./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/nla-digbench-scaling/egcd2-ll_valuebound2.c --full-output --witness-type correctness_witness --validate ../results/automizer-verification-files/SV-COMP24_unreach-call/egcd2-ll_valuebound2.yml/witness-2.1.yml --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version de325976 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReachWitnessValidation.xml -i ../sv-benchmarks/c/nla-digbench-scaling/egcd2-ll_valuebound2.c ../results/automizer-verification-files/SV-COMP24_unreach-call/egcd2-ll_valuebound2.yml/witness-2.1.yml -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --traceabstraction.positions.where.we.compute.the.hoare.annotation None --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-de32597-m [2024-09-17 19:47:12,509 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-17 19:47:12,565 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-17 19:47:12,570 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-17 19:47:12,570 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-17 19:47:12,599 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-17 19:47:12,600 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-17 19:47:12,600 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-17 19:47:12,600 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-17 19:47:12,601 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-17 19:47:12,608 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-17 19:47:12,608 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-17 19:47:12,609 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-17 19:47:12,609 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-17 19:47:12,609 INFO L153 SettingsManager]: * Use SBE=true [2024-09-17 19:47:12,609 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-17 19:47:12,610 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-17 19:47:12,610 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-17 19:47:12,610 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-17 19:47:12,610 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-17 19:47:12,611 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-17 19:47:12,613 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-17 19:47:12,613 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-17 19:47:12,614 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-17 19:47:12,614 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-17 19:47:12,614 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-17 19:47:12,614 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-17 19:47:12,614 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-17 19:47:12,614 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-17 19:47:12,615 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-17 19:47:12,615 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-17 19:47:12,615 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-17 19:47:12,615 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-17 19:47:12,615 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-17 19:47:12,616 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-17 19:47:12,616 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-17 19:47:12,616 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-17 19:47:12,616 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-17 19:47:12,616 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-17 19:47:12,616 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-17 19:47:12,617 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-17 19:47:12,619 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-17 19:47:12,619 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> None [2024-09-17 19:47:12,792 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-17 19:47:12,809 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-17 19:47:12,812 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-17 19:47:12,813 INFO L270 PluginConnector]: Initializing Witness Parser... [2024-09-17 19:47:12,813 INFO L274 PluginConnector]: Witness Parser initialized [2024-09-17 19:47:12,814 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../results/automizer-verification-files/SV-COMP24_unreach-call/egcd2-ll_valuebound2.yml/witness-2.1.yml [2024-09-17 19:47:12,881 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-17 19:47:12,881 INFO L274 PluginConnector]: CDTParser initialized [2024-09-17 19:47:12,881 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/nla-digbench-scaling/egcd2-ll_valuebound2.c [2024-09-17 19:47:14,120 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-17 19:47:14,253 INFO L384 CDTParser]: Found 1 translation units. [2024-09-17 19:47:14,254 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench-scaling/egcd2-ll_valuebound2.c [2024-09-17 19:47:14,259 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/9e2c0626a/d5a0921d40eb4e7ab28fe5b6a78bcccb/FLAG2fb2ed3da [2024-09-17 19:47:14,675 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/9e2c0626a/d5a0921d40eb4e7ab28fe5b6a78bcccb [2024-09-17 19:47:14,677 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-17 19:47:14,678 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2024-09-17 19:47:14,679 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-17 19:47:14,679 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-17 19:47:14,683 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-17 19:47:14,683 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 17.09 07:47:12" (1/2) ... [2024-09-17 19:47:14,684 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@5c504a39 and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 17.09 07:47:14, skipping insertion in model container [2024-09-17 19:47:14,684 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 17.09 07:47:12" (1/2) ... [2024-09-17 19:47:14,685 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.CACSL2BoogieTranslatorObserver@4bc1b17e and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator CORRECTNESS_WITNESS 17.09 07:47:14, skipping insertion in model container [2024-09-17 19:47:14,686 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.09 07:47:14" (2/2) ... [2024-09-17 19:47:14,686 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@5c504a39 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14, skipping insertion in model container [2024-09-17 19:47:14,686 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.09 07:47:14" (2/2) ... [2024-09-17 19:47:14,693 INFO L93 nessWitnessExtractor]: Found the following entries in the witness: [2024-09-17 19:47:14,696 INFO L1541 ArrayList]: Loop invariant at [L47-L56] ((((((((((((((((((r == 0) && (s == 1)) && (a == ((__int128) c + b))) && (0 <= c)) && (b == y)) && (k == 1)) && (yy == ((long long) y * y))) && (q == 0)) && (1 <= y)) && (xy == ((long long) y * x))) && (a == x)) && (x <= 2)) && (p == 1)) || ((((((((((((((r == 0) && (a == (c + ((__int128) b * k)))) && (s == 1)) && (1 <= a)) && (0 <= c)) && (yy == ((long long) y * y))) && ((c + ((__int128) b * 2)) <= 2)) && (q == 0)) && (1 <= b)) && (xy == ((long long) y * x))) && (a == x)) && (x == (c + ((__int128) k * y)))) && (x <= 2)) && (p == 1))) || ((((((((((((((r == 0) && (y <= 2)) && (k == 0)) && (s == 1)) && (1 <= a)) && (b == y)) && (yy == ((long long) y * y))) && (q == 0)) && (1 <= y)) && (xy == ((long long) y * x))) && (a == x)) && (c == x)) && (x <= 2)) && (p == 1))) || ((((((((((((y == 2) && (b == 1)) && (s == 0)) && (p == 0)) && (k == 0)) && (2 == xy)) && (r == 1)) && (c == 2)) && (x == 1)) && (yy == 4)) && (a == 2)) && (q == 1))) || ((((((((((((y == 2) && (b == 1)) && (s == 0)) && (p == 0)) && (2 == xy)) && (r == 1)) && (x == 1)) && (yy == 4)) && (k == 1)) && (a == 2)) && (q == 1)) && (c == 1))) || ((((((((((((y == 2) && (b == 1)) && (s == 0)) && (p == 0)) && (2 == xy)) && (r == 1)) && (x == 1)) && (yy == 4)) && (k == 2)) && (a == 2)) && (c == 0)) && (q == 1))) [2024-09-17 19:47:14,696 INFO L1541 ArrayList]: Loop invariant at [L41-L68] (((((((((((((b == 1) && (s == 0)) && (p == 0)) && (y == xy)) && (r == 1)) && (a == y)) && (x == 1)) && (yy == ((long long) y * y))) && (a == 2)) && (q == 1)) || (((((((((1 <= x) && (y <= 2)) && (b == 0)) && (p == 0)) && (r == 1)) && (a == y)) && (1 <= y)) && ((((__int128) q * x) + ((__int128) y * s)) == 0)) && (x <= 2))) || ((((((((((((r == 0) && (y <= 2)) && (s == 1)) && (1 <= a)) && (b == y)) && (yy == ((long long) y * y))) && (q == 0)) && (1 <= y)) && (xy == ((long long) y * x))) && (a == x)) && (x <= 2)) && (p == 1))) || (((((((((((long long) x + 1) <= y) && (r == 0)) && (((__int128) ((long long) x * 2) + b) == y)) && (y <= 2)) && (s == 1)) && (((__int128) q + 2) == 0)) && (((__int128) b + 1) <= x)) && (a == x)) && (p == 1))) [2024-09-17 19:47:14,696 INFO L1541 ArrayList]: Function contract at [L7]: requires null, ensures (\old(cond) != 0) [2024-09-17 19:47:14,696 INFO L1541 ArrayList]: Function contract at [L10]: requires (1 <= \old(cond)), ensures (1 <= \old(cond)) [2024-09-17 19:47:14,714 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-17 19:47:14,823 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench-scaling/egcd2-ll_valuebound2.c[490,503] [2024-09-17 19:47:14,851 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-17 19:47:14,861 INFO L200 MainTranslator]: Completed pre-run Start Parsing Global Start Parsing Global Start Parsing Global [2024-09-17 19:47:14,892 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench-scaling/egcd2-ll_valuebound2.c[490,503] Start Parsing Local Start Parsing Local [2024-09-17 19:47:14,925 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-17 19:47:14,938 INFO L204 MainTranslator]: Completed translation [2024-09-17 19:47:14,938 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14 WrapperNode [2024-09-17 19:47:14,938 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-17 19:47:14,939 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-17 19:47:14,939 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-17 19:47:14,939 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-17 19:47:14,944 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:14,950 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:14,975 INFO L138 Inliner]: procedures = 14, calls = 19, calls flagged for inlining = 2, calls inlined = 2, statements flattened = 79 [2024-09-17 19:47:14,975 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-17 19:47:14,976 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-17 19:47:14,976 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-17 19:47:14,976 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-17 19:47:14,988 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:14,988 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:14,990 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:14,996 WARN L109 MemorySlicer]: Omit memory slicing because it failed with the following exception: Unsupported: Procedure assume_abort_if_not is not part of the Ultimate memory model but has specification other that is not a ModifiesSpecification [2024-09-17 19:47:14,996 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:14,996 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:15,003 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:15,009 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:15,010 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:15,012 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:15,014 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-17 19:47:15,018 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-17 19:47:15,018 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-17 19:47:15,018 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-17 19:47:15,019 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (1/1) ... [2024-09-17 19:47:15,024 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-17 19:47:15,030 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:15,044 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-17 19:47:15,047 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-17 19:47:15,082 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-17 19:47:15,083 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-17 19:47:15,083 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-17 19:47:15,083 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2024-09-17 19:47:15,084 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-17 19:47:15,084 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-17 19:47:15,084 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-17 19:47:15,084 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-17 19:47:15,193 INFO L242 CfgBuilder]: Building ICFG [2024-09-17 19:47:15,195 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-17 19:47:15,411 WARN L783 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2024-09-17 19:47:15,435 INFO L? ?]: Removed 69 outVars from TransFormulas that were not future-live. [2024-09-17 19:47:15,435 INFO L291 CfgBuilder]: Performing block encoding [2024-09-17 19:47:15,457 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-17 19:47:15,457 INFO L318 CfgBuilder]: Removed 2 assume(true) statements. [2024-09-17 19:47:15,457 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.09 07:47:15 BoogieIcfgContainer [2024-09-17 19:47:15,458 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-17 19:47:15,463 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-17 19:47:15,463 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-17 19:47:15,467 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-17 19:47:15,467 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "witness-2.1.yml de.uni_freiburg.informatik.ultimate.witnessparser CORRECTNESS_WITNESS 17.09 07:47:12" (1/4) ... [2024-09-17 19:47:15,467 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77662e7a and model type witness-2.1.yml de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CORRECTNESS_WITNESS 17.09 07:47:15, skipping insertion in model container [2024-09-17 19:47:15,467 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.09 07:47:14" (2/4) ... [2024-09-17 19:47:15,468 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77662e7a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.09 07:47:15, skipping insertion in model container [2024-09-17 19:47:15,468 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:47:14" (3/4) ... [2024-09-17 19:47:15,468 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77662e7a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.09 07:47:15, skipping insertion in model container [2024-09-17 19:47:15,468 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.09 07:47:15" (4/4) ... [2024-09-17 19:47:15,472 INFO L112 eAbstractionObserver]: Analyzing ICFG egcd2-ll_valuebound2.c [2024-09-17 19:47:15,484 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:None NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-17 19:47:15,485 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 11 error locations. [2024-09-17 19:47:15,515 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-17 19:47:15,520 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=None, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@16ddedb0, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-17 19:47:15,520 INFO L337 AbstractCegarLoop]: Starting to check reachability of 11 error locations. [2024-09-17 19:47:15,523 INFO L276 IsEmpty]: Start isEmpty. Operand has 44 states, 24 states have (on average 1.5416666666666667) internal successors, (37), 30 states have internal predecessors, (37), 12 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (12), 12 states have call predecessors, (12), 12 states have call successors, (12) [2024-09-17 19:47:15,528 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 6 [2024-09-17 19:47:15,528 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:15,528 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1] [2024-09-17 19:47:15,529 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting assume_abort_if_notErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:15,532 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:15,532 INFO L85 PathProgramCache]: Analyzing trace with hash 135674271, now seen corresponding path program 1 times [2024-09-17 19:47:15,539 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:15,539 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [247596653] [2024-09-17 19:47:15,539 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:15,540 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:15,610 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:15,639 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-17 19:47:15,640 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:15,640 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [247596653] [2024-09-17 19:47:15,640 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [247596653] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:47:15,640 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:47:15,641 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-17 19:47:15,642 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1661744706] [2024-09-17 19:47:15,642 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:15,645 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-17 19:47:15,645 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:15,671 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-17 19:47:15,672 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-17 19:47:15,673 INFO L87 Difference]: Start difference. First operand has 44 states, 24 states have (on average 1.5416666666666667) internal successors, (37), 30 states have internal predecessors, (37), 12 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (12), 12 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 2.0) internal successors, (4), 2 states have internal predecessors, (4), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-17 19:47:15,693 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:15,693 INFO L93 Difference]: Finished difference Result 44 states and 55 transitions. [2024-09-17 19:47:15,695 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-17 19:47:15,696 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 2.0) internal successors, (4), 2 states have internal predecessors, (4), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 5 [2024-09-17 19:47:15,696 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:15,701 INFO L225 Difference]: With dead ends: 44 [2024-09-17 19:47:15,701 INFO L226 Difference]: Without dead ends: 42 [2024-09-17 19:47:15,703 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-17 19:47:15,706 INFO L434 NwaCegarLoop]: 52 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 52 SdHoareTripleChecker+Invalid, 3 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:15,707 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 52 Invalid, 3 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-17 19:47:15,718 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 42 states. [2024-09-17 19:47:15,728 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 42 to 42. [2024-09-17 19:47:15,729 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 42 states, 23 states have (on average 1.3043478260869565) internal successors, (30), 29 states have internal predecessors, (30), 12 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) [2024-09-17 19:47:15,730 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 42 states to 42 states and 53 transitions. [2024-09-17 19:47:15,731 INFO L78 Accepts]: Start accepts. Automaton has 42 states and 53 transitions. Word has length 5 [2024-09-17 19:47:15,731 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:15,731 INFO L474 AbstractCegarLoop]: Abstraction has 42 states and 53 transitions. [2024-09-17 19:47:15,731 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 2.0) internal successors, (4), 2 states have internal predecessors, (4), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-17 19:47:15,731 INFO L276 IsEmpty]: Start isEmpty. Operand 42 states and 53 transitions. [2024-09-17 19:47:15,732 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 6 [2024-09-17 19:47:15,732 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:15,732 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1] [2024-09-17 19:47:15,732 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-17 19:47:15,732 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting assume_abort_if_notErr0ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:15,733 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:15,733 INFO L85 PathProgramCache]: Analyzing trace with hash 135674333, now seen corresponding path program 1 times [2024-09-17 19:47:15,733 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:15,733 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1446890050] [2024-09-17 19:47:15,733 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:15,735 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:15,746 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:15,817 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-17 19:47:15,817 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:15,817 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1446890050] [2024-09-17 19:47:15,818 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1446890050] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:47:15,818 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:47:15,818 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-09-17 19:47:15,819 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1832547569] [2024-09-17 19:47:15,819 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:15,820 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-17 19:47:15,820 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:15,820 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-17 19:47:15,820 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-17 19:47:15,821 INFO L87 Difference]: Start difference. First operand 42 states and 53 transitions. Second operand has 4 states, 3 states have (on average 1.3333333333333333) internal successors, (4), 4 states have internal predecessors, (4), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-17 19:47:15,867 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:15,868 INFO L93 Difference]: Finished difference Result 41 states and 52 transitions. [2024-09-17 19:47:15,869 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-17 19:47:15,869 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 1.3333333333333333) internal successors, (4), 4 states have internal predecessors, (4), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 5 [2024-09-17 19:47:15,870 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:15,871 INFO L225 Difference]: With dead ends: 41 [2024-09-17 19:47:15,871 INFO L226 Difference]: Without dead ends: 41 [2024-09-17 19:47:15,872 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-17 19:47:15,873 INFO L434 NwaCegarLoop]: 42 mSDtfsCounter, 1 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 41 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 112 SdHoareTripleChecker+Invalid, 41 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 41 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:15,874 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 112 Invalid, 41 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 41 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-17 19:47:15,874 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 41 states. [2024-09-17 19:47:15,877 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 41 to 41. [2024-09-17 19:47:15,877 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 23 states have (on average 1.2608695652173914) internal successors, (29), 28 states have internal predecessors, (29), 12 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) [2024-09-17 19:47:15,878 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 52 transitions. [2024-09-17 19:47:15,878 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 52 transitions. Word has length 5 [2024-09-17 19:47:15,878 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:15,879 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 52 transitions. [2024-09-17 19:47:15,879 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 1.3333333333333333) internal successors, (4), 4 states have internal predecessors, (4), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-17 19:47:15,879 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 52 transitions. [2024-09-17 19:47:15,879 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-17 19:47:15,879 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:15,880 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:15,880 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-17 19:47:15,880 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:15,880 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:15,880 INFO L85 PathProgramCache]: Analyzing trace with hash 1738672974, now seen corresponding path program 1 times [2024-09-17 19:47:15,880 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:15,880 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1192372564] [2024-09-17 19:47:15,881 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:15,881 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:15,928 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,348 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:16,353 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,377 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:16,379 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,391 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:16,392 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,409 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:16,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,427 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:16,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,446 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:16,448 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,466 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 24 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-17 19:47:16,466 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:16,466 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1192372564] [2024-09-17 19:47:16,466 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1192372564] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:16,467 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [305447183] [2024-09-17 19:47:16,467 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:16,467 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:16,467 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:16,469 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:16,472 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-17 19:47:16,521 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:16,526 INFO L262 TraceCheckSpWp]: Trace formula consists of 103 conjuncts, 33 conjuncts are in the unsatisfiable core [2024-09-17 19:47:16,531 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:16,824 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 2 proven. 22 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-17 19:47:16,825 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:17,137 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 2 proven. 22 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-17 19:47:17,138 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [305447183] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:17,138 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-17 19:47:17,138 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 14 [2024-09-17 19:47:17,138 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [732399757] [2024-09-17 19:47:17,138 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:17,139 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-17 19:47:17,139 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:17,140 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-17 19:47:17,142 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=66, Invalid=144, Unknown=0, NotChecked=0, Total=210 [2024-09-17 19:47:17,142 INFO L87 Difference]: Start difference. First operand 41 states and 52 transitions. Second operand has 15 states, 8 states have (on average 1.75) internal successors, (14), 8 states have internal predecessors, (14), 10 states have call successors, (11), 1 states have call predecessors, (11), 2 states have return successors, (13), 10 states have call predecessors, (13), 10 states have call successors, (13) [2024-09-17 19:47:17,353 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:17,353 INFO L93 Difference]: Finished difference Result 54 states and 72 transitions. [2024-09-17 19:47:17,353 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-17 19:47:17,354 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 8 states have (on average 1.75) internal successors, (14), 8 states have internal predecessors, (14), 10 states have call successors, (11), 1 states have call predecessors, (11), 2 states have return successors, (13), 10 states have call predecessors, (13), 10 states have call successors, (13) Word has length 34 [2024-09-17 19:47:17,354 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:17,354 INFO L225 Difference]: With dead ends: 54 [2024-09-17 19:47:17,355 INFO L226 Difference]: Without dead ends: 54 [2024-09-17 19:47:17,355 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 89 GetRequests, 73 SyntacticMatches, 2 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 75 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=71, Invalid=169, Unknown=0, NotChecked=0, Total=240 [2024-09-17 19:47:17,355 INFO L434 NwaCegarLoop]: 27 mSDtfsCounter, 63 mSDsluCounter, 116 mSDsCounter, 0 mSdLazyCounter, 174 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 143 SdHoareTripleChecker+Invalid, 199 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 174 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:17,356 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [72 Valid, 143 Invalid, 199 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 174 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:47:17,356 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 54 states. [2024-09-17 19:47:17,360 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 54 to 51. [2024-09-17 19:47:17,360 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 51 states, 30 states have (on average 1.2666666666666666) internal successors, (38), 33 states have internal predecessors, (38), 16 states have call successors, (16), 2 states have call predecessors, (16), 2 states have return successors, (15), 15 states have call predecessors, (15), 15 states have call successors, (15) [2024-09-17 19:47:17,361 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 51 states to 51 states and 69 transitions. [2024-09-17 19:47:17,361 INFO L78 Accepts]: Start accepts. Automaton has 51 states and 69 transitions. Word has length 34 [2024-09-17 19:47:17,362 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:17,362 INFO L474 AbstractCegarLoop]: Abstraction has 51 states and 69 transitions. [2024-09-17 19:47:17,362 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 8 states have (on average 1.75) internal successors, (14), 8 states have internal predecessors, (14), 10 states have call successors, (11), 1 states have call predecessors, (11), 2 states have return successors, (13), 10 states have call predecessors, (13), 10 states have call successors, (13) [2024-09-17 19:47:17,362 INFO L276 IsEmpty]: Start isEmpty. Operand 51 states and 69 transitions. [2024-09-17 19:47:17,363 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-09-17 19:47:17,363 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:17,363 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:17,377 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-17 19:47:17,567 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:17,568 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:17,568 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:17,568 INFO L85 PathProgramCache]: Analyzing trace with hash -498970520, now seen corresponding path program 1 times [2024-09-17 19:47:17,568 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:17,568 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1708129513] [2024-09-17 19:47:17,568 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:17,568 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:17,578 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,894 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:17,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,896 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:17,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,899 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:17,900 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,901 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:17,903 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,904 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:17,906 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,915 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:17,918 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:17,929 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 60 trivial. 0 not checked. [2024-09-17 19:47:17,929 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:17,929 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1708129513] [2024-09-17 19:47:17,930 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1708129513] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:47:17,931 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:47:17,931 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-09-17 19:47:17,931 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [272424948] [2024-09-17 19:47:17,931 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:17,932 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-17 19:47:17,932 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:17,932 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-17 19:47:17,933 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-17 19:47:17,933 INFO L87 Difference]: Start difference. First operand 51 states and 69 transitions. Second operand has 5 states, 4 states have (on average 2.5) internal successors, (10), 5 states have internal predecessors, (10), 2 states have call successors, (6), 1 states have call predecessors, (6), 1 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-17 19:47:18,051 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:18,051 INFO L93 Difference]: Finished difference Result 60 states and 83 transitions. [2024-09-17 19:47:18,051 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-17 19:47:18,052 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 2.5) internal successors, (10), 5 states have internal predecessors, (10), 2 states have call successors, (6), 1 states have call predecessors, (6), 1 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 37 [2024-09-17 19:47:18,052 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:18,053 INFO L225 Difference]: With dead ends: 60 [2024-09-17 19:47:18,054 INFO L226 Difference]: Without dead ends: 60 [2024-09-17 19:47:18,054 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=14, Invalid=16, Unknown=0, NotChecked=0, Total=30 [2024-09-17 19:47:18,055 INFO L434 NwaCegarLoop]: 42 mSDtfsCounter, 21 mSDsluCounter, 64 mSDsCounter, 0 mSdLazyCounter, 57 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 25 SdHoareTripleChecker+Valid, 106 SdHoareTripleChecker+Invalid, 74 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 57 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:18,057 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [25 Valid, 106 Invalid, 74 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 57 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-17 19:47:18,057 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 60 states. [2024-09-17 19:47:18,062 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 60 to 54. [2024-09-17 19:47:18,063 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 54 states, 32 states have (on average 1.25) internal successors, (40), 36 states have internal predecessors, (40), 17 states have call successors, (17), 2 states have call predecessors, (17), 2 states have return successors, (16), 15 states have call predecessors, (16), 16 states have call successors, (16) [2024-09-17 19:47:18,065 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 54 states to 54 states and 73 transitions. [2024-09-17 19:47:18,065 INFO L78 Accepts]: Start accepts. Automaton has 54 states and 73 transitions. Word has length 37 [2024-09-17 19:47:18,066 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:18,066 INFO L474 AbstractCegarLoop]: Abstraction has 54 states and 73 transitions. [2024-09-17 19:47:18,066 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 2.5) internal successors, (10), 5 states have internal predecessors, (10), 2 states have call successors, (6), 1 states have call predecessors, (6), 1 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-17 19:47:18,067 INFO L276 IsEmpty]: Start isEmpty. Operand 54 states and 73 transitions. [2024-09-17 19:47:18,067 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-17 19:47:18,068 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:18,068 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:18,068 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-09-17 19:47:18,068 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr1ENSURES_VIOLATIONPOST_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:18,068 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:18,069 INFO L85 PathProgramCache]: Analyzing trace with hash 1880432174, now seen corresponding path program 1 times [2024-09-17 19:47:18,069 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:18,069 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1252798146] [2024-09-17 19:47:18,069 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:18,069 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:18,081 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,098 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:18,099 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,100 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:18,102 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,104 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:18,105 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,106 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:18,107 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,109 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:18,110 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,111 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:18,114 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,115 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 60 trivial. 0 not checked. [2024-09-17 19:47:18,115 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:18,115 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1252798146] [2024-09-17 19:47:18,115 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1252798146] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:47:18,115 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:47:18,115 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-17 19:47:18,116 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2013206982] [2024-09-17 19:47:18,116 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:18,116 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-09-17 19:47:18,116 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:18,117 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-09-17 19:47:18,117 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-17 19:47:18,117 INFO L87 Difference]: Start difference. First operand 54 states and 73 transitions. Second operand has 3 states, 2 states have (on average 7.0) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) [2024-09-17 19:47:18,141 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:18,141 INFO L93 Difference]: Finished difference Result 53 states and 72 transitions. [2024-09-17 19:47:18,142 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-09-17 19:47:18,142 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 7.0) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) Word has length 42 [2024-09-17 19:47:18,143 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:18,145 INFO L225 Difference]: With dead ends: 53 [2024-09-17 19:47:18,145 INFO L226 Difference]: Without dead ends: 53 [2024-09-17 19:47:18,145 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-17 19:47:18,146 INFO L434 NwaCegarLoop]: 43 mSDtfsCounter, 3 mSDsluCounter, 34 mSDsCounter, 0 mSdLazyCounter, 20 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 77 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 20 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:18,146 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 77 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 20 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-17 19:47:18,148 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2024-09-17 19:47:18,152 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2024-09-17 19:47:18,154 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 32 states have (on average 1.21875) internal successors, (39), 35 states have internal predecessors, (39), 17 states have call successors, (17), 2 states have call predecessors, (17), 2 states have return successors, (16), 15 states have call predecessors, (16), 16 states have call successors, (16) [2024-09-17 19:47:18,155 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 72 transitions. [2024-09-17 19:47:18,155 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 72 transitions. Word has length 42 [2024-09-17 19:47:18,155 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:18,155 INFO L474 AbstractCegarLoop]: Abstraction has 53 states and 72 transitions. [2024-09-17 19:47:18,155 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 7.0) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) [2024-09-17 19:47:18,155 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 72 transitions. [2024-09-17 19:47:18,156 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-17 19:47:18,156 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:18,157 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:18,157 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-09-17 19:47:18,157 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:18,157 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:18,157 INFO L85 PathProgramCache]: Analyzing trace with hash 1880432013, now seen corresponding path program 1 times [2024-09-17 19:47:18,157 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:18,158 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1491127691] [2024-09-17 19:47:18,158 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:18,158 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:18,173 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,205 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:18,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,207 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:18,208 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,209 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:18,209 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,210 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:18,210 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,211 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:18,212 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,213 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:18,213 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,214 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 60 trivial. 0 not checked. [2024-09-17 19:47:18,214 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:18,214 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1491127691] [2024-09-17 19:47:18,214 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1491127691] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:47:18,215 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:47:18,215 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-09-17 19:47:18,215 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [873562035] [2024-09-17 19:47:18,215 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:18,215 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-09-17 19:47:18,215 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:18,216 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-09-17 19:47:18,216 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-17 19:47:18,216 INFO L87 Difference]: Start difference. First operand 53 states and 72 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) [2024-09-17 19:47:18,222 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:18,222 INFO L93 Difference]: Finished difference Result 51 states and 70 transitions. [2024-09-17 19:47:18,225 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-09-17 19:47:18,225 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) Word has length 42 [2024-09-17 19:47:18,225 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:18,226 INFO L225 Difference]: With dead ends: 51 [2024-09-17 19:47:18,226 INFO L226 Difference]: Without dead ends: 51 [2024-09-17 19:47:18,226 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 15 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-09-17 19:47:18,226 INFO L434 NwaCegarLoop]: 46 mSDtfsCounter, 0 mSDsluCounter, 46 mSDsCounter, 0 mSdLazyCounter, 5 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 92 SdHoareTripleChecker+Invalid, 5 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 5 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:18,227 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 92 Invalid, 5 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 5 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-17 19:47:18,227 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 51 states. [2024-09-17 19:47:18,229 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 51 to 51. [2024-09-17 19:47:18,230 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 51 states, 31 states have (on average 1.1935483870967742) internal successors, (37), 33 states have internal predecessors, (37), 16 states have call successors, (16), 2 states have call predecessors, (16), 2 states have return successors, (16), 15 states have call predecessors, (16), 16 states have call successors, (16) [2024-09-17 19:47:18,230 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 51 states to 51 states and 69 transitions. [2024-09-17 19:47:18,230 INFO L78 Accepts]: Start accepts. Automaton has 51 states and 69 transitions. Word has length 42 [2024-09-17 19:47:18,230 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:18,231 INFO L474 AbstractCegarLoop]: Abstraction has 51 states and 69 transitions. [2024-09-17 19:47:18,231 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (7), 1 states have call predecessors, (7), 1 states have return successors, (6), 1 states have call predecessors, (6), 1 states have call successors, (6) [2024-09-17 19:47:18,231 INFO L276 IsEmpty]: Start isEmpty. Operand 51 states and 69 transitions. [2024-09-17 19:47:18,232 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2024-09-17 19:47:18,232 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:18,232 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:18,232 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-09-17 19:47:18,232 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:18,232 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:18,233 INFO L85 PathProgramCache]: Analyzing trace with hash 837542670, now seen corresponding path program 1 times [2024-09-17 19:47:18,233 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:18,233 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [310079843] [2024-09-17 19:47:18,233 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:18,233 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:18,252 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,630 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:18,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,634 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:18,634 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,635 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:18,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,637 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:18,638 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,641 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:18,643 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,648 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:18,649 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,654 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2024-09-17 19:47:18,655 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,664 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2024-09-17 19:47:18,666 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,675 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-09-17 19:47:18,676 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,685 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2024-09-17 19:47:18,686 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,696 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:18,696 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:18,696 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [310079843] [2024-09-17 19:47:18,696 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [310079843] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:18,696 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1526487566] [2024-09-17 19:47:18,696 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:18,696 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:18,697 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:18,698 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:18,699 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-17 19:47:18,747 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:18,748 INFO L262 TraceCheckSpWp]: Trace formula consists of 159 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-17 19:47:18,751 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:19,211 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:19,211 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:19,817 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:19,817 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1526487566] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:19,817 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-17 19:47:19,817 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 10 [2024-09-17 19:47:19,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1846874307] [2024-09-17 19:47:19,818 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:19,818 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-17 19:47:19,818 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:19,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-17 19:47:19,819 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=44, Invalid=66, Unknown=0, NotChecked=0, Total=110 [2024-09-17 19:47:19,819 INFO L87 Difference]: Start difference. First operand 51 states and 69 transitions. Second operand has 11 states, 10 states have (on average 2.9) internal successors, (29), 11 states have internal predecessors, (29), 6 states have call successors, (20), 1 states have call predecessors, (20), 1 states have return successors, (20), 6 states have call predecessors, (20), 6 states have call successors, (20) [2024-09-17 19:47:20,164 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:20,165 INFO L93 Difference]: Finished difference Result 84 states and 125 transitions. [2024-09-17 19:47:20,165 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2024-09-17 19:47:20,165 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 10 states have (on average 2.9) internal successors, (29), 11 states have internal predecessors, (29), 6 states have call successors, (20), 1 states have call predecessors, (20), 1 states have return successors, (20), 6 states have call predecessors, (20), 6 states have call successors, (20) Word has length 60 [2024-09-17 19:47:20,166 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:20,167 INFO L225 Difference]: With dead ends: 84 [2024-09-17 19:47:20,167 INFO L226 Difference]: Without dead ends: 84 [2024-09-17 19:47:20,167 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 146 GetRequests, 134 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 33 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=72, Invalid=110, Unknown=0, NotChecked=0, Total=182 [2024-09-17 19:47:20,167 INFO L434 NwaCegarLoop]: 49 mSDtfsCounter, 20 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 160 mSolverCounterSat, 31 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 171 SdHoareTripleChecker+Invalid, 191 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 31 IncrementalHoareTripleChecker+Valid, 160 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:20,168 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 171 Invalid, 191 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [31 Valid, 160 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:47:20,168 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-09-17 19:47:20,172 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 62. [2024-09-17 19:47:20,172 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 38 states have (on average 1.236842105263158) internal successors, (47), 40 states have internal predecessors, (47), 20 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (20), 19 states have call predecessors, (20), 20 states have call successors, (20) [2024-09-17 19:47:20,173 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 87 transitions. [2024-09-17 19:47:20,173 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 87 transitions. Word has length 60 [2024-09-17 19:47:20,173 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:20,173 INFO L474 AbstractCegarLoop]: Abstraction has 62 states and 87 transitions. [2024-09-17 19:47:20,173 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 10 states have (on average 2.9) internal successors, (29), 11 states have internal predecessors, (29), 6 states have call successors, (20), 1 states have call predecessors, (20), 1 states have return successors, (20), 6 states have call predecessors, (20), 6 states have call successors, (20) [2024-09-17 19:47:20,174 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 87 transitions. [2024-09-17 19:47:20,174 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2024-09-17 19:47:20,175 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:20,175 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:20,192 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-17 19:47:20,375 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-17 19:47:20,376 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:20,376 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:20,376 INFO L85 PathProgramCache]: Analyzing trace with hash 194017890, now seen corresponding path program 1 times [2024-09-17 19:47:20,376 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:20,376 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1437183789] [2024-09-17 19:47:20,376 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:20,376 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:20,398 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:20,400 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1311211289] [2024-09-17 19:47:20,400 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:20,400 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:20,400 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:20,401 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:20,402 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-17 19:47:20,444 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:20,449 INFO L262 TraceCheckSpWp]: Trace formula consists of 165 conjuncts, 36 conjuncts are in the unsatisfiable core [2024-09-17 19:47:20,451 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:20,992 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:20,992 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:21,507 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:21,508 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:21,508 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1437183789] [2024-09-17 19:47:21,508 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:21,509 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1311211289] [2024-09-17 19:47:21,509 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1311211289] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:21,509 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:47:21,509 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [6] total 9 [2024-09-17 19:47:21,509 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [592604612] [2024-09-17 19:47:21,509 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:21,510 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-17 19:47:21,510 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:21,510 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-17 19:47:21,510 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=25, Invalid=65, Unknown=0, NotChecked=0, Total=90 [2024-09-17 19:47:21,511 INFO L87 Difference]: Start difference. First operand 62 states and 87 transitions. Second operand has 6 states, 5 states have (on average 3.4) internal successors, (17), 6 states have internal predecessors, (17), 2 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) [2024-09-17 19:47:21,766 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:21,766 INFO L93 Difference]: Finished difference Result 95 states and 150 transitions. [2024-09-17 19:47:21,766 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-17 19:47:21,766 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 3.4) internal successors, (17), 6 states have internal predecessors, (17), 2 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) Word has length 61 [2024-09-17 19:47:21,767 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:21,767 INFO L225 Difference]: With dead ends: 95 [2024-09-17 19:47:21,767 INFO L226 Difference]: Without dead ends: 95 [2024-09-17 19:47:21,768 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 111 SyntacticMatches, 1 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 22 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=41, Invalid=115, Unknown=0, NotChecked=0, Total=156 [2024-09-17 19:47:21,768 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 19 mSDsluCounter, 91 mSDsCounter, 0 mSdLazyCounter, 107 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 27 SdHoareTripleChecker+Valid, 136 SdHoareTripleChecker+Invalid, 123 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 107 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:21,768 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [27 Valid, 136 Invalid, 123 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 107 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-17 19:47:21,769 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 95 states. [2024-09-17 19:47:21,773 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 95 to 94. [2024-09-17 19:47:21,774 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 94 states, 61 states have (on average 1.2622950819672132) internal successors, (77), 56 states have internal predecessors, (77), 36 states have call successors, (36), 2 states have call predecessors, (36), 2 states have return successors, (36), 35 states have call predecessors, (36), 36 states have call successors, (36) [2024-09-17 19:47:21,775 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 94 states to 94 states and 149 transitions. [2024-09-17 19:47:21,775 INFO L78 Accepts]: Start accepts. Automaton has 94 states and 149 transitions. Word has length 61 [2024-09-17 19:47:21,775 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:21,775 INFO L474 AbstractCegarLoop]: Abstraction has 94 states and 149 transitions. [2024-09-17 19:47:21,775 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 3.4) internal successors, (17), 6 states have internal predecessors, (17), 2 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) [2024-09-17 19:47:21,775 INFO L276 IsEmpty]: Start isEmpty. Operand 94 states and 149 transitions. [2024-09-17 19:47:21,776 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2024-09-17 19:47:21,777 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:21,777 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 4, 4, 4, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:21,789 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-17 19:47:21,980 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable7 [2024-09-17 19:47:21,981 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:21,981 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:21,981 INFO L85 PathProgramCache]: Analyzing trace with hash -1038968620, now seen corresponding path program 1 times [2024-09-17 19:47:21,981 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:21,981 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [932222856] [2024-09-17 19:47:21,981 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:21,981 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:22,003 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:22,004 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [859164634] [2024-09-17 19:47:22,004 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:22,004 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:22,004 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:22,005 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:22,006 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-17 19:47:22,052 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:22,057 INFO L262 TraceCheckSpWp]: Trace formula consists of 174 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-17 19:47:22,059 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:22,493 INFO L134 CoverageAnalysis]: Checked inductivity of 88 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:22,493 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:22,972 INFO L134 CoverageAnalysis]: Checked inductivity of 88 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2024-09-17 19:47:22,972 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:22,972 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [932222856] [2024-09-17 19:47:22,972 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:22,972 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [859164634] [2024-09-17 19:47:22,972 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [859164634] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:22,972 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:47:22,972 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [8] total 13 [2024-09-17 19:47:22,973 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [930410356] [2024-09-17 19:47:22,973 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:22,973 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-17 19:47:22,973 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:22,973 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-17 19:47:22,973 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=54, Invalid=128, Unknown=0, NotChecked=0, Total=182 [2024-09-17 19:47:22,973 INFO L87 Difference]: Start difference. First operand 94 states and 149 transitions. Second operand has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 8 states have internal predecessors, (20), 2 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) [2024-09-17 19:47:23,422 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:23,422 INFO L93 Difference]: Finished difference Result 128 states and 213 transitions. [2024-09-17 19:47:23,422 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-17 19:47:23,422 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 8 states have internal predecessors, (20), 2 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) Word has length 64 [2024-09-17 19:47:23,423 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:23,423 INFO L225 Difference]: With dead ends: 128 [2024-09-17 19:47:23,423 INFO L226 Difference]: Without dead ends: 128 [2024-09-17 19:47:23,424 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 131 GetRequests, 115 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 67 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=91, Invalid=215, Unknown=0, NotChecked=0, Total=306 [2024-09-17 19:47:23,424 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 23 mSDsluCounter, 139 mSDsCounter, 0 mSdLazyCounter, 204 mSolverCounterSat, 26 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 183 SdHoareTripleChecker+Invalid, 230 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 26 IncrementalHoareTripleChecker+Valid, 204 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:23,424 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 183 Invalid, 230 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [26 Valid, 204 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-17 19:47:23,424 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 128 states. [2024-09-17 19:47:23,430 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 128 to 119. [2024-09-17 19:47:23,431 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 119 states, 78 states have (on average 1.2692307692307692) internal successors, (99), 69 states have internal predecessors, (99), 48 states have call successors, (48), 2 states have call predecessors, (48), 2 states have return successors, (48), 47 states have call predecessors, (48), 48 states have call successors, (48) [2024-09-17 19:47:23,431 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 119 states to 119 states and 195 transitions. [2024-09-17 19:47:23,431 INFO L78 Accepts]: Start accepts. Automaton has 119 states and 195 transitions. Word has length 64 [2024-09-17 19:47:23,432 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:23,432 INFO L474 AbstractCegarLoop]: Abstraction has 119 states and 195 transitions. [2024-09-17 19:47:23,432 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 8 states have internal predecessors, (20), 2 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) [2024-09-17 19:47:23,432 INFO L276 IsEmpty]: Start isEmpty. Operand 119 states and 195 transitions. [2024-09-17 19:47:23,433 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 84 [2024-09-17 19:47:23,433 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:23,433 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 6, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:23,446 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-09-17 19:47:23,633 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:23,634 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:23,634 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:23,634 INFO L85 PathProgramCache]: Analyzing trace with hash -1600080472, now seen corresponding path program 2 times [2024-09-17 19:47:23,634 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:23,634 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [354363387] [2024-09-17 19:47:23,634 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:23,635 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:23,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:23,651 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1463708733] [2024-09-17 19:47:23,651 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:47:23,652 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:23,652 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:23,653 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:23,654 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-17 19:47:23,701 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-17 19:47:23,702 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:47:23,703 INFO L262 TraceCheckSpWp]: Trace formula consists of 206 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-17 19:47:23,705 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:24,267 INFO L134 CoverageAnalysis]: Checked inductivity of 181 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:24,267 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:25,347 INFO L134 CoverageAnalysis]: Checked inductivity of 181 backedges. 2 proven. 7 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:25,347 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:25,347 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [354363387] [2024-09-17 19:47:25,347 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:25,347 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1463708733] [2024-09-17 19:47:25,347 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1463708733] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:25,347 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:47:25,347 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 6] total 11 [2024-09-17 19:47:25,348 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1885903752] [2024-09-17 19:47:25,348 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:25,348 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-17 19:47:25,348 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:25,348 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-17 19:47:25,349 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=50, Invalid=82, Unknown=0, NotChecked=0, Total=132 [2024-09-17 19:47:25,349 INFO L87 Difference]: Start difference. First operand 119 states and 195 transitions. Second operand has 12 states, 11 states have (on average 2.727272727272727) internal successors, (30), 12 states have internal predecessors, (30), 7 states have call successors, (24), 1 states have call predecessors, (24), 1 states have return successors, (24), 7 states have call predecessors, (24), 7 states have call successors, (24) [2024-09-17 19:47:25,736 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:25,737 INFO L93 Difference]: Finished difference Result 193 states and 319 transitions. [2024-09-17 19:47:25,737 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-17 19:47:25,737 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 11 states have (on average 2.727272727272727) internal successors, (30), 12 states have internal predecessors, (30), 7 states have call successors, (24), 1 states have call predecessors, (24), 1 states have return successors, (24), 7 states have call predecessors, (24), 7 states have call successors, (24) Word has length 83 [2024-09-17 19:47:25,737 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:25,738 INFO L225 Difference]: With dead ends: 193 [2024-09-17 19:47:25,739 INFO L226 Difference]: Without dead ends: 193 [2024-09-17 19:47:25,739 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 168 GetRequests, 154 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 39 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=96, Invalid=144, Unknown=0, NotChecked=0, Total=240 [2024-09-17 19:47:25,739 INFO L434 NwaCegarLoop]: 56 mSDtfsCounter, 21 mSDsluCounter, 145 mSDsCounter, 0 mSdLazyCounter, 200 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 29 SdHoareTripleChecker+Valid, 201 SdHoareTripleChecker+Invalid, 222 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 200 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:25,739 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [29 Valid, 201 Invalid, 222 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 200 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:47:25,740 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 193 states. [2024-09-17 19:47:25,747 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 193 to 173. [2024-09-17 19:47:25,747 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 108 states have (on average 1.3148148148148149) internal successors, (142), 95 states have internal predecessors, (142), 75 states have call successors, (75), 2 states have call predecessors, (75), 2 states have return successors, (75), 75 states have call predecessors, (75), 75 states have call successors, (75) [2024-09-17 19:47:25,748 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 292 transitions. [2024-09-17 19:47:25,748 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 292 transitions. Word has length 83 [2024-09-17 19:47:25,749 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:25,749 INFO L474 AbstractCegarLoop]: Abstraction has 173 states and 292 transitions. [2024-09-17 19:47:25,749 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 11 states have (on average 2.727272727272727) internal successors, (30), 12 states have internal predecessors, (30), 7 states have call successors, (24), 1 states have call predecessors, (24), 1 states have return successors, (24), 7 states have call predecessors, (24), 7 states have call successors, (24) [2024-09-17 19:47:25,749 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 292 transitions. [2024-09-17 19:47:25,750 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 85 [2024-09-17 19:47:25,750 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:25,750 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 6, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:25,764 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-09-17 19:47:25,950 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-09-17 19:47:25,951 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:25,951 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:25,951 INFO L85 PathProgramCache]: Analyzing trace with hash 1937111816, now seen corresponding path program 1 times [2024-09-17 19:47:25,951 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:25,951 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [46330469] [2024-09-17 19:47:25,951 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:25,952 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:25,966 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:25,967 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1677756859] [2024-09-17 19:47:25,967 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:25,967 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:25,967 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:25,968 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:25,970 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-17 19:47:26,023 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:26,027 INFO L262 TraceCheckSpWp]: Trace formula consists of 212 conjuncts, 37 conjuncts are in the unsatisfiable core [2024-09-17 19:47:26,029 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:26,417 INFO L134 CoverageAnalysis]: Checked inductivity of 180 backedges. 0 proven. 8 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:26,417 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:27,134 INFO L134 CoverageAnalysis]: Checked inductivity of 180 backedges. 1 proven. 7 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:27,134 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:27,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [46330469] [2024-09-17 19:47:27,134 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:27,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1677756859] [2024-09-17 19:47:27,134 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1677756859] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:27,134 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:47:27,134 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6] total 12 [2024-09-17 19:47:27,134 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1178275831] [2024-09-17 19:47:27,134 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:27,135 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2024-09-17 19:47:27,135 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:27,135 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2024-09-17 19:47:27,135 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=117, Unknown=0, NotChecked=0, Total=156 [2024-09-17 19:47:27,135 INFO L87 Difference]: Start difference. First operand 173 states and 292 transitions. Second operand has 13 states, 12 states have (on average 2.6666666666666665) internal successors, (32), 13 states have internal predecessors, (32), 6 states have call successors, (24), 1 states have call predecessors, (24), 1 states have return successors, (24), 6 states have call predecessors, (24), 6 states have call successors, (24) [2024-09-17 19:47:27,948 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:27,948 INFO L93 Difference]: Finished difference Result 118 states and 180 transitions. [2024-09-17 19:47:27,948 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-09-17 19:47:27,948 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 12 states have (on average 2.6666666666666665) internal successors, (32), 13 states have internal predecessors, (32), 6 states have call successors, (24), 1 states have call predecessors, (24), 1 states have return successors, (24), 6 states have call predecessors, (24), 6 states have call successors, (24) Word has length 84 [2024-09-17 19:47:27,949 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:27,949 INFO L225 Difference]: With dead ends: 118 [2024-09-17 19:47:27,949 INFO L226 Difference]: Without dead ends: 118 [2024-09-17 19:47:27,949 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 173 GetRequests, 155 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 48 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=101, Invalid=279, Unknown=0, NotChecked=0, Total=380 [2024-09-17 19:47:27,950 INFO L434 NwaCegarLoop]: 53 mSDtfsCounter, 34 mSDsluCounter, 229 mSDsCounter, 0 mSdLazyCounter, 290 mSolverCounterSat, 28 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 38 SdHoareTripleChecker+Valid, 282 SdHoareTripleChecker+Invalid, 318 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 28 IncrementalHoareTripleChecker+Valid, 290 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:27,950 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [38 Valid, 282 Invalid, 318 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [28 Valid, 290 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-17 19:47:27,950 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2024-09-17 19:47:27,955 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 105. [2024-09-17 19:47:27,955 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 105 states, 67 states have (on average 1.208955223880597) internal successors, (81), 59 states have internal predecessors, (81), 43 states have call successors, (43), 2 states have call predecessors, (43), 2 states have return successors, (43), 43 states have call predecessors, (43), 43 states have call successors, (43) [2024-09-17 19:47:27,956 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 105 states to 105 states and 167 transitions. [2024-09-17 19:47:27,956 INFO L78 Accepts]: Start accepts. Automaton has 105 states and 167 transitions. Word has length 84 [2024-09-17 19:47:27,956 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:27,956 INFO L474 AbstractCegarLoop]: Abstraction has 105 states and 167 transitions. [2024-09-17 19:47:27,956 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 12 states have (on average 2.6666666666666665) internal successors, (32), 13 states have internal predecessors, (32), 6 states have call successors, (24), 1 states have call predecessors, (24), 1 states have return successors, (24), 6 states have call predecessors, (24), 6 states have call successors, (24) [2024-09-17 19:47:27,956 INFO L276 IsEmpty]: Start isEmpty. Operand 105 states and 167 transitions. [2024-09-17 19:47:27,957 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2024-09-17 19:47:27,957 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:27,957 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 6, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:27,973 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-17 19:47:28,158 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-17 19:47:28,159 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:28,159 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:28,159 INFO L85 PathProgramCache]: Analyzing trace with hash 1223876898, now seen corresponding path program 1 times [2024-09-17 19:47:28,159 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:28,159 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [66938191] [2024-09-17 19:47:28,159 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:28,159 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:28,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,822 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:28,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,823 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:28,824 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,824 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:28,825 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,826 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:28,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,827 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:28,828 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,830 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:28,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,833 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2024-09-17 19:47:28,834 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,838 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2024-09-17 19:47:28,839 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,843 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-09-17 19:47:28,844 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,848 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2024-09-17 19:47:28,849 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,853 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2024-09-17 19:47:28,854 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,860 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 70 [2024-09-17 19:47:28,861 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,867 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 75 [2024-09-17 19:47:28,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,875 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 80 [2024-09-17 19:47:28,876 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,884 INFO L134 CoverageAnalysis]: Checked inductivity of 184 backedges. 0 proven. 12 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:28,885 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:28,885 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [66938191] [2024-09-17 19:47:28,885 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [66938191] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:28,885 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [633853521] [2024-09-17 19:47:28,885 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:28,885 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:28,885 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:28,886 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:28,888 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-17 19:47:28,937 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:28,942 INFO L262 TraceCheckSpWp]: Trace formula consists of 221 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-09-17 19:47:28,944 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:29,516 INFO L134 CoverageAnalysis]: Checked inductivity of 184 backedges. 0 proven. 12 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:29,516 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:30,423 INFO L134 CoverageAnalysis]: Checked inductivity of 184 backedges. 8 proven. 4 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:30,423 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [633853521] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:30,423 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-17 19:47:30,423 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 9] total 22 [2024-09-17 19:47:30,423 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1880592066] [2024-09-17 19:47:30,423 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:30,424 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-09-17 19:47:30,424 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:30,425 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-09-17 19:47:30,425 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=123, Invalid=383, Unknown=0, NotChecked=0, Total=506 [2024-09-17 19:47:30,425 INFO L87 Difference]: Start difference. First operand 105 states and 167 transitions. Second operand has 23 states, 22 states have (on average 2.1363636363636362) internal successors, (47), 23 states have internal predecessors, (47), 7 states have call successors, (26), 1 states have call predecessors, (26), 1 states have return successors, (26), 7 states have call predecessors, (26), 7 states have call successors, (26) [2024-09-17 19:47:31,000 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:31,000 INFO L93 Difference]: Finished difference Result 116 states and 178 transitions. [2024-09-17 19:47:31,001 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-17 19:47:31,001 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 22 states have (on average 2.1363636363636362) internal successors, (47), 23 states have internal predecessors, (47), 7 states have call successors, (26), 1 states have call predecessors, (26), 1 states have return successors, (26), 7 states have call predecessors, (26), 7 states have call successors, (26) Word has length 87 [2024-09-17 19:47:31,001 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:31,001 INFO L225 Difference]: With dead ends: 116 [2024-09-17 19:47:31,001 INFO L226 Difference]: Without dead ends: 116 [2024-09-17 19:47:31,002 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 217 GetRequests, 189 SyntacticMatches, 0 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 208 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=204, Invalid=666, Unknown=0, NotChecked=0, Total=870 [2024-09-17 19:47:31,002 INFO L434 NwaCegarLoop]: 53 mSDtfsCounter, 43 mSDsluCounter, 273 mSDsCounter, 0 mSdLazyCounter, 320 mSolverCounterSat, 52 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 55 SdHoareTripleChecker+Valid, 326 SdHoareTripleChecker+Invalid, 372 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 52 IncrementalHoareTripleChecker+Valid, 320 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:31,002 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [55 Valid, 326 Invalid, 372 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [52 Valid, 320 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:47:31,003 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 116 states. [2024-09-17 19:47:31,006 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 116 to 82. [2024-09-17 19:47:31,006 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 82 states, 46 states have (on average 1.1521739130434783) internal successors, (53), 48 states have internal predecessors, (53), 31 states have call successors, (31), 2 states have call predecessors, (31), 2 states have return successors, (31), 31 states have call predecessors, (31), 31 states have call successors, (31) [2024-09-17 19:47:31,007 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 82 states to 82 states and 115 transitions. [2024-09-17 19:47:31,007 INFO L78 Accepts]: Start accepts. Automaton has 82 states and 115 transitions. Word has length 87 [2024-09-17 19:47:31,007 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:31,007 INFO L474 AbstractCegarLoop]: Abstraction has 82 states and 115 transitions. [2024-09-17 19:47:31,007 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 22 states have (on average 2.1363636363636362) internal successors, (47), 23 states have internal predecessors, (47), 7 states have call successors, (26), 1 states have call predecessors, (26), 1 states have return successors, (26), 7 states have call predecessors, (26), 7 states have call successors, (26) [2024-09-17 19:47:31,007 INFO L276 IsEmpty]: Start isEmpty. Operand 82 states and 115 transitions. [2024-09-17 19:47:31,008 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2024-09-17 19:47:31,008 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:31,008 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 6, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:31,023 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2024-09-17 19:47:31,208 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:31,209 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr6REQUIRES_VIOLATIONPRE_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:31,209 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:31,209 INFO L85 PathProgramCache]: Analyzing trace with hash 1317572175, now seen corresponding path program 1 times [2024-09-17 19:47:31,209 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:31,209 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1523290436] [2024-09-17 19:47:31,209 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:31,209 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:31,217 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,383 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:31,384 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,385 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:31,385 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,386 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:31,387 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,389 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:31,389 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,390 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:31,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,392 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:31,392 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,393 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2024-09-17 19:47:31,395 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,396 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2024-09-17 19:47:31,397 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,399 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-09-17 19:47:31,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,402 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2024-09-17 19:47:31,403 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,404 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2024-09-17 19:47:31,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,406 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-09-17 19:47:31,407 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,409 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 71 [2024-09-17 19:47:31,409 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,411 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 76 [2024-09-17 19:47:31,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,415 INFO L134 CoverageAnalysis]: Checked inductivity of 182 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 179 trivial. 0 not checked. [2024-09-17 19:47:31,415 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:31,415 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1523290436] [2024-09-17 19:47:31,415 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1523290436] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:31,415 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2079416098] [2024-09-17 19:47:31,415 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:31,415 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:31,415 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:31,417 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:31,417 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-17 19:47:31,464 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:31,465 INFO L262 TraceCheckSpWp]: Trace formula consists of 213 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-17 19:47:31,467 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:31,698 INFO L134 CoverageAnalysis]: Checked inductivity of 182 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 172 trivial. 0 not checked. [2024-09-17 19:47:31,698 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:31,760 INFO L134 CoverageAnalysis]: Checked inductivity of 182 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 180 trivial. 0 not checked. [2024-09-17 19:47:31,760 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2079416098] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:31,760 INFO L185 FreeRefinementEngine]: Found 1 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:47:31,760 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [7, 6] total 13 [2024-09-17 19:47:31,760 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1503085203] [2024-09-17 19:47:31,760 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:31,760 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-17 19:47:31,760 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:31,761 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-17 19:47:31,761 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=143, Unknown=0, NotChecked=0, Total=182 [2024-09-17 19:47:31,761 INFO L87 Difference]: Start difference. First operand 82 states and 115 transitions. Second operand has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 1 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 1 states have call predecessors, (10), 1 states have call successors, (10) [2024-09-17 19:47:31,809 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:31,809 INFO L93 Difference]: Finished difference Result 81 states and 114 transitions. [2024-09-17 19:47:31,809 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-17 19:47:31,810 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 1 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 1 states have call predecessors, (10), 1 states have call successors, (10) Word has length 87 [2024-09-17 19:47:31,810 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:31,810 INFO L225 Difference]: With dead ends: 81 [2024-09-17 19:47:31,810 INFO L226 Difference]: Without dead ends: 81 [2024-09-17 19:47:31,810 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 207 GetRequests, 195 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 27 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=39, Invalid=143, Unknown=0, NotChecked=0, Total=182 [2024-09-17 19:47:31,811 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 5 mSDsluCounter, 22 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 12 SdHoareTripleChecker+Valid, 54 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:31,811 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [12 Valid, 54 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-17 19:47:31,811 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2024-09-17 19:47:31,813 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 81. [2024-09-17 19:47:31,813 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 45 states have (on average 1.1555555555555554) internal successors, (52), 47 states have internal predecessors, (52), 31 states have call successors, (31), 2 states have call predecessors, (31), 2 states have return successors, (31), 31 states have call predecessors, (31), 31 states have call successors, (31) [2024-09-17 19:47:31,814 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 114 transitions. [2024-09-17 19:47:31,814 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 114 transitions. Word has length 87 [2024-09-17 19:47:31,814 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:31,814 INFO L474 AbstractCegarLoop]: Abstraction has 81 states and 114 transitions. [2024-09-17 19:47:31,814 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 1 states have call successors, (10), 1 states have call predecessors, (10), 1 states have return successors, (10), 1 states have call predecessors, (10), 1 states have call successors, (10) [2024-09-17 19:47:31,814 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 114 transitions. [2024-09-17 19:47:31,815 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 93 [2024-09-17 19:47:31,815 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:31,815 INFO L216 NwaCegarLoop]: trace histogram [9, 9, 9, 6, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:31,827 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-17 19:47:32,019 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:32,019 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONPRE_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:32,019 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:32,020 INFO L85 PathProgramCache]: Analyzing trace with hash -1215787035, now seen corresponding path program 1 times [2024-09-17 19:47:32,020 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:32,020 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [496522743] [2024-09-17 19:47:32,020 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:32,020 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:32,033 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:32,035 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1143945711] [2024-09-17 19:47:32,035 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:32,035 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:32,035 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:32,037 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:32,038 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-17 19:47:32,088 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:32,089 INFO L262 TraceCheckSpWp]: Trace formula consists of 223 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-09-17 19:47:32,091 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:32,178 INFO L134 CoverageAnalysis]: Checked inductivity of 214 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 211 trivial. 0 not checked. [2024-09-17 19:47:32,178 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:32,205 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:32,205 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [496522743] [2024-09-17 19:47:32,205 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:32,205 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1143945711] [2024-09-17 19:47:32,205 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1143945711] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:32,205 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:47:32,205 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [3] total 3 [2024-09-17 19:47:32,205 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1729969865] [2024-09-17 19:47:32,205 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:32,206 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-17 19:47:32,206 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:32,206 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-17 19:47:32,206 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2024-09-17 19:47:32,206 INFO L87 Difference]: Start difference. First operand 81 states and 114 transitions. Second operand has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 3 states have call successors, (11), 1 states have call predecessors, (11), 1 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-09-17 19:47:32,272 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:32,272 INFO L93 Difference]: Finished difference Result 104 states and 152 transitions. [2024-09-17 19:47:32,273 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-17 19:47:32,273 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 3 states have call successors, (11), 1 states have call predecessors, (11), 1 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 92 [2024-09-17 19:47:32,273 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:32,273 INFO L225 Difference]: With dead ends: 104 [2024-09-17 19:47:32,274 INFO L226 Difference]: Without dead ends: 84 [2024-09-17 19:47:32,274 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 90 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2024-09-17 19:47:32,274 INFO L434 NwaCegarLoop]: 46 mSDtfsCounter, 5 mSDsluCounter, 54 mSDsCounter, 0 mSdLazyCounter, 54 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 100 SdHoareTripleChecker+Invalid, 54 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 54 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:32,274 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 100 Invalid, 54 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 54 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-17 19:47:32,275 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-09-17 19:47:32,277 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 63. [2024-09-17 19:47:32,277 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 35 states have (on average 1.1428571428571428) internal successors, (40), 37 states have internal predecessors, (40), 23 states have call successors, (23), 2 states have call predecessors, (23), 2 states have return successors, (23), 23 states have call predecessors, (23), 23 states have call successors, (23) [2024-09-17 19:47:32,277 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 86 transitions. [2024-09-17 19:47:32,277 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 86 transitions. Word has length 92 [2024-09-17 19:47:32,278 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:32,278 INFO L474 AbstractCegarLoop]: Abstraction has 63 states and 86 transitions. [2024-09-17 19:47:32,278 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 3 states have call successors, (11), 1 states have call predecessors, (11), 1 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-09-17 19:47:32,278 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 86 transitions. [2024-09-17 19:47:32,279 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2024-09-17 19:47:32,279 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:32,279 INFO L216 NwaCegarLoop]: trace histogram [12, 12, 12, 6, 6, 6, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:32,292 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-17 19:47:32,483 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-17 19:47:32,484 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:32,484 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:32,484 INFO L85 PathProgramCache]: Analyzing trace with hash 1052451092, now seen corresponding path program 2 times [2024-09-17 19:47:32,484 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:32,484 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [141525267] [2024-09-17 19:47:32,484 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:32,484 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:32,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,063 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-09-17 19:47:33,064 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,065 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2024-09-17 19:47:33,066 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,066 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-17 19:47:33,067 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,067 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-17 19:47:33,067 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,076 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-17 19:47:33,077 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,078 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-17 19:47:33,079 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,080 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2024-09-17 19:47:33,081 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,083 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2024-09-17 19:47:33,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,087 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-09-17 19:47:33,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,090 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2024-09-17 19:47:33,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,093 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2024-09-17 19:47:33,094 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,099 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 70 [2024-09-17 19:47:33,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,105 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 75 [2024-09-17 19:47:33,106 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,111 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 80 [2024-09-17 19:47:33,111 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,117 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 88 [2024-09-17 19:47:33,118 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 93 [2024-09-17 19:47:33,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,131 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 98 [2024-09-17 19:47:33,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,137 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 103 [2024-09-17 19:47:33,138 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:47:33,144 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 27 refuted. 0 times theorem prover too weak. 324 trivial. 0 not checked. [2024-09-17 19:47:33,144 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:33,144 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [141525267] [2024-09-17 19:47:33,144 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [141525267] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:47:33,144 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [825996560] [2024-09-17 19:47:33,144 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:47:33,144 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:33,145 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:33,146 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:33,147 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-17 19:47:33,204 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-17 19:47:33,204 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:47:33,206 INFO L262 TraceCheckSpWp]: Trace formula consists of 268 conjuncts, 34 conjuncts are in the unsatisfiable core [2024-09-17 19:47:33,208 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:33,902 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 27 refuted. 0 times theorem prover too weak. 324 trivial. 0 not checked. [2024-09-17 19:47:33,902 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:36,318 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 13 proven. 14 refuted. 0 times theorem prover too weak. 324 trivial. 0 not checked. [2024-09-17 19:47:36,318 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [825996560] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:36,319 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-17 19:47:36,319 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 9] total 22 [2024-09-17 19:47:36,319 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1083409285] [2024-09-17 19:47:36,319 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:36,319 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-09-17 19:47:36,319 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:36,320 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-09-17 19:47:36,320 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=108, Invalid=398, Unknown=0, NotChecked=0, Total=506 [2024-09-17 19:47:36,320 INFO L87 Difference]: Start difference. First operand 63 states and 86 transitions. Second operand has 23 states, 22 states have (on average 2.409090909090909) internal successors, (53), 23 states have internal predecessors, (53), 9 states have call successors, (34), 1 states have call predecessors, (34), 1 states have return successors, (34), 9 states have call predecessors, (34), 9 states have call successors, (34) [2024-09-17 19:47:36,997 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:36,997 INFO L93 Difference]: Finished difference Result 68 states and 92 transitions. [2024-09-17 19:47:36,997 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-17 19:47:36,997 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 22 states have (on average 2.409090909090909) internal successors, (53), 23 states have internal predecessors, (53), 9 states have call successors, (34), 1 states have call predecessors, (34), 1 states have return successors, (34), 9 states have call predecessors, (34), 9 states have call successors, (34) Word has length 110 [2024-09-17 19:47:36,997 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:36,998 INFO L225 Difference]: With dead ends: 68 [2024-09-17 19:47:36,998 INFO L226 Difference]: Without dead ends: 62 [2024-09-17 19:47:36,998 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 273 GetRequests, 244 SyntacticMatches, 0 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 148 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=196, Invalid=734, Unknown=0, NotChecked=0, Total=930 [2024-09-17 19:47:36,998 INFO L434 NwaCegarLoop]: 69 mSDtfsCounter, 37 mSDsluCounter, 425 mSDsCounter, 0 mSdLazyCounter, 426 mSolverCounterSat, 46 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 494 SdHoareTripleChecker+Invalid, 472 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 46 IncrementalHoareTripleChecker+Valid, 426 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:36,999 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 494 Invalid, 472 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [46 Valid, 426 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-17 19:47:36,999 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2024-09-17 19:47:37,000 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 62. [2024-09-17 19:47:37,000 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 34 states have (on average 1.0588235294117647) internal successors, (36), 36 states have internal predecessors, (36), 23 states have call successors, (23), 2 states have call predecessors, (23), 2 states have return successors, (23), 23 states have call predecessors, (23), 23 states have call successors, (23) [2024-09-17 19:47:37,001 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 82 transitions. [2024-09-17 19:47:37,001 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 82 transitions. Word has length 110 [2024-09-17 19:47:37,001 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:37,001 INFO L474 AbstractCegarLoop]: Abstraction has 62 states and 82 transitions. [2024-09-17 19:47:37,001 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 22 states have (on average 2.409090909090909) internal successors, (53), 23 states have internal predecessors, (53), 9 states have call successors, (34), 1 states have call predecessors, (34), 1 states have return successors, (34), 9 states have call predecessors, (34), 9 states have call successors, (34) [2024-09-17 19:47:37,002 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 82 transitions. [2024-09-17 19:47:37,003 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 135 [2024-09-17 19:47:37,005 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:37,005 INFO L216 NwaCegarLoop]: trace histogram [16, 16, 16, 6, 6, 6, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:37,017 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Ended with exit code 0 [2024-09-17 19:47:37,209 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-17 19:47:37,210 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:37,210 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:37,210 INFO L85 PathProgramCache]: Analyzing trace with hash -1894971634, now seen corresponding path program 2 times [2024-09-17 19:47:37,210 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:37,210 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [952884429] [2024-09-17 19:47:37,210 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:37,210 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:37,236 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:37,237 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1309675097] [2024-09-17 19:47:37,237 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:47:37,237 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:37,238 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:37,241 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:37,242 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-17 19:47:37,311 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-17 19:47:37,311 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:47:37,313 INFO L262 TraceCheckSpWp]: Trace formula consists of 321 conjuncts, 57 conjuncts are in the unsatisfiable core [2024-09-17 19:47:37,315 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:37,984 INFO L134 CoverageAnalysis]: Checked inductivity of 588 backedges. 0 proven. 48 refuted. 0 times theorem prover too weak. 540 trivial. 0 not checked. [2024-09-17 19:47:37,984 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:47:38,822 INFO L134 CoverageAnalysis]: Checked inductivity of 588 backedges. 27 proven. 21 refuted. 0 times theorem prover too weak. 540 trivial. 0 not checked. [2024-09-17 19:47:38,822 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:38,822 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [952884429] [2024-09-17 19:47:38,822 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:38,822 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1309675097] [2024-09-17 19:47:38,822 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1309675097] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:47:38,822 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:47:38,823 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10] total 18 [2024-09-17 19:47:38,823 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [600400082] [2024-09-17 19:47:38,823 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:47:38,823 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-17 19:47:38,823 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:38,824 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-17 19:47:38,824 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=71, Invalid=271, Unknown=0, NotChecked=0, Total=342 [2024-09-17 19:47:38,824 INFO L87 Difference]: Start difference. First operand 62 states and 82 transitions. Second operand has 19 states, 18 states have (on average 2.8333333333333335) internal successors, (51), 19 states have internal predecessors, (51), 10 states have call successors, (40), 1 states have call predecessors, (40), 1 states have return successors, (40), 10 states have call predecessors, (40), 10 states have call successors, (40) [2024-09-17 19:47:39,097 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:39,097 INFO L93 Difference]: Finished difference Result 59 states and 79 transitions. [2024-09-17 19:47:39,097 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-09-17 19:47:39,097 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 18 states have (on average 2.8333333333333335) internal successors, (51), 19 states have internal predecessors, (51), 10 states have call successors, (40), 1 states have call predecessors, (40), 1 states have return successors, (40), 10 states have call predecessors, (40), 10 states have call successors, (40) Word has length 134 [2024-09-17 19:47:39,098 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:39,098 INFO L225 Difference]: With dead ends: 59 [2024-09-17 19:47:39,098 INFO L226 Difference]: Without dead ends: 59 [2024-09-17 19:47:39,098 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 271 GetRequests, 247 SyntacticMatches, 2 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 62 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=117, Invalid=435, Unknown=0, NotChecked=0, Total=552 [2024-09-17 19:47:39,099 INFO L434 NwaCegarLoop]: 61 mSDtfsCounter, 33 mSDsluCounter, 289 mSDsCounter, 0 mSdLazyCounter, 309 mSolverCounterSat, 37 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 350 SdHoareTripleChecker+Invalid, 346 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 37 IncrementalHoareTripleChecker+Valid, 309 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:39,099 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 350 Invalid, 346 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [37 Valid, 309 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:47:39,099 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2024-09-17 19:47:39,101 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2024-09-17 19:47:39,101 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 33 states have (on average 1.0) internal successors, (33), 33 states have internal predecessors, (33), 23 states have call successors, (23), 2 states have call predecessors, (23), 2 states have return successors, (23), 23 states have call predecessors, (23), 23 states have call successors, (23) [2024-09-17 19:47:39,101 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 79 transitions. [2024-09-17 19:47:39,101 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 79 transitions. Word has length 134 [2024-09-17 19:47:39,102 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:39,102 INFO L474 AbstractCegarLoop]: Abstraction has 59 states and 79 transitions. [2024-09-17 19:47:39,102 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 18 states have (on average 2.8333333333333335) internal successors, (51), 19 states have internal predecessors, (51), 10 states have call successors, (40), 1 states have call predecessors, (40), 1 states have return successors, (40), 10 states have call predecessors, (40), 10 states have call successors, (40) [2024-09-17 19:47:39,102 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 79 transitions. [2024-09-17 19:47:39,104 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 143 [2024-09-17 19:47:39,104 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:47:39,104 INFO L216 NwaCegarLoop]: trace histogram [17, 17, 17, 6, 6, 6, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:39,116 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-17 19:47:39,304 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-17 19:47:39,304 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONPRE_CONDITION === [ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT, ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (and 8 more)] === [2024-09-17 19:47:39,305 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:47:39,305 INFO L85 PathProgramCache]: Analyzing trace with hash -85051925, now seen corresponding path program 2 times [2024-09-17 19:47:39,305 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:47:39,305 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [371938774] [2024-09-17 19:47:39,305 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:47:39,305 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:47:39,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:47:39,325 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [231889499] [2024-09-17 19:47:39,325 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:47:39,325 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:47:39,326 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:47:39,328 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:47:39,332 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-17 19:47:39,371 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 1 check-sat command(s) [2024-09-17 19:47:39,371 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:47:39,372 INFO L262 TraceCheckSpWp]: Trace formula consists of 47 conjuncts, 3 conjuncts are in the unsatisfiable core [2024-09-17 19:47:39,373 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:47:39,622 INFO L134 CoverageAnalysis]: Checked inductivity of 656 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 652 trivial. 0 not checked. [2024-09-17 19:47:39,622 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-17 19:47:39,622 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:47:39,622 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [371938774] [2024-09-17 19:47:39,622 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:47:39,622 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [231889499] [2024-09-17 19:47:39,622 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [231889499] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:47:39,622 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:47:39,622 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-09-17 19:47:39,622 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1360059633] [2024-09-17 19:47:39,622 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:47:39,623 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-17 19:47:39,623 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:47:39,623 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-17 19:47:39,623 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-17 19:47:39,623 INFO L87 Difference]: Start difference. First operand 59 states and 79 transitions. Second operand has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 2 states have call successors, (11), 1 states have call predecessors, (11), 1 states have return successors, (11), 2 states have call predecessors, (11), 2 states have call successors, (11) [2024-09-17 19:47:39,675 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:47:39,675 INFO L93 Difference]: Finished difference Result 58 states and 78 transitions. [2024-09-17 19:47:39,675 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-17 19:47:39,675 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 2 states have call successors, (11), 1 states have call predecessors, (11), 1 states have return successors, (11), 2 states have call predecessors, (11), 2 states have call successors, (11) Word has length 142 [2024-09-17 19:47:39,676 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:47:39,676 INFO L225 Difference]: With dead ends: 58 [2024-09-17 19:47:39,676 INFO L226 Difference]: Without dead ends: 0 [2024-09-17 19:47:39,676 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 141 GetRequests, 139 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-17 19:47:39,676 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 5 mSDsluCounter, 46 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 78 SdHoareTripleChecker+Invalid, 29 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-17 19:47:39,676 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 78 Invalid, 29 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-17 19:47:39,677 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-09-17 19:47:39,677 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-09-17 19:47:39,677 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-17 19:47:39,677 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-09-17 19:47:39,677 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 142 [2024-09-17 19:47:39,677 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:47:39,677 INFO L474 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-09-17 19:47:39,677 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 7.0) internal successors, (21), 4 states have internal predecessors, (21), 2 states have call successors, (11), 1 states have call predecessors, (11), 1 states have return successors, (11), 2 states have call predecessors, (11), 2 states have call successors, (11) [2024-09-17 19:47:39,677 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-09-17 19:47:39,677 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-09-17 19:47:39,679 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONWITNESS_INVARIANT (10 of 11 remaining) [2024-09-17 19:47:39,679 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONWITNESS_INVARIANT (9 of 11 remaining) [2024-09-17 19:47:39,679 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2REQUIRES_VIOLATIONPRE_CONDITION (8 of 11 remaining) [2024-09-17 19:47:39,679 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr3REQUIRES_VIOLATIONPRE_CONDITION (7 of 11 remaining) [2024-09-17 19:47:39,679 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr4REQUIRES_VIOLATIONPRE_CONDITION (6 of 11 remaining) [2024-09-17 19:47:39,680 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr5REQUIRES_VIOLATIONPRE_CONDITION (5 of 11 remaining) [2024-09-17 19:47:39,680 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr6REQUIRES_VIOLATIONPRE_CONDITION (4 of 11 remaining) [2024-09-17 19:47:39,680 INFO L785 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr7REQUIRES_VIOLATIONPRE_CONDITION (3 of 11 remaining) [2024-09-17 19:47:39,680 INFO L785 garLoopResultBuilder]: Registering result SAFE for location assume_abort_if_notErr0ENSURES_VIOLATIONPOST_CONDITION (2 of 11 remaining) [2024-09-17 19:47:39,680 INFO L785 garLoopResultBuilder]: Registering result SAFE for location __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION (1 of 11 remaining) [2024-09-17 19:47:39,680 INFO L785 garLoopResultBuilder]: Registering result SAFE for location __VERIFIER_assertErr1ENSURES_VIOLATIONPOST_CONDITION (0 of 11 remaining) [2024-09-17 19:47:39,692 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Forceful destruction successful, exit code 0 [2024-09-17 19:47:39,880 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-17 19:47:39,883 INFO L408 BasicCegarLoop]: Path program histogram: [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:47:39,884 INFO L165 ceAbstractionStarter]: Computing trace abstraction results [2024-09-17 19:47:39,885 INFO L469 ceAbstractionStarter]: Automizer considered 2 witness invariants [2024-09-17 19:47:39,885 INFO L470 ceAbstractionStarter]: WitnessConsidered=2 [2024-09-17 19:47:39,886 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 17.09 07:47:39 BoogieIcfgContainer [2024-09-17 19:47:39,886 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-09-17 19:47:39,886 INFO L158 Benchmark]: Toolchain (without parser) took 25207.91ms. Allocated memory was 167.8MB in the beginning and 373.3MB in the end (delta: 205.5MB). Free memory was 97.9MB in the beginning and 210.0MB in the end (delta: -112.0MB). Peak memory consumption was 96.0MB. Max. memory is 16.1GB. [2024-09-17 19:47:39,886 INFO L158 Benchmark]: Witness Parser took 0.15ms. Allocated memory is still 167.8MB. Free memory is still 135.4MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-17 19:47:39,886 INFO L158 Benchmark]: CDTParser took 0.08ms. Allocated memory is still 167.8MB. Free memory is still 144.3MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-17 19:47:39,886 INFO L158 Benchmark]: CACSL2BoogieTranslator took 259.04ms. Allocated memory is still 167.8MB. Free memory was 97.7MB in the beginning and 82.5MB in the end (delta: 15.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-09-17 19:47:39,887 INFO L158 Benchmark]: Boogie Procedure Inliner took 36.78ms. Allocated memory is still 167.8MB. Free memory was 82.5MB in the beginning and 80.5MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-09-17 19:47:39,887 INFO L158 Benchmark]: Boogie Preprocessor took 41.19ms. Allocated memory is still 167.8MB. Free memory was 80.5MB in the beginning and 78.6MB in the end (delta: 1.9MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-09-17 19:47:39,887 INFO L158 Benchmark]: RCFGBuilder took 440.07ms. Allocated memory is still 167.8MB. Free memory was 78.6MB in the beginning and 122.6MB in the end (delta: -44.0MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2024-09-17 19:47:39,887 INFO L158 Benchmark]: TraceAbstraction took 24422.44ms. Allocated memory was 167.8MB in the beginning and 373.3MB in the end (delta: 205.5MB). Free memory was 121.9MB in the beginning and 210.0MB in the end (delta: -88.1MB). Peak memory consumption was 119.4MB. Max. memory is 16.1GB. [2024-09-17 19:47:39,890 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * Witness Parser took 0.15ms. Allocated memory is still 167.8MB. Free memory is still 135.4MB. There was no memory consumed. Max. memory is 16.1GB. * CDTParser took 0.08ms. Allocated memory is still 167.8MB. Free memory is still 144.3MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 259.04ms. Allocated memory is still 167.8MB. Free memory was 97.7MB in the beginning and 82.5MB in the end (delta: 15.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 36.78ms. Allocated memory is still 167.8MB. Free memory was 82.5MB in the beginning and 80.5MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 41.19ms. Allocated memory is still 167.8MB. Free memory was 80.5MB in the beginning and 78.6MB in the end (delta: 1.9MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 440.07ms. Allocated memory is still 167.8MB. Free memory was 78.6MB in the beginning and 122.6MB in the end (delta: -44.0MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * TraceAbstraction took 24422.44ms. Allocated memory was 167.8MB in the beginning and 373.3MB in the end (delta: 205.5MB). Free memory was 121.9MB in the beginning and 210.0MB in the end (delta: -88.1MB). Peak memory consumption was 119.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 41]: invariant of correctness witness holds For all program executions holds that invariant of correctness witness holds at this location - PositiveResult [Line: 47]: invariant of correctness witness holds For all program executions holds that invariant of correctness witness holds at this location - PositiveResult [Line: 10]: procedure precondition always holds For all program executions holds that procedure precondition always holds at this location - PositiveResult [Line: 10]: procedure precondition always holds For all program executions holds that procedure precondition always holds at this location - PositiveResult [Line: 10]: procedure precondition always holds For all program executions holds that procedure precondition always holds at this location - PositiveResult [Line: 10]: procedure precondition always holds For all program executions holds that procedure precondition always holds at this location - PositiveResult [Line: 10]: procedure precondition always holds For all program executions holds that procedure precondition always holds at this location - PositiveResult [Line: 10]: procedure precondition always holds For all program executions holds that procedure precondition always holds at this location - PositiveResult [Line: 7]: procedure postcondition always holds For all program executions holds that procedure postcondition always holds at this location - PositiveResult [Line: 13]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - PositiveResult [Line: 10]: procedure postcondition always holds For all program executions holds that procedure postcondition always holds at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 3 procedures, 44 locations, 11 error locations. Started 1 CEGAR loops. OverallTime: 24.4s, OverallIterations: 17, TraceHistogramMax: 17, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 4.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 414 SdHoareTripleChecker+Valid, 2.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 333 mSDsluCounter, 2957 SdHoareTripleChecker+Invalid, 2.4s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2165 mSDsCounter, 302 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2431 IncrementalHoareTripleChecker+Invalid, 2733 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 302 mSolverCounterUnsat, 792 mSDtfsCounter, 2431 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2084 GetRequests, 1890 SyntacticMatches, 5 SemanticMatches, 189 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 729 ImplicationChecksByTransitivity, 4.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=173occurred in iteration=10, InterpolantAutomatonStates: 138, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 17 MinimizatonAttempts, 129 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 16.2s InterpolantComputationTime, 2207 NumberOfCodeBlocks, 2080 NumberOfCodeBlocksAsserted, 32 NumberOfCheckSat, 2319 ConstructedInterpolants, 4 QuantifiedInterpolants, 21016 SizeOfPredicates, 47 NumberOfNonLiveVariables, 2312 ConjunctsInSsa, 337 ConjunctsInUnsatCore, 32 InterpolantComputations, 9 PerfectInterpolantSequences, 5592/5880 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 11 specifications checked. All of them hold RESULT: Ultimate proved your program to be correct! [2024-09-17 19:47:39,915 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE