./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/loops-crafted-1/vnew1.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 27b49876 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/loops-crafted-1/vnew1.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 92c9725cc4c9709a9ab81826fb3481ef81541ab6f68244b6727f50e97bc0f0c0 --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-27b4987-m [2024-09-21 11:36:17,671 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-21 11:36:17,711 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-21 11:36:17,714 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-21 11:36:17,714 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-21 11:36:17,729 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-21 11:36:17,729 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-21 11:36:17,730 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-21 11:36:17,730 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-21 11:36:17,739 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-21 11:36:17,740 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-21 11:36:17,741 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-21 11:36:17,741 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-21 11:36:17,741 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-21 11:36:17,741 INFO L153 SettingsManager]: * Use SBE=true [2024-09-21 11:36:17,742 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-21 11:36:17,742 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-21 11:36:17,742 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-21 11:36:17,742 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-21 11:36:17,743 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-21 11:36:17,743 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-21 11:36:17,744 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-21 11:36:17,744 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-21 11:36:17,744 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-21 11:36:17,744 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-21 11:36:17,744 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-21 11:36:17,745 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-21 11:36:17,745 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-21 11:36:17,749 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-21 11:36:17,749 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-21 11:36:17,749 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-21 11:36:17,750 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-21 11:36:17,750 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-21 11:36:17,751 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-21 11:36:17,751 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-21 11:36:17,751 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-21 11:36:17,751 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 92c9725cc4c9709a9ab81826fb3481ef81541ab6f68244b6727f50e97bc0f0c0 Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-21 11:36:17,951 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-21 11:36:17,973 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-21 11:36:17,975 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-21 11:36:17,975 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-21 11:36:17,976 INFO L274 PluginConnector]: CDTParser initialized [2024-09-21 11:36:17,977 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/loops-crafted-1/vnew1.c [2024-09-21 11:36:19,229 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-21 11:36:19,365 INFO L384 CDTParser]: Found 1 translation units. [2024-09-21 11:36:19,365 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/vnew1.c [2024-09-21 11:36:19,371 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/9efa6f4dd/a14dd80d3ba54914ab6587ebdaa1f929/FLAG73cd189ad [2024-09-21 11:36:19,382 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/9efa6f4dd/a14dd80d3ba54914ab6587ebdaa1f929 [2024-09-21 11:36:19,384 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-21 11:36:19,385 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-21 11:36:19,386 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-21 11:36:19,386 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-21 11:36:19,391 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-21 11:36:19,391 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,392 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@56d103ed and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19, skipping insertion in model container [2024-09-21 11:36:19,392 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,405 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-21 11:36:19,511 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/vnew1.c[403,416] [2024-09-21 11:36:19,527 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-21 11:36:19,539 INFO L200 MainTranslator]: Completed pre-run [2024-09-21 11:36:19,550 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/vnew1.c[403,416] [2024-09-21 11:36:19,553 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-21 11:36:19,570 INFO L204 MainTranslator]: Completed translation [2024-09-21 11:36:19,570 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19 WrapperNode [2024-09-21 11:36:19,573 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-21 11:36:19,574 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-21 11:36:19,575 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-21 11:36:19,575 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-21 11:36:19,581 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,588 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,592 INFO L138 Inliner]: procedures = 14, calls = 16, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-21 11:36:19,593 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-21 11:36:19,593 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-21 11:36:19,593 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-21 11:36:19,593 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-21 11:36:19,601 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,601 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,602 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,611 INFO L175 MemorySlicer]: Split 10 memory accesses to 2 slices as follows [2, 8]. 80 percent of accesses are in the largest equivalence class. The 10 initializations are split as follows [2, 8]. The 0 writes are split as follows [0, 0]. [2024-09-21 11:36:19,612 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,612 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,616 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,619 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,619 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,620 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,621 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-21 11:36:19,621 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-21 11:36:19,622 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-21 11:36:19,622 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-21 11:36:19,622 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (1/1) ... [2024-09-21 11:36:19,626 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-21 11:36:19,634 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:19,648 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-21 11:36:19,652 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-21 11:36:19,701 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-21 11:36:19,702 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-21 11:36:19,702 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-21 11:36:19,702 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-21 11:36:19,702 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-21 11:36:19,702 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-21 11:36:19,702 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-21 11:36:19,703 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-21 11:36:19,704 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-21 11:36:19,704 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-21 11:36:19,704 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-21 11:36:19,756 INFO L242 CfgBuilder]: Building ICFG [2024-09-21 11:36:19,758 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-21 11:36:19,897 INFO L? ?]: Removed 7 outVars from TransFormulas that were not future-live. [2024-09-21 11:36:19,899 INFO L291 CfgBuilder]: Performing block encoding [2024-09-21 11:36:19,953 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-21 11:36:19,957 INFO L318 CfgBuilder]: Removed 2 assume(true) statements. [2024-09-21 11:36:19,957 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.09 11:36:19 BoogieIcfgContainer [2024-09-21 11:36:19,958 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-21 11:36:19,959 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-21 11:36:19,959 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-21 11:36:19,976 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-21 11:36:19,976 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.09 11:36:19" (1/3) ... [2024-09-21 11:36:19,977 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@67d28ae7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.09 11:36:19, skipping insertion in model container [2024-09-21 11:36:19,977 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:36:19" (2/3) ... [2024-09-21 11:36:19,977 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@67d28ae7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.09 11:36:19, skipping insertion in model container [2024-09-21 11:36:19,977 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.09 11:36:19" (3/3) ... [2024-09-21 11:36:19,978 INFO L112 eAbstractionObserver]: Analyzing ICFG vnew1.c [2024-09-21 11:36:19,993 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-21 11:36:19,993 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-21 11:36:20,040 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-21 11:36:20,047 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@57163c93, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-21 11:36:20,047 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-21 11:36:20,055 INFO L276 IsEmpty]: Start isEmpty. Operand has 22 states, 14 states have (on average 1.5) internal successors, (21), 15 states have internal predecessors, (21), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-21 11:36:20,067 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2024-09-21 11:36:20,068 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:20,068 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:20,069 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:20,080 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:20,080 INFO L85 PathProgramCache]: Analyzing trace with hash 1892212544, now seen corresponding path program 1 times [2024-09-21 11:36:20,089 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:20,089 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1397378596] [2024-09-21 11:36:20,090 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:20,090 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:20,192 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:20,630 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:20,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:20,673 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:20,674 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:20,674 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1397378596] [2024-09-21 11:36:20,674 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1397378596] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-21 11:36:20,675 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-21 11:36:20,675 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2024-09-21 11:36:20,678 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2135761328] [2024-09-21 11:36:20,678 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-21 11:36:20,682 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2024-09-21 11:36:20,683 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:36:20,704 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2024-09-21 11:36:20,705 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=71, Unknown=0, NotChecked=0, Total=90 [2024-09-21 11:36:20,707 INFO L87 Difference]: Start difference. First operand has 22 states, 14 states have (on average 1.5) internal successors, (21), 15 states have internal predecessors, (21), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Second operand has 10 states, 7 states have (on average 1.2857142857142858) internal successors, (9), 7 states have internal predecessors, (9), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:36:20,951 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:36:20,951 INFO L93 Difference]: Finished difference Result 46 states and 60 transitions. [2024-09-21 11:36:20,952 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-21 11:36:20,953 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 7 states have (on average 1.2857142857142858) internal successors, (9), 7 states have internal predecessors, (9), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 13 [2024-09-21 11:36:20,954 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:36:20,958 INFO L225 Difference]: With dead ends: 46 [2024-09-21 11:36:20,958 INFO L226 Difference]: Without dead ends: 26 [2024-09-21 11:36:20,961 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=67, Invalid=173, Unknown=0, NotChecked=0, Total=240 [2024-09-21 11:36:20,963 INFO L434 NwaCegarLoop]: 4 mSDtfsCounter, 57 mSDsluCounter, 23 mSDsCounter, 0 mSdLazyCounter, 122 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 27 SdHoareTripleChecker+Invalid, 133 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 122 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-21 11:36:20,964 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [58 Valid, 27 Invalid, 133 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 122 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-21 11:36:20,980 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 26 states. [2024-09-21 11:36:20,996 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 26 to 25. [2024-09-21 11:36:20,997 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 25 states, 17 states have (on average 1.1764705882352942) internal successors, (20), 18 states have internal predecessors, (20), 4 states have call successors, (4), 4 states have call predecessors, (4), 3 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-21 11:36:20,998 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 25 states to 25 states and 27 transitions. [2024-09-21 11:36:21,000 INFO L78 Accepts]: Start accepts. Automaton has 25 states and 27 transitions. Word has length 13 [2024-09-21 11:36:21,001 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:36:21,001 INFO L474 AbstractCegarLoop]: Abstraction has 25 states and 27 transitions. [2024-09-21 11:36:21,001 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 7 states have (on average 1.2857142857142858) internal successors, (9), 7 states have internal predecessors, (9), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:36:21,002 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:21,002 INFO L276 IsEmpty]: Start isEmpty. Operand 25 states and 27 transitions. [2024-09-21 11:36:21,003 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 15 [2024-09-21 11:36:21,003 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:21,003 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:21,004 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-21 11:36:21,004 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:21,005 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:21,005 INFO L85 PathProgramCache]: Analyzing trace with hash 706153222, now seen corresponding path program 1 times [2024-09-21 11:36:21,005 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:21,007 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1770968677] [2024-09-21 11:36:21,007 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:21,008 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:21,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:21,408 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:21,410 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:21,415 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:21,416 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:21,416 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1770968677] [2024-09-21 11:36:21,416 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1770968677] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:36:21,416 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2056184959] [2024-09-21 11:36:21,416 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:21,417 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:21,417 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:21,419 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:36:21,423 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-21 11:36:21,463 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:21,466 INFO L262 TraceCheckSpWp]: Trace formula consists of 72 conjuncts, 15 conjuncts are in the unsatisfiable core [2024-09-21 11:36:21,470 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:36:21,695 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:21,696 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:36:21,959 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:21,960 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2056184959] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:36:21,960 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:36:21,961 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 8] total 21 [2024-09-21 11:36:21,962 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1778460028] [2024-09-21 11:36:21,962 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:36:21,962 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-21 11:36:21,963 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:36:21,964 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-21 11:36:21,964 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=73, Invalid=347, Unknown=0, NotChecked=0, Total=420 [2024-09-21 11:36:21,967 INFO L87 Difference]: Start difference. First operand 25 states and 27 transitions. Second operand has 21 states, 18 states have (on average 1.3888888888888888) internal successors, (25), 18 states have internal predecessors, (25), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-21 11:36:22,541 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:36:22,541 INFO L93 Difference]: Finished difference Result 50 states and 58 transitions. [2024-09-21 11:36:22,542 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-21 11:36:22,542 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 18 states have (on average 1.3888888888888888) internal successors, (25), 18 states have internal predecessors, (25), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 14 [2024-09-21 11:36:22,542 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:36:22,544 INFO L225 Difference]: With dead ends: 50 [2024-09-21 11:36:22,544 INFO L226 Difference]: Without dead ends: 48 [2024-09-21 11:36:22,545 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 54 GetRequests, 18 SyntacticMatches, 2 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 170 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=247, Invalid=1013, Unknown=0, NotChecked=0, Total=1260 [2024-09-21 11:36:22,547 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 90 mSDsluCounter, 22 mSDsCounter, 0 mSdLazyCounter, 274 mSolverCounterSat, 51 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 90 SdHoareTripleChecker+Valid, 25 SdHoareTripleChecker+Invalid, 325 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 51 IncrementalHoareTripleChecker+Valid, 274 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:36:22,548 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [90 Valid, 25 Invalid, 325 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [51 Valid, 274 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-21 11:36:22,548 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 48 states. [2024-09-21 11:36:22,564 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 48 to 40. [2024-09-21 11:36:22,565 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 40 states, 29 states have (on average 1.206896551724138) internal successors, (35), 30 states have internal predecessors, (35), 6 states have call successors, (6), 5 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-21 11:36:22,566 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 40 states to 40 states and 46 transitions. [2024-09-21 11:36:22,566 INFO L78 Accepts]: Start accepts. Automaton has 40 states and 46 transitions. Word has length 14 [2024-09-21 11:36:22,566 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:36:22,566 INFO L474 AbstractCegarLoop]: Abstraction has 40 states and 46 transitions. [2024-09-21 11:36:22,566 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 18 states have (on average 1.3888888888888888) internal successors, (25), 18 states have internal predecessors, (25), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-21 11:36:22,567 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:22,567 INFO L276 IsEmpty]: Start isEmpty. Operand 40 states and 46 transitions. [2024-09-21 11:36:22,568 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-09-21 11:36:22,568 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:22,568 INFO L216 NwaCegarLoop]: trace histogram [4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:22,584 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-21 11:36:22,772 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:22,773 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:22,773 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:22,773 INFO L85 PathProgramCache]: Analyzing trace with hash 1759027392, now seen corresponding path program 2 times [2024-09-21 11:36:22,773 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:22,773 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2002641858] [2024-09-21 11:36:22,773 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:22,773 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:22,793 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:22,998 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:23,002 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:23,019 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:23,020 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:23,020 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2002641858] [2024-09-21 11:36:23,020 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2002641858] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:36:23,020 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [58847638] [2024-09-21 11:36:23,020 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:36:23,020 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:23,021 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:23,022 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:36:23,025 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-21 11:36:23,060 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:36:23,061 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:36:23,065 INFO L262 TraceCheckSpWp]: Trace formula consists of 87 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-21 11:36:23,066 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:36:23,282 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:23,282 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:36:23,554 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:23,555 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [58847638] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:36:23,555 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:36:23,555 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 10, 10] total 26 [2024-09-21 11:36:23,555 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2136177220] [2024-09-21 11:36:23,555 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:36:23,556 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 26 states [2024-09-21 11:36:23,556 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:36:23,556 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 26 interpolants. [2024-09-21 11:36:23,557 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=100, Invalid=550, Unknown=0, NotChecked=0, Total=650 [2024-09-21 11:36:23,557 INFO L87 Difference]: Start difference. First operand 40 states and 46 transitions. Second operand has 26 states, 25 states have (on average 1.32) internal successors, (33), 23 states have internal predecessors, (33), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-21 11:36:25,042 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:36:25,043 INFO L93 Difference]: Finished difference Result 82 states and 101 transitions. [2024-09-21 11:36:25,043 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2024-09-21 11:36:25,043 INFO L78 Accepts]: Start accepts. Automaton has has 26 states, 25 states have (on average 1.32) internal successors, (33), 23 states have internal predecessors, (33), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 17 [2024-09-21 11:36:25,043 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:36:25,045 INFO L225 Difference]: With dead ends: 82 [2024-09-21 11:36:25,045 INFO L226 Difference]: Without dead ends: 80 [2024-09-21 11:36:25,046 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 64 GetRequests, 21 SyntacticMatches, 0 SemanticMatches, 43 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 272 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=373, Invalid=1607, Unknown=0, NotChecked=0, Total=1980 [2024-09-21 11:36:25,047 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 154 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 389 mSolverCounterSat, 57 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 154 SdHoareTripleChecker+Valid, 28 SdHoareTripleChecker+Invalid, 446 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 57 IncrementalHoareTripleChecker+Valid, 389 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-21 11:36:25,047 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [154 Valid, 28 Invalid, 446 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [57 Valid, 389 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-21 11:36:25,047 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2024-09-21 11:36:25,062 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 48. [2024-09-21 11:36:25,062 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 48 states, 37 states have (on average 1.3783783783783783) internal successors, (51), 38 states have internal predecessors, (51), 6 states have call successors, (6), 5 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-21 11:36:25,063 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 48 states to 48 states and 62 transitions. [2024-09-21 11:36:25,063 INFO L78 Accepts]: Start accepts. Automaton has 48 states and 62 transitions. Word has length 17 [2024-09-21 11:36:25,063 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:36:25,064 INFO L474 AbstractCegarLoop]: Abstraction has 48 states and 62 transitions. [2024-09-21 11:36:25,064 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 26 states, 25 states have (on average 1.32) internal successors, (33), 23 states have internal predecessors, (33), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-21 11:36:25,064 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:25,064 INFO L276 IsEmpty]: Start isEmpty. Operand 48 states and 62 transitions. [2024-09-21 11:36:25,065 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2024-09-21 11:36:25,065 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:25,065 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:25,078 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-09-21 11:36:25,269 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:25,270 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:25,270 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:25,270 INFO L85 PathProgramCache]: Analyzing trace with hash 447679010, now seen corresponding path program 1 times [2024-09-21 11:36:25,271 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:25,271 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [174494874] [2024-09-21 11:36:25,271 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:25,271 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:25,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:25,638 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:25,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:25,666 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-21 11:36:25,670 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:25,676 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:25,676 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:25,676 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [174494874] [2024-09-21 11:36:25,676 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [174494874] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:36:25,676 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2076862036] [2024-09-21 11:36:25,676 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:25,676 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:25,676 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:25,679 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:36:25,686 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-21 11:36:25,731 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:25,732 INFO L262 TraceCheckSpWp]: Trace formula consists of 96 conjuncts, 23 conjuncts are in the unsatisfiable core [2024-09-21 11:36:25,736 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:36:25,926 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:25,926 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:36:26,123 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:26,123 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2076862036] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:36:26,123 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:36:26,124 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 10, 9] total 23 [2024-09-21 11:36:26,124 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1677714934] [2024-09-21 11:36:26,124 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:36:26,124 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-09-21 11:36:26,125 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:36:26,127 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-09-21 11:36:26,127 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=73, Invalid=433, Unknown=0, NotChecked=0, Total=506 [2024-09-21 11:36:26,127 INFO L87 Difference]: Start difference. First operand 48 states and 62 transitions. Second operand has 23 states, 23 states have (on average 1.6521739130434783) internal successors, (38), 20 states have internal predecessors, (38), 8 states have call successors, (10), 6 states have call predecessors, (10), 2 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-21 11:36:28,333 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:36:28,333 INFO L93 Difference]: Finished difference Result 93 states and 116 transitions. [2024-09-21 11:36:28,334 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-21 11:36:28,334 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 23 states have (on average 1.6521739130434783) internal successors, (38), 20 states have internal predecessors, (38), 8 states have call successors, (10), 6 states have call predecessors, (10), 2 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) Word has length 23 [2024-09-21 11:36:28,334 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:36:28,335 INFO L225 Difference]: With dead ends: 93 [2024-09-21 11:36:28,335 INFO L226 Difference]: Without dead ends: 91 [2024-09-21 11:36:28,336 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 74 GetRequests, 36 SyntacticMatches, 3 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 247 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=235, Invalid=1097, Unknown=0, NotChecked=0, Total=1332 [2024-09-21 11:36:28,336 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 102 mSDsluCounter, 38 mSDsCounter, 0 mSdLazyCounter, 485 mSolverCounterSat, 43 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 102 SdHoareTripleChecker+Valid, 41 SdHoareTripleChecker+Invalid, 528 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 43 IncrementalHoareTripleChecker+Valid, 485 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2024-09-21 11:36:28,336 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [102 Valid, 41 Invalid, 528 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [43 Valid, 485 Invalid, 0 Unknown, 0 Unchecked, 1.9s Time] [2024-09-21 11:36:28,337 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2024-09-21 11:36:28,365 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 89. [2024-09-21 11:36:28,365 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 65 states have (on average 1.2153846153846153) internal successors, (79), 71 states have internal predecessors, (79), 17 states have call successors, (17), 7 states have call predecessors, (17), 6 states have return successors, (16), 10 states have call predecessors, (16), 16 states have call successors, (16) [2024-09-21 11:36:28,366 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 112 transitions. [2024-09-21 11:36:28,367 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 112 transitions. Word has length 23 [2024-09-21 11:36:28,370 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:36:28,370 INFO L474 AbstractCegarLoop]: Abstraction has 89 states and 112 transitions. [2024-09-21 11:36:28,370 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 23 states have (on average 1.6521739130434783) internal successors, (38), 20 states have internal predecessors, (38), 8 states have call successors, (10), 6 states have call predecessors, (10), 2 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-21 11:36:28,371 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:28,371 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 112 transitions. [2024-09-21 11:36:28,371 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-21 11:36:28,371 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:28,371 INFO L216 NwaCegarLoop]: trace histogram [12, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:28,386 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-09-21 11:36:28,572 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:28,572 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:28,572 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:28,573 INFO L85 PathProgramCache]: Analyzing trace with hash -1692277824, now seen corresponding path program 3 times [2024-09-21 11:36:28,573 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:28,573 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1365100587] [2024-09-21 11:36:28,573 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:28,573 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:28,621 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:29,199 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:29,202 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:29,228 INFO L134 CoverageAnalysis]: Checked inductivity of 78 backedges. 0 proven. 78 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:29,228 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:29,228 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1365100587] [2024-09-21 11:36:29,228 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1365100587] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:36:29,228 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [939345106] [2024-09-21 11:36:29,228 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:36:29,229 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:29,229 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:29,232 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:36:29,243 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-21 11:36:29,301 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 7 check-sat command(s) [2024-09-21 11:36:29,301 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:36:29,302 INFO L262 TraceCheckSpWp]: Trace formula consists of 127 conjuncts, 56 conjuncts are in the unsatisfiable core [2024-09-21 11:36:29,304 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:36:29,780 INFO L134 CoverageAnalysis]: Checked inductivity of 78 backedges. 0 proven. 78 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:29,780 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:36:30,542 INFO L134 CoverageAnalysis]: Checked inductivity of 78 backedges. 0 proven. 78 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:36:30,542 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [939345106] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:36:30,542 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:36:30,542 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 17, 17] total 48 [2024-09-21 11:36:30,542 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [76171583] [2024-09-21 11:36:30,542 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:36:30,543 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 48 states [2024-09-21 11:36:30,543 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:36:30,543 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 48 interpolants. [2024-09-21 11:36:30,544 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=376, Invalid=1880, Unknown=0, NotChecked=0, Total=2256 [2024-09-21 11:36:30,544 INFO L87 Difference]: Start difference. First operand 89 states and 112 transitions. Second operand has 48 states, 47 states have (on average 1.2127659574468086) internal successors, (57), 45 states have internal predecessors, (57), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-21 11:36:42,353 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:36:51,649 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:36:52,466 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:36:52,466 INFO L93 Difference]: Finished difference Result 151 states and 195 transitions. [2024-09-21 11:36:52,467 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 41 states. [2024-09-21 11:36:52,467 INFO L78 Accepts]: Start accepts. Automaton has has 48 states, 47 states have (on average 1.2127659574468086) internal successors, (57), 45 states have internal predecessors, (57), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 25 [2024-09-21 11:36:52,467 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:36:52,469 INFO L225 Difference]: With dead ends: 151 [2024-09-21 11:36:52,469 INFO L226 Difference]: Without dead ends: 149 [2024-09-21 11:36:52,471 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 106 GetRequests, 23 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 755 ImplicationChecksByTransitivity, 13.8s TimeCoverageRelationStatistics Valid=1319, Invalid=5821, Unknown=0, NotChecked=0, Total=7140 [2024-09-21 11:36:52,471 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 384 mSDsluCounter, 73 mSDsCounter, 0 mSdLazyCounter, 1459 mSolverCounterSat, 173 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 9.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 384 SdHoareTripleChecker+Valid, 76 SdHoareTripleChecker+Invalid, 1634 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 173 IncrementalHoareTripleChecker+Valid, 1459 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 9.4s IncrementalHoareTripleChecker+Time [2024-09-21 11:36:52,471 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [384 Valid, 76 Invalid, 1634 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [173 Valid, 1459 Invalid, 2 Unknown, 0 Unchecked, 9.4s Time] [2024-09-21 11:36:52,472 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2024-09-21 11:36:52,513 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 126. [2024-09-21 11:36:52,514 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 126 states, 96 states have (on average 1.3020833333333333) internal successors, (125), 105 states have internal predecessors, (125), 21 states have call successors, (21), 9 states have call predecessors, (21), 8 states have return successors, (20), 11 states have call predecessors, (20), 20 states have call successors, (20) [2024-09-21 11:36:52,515 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 126 states to 126 states and 166 transitions. [2024-09-21 11:36:52,515 INFO L78 Accepts]: Start accepts. Automaton has 126 states and 166 transitions. Word has length 25 [2024-09-21 11:36:52,515 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:36:52,515 INFO L474 AbstractCegarLoop]: Abstraction has 126 states and 166 transitions. [2024-09-21 11:36:52,516 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 48 states, 47 states have (on average 1.2127659574468086) internal successors, (57), 45 states have internal predecessors, (57), 5 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-21 11:36:52,516 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:52,516 INFO L276 IsEmpty]: Start isEmpty. Operand 126 states and 166 transitions. [2024-09-21 11:36:52,517 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-21 11:36:52,517 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:52,517 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:52,530 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-09-21 11:36:52,721 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:52,722 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:52,722 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:52,722 INFO L85 PathProgramCache]: Analyzing trace with hash 1835559814, now seen corresponding path program 2 times [2024-09-21 11:36:52,723 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:52,723 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [423443943] [2024-09-21 11:36:52,723 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:52,723 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:52,744 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:52,951 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:52,952 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:52,954 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-21 11:36:52,955 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:52,957 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-21 11:36:52,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:52,960 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:36:52,961 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:52,961 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [423443943] [2024-09-21 11:36:52,961 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [423443943] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:36:52,961 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [761660303] [2024-09-21 11:36:52,961 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:36:52,961 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:52,961 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:52,963 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:36:52,963 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-21 11:36:53,001 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:36:53,001 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:36:53,001 INFO L262 TraceCheckSpWp]: Trace formula consists of 100 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-09-21 11:36:53,002 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:36:53,075 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:36:53,076 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:36:53,355 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:36:53,356 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [761660303] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:36:53,356 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:36:53,357 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 8, 8] total 20 [2024-09-21 11:36:53,357 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1698550655] [2024-09-21 11:36:53,357 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:36:53,357 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-21 11:36:53,358 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:36:53,359 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-21 11:36:53,359 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=303, Unknown=0, NotChecked=0, Total=380 [2024-09-21 11:36:53,359 INFO L87 Difference]: Start difference. First operand 126 states and 166 transitions. Second operand has 20 states, 20 states have (on average 1.7) internal successors, (34), 19 states have internal predecessors, (34), 8 states have call successors, (10), 3 states have call predecessors, (10), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-21 11:36:53,829 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:36:53,830 INFO L93 Difference]: Finished difference Result 161 states and 204 transitions. [2024-09-21 11:36:53,830 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2024-09-21 11:36:53,830 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 1.7) internal successors, (34), 19 states have internal predecessors, (34), 8 states have call successors, (10), 3 states have call predecessors, (10), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Word has length 28 [2024-09-21 11:36:53,830 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:36:53,833 INFO L225 Difference]: With dead ends: 161 [2024-09-21 11:36:53,833 INFO L226 Difference]: Without dead ends: 118 [2024-09-21 11:36:53,834 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 84 GetRequests, 52 SyntacticMatches, 1 SemanticMatches, 31 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 175 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=205, Invalid=851, Unknown=0, NotChecked=0, Total=1056 [2024-09-21 11:36:53,835 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 32 mSDsluCounter, 28 mSDsCounter, 0 mSdLazyCounter, 184 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 31 SdHoareTripleChecker+Invalid, 200 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 184 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:36:53,836 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 31 Invalid, 200 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 184 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-21 11:36:53,837 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2024-09-21 11:36:53,887 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 118. [2024-09-21 11:36:53,887 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 118 states, 90 states have (on average 1.288888888888889) internal successors, (116), 98 states have internal predecessors, (116), 20 states have call successors, (20), 8 states have call predecessors, (20), 7 states have return successors, (19), 11 states have call predecessors, (19), 19 states have call successors, (19) [2024-09-21 11:36:53,888 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 118 states to 118 states and 155 transitions. [2024-09-21 11:36:53,889 INFO L78 Accepts]: Start accepts. Automaton has 118 states and 155 transitions. Word has length 28 [2024-09-21 11:36:53,889 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:36:53,889 INFO L474 AbstractCegarLoop]: Abstraction has 118 states and 155 transitions. [2024-09-21 11:36:53,889 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 1.7) internal successors, (34), 19 states have internal predecessors, (34), 8 states have call successors, (10), 3 states have call predecessors, (10), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-21 11:36:53,890 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:53,890 INFO L276 IsEmpty]: Start isEmpty. Operand 118 states and 155 transitions. [2024-09-21 11:36:53,892 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-21 11:36:53,894 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:36:53,894 INFO L216 NwaCegarLoop]: trace histogram [6, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:36:53,910 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-21 11:36:54,098 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2024-09-21 11:36:54,099 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:36:54,099 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:36:54,099 INFO L85 PathProgramCache]: Analyzing trace with hash -2066924416, now seen corresponding path program 3 times [2024-09-21 11:36:54,100 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:36:54,100 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1669956718] [2024-09-21 11:36:54,100 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:36:54,100 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:36:54,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:54,590 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:36:54,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:54,615 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2024-09-21 11:36:54,616 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:54,618 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2024-09-21 11:36:54,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:36:54,622 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 4 proven. 28 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:36:54,622 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:36:54,622 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1669956718] [2024-09-21 11:36:54,623 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1669956718] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:36:54,623 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1589334443] [2024-09-21 11:36:54,623 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:36:54,623 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:36:54,623 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:36:54,624 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:36:54,627 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-21 11:36:54,682 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-09-21 11:36:54,682 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:36:54,685 INFO L262 TraceCheckSpWp]: Trace formula consists of 125 conjuncts, 43 conjuncts are in the unsatisfiable core [2024-09-21 11:36:54,686 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:36:55,124 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 3 proven. 32 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-21 11:36:55,125 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:37:18,441 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 4 proven. 28 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:37:18,441 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1589334443] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:37:18,442 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:37:18,442 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 15, 13] total 37 [2024-09-21 11:37:18,442 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [206220916] [2024-09-21 11:37:18,442 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:37:18,442 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 37 states [2024-09-21 11:37:18,443 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:37:18,443 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 37 interpolants. [2024-09-21 11:37:18,444 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=179, Invalid=1151, Unknown=2, NotChecked=0, Total=1332 [2024-09-21 11:37:18,446 INFO L87 Difference]: Start difference. First operand 118 states and 155 transitions. Second operand has 37 states, 36 states have (on average 1.5555555555555556) internal successors, (56), 35 states have internal predecessors, (56), 10 states have call successors, (12), 5 states have call predecessors, (12), 3 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-21 11:37:22,969 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:37:30,140 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.18s for a HTC check with result VALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:37:35,352 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 3.92s for a HTC check with result VALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:37:35,402 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:37:35,402 INFO L93 Difference]: Finished difference Result 171 states and 218 transitions. [2024-09-21 11:37:35,402 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-21 11:37:35,402 INFO L78 Accepts]: Start accepts. Automaton has has 37 states, 36 states have (on average 1.5555555555555556) internal successors, (56), 35 states have internal predecessors, (56), 10 states have call successors, (12), 5 states have call predecessors, (12), 3 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8) Word has length 33 [2024-09-21 11:37:35,404 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:37:35,405 INFO L225 Difference]: With dead ends: 171 [2024-09-21 11:37:35,405 INFO L226 Difference]: Without dead ends: 169 [2024-09-21 11:37:35,406 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 109 GetRequests, 51 SyntacticMatches, 1 SemanticMatches, 57 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 443 ImplicationChecksByTransitivity, 30.0s TimeCoverageRelationStatistics Valid=528, Invalid=2891, Unknown=3, NotChecked=0, Total=3422 [2024-09-21 11:37:35,407 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 169 mSDsluCounter, 41 mSDsCounter, 0 mSdLazyCounter, 514 mSolverCounterSat, 74 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 10.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 169 SdHoareTripleChecker+Valid, 44 SdHoareTripleChecker+Invalid, 589 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 74 IncrementalHoareTripleChecker+Valid, 514 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 10.7s IncrementalHoareTripleChecker+Time [2024-09-21 11:37:35,407 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [169 Valid, 44 Invalid, 589 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [74 Valid, 514 Invalid, 1 Unknown, 0 Unchecked, 10.7s Time] [2024-09-21 11:37:35,408 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 169 states. [2024-09-21 11:37:35,470 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 169 to 169. [2024-09-21 11:37:35,471 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 169 states, 125 states have (on average 1.208) internal successors, (151), 136 states have internal predecessors, (151), 33 states have call successors, (33), 11 states have call predecessors, (33), 10 states have return successors, (32), 21 states have call predecessors, (32), 32 states have call successors, (32) [2024-09-21 11:37:35,472 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 169 states to 169 states and 216 transitions. [2024-09-21 11:37:35,472 INFO L78 Accepts]: Start accepts. Automaton has 169 states and 216 transitions. Word has length 33 [2024-09-21 11:37:35,473 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:37:35,473 INFO L474 AbstractCegarLoop]: Abstraction has 169 states and 216 transitions. [2024-09-21 11:37:35,473 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 37 states, 36 states have (on average 1.5555555555555556) internal successors, (56), 35 states have internal predecessors, (56), 10 states have call successors, (12), 5 states have call predecessors, (12), 3 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-21 11:37:35,473 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:37:35,473 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 216 transitions. [2024-09-21 11:37:35,475 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-09-21 11:37:35,475 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:37:35,475 INFO L216 NwaCegarLoop]: trace histogram [14, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:37:35,488 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-21 11:37:35,676 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:37:35,676 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:37:35,677 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:37:35,677 INFO L85 PathProgramCache]: Analyzing trace with hash 2049998720, now seen corresponding path program 4 times [2024-09-21 11:37:35,677 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:37:35,677 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1364784542] [2024-09-21 11:37:35,677 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:37:35,678 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:37:35,746 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:36,600 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:37:36,602 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:36,630 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-21 11:37:36,632 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:36,633 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2024-09-21 11:37:36,635 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:36,638 INFO L134 CoverageAnalysis]: Checked inductivity of 120 backedges. 4 proven. 112 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:37:36,639 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:37:36,640 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1364784542] [2024-09-21 11:37:36,640 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1364784542] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:37:36,640 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2113712033] [2024-09-21 11:37:36,640 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-21 11:37:36,640 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:37:36,640 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:37:36,645 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:37:36,648 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-21 11:37:36,769 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-21 11:37:36,769 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:37:36,771 INFO L262 TraceCheckSpWp]: Trace formula consists of 165 conjuncts, 66 conjuncts are in the unsatisfiable core [2024-09-21 11:37:36,772 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:37:37,527 INFO L134 CoverageAnalysis]: Checked inductivity of 120 backedges. 4 proven. 112 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:37:37,527 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:37:39,048 INFO L134 CoverageAnalysis]: Checked inductivity of 120 backedges. 4 proven. 112 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:37:39,048 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2113712033] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:37:39,048 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:37:39,048 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24, 21, 21] total 60 [2024-09-21 11:37:39,049 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1989689190] [2024-09-21 11:37:39,049 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:37:39,049 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 60 states [2024-09-21 11:37:39,049 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:37:39,050 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 60 interpolants. [2024-09-21 11:37:39,051 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=540, Invalid=3000, Unknown=0, NotChecked=0, Total=3540 [2024-09-21 11:37:39,051 INFO L87 Difference]: Start difference. First operand 169 states and 216 transitions. Second operand has 60 states, 59 states have (on average 1.3220338983050848) internal successors, (78), 57 states have internal predecessors, (78), 11 states have call successors, (13), 5 states have call predecessors, (13), 2 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-21 11:37:45,968 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:37:45,968 INFO L93 Difference]: Finished difference Result 224 states and 282 transitions. [2024-09-21 11:37:45,969 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 34 states. [2024-09-21 11:37:45,969 INFO L78 Accepts]: Start accepts. Automaton has has 60 states, 59 states have (on average 1.3220338983050848) internal successors, (78), 57 states have internal predecessors, (78), 11 states have call successors, (13), 5 states have call predecessors, (13), 2 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8) Word has length 41 [2024-09-21 11:37:45,970 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:37:45,971 INFO L225 Difference]: With dead ends: 224 [2024-09-21 11:37:45,971 INFO L226 Difference]: Without dead ends: 222 [2024-09-21 11:37:45,973 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 140 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 88 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 795 ImplicationChecksByTransitivity, 7.8s TimeCoverageRelationStatistics Valid=1321, Invalid=6689, Unknown=0, NotChecked=0, Total=8010 [2024-09-21 11:37:45,973 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 282 mSDsluCounter, 76 mSDsCounter, 0 mSdLazyCounter, 1423 mSolverCounterSat, 158 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 282 SdHoareTripleChecker+Valid, 79 SdHoareTripleChecker+Invalid, 1581 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 158 IncrementalHoareTripleChecker+Valid, 1423 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2024-09-21 11:37:45,974 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [282 Valid, 79 Invalid, 1581 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [158 Valid, 1423 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2024-09-21 11:37:45,974 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 222 states. [2024-09-21 11:37:46,055 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 222 to 212. [2024-09-21 11:37:46,056 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 212 states, 153 states have (on average 1.1699346405228759) internal successors, (179), 168 states have internal predecessors, (179), 46 states have call successors, (46), 13 states have call predecessors, (46), 12 states have return successors, (45), 30 states have call predecessors, (45), 45 states have call successors, (45) [2024-09-21 11:37:46,057 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 212 states to 212 states and 270 transitions. [2024-09-21 11:37:46,057 INFO L78 Accepts]: Start accepts. Automaton has 212 states and 270 transitions. Word has length 41 [2024-09-21 11:37:46,057 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:37:46,057 INFO L474 AbstractCegarLoop]: Abstraction has 212 states and 270 transitions. [2024-09-21 11:37:46,058 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 60 states, 59 states have (on average 1.3220338983050848) internal successors, (78), 57 states have internal predecessors, (78), 11 states have call successors, (13), 5 states have call predecessors, (13), 2 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-21 11:37:46,058 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:37:46,058 INFO L276 IsEmpty]: Start isEmpty. Operand 212 states and 270 transitions. [2024-09-21 11:37:46,059 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-09-21 11:37:46,059 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:37:46,059 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 4, 4, 4, 4, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:37:46,072 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-21 11:37:46,259 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:37:46,260 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:37:46,260 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:37:46,260 INFO L85 PathProgramCache]: Analyzing trace with hash 1054157638, now seen corresponding path program 5 times [2024-09-21 11:37:46,260 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:37:46,260 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [755122114] [2024-09-21 11:37:46,260 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:37:46,260 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:37:46,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:46,942 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:37:46,943 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:46,970 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-21 11:37:46,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:46,973 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-09-21 11:37:46,974 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:46,976 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2024-09-21 11:37:46,977 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:46,979 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2024-09-21 11:37:46,980 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:46,982 INFO L134 CoverageAnalysis]: Checked inductivity of 64 backedges. 12 proven. 28 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2024-09-21 11:37:46,982 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:37:46,982 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [755122114] [2024-09-21 11:37:46,983 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [755122114] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:37:46,983 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1023931236] [2024-09-21 11:37:46,983 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-21 11:37:46,983 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:37:46,983 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:37:46,986 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:37:46,987 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-21 11:37:47,046 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 5 check-sat command(s) [2024-09-21 11:37:47,046 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:37:47,047 INFO L262 TraceCheckSpWp]: Trace formula consists of 138 conjuncts, 26 conjuncts are in the unsatisfiable core [2024-09-21 11:37:47,049 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:37:47,402 INFO L134 CoverageAnalysis]: Checked inductivity of 64 backedges. 8 proven. 32 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2024-09-21 11:37:47,403 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:37:48,343 INFO L134 CoverageAnalysis]: Checked inductivity of 64 backedges. 8 proven. 32 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2024-09-21 11:37:48,343 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1023931236] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:37:48,343 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:37:48,343 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16, 14, 14] total 38 [2024-09-21 11:37:48,344 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [182872396] [2024-09-21 11:37:48,344 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:37:48,344 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 38 states [2024-09-21 11:37:48,344 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:37:48,345 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 38 interpolants. [2024-09-21 11:37:48,345 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=119, Invalid=1287, Unknown=0, NotChecked=0, Total=1406 [2024-09-21 11:37:48,345 INFO L87 Difference]: Start difference. First operand 212 states and 270 transitions. Second operand has 38 states, 37 states have (on average 1.5405405405405406) internal successors, (57), 36 states have internal predecessors, (57), 17 states have call successors, (19), 5 states have call predecessors, (19), 2 states have return successors, (14), 14 states have call predecessors, (14), 13 states have call successors, (14) [2024-09-21 11:37:51,118 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.22s for a HTC check with result VALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:37:56,846 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:37:56,846 INFO L93 Difference]: Finished difference Result 253 states and 315 transitions. [2024-09-21 11:37:56,847 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2024-09-21 11:37:56,847 INFO L78 Accepts]: Start accepts. Automaton has has 38 states, 37 states have (on average 1.5405405405405406) internal successors, (57), 36 states have internal predecessors, (57), 17 states have call successors, (19), 5 states have call predecessors, (19), 2 states have return successors, (14), 14 states have call predecessors, (14), 13 states have call successors, (14) Word has length 44 [2024-09-21 11:37:56,847 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:37:56,848 INFO L225 Difference]: With dead ends: 253 [2024-09-21 11:37:56,848 INFO L226 Difference]: Without dead ends: 224 [2024-09-21 11:37:56,849 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 140 GetRequests, 74 SyntacticMatches, 2 SemanticMatches, 64 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 568 ImplicationChecksByTransitivity, 6.9s TimeCoverageRelationStatistics Valid=662, Invalid=3628, Unknown=0, NotChecked=0, Total=4290 [2024-09-21 11:37:56,850 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 129 mSDsluCounter, 77 mSDsCounter, 0 mSdLazyCounter, 752 mSolverCounterSat, 65 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 129 SdHoareTripleChecker+Valid, 80 SdHoareTripleChecker+Invalid, 817 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 65 IncrementalHoareTripleChecker+Valid, 752 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.0s IncrementalHoareTripleChecker+Time [2024-09-21 11:37:56,850 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [129 Valid, 80 Invalid, 817 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [65 Valid, 752 Invalid, 0 Unknown, 0 Unchecked, 3.0s Time] [2024-09-21 11:37:56,850 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 224 states. [2024-09-21 11:37:56,952 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 224 to 222. [2024-09-21 11:37:56,953 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 222 states, 160 states have (on average 1.15625) internal successors, (185), 174 states have internal predecessors, (185), 48 states have call successors, (48), 14 states have call predecessors, (48), 13 states have return successors, (47), 33 states have call predecessors, (47), 47 states have call successors, (47) [2024-09-21 11:37:56,954 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 222 states to 222 states and 280 transitions. [2024-09-21 11:37:56,955 INFO L78 Accepts]: Start accepts. Automaton has 222 states and 280 transitions. Word has length 44 [2024-09-21 11:37:56,955 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:37:56,955 INFO L474 AbstractCegarLoop]: Abstraction has 222 states and 280 transitions. [2024-09-21 11:37:56,956 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 38 states, 37 states have (on average 1.5405405405405406) internal successors, (57), 36 states have internal predecessors, (57), 17 states have call successors, (19), 5 states have call predecessors, (19), 2 states have return successors, (14), 14 states have call predecessors, (14), 13 states have call successors, (14) [2024-09-21 11:37:56,956 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:37:56,956 INFO L276 IsEmpty]: Start isEmpty. Operand 222 states and 280 transitions. [2024-09-21 11:37:56,957 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2024-09-21 11:37:56,957 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:37:56,957 INFO L216 NwaCegarLoop]: trace histogram [9, 4, 4, 4, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:37:56,972 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-21 11:37:57,161 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:37:57,162 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:37:57,162 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:37:57,162 INFO L85 PathProgramCache]: Analyzing trace with hash 1495655394, now seen corresponding path program 6 times [2024-09-21 11:37:57,162 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:37:57,162 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [882690467] [2024-09-21 11:37:57,162 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:37:57,162 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:37:57,190 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:58,031 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:37:58,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:58,076 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-09-21 11:37:58,078 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:58,080 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2024-09-21 11:37:58,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:58,086 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 32 [2024-09-21 11:37:58,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:37:58,088 INFO L134 CoverageAnalysis]: Checked inductivity of 78 backedges. 6 proven. 60 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-21 11:37:58,088 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:37:58,088 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [882690467] [2024-09-21 11:37:58,089 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [882690467] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:37:58,089 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1719841754] [2024-09-21 11:37:58,089 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-21 11:37:58,089 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:37:58,089 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:37:58,091 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:37:58,092 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-21 11:37:58,212 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 6 check-sat command(s) [2024-09-21 11:37:58,212 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:37:58,214 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 57 conjuncts are in the unsatisfiable core [2024-09-21 11:37:58,216 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:37:58,704 INFO L134 CoverageAnalysis]: Checked inductivity of 78 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:37:58,704 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:37:59,492 INFO L134 CoverageAnalysis]: Checked inductivity of 78 backedges. 6 proven. 60 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-21 11:37:59,493 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1719841754] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:37:59,493 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:37:59,493 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 19, 17] total 49 [2024-09-21 11:37:59,493 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1152397420] [2024-09-21 11:37:59,493 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:37:59,494 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 49 states [2024-09-21 11:37:59,494 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:37:59,496 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 49 interpolants. [2024-09-21 11:37:59,497 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=358, Invalid=1994, Unknown=0, NotChecked=0, Total=2352 [2024-09-21 11:37:59,497 INFO L87 Difference]: Start difference. First operand 222 states and 280 transitions. Second operand has 49 states, 48 states have (on average 1.5) internal successors, (72), 47 states have internal predecessors, (72), 14 states have call successors, (16), 5 states have call predecessors, (16), 3 states have return successors, (11), 11 states have call predecessors, (11), 10 states have call successors, (11) [2024-09-21 11:38:02,350 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:38:02,351 INFO L93 Difference]: Finished difference Result 256 states and 320 transitions. [2024-09-21 11:38:02,351 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2024-09-21 11:38:02,351 INFO L78 Accepts]: Start accepts. Automaton has has 49 states, 48 states have (on average 1.5) internal successors, (72), 47 states have internal predecessors, (72), 14 states have call successors, (16), 5 states have call predecessors, (16), 3 states have return successors, (11), 11 states have call predecessors, (11), 10 states have call successors, (11) Word has length 43 [2024-09-21 11:38:02,352 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:38:02,353 INFO L225 Difference]: With dead ends: 256 [2024-09-21 11:38:02,353 INFO L226 Difference]: Without dead ends: 254 [2024-09-21 11:38:02,354 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 138 GetRequests, 65 SyntacticMatches, 0 SemanticMatches, 73 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 654 ImplicationChecksByTransitivity, 3.6s TimeCoverageRelationStatistics Valid=894, Invalid=4656, Unknown=0, NotChecked=0, Total=5550 [2024-09-21 11:38:02,354 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 144 mSDsluCounter, 71 mSDsCounter, 0 mSdLazyCounter, 911 mSolverCounterSat, 105 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 144 SdHoareTripleChecker+Valid, 74 SdHoareTripleChecker+Invalid, 1016 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 105 IncrementalHoareTripleChecker+Valid, 911 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-21 11:38:02,354 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [144 Valid, 74 Invalid, 1016 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [105 Valid, 911 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-21 11:38:02,355 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 254 states. [2024-09-21 11:38:02,443 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 254 to 241. [2024-09-21 11:38:02,444 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 241 states, 173 states have (on average 1.1445086705202312) internal successors, (198), 187 states have internal predecessors, (198), 53 states have call successors, (53), 15 states have call predecessors, (53), 14 states have return successors, (52), 38 states have call predecessors, (52), 52 states have call successors, (52) [2024-09-21 11:38:02,445 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 241 states to 241 states and 303 transitions. [2024-09-21 11:38:02,446 INFO L78 Accepts]: Start accepts. Automaton has 241 states and 303 transitions. Word has length 43 [2024-09-21 11:38:02,446 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:38:02,446 INFO L474 AbstractCegarLoop]: Abstraction has 241 states and 303 transitions. [2024-09-21 11:38:02,446 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 49 states, 48 states have (on average 1.5) internal successors, (72), 47 states have internal predecessors, (72), 14 states have call successors, (16), 5 states have call predecessors, (16), 3 states have return successors, (11), 11 states have call predecessors, (11), 10 states have call successors, (11) [2024-09-21 11:38:02,446 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:38:02,446 INFO L276 IsEmpty]: Start isEmpty. Operand 241 states and 303 transitions. [2024-09-21 11:38:02,447 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2024-09-21 11:38:02,448 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:38:02,448 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 5, 5, 5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:38:02,460 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2024-09-21 11:38:02,651 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-09-21 11:38:02,651 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:38:02,652 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:38:02,652 INFO L85 PathProgramCache]: Analyzing trace with hash -123973150, now seen corresponding path program 7 times [2024-09-21 11:38:02,652 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:38:02,652 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1353326479] [2024-09-21 11:38:02,652 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:38:02,652 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:38:02,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,447 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:38:08,449 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,474 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-21 11:38:08,475 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,477 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2024-09-21 11:38:08,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,478 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-09-21 11:38:08,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,480 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2024-09-21 11:38:08,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,484 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2024-09-21 11:38:08,484 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,486 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 10 proven. 55 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-21 11:38:08,486 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:38:08,487 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1353326479] [2024-09-21 11:38:08,487 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1353326479] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:38:08,487 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1537409517] [2024-09-21 11:38:08,487 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-21 11:38:08,487 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:38:08,487 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:38:08,493 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:38:08,495 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-21 11:38:08,627 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:38:08,628 INFO L262 TraceCheckSpWp]: Trace formula consists of 162 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-21 11:38:08,630 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:38:09,119 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 15 proven. 50 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-21 11:38:09,120 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:38:09,815 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 15 proven. 50 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-21 11:38:09,815 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1537409517] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:38:09,815 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:38:09,815 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 15, 15] total 45 [2024-09-21 11:38:09,816 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2049342245] [2024-09-21 11:38:09,816 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:38:09,816 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 45 states [2024-09-21 11:38:09,816 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:38:09,817 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 45 interpolants. [2024-09-21 11:38:09,817 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=180, Invalid=1799, Unknown=1, NotChecked=0, Total=1980 [2024-09-21 11:38:09,817 INFO L87 Difference]: Start difference. First operand 241 states and 303 transitions. Second operand has 45 states, 44 states have (on average 1.5681818181818181) internal successors, (69), 43 states have internal predecessors, (69), 19 states have call successors, (21), 5 states have call predecessors, (21), 2 states have return successors, (17), 17 states have call predecessors, (17), 16 states have call successors, (17) [2024-09-21 11:38:18,316 WARN L293 SmtUtils]: Spent 8.04s on a formula simplification. DAG size of input: 65 DAG size of output: 39 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:38:26,562 WARN L293 SmtUtils]: Spent 8.07s on a formula simplification. DAG size of input: 54 DAG size of output: 50 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:38:34,679 WARN L293 SmtUtils]: Spent 8.04s on a formula simplification. DAG size of input: 35 DAG size of output: 33 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:38:42,905 WARN L293 SmtUtils]: Spent 8.06s on a formula simplification. DAG size of input: 38 DAG size of output: 36 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:38:51,383 WARN L293 SmtUtils]: Spent 8.03s on a formula simplification. DAG size of input: 29 DAG size of output: 27 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:39:00,691 WARN L293 SmtUtils]: Spent 8.04s on a formula simplification. DAG size of input: 38 DAG size of output: 36 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:39:00,940 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:39:00,941 INFO L93 Difference]: Finished difference Result 295 states and 357 transitions. [2024-09-21 11:39:00,941 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2024-09-21 11:39:00,941 INFO L78 Accepts]: Start accepts. Automaton has has 45 states, 44 states have (on average 1.5681818181818181) internal successors, (69), 43 states have internal predecessors, (69), 19 states have call successors, (21), 5 states have call predecessors, (21), 2 states have return successors, (17), 17 states have call predecessors, (17), 16 states have call successors, (17) Word has length 53 [2024-09-21 11:39:00,941 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:39:00,942 INFO L225 Difference]: With dead ends: 295 [2024-09-21 11:39:00,942 INFO L226 Difference]: Without dead ends: 239 [2024-09-21 11:39:00,944 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 165 GetRequests, 94 SyntacticMatches, 0 SemanticMatches, 71 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 730 ImplicationChecksByTransitivity, 55.0s TimeCoverageRelationStatistics Valid=613, Invalid=4642, Unknown=1, NotChecked=0, Total=5256 [2024-09-21 11:39:00,944 INFO L434 NwaCegarLoop]: 3 mSDtfsCounter, 122 mSDsluCounter, 74 mSDsCounter, 0 mSdLazyCounter, 1784 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 122 SdHoareTripleChecker+Valid, 77 SdHoareTripleChecker+Invalid, 1822 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 1784 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2024-09-21 11:39:00,945 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [122 Valid, 77 Invalid, 1822 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 1784 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2024-09-21 11:39:00,945 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 239 states. [2024-09-21 11:39:01,028 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 239 to 238. [2024-09-21 11:39:01,029 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 238 states, 172 states have (on average 1.1337209302325582) internal successors, (195), 185 states have internal predecessors, (195), 48 states have call successors, (48), 18 states have call predecessors, (48), 17 states have return successors, (47), 34 states have call predecessors, (47), 47 states have call successors, (47) [2024-09-21 11:39:01,030 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 238 states to 238 states and 290 transitions. [2024-09-21 11:39:01,030 INFO L78 Accepts]: Start accepts. Automaton has 238 states and 290 transitions. Word has length 53 [2024-09-21 11:39:01,030 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:39:01,030 INFO L474 AbstractCegarLoop]: Abstraction has 238 states and 290 transitions. [2024-09-21 11:39:01,031 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 45 states, 44 states have (on average 1.5681818181818181) internal successors, (69), 43 states have internal predecessors, (69), 19 states have call successors, (21), 5 states have call predecessors, (21), 2 states have return successors, (17), 17 states have call predecessors, (17), 16 states have call successors, (17) [2024-09-21 11:39:01,031 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:39:01,031 INFO L276 IsEmpty]: Start isEmpty. Operand 238 states and 290 transitions. [2024-09-21 11:39:01,032 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2024-09-21 11:39:01,032 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:39:01,032 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 6, 5, 5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:39:01,045 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-21 11:39:01,236 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-21 11:39:01,237 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:39:01,237 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:39:01,237 INFO L85 PathProgramCache]: Analyzing trace with hash -978711902, now seen corresponding path program 8 times [2024-09-21 11:39:01,237 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:39:01,238 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [858414404] [2024-09-21 11:39:01,238 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:39:01,238 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:39:01,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,092 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:39:02,094 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,123 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-21 11:39:02,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,127 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2024-09-21 11:39:02,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,130 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2024-09-21 11:39:02,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,134 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2024-09-21 11:39:02,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,137 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2024-09-21 11:39:02,138 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:39:02,141 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 10 proven. 68 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-21 11:39:02,141 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:39:02,141 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [858414404] [2024-09-21 11:39:02,141 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [858414404] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:39:02,141 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [253684077] [2024-09-21 11:39:02,142 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:39:02,142 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:39:02,142 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:39:02,143 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:39:02,144 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-21 11:39:02,232 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:39:02,232 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:39:02,233 INFO L262 TraceCheckSpWp]: Trace formula consists of 172 conjuncts, 40 conjuncts are in the unsatisfiable core [2024-09-21 11:39:02,235 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:39:02,940 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 10 proven. 68 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-21 11:39:02,940 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:39:03,817 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 10 proven. 68 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-09-21 11:39:03,817 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [253684077] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:39:03,818 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:39:03,818 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [23, 17, 17] total 51 [2024-09-21 11:39:03,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1698936100] [2024-09-21 11:39:03,818 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:39:03,818 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 51 states [2024-09-21 11:39:03,818 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:39:03,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 51 interpolants. [2024-09-21 11:39:03,820 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=190, Invalid=2360, Unknown=0, NotChecked=0, Total=2550 [2024-09-21 11:39:03,820 INFO L87 Difference]: Start difference. First operand 238 states and 290 transitions. Second operand has 51 states, 49 states have (on average 1.530612244897959) internal successors, (75), 48 states have internal predecessors, (75), 20 states have call successors, (22), 5 states have call predecessors, (22), 2 states have return successors, (17), 17 states have call predecessors, (17), 16 states have call successors, (17) [2024-09-21 11:39:11,282 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:39:21,370 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:39:34,803 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:39:38,948 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:39:54,858 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:40:03,044 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:40:07,050 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:40:11,319 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:40:36,253 WARN L293 SmtUtils]: Spent 13.86s on a formula simplification. DAG size of input: 64 DAG size of output: 60 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:40:41,960 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:40:45,964 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers []