4MB. There was no memory consumed. Max. memory is 16.1GB. * CDTParser took 0.86ms. Allocated memory is still 209.7MB. Free memory is still 186.2MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 320.50ms. Allocated memory is still 209.7MB. Free memory was 139.2MB in the beginning and 182.7MB in the end (delta: -43.5MB). Peak memory consumption was 19.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 39.97ms. Allocated memory is still 209.7MB. Free memory was 182.7MB in the beginning and 180.8MB in the end (delta: 1.8MB). There was no memory consumed. Max. memory is 16.1GB. * Boogie Preprocessor took 50.58ms. Allocated memory is still 209.7MB. Free memory was 180.8MB in the beginning and 178.8MB in the end (delta: 2.0MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * RCFGBuilder took 412.32ms. Allocated memory is still 209.7MB. Free memory was 178.8MB in the beginning and 162.0MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 9165.64ms. Allocated memory was 209.7MB in the beginning and 268.4MB in the end (delta: 58.7MB). Free memory was 161.2MB in the beginning and 215.9MB in the end (delta: -54.7MB). Peak memory consumption was 3.6MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 31]: procedure postcondition always holds For all program executions holds that procedure postcondition always holds at this location - PositiveResult [Line: 17]: procedure postcondition always holds For all program executions holds that procedure postcondition always holds at this location - PositiveResult [Line: 52]: procedure postcondition always holds For all program executions holds that procedure postcondition always holds at this location - PositiveResult [Line: 98]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 4 procedures, 53 locations, 4 error locations. Started 1 CEGAR loops. OverallTime: 9.1s, OverallIterations: 22, TraceHistogramMax: 6, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 2.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 521 SdHoareTripleChecker+Valid, 1.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 476 mSDsluCounter, 5365 SdHoareTripleChecker+Invalid, 1.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 4177 mSDsCounter, 162 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1987 IncrementalHoareTripleChecker+Invalid, 2149 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 162 mSolverCounterUnsat, 1188 mSDtfsCounter, 1987 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 674 GetRequests, 445 SyntacticMatches, 30 SemanticMatches, 199 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 579 ImplicationChecksByTransitivity, 1.9s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=127occurred in iteration=18, InterpolantAutomatonStates: 170, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 22 MinimizatonAttempts, 88 StatesRemovedByMinimization, 16 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 3.6s InterpolantComputationTime, 786 NumberOfCodeBlocks, 774 NumberOfCodeBlocksAsserted, 32 NumberOfCheckSat, 924 ConstructedInterpolants, 0 QuantifiedInterpolants, 2465 SizeOfPredicates, 30 NumberOfNonLiveVariables, 948 ConjunctsInSsa, 86 ConjunctsInUnsatCore, 37 InterpolantComputations, 16 PerfectInterpolantSequences, 244/461 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 4 specifications checked. All of them hold RESULT: Ultimate proved your program to be correct! [2024-09-13 10:27:38,234 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE