./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_fermat2-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 1d5fa637 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_fermat2-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 9ae1eacd45e2434e505261d43bb17259916099964617682d271ef41fa1c24d0c --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-1d5fa63-m [2024-09-13 09:56:57,210 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-13 09:56:57,258 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-13 09:56:57,265 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-13 09:56:57,265 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-13 09:56:57,287 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-13 09:56:57,288 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-13 09:56:57,288 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-13 09:56:57,289 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-13 09:56:57,291 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-13 09:56:57,292 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-13 09:56:57,292 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-13 09:56:57,292 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-13 09:56:57,293 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-13 09:56:57,293 INFO L153 SettingsManager]: * Use SBE=true [2024-09-13 09:56:57,293 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-13 09:56:57,293 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-13 09:56:57,294 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-13 09:56:57,294 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-13 09:56:57,294 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-13 09:56:57,295 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-13 09:56:57,295 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-13 09:56:57,295 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-13 09:56:57,295 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-13 09:56:57,295 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-13 09:56:57,296 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-13 09:56:57,296 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-13 09:56:57,296 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-13 09:56:57,296 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-13 09:56:57,296 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-13 09:56:57,297 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-13 09:56:57,297 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-13 09:56:57,297 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-13 09:56:57,298 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-13 09:56:57,298 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-13 09:56:57,298 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-13 09:56:57,298 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-13 09:56:57,299 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-13 09:56:57,299 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-13 09:56:57,299 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-13 09:56:57,299 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-13 09:56:57,299 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-13 09:56:57,299 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 9ae1eacd45e2434e505261d43bb17259916099964617682d271ef41fa1c24d0c Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-13 09:56:57,480 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-13 09:56:57,503 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-13 09:56:57,505 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-13 09:56:57,506 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-13 09:56:57,507 INFO L274 PluginConnector]: CDTParser initialized [2024-09-13 09:56:57,508 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_fermat2-ll.c [2024-09-13 09:56:58,755 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-13 09:56:58,897 INFO L384 CDTParser]: Found 1 translation units. [2024-09-13 09:56:58,897 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_fermat2-ll.c [2024-09-13 09:56:58,902 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/6adf28c5d/1cdec6aedb294ceb9603019c5f629ae8/FLAG06bb0ab10 [2024-09-13 09:56:58,915 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/6adf28c5d/1cdec6aedb294ceb9603019c5f629ae8 [2024-09-13 09:56:58,917 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-13 09:56:58,917 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-13 09:56:58,919 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-13 09:56:58,919 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-13 09:56:58,923 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-13 09:56:58,923 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.09 09:56:58" (1/1) ... [2024-09-13 09:56:58,925 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@10c6c46 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:58, skipping insertion in model container [2024-09-13 09:56:58,925 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.09 09:56:58" (1/1) ... [2024-09-13 09:56:58,942 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-13 09:56:59,064 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_fermat2-ll.c[1060,1073] [2024-09-13 09:56:59,082 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-13 09:56:59,094 INFO L200 MainTranslator]: Completed pre-run [2024-09-13 09:56:59,120 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_fermat2-ll.c[1060,1073] [2024-09-13 09:56:59,131 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-13 09:56:59,149 INFO L204 MainTranslator]: Completed translation [2024-09-13 09:56:59,149 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59 WrapperNode [2024-09-13 09:56:59,149 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-13 09:56:59,150 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-13 09:56:59,151 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-13 09:56:59,151 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-13 09:56:59,162 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,169 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,175 INFO L138 Inliner]: procedures = 16, calls = 59, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-13 09:56:59,175 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-13 09:56:59,176 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-13 09:56:59,176 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-13 09:56:59,176 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-13 09:56:59,184 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,184 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,186 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,197 INFO L175 MemorySlicer]: Split 36 memory accesses to 5 slices as follows [2, 8, 6, 10, 10]. 28 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0]. The 8 writes are split as follows [0, 3, 1, 2, 2]. [2024-09-13 09:56:59,197 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,198 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,202 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,203 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,204 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,205 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,206 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-13 09:56:59,207 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-13 09:56:59,207 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-13 09:56:59,207 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-13 09:56:59,208 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (1/1) ... [2024-09-13 09:56:59,213 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-13 09:56:59,220 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:56:59,232 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-13 09:56:59,236 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-13 09:56:59,270 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-13 09:56:59,271 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-13 09:56:59,271 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-13 09:56:59,271 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-13 09:56:59,271 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-13 09:56:59,271 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-13 09:56:59,271 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_33_to_42_0 [2024-09-13 09:56:59,272 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_33_to_42_0 [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-13 09:56:59,272 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-13 09:56:59,273 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-13 09:56:59,273 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-13 09:56:59,273 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-13 09:56:59,274 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-13 09:56:59,274 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-13 09:56:59,274 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-13 09:56:59,275 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-13 09:56:59,275 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-13 09:56:59,362 INFO L242 CfgBuilder]: Building ICFG [2024-09-13 09:56:59,364 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-13 09:56:59,553 INFO L? ?]: Removed 8 outVars from TransFormulas that were not future-live. [2024-09-13 09:56:59,553 INFO L291 CfgBuilder]: Performing block encoding [2024-09-13 09:56:59,575 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-13 09:56:59,575 INFO L318 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-13 09:56:59,575 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.09 09:56:59 BoogieIcfgContainer [2024-09-13 09:56:59,575 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-13 09:56:59,577 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-13 09:56:59,577 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-13 09:56:59,581 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-13 09:56:59,581 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.09 09:56:58" (1/3) ... [2024-09-13 09:56:59,582 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@389f6e26 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.09 09:56:59, skipping insertion in model container [2024-09-13 09:56:59,582 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.09 09:56:59" (2/3) ... [2024-09-13 09:56:59,582 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@389f6e26 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.09 09:56:59, skipping insertion in model container [2024-09-13 09:56:59,583 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.09 09:56:59" (3/3) ... [2024-09-13 09:56:59,584 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_fermat2-ll.c [2024-09-13 09:56:59,595 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-13 09:56:59,596 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-13 09:56:59,636 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-13 09:56:59,641 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@40e6881f, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-13 09:56:59,641 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-13 09:56:59,644 INFO L276 IsEmpty]: Start isEmpty. Operand has 35 states, 20 states have (on average 1.3) internal successors, (26), 22 states have internal predecessors, (26), 8 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) [2024-09-13 09:56:59,649 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-13 09:56:59,649 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:56:59,650 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:56:59,650 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:56:59,653 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:56:59,654 INFO L85 PathProgramCache]: Analyzing trace with hash -896464560, now seen corresponding path program 1 times [2024-09-13 09:56:59,660 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:56:59,660 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1979031940] [2024-09-13 09:56:59,661 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:56:59,661 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:56:59,779 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:56:59,831 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-13 09:56:59,833 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:56:59,838 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-13 09:56:59,839 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:56:59,842 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-13 09:56:59,843 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:56:59,847 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-13 09:56:59,850 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:56:59,850 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1979031940] [2024-09-13 09:56:59,851 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1979031940] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 09:56:59,851 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 09:56:59,851 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-13 09:56:59,857 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [117561869] [2024-09-13 09:56:59,857 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 09:56:59,866 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-13 09:56:59,866 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:56:59,885 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-13 09:56:59,885 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-13 09:56:59,887 INFO L87 Difference]: Start difference. First operand has 35 states, 20 states have (on average 1.3) internal successors, (26), 22 states have internal predecessors, (26), 8 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-13 09:56:59,911 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 09:56:59,911 INFO L93 Difference]: Finished difference Result 64 states and 83 transitions. [2024-09-13 09:56:59,912 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-13 09:56:59,913 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 24 [2024-09-13 09:56:59,914 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 09:56:59,918 INFO L225 Difference]: With dead ends: 64 [2024-09-13 09:56:59,918 INFO L226 Difference]: Without dead ends: 31 [2024-09-13 09:56:59,931 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-13 09:56:59,938 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 37 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-13 09:56:59,938 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 37 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-13 09:56:59,977 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 31 states. [2024-09-13 09:56:59,990 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 31 to 31. [2024-09-13 09:56:59,991 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 31 states, 18 states have (on average 1.1666666666666667) internal successors, (21), 20 states have internal predecessors, (21), 8 states have call successors, (8), 5 states have call predecessors, (8), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-13 09:56:59,992 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 31 states to 31 states and 35 transitions. [2024-09-13 09:56:59,993 INFO L78 Accepts]: Start accepts. Automaton has 31 states and 35 transitions. Word has length 24 [2024-09-13 09:56:59,993 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 09:56:59,993 INFO L474 AbstractCegarLoop]: Abstraction has 31 states and 35 transitions. [2024-09-13 09:56:59,994 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-13 09:56:59,994 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:56:59,994 INFO L276 IsEmpty]: Start isEmpty. Operand 31 states and 35 transitions. [2024-09-13 09:56:59,995 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-13 09:56:59,995 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:56:59,995 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:56:59,995 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-13 09:56:59,996 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:56:59,996 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:56:59,996 INFO L85 PathProgramCache]: Analyzing trace with hash -1783747884, now seen corresponding path program 1 times [2024-09-13 09:56:59,996 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:56:59,996 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1740712062] [2024-09-13 09:56:59,997 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:56:59,997 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:57:00,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 09:57:00,077 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1924701133] [2024-09-13 09:57:00,080 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:57:00,080 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:57:00,080 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:57:00,082 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 09:57:00,082 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-13 09:57:00,193 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:57:00,196 INFO L262 TraceCheckSpWp]: Trace formula consists of 185 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-13 09:57:00,203 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 09:57:00,235 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-13 09:57:00,255 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 09:57:00,264 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 09:57:00,282 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 09:57:00,442 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 31 [2024-09-13 09:57:00,454 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 27 [2024-09-13 09:57:00,462 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 56 treesize of output 32 [2024-09-13 09:57:00,570 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-13 09:57:00,570 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-13 09:57:00,570 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:57:00,571 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1740712062] [2024-09-13 09:57:00,571 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 09:57:00,573 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1924701133] [2024-09-13 09:57:00,573 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1924701133] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-13 09:57:00,573 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-13 09:57:00,573 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-13 09:57:00,574 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [425865578] [2024-09-13 09:57:00,574 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-13 09:57:00,575 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-13 09:57:00,576 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:57:00,576 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-13 09:57:00,576 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-13 09:57:00,576 INFO L87 Difference]: Start difference. First operand 31 states and 35 transitions. Second operand has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-13 09:57:02,505 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.00s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-13 09:57:02,565 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 09:57:02,566 INFO L93 Difference]: Finished difference Result 49 states and 58 transitions. [2024-09-13 09:57:02,566 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-13 09:57:02,567 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 24 [2024-09-13 09:57:02,567 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 09:57:02,569 INFO L225 Difference]: With dead ends: 49 [2024-09-13 09:57:02,569 INFO L226 Difference]: Without dead ends: 47 [2024-09-13 09:57:02,569 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 26 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-13 09:57:02,570 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 15 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 107 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 145 SdHoareTripleChecker+Invalid, 114 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 107 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2024-09-13 09:57:02,570 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 145 Invalid, 114 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 107 Invalid, 0 Unknown, 0 Unchecked, 1.9s Time] [2024-09-13 09:57:02,571 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 47 states. [2024-09-13 09:57:02,582 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 47 to 46. [2024-09-13 09:57:02,582 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 28 states have (on average 1.1785714285714286) internal successors, (33), 31 states have internal predecessors, (33), 10 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (12), 8 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-13 09:57:02,583 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 55 transitions. [2024-09-13 09:57:02,583 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 55 transitions. Word has length 24 [2024-09-13 09:57:02,584 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 09:57:02,584 INFO L474 AbstractCegarLoop]: Abstraction has 46 states and 55 transitions. [2024-09-13 09:57:02,584 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 3 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-13 09:57:02,584 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:57:02,584 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 55 transitions. [2024-09-13 09:57:02,585 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-13 09:57:02,585 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:57:02,585 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:57:02,599 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2024-09-13 09:57:02,786 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:57:02,787 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:57:02,787 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:57:02,787 INFO L85 PathProgramCache]: Analyzing trace with hash -391677542, now seen corresponding path program 1 times [2024-09-13 09:57:02,787 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:57:02,788 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1470438842] [2024-09-13 09:57:02,788 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:57:02,788 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:57:02,839 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 09:57:02,843 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1818827725] [2024-09-13 09:57:02,844 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:57:02,844 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:57:02,844 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:57:02,846 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 09:57:02,847 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-13 09:57:02,916 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:57:02,918 INFO L262 TraceCheckSpWp]: Trace formula consists of 214 conjuncts, 56 conjuncts are in the unsatisfiable core [2024-09-13 09:57:02,921 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 09:57:03,065 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 09:57:03,069 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 09:57:03,083 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 09:57:03,131 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 27 [2024-09-13 09:57:03,138 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 35 [2024-09-13 09:57:03,463 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 97 treesize of output 61 [2024-09-13 09:57:03,485 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 09:57:03,486 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 67 treesize of output 63 [2024-09-13 09:57:03,600 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 09:57:03,601 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 09:57:08,808 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:57:08,808 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1470438842] [2024-09-13 09:57:08,808 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 09:57:08,808 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1818827725] [2024-09-13 09:57:08,808 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1818827725] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 09:57:08,809 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-13 09:57:08,809 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-13 09:57:08,809 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [721374819] [2024-09-13 09:57:08,809 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-13 09:57:08,812 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-13 09:57:08,813 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:57:08,813 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-13 09:57:08,814 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=75, Invalid=525, Unknown=0, NotChecked=0, Total=600 [2024-09-13 09:57:08,814 INFO L87 Difference]: Start difference. First operand 46 states and 55 transitions. Second operand has 19 states, 15 states have (on average 1.4666666666666666) internal successors, (22), 15 states have internal predecessors, (22), 6 states have call successors, (7), 4 states have call predecessors, (7), 5 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-13 09:57:12,904 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.07s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:57:14,850 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.44s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:57:14,986 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 09:57:14,987 INFO L93 Difference]: Finished difference Result 60 states and 67 transitions. [2024-09-13 09:57:14,987 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-13 09:57:14,987 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 15 states have (on average 1.4666666666666666) internal successors, (22), 15 states have internal predecessors, (22), 6 states have call successors, (7), 4 states have call predecessors, (7), 5 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) Word has length 34 [2024-09-13 09:57:14,987 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 09:57:14,988 INFO L225 Difference]: With dead ends: 60 [2024-09-13 09:57:14,988 INFO L226 Difference]: Without dead ends: 52 [2024-09-13 09:57:14,989 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 53 GetRequests, 16 SyntacticMatches, 5 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 241 ImplicationChecksByTransitivity, 5.5s TimeCoverageRelationStatistics Valid=133, Invalid=989, Unknown=0, NotChecked=0, Total=1122 [2024-09-13 09:57:14,989 INFO L434 NwaCegarLoop]: 14 mSDtfsCounter, 23 mSDsluCounter, 100 mSDsCounter, 0 mSdLazyCounter, 417 mSolverCounterSat, 6 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 114 SdHoareTripleChecker+Invalid, 424 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 417 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.9s IncrementalHoareTripleChecker+Time [2024-09-13 09:57:14,990 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 114 Invalid, 424 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 417 Invalid, 1 Unknown, 0 Unchecked, 5.9s Time] [2024-09-13 09:57:14,990 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 52 states. [2024-09-13 09:57:15,003 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 52 to 52. [2024-09-13 09:57:15,004 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 32 states have (on average 1.15625) internal successors, (37), 35 states have internal predecessors, (37), 10 states have call successors, (10), 8 states have call predecessors, (10), 9 states have return successors, (12), 8 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-13 09:57:15,004 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 59 transitions. [2024-09-13 09:57:15,005 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 59 transitions. Word has length 34 [2024-09-13 09:57:15,005 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 09:57:15,005 INFO L474 AbstractCegarLoop]: Abstraction has 52 states and 59 transitions. [2024-09-13 09:57:15,005 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 15 states have (on average 1.4666666666666666) internal successors, (22), 15 states have internal predecessors, (22), 6 states have call successors, (7), 4 states have call predecessors, (7), 5 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-13 09:57:15,005 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:57:15,006 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 59 transitions. [2024-09-13 09:57:15,006 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2024-09-13 09:57:15,006 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:57:15,006 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:57:15,020 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-13 09:57:15,210 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:57:15,211 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:57:15,211 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:57:15,212 INFO L85 PathProgramCache]: Analyzing trace with hash -1901447163, now seen corresponding path program 1 times [2024-09-13 09:57:15,212 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:57:15,212 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [136813517] [2024-09-13 09:57:15,212 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:57:15,212 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:57:15,266 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 09:57:15,270 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1683193093] [2024-09-13 09:57:15,270 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:57:15,270 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:57:15,270 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:57:15,272 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 09:57:15,283 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-13 09:57:15,376 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:57:15,381 INFO L262 TraceCheckSpWp]: Trace formula consists of 262 conjuncts, 121 conjuncts are in the unsatisfiable core [2024-09-13 09:57:15,384 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 09:57:15,388 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-13 09:57:15,454 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 09:57:15,458 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 09:57:15,469 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 09:57:15,795 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 56 treesize of output 40 [2024-09-13 09:57:15,804 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-13 09:57:15,947 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 79 treesize of output 67 [2024-09-13 09:57:15,953 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 62 treesize of output 46 [2024-09-13 09:57:15,958 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 115 treesize of output 71 [2024-09-13 09:57:16,708 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 1 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-13 09:57:16,708 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 09:57:31,457 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 4 proven. 1 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-13 09:57:31,458 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:57:31,458 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [136813517] [2024-09-13 09:57:31,458 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 09:57:31,458 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1683193093] [2024-09-13 09:57:31,458 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1683193093] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-13 09:57:31,458 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-13 09:57:31,458 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 11] total 24 [2024-09-13 09:57:31,459 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [996763810] [2024-09-13 09:57:31,459 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-13 09:57:31,460 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-13 09:57:31,460 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:57:31,461 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-13 09:57:31,461 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=76, Invalid=476, Unknown=0, NotChecked=0, Total=552 [2024-09-13 09:57:31,461 INFO L87 Difference]: Start difference. First operand 52 states and 59 transitions. Second operand has 24 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 19 states have internal predecessors, (39), 11 states have call successors, (14), 8 states have call predecessors, (14), 4 states have return successors, (7), 4 states have call predecessors, (7), 5 states have call successors, (7) [2024-09-13 09:57:35,513 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.03s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:57:39,486 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.71s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:57:41,143 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.66s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-13 09:58:04,438 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.26s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-13 09:58:06,360 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 09:58:06,360 INFO L93 Difference]: Finished difference Result 83 states and 96 transitions. [2024-09-13 09:58:06,361 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2024-09-13 09:58:06,361 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 19 states have internal predecessors, (39), 11 states have call successors, (14), 8 states have call predecessors, (14), 4 states have return successors, (7), 4 states have call predecessors, (7), 5 states have call successors, (7) Word has length 35 [2024-09-13 09:58:06,362 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 09:58:06,363 INFO L225 Difference]: With dead ends: 83 [2024-09-13 09:58:06,363 INFO L226 Difference]: Without dead ends: 77 [2024-09-13 09:58:06,363 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 85 GetRequests, 43 SyntacticMatches, 4 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 271 ImplicationChecksByTransitivity, 33.6s TimeCoverageRelationStatistics Valid=228, Invalid=1331, Unknown=1, NotChecked=0, Total=1560 [2024-09-13 09:58:06,364 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 74 mSDsluCounter, 263 mSDsCounter, 0 mSdLazyCounter, 529 mSolverCounterSat, 24 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 16.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 75 SdHoareTripleChecker+Valid, 286 SdHoareTripleChecker+Invalid, 554 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 24 IncrementalHoareTripleChecker+Valid, 529 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 16.2s IncrementalHoareTripleChecker+Time [2024-09-13 09:58:06,364 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [75 Valid, 286 Invalid, 554 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [24 Valid, 529 Invalid, 1 Unknown, 0 Unchecked, 16.2s Time] [2024-09-13 09:58:06,364 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 77 states. [2024-09-13 09:58:06,415 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 77 to 76. [2024-09-13 09:58:06,415 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 49 states have (on average 1.1224489795918366) internal successors, (55), 51 states have internal predecessors, (55), 13 states have call successors, (13), 12 states have call predecessors, (13), 13 states have return successors, (20), 12 states have call predecessors, (20), 11 states have call successors, (20) [2024-09-13 09:58:06,416 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 88 transitions. [2024-09-13 09:58:06,417 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 88 transitions. Word has length 35 [2024-09-13 09:58:06,417 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 09:58:06,417 INFO L474 AbstractCegarLoop]: Abstraction has 76 states and 88 transitions. [2024-09-13 09:58:06,418 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 19 states have internal predecessors, (39), 11 states have call successors, (14), 8 states have call predecessors, (14), 4 states have return successors, (7), 4 states have call predecessors, (7), 5 states have call successors, (7) [2024-09-13 09:58:06,418 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:58:06,418 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 88 transitions. [2024-09-13 09:58:06,419 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-09-13 09:58:06,419 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:58:06,419 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:58:06,427 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-13 09:58:06,623 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:58:06,624 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:58:06,624 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:58:06,624 INFO L85 PathProgramCache]: Analyzing trace with hash 987710829, now seen corresponding path program 1 times [2024-09-13 09:58:06,624 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:58:06,625 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1050852353] [2024-09-13 09:58:06,625 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:58:06,625 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:58:06,674 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 09:58:06,676 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [34023271] [2024-09-13 09:58:06,676 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:58:06,676 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:58:06,677 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:58:06,680 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 09:58:06,680 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-13 09:58:06,878 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:58:06,881 INFO L262 TraceCheckSpWp]: Trace formula consists of 293 conjuncts, 90 conjuncts are in the unsatisfiable core [2024-09-13 09:58:06,885 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 09:58:06,894 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-13 09:58:06,965 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 09:58:06,968 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 09:58:06,978 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 09:58:07,013 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 27 [2024-09-13 09:58:07,016 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 35 [2024-09-13 09:58:17,233 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 45 treesize of output 37 [2024-09-13 09:58:17,238 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 99 treesize of output 63 [2024-09-13 09:58:17,305 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 105 treesize of output 65 [2024-09-13 09:58:17,322 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 09:58:17,322 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 71 treesize of output 67 [2024-09-13 09:58:18,641 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 1 proven. 13 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-13 09:58:18,642 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 09:58:23,452 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:58:23,453 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1050852353] [2024-09-13 09:58:23,453 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 09:58:23,453 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [34023271] [2024-09-13 09:58:23,453 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [34023271] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 09:58:23,453 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-13 09:58:23,453 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-13 09:58:23,453 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [551653287] [2024-09-13 09:58:23,453 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-13 09:58:23,453 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-13 09:58:23,453 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:58:23,454 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-13 09:58:23,454 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=66, Invalid=485, Unknown=1, NotChecked=0, Total=552 [2024-09-13 09:58:23,454 INFO L87 Difference]: Start difference. First operand 76 states and 88 transitions. Second operand has 19 states, 15 states have (on average 1.8666666666666667) internal successors, (28), 16 states have internal predecessors, (28), 8 states have call successors, (9), 4 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-13 09:58:27,530 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.05s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:58:31,938 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:58:34,093 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.98s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:58:38,311 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:58:42,654 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.34s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:58:43,018 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 09:58:43,019 INFO L93 Difference]: Finished difference Result 82 states and 93 transitions. [2024-09-13 09:58:43,019 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2024-09-13 09:58:43,019 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 15 states have (on average 1.8666666666666667) internal successors, (28), 16 states have internal predecessors, (28), 8 states have call successors, (9), 4 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) Word has length 47 [2024-09-13 09:58:43,019 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 09:58:43,020 INFO L225 Difference]: With dead ends: 82 [2024-09-13 09:58:43,020 INFO L226 Difference]: Without dead ends: 76 [2024-09-13 09:58:43,021 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 26 SyntacticMatches, 8 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 209 ImplicationChecksByTransitivity, 15.0s TimeCoverageRelationStatistics Valid=126, Invalid=995, Unknown=1, NotChecked=0, Total=1122 [2024-09-13 09:58:43,021 INFO L434 NwaCegarLoop]: 17 mSDtfsCounter, 30 mSDsluCounter, 127 mSDsCounter, 0 mSdLazyCounter, 512 mSolverCounterSat, 8 mSolverCounterUnsat, 4 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 19.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 32 SdHoareTripleChecker+Valid, 144 SdHoareTripleChecker+Invalid, 524 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 512 IncrementalHoareTripleChecker+Invalid, 4 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 19.1s IncrementalHoareTripleChecker+Time [2024-09-13 09:58:43,021 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [32 Valid, 144 Invalid, 524 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 512 Invalid, 4 Unknown, 0 Unchecked, 19.1s Time] [2024-09-13 09:58:43,022 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2024-09-13 09:58:43,050 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2024-09-13 09:58:43,051 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 49 states have (on average 1.1224489795918366) internal successors, (55), 51 states have internal predecessors, (55), 13 states have call successors, (13), 12 states have call predecessors, (13), 13 states have return successors, (19), 12 states have call predecessors, (19), 11 states have call successors, (19) [2024-09-13 09:58:43,052 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 87 transitions. [2024-09-13 09:58:43,055 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 87 transitions. Word has length 47 [2024-09-13 09:58:43,055 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 09:58:43,055 INFO L474 AbstractCegarLoop]: Abstraction has 76 states and 87 transitions. [2024-09-13 09:58:43,055 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 15 states have (on average 1.8666666666666667) internal successors, (28), 16 states have internal predecessors, (28), 8 states have call successors, (9), 4 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-13 09:58:43,056 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:58:43,056 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 87 transitions. [2024-09-13 09:58:43,057 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-09-13 09:58:43,057 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:58:43,057 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:58:43,064 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-13 09:58:43,257 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:58:43,257 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:58:43,258 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:58:43,258 INFO L85 PathProgramCache]: Analyzing trace with hash 1805359279, now seen corresponding path program 1 times [2024-09-13 09:58:43,258 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:58:43,258 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1978822269] [2024-09-13 09:58:43,258 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:58:43,258 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:58:43,292 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 09:58:43,294 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [107641127] [2024-09-13 09:58:43,294 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:58:43,294 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:58:43,294 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:58:43,296 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 09:58:43,296 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-13 09:58:43,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-13 09:58:43,445 INFO L262 TraceCheckSpWp]: Trace formula consists of 293 conjuncts, 93 conjuncts are in the unsatisfiable core [2024-09-13 09:58:43,448 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 09:58:43,453 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-13 09:58:43,504 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 09:58:43,507 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 09:58:43,518 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 09:58:43,544 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 27 [2024-09-13 09:58:43,547 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 35 [2024-09-13 09:58:48,248 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-13 09:58:48,347 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 09:58:48,347 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 104 treesize of output 120 [2024-09-13 09:58:48,358 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 131 treesize of output 87 [2024-09-13 09:58:49,233 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 1 proven. 13 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-13 09:58:49,233 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 09:58:59,563 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:58:59,563 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1978822269] [2024-09-13 09:58:59,563 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 09:58:59,563 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [107641127] [2024-09-13 09:58:59,563 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [107641127] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 09:58:59,563 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-13 09:58:59,563 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21] total 21 [2024-09-13 09:58:59,563 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [371137254] [2024-09-13 09:58:59,563 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-13 09:58:59,564 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-13 09:58:59,564 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:58:59,564 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-13 09:58:59,564 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=80, Invalid=568, Unknown=2, NotChecked=0, Total=650 [2024-09-13 09:58:59,565 INFO L87 Difference]: Start difference. First operand 76 states and 87 transitions. Second operand has 21 states, 17 states have (on average 1.6470588235294117) internal successors, (28), 18 states have internal predecessors, (28), 8 states have call successors, (9), 4 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-13 09:59:03,600 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:07,613 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:13,189 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.61s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:14,966 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.78s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:15,112 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 09:59:15,112 INFO L93 Difference]: Finished difference Result 85 states and 100 transitions. [2024-09-13 09:59:15,113 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-13 09:59:15,113 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 17 states have (on average 1.6470588235294117) internal successors, (28), 18 states have internal predecessors, (28), 8 states have call successors, (9), 4 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) Word has length 47 [2024-09-13 09:59:15,113 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 09:59:15,114 INFO L225 Difference]: With dead ends: 85 [2024-09-13 09:59:15,114 INFO L226 Difference]: Without dead ends: 75 [2024-09-13 09:59:15,115 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 64 GetRequests, 24 SyntacticMatches, 7 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 253 ImplicationChecksByTransitivity, 14.9s TimeCoverageRelationStatistics Valid=135, Invalid=1053, Unknown=2, NotChecked=0, Total=1190 [2024-09-13 09:59:15,115 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 21 mSDsluCounter, 114 mSDsCounter, 0 mSdLazyCounter, 525 mSolverCounterSat, 7 mSolverCounterUnsat, 3 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 15.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 23 SdHoareTripleChecker+Valid, 130 SdHoareTripleChecker+Invalid, 535 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 525 IncrementalHoareTripleChecker+Invalid, 3 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 15.2s IncrementalHoareTripleChecker+Time [2024-09-13 09:59:15,115 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [23 Valid, 130 Invalid, 535 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 525 Invalid, 3 Unknown, 0 Unchecked, 15.2s Time] [2024-09-13 09:59:15,116 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 75 states. [2024-09-13 09:59:15,157 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 75 to 75. [2024-09-13 09:59:15,158 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 48 states have (on average 1.1041666666666667) internal successors, (53), 50 states have internal predecessors, (53), 14 states have call successors, (14), 12 states have call predecessors, (14), 12 states have return successors, (23), 12 states have call predecessors, (23), 12 states have call successors, (23) [2024-09-13 09:59:15,158 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 90 transitions. [2024-09-13 09:59:15,158 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 90 transitions. Word has length 47 [2024-09-13 09:59:15,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 09:59:15,159 INFO L474 AbstractCegarLoop]: Abstraction has 75 states and 90 transitions. [2024-09-13 09:59:15,159 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 17 states have (on average 1.6470588235294117) internal successors, (28), 18 states have internal predecessors, (28), 8 states have call successors, (9), 4 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-13 09:59:15,159 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:59:15,159 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 90 transitions. [2024-09-13 09:59:15,160 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2024-09-13 09:59:15,160 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 09:59:15,160 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 09:59:15,174 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-13 09:59:15,360 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2024-09-13 09:59:15,361 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 09:59:15,361 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 09:59:15,361 INFO L85 PathProgramCache]: Analyzing trace with hash -1682971646, now seen corresponding path program 2 times [2024-09-13 09:59:15,361 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 09:59:15,361 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1203396285] [2024-09-13 09:59:15,361 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 09:59:15,361 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 09:59:15,411 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 09:59:15,413 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [69701772] [2024-09-13 09:59:15,413 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-13 09:59:15,413 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 09:59:15,414 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 09:59:15,416 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 09:59:15,419 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-13 09:59:15,550 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-13 09:59:15,550 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 09:59:15,553 INFO L262 TraceCheckSpWp]: Trace formula consists of 372 conjuncts, 149 conjuncts are in the unsatisfiable core [2024-09-13 09:59:15,558 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 09:59:15,569 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-13 09:59:15,687 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 09:59:15,691 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 09:59:15,704 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 09:59:15,795 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 31 [2024-09-13 09:59:15,797 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 56 treesize of output 40 [2024-09-13 09:59:28,105 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 52 treesize of output 44 [2024-09-13 09:59:28,109 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 111 treesize of output 75 [2024-09-13 09:59:28,214 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 09:59:28,214 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 121 treesize of output 137 [2024-09-13 09:59:28,223 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 108 treesize of output 68 [2024-09-13 09:59:28,341 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 4 proven. 21 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-09-13 09:59:28,341 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 09:59:30,667 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 09:59:30,667 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1203396285] [2024-09-13 09:59:30,667 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 09:59:30,667 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [69701772] [2024-09-13 09:59:30,667 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [69701772] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 09:59:30,667 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-13 09:59:30,667 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-13 09:59:30,667 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1294838754] [2024-09-13 09:59:30,667 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-13 09:59:30,668 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-13 09:59:30,668 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 09:59:30,668 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-13 09:59:30,668 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=91, Invalid=837, Unknown=2, NotChecked=0, Total=930 [2024-09-13 09:59:30,669 INFO L87 Difference]: Start difference. First operand 75 states and 90 transitions. Second operand has 24 states, 19 states have (on average 1.5789473684210527) internal successors, (30), 20 states have internal predecessors, (30), 9 states have call successors, (10), 4 states have call predecessors, (10), 7 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2024-09-13 09:59:34,717 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:39,204 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:40,832 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.18s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:45,413 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.40s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:49,420 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:53,423 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 09:59:57,583 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.16s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:01,681 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.10s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:05,825 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:09,827 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:14,057 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.07s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:14,111 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:00:14,111 INFO L93 Difference]: Finished difference Result 83 states and 101 transitions. [2024-09-13 10:00:14,112 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-13 10:00:14,112 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 19 states have (on average 1.5789473684210527) internal successors, (30), 20 states have internal predecessors, (30), 9 states have call successors, (10), 4 states have call predecessors, (10), 7 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) Word has length 60 [2024-09-13 10:00:14,113 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:00:14,113 INFO L225 Difference]: With dead ends: 83 [2024-09-13 10:00:14,113 INFO L226 Difference]: Without dead ends: 77 [2024-09-13 10:00:14,114 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 79 GetRequests, 33 SyntacticMatches, 7 SemanticMatches, 39 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 390 ImplicationChecksByTransitivity, 14.1s TimeCoverageRelationStatistics Valid=158, Invalid=1480, Unknown=2, NotChecked=0, Total=1640 [2024-09-13 10:00:14,114 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 23 mSDsluCounter, 123 mSDsCounter, 0 mSdLazyCounter, 612 mSolverCounterSat, 14 mSolverCounterUnsat, 10 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 42.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 25 SdHoareTripleChecker+Valid, 139 SdHoareTripleChecker+Invalid, 636 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 612 IncrementalHoareTripleChecker+Invalid, 10 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 43.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:00:14,115 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [25 Valid, 139 Invalid, 636 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 612 Invalid, 10 Unknown, 0 Unchecked, 43.0s Time] [2024-09-13 10:00:14,115 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 77 states. [2024-09-13 10:00:14,159 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 77 to 75. [2024-09-13 10:00:14,159 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 48 states have (on average 1.1041666666666667) internal successors, (53), 50 states have internal predecessors, (53), 14 states have call successors, (14), 12 states have call predecessors, (14), 12 states have return successors, (23), 12 states have call predecessors, (23), 12 states have call successors, (23) [2024-09-13 10:00:14,161 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 90 transitions. [2024-09-13 10:00:14,162 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 90 transitions. Word has length 60 [2024-09-13 10:00:14,162 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:00:14,162 INFO L474 AbstractCegarLoop]: Abstraction has 75 states and 90 transitions. [2024-09-13 10:00:14,162 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 19 states have (on average 1.5789473684210527) internal successors, (30), 20 states have internal predecessors, (30), 9 states have call successors, (10), 4 states have call predecessors, (10), 7 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2024-09-13 10:00:14,162 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:00:14,162 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 90 transitions. [2024-09-13 10:00:14,163 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 74 [2024-09-13 10:00:14,163 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:00:14,163 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:00:14,177 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-13 10:00:14,364 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:00:14,364 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 10:00:14,365 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:00:14,365 INFO L85 PathProgramCache]: Analyzing trace with hash 628554005, now seen corresponding path program 3 times [2024-09-13 10:00:14,365 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:00:14,365 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [408307552] [2024-09-13 10:00:14,365 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:00:14,365 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:00:14,396 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 10:00:14,398 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1428801188] [2024-09-13 10:00:14,399 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-13 10:00:14,399 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:00:14,399 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:00:14,404 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:00:14,405 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-13 10:00:14,884 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-09-13 10:00:14,884 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 10:00:14,888 INFO L262 TraceCheckSpWp]: Trace formula consists of 449 conjuncts, 159 conjuncts are in the unsatisfiable core [2024-09-13 10:00:14,892 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:00:14,957 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 10:00:14,964 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 10:00:14,968 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 10:00:15,011 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 27 [2024-09-13 10:00:15,013 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 35 [2024-09-13 10:00:23,818 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 48 treesize of output 40 [2024-09-13 10:00:23,821 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 102 treesize of output 66 [2024-09-13 10:00:23,892 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 10:00:23,893 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 97 treesize of output 93 [2024-09-13 10:00:23,897 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 99 treesize of output 59 [2024-09-13 10:00:24,018 INFO L134 CoverageAnalysis]: Checked inductivity of 84 backedges. 1 proven. 44 refuted. 3 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-13 10:00:24,018 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:00:30,461 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:00:30,461 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [408307552] [2024-09-13 10:00:30,461 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 10:00:30,461 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1428801188] [2024-09-13 10:00:30,461 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1428801188] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:00:30,461 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-13 10:00:30,461 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-13 10:00:30,461 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [876240237] [2024-09-13 10:00:30,461 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-13 10:00:30,462 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-13 10:00:30,462 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:00:30,462 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-13 10:00:30,462 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=100, Invalid=827, Unknown=3, NotChecked=0, Total=930 [2024-09-13 10:00:30,462 INFO L87 Difference]: Start difference. First operand 75 states and 90 transitions. Second operand has 24 states, 20 states have (on average 1.65) internal successors, (33), 21 states have internal predecessors, (33), 8 states have call successors, (10), 5 states have call predecessors, (10), 9 states have return successors, (10), 8 states have call predecessors, (10), 7 states have call successors, (10) [2024-09-13 10:00:34,607 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.12s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:38,810 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.19s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:43,635 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 3.80s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:45,430 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.61s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:49,522 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:50,833 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.31s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:00:50,983 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:00:50,984 INFO L93 Difference]: Finished difference Result 85 states and 106 transitions. [2024-09-13 10:00:50,984 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2024-09-13 10:00:50,984 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 20 states have (on average 1.65) internal successors, (33), 21 states have internal predecessors, (33), 8 states have call successors, (10), 5 states have call predecessors, (10), 9 states have return successors, (10), 8 states have call predecessors, (10), 7 states have call successors, (10) Word has length 73 [2024-09-13 10:00:50,985 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:00:50,985 INFO L225 Difference]: With dead ends: 85 [2024-09-13 10:00:50,985 INFO L226 Difference]: Without dead ends: 79 [2024-09-13 10:00:50,986 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 94 GetRequests, 49 SyntacticMatches, 4 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 334 ImplicationChecksByTransitivity, 14.4s TimeCoverageRelationStatistics Valid=191, Invalid=1612, Unknown=3, NotChecked=0, Total=1806 [2024-09-13 10:00:50,986 INFO L434 NwaCegarLoop]: 17 mSDtfsCounter, 26 mSDsluCounter, 154 mSDsCounter, 0 mSdLazyCounter, 644 mSolverCounterSat, 12 mSolverCounterUnsat, 3 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 20.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 29 SdHoareTripleChecker+Valid, 171 SdHoareTripleChecker+Invalid, 659 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 644 IncrementalHoareTripleChecker+Invalid, 3 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 20.0s IncrementalHoareTripleChecker+Time [2024-09-13 10:00:50,986 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [29 Valid, 171 Invalid, 659 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 644 Invalid, 3 Unknown, 0 Unchecked, 20.0s Time] [2024-09-13 10:00:50,987 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-13 10:00:51,045 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 77. [2024-09-13 10:00:51,045 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 77 states, 49 states have (on average 1.1020408163265305) internal successors, (54), 51 states have internal predecessors, (54), 14 states have call successors, (14), 12 states have call predecessors, (14), 13 states have return successors, (27), 13 states have call predecessors, (27), 12 states have call successors, (27) [2024-09-13 10:00:51,045 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 77 states to 77 states and 95 transitions. [2024-09-13 10:00:51,045 INFO L78 Accepts]: Start accepts. Automaton has 77 states and 95 transitions. Word has length 73 [2024-09-13 10:00:51,046 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:00:51,046 INFO L474 AbstractCegarLoop]: Abstraction has 77 states and 95 transitions. [2024-09-13 10:00:51,046 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 20 states have (on average 1.65) internal successors, (33), 21 states have internal predecessors, (33), 8 states have call successors, (10), 5 states have call predecessors, (10), 9 states have return successors, (10), 8 states have call predecessors, (10), 7 states have call successors, (10) [2024-09-13 10:00:51,046 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:00:51,046 INFO L276 IsEmpty]: Start isEmpty. Operand 77 states and 95 transitions. [2024-09-13 10:00:51,047 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 87 [2024-09-13 10:00:51,047 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:00:51,047 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:00:51,055 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-13 10:00:51,248 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:00:51,248 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 10:00:51,248 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:00:51,248 INFO L85 PathProgramCache]: Analyzing trace with hash -362786198, now seen corresponding path program 4 times [2024-09-13 10:00:51,248 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:00:51,249 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1068396635] [2024-09-13 10:00:51,249 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:00:51,249 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:00:51,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 10:00:51,288 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [357677303] [2024-09-13 10:00:51,289 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-13 10:00:51,289 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:00:51,289 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:00:51,290 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:00:51,291 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-13 10:00:51,547 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-13 10:00:51,547 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 10:00:51,551 INFO L262 TraceCheckSpWp]: Trace formula consists of 459 conjuncts, 193 conjuncts are in the unsatisfiable core [2024-09-13 10:00:51,559 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:00:51,587 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 10:00:51,589 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 10:00:51,596 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 10:00:51,620 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 27 [2024-09-13 10:00:52,824 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 63 treesize of output 47 [2024-09-13 10:00:52,834 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 114 treesize of output 74 [2024-09-13 10:00:52,959 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 93 treesize of output 57 [2024-09-13 10:00:52,971 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 10:00:52,971 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 73 treesize of output 61 [2024-09-13 10:00:53,107 INFO L134 CoverageAnalysis]: Checked inductivity of 136 backedges. 5 proven. 53 refuted. 0 times theorem prover too weak. 78 trivial. 0 not checked. [2024-09-13 10:00:53,107 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-13 10:00:58,218 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-13 10:00:58,218 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1068396635] [2024-09-13 10:00:58,218 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-13 10:00:58,218 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [357677303] [2024-09-13 10:00:58,219 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [357677303] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-13 10:00:58,219 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-13 10:00:58,219 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [27] total 27 [2024-09-13 10:00:58,219 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [47695485] [2024-09-13 10:00:58,219 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-13 10:00:58,219 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-13 10:00:58,219 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-13 10:00:58,220 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-13 10:00:58,220 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=105, Invalid=887, Unknown=0, NotChecked=0, Total=992 [2024-09-13 10:00:58,220 INFO L87 Difference]: Start difference. First operand 77 states and 95 transitions. Second operand has 27 states, 21 states have (on average 1.6666666666666667) internal successors, (35), 23 states have internal predecessors, (35), 9 states have call successors, (11), 4 states have call predecessors, (11), 8 states have return successors, (10), 9 states have call predecessors, (10), 8 states have call successors, (10) [2024-09-13 10:01:02,261 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-13 10:01:08,038 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.33s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:01:12,595 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.56s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-13 10:01:13,603 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-13 10:01:13,603 INFO L93 Difference]: Finished difference Result 87 states and 111 transitions. [2024-09-13 10:01:13,603 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2024-09-13 10:01:13,603 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 21 states have (on average 1.6666666666666667) internal successors, (35), 23 states have internal predecessors, (35), 9 states have call successors, (11), 4 states have call predecessors, (11), 8 states have return successors, (10), 9 states have call predecessors, (10), 8 states have call successors, (10) Word has length 86 [2024-09-13 10:01:13,604 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-13 10:01:13,604 INFO L225 Difference]: With dead ends: 87 [2024-09-13 10:01:13,604 INFO L226 Difference]: Without dead ends: 81 [2024-09-13 10:01:13,605 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 101 GetRequests, 62 SyntacticMatches, 2 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 441 ImplicationChecksByTransitivity, 4.6s TimeCoverageRelationStatistics Valid=150, Invalid=1332, Unknown=0, NotChecked=0, Total=1482 [2024-09-13 10:01:13,605 INFO L434 NwaCegarLoop]: 19 mSDtfsCounter, 17 mSDsluCounter, 170 mSDsCounter, 0 mSdLazyCounter, 613 mSolverCounterSat, 8 mSolverCounterUnsat, 3 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 14.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 19 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 624 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 613 IncrementalHoareTripleChecker+Invalid, 3 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 14.9s IncrementalHoareTripleChecker+Time [2024-09-13 10:01:13,605 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [19 Valid, 189 Invalid, 624 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 613 Invalid, 3 Unknown, 0 Unchecked, 14.9s Time] [2024-09-13 10:01:13,606 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2024-09-13 10:01:13,649 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 79. [2024-09-13 10:01:13,650 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 79 states, 50 states have (on average 1.1) internal successors, (55), 52 states have internal predecessors, (55), 14 states have call successors, (14), 12 states have call predecessors, (14), 14 states have return successors, (31), 14 states have call predecessors, (31), 12 states have call successors, (31) [2024-09-13 10:01:13,650 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 100 transitions. [2024-09-13 10:01:13,650 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 100 transitions. Word has length 86 [2024-09-13 10:01:13,651 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-13 10:01:13,651 INFO L474 AbstractCegarLoop]: Abstraction has 79 states and 100 transitions. [2024-09-13 10:01:13,651 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 21 states have (on average 1.6666666666666667) internal successors, (35), 23 states have internal predecessors, (35), 9 states have call successors, (11), 4 states have call predecessors, (11), 8 states have return successors, (10), 9 states have call predecessors, (10), 8 states have call successors, (10) [2024-09-13 10:01:13,651 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:01:13,651 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 100 transitions. [2024-09-13 10:01:13,652 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2024-09-13 10:01:13,652 INFO L208 NwaCegarLoop]: Found error trace [2024-09-13 10:01:13,652 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 6, 6, 6, 6, 6, 6, 5, 5, 5, 5, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-13 10:01:13,666 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-13 10:01:13,852 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:01:13,853 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-13 10:01:13,853 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-13 10:01:13,853 INFO L85 PathProgramCache]: Analyzing trace with hash -311680835, now seen corresponding path program 5 times [2024-09-13 10:01:13,853 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-13 10:01:13,853 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [535794220] [2024-09-13 10:01:13,853 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-13 10:01:13,853 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-13 10:01:13,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-13 10:01:13,911 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [195637650] [2024-09-13 10:01:13,912 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-13 10:01:13,912 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-13 10:01:13,913 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-13 10:01:13,914 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-13 10:01:13,915 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-13 10:01:14,387 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 7 check-sat command(s) [2024-09-13 10:01:14,388 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-13 10:01:14,392 INFO L262 TraceCheckSpWp]: Trace formula consists of 609 conjuncts, 216 conjuncts are in the unsatisfiable core [2024-09-13 10:01:14,398 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-13 10:01:14,402 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-13 10:01:14,455 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-13 10:01:14,460 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 15 [2024-09-13 10:01:14,464 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-13 10:01:14,504 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 27 [2024-09-13 10:01:14,507 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 35 [2024-09-13 10:01:24,847 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 63 treesize of output 47 [2024-09-13 10:01:24,850 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 153 treesize of output 101 [2024-09-13 10:01:24,942 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 107 treesize of output 67 [2024-09-13 10:01:24,966 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-13 10:01:24,966 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 88 treesize of output 104 [2024-09-13 10:01:25,079 INFO L134 CoverageAnalysis]: Checked inductivity of 201 backedges. 7 proven. 89 refuted. 0 times theorem prover too weak. 105 trivial. 0 not checked. [2024-09-13 10:01:25,079 INFO L327 TraceCheckSpWp]: Computing backward predicates...