./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version de325976 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash ac02a57e98f6481647f49b84c91fda6d0505e35fbffb37ed6b508f20e911a1af --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-de32597-m [2024-09-17 19:33:32,001 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-17 19:33:32,073 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-17 19:33:32,080 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-17 19:33:32,083 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-17 19:33:32,119 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-17 19:33:32,119 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-17 19:33:32,120 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-17 19:33:32,121 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-17 19:33:32,122 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-17 19:33:32,122 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-17 19:33:32,122 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-17 19:33:32,123 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-17 19:33:32,123 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-17 19:33:32,125 INFO L153 SettingsManager]: * Use SBE=true [2024-09-17 19:33:32,125 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-17 19:33:32,126 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-17 19:33:32,126 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-17 19:33:32,126 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-17 19:33:32,127 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-17 19:33:32,127 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-17 19:33:32,131 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-17 19:33:32,131 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-17 19:33:32,132 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-17 19:33:32,132 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-17 19:33:32,132 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-17 19:33:32,132 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-17 19:33:32,133 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-17 19:33:32,133 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-17 19:33:32,133 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-17 19:33:32,134 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-17 19:33:32,134 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-17 19:33:32,134 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-17 19:33:32,134 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-17 19:33:32,134 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-17 19:33:32,135 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-17 19:33:32,135 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-17 19:33:32,136 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-17 19:33:32,136 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-17 19:33:32,136 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-17 19:33:32,137 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-17 19:33:32,137 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-17 19:33:32,138 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> ac02a57e98f6481647f49b84c91fda6d0505e35fbffb37ed6b508f20e911a1af Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-17 19:33:32,405 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-17 19:33:32,428 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-17 19:33:32,432 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-17 19:33:32,434 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-17 19:33:32,434 INFO L274 PluginConnector]: CDTParser initialized [2024-09-17 19:33:32,435 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c [2024-09-17 19:33:33,876 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-17 19:33:34,056 INFO L384 CDTParser]: Found 1 translation units. [2024-09-17 19:33:34,057 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c [2024-09-17 19:33:34,064 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/b300a6b98/c139aaac5cc7460e8ea976656520f130/FLAG9218dba33 [2024-09-17 19:33:34,464 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/b300a6b98/c139aaac5cc7460e8ea976656520f130 [2024-09-17 19:33:34,466 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-17 19:33:34,468 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-17 19:33:34,471 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-17 19:33:34,472 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-17 19:33:34,478 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-17 19:33:34,479 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,480 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@e226fd8 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34, skipping insertion in model container [2024-09-17 19:33:34,480 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,503 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-17 19:33:34,649 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c[1052,1065] [2024-09-17 19:33:34,664 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-17 19:33:34,677 INFO L200 MainTranslator]: Completed pre-run [2024-09-17 19:33:34,692 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c[1052,1065] [2024-09-17 19:33:34,712 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-17 19:33:34,726 INFO L204 MainTranslator]: Completed translation [2024-09-17 19:33:34,726 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34 WrapperNode [2024-09-17 19:33:34,727 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-17 19:33:34,728 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-17 19:33:34,728 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-17 19:33:34,728 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-17 19:33:34,735 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,741 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,747 INFO L138 Inliner]: procedures = 16, calls = 58, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-17 19:33:34,747 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-17 19:33:34,748 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-17 19:33:34,748 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-17 19:33:34,748 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-17 19:33:34,758 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,758 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,760 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,778 INFO L175 MemorySlicer]: Split 33 memory accesses to 5 slices as follows [2, 8, 12, 2, 9]. 36 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0]. The 7 writes are split as follows [0, 2, 2, 1, 2]. [2024-09-17 19:33:34,778 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,778 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,786 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,792 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,793 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,794 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,797 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-17 19:33:34,797 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-17 19:33:34,798 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-17 19:33:34,798 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-17 19:33:34,799 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (1/1) ... [2024-09-17 19:33:34,804 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-17 19:33:34,818 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:33:34,842 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-17 19:33:34,849 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-17 19:33:34,891 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-17 19:33:34,891 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-17 19:33:34,891 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-17 19:33:34,891 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-17 19:33:34,892 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-17 19:33:34,893 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-17 19:33:34,893 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-17 19:33:34,893 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-17 19:33:34,893 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-17 19:33:34,893 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_29_to_40_0 [2024-09-17 19:33:34,893 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_29_to_40_0 [2024-09-17 19:33:34,894 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-17 19:33:34,894 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-17 19:33:34,894 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-17 19:33:34,894 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-17 19:33:34,894 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-17 19:33:34,894 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-17 19:33:34,895 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-17 19:33:34,895 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-17 19:33:34,895 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-17 19:33:34,895 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-17 19:33:34,984 INFO L242 CfgBuilder]: Building ICFG [2024-09-17 19:33:34,986 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-17 19:33:35,186 INFO L? ?]: Removed 6 outVars from TransFormulas that were not future-live. [2024-09-17 19:33:35,186 INFO L291 CfgBuilder]: Performing block encoding [2024-09-17 19:33:35,204 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-17 19:33:35,204 INFO L318 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-17 19:33:35,205 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.09 07:33:35 BoogieIcfgContainer [2024-09-17 19:33:35,205 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-17 19:33:35,207 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-17 19:33:35,207 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-17 19:33:35,210 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-17 19:33:35,210 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.09 07:33:34" (1/3) ... [2024-09-17 19:33:35,211 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4a911f14 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.09 07:33:35, skipping insertion in model container [2024-09-17 19:33:35,211 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.09 07:33:34" (2/3) ... [2024-09-17 19:33:35,211 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4a911f14 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.09 07:33:35, skipping insertion in model container [2024-09-17 19:33:35,212 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.09 07:33:35" (3/3) ... [2024-09-17 19:33:35,213 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_sqrt1-ll.c [2024-09-17 19:33:35,226 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-17 19:33:35,226 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-17 19:33:35,289 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-17 19:33:35,295 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@e885070, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-17 19:33:35,295 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-17 19:33:35,298 INFO L276 IsEmpty]: Start isEmpty. Operand has 34 states, 18 states have (on average 1.2222222222222223) internal successors, (22), 20 states have internal predecessors, (22), 10 states have call successors, (10), 4 states have call predecessors, (10), 4 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) [2024-09-17 19:33:35,304 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2024-09-17 19:33:35,304 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:33:35,304 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:33:35,305 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:33:35,309 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:35,309 INFO L85 PathProgramCache]: Analyzing trace with hash 793561350, now seen corresponding path program 1 times [2024-09-17 19:33:35,317 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:33:35,317 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [342462688] [2024-09-17 19:33:35,317 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:35,318 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:33:35,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:36,129 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-17 19:33:36,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:36,137 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-17 19:33:36,141 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:33:36,141 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [342462688] [2024-09-17 19:33:36,142 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [342462688] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:33:36,142 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:33:36,143 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-17 19:33:36,144 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1370034695] [2024-09-17 19:33:36,145 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:33:36,149 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-17 19:33:36,149 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:33:36,172 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-17 19:33:36,173 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-17 19:33:36,175 INFO L87 Difference]: Start difference. First operand has 34 states, 18 states have (on average 1.2222222222222223) internal successors, (22), 20 states have internal predecessors, (22), 10 states have call successors, (10), 4 states have call predecessors, (10), 4 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 8 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-17 19:33:36,453 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:33:36,454 INFO L93 Difference]: Finished difference Result 80 states and 113 transitions. [2024-09-17 19:33:36,455 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-17 19:33:36,456 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 12 [2024-09-17 19:33:36,457 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:33:36,464 INFO L225 Difference]: With dead ends: 80 [2024-09-17 19:33:36,464 INFO L226 Difference]: Without dead ends: 48 [2024-09-17 19:33:36,477 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-17 19:33:36,485 INFO L434 NwaCegarLoop]: 27 mSDtfsCounter, 17 mSDsluCounter, 133 mSDsCounter, 0 mSdLazyCounter, 118 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 160 SdHoareTripleChecker+Invalid, 126 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 118 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:33:36,486 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 160 Invalid, 126 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 118 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:33:36,505 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 48 states. [2024-09-17 19:33:36,540 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 48 to 45. [2024-09-17 19:33:36,541 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 45 states, 26 states have (on average 1.1153846153846154) internal successors, (29), 28 states have internal predecessors, (29), 13 states have call successors, (13), 6 states have call predecessors, (13), 5 states have return successors, (12), 11 states have call predecessors, (12), 11 states have call successors, (12) [2024-09-17 19:33:36,544 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 54 transitions. [2024-09-17 19:33:36,547 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 54 transitions. Word has length 12 [2024-09-17 19:33:36,549 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:33:36,549 INFO L474 AbstractCegarLoop]: Abstraction has 45 states and 54 transitions. [2024-09-17 19:33:36,549 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-17 19:33:36,550 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:36,550 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 54 transitions. [2024-09-17 19:33:36,550 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-17 19:33:36,550 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:33:36,551 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:33:36,551 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-17 19:33:36,551 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:33:36,553 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:36,554 INFO L85 PathProgramCache]: Analyzing trace with hash -179619090, now seen corresponding path program 1 times [2024-09-17 19:33:36,555 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:33:36,555 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [168362196] [2024-09-17 19:33:36,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:36,555 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:33:36,581 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:33:36,584 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [155503220] [2024-09-17 19:33:36,584 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:36,584 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:36,585 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:33:36,587 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:33:36,588 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-17 19:33:36,671 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:36,674 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 35 conjuncts are in the unsatisfiable core [2024-09-17 19:33:36,680 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:33:36,724 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:33:36,730 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:33:36,931 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-17 19:33:36,932 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:33:37,109 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-17 19:33:37,110 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:33:37,110 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [168362196] [2024-09-17 19:33:37,111 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:33:37,111 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [155503220] [2024-09-17 19:33:37,111 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [155503220] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-17 19:33:37,111 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:33:37,111 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [9] total 13 [2024-09-17 19:33:37,114 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1048964030] [2024-09-17 19:33:37,114 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:33:37,114 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-17 19:33:37,115 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:33:37,115 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-17 19:33:37,115 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=30, Invalid=126, Unknown=0, NotChecked=0, Total=156 [2024-09-17 19:33:37,116 INFO L87 Difference]: Start difference. First operand 45 states and 54 transitions. Second operand has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-17 19:33:37,374 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:33:37,375 INFO L93 Difference]: Finished difference Result 54 states and 63 transitions. [2024-09-17 19:33:37,376 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-17 19:33:37,376 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 18 [2024-09-17 19:33:37,376 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:33:37,377 INFO L225 Difference]: With dead ends: 54 [2024-09-17 19:33:37,378 INFO L226 Difference]: Without dead ends: 52 [2024-09-17 19:33:37,380 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 38 GetRequests, 21 SyntacticMatches, 3 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 19 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=44, Invalid=196, Unknown=0, NotChecked=0, Total=240 [2024-09-17 19:33:37,381 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 16 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 119 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 148 SdHoareTripleChecker+Invalid, 126 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 119 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-17 19:33:37,382 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 148 Invalid, 126 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 119 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-17 19:33:37,383 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 52 states. [2024-09-17 19:33:37,404 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 52 to 49. [2024-09-17 19:33:37,404 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 49 states, 29 states have (on average 1.103448275862069) internal successors, (32), 31 states have internal predecessors, (32), 13 states have call successors, (13), 7 states have call predecessors, (13), 6 states have return successors, (12), 11 states have call predecessors, (12), 11 states have call successors, (12) [2024-09-17 19:33:37,407 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 49 states to 49 states and 57 transitions. [2024-09-17 19:33:37,409 INFO L78 Accepts]: Start accepts. Automaton has 49 states and 57 transitions. Word has length 18 [2024-09-17 19:33:37,409 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:33:37,409 INFO L474 AbstractCegarLoop]: Abstraction has 49 states and 57 transitions. [2024-09-17 19:33:37,410 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-09-17 19:33:37,410 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:37,410 INFO L276 IsEmpty]: Start isEmpty. Operand 49 states and 57 transitions. [2024-09-17 19:33:37,411 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-17 19:33:37,411 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:33:37,411 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:33:37,429 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-17 19:33:37,611 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:37,612 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:33:37,612 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:37,612 INFO L85 PathProgramCache]: Analyzing trace with hash 1495099348, now seen corresponding path program 1 times [2024-09-17 19:33:37,613 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:33:37,613 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [738645782] [2024-09-17 19:33:37,613 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:37,613 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:33:37,634 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:33:37,635 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1054607991] [2024-09-17 19:33:37,635 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:37,635 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:37,635 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:33:37,637 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:33:37,642 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-17 19:33:37,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:37,724 INFO L262 TraceCheckSpWp]: Trace formula consists of 181 conjuncts, 46 conjuncts are in the unsatisfiable core [2024-09-17 19:33:37,727 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:33:37,734 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:33:37,745 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:33:38,151 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 1 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-17 19:33:38,152 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:33:38,424 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 45 treesize of output 29 [2024-09-17 19:33:38,516 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 3 proven. 4 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-17 19:33:38,517 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:33:38,517 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [738645782] [2024-09-17 19:33:38,517 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:33:38,517 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1054607991] [2024-09-17 19:33:38,517 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1054607991] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:33:38,517 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:33:38,518 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 12] total 22 [2024-09-17 19:33:38,518 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [239092448] [2024-09-17 19:33:38,518 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:33:38,519 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-17 19:33:38,520 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:33:38,520 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-17 19:33:38,522 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=64, Invalid=398, Unknown=0, NotChecked=0, Total=462 [2024-09-17 19:33:38,522 INFO L87 Difference]: Start difference. First operand 49 states and 57 transitions. Second operand has 22 states, 16 states have (on average 1.625) internal successors, (26), 18 states have internal predecessors, (26), 9 states have call successors, (10), 6 states have call predecessors, (10), 4 states have return successors, (5), 3 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-17 19:33:40,009 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:33:40,009 INFO L93 Difference]: Finished difference Result 86 states and 100 transitions. [2024-09-17 19:33:40,010 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-17 19:33:40,010 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 16 states have (on average 1.625) internal successors, (26), 18 states have internal predecessors, (26), 9 states have call successors, (10), 6 states have call predecessors, (10), 4 states have return successors, (5), 3 states have call predecessors, (5), 5 states have call successors, (5) Word has length 24 [2024-09-17 19:33:40,011 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:33:40,013 INFO L225 Difference]: With dead ends: 86 [2024-09-17 19:33:40,014 INFO L226 Difference]: Without dead ends: 84 [2024-09-17 19:33:40,015 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 65 GetRequests, 25 SyntacticMatches, 3 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 253 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=235, Invalid=1247, Unknown=0, NotChecked=0, Total=1482 [2024-09-17 19:33:40,016 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 63 mSDsluCounter, 153 mSDsCounter, 0 mSdLazyCounter, 449 mSolverCounterSat, 39 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 171 SdHoareTripleChecker+Invalid, 488 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 39 IncrementalHoareTripleChecker+Valid, 449 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-17 19:33:40,016 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 171 Invalid, 488 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [39 Valid, 449 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-17 19:33:40,017 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-09-17 19:33:40,041 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 81. [2024-09-17 19:33:40,042 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 49 states have (on average 1.1020408163265305) internal successors, (54), 52 states have internal predecessors, (54), 20 states have call successors, (20), 11 states have call predecessors, (20), 11 states have return successors, (20), 18 states have call predecessors, (20), 17 states have call successors, (20) [2024-09-17 19:33:40,043 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 94 transitions. [2024-09-17 19:33:40,044 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 94 transitions. Word has length 24 [2024-09-17 19:33:40,044 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:33:40,044 INFO L474 AbstractCegarLoop]: Abstraction has 81 states and 94 transitions. [2024-09-17 19:33:40,045 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 16 states have (on average 1.625) internal successors, (26), 18 states have internal predecessors, (26), 9 states have call successors, (10), 6 states have call predecessors, (10), 4 states have return successors, (5), 3 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-17 19:33:40,045 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:40,045 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 94 transitions. [2024-09-17 19:33:40,046 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-17 19:33:40,046 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:33:40,046 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:33:40,063 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-09-17 19:33:40,247 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:40,247 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:33:40,248 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:40,248 INFO L85 PathProgramCache]: Analyzing trace with hash -1496297149, now seen corresponding path program 1 times [2024-09-17 19:33:40,248 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:33:40,248 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [56770996] [2024-09-17 19:33:40,248 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:40,248 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:33:40,269 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:40,865 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-17 19:33:40,866 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:40,868 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-17 19:33:40,870 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:40,873 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-17 19:33:40,874 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:40,880 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-09-17 19:33:40,882 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:40,886 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 6 proven. 3 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-17 19:33:40,887 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:33:40,888 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [56770996] [2024-09-17 19:33:40,889 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [56770996] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:33:40,889 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1682008477] [2024-09-17 19:33:40,889 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:40,889 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:40,889 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:33:40,891 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:33:40,893 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-17 19:33:40,984 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:40,986 INFO L262 TraceCheckSpWp]: Trace formula consists of 249 conjuncts, 44 conjuncts are in the unsatisfiable core [2024-09-17 19:33:40,991 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:33:41,221 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:33:41,228 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:33:41,268 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-17 19:33:41,272 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:33:41,324 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 5 proven. 12 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-17 19:33:41,324 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:33:45,778 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 7 proven. 8 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-17 19:33:45,779 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1682008477] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:33:45,779 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-17 19:33:45,779 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 11, 10] total 21 [2024-09-17 19:33:45,779 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [356944458] [2024-09-17 19:33:45,779 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-17 19:33:45,780 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-17 19:33:45,780 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:33:45,781 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-17 19:33:45,781 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=63, Invalid=356, Unknown=1, NotChecked=0, Total=420 [2024-09-17 19:33:45,782 INFO L87 Difference]: Start difference. First operand 81 states and 94 transitions. Second operand has 21 states, 16 states have (on average 2.3125) internal successors, (37), 17 states have internal predecessors, (37), 9 states have call successors, (17), 7 states have call predecessors, (17), 4 states have return successors, (10), 3 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-17 19:33:47,892 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:33:47,892 INFO L93 Difference]: Finished difference Result 91 states and 104 transitions. [2024-09-17 19:33:47,893 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-17 19:33:47,893 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 16 states have (on average 2.3125) internal successors, (37), 17 states have internal predecessors, (37), 9 states have call successors, (17), 7 states have call predecessors, (17), 4 states have return successors, (10), 3 states have call predecessors, (10), 5 states have call successors, (10) Word has length 34 [2024-09-17 19:33:47,894 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:33:47,895 INFO L225 Difference]: With dead ends: 91 [2024-09-17 19:33:47,895 INFO L226 Difference]: Without dead ends: 89 [2024-09-17 19:33:47,895 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 99 GetRequests, 65 SyntacticMatches, 5 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 116 ImplicationChecksByTransitivity, 5.2s TimeCoverageRelationStatistics Valid=155, Invalid=774, Unknown=1, NotChecked=0, Total=930 [2024-09-17 19:33:47,896 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 59 mSDsluCounter, 201 mSDsCounter, 0 mSdLazyCounter, 510 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 225 SdHoareTripleChecker+Invalid, 540 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 510 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:33:47,897 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [62 Valid, 225 Invalid, 540 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 510 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2024-09-17 19:33:47,897 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2024-09-17 19:33:47,927 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2024-09-17 19:33:47,927 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 54 states have (on average 1.0925925925925926) internal successors, (59), 57 states have internal predecessors, (59), 20 states have call successors, (20), 12 states have call predecessors, (20), 14 states have return successors, (23), 19 states have call predecessors, (23), 17 states have call successors, (23) [2024-09-17 19:33:47,928 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 102 transitions. [2024-09-17 19:33:47,929 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 102 transitions. Word has length 34 [2024-09-17 19:33:47,929 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:33:47,929 INFO L474 AbstractCegarLoop]: Abstraction has 89 states and 102 transitions. [2024-09-17 19:33:47,929 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 16 states have (on average 2.3125) internal successors, (37), 17 states have internal predecessors, (37), 9 states have call successors, (17), 7 states have call predecessors, (17), 4 states have return successors, (10), 3 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-17 19:33:47,930 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:47,930 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 102 transitions. [2024-09-17 19:33:47,931 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-17 19:33:47,931 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:33:47,931 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:33:47,943 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-17 19:33:48,133 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:48,133 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:33:48,134 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:48,134 INFO L85 PathProgramCache]: Analyzing trace with hash 2049263454, now seen corresponding path program 1 times [2024-09-17 19:33:48,134 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:33:48,134 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1234096774] [2024-09-17 19:33:48,134 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:48,134 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:33:48,154 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:48,519 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-17 19:33:48,521 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:48,579 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-17 19:33:48,586 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:48,690 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-17 19:33:48,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:48,694 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-17 19:33:48,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:48,698 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-17 19:33:48,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:33:48,704 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-17 19:33:48,704 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:33:48,706 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1234096774] [2024-09-17 19:33:48,706 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1234096774] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-17 19:33:48,706 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-17 19:33:48,706 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-17 19:33:48,706 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1770781219] [2024-09-17 19:33:48,706 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-17 19:33:48,707 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-17 19:33:48,707 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:33:48,708 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-17 19:33:48,708 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2024-09-17 19:33:48,708 INFO L87 Difference]: Start difference. First operand 89 states and 102 transitions. Second operand has 8 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 6 states have internal predecessors, (16), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-17 19:33:49,267 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:33:49,268 INFO L93 Difference]: Finished difference Result 95 states and 107 transitions. [2024-09-17 19:33:49,268 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-17 19:33:49,269 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 6 states have internal predecessors, (16), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) Word has length 34 [2024-09-17 19:33:49,269 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:33:49,270 INFO L225 Difference]: With dead ends: 95 [2024-09-17 19:33:49,270 INFO L226 Difference]: Without dead ends: 93 [2024-09-17 19:33:49,270 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=30, Invalid=80, Unknown=0, NotChecked=0, Total=110 [2024-09-17 19:33:49,271 INFO L434 NwaCegarLoop]: 17 mSDtfsCounter, 23 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 136 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 65 SdHoareTripleChecker+Invalid, 158 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 136 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:33:49,271 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 65 Invalid, 158 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 136 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-17 19:33:49,272 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 93 states. [2024-09-17 19:33:49,301 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 93 to 93. [2024-09-17 19:33:49,302 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 93 states, 57 states have (on average 1.087719298245614) internal successors, (62), 60 states have internal predecessors, (62), 20 states have call successors, (20), 13 states have call predecessors, (20), 15 states have return successors, (23), 19 states have call predecessors, (23), 17 states have call successors, (23) [2024-09-17 19:33:49,306 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 93 states to 93 states and 105 transitions. [2024-09-17 19:33:49,307 INFO L78 Accepts]: Start accepts. Automaton has 93 states and 105 transitions. Word has length 34 [2024-09-17 19:33:49,307 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:33:49,307 INFO L474 AbstractCegarLoop]: Abstraction has 93 states and 105 transitions. [2024-09-17 19:33:49,308 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 6 states have internal predecessors, (16), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-17 19:33:49,308 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:49,308 INFO L276 IsEmpty]: Start isEmpty. Operand 93 states and 105 transitions. [2024-09-17 19:33:49,309 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-17 19:33:49,309 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:33:49,309 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:33:49,310 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-09-17 19:33:49,310 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:33:49,310 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:33:49,310 INFO L85 PathProgramCache]: Analyzing trace with hash 1759830379, now seen corresponding path program 2 times [2024-09-17 19:33:49,310 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:33:49,310 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1818333057] [2024-09-17 19:33:49,311 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:33:49,311 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:33:49,329 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:33:49,331 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [977674526] [2024-09-17 19:33:49,331 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:33:49,331 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:33:49,331 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:33:49,333 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:33:49,339 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-17 19:33:49,439 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-17 19:33:49,440 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:33:49,443 INFO L262 TraceCheckSpWp]: Trace formula consists of 264 conjuncts, 80 conjuncts are in the unsatisfiable core [2024-09-17 19:33:49,447 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:33:49,460 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:33:49,480 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:33:50,950 INFO L349 Elim1Store]: treesize reduction 29, result has 34.1 percent of original size [2024-09-17 19:33:50,950 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 29 [2024-09-17 19:33:50,968 INFO L349 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2024-09-17 19:33:50,968 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 15 treesize of output 7 [2024-09-17 19:33:50,976 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:33:51,642 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 2 proven. 31 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-17 19:33:51,642 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:33:52,616 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 33 [2024-09-17 19:33:53,029 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 7 proven. 15 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-17 19:33:53,029 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:33:53,029 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1818333057] [2024-09-17 19:33:53,029 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:33:53,030 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [977674526] [2024-09-17 19:33:53,030 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [977674526] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:33:53,030 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:33:53,030 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 14] total 27 [2024-09-17 19:33:53,030 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [290512368] [2024-09-17 19:33:53,030 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:33:53,030 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-17 19:33:53,030 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:33:53,031 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-17 19:33:53,031 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=83, Invalid=619, Unknown=0, NotChecked=0, Total=702 [2024-09-17 19:33:53,032 INFO L87 Difference]: Start difference. First operand 93 states and 105 transitions. Second operand has 27 states, 21 states have (on average 1.8571428571428572) internal successors, (39), 21 states have internal predecessors, (39), 11 states have call successors, (16), 9 states have call predecessors, (16), 5 states have return successors, (9), 5 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-17 19:33:59,228 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.26s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-17 19:34:08,654 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.98s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [1] [2024-09-17 19:34:10,556 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:34:10,556 INFO L93 Difference]: Finished difference Result 121 states and 131 transitions. [2024-09-17 19:34:10,557 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 37 states. [2024-09-17 19:34:10,557 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 21 states have (on average 1.8571428571428572) internal successors, (39), 21 states have internal predecessors, (39), 11 states have call successors, (16), 9 states have call predecessors, (16), 5 states have return successors, (9), 5 states have call predecessors, (9), 7 states have call successors, (9) Word has length 40 [2024-09-17 19:34:10,557 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:34:10,559 INFO L225 Difference]: With dead ends: 121 [2024-09-17 19:34:10,559 INFO L226 Difference]: Without dead ends: 119 [2024-09-17 19:34:10,560 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 109 GetRequests, 48 SyntacticMatches, 6 SemanticMatches, 55 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 734 ImplicationChecksByTransitivity, 11.1s TimeCoverageRelationStatistics Valid=407, Invalid=2785, Unknown=0, NotChecked=0, Total=3192 [2024-09-17 19:34:10,561 INFO L434 NwaCegarLoop]: 31 mSDtfsCounter, 122 mSDsluCounter, 200 mSDsCounter, 0 mSdLazyCounter, 612 mSolverCounterSat, 73 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 8.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 124 SdHoareTripleChecker+Valid, 231 SdHoareTripleChecker+Invalid, 685 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 73 IncrementalHoareTripleChecker+Valid, 612 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 8.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:34:10,564 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [124 Valid, 231 Invalid, 685 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [73 Valid, 612 Invalid, 0 Unknown, 0 Unchecked, 8.4s Time] [2024-09-17 19:34:10,564 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 119 states. [2024-09-17 19:34:10,608 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 119 to 115. [2024-09-17 19:34:10,609 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 115 states, 72 states have (on average 1.0833333333333333) internal successors, (78), 75 states have internal predecessors, (78), 23 states have call successors, (23), 17 states have call predecessors, (23), 19 states have return successors, (25), 22 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-17 19:34:10,610 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 115 states to 115 states and 126 transitions. [2024-09-17 19:34:10,610 INFO L78 Accepts]: Start accepts. Automaton has 115 states and 126 transitions. Word has length 40 [2024-09-17 19:34:10,610 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:34:10,611 INFO L474 AbstractCegarLoop]: Abstraction has 115 states and 126 transitions. [2024-09-17 19:34:10,611 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 21 states have (on average 1.8571428571428572) internal successors, (39), 21 states have internal predecessors, (39), 11 states have call successors, (16), 9 states have call predecessors, (16), 5 states have return successors, (9), 5 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-17 19:34:10,611 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:10,611 INFO L276 IsEmpty]: Start isEmpty. Operand 115 states and 126 transitions. [2024-09-17 19:34:10,612 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-17 19:34:10,612 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:34:10,613 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:34:10,630 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-09-17 19:34:10,816 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:10,817 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:34:10,817 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:10,817 INFO L85 PathProgramCache]: Analyzing trace with hash 863672261, now seen corresponding path program 1 times [2024-09-17 19:34:10,817 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:34:10,817 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [949491565] [2024-09-17 19:34:10,817 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:10,817 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:34:10,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:34:10,846 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [888910070] [2024-09-17 19:34:10,847 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:10,847 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:10,847 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:34:10,848 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:34:10,850 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-17 19:34:10,937 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:10,938 INFO L262 TraceCheckSpWp]: Trace formula consists of 216 conjuncts, 19 conjuncts are in the unsatisfiable core [2024-09-17 19:34:10,940 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:34:10,947 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:10,957 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:11,294 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 18 proven. 2 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-17 19:34:11,294 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:34:11,735 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:34:11,735 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [949491565] [2024-09-17 19:34:11,736 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:34:11,736 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [888910070] [2024-09-17 19:34:11,736 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [888910070] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:34:11,736 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:34:11,736 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8] total 8 [2024-09-17 19:34:11,736 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1549858771] [2024-09-17 19:34:11,736 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:34:11,737 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-17 19:34:11,737 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:34:11,737 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-17 19:34:11,737 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2024-09-17 19:34:11,738 INFO L87 Difference]: Start difference. First operand 115 states and 126 transitions. Second operand has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 7 states have internal predecessors, (20), 4 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-17 19:34:12,311 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:34:12,311 INFO L93 Difference]: Finished difference Result 123 states and 132 transitions. [2024-09-17 19:34:12,311 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-17 19:34:12,311 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 7 states have internal predecessors, (20), 4 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 40 [2024-09-17 19:34:12,311 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:34:12,312 INFO L225 Difference]: With dead ends: 123 [2024-09-17 19:34:12,312 INFO L226 Difference]: Without dead ends: 119 [2024-09-17 19:34:12,313 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 46 SyntacticMatches, 3 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=49, Invalid=161, Unknown=0, NotChecked=0, Total=210 [2024-09-17 19:34:12,313 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 26 mSDsluCounter, 50 mSDsCounter, 0 mSdLazyCounter, 158 mSolverCounterSat, 25 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 65 SdHoareTripleChecker+Invalid, 185 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 158 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:34:12,314 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 65 Invalid, 185 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 158 Invalid, 2 Unknown, 0 Unchecked, 0.4s Time] [2024-09-17 19:34:12,315 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 119 states. [2024-09-17 19:34:12,364 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 119 to 117. [2024-09-17 19:34:12,365 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 117 states, 74 states have (on average 1.0675675675675675) internal successors, (79), 76 states have internal predecessors, (79), 23 states have call successors, (23), 18 states have call predecessors, (23), 19 states have return successors, (25), 22 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-17 19:34:12,365 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 127 transitions. [2024-09-17 19:34:12,366 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 127 transitions. Word has length 40 [2024-09-17 19:34:12,366 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:34:12,366 INFO L474 AbstractCegarLoop]: Abstraction has 117 states and 127 transitions. [2024-09-17 19:34:12,366 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 7 states have internal predecessors, (20), 4 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-17 19:34:12,367 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:12,367 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 127 transitions. [2024-09-17 19:34:12,367 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2024-09-17 19:34:12,367 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:34:12,368 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:34:12,385 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-17 19:34:12,568 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-17 19:34:12,569 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:34:12,569 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:12,569 INFO L85 PathProgramCache]: Analyzing trace with hash 398231530, now seen corresponding path program 1 times [2024-09-17 19:34:12,569 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:34:12,569 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [117007566] [2024-09-17 19:34:12,569 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:12,570 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:34:12,590 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:34:12,592 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [313286862] [2024-09-17 19:34:12,592 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:12,593 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:12,593 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:34:12,594 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:34:12,596 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-17 19:34:12,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:12,688 INFO L262 TraceCheckSpWp]: Trace formula consists of 233 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-17 19:34:12,690 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:34:12,705 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:12,718 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:13,159 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 30 proven. 4 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-17 19:34:13,159 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:34:13,537 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:34:13,537 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [117007566] [2024-09-17 19:34:13,538 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:34:13,538 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [313286862] [2024-09-17 19:34:13,538 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [313286862] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:34:13,538 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:34:13,538 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8] total 8 [2024-09-17 19:34:13,538 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [179421079] [2024-09-17 19:34:13,538 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:34:13,538 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-17 19:34:13,538 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:34:13,539 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-17 19:34:13,539 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2024-09-17 19:34:13,539 INFO L87 Difference]: Start difference. First operand 117 states and 127 transitions. Second operand has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 4 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-09-17 19:34:14,162 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:34:14,162 INFO L93 Difference]: Finished difference Result 119 states and 128 transitions. [2024-09-17 19:34:14,163 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-17 19:34:14,163 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 4 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 46 [2024-09-17 19:34:14,163 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:34:14,164 INFO L225 Difference]: With dead ends: 119 [2024-09-17 19:34:14,164 INFO L226 Difference]: Without dead ends: 99 [2024-09-17 19:34:14,165 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 55 SyntacticMatches, 5 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=49, Invalid=161, Unknown=0, NotChecked=0, Total=210 [2024-09-17 19:34:14,165 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 18 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 159 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 68 SdHoareTripleChecker+Invalid, 182 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 159 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:34:14,166 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 68 Invalid, 182 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 159 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-17 19:34:14,166 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 99 states. [2024-09-17 19:34:14,199 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 99 to 99. [2024-09-17 19:34:14,200 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 99 states, 62 states have (on average 1.064516129032258) internal successors, (66), 64 states have internal predecessors, (66), 20 states have call successors, (20), 15 states have call predecessors, (20), 16 states have return successors, (22), 19 states have call predecessors, (22), 17 states have call successors, (22) [2024-09-17 19:34:14,201 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 99 states to 99 states and 108 transitions. [2024-09-17 19:34:14,201 INFO L78 Accepts]: Start accepts. Automaton has 99 states and 108 transitions. Word has length 46 [2024-09-17 19:34:14,201 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:34:14,201 INFO L474 AbstractCegarLoop]: Abstraction has 99 states and 108 transitions. [2024-09-17 19:34:14,202 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 4 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-09-17 19:34:14,202 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:14,202 INFO L276 IsEmpty]: Start isEmpty. Operand 99 states and 108 transitions. [2024-09-17 19:34:14,203 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2024-09-17 19:34:14,203 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:34:14,203 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:34:14,220 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-17 19:34:14,409 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:14,410 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:34:14,410 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:14,410 INFO L85 PathProgramCache]: Analyzing trace with hash 15363389, now seen corresponding path program 1 times [2024-09-17 19:34:14,410 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:34:14,410 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [284295907] [2024-09-17 19:34:14,411 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:14,411 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:34:14,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:15,138 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-17 19:34:15,139 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:15,215 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-17 19:34:15,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:15,899 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-17 19:34:15,901 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:15,913 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-17 19:34:15,914 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:15,926 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-17 19:34:15,927 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:15,938 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2024-09-17 19:34:15,942 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:16,117 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-17 19:34:16,119 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:16,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-17 19:34:16,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:16,125 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-17 19:34:16,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:16,129 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 12 proven. 10 refuted. 0 times theorem prover too weak. 61 trivial. 0 not checked. [2024-09-17 19:34:16,129 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:34:16,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [284295907] [2024-09-17 19:34:16,129 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [284295907] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:34:16,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1831809383] [2024-09-17 19:34:16,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:16,130 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:16,130 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:34:16,131 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:34:16,133 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-17 19:34:16,228 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:16,230 INFO L262 TraceCheckSpWp]: Trace formula consists of 303 conjuncts, 44 conjuncts are in the unsatisfiable core [2024-09-17 19:34:16,233 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:34:16,949 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:34:16,959 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:34:17,172 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-17 19:34:17,179 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:17,331 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 10 proven. 54 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2024-09-17 19:34:17,332 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:34:18,030 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1831809383] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:34:18,030 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:34:18,030 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 14] total 22 [2024-09-17 19:34:18,030 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [420399815] [2024-09-17 19:34:18,030 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:34:18,031 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-17 19:34:18,031 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:34:18,031 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-17 19:34:18,032 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=60, Invalid=446, Unknown=0, NotChecked=0, Total=506 [2024-09-17 19:34:18,032 INFO L87 Difference]: Start difference. First operand 99 states and 108 transitions. Second operand has 22 states, 17 states have (on average 2.411764705882353) internal successors, (41), 18 states have internal predecessors, (41), 10 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (14), 8 states have call predecessors, (14), 8 states have call successors, (14) [2024-09-17 19:34:19,635 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:34:19,635 INFO L93 Difference]: Finished difference Result 109 states and 117 transitions. [2024-09-17 19:34:19,636 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-17 19:34:19,636 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 17 states have (on average 2.411764705882353) internal successors, (41), 18 states have internal predecessors, (41), 10 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (14), 8 states have call predecessors, (14), 8 states have call successors, (14) Word has length 58 [2024-09-17 19:34:19,636 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:34:19,637 INFO L225 Difference]: With dead ends: 109 [2024-09-17 19:34:19,637 INFO L226 Difference]: Without dead ends: 107 [2024-09-17 19:34:19,638 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 112 GetRequests, 75 SyntacticMatches, 5 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 187 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=162, Invalid=960, Unknown=0, NotChecked=0, Total=1122 [2024-09-17 19:34:19,638 INFO L434 NwaCegarLoop]: 14 mSDtfsCounter, 46 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 472 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 102 SdHoareTripleChecker+Invalid, 513 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 472 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:34:19,639 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [47 Valid, 102 Invalid, 513 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 472 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2024-09-17 19:34:19,639 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 107 states. [2024-09-17 19:34:19,683 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 107 to 107. [2024-09-17 19:34:19,684 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 107 states, 68 states have (on average 1.0588235294117647) internal successors, (72), 70 states have internal predecessors, (72), 20 states have call successors, (20), 17 states have call predecessors, (20), 18 states have return successors, (22), 19 states have call predecessors, (22), 17 states have call successors, (22) [2024-09-17 19:34:19,684 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 107 states to 107 states and 114 transitions. [2024-09-17 19:34:19,685 INFO L78 Accepts]: Start accepts. Automaton has 107 states and 114 transitions. Word has length 58 [2024-09-17 19:34:19,685 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:34:19,685 INFO L474 AbstractCegarLoop]: Abstraction has 107 states and 114 transitions. [2024-09-17 19:34:19,685 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 17 states have (on average 2.411764705882353) internal successors, (41), 18 states have internal predecessors, (41), 10 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (14), 8 states have call predecessors, (14), 8 states have call successors, (14) [2024-09-17 19:34:19,686 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:19,686 INFO L276 IsEmpty]: Start isEmpty. Operand 107 states and 114 transitions. [2024-09-17 19:34:19,686 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2024-09-17 19:34:19,687 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:34:19,687 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:34:19,700 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-17 19:34:19,887 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:19,887 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:34:19,888 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:19,888 INFO L85 PathProgramCache]: Analyzing trace with hash 765303396, now seen corresponding path program 1 times [2024-09-17 19:34:19,888 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:34:19,888 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [32117637] [2024-09-17 19:34:19,888 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:19,888 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:34:19,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:34:19,919 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1782324000] [2024-09-17 19:34:19,919 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:19,919 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:19,920 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:34:19,921 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:34:19,924 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-17 19:34:20,063 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:20,066 INFO L262 TraceCheckSpWp]: Trace formula consists of 318 conjuncts, 98 conjuncts are in the unsatisfiable core [2024-09-17 19:34:20,069 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:34:20,080 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:20,098 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:21,228 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:34:21,847 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:21,875 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:22,498 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 31 proven. 62 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-17 19:34:22,498 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:34:28,304 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 41 [2024-09-17 19:34:28,848 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 15 [2024-09-17 19:34:28,866 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-17 19:34:29,453 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:34:29,453 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [32117637] [2024-09-17 19:34:29,453 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:34:29,454 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1782324000] [2024-09-17 19:34:29,454 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1782324000] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:34:29,454 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:34:29,454 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22] total 22 [2024-09-17 19:34:29,454 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1434960598] [2024-09-17 19:34:29,454 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:34:29,454 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-17 19:34:29,454 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:34:29,455 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-17 19:34:29,456 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=111, Invalid=758, Unknown=1, NotChecked=0, Total=870 [2024-09-17 19:34:29,456 INFO L87 Difference]: Start difference. First operand 107 states and 114 transitions. Second operand has 22 states, 17 states have (on average 1.9411764705882353) internal successors, (33), 17 states have internal predecessors, (33), 8 states have call successors, (12), 6 states have call predecessors, (12), 6 states have return successors, (10), 6 states have call predecessors, (10), 7 states have call successors, (10) [2024-09-17 19:34:32,379 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:34:32,379 INFO L93 Difference]: Finished difference Result 115 states and 120 transitions. [2024-09-17 19:34:32,380 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-17 19:34:32,380 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 17 states have (on average 1.9411764705882353) internal successors, (33), 17 states have internal predecessors, (33), 8 states have call successors, (12), 6 states have call predecessors, (12), 6 states have return successors, (10), 6 states have call predecessors, (10), 7 states have call successors, (10) Word has length 64 [2024-09-17 19:34:32,380 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:34:32,381 INFO L225 Difference]: With dead ends: 115 [2024-09-17 19:34:32,381 INFO L226 Difference]: Without dead ends: 111 [2024-09-17 19:34:32,382 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 101 GetRequests, 52 SyntacticMatches, 5 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 478 ImplicationChecksByTransitivity, 7.5s TimeCoverageRelationStatistics Valid=297, Invalid=1772, Unknown=1, NotChecked=0, Total=2070 [2024-09-17 19:34:32,382 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 44 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 472 mSolverCounterSat, 44 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 95 SdHoareTripleChecker+Invalid, 516 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 44 IncrementalHoareTripleChecker+Valid, 472 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2024-09-17 19:34:32,382 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 95 Invalid, 516 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [44 Valid, 472 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2024-09-17 19:34:32,383 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 111 states. [2024-09-17 19:34:32,429 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 111 to 109. [2024-09-17 19:34:32,430 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 109 states, 70 states have (on average 1.042857142857143) internal successors, (73), 71 states have internal predecessors, (73), 20 states have call successors, (20), 18 states have call predecessors, (20), 18 states have return successors, (22), 19 states have call predecessors, (22), 17 states have call successors, (22) [2024-09-17 19:34:32,431 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 109 states to 109 states and 115 transitions. [2024-09-17 19:34:32,431 INFO L78 Accepts]: Start accepts. Automaton has 109 states and 115 transitions. Word has length 64 [2024-09-17 19:34:32,431 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:34:32,431 INFO L474 AbstractCegarLoop]: Abstraction has 109 states and 115 transitions. [2024-09-17 19:34:32,431 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 17 states have (on average 1.9411764705882353) internal successors, (33), 17 states have internal predecessors, (33), 8 states have call successors, (12), 6 states have call predecessors, (12), 6 states have return successors, (10), 6 states have call predecessors, (10), 7 states have call successors, (10) [2024-09-17 19:34:32,432 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:32,432 INFO L276 IsEmpty]: Start isEmpty. Operand 109 states and 115 transitions. [2024-09-17 19:34:32,433 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 69 [2024-09-17 19:34:32,433 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:34:32,433 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:34:32,450 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-17 19:34:32,633 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:32,634 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:34:32,634 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:32,634 INFO L85 PathProgramCache]: Analyzing trace with hash -1827359346, now seen corresponding path program 3 times [2024-09-17 19:34:32,634 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:34:32,634 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1019319105] [2024-09-17 19:34:32,634 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:32,635 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:34:32,665 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:34:32,667 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [43454333] [2024-09-17 19:34:32,667 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-17 19:34:32,667 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:32,667 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:34:32,669 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:34:32,672 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-17 19:34:32,796 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-17 19:34:32,797 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:34:32,801 INFO L262 TraceCheckSpWp]: Trace formula consists of 334 conjuncts, 139 conjuncts are in the unsatisfiable core [2024-09-17 19:34:32,806 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:34:32,836 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:32,861 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:32,880 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:33,861 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:33,873 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:33,886 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:35,000 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:35,018 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:35,031 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:36,021 INFO L134 CoverageAnalysis]: Checked inductivity of 152 backedges. 0 proven. 124 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2024-09-17 19:34:36,021 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:34:36,817 INFO L134 CoverageAnalysis]: Checked inductivity of 152 backedges. 16 proven. 2 refuted. 0 times theorem prover too weak. 134 trivial. 0 not checked. [2024-09-17 19:34:36,817 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:34:36,817 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1019319105] [2024-09-17 19:34:36,817 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:34:36,817 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [43454333] [2024-09-17 19:34:36,817 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [43454333] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-17 19:34:36,818 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-17 19:34:36,818 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16, 8] total 20 [2024-09-17 19:34:36,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1006075736] [2024-09-17 19:34:36,818 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-17 19:34:36,818 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-17 19:34:36,818 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:34:36,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-17 19:34:36,819 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=55, Invalid=325, Unknown=0, NotChecked=0, Total=380 [2024-09-17 19:34:36,819 INFO L87 Difference]: Start difference. First operand 109 states and 115 transitions. Second operand has 20 states, 16 states have (on average 2.5625) internal successors, (41), 15 states have internal predecessors, (41), 10 states have call successors, (20), 9 states have call predecessors, (20), 4 states have return successors, (12), 5 states have call predecessors, (12), 5 states have call successors, (12) [2024-09-17 19:34:40,048 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:34:40,049 INFO L93 Difference]: Finished difference Result 161 states and 168 transitions. [2024-09-17 19:34:40,049 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2024-09-17 19:34:40,049 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 16 states have (on average 2.5625) internal successors, (41), 15 states have internal predecessors, (41), 10 states have call successors, (20), 9 states have call predecessors, (20), 4 states have return successors, (12), 5 states have call predecessors, (12), 5 states have call successors, (12) Word has length 68 [2024-09-17 19:34:40,050 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:34:40,051 INFO L225 Difference]: With dead ends: 161 [2024-09-17 19:34:40,051 INFO L226 Difference]: Without dead ends: 159 [2024-09-17 19:34:40,052 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 150 GetRequests, 102 SyntacticMatches, 15 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 177 ImplicationChecksByTransitivity, 3.1s TimeCoverageRelationStatistics Valid=162, Invalid=1028, Unknown=0, NotChecked=0, Total=1190 [2024-09-17 19:34:40,052 INFO L434 NwaCegarLoop]: 49 mSDtfsCounter, 101 mSDsluCounter, 278 mSDsCounter, 0 mSdLazyCounter, 605 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 101 SdHoareTripleChecker+Valid, 327 SdHoareTripleChecker+Invalid, 643 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 605 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.8s IncrementalHoareTripleChecker+Time [2024-09-17 19:34:40,053 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [101 Valid, 327 Invalid, 643 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 605 Invalid, 0 Unknown, 0 Unchecked, 1.8s Time] [2024-09-17 19:34:40,053 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 159 states. [2024-09-17 19:34:40,133 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 159 to 141. [2024-09-17 19:34:40,140 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 141 states, 91 states have (on average 1.043956043956044) internal successors, (95), 93 states have internal predecessors, (95), 24 states have call successors, (24), 23 states have call predecessors, (24), 25 states have return successors, (29), 24 states have call predecessors, (29), 21 states have call successors, (29) [2024-09-17 19:34:40,141 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 141 states to 141 states and 148 transitions. [2024-09-17 19:34:40,142 INFO L78 Accepts]: Start accepts. Automaton has 141 states and 148 transitions. Word has length 68 [2024-09-17 19:34:40,142 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:34:40,142 INFO L474 AbstractCegarLoop]: Abstraction has 141 states and 148 transitions. [2024-09-17 19:34:40,142 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 16 states have (on average 2.5625) internal successors, (41), 15 states have internal predecessors, (41), 10 states have call successors, (20), 9 states have call predecessors, (20), 4 states have return successors, (12), 5 states have call predecessors, (12), 5 states have call successors, (12) [2024-09-17 19:34:40,143 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:40,143 INFO L276 IsEmpty]: Start isEmpty. Operand 141 states and 148 transitions. [2024-09-17 19:34:40,143 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 71 [2024-09-17 19:34:40,143 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:34:40,144 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:34:40,160 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-17 19:34:40,344 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-17 19:34:40,344 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:34:40,345 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:34:40,345 INFO L85 PathProgramCache]: Analyzing trace with hash 1393874761, now seen corresponding path program 1 times [2024-09-17 19:34:40,345 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:34:40,345 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [724285163] [2024-09-17 19:34:40,345 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:40,345 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:34:40,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:34:40,364 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [383567538] [2024-09-17 19:34:40,364 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:34:40,364 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:34:40,364 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:34:40,366 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:34:40,367 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-17 19:34:40,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-17 19:34:40,490 INFO L262 TraceCheckSpWp]: Trace formula consists of 335 conjuncts, 106 conjuncts are in the unsatisfiable core [2024-09-17 19:34:40,494 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:34:40,505 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:40,516 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:34:41,502 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:34:58,728 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:58,755 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:34:59,799 INFO L134 CoverageAnalysis]: Checked inductivity of 139 backedges. 41 proven. 81 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-09-17 19:34:59,799 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:35:07,050 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 96 treesize of output 60 [2024-09-17 19:35:08,963 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 54 treesize of output 30 [2024-09-17 19:35:09,007 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 22 [2024-09-17 19:35:11,688 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:35:11,689 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [724285163] [2024-09-17 19:35:11,689 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:35:11,689 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [383567538] [2024-09-17 19:35:11,689 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [383567538] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:35:11,689 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:35:11,689 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [25] total 25 [2024-09-17 19:35:11,689 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2011329072] [2024-09-17 19:35:11,690 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:35:11,690 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-17 19:35:11,690 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:35:11,691 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-17 19:35:11,691 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=135, Invalid=1123, Unknown=2, NotChecked=0, Total=1260 [2024-09-17 19:35:11,691 INFO L87 Difference]: Start difference. First operand 141 states and 148 transitions. Second operand has 25 states, 19 states have (on average 1.9473684210526316) internal successors, (37), 21 states have internal predecessors, (37), 10 states have call successors, (13), 6 states have call predecessors, (13), 7 states have return successors, (11), 7 states have call predecessors, (11), 9 states have call successors, (11) [2024-09-17 19:35:16,970 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-17 19:35:25,164 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-17 19:35:37,403 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-17 19:35:41,453 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-17 19:36:02,151 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:36:02,151 INFO L93 Difference]: Finished difference Result 143 states and 149 transitions. [2024-09-17 19:36:02,152 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2024-09-17 19:36:02,152 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 19 states have (on average 1.9473684210526316) internal successors, (37), 21 states have internal predecessors, (37), 10 states have call successors, (13), 6 states have call predecessors, (13), 7 states have return successors, (11), 7 states have call predecessors, (11), 9 states have call successors, (11) Word has length 70 [2024-09-17 19:36:02,152 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:36:02,153 INFO L225 Difference]: With dead ends: 143 [2024-09-17 19:36:02,153 INFO L226 Difference]: Without dead ends: 121 [2024-09-17 19:36:02,154 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 57 SyntacticMatches, 6 SemanticMatches, 58 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 822 ImplicationChecksByTransitivity, 49.2s TimeCoverageRelationStatistics Valid=430, Invalid=3104, Unknown=6, NotChecked=0, Total=3540 [2024-09-17 19:36:02,154 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 45 mSDsluCounter, 76 mSDsCounter, 0 mSdLazyCounter, 592 mSolverCounterSat, 47 mSolverCounterUnsat, 19 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 18.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 94 SdHoareTripleChecker+Invalid, 658 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 47 IncrementalHoareTripleChecker+Valid, 592 IncrementalHoareTripleChecker+Invalid, 19 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 18.3s IncrementalHoareTripleChecker+Time [2024-09-17 19:36:02,155 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [47 Valid, 94 Invalid, 658 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [47 Valid, 592 Invalid, 19 Unknown, 0 Unchecked, 18.3s Time] [2024-09-17 19:36:02,155 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2024-09-17 19:36:02,218 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 121. [2024-09-17 19:36:02,218 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 78 states have (on average 1.0384615384615385) internal successors, (81), 80 states have internal predecessors, (81), 21 states have call successors, (21), 20 states have call predecessors, (21), 21 states have return successors, (25), 20 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-17 19:36:02,219 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 127 transitions. [2024-09-17 19:36:02,219 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 127 transitions. Word has length 70 [2024-09-17 19:36:02,219 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:36:02,219 INFO L474 AbstractCegarLoop]: Abstraction has 121 states and 127 transitions. [2024-09-17 19:36:02,219 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 19 states have (on average 1.9473684210526316) internal successors, (37), 21 states have internal predecessors, (37), 10 states have call successors, (13), 6 states have call predecessors, (13), 7 states have return successors, (11), 7 states have call predecessors, (11), 9 states have call successors, (11) [2024-09-17 19:36:02,220 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:36:02,220 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 127 transitions. [2024-09-17 19:36:02,221 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2024-09-17 19:36:02,221 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:36:02,221 INFO L216 NwaCegarLoop]: trace histogram [11, 10, 10, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:36:02,235 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-17 19:36:02,425 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-17 19:36:02,425 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:36:02,426 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:36:02,426 INFO L85 PathProgramCache]: Analyzing trace with hash 1385368131, now seen corresponding path program 2 times [2024-09-17 19:36:02,426 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:36:02,426 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1026566862] [2024-09-17 19:36:02,426 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:36:02,426 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:36:02,453 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:36:02,454 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [513802524] [2024-09-17 19:36:02,454 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:36:02,455 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:36:02,455 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:36:02,456 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:36:02,458 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-17 19:36:02,591 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-17 19:36:02,591 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:36:02,594 INFO L262 TraceCheckSpWp]: Trace formula consists of 420 conjuncts, 187 conjuncts are in the unsatisfiable core [2024-09-17 19:36:02,598 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:36:02,607 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:02,618 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:02,638 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-17 19:36:03,833 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 38 treesize of output 30 [2024-09-17 19:36:05,036 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:36:05,243 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:07,525 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-17 19:36:07,548 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-17 19:36:07,568 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 3 [2024-09-17 19:36:07,742 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:36:07,742 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 36 treesize of output 32 [2024-09-17 19:36:08,657 INFO L349 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2024-09-17 19:36:08,658 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 90 treesize of output 70 [2024-09-17 19:36:08,673 INFO L349 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2024-09-17 19:36:08,673 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 77 treesize of output 33 [2024-09-17 19:36:09,102 INFO L134 CoverageAnalysis]: Checked inductivity of 234 backedges. 54 proven. 133 refuted. 0 times theorem prover too weak. 47 trivial. 0 not checked. [2024-09-17 19:36:09,102 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:36:21,680 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:36:21,681 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 233 treesize of output 220 [2024-09-17 19:36:30,025 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:36:30,025 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1026566862] [2024-09-17 19:36:30,025 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:36:30,025 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [513802524] [2024-09-17 19:36:30,026 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [513802524] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:36:30,026 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:36:30,026 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [33] total 33 [2024-09-17 19:36:30,026 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1409616222] [2024-09-17 19:36:30,026 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:36:30,026 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-17 19:36:30,026 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:36:30,027 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-17 19:36:30,027 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=182, Invalid=1622, Unknown=2, NotChecked=0, Total=1806 [2024-09-17 19:36:30,028 INFO L87 Difference]: Start difference. First operand 121 states and 127 transitions. Second operand has 33 states, 26 states have (on average 1.5) internal successors, (39), 26 states have internal predecessors, (39), 11 states have call successors, (13), 7 states have call predecessors, (13), 8 states have return successors, (11), 8 states have call predecessors, (11), 10 states have call successors, (11) [2024-09-17 19:36:37,920 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:36:37,920 INFO L93 Difference]: Finished difference Result 145 states and 152 transitions. [2024-09-17 19:36:37,921 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2024-09-17 19:36:37,921 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 26 states have (on average 1.5) internal successors, (39), 26 states have internal predecessors, (39), 11 states have call successors, (13), 7 states have call predecessors, (13), 8 states have return successors, (11), 8 states have call predecessors, (11), 10 states have call successors, (11) Word has length 88 [2024-09-17 19:36:37,921 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:36:37,922 INFO L225 Difference]: With dead ends: 145 [2024-09-17 19:36:37,922 INFO L226 Difference]: Without dead ends: 141 [2024-09-17 19:36:37,924 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 130 GetRequests, 56 SyntacticMatches, 10 SemanticMatches, 64 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1169 ImplicationChecksByTransitivity, 19.7s TimeCoverageRelationStatistics Valid=488, Invalid=3800, Unknown=2, NotChecked=0, Total=4290 [2024-09-17 19:36:37,924 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 53 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 776 mSolverCounterSat, 53 mSolverCounterUnsat, 12 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 53 SdHoareTripleChecker+Valid, 103 SdHoareTripleChecker+Invalid, 841 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 53 IncrementalHoareTripleChecker+Valid, 776 IncrementalHoareTripleChecker+Invalid, 12 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.8s IncrementalHoareTripleChecker+Time [2024-09-17 19:36:37,925 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [53 Valid, 103 Invalid, 841 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [53 Valid, 776 Invalid, 12 Unknown, 0 Unchecked, 3.8s Time] [2024-09-17 19:36:37,925 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 141 states. [2024-09-17 19:36:38,046 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 141 to 139. [2024-09-17 19:36:38,047 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 90 states have (on average 1.0333333333333334) internal successors, (93), 91 states have internal predecessors, (93), 24 states have call successors, (24), 23 states have call predecessors, (24), 24 states have return successors, (30), 24 states have call predecessors, (30), 21 states have call successors, (30) [2024-09-17 19:36:38,047 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 147 transitions. [2024-09-17 19:36:38,048 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 147 transitions. Word has length 88 [2024-09-17 19:36:38,048 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:36:38,048 INFO L474 AbstractCegarLoop]: Abstraction has 139 states and 147 transitions. [2024-09-17 19:36:38,049 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 26 states have (on average 1.5) internal successors, (39), 26 states have internal predecessors, (39), 11 states have call successors, (13), 7 states have call predecessors, (13), 8 states have return successors, (11), 8 states have call predecessors, (11), 10 states have call successors, (11) [2024-09-17 19:36:38,049 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:36:38,049 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 147 transitions. [2024-09-17 19:36:38,050 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2024-09-17 19:36:38,050 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:36:38,050 INFO L216 NwaCegarLoop]: trace histogram [12, 11, 11, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:36:38,069 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-17 19:36:38,251 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:36:38,251 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:36:38,251 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:36:38,251 INFO L85 PathProgramCache]: Analyzing trace with hash 344499176, now seen corresponding path program 2 times [2024-09-17 19:36:38,251 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:36:38,252 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [586101573] [2024-09-17 19:36:38,252 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:36:38,252 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:36:38,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:36:38,287 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1465945997] [2024-09-17 19:36:38,287 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-17 19:36:38,287 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:36:38,287 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:36:38,289 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:36:38,290 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-17 19:36:38,449 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-17 19:36:38,449 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:36:38,452 INFO L262 TraceCheckSpWp]: Trace formula consists of 437 conjuncts, 156 conjuncts are in the unsatisfiable core [2024-09-17 19:36:38,456 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:36:38,465 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:38,483 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:38,495 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:41,667 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:36:41,714 INFO L349 Elim1Store]: treesize reduction 21, result has 34.4 percent of original size [2024-09-17 19:36:41,714 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 25 [2024-09-17 19:36:41,737 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:36:43,114 INFO L134 CoverageAnalysis]: Checked inductivity of 276 backedges. 57 proven. 169 refuted. 0 times theorem prover too weak. 50 trivial. 0 not checked. [2024-09-17 19:36:43,114 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:36:50,768 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:36:50,768 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [586101573] [2024-09-17 19:36:50,768 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:36:50,769 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1465945997] [2024-09-17 19:36:50,769 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1465945997] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:36:50,769 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:36:50,769 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [27] total 27 [2024-09-17 19:36:50,769 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [827631812] [2024-09-17 19:36:50,769 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:36:50,769 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-17 19:36:50,769 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:36:50,770 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-17 19:36:50,770 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=125, Invalid=996, Unknown=1, NotChecked=0, Total=1122 [2024-09-17 19:36:50,770 INFO L87 Difference]: Start difference. First operand 139 states and 147 transitions. Second operand has 27 states, 20 states have (on average 2.2) internal successors, (44), 25 states have internal predecessors, (44), 12 states have call successors, (17), 5 states have call predecessors, (17), 8 states have return successors, (15), 8 states have call predecessors, (15), 11 states have call successors, (15) [2024-09-17 19:36:54,901 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:36:54,902 INFO L93 Difference]: Finished difference Result 141 states and 148 transitions. [2024-09-17 19:36:54,902 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-09-17 19:36:54,903 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 20 states have (on average 2.2) internal successors, (44), 25 states have internal predecessors, (44), 12 states have call successors, (17), 5 states have call predecessors, (17), 8 states have return successors, (15), 8 states have call predecessors, (15), 11 states have call successors, (15) Word has length 94 [2024-09-17 19:36:54,903 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:36:54,904 INFO L225 Difference]: With dead ends: 141 [2024-09-17 19:36:54,904 INFO L226 Difference]: Without dead ends: 117 [2024-09-17 19:36:54,905 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 127 GetRequests, 70 SyntacticMatches, 10 SemanticMatches, 47 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 675 ImplicationChecksByTransitivity, 9.8s TimeCoverageRelationStatistics Valid=279, Invalid=2072, Unknown=1, NotChecked=0, Total=2352 [2024-09-17 19:36:54,905 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 35 mSDsluCounter, 100 mSDsCounter, 0 mSdLazyCounter, 543 mSolverCounterSat, 25 mSolverCounterUnsat, 15 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 116 SdHoareTripleChecker+Invalid, 583 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 543 IncrementalHoareTripleChecker+Invalid, 15 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.1s IncrementalHoareTripleChecker+Time [2024-09-17 19:36:54,905 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 116 Invalid, 583 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 543 Invalid, 15 Unknown, 0 Unchecked, 2.1s Time] [2024-09-17 19:36:54,906 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 117 states. [2024-09-17 19:36:55,004 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 117 to 117. [2024-09-17 19:36:55,005 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 117 states, 76 states have (on average 1.0263157894736843) internal successors, (78), 77 states have internal predecessors, (78), 21 states have call successors, (21), 20 states have call predecessors, (21), 19 states have return successors, (25), 19 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-17 19:36:55,005 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 124 transitions. [2024-09-17 19:36:55,006 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 124 transitions. Word has length 94 [2024-09-17 19:36:55,006 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:36:55,006 INFO L474 AbstractCegarLoop]: Abstraction has 117 states and 124 transitions. [2024-09-17 19:36:55,006 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 20 states have (on average 2.2) internal successors, (44), 25 states have internal predecessors, (44), 12 states have call successors, (17), 5 states have call predecessors, (17), 8 states have return successors, (15), 8 states have call predecessors, (15), 11 states have call successors, (15) [2024-09-17 19:36:55,007 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:36:55,007 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 124 transitions. [2024-09-17 19:36:55,008 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 113 [2024-09-17 19:36:55,008 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:36:55,008 INFO L216 NwaCegarLoop]: trace histogram [14, 13, 13, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:36:55,022 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Forceful destruction successful, exit code 0 [2024-09-17 19:36:55,208 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-17 19:36:55,208 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:36:55,209 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:36:55,209 INFO L85 PathProgramCache]: Analyzing trace with hash -42363038, now seen corresponding path program 3 times [2024-09-17 19:36:55,209 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:36:55,209 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [584703770] [2024-09-17 19:36:55,209 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:36:55,209 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:36:55,243 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:36:55,245 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1678705244] [2024-09-17 19:36:55,245 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-17 19:36:55,245 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:36:55,245 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:36:55,247 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:36:55,248 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-17 19:36:55,432 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-09-17 19:36:55,432 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:36:55,435 INFO L262 TraceCheckSpWp]: Trace formula consists of 456 conjuncts, 174 conjuncts are in the unsatisfiable core [2024-09-17 19:36:55,439 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:36:55,447 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:55,465 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:55,489 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:36:58,942 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:36:58,977 INFO L173 IndexEqualityManager]: detected equality via solver [2024-09-17 19:36:58,978 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 3 [2024-09-17 19:36:59,687 INFO L134 CoverageAnalysis]: Checked inductivity of 407 backedges. 157 proven. 62 refuted. 0 times theorem prover too weak. 188 trivial. 0 not checked. [2024-09-17 19:36:59,687 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:37:05,546 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 43 [2024-09-17 19:37:05,562 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 39 [2024-09-17 19:37:05,579 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 23 [2024-09-17 19:37:13,590 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:37:13,590 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [584703770] [2024-09-17 19:37:13,590 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:37:13,590 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1678705244] [2024-09-17 19:37:13,590 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1678705244] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:37:13,590 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:37:13,590 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21] total 21 [2024-09-17 19:37:13,590 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1516022086] [2024-09-17 19:37:13,590 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:37:13,591 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-17 19:37:13,591 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:37:13,591 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-17 19:37:13,592 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=81, Invalid=674, Unknown=1, NotChecked=0, Total=756 [2024-09-17 19:37:13,592 INFO L87 Difference]: Start difference. First operand 117 states and 124 transitions. Second operand has 21 states, 16 states have (on average 2.25) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (13), 5 states have call predecessors, (13), 8 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-17 19:37:17,656 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:37:17,656 INFO L93 Difference]: Finished difference Result 141 states and 150 transitions. [2024-09-17 19:37:17,657 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-09-17 19:37:17,657 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 16 states have (on average 2.25) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (13), 5 states have call predecessors, (13), 8 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) Word has length 112 [2024-09-17 19:37:17,657 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:37:17,658 INFO L225 Difference]: With dead ends: 141 [2024-09-17 19:37:17,658 INFO L226 Difference]: Without dead ends: 137 [2024-09-17 19:37:17,659 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 147 GetRequests, 99 SyntacticMatches, 6 SemanticMatches, 42 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 393 ImplicationChecksByTransitivity, 11.3s TimeCoverageRelationStatistics Valid=227, Invalid=1664, Unknown=1, NotChecked=0, Total=1892 [2024-09-17 19:37:17,659 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 40 mSDsluCounter, 92 mSDsCounter, 0 mSdLazyCounter, 574 mSolverCounterSat, 32 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 108 SdHoareTripleChecker+Invalid, 608 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 574 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.0s IncrementalHoareTripleChecker+Time [2024-09-17 19:37:17,659 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 108 Invalid, 608 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 574 Invalid, 2 Unknown, 0 Unchecked, 2.0s Time] [2024-09-17 19:37:17,660 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 137 states. [2024-09-17 19:37:17,759 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 137 to 135. [2024-09-17 19:37:17,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 135 states, 88 states have (on average 1.0227272727272727) internal successors, (90), 88 states have internal predecessors, (90), 24 states have call successors, (24), 23 states have call predecessors, (24), 22 states have return successors, (31), 23 states have call predecessors, (31), 21 states have call successors, (31) [2024-09-17 19:37:17,760 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 145 transitions. [2024-09-17 19:37:17,761 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 145 transitions. Word has length 112 [2024-09-17 19:37:17,761 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:37:17,761 INFO L474 AbstractCegarLoop]: Abstraction has 135 states and 145 transitions. [2024-09-17 19:37:17,761 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 16 states have (on average 2.25) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (13), 5 states have call predecessors, (13), 8 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-17 19:37:17,761 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:37:17,762 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 145 transitions. [2024-09-17 19:37:17,763 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2024-09-17 19:37:17,763 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:37:17,763 INFO L216 NwaCegarLoop]: trace histogram [17, 16, 16, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:37:17,781 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Forceful destruction successful, exit code 0 [2024-09-17 19:37:17,963 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-17 19:37:17,964 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:37:17,964 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:37:17,964 INFO L85 PathProgramCache]: Analyzing trace with hash -1115426367, now seen corresponding path program 4 times [2024-09-17 19:37:17,964 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:37:17,964 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1350019356] [2024-09-17 19:37:17,964 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:37:17,964 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:37:18,004 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:37:18,009 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1809296771] [2024-09-17 19:37:18,010 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-17 19:37:18,010 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:37:18,010 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:37:18,012 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:37:18,013 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-17 19:37:18,392 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-17 19:37:18,393 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:37:18,396 INFO L262 TraceCheckSpWp]: Trace formula consists of 545 conjuncts, 150 conjuncts are in the unsatisfiable core [2024-09-17 19:37:18,399 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:37:19,872 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:37:19,880 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-17 19:37:19,895 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-17 19:37:21,717 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:21,717 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 31 treesize of output 35 [2024-09-17 19:37:22,166 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 41 treesize of output 21 [2024-09-17 19:37:22,172 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 22 treesize of output 14 [2024-09-17 19:37:22,451 INFO L134 CoverageAnalysis]: Checked inductivity of 628 backedges. 339 proven. 89 refuted. 0 times theorem prover too weak. 200 trivial. 0 not checked. [2024-09-17 19:37:22,451 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:37:28,159 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 137 treesize of output 125 [2024-09-17 19:37:28,193 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:28,193 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 151 treesize of output 102 [2024-09-17 19:37:28,228 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:28,229 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 113 treesize of output 112 [2024-09-17 19:37:30,327 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 137 treesize of output 125 [2024-09-17 19:37:30,375 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:30,376 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 151 treesize of output 102 [2024-09-17 19:37:30,429 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:30,430 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 113 treesize of output 112 [2024-09-17 19:37:32,005 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:32,006 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 193 treesize of output 192 [2024-09-17 19:37:32,016 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 53 treesize of output 45 [2024-09-17 19:37:32,049 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-17 19:37:32,049 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 168 treesize of output 119 [2024-09-17 19:37:33,438 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-17 19:37:33,438 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1350019356] [2024-09-17 19:37:33,438 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-17 19:37:33,439 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1809296771] [2024-09-17 19:37:33,439 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1809296771] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-17 19:37:33,439 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-17 19:37:33,439 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-17 19:37:33,439 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2020388635] [2024-09-17 19:37:33,439 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-17 19:37:33,439 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-17 19:37:33,439 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-17 19:37:33,440 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-17 19:37:33,440 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=95, Invalid=607, Unknown=0, NotChecked=0, Total=702 [2024-09-17 19:37:33,440 INFO L87 Difference]: Start difference. First operand 135 states and 145 transitions. Second operand has 24 states, 20 states have (on average 2.5) internal successors, (50), 21 states have internal predecessors, (50), 10 states have call successors, (20), 6 states have call predecessors, (20), 8 states have return successors, (18), 8 states have call predecessors, (18), 9 states have call successors, (18) [2024-09-17 19:37:37,371 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-17 19:37:37,371 INFO L93 Difference]: Finished difference Result 141 states and 150 transitions. [2024-09-17 19:37:37,372 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-17 19:37:37,372 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 20 states have (on average 2.5) internal successors, (50), 21 states have internal predecessors, (50), 10 states have call successors, (20), 6 states have call predecessors, (20), 8 states have return successors, (18), 8 states have call predecessors, (18), 9 states have call successors, (18) Word has length 136 [2024-09-17 19:37:37,372 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-17 19:37:37,373 INFO L225 Difference]: With dead ends: 141 [2024-09-17 19:37:37,373 INFO L226 Difference]: Without dead ends: 137 [2024-09-17 19:37:37,374 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 182 GetRequests, 134 SyntacticMatches, 8 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 468 ImplicationChecksByTransitivity, 4.6s TimeCoverageRelationStatistics Valid=287, Invalid=1435, Unknown=0, NotChecked=0, Total=1722 [2024-09-17 19:37:37,374 INFO L434 NwaCegarLoop]: 14 mSDtfsCounter, 57 mSDsluCounter, 74 mSDsCounter, 0 mSdLazyCounter, 463 mSolverCounterSat, 66 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 57 SdHoareTripleChecker+Valid, 88 SdHoareTripleChecker+Invalid, 529 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 66 IncrementalHoareTripleChecker+Valid, 463 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2024-09-17 19:37:37,374 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [57 Valid, 88 Invalid, 529 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [66 Valid, 463 Invalid, 0 Unknown, 0 Unchecked, 1.9s Time] [2024-09-17 19:37:37,375 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 137 states. [2024-09-17 19:37:37,461 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 137 to 119. [2024-09-17 19:37:37,462 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 119 states, 78 states have (on average 1.0128205128205128) internal successors, (79), 78 states have internal predecessors, (79), 21 states have call successors, (21), 21 states have call predecessors, (21), 19 states have return successors, (25), 19 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-17 19:37:37,462 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 119 states to 119 states and 125 transitions. [2024-09-17 19:37:37,462 INFO L78 Accepts]: Start accepts. Automaton has 119 states and 125 transitions. Word has length 136 [2024-09-17 19:37:37,463 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-17 19:37:37,463 INFO L474 AbstractCegarLoop]: Abstraction has 119 states and 125 transitions. [2024-09-17 19:37:37,463 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 20 states have (on average 2.5) internal successors, (50), 21 states have internal predecessors, (50), 10 states have call successors, (20), 6 states have call predecessors, (20), 8 states have return successors, (18), 8 states have call predecessors, (18), 9 states have call successors, (18) [2024-09-17 19:37:37,463 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:37:37,463 INFO L276 IsEmpty]: Start isEmpty. Operand 119 states and 125 transitions. [2024-09-17 19:37:37,464 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 119 [2024-09-17 19:37:37,464 INFO L208 NwaCegarLoop]: Found error trace [2024-09-17 19:37:37,464 INFO L216 NwaCegarLoop]: trace histogram [15, 14, 14, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-17 19:37:37,480 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2024-09-17 19:37:37,665 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-17 19:37:37,665 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-17 19:37:37,665 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-17 19:37:37,665 INFO L85 PathProgramCache]: Analyzing trace with hash -1317888569, now seen corresponding path program 3 times [2024-09-17 19:37:37,665 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-17 19:37:37,665 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1161881294] [2024-09-17 19:37:37,666 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-17 19:37:37,666 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-17 19:37:37,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-17 19:37:37,703 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1470756174] [2024-09-17 19:37:37,703 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-17 19:37:37,703 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-17 19:37:37,703 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-17 19:37:37,705 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-17 19:37:37,709 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-17 19:37:37,958 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-09-17 19:37:37,958 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-17 19:37:37,960 INFO L262 TraceCheckSpWp]: Trace formula consists of 454 conjuncts, 119 conjuncts are in the unsatisfiable core [2024-09-17 19:37:37,964 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-17 19:37:37,972 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:37:38,001 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-17 19:37:39,868 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-17 19:37:39,912 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-17 19:37:40,662 INFO L134 CoverageAnalysis]: Checked inductivity of 461 backedges. 120 proven. 58 refuted. 0 times theorem prover too weak. 283 trivial. 0 not checked. [2024-09-17 19:37:40,663 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-17 19:37:43,941 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 29 treesize of output 17 [2024-09-17 19:37:43,952 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 13