./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_prod4br-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 6908dde5 Calling Ultimate with: /root/.sdkman/candidates/java/11.0.12-open/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_prod4br-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 96f1211cbeeae798f0ae4041c6e80d5023e7b1c38257b583d7afbb4e6848597b --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-6908dde-m [2024-09-25 00:19:17,685 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-25 00:19:17,752 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-25 00:19:17,758 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-25 00:19:17,759 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-25 00:19:17,796 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-25 00:19:17,798 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-25 00:19:17,798 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-25 00:19:17,799 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-25 00:19:17,799 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-25 00:19:17,800 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-25 00:19:17,801 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-25 00:19:17,801 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-25 00:19:17,803 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-25 00:19:17,803 INFO L153 SettingsManager]: * Use SBE=true [2024-09-25 00:19:17,804 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-25 00:19:17,804 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-25 00:19:17,804 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-25 00:19:17,804 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-25 00:19:17,805 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-25 00:19:17,805 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-25 00:19:17,809 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-25 00:19:17,809 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-25 00:19:17,809 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-25 00:19:17,809 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-25 00:19:17,810 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-25 00:19:17,810 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-25 00:19:17,810 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-25 00:19:17,810 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-25 00:19:17,810 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-25 00:19:17,810 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-25 00:19:17,811 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-25 00:19:17,811 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-25 00:19:17,811 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-25 00:19:17,811 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-25 00:19:17,811 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-25 00:19:17,812 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-25 00:19:17,812 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-25 00:19:17,812 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-25 00:19:17,814 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-25 00:19:17,814 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-25 00:19:17,814 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-25 00:19:17,814 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 96f1211cbeeae798f0ae4041c6e80d5023e7b1c38257b583d7afbb4e6848597b Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-25 00:19:18,087 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-25 00:19:18,111 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-25 00:19:18,114 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-25 00:19:18,115 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-25 00:19:18,116 INFO L274 PluginConnector]: CDTParser initialized [2024-09-25 00:19:18,117 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_prod4br-ll.c [2024-09-25 00:19:19,572 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-25 00:19:19,734 INFO L384 CDTParser]: Found 1 translation units. [2024-09-25 00:19:19,734 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_prod4br-ll.c [2024-09-25 00:19:19,741 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/2e226b162/7ddf5abaa61f4bc79d5bc86dc7954009/FLAG0554643b9 [2024-09-25 00:19:20,148 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/2e226b162/7ddf5abaa61f4bc79d5bc86dc7954009 [2024-09-25 00:19:20,151 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-25 00:19:20,152 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-25 00:19:20,153 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-25 00:19:20,154 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-25 00:19:20,159 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-25 00:19:20,159 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,160 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@10307061 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20, skipping insertion in model container [2024-09-25 00:19:20,161 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,183 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-25 00:19:20,330 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_prod4br-ll.c[1060,1073] [2024-09-25 00:19:20,349 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-25 00:19:20,358 INFO L200 MainTranslator]: Completed pre-run [2024-09-25 00:19:20,369 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_prod4br-ll.c[1060,1073] [2024-09-25 00:19:20,382 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-25 00:19:20,398 INFO L204 MainTranslator]: Completed translation [2024-09-25 00:19:20,399 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20 WrapperNode [2024-09-25 00:19:20,399 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-25 00:19:20,400 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-25 00:19:20,400 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-25 00:19:20,400 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-25 00:19:20,410 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,418 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,424 INFO L138 Inliner]: procedures = 16, calls = 86, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-25 00:19:20,424 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-25 00:19:20,425 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-25 00:19:20,425 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-25 00:19:20,425 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-25 00:19:20,435 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,435 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,438 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,455 INFO L175 MemorySlicer]: Split 57 memory accesses to 7 slices as follows [2, 15, 7, 15, 9, 4, 5]. 26 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0, 0, 0]. The 16 writes are split as follows [0, 4, 2, 4, 4, 1, 1]. [2024-09-25 00:19:20,459 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,459 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,475 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,477 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,479 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,480 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,483 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-25 00:19:20,484 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-25 00:19:20,485 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-25 00:19:20,485 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-25 00:19:20,486 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (1/1) ... [2024-09-25 00:19:20,491 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-25 00:19:20,502 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:20,514 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-25 00:19:20,516 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-25 00:19:20,561 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-25 00:19:20,562 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-25 00:19:20,562 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-25 00:19:20,562 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-25 00:19:20,562 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-25 00:19:20,563 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-25 00:19:20,563 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-25 00:19:20,563 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-25 00:19:20,563 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-25 00:19:20,564 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-25 00:19:20,564 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#5 [2024-09-25 00:19:20,564 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#6 [2024-09-25 00:19:20,565 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-25 00:19:20,565 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-25 00:19:20,565 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-25 00:19:20,565 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-25 00:19:20,566 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-25 00:19:20,566 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-25 00:19:20,567 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#5 [2024-09-25 00:19:20,567 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#6 [2024-09-25 00:19:20,567 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-25 00:19:20,567 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-25 00:19:20,567 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-25 00:19:20,568 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-25 00:19:20,568 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-25 00:19:20,569 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-25 00:19:20,569 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-25 00:19:20,569 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-25 00:19:20,569 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-25 00:19:20,570 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#5 [2024-09-25 00:19:20,570 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#6 [2024-09-25 00:19:20,570 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_0_to_51_0 [2024-09-25 00:19:20,571 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_0_to_51_0 [2024-09-25 00:19:20,572 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-25 00:19:20,572 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-25 00:19:20,572 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-25 00:19:20,729 INFO L241 CfgBuilder]: Building ICFG [2024-09-25 00:19:20,731 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-25 00:19:21,076 INFO L? ?]: Removed 17 outVars from TransFormulas that were not future-live. [2024-09-25 00:19:21,077 INFO L290 CfgBuilder]: Performing block encoding [2024-09-25 00:19:21,095 INFO L312 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-25 00:19:21,095 INFO L317 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-25 00:19:21,095 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.09 12:19:21 BoogieIcfgContainer [2024-09-25 00:19:21,096 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-25 00:19:21,097 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-25 00:19:21,098 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-25 00:19:21,100 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-25 00:19:21,100 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 25.09 12:19:20" (1/3) ... [2024-09-25 00:19:21,101 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@151327da and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.09 12:19:21, skipping insertion in model container [2024-09-25 00:19:21,101 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:19:20" (2/3) ... [2024-09-25 00:19:21,101 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@151327da and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.09 12:19:21, skipping insertion in model container [2024-09-25 00:19:21,101 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.09 12:19:21" (3/3) ... [2024-09-25 00:19:21,102 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_prod4br-ll.c [2024-09-25 00:19:21,114 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-25 00:19:21,114 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-25 00:19:21,161 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-25 00:19:21,166 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@69554b41, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-25 00:19:21,167 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-25 00:19:21,170 INFO L276 IsEmpty]: Start isEmpty. Operand has 41 states, 26 states have (on average 1.4615384615384615) internal successors, (38), 28 states have internal predecessors, (38), 8 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) [2024-09-25 00:19:21,176 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-25 00:19:21,176 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:21,176 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:21,177 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:21,181 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:21,181 INFO L85 PathProgramCache]: Analyzing trace with hash -1334266921, now seen corresponding path program 1 times [2024-09-25 00:19:21,189 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:21,189 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1440881090] [2024-09-25 00:19:21,189 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:21,189 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:21,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:21,380 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:19:21,383 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:21,389 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:19:21,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:21,394 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:21,395 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:21,395 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1440881090] [2024-09-25 00:19:21,400 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1440881090] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:19:21,400 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:19:21,400 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-25 00:19:21,402 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [219045387] [2024-09-25 00:19:21,404 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:19:21,410 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-25 00:19:21,414 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:21,443 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-25 00:19:21,443 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-25 00:19:21,445 INFO L87 Difference]: Start difference. First operand has 41 states, 26 states have (on average 1.4615384615384615) internal successors, (38), 28 states have internal predecessors, (38), 8 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) Second operand has 2 states, 2 states have (on average 5.5) internal successors, (11), 2 states have internal predecessors, (11), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-25 00:19:21,469 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:21,470 INFO L93 Difference]: Finished difference Result 74 states and 104 transitions. [2024-09-25 00:19:21,471 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-25 00:19:21,472 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.5) internal successors, (11), 2 states have internal predecessors, (11), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 18 [2024-09-25 00:19:21,472 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:21,477 INFO L225 Difference]: With dead ends: 74 [2024-09-25 00:19:21,477 INFO L226 Difference]: Without dead ends: 37 [2024-09-25 00:19:21,480 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-25 00:19:21,482 INFO L434 NwaCegarLoop]: 49 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:21,484 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 49 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-25 00:19:21,496 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 37 states. [2024-09-25 00:19:21,509 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 37 to 37. [2024-09-25 00:19:21,510 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 37 states, 24 states have (on average 1.375) internal successors, (33), 26 states have internal predecessors, (33), 8 states have call successors, (8), 5 states have call predecessors, (8), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-25 00:19:21,512 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 37 states to 37 states and 47 transitions. [2024-09-25 00:19:21,513 INFO L78 Accepts]: Start accepts. Automaton has 37 states and 47 transitions. Word has length 18 [2024-09-25 00:19:21,513 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:21,513 INFO L474 AbstractCegarLoop]: Abstraction has 37 states and 47 transitions. [2024-09-25 00:19:21,514 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.5) internal successors, (11), 2 states have internal predecessors, (11), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-25 00:19:21,514 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:21,515 INFO L276 IsEmpty]: Start isEmpty. Operand 37 states and 47 transitions. [2024-09-25 00:19:21,515 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-25 00:19:21,515 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:21,516 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:21,516 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-25 00:19:21,516 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:21,517 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:21,517 INFO L85 PathProgramCache]: Analyzing trace with hash -633202343, now seen corresponding path program 1 times [2024-09-25 00:19:21,517 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:21,517 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [171975327] [2024-09-25 00:19:21,518 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:21,518 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:21,576 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:19:21,586 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [613952215] [2024-09-25 00:19:21,587 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:21,587 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:21,587 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:21,592 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:21,597 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-25 00:19:21,763 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:21,768 INFO L262 TraceCheckSpWp]: Trace formula consists of 220 conjuncts, 89 conjuncts are in the unsatisfiable core [2024-09-25 00:19:21,778 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:21,837 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:21,842 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:21,859 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:21,868 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:21,877 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:21,891 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:22,158 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:19:22,166 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-25 00:19:22,179 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:19:22,184 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-25 00:19:22,239 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:22,239 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-25 00:19:22,240 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:22,240 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [171975327] [2024-09-25 00:19:22,240 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:19:22,241 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [613952215] [2024-09-25 00:19:22,241 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [613952215] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:19:22,241 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:19:22,241 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-25 00:19:22,242 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1590747221] [2024-09-25 00:19:22,242 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:19:22,243 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:19:22,243 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:22,244 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:19:22,244 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-25 00:19:22,244 INFO L87 Difference]: Start difference. First operand 37 states and 47 transitions. Second operand has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-25 00:19:22,534 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:22,534 INFO L93 Difference]: Finished difference Result 58 states and 76 transitions. [2024-09-25 00:19:22,535 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-25 00:19:22,535 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 18 [2024-09-25 00:19:22,535 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:22,536 INFO L225 Difference]: With dead ends: 58 [2024-09-25 00:19:22,536 INFO L226 Difference]: Without dead ends: 56 [2024-09-25 00:19:22,537 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:19:22,538 INFO L434 NwaCegarLoop]: 27 mSDtfsCounter, 34 mSDsluCounter, 146 mSDsCounter, 0 mSdLazyCounter, 154 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 173 SdHoareTripleChecker+Invalid, 158 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 154 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:22,540 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 173 Invalid, 158 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 154 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:19:22,541 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 56 states. [2024-09-25 00:19:22,560 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 56 to 49. [2024-09-25 00:19:22,560 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 49 states, 33 states have (on average 1.3333333333333333) internal successors, (44), 35 states have internal predecessors, (44), 9 states have call successors, (9), 7 states have call predecessors, (9), 6 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) [2024-09-25 00:19:22,563 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 49 states to 49 states and 61 transitions. [2024-09-25 00:19:22,563 INFO L78 Accepts]: Start accepts. Automaton has 49 states and 61 transitions. Word has length 18 [2024-09-25 00:19:22,564 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:22,564 INFO L474 AbstractCegarLoop]: Abstraction has 49 states and 61 transitions. [2024-09-25 00:19:22,564 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 1.8333333333333333) internal successors, (11), 6 states have internal predecessors, (11), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-09-25 00:19:22,564 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:22,565 INFO L276 IsEmpty]: Start isEmpty. Operand 49 states and 61 transitions. [2024-09-25 00:19:22,567 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2024-09-25 00:19:22,567 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:22,567 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:22,586 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2024-09-25 00:19:22,771 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:22,772 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:22,772 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:22,773 INFO L85 PathProgramCache]: Analyzing trace with hash 261423925, now seen corresponding path program 1 times [2024-09-25 00:19:22,773 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:22,773 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1227002802] [2024-09-25 00:19:22,773 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:22,773 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:22,820 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:19:22,824 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1205194194] [2024-09-25 00:19:22,824 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:22,824 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:22,825 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:22,831 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:22,833 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-25 00:19:22,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:22,953 INFO L262 TraceCheckSpWp]: Trace formula consists of 242 conjuncts, 35 conjuncts are in the unsatisfiable core [2024-09-25 00:19:22,968 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:22,976 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:22,985 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:22,990 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:23,013 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:23,239 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:23,240 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-25 00:19:23,240 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:23,240 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1227002802] [2024-09-25 00:19:23,241 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:19:23,241 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1205194194] [2024-09-25 00:19:23,243 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1205194194] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:19:23,243 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:19:23,243 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [11] imperfect sequences [] total 11 [2024-09-25 00:19:23,244 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1466398376] [2024-09-25 00:19:23,244 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:19:23,244 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-25 00:19:23,245 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:23,245 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-25 00:19:23,246 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=22, Invalid=88, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:19:23,246 INFO L87 Difference]: Start difference. First operand 49 states and 61 transitions. Second operand has 11 states, 9 states have (on average 2.111111111111111) internal successors, (19), 8 states have internal predecessors, (19), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-25 00:19:23,601 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:23,601 INFO L93 Difference]: Finished difference Result 90 states and 116 transitions. [2024-09-25 00:19:23,602 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2024-09-25 00:19:23,602 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 9 states have (on average 2.111111111111111) internal successors, (19), 8 states have internal predecessors, (19), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 29 [2024-09-25 00:19:23,603 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:23,605 INFO L225 Difference]: With dead ends: 90 [2024-09-25 00:19:23,605 INFO L226 Difference]: Without dead ends: 65 [2024-09-25 00:19:23,608 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 35 GetRequests, 20 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 28 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=54, Invalid=218, Unknown=0, NotChecked=0, Total=272 [2024-09-25 00:19:23,611 INFO L434 NwaCegarLoop]: 19 mSDtfsCounter, 42 mSDsluCounter, 96 mSDsCounter, 0 mSdLazyCounter, 289 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 44 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 300 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 289 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:23,613 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [44 Valid, 115 Invalid, 300 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 289 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:19:23,613 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 65 states. [2024-09-25 00:19:23,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 65 to 61. [2024-09-25 00:19:23,640 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 41 states have (on average 1.2682926829268293) internal successors, (52), 44 states have internal predecessors, (52), 10 states have call successors, (10), 8 states have call predecessors, (10), 9 states have return successors, (11), 8 states have call predecessors, (11), 8 states have call successors, (11) [2024-09-25 00:19:23,643 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 73 transitions. [2024-09-25 00:19:23,643 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 73 transitions. Word has length 29 [2024-09-25 00:19:23,643 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:23,645 INFO L474 AbstractCegarLoop]: Abstraction has 61 states and 73 transitions. [2024-09-25 00:19:23,645 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 9 states have (on average 2.111111111111111) internal successors, (19), 8 states have internal predecessors, (19), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-25 00:19:23,645 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:23,646 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 73 transitions. [2024-09-25 00:19:23,646 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2024-09-25 00:19:23,647 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:23,647 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:23,665 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-09-25 00:19:23,851 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:23,852 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:23,853 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:23,853 INFO L85 PathProgramCache]: Analyzing trace with hash -418634445, now seen corresponding path program 1 times [2024-09-25 00:19:23,853 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:23,854 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1484724666] [2024-09-25 00:19:23,854 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:23,854 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:23,892 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:24,323 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:19:24,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:24,326 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:19:24,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:24,357 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:19:24,362 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:24,441 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:19:24,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:24,447 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:24,447 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:24,447 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1484724666] [2024-09-25 00:19:24,448 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1484724666] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:19:24,448 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:19:24,448 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [11] imperfect sequences [] total 11 [2024-09-25 00:19:24,448 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [122928611] [2024-09-25 00:19:24,448 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:19:24,449 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-25 00:19:24,449 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:24,450 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-25 00:19:24,450 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=89, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:19:24,450 INFO L87 Difference]: Start difference. First operand 61 states and 73 transitions. Second operand has 11 states, 9 states have (on average 2.111111111111111) internal successors, (19), 9 states have internal predecessors, (19), 5 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-25 00:19:24,846 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:24,847 INFO L93 Difference]: Finished difference Result 81 states and 101 transitions. [2024-09-25 00:19:24,849 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2024-09-25 00:19:24,850 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 9 states have (on average 2.111111111111111) internal successors, (19), 9 states have internal predecessors, (19), 5 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) Word has length 29 [2024-09-25 00:19:24,850 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:24,851 INFO L225 Difference]: With dead ends: 81 [2024-09-25 00:19:24,851 INFO L226 Difference]: Without dead ends: 69 [2024-09-25 00:19:24,852 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 51 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=68, Invalid=312, Unknown=0, NotChecked=0, Total=380 [2024-09-25 00:19:24,853 INFO L434 NwaCegarLoop]: 19 mSDtfsCounter, 43 mSDsluCounter, 89 mSDsCounter, 0 mSdLazyCounter, 348 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 44 SdHoareTripleChecker+Valid, 108 SdHoareTripleChecker+Invalid, 366 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 348 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:24,854 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [44 Valid, 108 Invalid, 366 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 348 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:19:24,855 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2024-09-25 00:19:24,871 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 62. [2024-09-25 00:19:24,872 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 41 states have (on average 1.2439024390243902) internal successors, (51), 45 states have internal predecessors, (51), 11 states have call successors, (11), 8 states have call predecessors, (11), 9 states have return successors, (14), 9 states have call predecessors, (14), 9 states have call successors, (14) [2024-09-25 00:19:24,872 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 76 transitions. [2024-09-25 00:19:24,873 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 76 transitions. Word has length 29 [2024-09-25 00:19:24,873 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:24,873 INFO L474 AbstractCegarLoop]: Abstraction has 62 states and 76 transitions. [2024-09-25 00:19:24,874 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 9 states have (on average 2.111111111111111) internal successors, (19), 9 states have internal predecessors, (19), 5 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2024-09-25 00:19:24,874 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:24,874 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 76 transitions. [2024-09-25 00:19:24,875 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-25 00:19:24,875 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:24,875 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:24,875 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-09-25 00:19:24,876 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:24,876 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:24,876 INFO L85 PathProgramCache]: Analyzing trace with hash 661556601, now seen corresponding path program 1 times [2024-09-25 00:19:24,876 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:24,876 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1691489015] [2024-09-25 00:19:24,877 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:24,877 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:24,941 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:19:24,945 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1858489741] [2024-09-25 00:19:24,945 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:24,946 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:24,946 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:24,947 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:24,950 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-25 00:19:25,067 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:25,076 WARN L260 TraceCheckSpWp]: Trace formula consists of 325 conjuncts, 165 conjuncts are in the unsatisfiable core [2024-09-25 00:19:25,083 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:25,092 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:25,096 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:25,102 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:25,106 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:25,111 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:25,117 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:25,527 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 38 treesize of output 22 [2024-09-25 00:19:25,543 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 38 treesize of output 22 [2024-09-25 00:19:25,558 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:19:25,732 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:19:25,739 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-25 00:19:25,752 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:19:25,762 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-25 00:19:25,914 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:25,914 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:19:27,755 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 4 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:27,755 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:27,756 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1691489015] [2024-09-25 00:19:27,756 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:19:27,756 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1858489741] [2024-09-25 00:19:27,756 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1858489741] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:19:27,756 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-25 00:19:27,756 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 12] total 21 [2024-09-25 00:19:27,756 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [887359579] [2024-09-25 00:19:27,757 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-25 00:19:27,757 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-25 00:19:27,757 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:27,758 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-25 00:19:27,759 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=66, Invalid=354, Unknown=0, NotChecked=0, Total=420 [2024-09-25 00:19:27,759 INFO L87 Difference]: Start difference. First operand 62 states and 76 transitions. Second operand has 21 states, 17 states have (on average 2.0) internal successors, (34), 16 states have internal predecessors, (34), 9 states have call successors, (11), 7 states have call predecessors, (11), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-25 00:19:35,392 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:35,393 INFO L93 Difference]: Finished difference Result 113 states and 153 transitions. [2024-09-25 00:19:35,394 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2024-09-25 00:19:35,394 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 17 states have (on average 2.0) internal successors, (34), 16 states have internal predecessors, (34), 9 states have call successors, (11), 7 states have call predecessors, (11), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 31 [2024-09-25 00:19:35,395 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:35,396 INFO L225 Difference]: With dead ends: 113 [2024-09-25 00:19:35,397 INFO L226 Difference]: Without dead ends: 109 [2024-09-25 00:19:35,398 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 78 GetRequests, 39 SyntacticMatches, 3 SemanticMatches, 36 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 226 ImplicationChecksByTransitivity, 6.9s TimeCoverageRelationStatistics Valid=248, Invalid=1158, Unknown=0, NotChecked=0, Total=1406 [2024-09-25 00:19:35,399 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 214 mSDsluCounter, 213 mSDsCounter, 0 mSdLazyCounter, 453 mSolverCounterSat, 37 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 214 SdHoareTripleChecker+Valid, 243 SdHoareTripleChecker+Invalid, 490 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 37 IncrementalHoareTripleChecker+Valid, 453 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.8s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:35,399 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [214 Valid, 243 Invalid, 490 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [37 Valid, 453 Invalid, 0 Unknown, 0 Unchecked, 1.8s Time] [2024-09-25 00:19:35,400 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 109 states. [2024-09-25 00:19:35,446 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 109 to 86. [2024-09-25 00:19:35,446 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 86 states, 58 states have (on average 1.2413793103448276) internal successors, (72), 62 states have internal predecessors, (72), 14 states have call successors, (14), 11 states have call predecessors, (14), 13 states have return successors, (21), 12 states have call predecessors, (21), 11 states have call successors, (21) [2024-09-25 00:19:35,450 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 86 states to 86 states and 107 transitions. [2024-09-25 00:19:35,450 INFO L78 Accepts]: Start accepts. Automaton has 86 states and 107 transitions. Word has length 31 [2024-09-25 00:19:35,450 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:35,451 INFO L474 AbstractCegarLoop]: Abstraction has 86 states and 107 transitions. [2024-09-25 00:19:35,451 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 17 states have (on average 2.0) internal successors, (34), 16 states have internal predecessors, (34), 9 states have call successors, (11), 7 states have call predecessors, (11), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-09-25 00:19:35,451 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:35,452 INFO L276 IsEmpty]: Start isEmpty. Operand 86 states and 107 transitions. [2024-09-25 00:19:35,453 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2024-09-25 00:19:35,453 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:35,454 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:35,472 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-25 00:19:35,657 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:35,658 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:35,659 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:35,659 INFO L85 PathProgramCache]: Analyzing trace with hash -1560377938, now seen corresponding path program 1 times [2024-09-25 00:19:35,659 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:35,659 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1989866314] [2024-09-25 00:19:35,659 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:35,659 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:35,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:19:35,696 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1150218744] [2024-09-25 00:19:35,696 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:35,696 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:35,696 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:35,698 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:35,701 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-25 00:19:35,806 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:35,807 INFO L262 TraceCheckSpWp]: Trace formula consists of 255 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-25 00:19:35,810 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:35,818 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:35,820 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:35,941 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:19:35,941 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:19:36,086 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:19:36,086 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:36,086 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1989866314] [2024-09-25 00:19:36,086 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:19:36,086 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1150218744] [2024-09-25 00:19:36,087 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1150218744] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-25 00:19:36,087 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:19:36,087 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [11] total 14 [2024-09-25 00:19:36,087 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [174471407] [2024-09-25 00:19:36,087 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:19:36,087 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-25 00:19:36,087 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:36,088 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-25 00:19:36,088 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=38, Invalid=144, Unknown=0, NotChecked=0, Total=182 [2024-09-25 00:19:36,088 INFO L87 Difference]: Start difference. First operand 86 states and 107 transitions. Second operand has 9 states, 8 states have (on average 2.5) internal successors, (20), 8 states have internal predecessors, (20), 4 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-25 00:19:36,252 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:36,252 INFO L93 Difference]: Finished difference Result 91 states and 115 transitions. [2024-09-25 00:19:36,253 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-25 00:19:36,253 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 8 states have (on average 2.5) internal successors, (20), 8 states have internal predecessors, (20), 4 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) Word has length 35 [2024-09-25 00:19:36,253 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:36,255 INFO L225 Difference]: With dead ends: 91 [2024-09-25 00:19:36,255 INFO L226 Difference]: Without dead ends: 76 [2024-09-25 00:19:36,255 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 71 GetRequests, 53 SyntacticMatches, 4 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 59 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=192, Unknown=0, NotChecked=0, Total=240 [2024-09-25 00:19:36,256 INFO L434 NwaCegarLoop]: 33 mSDtfsCounter, 15 mSDsluCounter, 157 mSDsCounter, 0 mSdLazyCounter, 140 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 190 SdHoareTripleChecker+Invalid, 140 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 140 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:36,256 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 190 Invalid, 140 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 140 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 00:19:36,257 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2024-09-25 00:19:36,285 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 73. [2024-09-25 00:19:36,285 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 73 states, 49 states have (on average 1.2653061224489797) internal successors, (62), 53 states have internal predecessors, (62), 12 states have call successors, (12), 9 states have call predecessors, (12), 11 states have return successors, (19), 10 states have call predecessors, (19), 10 states have call successors, (19) [2024-09-25 00:19:36,286 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 73 states to 73 states and 93 transitions. [2024-09-25 00:19:36,286 INFO L78 Accepts]: Start accepts. Automaton has 73 states and 93 transitions. Word has length 35 [2024-09-25 00:19:36,287 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:36,287 INFO L474 AbstractCegarLoop]: Abstraction has 73 states and 93 transitions. [2024-09-25 00:19:36,287 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 8 states have (on average 2.5) internal successors, (20), 8 states have internal predecessors, (20), 4 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-25 00:19:36,287 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:36,287 INFO L276 IsEmpty]: Start isEmpty. Operand 73 states and 93 transitions. [2024-09-25 00:19:36,290 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-09-25 00:19:36,290 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:36,290 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:36,310 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-25 00:19:36,491 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:36,491 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:36,492 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:36,492 INFO L85 PathProgramCache]: Analyzing trace with hash -1573056070, now seen corresponding path program 1 times [2024-09-25 00:19:36,492 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:36,492 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [541135289] [2024-09-25 00:19:36,492 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:36,492 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:36,541 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,213 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:19:37,214 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,216 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:19:37,216 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,231 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:19:37,245 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,630 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:19:37,632 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,634 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-25 00:19:37,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,697 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:19:37,699 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,702 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 9 proven. 2 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-25 00:19:37,702 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:37,702 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [541135289] [2024-09-25 00:19:37,702 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [541135289] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:19:37,703 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1988858708] [2024-09-25 00:19:37,703 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:37,703 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:37,703 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:37,705 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:37,706 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-25 00:19:37,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:37,829 INFO L262 TraceCheckSpWp]: Trace formula consists of 349 conjuncts, 42 conjuncts are in the unsatisfiable core [2024-09-25 00:19:37,832 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:37,837 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:37,840 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:38,140 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-25 00:19:38,141 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:19:38,330 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 10 proven. 2 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:19:38,330 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1988858708] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:19:38,330 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:19:38,331 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 11, 10] total 20 [2024-09-25 00:19:38,331 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1581675575] [2024-09-25 00:19:38,331 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:19:38,332 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-25 00:19:38,333 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:38,333 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-25 00:19:38,333 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=94, Invalid=286, Unknown=0, NotChecked=0, Total=380 [2024-09-25 00:19:38,334 INFO L87 Difference]: Start difference. First operand 73 states and 93 transitions. Second operand has 20 states, 19 states have (on average 2.1578947368421053) internal successors, (41), 17 states have internal predecessors, (41), 6 states have call successors, (13), 5 states have call predecessors, (13), 4 states have return successors, (8), 4 states have call predecessors, (8), 5 states have call successors, (8) [2024-09-25 00:19:39,040 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:39,041 INFO L93 Difference]: Finished difference Result 119 states and 250 transitions. [2024-09-25 00:19:39,041 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-25 00:19:39,042 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 19 states have (on average 2.1578947368421053) internal successors, (41), 17 states have internal predecessors, (41), 6 states have call successors, (13), 5 states have call predecessors, (13), 4 states have return successors, (8), 4 states have call predecessors, (8), 5 states have call successors, (8) Word has length 44 [2024-09-25 00:19:39,042 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:39,044 INFO L225 Difference]: With dead ends: 119 [2024-09-25 00:19:39,044 INFO L226 Difference]: Without dead ends: 102 [2024-09-25 00:19:39,045 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 93 SyntacticMatches, 0 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 191 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=215, Invalid=655, Unknown=0, NotChecked=0, Total=870 [2024-09-25 00:19:39,047 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 122 mSDsluCounter, 86 mSDsCounter, 0 mSdLazyCounter, 512 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 109 SdHoareTripleChecker+Invalid, 568 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 512 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:39,048 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 109 Invalid, 568 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 512 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-25 00:19:39,048 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 102 states. [2024-09-25 00:19:39,113 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 102 to 79. [2024-09-25 00:19:39,114 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 79 states, 53 states have (on average 1.320754716981132) internal successors, (70), 59 states have internal predecessors, (70), 14 states have call successors, (14), 9 states have call predecessors, (14), 11 states have return successors, (25), 10 states have call predecessors, (25), 12 states have call successors, (25) [2024-09-25 00:19:39,115 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 109 transitions. [2024-09-25 00:19:39,115 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 109 transitions. Word has length 44 [2024-09-25 00:19:39,116 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:39,116 INFO L474 AbstractCegarLoop]: Abstraction has 79 states and 109 transitions. [2024-09-25 00:19:39,116 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 19 states have (on average 2.1578947368421053) internal successors, (41), 17 states have internal predecessors, (41), 6 states have call successors, (13), 5 states have call predecessors, (13), 4 states have return successors, (8), 4 states have call predecessors, (8), 5 states have call successors, (8) [2024-09-25 00:19:39,116 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:39,117 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 109 transitions. [2024-09-25 00:19:39,118 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-09-25 00:19:39,118 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:39,118 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:39,136 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-25 00:19:39,322 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-25 00:19:39,323 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:39,324 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:39,324 INFO L85 PathProgramCache]: Analyzing trace with hash 2020846648, now seen corresponding path program 1 times [2024-09-25 00:19:39,324 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:39,324 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1578030365] [2024-09-25 00:19:39,324 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:39,324 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:39,349 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:39,843 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:19:39,844 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:39,846 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:19:39,850 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:39,883 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:19:39,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:40,158 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:19:40,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:40,162 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-25 00:19:40,165 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:40,232 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:19:40,233 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:40,236 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 4 proven. 3 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-09-25 00:19:40,236 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:40,237 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1578030365] [2024-09-25 00:19:40,237 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1578030365] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:19:40,237 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1480308162] [2024-09-25 00:19:40,237 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:40,237 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:40,237 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:40,239 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:40,240 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-25 00:19:40,350 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:40,352 INFO L262 TraceCheckSpWp]: Trace formula consists of 352 conjuncts, 46 conjuncts are in the unsatisfiable core [2024-09-25 00:19:40,356 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:40,380 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:40,402 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:40,774 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:19:40,776 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 4 proven. 3 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-09-25 00:19:40,776 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:19:41,574 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:19:41,575 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1480308162] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:19:41,575 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:19:41,575 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 15, 16] total 37 [2024-09-25 00:19:41,575 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [451868752] [2024-09-25 00:19:41,575 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:19:41,576 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 37 states [2024-09-25 00:19:41,576 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:41,576 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 37 interpolants. [2024-09-25 00:19:41,577 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=178, Invalid=1154, Unknown=0, NotChecked=0, Total=1332 [2024-09-25 00:19:41,577 INFO L87 Difference]: Start difference. First operand 79 states and 109 transitions. Second operand has 37 states, 28 states have (on average 2.0714285714285716) internal successors, (58), 31 states have internal predecessors, (58), 15 states have call successors, (16), 7 states have call predecessors, (16), 9 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2024-09-25 00:19:45,649 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-25 00:19:49,658 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-25 00:19:51,704 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.41s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-25 00:19:52,394 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:19:52,394 INFO L93 Difference]: Finished difference Result 109 states and 182 transitions. [2024-09-25 00:19:52,395 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-25 00:19:52,395 INFO L78 Accepts]: Start accepts. Automaton has has 37 states, 28 states have (on average 2.0714285714285716) internal successors, (58), 31 states have internal predecessors, (58), 15 states have call successors, (16), 7 states have call predecessors, (16), 9 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Word has length 44 [2024-09-25 00:19:52,395 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:19:52,398 INFO L225 Difference]: With dead ends: 109 [2024-09-25 00:19:52,398 INFO L226 Difference]: Without dead ends: 95 [2024-09-25 00:19:52,400 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 130 GetRequests, 76 SyntacticMatches, 0 SemanticMatches, 54 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 670 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=443, Invalid=2637, Unknown=0, NotChecked=0, Total=3080 [2024-09-25 00:19:52,400 INFO L434 NwaCegarLoop]: 21 mSDtfsCounter, 89 mSDsluCounter, 130 mSDsCounter, 0 mSdLazyCounter, 916 mSolverCounterSat, 97 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 10.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 94 SdHoareTripleChecker+Valid, 151 SdHoareTripleChecker+Invalid, 1015 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 97 IncrementalHoareTripleChecker+Valid, 916 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 10.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:19:52,400 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [94 Valid, 151 Invalid, 1015 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [97 Valid, 916 Invalid, 2 Unknown, 0 Unchecked, 10.2s Time] [2024-09-25 00:19:52,401 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 95 states. [2024-09-25 00:19:52,445 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 95 to 73. [2024-09-25 00:19:52,446 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 73 states, 50 states have (on average 1.32) internal successors, (66), 55 states have internal predecessors, (66), 14 states have call successors, (14), 9 states have call predecessors, (14), 8 states have return successors, (18), 9 states have call predecessors, (18), 12 states have call successors, (18) [2024-09-25 00:19:52,447 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 73 states to 73 states and 98 transitions. [2024-09-25 00:19:52,447 INFO L78 Accepts]: Start accepts. Automaton has 73 states and 98 transitions. Word has length 44 [2024-09-25 00:19:52,447 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:19:52,448 INFO L474 AbstractCegarLoop]: Abstraction has 73 states and 98 transitions. [2024-09-25 00:19:52,448 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 37 states, 28 states have (on average 2.0714285714285716) internal successors, (58), 31 states have internal predecessors, (58), 15 states have call successors, (16), 7 states have call predecessors, (16), 9 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2024-09-25 00:19:52,449 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:52,449 INFO L276 IsEmpty]: Start isEmpty. Operand 73 states and 98 transitions. [2024-09-25 00:19:52,451 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:19:52,451 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:19:52,453 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:19:52,472 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-25 00:19:52,654 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:52,654 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:19:52,655 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:19:52,655 INFO L85 PathProgramCache]: Analyzing trace with hash 264265128, now seen corresponding path program 1 times [2024-09-25 00:19:52,655 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:19:52,655 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [217053023] [2024-09-25 00:19:52,655 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:52,655 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:19:52,699 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:19:52,701 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [274923110] [2024-09-25 00:19:52,702 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:19:52,703 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:19:52,703 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:19:52,704 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:19:52,706 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-25 00:19:52,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:19:52,869 INFO L262 TraceCheckSpWp]: Trace formula consists of 359 conjuncts, 109 conjuncts are in the unsatisfiable core [2024-09-25 00:19:52,875 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:19:52,884 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:52,886 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:19:52,938 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:52,943 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:52,949 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:52,957 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:19:52,985 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:52,991 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:19:53,915 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 37 treesize of output 25 [2024-09-25 00:19:53,919 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:19:53,971 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:19:53,981 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:19:53,982 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 39 treesize of output 31 [2024-09-25 00:19:54,037 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 0 proven. 12 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:19:54,038 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:19:55,097 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:19:55,097 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [217053023] [2024-09-25 00:19:55,097 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:19:55,097 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [274923110] [2024-09-25 00:19:55,097 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [274923110] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:19:55,100 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:19:55,100 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22] total 22 [2024-09-25 00:19:55,100 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1509679562] [2024-09-25 00:19:55,100 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:19:55,101 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-25 00:19:55,101 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:19:55,101 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-25 00:19:55,102 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=88, Invalid=614, Unknown=0, NotChecked=0, Total=702 [2024-09-25 00:19:55,102 INFO L87 Difference]: Start difference. First operand 73 states and 98 transitions. Second operand has 22 states, 18 states have (on average 1.7222222222222223) internal successors, (31), 17 states have internal predecessors, (31), 7 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-25 00:19:59,124 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-25 00:20:00,741 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:00,742 INFO L93 Difference]: Finished difference Result 96 states and 151 transitions. [2024-09-25 00:20:00,742 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-25 00:20:00,742 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 18 states have (on average 1.7222222222222223) internal successors, (31), 17 states have internal predecessors, (31), 7 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) Word has length 48 [2024-09-25 00:20:00,743 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:00,744 INFO L225 Difference]: With dead ends: 96 [2024-09-25 00:20:00,744 INFO L226 Difference]: Without dead ends: 94 [2024-09-25 00:20:00,745 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 64 GetRequests, 29 SyntacticMatches, 2 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 278 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=146, Invalid=1044, Unknown=0, NotChecked=0, Total=1190 [2024-09-25 00:20:00,745 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 69 mSDsluCounter, 163 mSDsCounter, 0 mSdLazyCounter, 700 mSolverCounterSat, 12 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 186 SdHoareTripleChecker+Invalid, 713 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 700 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:00,745 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [72 Valid, 186 Invalid, 713 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 700 Invalid, 1 Unknown, 0 Unchecked, 5.3s Time] [2024-09-25 00:20:00,746 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 94 states. [2024-09-25 00:20:00,801 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 94 to 85. [2024-09-25 00:20:00,801 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 85 states, 58 states have (on average 1.3275862068965518) internal successors, (77), 64 states have internal predecessors, (77), 16 states have call successors, (16), 10 states have call predecessors, (16), 10 states have return successors, (29), 11 states have call predecessors, (29), 14 states have call successors, (29) [2024-09-25 00:20:00,802 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 85 states to 85 states and 122 transitions. [2024-09-25 00:20:00,802 INFO L78 Accepts]: Start accepts. Automaton has 85 states and 122 transitions. Word has length 48 [2024-09-25 00:20:00,802 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:00,802 INFO L474 AbstractCegarLoop]: Abstraction has 85 states and 122 transitions. [2024-09-25 00:20:00,803 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 18 states have (on average 1.7222222222222223) internal successors, (31), 17 states have internal predecessors, (31), 7 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-25 00:20:00,803 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:00,803 INFO L276 IsEmpty]: Start isEmpty. Operand 85 states and 122 transitions. [2024-09-25 00:20:00,804 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2024-09-25 00:20:00,804 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:00,805 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:00,819 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-25 00:20:01,005 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:01,006 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:01,006 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:01,006 INFO L85 PathProgramCache]: Analyzing trace with hash 1016093312, now seen corresponding path program 1 times [2024-09-25 00:20:01,006 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:01,006 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1008636133] [2024-09-25 00:20:01,006 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:01,006 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:01,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:01,033 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2118770033] [2024-09-25 00:20:01,034 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:01,034 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:01,034 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:01,036 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:01,040 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-25 00:20:01,197 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:01,202 INFO L262 TraceCheckSpWp]: Trace formula consists of 350 conjuncts, 111 conjuncts are in the unsatisfiable core [2024-09-25 00:20:01,208 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:01,238 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:01,245 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:01,250 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:01,258 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:01,283 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:01,289 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:14,793 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 19 [2024-09-25 00:20:14,795 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:20:14,871 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-25 00:20:14,887 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:20:14,888 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 43 treesize of output 35 [2024-09-25 00:20:15,003 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 3 proven. 12 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-25 00:20:15,004 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:16,011 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:16,011 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1008636133] [2024-09-25 00:20:16,011 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:16,011 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2118770033] [2024-09-25 00:20:16,011 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2118770033] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:16,011 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:16,011 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [28] total 28 [2024-09-25 00:20:16,012 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1389972638] [2024-09-25 00:20:16,012 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:16,012 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-09-25 00:20:16,012 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:16,013 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-09-25 00:20:16,013 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=116, Invalid=811, Unknown=3, NotChecked=0, Total=930 [2024-09-25 00:20:16,013 INFO L87 Difference]: Start difference. First operand 85 states and 122 transitions. Second operand has 28 states, 23 states have (on average 1.391304347826087) internal successors, (32), 22 states have internal predecessors, (32), 7 states have call successors, (8), 5 states have call predecessors, (8), 6 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-25 00:20:20,057 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-25 00:20:21,716 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:21,716 INFO L93 Difference]: Finished difference Result 104 states and 164 transitions. [2024-09-25 00:20:21,716 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-25 00:20:21,717 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 23 states have (on average 1.391304347826087) internal successors, (32), 22 states have internal predecessors, (32), 7 states have call successors, (8), 5 states have call predecessors, (8), 6 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) Word has length 46 [2024-09-25 00:20:21,717 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:21,718 INFO L225 Difference]: With dead ends: 104 [2024-09-25 00:20:21,718 INFO L226 Difference]: Without dead ends: 102 [2024-09-25 00:20:21,719 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 20 SyntacticMatches, 2 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 437 ImplicationChecksByTransitivity, 13.7s TimeCoverageRelationStatistics Valid=204, Invalid=1515, Unknown=3, NotChecked=0, Total=1722 [2024-09-25 00:20:21,719 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 61 mSDsluCounter, 216 mSDsCounter, 0 mSdLazyCounter, 939 mSolverCounterSat, 11 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 239 SdHoareTripleChecker+Invalid, 951 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 939 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:21,720 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 239 Invalid, 951 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 939 Invalid, 1 Unknown, 0 Unchecked, 5.2s Time] [2024-09-25 00:20:21,720 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 102 states. [2024-09-25 00:20:21,767 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 102 to 85. [2024-09-25 00:20:21,768 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 85 states, 58 states have (on average 1.3275862068965518) internal successors, (77), 64 states have internal predecessors, (77), 16 states have call successors, (16), 10 states have call predecessors, (16), 10 states have return successors, (29), 11 states have call predecessors, (29), 14 states have call successors, (29) [2024-09-25 00:20:21,771 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 85 states to 85 states and 122 transitions. [2024-09-25 00:20:21,771 INFO L78 Accepts]: Start accepts. Automaton has 85 states and 122 transitions. Word has length 46 [2024-09-25 00:20:21,773 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:21,773 INFO L474 AbstractCegarLoop]: Abstraction has 85 states and 122 transitions. [2024-09-25 00:20:21,773 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 23 states have (on average 1.391304347826087) internal successors, (32), 22 states have internal predecessors, (32), 7 states have call successors, (8), 5 states have call predecessors, (8), 6 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-25 00:20:21,774 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:21,774 INFO L276 IsEmpty]: Start isEmpty. Operand 85 states and 122 transitions. [2024-09-25 00:20:21,775 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:21,776 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:21,776 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:21,796 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-25 00:20:21,980 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:21,981 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:21,981 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:21,981 INFO L85 PathProgramCache]: Analyzing trace with hash 130251622, now seen corresponding path program 1 times [2024-09-25 00:20:21,982 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:21,982 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1359658492] [2024-09-25 00:20:21,982 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:21,982 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:22,005 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,343 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:22,344 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,345 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:22,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,353 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:22,362 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,511 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:22,512 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,513 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:20:22,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,567 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:22,569 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:22,571 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-25 00:20:22,572 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:22,572 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1359658492] [2024-09-25 00:20:22,572 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1359658492] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:20:22,572 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:20:22,572 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2024-09-25 00:20:22,572 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [360265669] [2024-09-25 00:20:22,572 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:20:22,573 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-25 00:20:22,573 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:22,573 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-25 00:20:22,573 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=55, Unknown=0, NotChecked=0, Total=72 [2024-09-25 00:20:22,574 INFO L87 Difference]: Start difference. First operand 85 states and 122 transitions. Second operand has 9 states, 8 states have (on average 3.875) internal successors, (31), 8 states have internal predecessors, (31), 4 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-25 00:20:22,992 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:22,992 INFO L93 Difference]: Finished difference Result 127 states and 278 transitions. [2024-09-25 00:20:22,992 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-25 00:20:22,993 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 8 states have (on average 3.875) internal successors, (31), 8 states have internal predecessors, (31), 4 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 48 [2024-09-25 00:20:22,993 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:22,994 INFO L225 Difference]: With dead ends: 127 [2024-09-25 00:20:22,994 INFO L226 Difference]: Without dead ends: 107 [2024-09-25 00:20:22,995 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 30 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 24 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=65, Invalid=175, Unknown=0, NotChecked=0, Total=240 [2024-09-25 00:20:22,995 INFO L434 NwaCegarLoop]: 36 mSDtfsCounter, 53 mSDsluCounter, 89 mSDsCounter, 0 mSdLazyCounter, 394 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 125 SdHoareTripleChecker+Invalid, 414 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 394 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:22,996 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 125 Invalid, 414 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 394 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-25 00:20:22,996 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 107 states. [2024-09-25 00:20:23,037 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 107 to 81. [2024-09-25 00:20:23,038 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 55 states have (on average 1.290909090909091) internal successors, (71), 60 states have internal predecessors, (71), 15 states have call successors, (15), 10 states have call predecessors, (15), 10 states have return successors, (25), 11 states have call predecessors, (25), 13 states have call successors, (25) [2024-09-25 00:20:23,038 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 111 transitions. [2024-09-25 00:20:23,039 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 111 transitions. Word has length 48 [2024-09-25 00:20:23,039 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:23,039 INFO L474 AbstractCegarLoop]: Abstraction has 81 states and 111 transitions. [2024-09-25 00:20:23,039 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 8 states have (on average 3.875) internal successors, (31), 8 states have internal predecessors, (31), 4 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-25 00:20:23,040 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:23,040 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 111 transitions. [2024-09-25 00:20:23,041 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:23,041 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:23,041 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:23,042 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2024-09-25 00:20:23,042 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:23,042 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:23,042 INFO L85 PathProgramCache]: Analyzing trace with hash -921540890, now seen corresponding path program 1 times [2024-09-25 00:20:23,042 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:23,042 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [468117130] [2024-09-25 00:20:23,043 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:23,043 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:23,057 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,077 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:23,078 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,079 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:23,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,092 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:23,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,114 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:23,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,117 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:20:23,120 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:23,123 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,124 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 00:20:23,124 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:23,124 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [468117130] [2024-09-25 00:20:23,124 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [468117130] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:20:23,125 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:20:23,125 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-09-25 00:20:23,125 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2113231871] [2024-09-25 00:20:23,125 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:20:23,125 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-25 00:20:23,125 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:23,126 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-25 00:20:23,126 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-25 00:20:23,126 INFO L87 Difference]: Start difference. First operand 81 states and 111 transitions. Second operand has 4 states, 4 states have (on average 6.75) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-25 00:20:23,268 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:23,269 INFO L93 Difference]: Finished difference Result 129 states and 193 transitions. [2024-09-25 00:20:23,269 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-25 00:20:23,269 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 6.75) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 48 [2024-09-25 00:20:23,269 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:23,270 INFO L225 Difference]: With dead ends: 129 [2024-09-25 00:20:23,271 INFO L226 Difference]: Without dead ends: 85 [2024-09-25 00:20:23,271 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-09-25 00:20:23,272 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 26 mSDsluCounter, 21 mSDsCounter, 0 mSdLazyCounter, 62 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 43 SdHoareTripleChecker+Invalid, 69 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 62 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:23,272 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [28 Valid, 43 Invalid, 69 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 62 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 00:20:23,272 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 85 states. [2024-09-25 00:20:23,313 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 85 to 83. [2024-09-25 00:20:23,314 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 83 states, 57 states have (on average 1.280701754385965) internal successors, (73), 62 states have internal predecessors, (73), 15 states have call successors, (15), 10 states have call predecessors, (15), 10 states have return successors, (25), 11 states have call predecessors, (25), 13 states have call successors, (25) [2024-09-25 00:20:23,314 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 83 states to 83 states and 113 transitions. [2024-09-25 00:20:23,315 INFO L78 Accepts]: Start accepts. Automaton has 83 states and 113 transitions. Word has length 48 [2024-09-25 00:20:23,315 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:23,315 INFO L474 AbstractCegarLoop]: Abstraction has 83 states and 113 transitions. [2024-09-25 00:20:23,315 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 6.75) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-25 00:20:23,316 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:23,316 INFO L276 IsEmpty]: Start isEmpty. Operand 83 states and 113 transitions. [2024-09-25 00:20:23,316 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:23,316 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:23,317 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:23,317 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2024-09-25 00:20:23,317 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:23,317 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:23,317 INFO L85 PathProgramCache]: Analyzing trace with hash -436799450, now seen corresponding path program 1 times [2024-09-25 00:20:23,317 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:23,318 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1268515558] [2024-09-25 00:20:23,318 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:23,318 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:23,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:23,344 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [975119040] [2024-09-25 00:20:23,347 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:23,347 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:23,347 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:23,351 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:23,357 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-25 00:20:23,511 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:23,514 INFO L262 TraceCheckSpWp]: Trace formula consists of 362 conjuncts, 119 conjuncts are in the unsatisfiable core [2024-09-25 00:20:23,519 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:23,523 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:23,527 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:23,531 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:23,536 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:23,559 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:23,567 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:24,648 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 51 treesize of output 31 [2024-09-25 00:20:24,655 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:20:24,687 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 23 [2024-09-25 00:20:24,689 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 19 [2024-09-25 00:20:24,768 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:20:24,768 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:30,388 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:30,388 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1268515558] [2024-09-25 00:20:30,388 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:30,388 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [975119040] [2024-09-25 00:20:30,388 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [975119040] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:30,388 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:30,388 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20] total 20 [2024-09-25 00:20:30,389 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [724529680] [2024-09-25 00:20:30,389 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:30,389 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-25 00:20:30,389 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:30,389 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-25 00:20:30,390 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=81, Invalid=518, Unknown=1, NotChecked=0, Total=600 [2024-09-25 00:20:30,390 INFO L87 Difference]: Start difference. First operand 83 states and 113 transitions. Second operand has 20 states, 17 states have (on average 1.8235294117647058) internal successors, (31), 16 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-25 00:20:31,797 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:31,797 INFO L93 Difference]: Finished difference Result 113 states and 172 transitions. [2024-09-25 00:20:31,797 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-25 00:20:31,797 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 17 states have (on average 1.8235294117647058) internal successors, (31), 16 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) Word has length 48 [2024-09-25 00:20:31,798 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:31,798 INFO L225 Difference]: With dead ends: 113 [2024-09-25 00:20:31,799 INFO L226 Difference]: Without dead ends: 101 [2024-09-25 00:20:31,799 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 32 SyntacticMatches, 2 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 227 ImplicationChecksByTransitivity, 5.2s TimeCoverageRelationStatistics Valid=115, Invalid=754, Unknown=1, NotChecked=0, Total=870 [2024-09-25 00:20:31,799 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 44 mSDsluCounter, 129 mSDsCounter, 0 mSdLazyCounter, 660 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 152 SdHoareTripleChecker+Invalid, 678 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 660 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:31,800 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 152 Invalid, 678 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 660 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 00:20:31,800 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 101 states. [2024-09-25 00:20:31,845 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 101 to 92. [2024-09-25 00:20:31,845 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 92 states, 63 states have (on average 1.3015873015873016) internal successors, (82), 69 states have internal predecessors, (82), 16 states have call successors, (16), 10 states have call predecessors, (16), 12 states have return successors, (38), 12 states have call predecessors, (38), 14 states have call successors, (38) [2024-09-25 00:20:31,846 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 92 states to 92 states and 136 transitions. [2024-09-25 00:20:31,846 INFO L78 Accepts]: Start accepts. Automaton has 92 states and 136 transitions. Word has length 48 [2024-09-25 00:20:31,846 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:31,847 INFO L474 AbstractCegarLoop]: Abstraction has 92 states and 136 transitions. [2024-09-25 00:20:31,847 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 17 states have (on average 1.8235294117647058) internal successors, (31), 16 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-25 00:20:31,847 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:31,847 INFO L276 IsEmpty]: Start isEmpty. Operand 92 states and 136 transitions. [2024-09-25 00:20:31,848 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:31,848 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:31,848 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:31,864 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2024-09-25 00:20:32,049 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2024-09-25 00:20:32,049 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:32,050 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:32,050 INFO L85 PathProgramCache]: Analyzing trace with hash -1140395608, now seen corresponding path program 1 times [2024-09-25 00:20:32,050 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:32,050 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1772687738] [2024-09-25 00:20:32,050 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:32,050 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:32,070 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,380 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:32,382 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,383 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:32,384 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,393 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:32,403 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,533 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:32,534 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,536 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:20:32,538 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,541 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:32,541 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:32,542 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 00:20:32,542 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:32,543 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1772687738] [2024-09-25 00:20:32,543 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1772687738] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:20:32,543 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:20:32,543 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-09-25 00:20:32,543 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1680314304] [2024-09-25 00:20:32,543 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:20:32,544 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-25 00:20:32,544 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:32,544 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-25 00:20:32,544 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-09-25 00:20:32,545 INFO L87 Difference]: Start difference. First operand 92 states and 136 transitions. Second operand has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-25 00:20:32,813 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:32,814 INFO L93 Difference]: Finished difference Result 155 states and 259 transitions. [2024-09-25 00:20:32,814 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-25 00:20:32,814 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 48 [2024-09-25 00:20:32,814 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:32,816 INFO L225 Difference]: With dead ends: 155 [2024-09-25 00:20:32,816 INFO L226 Difference]: Without dead ends: 94 [2024-09-25 00:20:32,817 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2024-09-25 00:20:32,817 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 40 mSDsluCounter, 54 mSDsCounter, 0 mSdLazyCounter, 145 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 79 SdHoareTripleChecker+Invalid, 156 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 145 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:32,817 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 79 Invalid, 156 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 145 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:20:32,818 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 94 states. [2024-09-25 00:20:32,861 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 94 to 87. [2024-09-25 00:20:32,862 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 87 states, 59 states have (on average 1.2372881355932204) internal successors, (73), 64 states have internal predecessors, (73), 15 states have call successors, (15), 10 states have call predecessors, (15), 12 states have return successors, (34), 12 states have call predecessors, (34), 13 states have call successors, (34) [2024-09-25 00:20:32,862 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 87 states to 87 states and 122 transitions. [2024-09-25 00:20:32,863 INFO L78 Accepts]: Start accepts. Automaton has 87 states and 122 transitions. Word has length 48 [2024-09-25 00:20:32,863 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:32,863 INFO L474 AbstractCegarLoop]: Abstraction has 87 states and 122 transitions. [2024-09-25 00:20:32,863 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-25 00:20:32,864 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:32,864 INFO L276 IsEmpty]: Start isEmpty. Operand 87 states and 122 transitions. [2024-09-25 00:20:32,864 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:32,864 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:32,865 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:32,865 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2024-09-25 00:20:32,865 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:32,865 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:32,865 INFO L85 PathProgramCache]: Analyzing trace with hash -632852570, now seen corresponding path program 1 times [2024-09-25 00:20:32,865 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:32,865 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [312160616] [2024-09-25 00:20:32,866 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:32,866 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:32,886 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,212 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:33,214 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,215 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:33,216 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,224 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:33,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,380 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:33,382 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,383 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:20:33,386 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,388 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:33,389 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,390 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 00:20:33,390 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:33,390 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [312160616] [2024-09-25 00:20:33,390 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [312160616] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:20:33,391 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:20:33,391 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-09-25 00:20:33,391 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1712954299] [2024-09-25 00:20:33,391 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:20:33,391 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-25 00:20:33,391 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:33,392 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-25 00:20:33,392 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-09-25 00:20:33,392 INFO L87 Difference]: Start difference. First operand 87 states and 122 transitions. Second operand has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-25 00:20:33,604 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:33,604 INFO L93 Difference]: Finished difference Result 143 states and 224 transitions. [2024-09-25 00:20:33,605 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-25 00:20:33,605 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 48 [2024-09-25 00:20:33,605 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:33,606 INFO L225 Difference]: With dead ends: 143 [2024-09-25 00:20:33,606 INFO L226 Difference]: Without dead ends: 93 [2024-09-25 00:20:33,607 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=28, Invalid=44, Unknown=0, NotChecked=0, Total=72 [2024-09-25 00:20:33,607 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 39 mSDsluCounter, 40 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 41 SdHoareTripleChecker+Valid, 66 SdHoareTripleChecker+Invalid, 117 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:33,608 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [41 Valid, 66 Invalid, 117 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 00:20:33,608 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 93 states. [2024-09-25 00:20:33,660 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 93 to 89. [2024-09-25 00:20:33,661 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 61 states have (on average 1.2295081967213115) internal successors, (75), 66 states have internal predecessors, (75), 15 states have call successors, (15), 10 states have call predecessors, (15), 12 states have return successors, (34), 12 states have call predecessors, (34), 13 states have call successors, (34) [2024-09-25 00:20:33,662 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 124 transitions. [2024-09-25 00:20:33,662 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 124 transitions. Word has length 48 [2024-09-25 00:20:33,662 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:33,662 INFO L474 AbstractCegarLoop]: Abstraction has 89 states and 124 transitions. [2024-09-25 00:20:33,663 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-25 00:20:33,663 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:33,663 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 124 transitions. [2024-09-25 00:20:33,664 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:33,664 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:33,664 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:33,664 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2024-09-25 00:20:33,664 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:33,665 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:33,666 INFO L85 PathProgramCache]: Analyzing trace with hash -1274409114, now seen corresponding path program 1 times [2024-09-25 00:20:33,666 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:33,666 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1794996167] [2024-09-25 00:20:33,666 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:33,666 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:33,703 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:33,705 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1176475639] [2024-09-25 00:20:33,705 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:33,705 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:33,705 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:33,707 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:33,708 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-25 00:20:33,863 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:33,866 INFO L262 TraceCheckSpWp]: Trace formula consists of 361 conjuncts, 83 conjuncts are in the unsatisfiable core [2024-09-25 00:20:33,870 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:33,873 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:20:33,876 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:33,879 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:33,884 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:33,890 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:33,906 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:33,909 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:34,552 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 19 [2024-09-25 00:20:34,555 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:20:34,578 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:20:34,581 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-25 00:20:34,627 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:20:34,628 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:35,343 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:35,343 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1794996167] [2024-09-25 00:20:35,343 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:35,343 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1176475639] [2024-09-25 00:20:35,343 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1176475639] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:35,344 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:35,344 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15] total 15 [2024-09-25 00:20:35,344 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1477183972] [2024-09-25 00:20:35,344 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:35,344 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-25 00:20:35,344 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:35,345 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-25 00:20:35,345 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=51, Invalid=329, Unknown=0, NotChecked=0, Total=380 [2024-09-25 00:20:35,345 INFO L87 Difference]: Start difference. First operand 89 states and 124 transitions. Second operand has 15 states, 12 states have (on average 2.5833333333333335) internal successors, (31), 11 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-25 00:20:35,976 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:35,977 INFO L93 Difference]: Finished difference Result 101 states and 147 transitions. [2024-09-25 00:20:35,977 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-25 00:20:35,977 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 12 states have (on average 2.5833333333333335) internal successors, (31), 11 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) Word has length 48 [2024-09-25 00:20:35,978 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:35,979 INFO L225 Difference]: With dead ends: 101 [2024-09-25 00:20:35,979 INFO L226 Difference]: Without dead ends: 99 [2024-09-25 00:20:35,979 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 37 SyntacticMatches, 2 SemanticMatches, 23 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 105 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=83, Invalid=517, Unknown=0, NotChecked=0, Total=600 [2024-09-25 00:20:35,980 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 32 mSDsluCounter, 134 mSDsCounter, 0 mSdLazyCounter, 490 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 160 SdHoareTripleChecker+Invalid, 498 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 490 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:35,980 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 160 Invalid, 498 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 490 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-25 00:20:35,980 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 99 states. [2024-09-25 00:20:36,023 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 99 to 90. [2024-09-25 00:20:36,023 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 61 states have (on average 1.2295081967213115) internal successors, (75), 67 states have internal predecessors, (75), 16 states have call successors, (16), 10 states have call predecessors, (16), 12 states have return successors, (39), 12 states have call predecessors, (39), 14 states have call successors, (39) [2024-09-25 00:20:36,024 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 130 transitions. [2024-09-25 00:20:36,025 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 130 transitions. Word has length 48 [2024-09-25 00:20:36,025 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:36,025 INFO L474 AbstractCegarLoop]: Abstraction has 90 states and 130 transitions. [2024-09-25 00:20:36,025 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 12 states have (on average 2.5833333333333335) internal successors, (31), 11 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-25 00:20:36,025 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:36,025 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 130 transitions. [2024-09-25 00:20:36,026 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:36,026 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:36,026 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:36,043 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-25 00:20:36,227 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-25 00:20:36,227 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:36,228 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:36,228 INFO L85 PathProgramCache]: Analyzing trace with hash -851707288, now seen corresponding path program 1 times [2024-09-25 00:20:36,228 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:36,228 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [467355742] [2024-09-25 00:20:36,228 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:36,229 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:36,261 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,595 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:36,596 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,598 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:36,599 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,606 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:36,616 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,749 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:36,750 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,751 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:20:36,754 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,807 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:36,808 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:36,811 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-09-25 00:20:36,811 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:36,811 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [467355742] [2024-09-25 00:20:36,811 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [467355742] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:20:36,811 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:20:36,811 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-25 00:20:36,811 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1432703695] [2024-09-25 00:20:36,811 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:20:36,812 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:20:36,812 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:36,812 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:20:36,812 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2024-09-25 00:20:36,812 INFO L87 Difference]: Start difference. First operand 90 states and 130 transitions. Second operand has 8 states, 7 states have (on average 4.428571428571429) internal successors, (31), 7 states have internal predecessors, (31), 4 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-25 00:20:37,160 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:37,161 INFO L93 Difference]: Finished difference Result 128 states and 248 transitions. [2024-09-25 00:20:37,161 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-09-25 00:20:37,161 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 4.428571428571429) internal successors, (31), 7 states have internal predecessors, (31), 4 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 48 [2024-09-25 00:20:37,162 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:37,163 INFO L225 Difference]: With dead ends: 128 [2024-09-25 00:20:37,163 INFO L226 Difference]: Without dead ends: 108 [2024-09-25 00:20:37,164 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=47, Invalid=109, Unknown=0, NotChecked=0, Total=156 [2024-09-25 00:20:37,164 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 44 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 224 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 81 SdHoareTripleChecker+Invalid, 244 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 224 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:37,165 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 81 Invalid, 244 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 224 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:20:37,165 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 108 states. [2024-09-25 00:20:37,229 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 108 to 94. [2024-09-25 00:20:37,230 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 94 states, 62 states have (on average 1.2258064516129032) internal successors, (76), 70 states have internal predecessors, (76), 18 states have call successors, (18), 10 states have call predecessors, (18), 13 states have return successors, (52), 13 states have call predecessors, (52), 16 states have call successors, (52) [2024-09-25 00:20:37,231 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 94 states to 94 states and 146 transitions. [2024-09-25 00:20:37,232 INFO L78 Accepts]: Start accepts. Automaton has 94 states and 146 transitions. Word has length 48 [2024-09-25 00:20:37,233 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:37,233 INFO L474 AbstractCegarLoop]: Abstraction has 94 states and 146 transitions. [2024-09-25 00:20:37,234 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 4.428571428571429) internal successors, (31), 7 states have internal predecessors, (31), 4 states have call successors, (8), 3 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-25 00:20:37,234 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:37,234 INFO L276 IsEmpty]: Start isEmpty. Operand 94 states and 146 transitions. [2024-09-25 00:20:37,235 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-09-25 00:20:37,235 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:37,235 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:37,235 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable16 [2024-09-25 00:20:37,236 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:37,236 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:37,236 INFO L85 PathProgramCache]: Analyzing trace with hash -570812956, now seen corresponding path program 1 times [2024-09-25 00:20:37,236 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:37,236 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [475836123] [2024-09-25 00:20:37,236 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:37,237 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:37,271 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:37,273 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [797018992] [2024-09-25 00:20:37,273 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:37,273 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:37,273 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:37,275 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:37,277 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-25 00:20:37,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:37,461 INFO L262 TraceCheckSpWp]: Trace formula consists of 359 conjuncts, 103 conjuncts are in the unsatisfiable core [2024-09-25 00:20:37,465 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:37,469 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:37,473 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:37,478 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:37,485 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:37,500 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:37,510 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:38,315 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 46 treesize of output 30 [2024-09-25 00:20:38,320 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:20:38,351 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 38 treesize of output 22 [2024-09-25 00:20:38,353 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 34 treesize of output 18 [2024-09-25 00:20:38,408 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:20:38,409 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:39,669 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:39,670 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [475836123] [2024-09-25 00:20:39,670 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:39,670 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [797018992] [2024-09-25 00:20:39,670 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [797018992] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:39,670 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:39,670 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-25 00:20:39,670 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [128319740] [2024-09-25 00:20:39,670 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:39,670 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-25 00:20:39,670 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:39,671 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-25 00:20:39,671 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=475, Unknown=0, NotChecked=0, Total=552 [2024-09-25 00:20:39,671 INFO L87 Difference]: Start difference. First operand 94 states and 146 transitions. Second operand has 19 states, 16 states have (on average 1.9375) internal successors, (31), 15 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-25 00:20:41,243 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:41,243 INFO L93 Difference]: Finished difference Result 105 states and 165 transitions. [2024-09-25 00:20:41,244 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-25 00:20:41,244 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 16 states have (on average 1.9375) internal successors, (31), 15 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) Word has length 48 [2024-09-25 00:20:41,245 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:41,246 INFO L225 Difference]: With dead ends: 105 [2024-09-25 00:20:41,246 INFO L226 Difference]: Without dead ends: 103 [2024-09-25 00:20:41,247 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 64 GetRequests, 33 SyntacticMatches, 2 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 208 ImplicationChecksByTransitivity, 1.3s TimeCoverageRelationStatistics Valid=126, Invalid=804, Unknown=0, NotChecked=0, Total=930 [2024-09-25 00:20:41,247 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 35 mSDsluCounter, 139 mSDsCounter, 0 mSdLazyCounter, 596 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 164 SdHoareTripleChecker+Invalid, 612 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 596 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:41,248 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 164 Invalid, 612 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 596 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 00:20:41,248 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 103 states. [2024-09-25 00:20:41,310 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 103 to 93. [2024-09-25 00:20:41,311 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 93 states, 62 states have (on average 1.2258064516129032) internal successors, (76), 69 states have internal predecessors, (76), 17 states have call successors, (17), 10 states have call predecessors, (17), 13 states have return successors, (46), 13 states have call predecessors, (46), 15 states have call successors, (46) [2024-09-25 00:20:41,312 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 93 states to 93 states and 139 transitions. [2024-09-25 00:20:41,312 INFO L78 Accepts]: Start accepts. Automaton has 93 states and 139 transitions. Word has length 48 [2024-09-25 00:20:41,312 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:41,313 INFO L474 AbstractCegarLoop]: Abstraction has 93 states and 139 transitions. [2024-09-25 00:20:41,313 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 16 states have (on average 1.9375) internal successors, (31), 15 states have internal predecessors, (31), 6 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 5 states have call predecessors, (6), 5 states have call successors, (6) [2024-09-25 00:20:41,313 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:41,313 INFO L276 IsEmpty]: Start isEmpty. Operand 93 states and 139 transitions. [2024-09-25 00:20:41,314 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-09-25 00:20:41,314 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:41,314 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:41,333 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-25 00:20:41,518 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable17 [2024-09-25 00:20:41,519 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:41,519 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:41,519 INFO L85 PathProgramCache]: Analyzing trace with hash -536058545, now seen corresponding path program 1 times [2024-09-25 00:20:41,519 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:41,521 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1721764618] [2024-09-25 00:20:41,521 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:41,521 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:41,549 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,229 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:42,230 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,231 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:42,232 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,239 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:42,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,622 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:42,623 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,624 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:20:42,646 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,846 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:42,847 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,849 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-25 00:20:42,852 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,911 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:42,912 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:42,915 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 23 proven. 1 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-25 00:20:42,916 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:42,916 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1721764618] [2024-09-25 00:20:42,916 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1721764618] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:42,916 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1262871986] [2024-09-25 00:20:42,916 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:42,916 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:42,916 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:42,918 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:42,920 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-25 00:20:43,115 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:43,117 INFO L262 TraceCheckSpWp]: Trace formula consists of 468 conjuncts, 32 conjuncts are in the unsatisfiable core [2024-09-25 00:20:43,119 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:43,218 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 19 [2024-09-25 00:20:43,311 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 24 proven. 2 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2024-09-25 00:20:43,311 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:43,510 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 25 proven. 1 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2024-09-25 00:20:43,511 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1262871986] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:20:43,511 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:20:43,511 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 10, 9] total 18 [2024-09-25 00:20:43,511 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [620169479] [2024-09-25 00:20:43,511 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:43,511 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-25 00:20:43,511 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:43,512 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-25 00:20:43,512 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=65, Invalid=241, Unknown=0, NotChecked=0, Total=306 [2024-09-25 00:20:43,512 INFO L87 Difference]: Start difference. First operand 93 states and 139 transitions. Second operand has 18 states, 18 states have (on average 3.2777777777777777) internal successors, (59), 15 states have internal predecessors, (59), 7 states have call successors, (16), 5 states have call predecessors, (16), 4 states have return successors, (11), 5 states have call predecessors, (11), 6 states have call successors, (11) [2024-09-25 00:20:43,959 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:43,959 INFO L93 Difference]: Finished difference Result 113 states and 194 transitions. [2024-09-25 00:20:43,960 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-09-25 00:20:43,961 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 3.2777777777777777) internal successors, (59), 15 states have internal predecessors, (59), 7 states have call successors, (16), 5 states have call predecessors, (16), 4 states have return successors, (11), 5 states have call predecessors, (11), 6 states have call successors, (11) Word has length 63 [2024-09-25 00:20:43,961 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:43,962 INFO L225 Difference]: With dead ends: 113 [2024-09-25 00:20:43,962 INFO L226 Difference]: Without dead ends: 97 [2024-09-25 00:20:43,963 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 165 GetRequests, 139 SyntacticMatches, 1 SemanticMatches, 25 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 128 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=179, Invalid=523, Unknown=0, NotChecked=0, Total=702 [2024-09-25 00:20:43,963 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 95 mSDsluCounter, 83 mSDsCounter, 0 mSdLazyCounter, 387 mSolverCounterSat, 34 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 98 SdHoareTripleChecker+Valid, 105 SdHoareTripleChecker+Invalid, 421 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 34 IncrementalHoareTripleChecker+Valid, 387 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:43,963 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [98 Valid, 105 Invalid, 421 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [34 Valid, 387 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-25 00:20:43,964 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 97 states. [2024-09-25 00:20:44,022 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 97 to 88. [2024-09-25 00:20:44,023 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 88 states, 60 states have (on average 1.2333333333333334) internal successors, (74), 66 states have internal predecessors, (74), 16 states have call successors, (16), 10 states have call predecessors, (16), 11 states have return successors, (31), 11 states have call predecessors, (31), 14 states have call successors, (31) [2024-09-25 00:20:44,023 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 88 states to 88 states and 121 transitions. [2024-09-25 00:20:44,024 INFO L78 Accepts]: Start accepts. Automaton has 88 states and 121 transitions. Word has length 63 [2024-09-25 00:20:44,024 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:44,024 INFO L474 AbstractCegarLoop]: Abstraction has 88 states and 121 transitions. [2024-09-25 00:20:44,025 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 3.2777777777777777) internal successors, (59), 15 states have internal predecessors, (59), 7 states have call successors, (16), 5 states have call predecessors, (16), 4 states have return successors, (11), 5 states have call predecessors, (11), 6 states have call successors, (11) [2024-09-25 00:20:44,025 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:44,025 INFO L276 IsEmpty]: Start isEmpty. Operand 88 states and 121 transitions. [2024-09-25 00:20:44,027 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2024-09-25 00:20:44,027 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:44,027 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:44,046 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Ended with exit code 0 [2024-09-25 00:20:44,228 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:44,228 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:44,228 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:44,228 INFO L85 PathProgramCache]: Analyzing trace with hash 1482227333, now seen corresponding path program 1 times [2024-09-25 00:20:44,229 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:44,229 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1479780910] [2024-09-25 00:20:44,229 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:44,229 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:44,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:44,257 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1007834244] [2024-09-25 00:20:44,257 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:44,257 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:44,257 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:44,259 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:44,261 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-25 00:20:44,464 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:44,469 INFO L262 TraceCheckSpWp]: Trace formula consists of 457 conjuncts, 151 conjuncts are in the unsatisfiable core [2024-09-25 00:20:44,479 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:44,505 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:44,518 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:44,523 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:44,528 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:44,547 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:44,552 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:45,548 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 40 treesize of output 28 [2024-09-25 00:20:45,553 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 19 [2024-09-25 00:20:45,557 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:20:45,597 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:20:45,601 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 28 treesize of output 16 [2024-09-25 00:20:45,607 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 26 treesize of output 14 [2024-09-25 00:20:45,686 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 6 proven. 21 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2024-09-25 00:20:45,687 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:48,041 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:48,042 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1479780910] [2024-09-25 00:20:48,042 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:48,042 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1007834244] [2024-09-25 00:20:48,042 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1007834244] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:48,042 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:48,042 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-25 00:20:48,042 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1554493624] [2024-09-25 00:20:48,042 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:48,043 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-25 00:20:48,043 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:48,043 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-25 00:20:48,043 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=66, Invalid=486, Unknown=0, NotChecked=0, Total=552 [2024-09-25 00:20:48,044 INFO L87 Difference]: Start difference. First operand 88 states and 121 transitions. Second operand has 19 states, 15 states have (on average 2.2) internal successors, (33), 15 states have internal predecessors, (33), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:20:49,515 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:49,515 INFO L93 Difference]: Finished difference Result 102 states and 152 transitions. [2024-09-25 00:20:49,515 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-25 00:20:49,516 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 15 states have (on average 2.2) internal successors, (33), 15 states have internal predecessors, (33), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) Word has length 61 [2024-09-25 00:20:49,516 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:49,517 INFO L225 Difference]: With dead ends: 102 [2024-09-25 00:20:49,517 INFO L226 Difference]: Without dead ends: 100 [2024-09-25 00:20:49,518 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 76 GetRequests, 46 SyntacticMatches, 2 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 165 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=109, Invalid=761, Unknown=0, NotChecked=0, Total=870 [2024-09-25 00:20:49,518 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 59 mSDsluCounter, 115 mSDsCounter, 0 mSdLazyCounter, 733 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 749 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 733 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:49,519 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 137 Invalid, 749 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 733 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 00:20:49,519 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2024-09-25 00:20:49,562 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 91. [2024-09-25 00:20:49,562 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 61 states have (on average 1.2295081967213115) internal successors, (75), 68 states have internal predecessors, (75), 17 states have call successors, (17), 10 states have call predecessors, (17), 12 states have return successors, (42), 12 states have call predecessors, (42), 15 states have call successors, (42) [2024-09-25 00:20:49,563 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 134 transitions. [2024-09-25 00:20:49,563 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 134 transitions. Word has length 61 [2024-09-25 00:20:49,563 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:49,563 INFO L474 AbstractCegarLoop]: Abstraction has 91 states and 134 transitions. [2024-09-25 00:20:49,564 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 15 states have (on average 2.2) internal successors, (33), 15 states have internal predecessors, (33), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:20:49,564 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:49,564 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 134 transitions. [2024-09-25 00:20:49,565 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2024-09-25 00:20:49,565 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:49,565 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:49,582 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Forceful destruction successful, exit code 0 [2024-09-25 00:20:49,765 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:49,766 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:49,766 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:49,766 INFO L85 PathProgramCache]: Analyzing trace with hash 1183574303, now seen corresponding path program 1 times [2024-09-25 00:20:49,766 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:49,767 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1870010560] [2024-09-25 00:20:49,767 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:49,767 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:49,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:49,796 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [21980175] [2024-09-25 00:20:49,796 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:49,797 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:49,797 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:49,799 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:49,800 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-25 00:20:50,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:50,017 INFO L262 TraceCheckSpWp]: Trace formula consists of 374 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-25 00:20:50,020 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:50,060 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 1 [2024-09-25 00:20:50,202 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 17 proven. 5 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:20:50,203 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:50,548 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:50,549 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1870010560] [2024-09-25 00:20:50,549 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:50,549 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [21980175] [2024-09-25 00:20:50,549 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [21980175] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:50,549 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:50,549 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13] total 13 [2024-09-25 00:20:50,549 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [320755880] [2024-09-25 00:20:50,549 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:50,550 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2024-09-25 00:20:50,550 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:50,550 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2024-09-25 00:20:50,550 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=54, Invalid=218, Unknown=0, NotChecked=0, Total=272 [2024-09-25 00:20:50,550 INFO L87 Difference]: Start difference. First operand 91 states and 134 transitions. Second operand has 13 states, 12 states have (on average 2.9166666666666665) internal successors, (35), 11 states have internal predecessors, (35), 5 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 5 states have call predecessors, (7), 4 states have call successors, (7) [2024-09-25 00:20:50,920 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:50,920 INFO L93 Difference]: Finished difference Result 121 states and 189 transitions. [2024-09-25 00:20:50,920 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-25 00:20:50,921 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 12 states have (on average 2.9166666666666665) internal successors, (35), 11 states have internal predecessors, (35), 5 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 5 states have call predecessors, (7), 4 states have call successors, (7) Word has length 54 [2024-09-25 00:20:50,921 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:50,922 INFO L225 Difference]: With dead ends: 121 [2024-09-25 00:20:50,922 INFO L226 Difference]: Without dead ends: 105 [2024-09-25 00:20:50,923 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 83 GetRequests, 57 SyntacticMatches, 4 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 110 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=106, Invalid=446, Unknown=0, NotChecked=0, Total=552 [2024-09-25 00:20:50,923 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 46 mSDsluCounter, 151 mSDsCounter, 0 mSdLazyCounter, 455 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 49 SdHoareTripleChecker+Valid, 179 SdHoareTripleChecker+Invalid, 466 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 455 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:50,923 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [49 Valid, 179 Invalid, 466 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 455 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:20:50,924 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 105 states. [2024-09-25 00:20:50,986 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 105 to 101. [2024-09-25 00:20:50,987 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 67 states have (on average 1.208955223880597) internal successors, (81), 73 states have internal predecessors, (81), 18 states have call successors, (18), 11 states have call predecessors, (18), 15 states have return successors, (62), 16 states have call predecessors, (62), 15 states have call successors, (62) [2024-09-25 00:20:50,988 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 161 transitions. [2024-09-25 00:20:50,988 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 161 transitions. Word has length 54 [2024-09-25 00:20:50,988 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:50,988 INFO L474 AbstractCegarLoop]: Abstraction has 101 states and 161 transitions. [2024-09-25 00:20:50,989 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 12 states have (on average 2.9166666666666665) internal successors, (35), 11 states have internal predecessors, (35), 5 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 5 states have call predecessors, (7), 4 states have call successors, (7) [2024-09-25 00:20:50,989 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:50,989 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 161 transitions. [2024-09-25 00:20:50,990 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2024-09-25 00:20:50,990 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:50,990 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:51,008 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2024-09-25 00:20:51,194 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable20,15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:51,195 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:51,195 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:51,195 INFO L85 PathProgramCache]: Analyzing trace with hash -1521485639, now seen corresponding path program 1 times [2024-09-25 00:20:51,195 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:51,196 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [808730382] [2024-09-25 00:20:51,196 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:51,196 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:51,218 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:51,219 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1964446573] [2024-09-25 00:20:51,219 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:51,219 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:51,220 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:51,224 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:51,233 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-25 00:20:51,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:51,429 INFO L262 TraceCheckSpWp]: Trace formula consists of 363 conjuncts, 49 conjuncts are in the unsatisfiable core [2024-09-25 00:20:51,432 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:51,459 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:20:51,464 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:20:51,629 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 13 [2024-09-25 00:20:51,825 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-25 00:20:51,883 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 16 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:20:51,883 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:51,970 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:51,970 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [808730382] [2024-09-25 00:20:51,970 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:51,970 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1964446573] [2024-09-25 00:20:51,970 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1964446573] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:51,970 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:51,970 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-25 00:20:51,971 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2107875924] [2024-09-25 00:20:51,971 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:51,971 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-25 00:20:51,971 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:51,971 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-25 00:20:51,972 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=78, Invalid=572, Unknown=0, NotChecked=0, Total=650 [2024-09-25 00:20:51,972 INFO L87 Difference]: Start difference. First operand 101 states and 161 transitions. Second operand has 24 states, 20 states have (on average 1.65) internal successors, (33), 20 states have internal predecessors, (33), 8 states have call successors, (9), 5 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-25 00:20:52,720 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:52,721 INFO L93 Difference]: Finished difference Result 125 states and 191 transitions. [2024-09-25 00:20:52,721 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-09-25 00:20:52,721 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 20 states have (on average 1.65) internal successors, (33), 20 states have internal predecessors, (33), 8 states have call successors, (9), 5 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) Word has length 52 [2024-09-25 00:20:52,721 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:52,723 INFO L225 Difference]: With dead ends: 125 [2024-09-25 00:20:52,723 INFO L226 Difference]: Without dead ends: 109 [2024-09-25 00:20:52,724 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 76 GetRequests, 32 SyntacticMatches, 3 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 409 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=205, Invalid=1601, Unknown=0, NotChecked=0, Total=1806 [2024-09-25 00:20:52,725 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 61 mSDsluCounter, 180 mSDsCounter, 0 mSdLazyCounter, 816 mSolverCounterSat, 17 mSolverCounterUnsat, 5 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 202 SdHoareTripleChecker+Invalid, 838 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 816 IncrementalHoareTripleChecker+Invalid, 5 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:52,725 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 202 Invalid, 838 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 816 Invalid, 5 Unknown, 0 Unchecked, 0.4s Time] [2024-09-25 00:20:52,725 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 109 states. [2024-09-25 00:20:52,787 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 109 to 103. [2024-09-25 00:20:52,788 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 68 states have (on average 1.2058823529411764) internal successors, (82), 74 states have internal predecessors, (82), 18 states have call successors, (18), 11 states have call predecessors, (18), 16 states have return successors, (69), 17 states have call predecessors, (69), 15 states have call successors, (69) [2024-09-25 00:20:52,788 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 169 transitions. [2024-09-25 00:20:52,789 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 169 transitions. Word has length 52 [2024-09-25 00:20:52,789 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:52,789 INFO L474 AbstractCegarLoop]: Abstraction has 103 states and 169 transitions. [2024-09-25 00:20:52,790 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 20 states have (on average 1.65) internal successors, (33), 20 states have internal predecessors, (33), 8 states have call successors, (9), 5 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-25 00:20:52,790 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:52,790 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 169 transitions. [2024-09-25 00:20:52,791 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2024-09-25 00:20:52,791 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:52,791 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:52,811 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Ended with exit code 0 [2024-09-25 00:20:52,991 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 16 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-25 00:20:52,992 INFO L399 AbstractCegarLoop]: === Iteration 23 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:52,992 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:52,993 INFO L85 PathProgramCache]: Analyzing trace with hash -363139833, now seen corresponding path program 1 times [2024-09-25 00:20:52,993 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:52,993 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [168061413] [2024-09-25 00:20:52,993 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:52,993 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:53,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,025 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:20:53,027 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,028 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:20:53,028 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,036 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:20:53,045 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,061 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:53,062 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,064 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-25 00:20:53,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,078 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:53,079 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,080 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:20:53,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,084 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:20:53,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,087 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 10 proven. 2 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-09-25 00:20:53,087 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:53,088 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [168061413] [2024-09-25 00:20:53,088 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [168061413] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:53,088 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [86008794] [2024-09-25 00:20:53,088 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:53,088 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:53,088 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:53,090 INFO L229 MonitoredProcess]: Starting monitored process 17 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:53,092 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2024-09-25 00:20:53,277 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:20:53,280 INFO L262 TraceCheckSpWp]: Trace formula consists of 454 conjuncts, 2 conjuncts are in the unsatisfiable core [2024-09-25 00:20:53,281 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:53,284 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 24 proven. 0 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-25 00:20:53,284 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-25 00:20:53,284 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [86008794] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:20:53,284 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:53,284 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [4] total 4 [2024-09-25 00:20:53,284 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1528941007] [2024-09-25 00:20:53,284 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:20:53,284 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-09-25 00:20:53,285 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:53,285 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-09-25 00:20:53,285 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-25 00:20:53,285 INFO L87 Difference]: Start difference. First operand 103 states and 169 transitions. Second operand has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 3 states have internal predecessors, (34), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-25 00:20:53,338 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:53,338 INFO L93 Difference]: Finished difference Result 169 states and 301 transitions. [2024-09-25 00:20:53,338 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-09-25 00:20:53,339 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 3 states have internal predecessors, (34), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 61 [2024-09-25 00:20:53,339 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:53,340 INFO L225 Difference]: With dead ends: 169 [2024-09-25 00:20:53,340 INFO L226 Difference]: Without dead ends: 103 [2024-09-25 00:20:53,341 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 80 GetRequests, 78 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-25 00:20:53,342 INFO L434 NwaCegarLoop]: 46 mSDtfsCounter, 0 mSDsluCounter, 41 mSDsCounter, 0 mSdLazyCounter, 8 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 87 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 8 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:53,342 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 87 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 8 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-25 00:20:53,343 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 103 states. [2024-09-25 00:20:53,406 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 103 to 103. [2024-09-25 00:20:53,407 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 68 states have (on average 1.1911764705882353) internal successors, (81), 74 states have internal predecessors, (81), 18 states have call successors, (18), 11 states have call predecessors, (18), 16 states have return successors, (69), 17 states have call predecessors, (69), 15 states have call successors, (69) [2024-09-25 00:20:53,407 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 168 transitions. [2024-09-25 00:20:53,408 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 168 transitions. Word has length 61 [2024-09-25 00:20:53,408 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:53,408 INFO L474 AbstractCegarLoop]: Abstraction has 103 states and 168 transitions. [2024-09-25 00:20:53,408 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 3 states have internal predecessors, (34), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-25 00:20:53,409 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:53,409 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 168 transitions. [2024-09-25 00:20:53,410 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-09-25 00:20:53,410 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:53,410 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:53,430 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Forceful destruction successful, exit code 0 [2024-09-25 00:20:53,610 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable22,17 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:53,611 INFO L399 AbstractCegarLoop]: === Iteration 24 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:53,611 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:53,611 INFO L85 PathProgramCache]: Analyzing trace with hash -511014421, now seen corresponding path program 2 times [2024-09-25 00:20:53,611 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:53,611 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1247951719] [2024-09-25 00:20:53,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:53,611 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:53,645 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:53,647 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1857072418] [2024-09-25 00:20:53,647 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:20:53,648 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:53,648 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:53,650 INFO L229 MonitoredProcess]: Starting monitored process 18 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:53,652 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2024-09-25 00:20:53,904 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:20:53,904 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:20:53,910 INFO L262 TraceCheckSpWp]: Trace formula consists of 468 conjuncts, 158 conjuncts are in the unsatisfiable core [2024-09-25 00:20:53,915 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:20:53,918 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:20:53,921 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:53,925 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:53,930 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:53,935 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:20:53,955 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:53,958 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:20:55,215 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 40 treesize of output 28 [2024-09-25 00:20:55,218 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 19 [2024-09-25 00:20:55,224 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:20:55,279 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 32 treesize of output 20 [2024-09-25 00:20:55,282 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:20:55,285 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 26 treesize of output 14 [2024-09-25 00:20:55,364 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 6 proven. 21 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2024-09-25 00:20:55,365 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:20:58,301 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:20:58,302 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1247951719] [2024-09-25 00:20:58,302 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:20:58,302 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1857072418] [2024-09-25 00:20:58,302 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1857072418] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:20:58,302 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:20:58,302 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-25 00:20:58,302 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1958348908] [2024-09-25 00:20:58,302 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:20:58,303 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-25 00:20:58,303 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:20:58,303 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-25 00:20:58,303 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=71, Invalid=579, Unknown=0, NotChecked=0, Total=650 [2024-09-25 00:20:58,303 INFO L87 Difference]: Start difference. First operand 103 states and 168 transitions. Second operand has 19 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:20:59,522 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:20:59,522 INFO L93 Difference]: Finished difference Result 114 states and 202 transitions. [2024-09-25 00:20:59,523 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-25 00:20:59,524 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) Word has length 63 [2024-09-25 00:20:59,524 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:20:59,525 INFO L225 Difference]: With dead ends: 114 [2024-09-25 00:20:59,525 INFO L226 Difference]: Without dead ends: 108 [2024-09-25 00:20:59,526 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 76 GetRequests, 47 SyntacticMatches, 0 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 172 ImplicationChecksByTransitivity, 1.7s TimeCoverageRelationStatistics Valid=106, Invalid=824, Unknown=0, NotChecked=0, Total=930 [2024-09-25 00:20:59,526 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 29 mSDsluCounter, 164 mSDsCounter, 0 mSdLazyCounter, 669 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 190 SdHoareTripleChecker+Invalid, 685 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 669 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-25 00:20:59,526 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 190 Invalid, 685 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 669 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-25 00:20:59,527 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 108 states. [2024-09-25 00:20:59,594 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 108 to 106. [2024-09-25 00:20:59,595 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 69 states have (on average 1.1884057971014492) internal successors, (82), 76 states have internal predecessors, (82), 19 states have call successors, (19), 11 states have call predecessors, (19), 17 states have return successors, (85), 18 states have call predecessors, (85), 16 states have call successors, (85) [2024-09-25 00:20:59,596 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 186 transitions. [2024-09-25 00:20:59,596 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 186 transitions. Word has length 63 [2024-09-25 00:20:59,597 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:20:59,597 INFO L474 AbstractCegarLoop]: Abstraction has 106 states and 186 transitions. [2024-09-25 00:20:59,597 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:20:59,598 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:59,598 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 186 transitions. [2024-09-25 00:20:59,599 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-09-25 00:20:59,599 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:20:59,599 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:20:59,621 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Ended with exit code 0 [2024-09-25 00:20:59,803 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable23,18 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:59,804 INFO L399 AbstractCegarLoop]: === Iteration 25 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:20:59,804 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:20:59,804 INFO L85 PathProgramCache]: Analyzing trace with hash 686182317, now seen corresponding path program 1 times [2024-09-25 00:20:59,804 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:20:59,804 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1218905190] [2024-09-25 00:20:59,804 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:59,804 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:20:59,838 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:20:59,840 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [943300139] [2024-09-25 00:20:59,840 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:20:59,841 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:20:59,841 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:20:59,843 INFO L229 MonitoredProcess]: Starting monitored process 19 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:20:59,844 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2024-09-25 00:21:00,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:21:00,064 INFO L262 TraceCheckSpWp]: Trace formula consists of 466 conjuncts, 183 conjuncts are in the unsatisfiable core [2024-09-25 00:21:00,070 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:21:00,075 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:21:00,093 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:00,096 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:21:00,100 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:00,106 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:21:00,125 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:00,129 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:01,897 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:21:01,905 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 40 treesize of output 28 [2024-09-25 00:21:01,911 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 19 [2024-09-25 00:21:01,972 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:21:01,972 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 38 [2024-09-25 00:21:01,975 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:21:01,981 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 26 treesize of output 14 [2024-09-25 00:21:02,060 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 27 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2024-09-25 00:21:02,060 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:21:05,216 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:21:05,216 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1218905190] [2024-09-25 00:21:05,216 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:21:05,216 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [943300139] [2024-09-25 00:21:05,216 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [943300139] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:21:05,216 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:21:05,216 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-25 00:21:05,216 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1966532674] [2024-09-25 00:21:05,216 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:21:05,217 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-25 00:21:05,217 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:21:05,217 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-25 00:21:05,217 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=93, Invalid=719, Unknown=0, NotChecked=0, Total=812 [2024-09-25 00:21:05,218 INFO L87 Difference]: Start difference. First operand 106 states and 186 transitions. Second operand has 24 states, 19 states have (on average 1.8421052631578947) internal successors, (35), 19 states have internal predecessors, (35), 8 states have call successors, (9), 5 states have call predecessors, (9), 6 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-25 00:21:09,290 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-25 00:21:12,672 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:21:12,673 INFO L93 Difference]: Finished difference Result 119 states and 214 transitions. [2024-09-25 00:21:12,673 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-09-25 00:21:12,674 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 19 states have (on average 1.8421052631578947) internal successors, (35), 19 states have internal predecessors, (35), 8 states have call successors, (9), 5 states have call predecessors, (9), 6 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Word has length 63 [2024-09-25 00:21:12,674 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:21:12,675 INFO L225 Difference]: With dead ends: 119 [2024-09-25 00:21:12,675 INFO L226 Difference]: Without dead ends: 117 [2024-09-25 00:21:12,676 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 79 GetRequests, 42 SyntacticMatches, 2 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 314 ImplicationChecksByTransitivity, 2.3s TimeCoverageRelationStatistics Valid=152, Invalid=1180, Unknown=0, NotChecked=0, Total=1332 [2024-09-25 00:21:12,676 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 49 mSDsluCounter, 172 mSDsCounter, 0 mSdLazyCounter, 826 mSolverCounterSat, 13 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 6.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 53 SdHoareTripleChecker+Valid, 195 SdHoareTripleChecker+Invalid, 840 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 826 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 6.9s IncrementalHoareTripleChecker+Time [2024-09-25 00:21:12,676 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [53 Valid, 195 Invalid, 840 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 826 Invalid, 1 Unknown, 0 Unchecked, 6.9s Time] [2024-09-25 00:21:12,677 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 117 states. [2024-09-25 00:21:12,749 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 117 to 106. [2024-09-25 00:21:12,750 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 69 states have (on average 1.1884057971014492) internal successors, (82), 76 states have internal predecessors, (82), 19 states have call successors, (19), 11 states have call predecessors, (19), 17 states have return successors, (85), 18 states have call predecessors, (85), 16 states have call successors, (85) [2024-09-25 00:21:12,751 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 186 transitions. [2024-09-25 00:21:12,752 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 186 transitions. Word has length 63 [2024-09-25 00:21:12,752 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:21:12,752 INFO L474 AbstractCegarLoop]: Abstraction has 106 states and 186 transitions. [2024-09-25 00:21:12,752 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 19 states have (on average 1.8421052631578947) internal successors, (35), 19 states have internal predecessors, (35), 8 states have call successors, (9), 5 states have call predecessors, (9), 6 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-25 00:21:12,752 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:21:12,753 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 186 transitions. [2024-09-25 00:21:12,754 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-09-25 00:21:12,754 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:21:12,754 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:21:12,774 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Ended with exit code 0 [2024-09-25 00:21:12,954 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 19 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable24 [2024-09-25 00:21:12,955 INFO L399 AbstractCegarLoop]: === Iteration 26 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:21:12,955 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:21:12,956 INFO L85 PathProgramCache]: Analyzing trace with hash 1272988331, now seen corresponding path program 1 times [2024-09-25 00:21:12,956 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:21:12,956 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1249179872] [2024-09-25 00:21:12,957 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:21:12,957 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:21:12,988 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:21:12,991 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [713422434] [2024-09-25 00:21:12,992 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:21:12,992 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:21:12,992 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:21:12,993 INFO L229 MonitoredProcess]: Starting monitored process 20 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:21:12,994 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2024-09-25 00:21:13,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:21:13,239 WARN L260 TraceCheckSpWp]: Trace formula consists of 469 conjuncts, 262 conjuncts are in the unsatisfiable core [2024-09-25 00:21:13,245 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:21:13,249 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:21:13,251 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:21:13,270 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:21:13,274 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:21:13,279 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:21:13,285 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:13,302 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:13,307 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:16,431 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 61 treesize of output 41 [2024-09-25 00:21:16,440 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 21 [2024-09-25 00:21:16,446 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:21:16,537 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 59 treesize of output 39 [2024-09-25 00:21:16,550 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:21:16,550 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 33 [2024-09-25 00:21:16,560 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 28 treesize of output 16 [2024-09-25 00:21:16,675 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 6 proven. 27 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:21:16,675 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:21:59,951 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:21:59,951 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1249179872] [2024-09-25 00:21:59,952 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:21:59,952 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [713422434] [2024-09-25 00:21:59,952 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [713422434] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:21:59,952 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:21:59,952 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [32] total 32 [2024-09-25 00:21:59,952 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2062270973] [2024-09-25 00:21:59,952 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:21:59,952 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-09-25 00:21:59,952 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:21:59,953 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-09-25 00:21:59,953 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=148, Invalid=1252, Unknown=6, NotChecked=0, Total=1406 [2024-09-25 00:21:59,953 INFO L87 Difference]: Start difference. First operand 106 states and 186 transitions. Second operand has 32 states, 26 states have (on average 1.5384615384615385) internal successors, (40), 27 states have internal predecessors, (40), 8 states have call successors, (9), 4 states have call predecessors, (9), 7 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-25 00:22:03,966 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-09-25 00:22:07,760 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.28s for a HTC check with result INVALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [0] [2024-09-25 00:22:10,249 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:10,249 INFO L93 Difference]: Finished difference Result 114 states and 201 transitions. [2024-09-25 00:22:10,250 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2024-09-25 00:22:10,250 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 26 states have (on average 1.5384615384615385) internal successors, (40), 27 states have internal predecessors, (40), 8 states have call successors, (9), 4 states have call predecessors, (9), 7 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Word has length 63 [2024-09-25 00:22:10,251 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:10,252 INFO L225 Difference]: With dead ends: 114 [2024-09-25 00:22:10,252 INFO L226 Difference]: Without dead ends: 108 [2024-09-25 00:22:10,253 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 92 GetRequests, 36 SyntacticMatches, 2 SemanticMatches, 54 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 714 ImplicationChecksByTransitivity, 40.0s TimeCoverageRelationStatistics Valid=318, Invalid=2756, Unknown=6, NotChecked=0, Total=3080 [2024-09-25 00:22:10,254 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 68 mSDsluCounter, 211 mSDsCounter, 0 mSdLazyCounter, 1184 mSolverCounterSat, 11 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 8.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 71 SdHoareTripleChecker+Valid, 233 SdHoareTripleChecker+Invalid, 1196 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 1184 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 8.4s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:10,254 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [71 Valid, 233 Invalid, 1196 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 1184 Invalid, 1 Unknown, 0 Unchecked, 8.4s Time] [2024-09-25 00:22:10,254 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 108 states. [2024-09-25 00:22:10,326 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 108 to 106. [2024-09-25 00:22:10,327 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 69 states have (on average 1.1884057971014492) internal successors, (82), 76 states have internal predecessors, (82), 19 states have call successors, (19), 11 states have call predecessors, (19), 17 states have return successors, (84), 18 states have call predecessors, (84), 16 states have call successors, (84) [2024-09-25 00:22:10,327 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 185 transitions. [2024-09-25 00:22:10,328 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 185 transitions. Word has length 63 [2024-09-25 00:22:10,328 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:10,328 INFO L474 AbstractCegarLoop]: Abstraction has 106 states and 185 transitions. [2024-09-25 00:22:10,328 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 26 states have (on average 1.5384615384615385) internal successors, (40), 27 states have internal predecessors, (40), 8 states have call successors, (9), 4 states have call predecessors, (9), 7 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-25 00:22:10,328 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:10,328 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 185 transitions. [2024-09-25 00:22:10,330 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-09-25 00:22:10,330 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:10,330 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:10,349 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Forceful destruction successful, exit code 0 [2024-09-25 00:22:10,530 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 20 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable25 [2024-09-25 00:22:10,530 INFO L399 AbstractCegarLoop]: === Iteration 27 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:10,531 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:10,531 INFO L85 PathProgramCache]: Analyzing trace with hash 1335027945, now seen corresponding path program 1 times [2024-09-25 00:22:10,531 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:10,531 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1620719798] [2024-09-25 00:22:10,531 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:10,531 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:10,573 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:22:10,579 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [943539574] [2024-09-25 00:22:10,579 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:10,579 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:10,579 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:10,585 INFO L229 MonitoredProcess]: Starting monitored process 21 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:10,586 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2024-09-25 00:22:10,850 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:10,854 WARN L260 TraceCheckSpWp]: Trace formula consists of 466 conjuncts, 262 conjuncts are in the unsatisfiable core [2024-09-25 00:22:10,860 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:10,863 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:10,864 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:10,869 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:10,870 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:10,874 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:22:10,880 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:22:10,898 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:10,902 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:14,584 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 21 [2024-09-25 00:22:14,588 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 59 treesize of output 39 [2024-09-25 00:22:14,604 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:22:14,719 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 72 treesize of output 48 [2024-09-25 00:22:14,729 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:22:14,735 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 28 treesize of output 16 [2024-09-25 00:22:14,961 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 12 proven. 19 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-25 00:22:14,961 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:30,949 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:30,949 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1620719798] [2024-09-25 00:22:30,949 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:30,949 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [943539574] [2024-09-25 00:22:30,949 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [943539574] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:30,949 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:22:30,949 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [28] total 28 [2024-09-25 00:22:30,949 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1299549614] [2024-09-25 00:22:30,949 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:30,950 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-09-25 00:22:30,950 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:30,950 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-09-25 00:22:30,951 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=120, Invalid=1002, Unknown=0, NotChecked=0, Total=1122 [2024-09-25 00:22:30,951 INFO L87 Difference]: Start difference. First operand 106 states and 185 transitions. Second operand has 28 states, 23 states have (on average 1.6956521739130435) internal successors, (39), 25 states have internal predecessors, (39), 7 states have call successors, (9), 3 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:22:35,544 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:35,544 INFO L93 Difference]: Finished difference Result 122 states and 223 transitions. [2024-09-25 00:22:35,545 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2024-09-25 00:22:35,545 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 23 states have (on average 1.6956521739130435) internal successors, (39), 25 states have internal predecessors, (39), 7 states have call successors, (9), 3 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) Word has length 63 [2024-09-25 00:22:35,546 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:35,547 INFO L225 Difference]: With dead ends: 122 [2024-09-25 00:22:35,547 INFO L226 Difference]: Without dead ends: 110 [2024-09-25 00:22:35,548 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 40 SyntacticMatches, 2 SemanticMatches, 51 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 573 ImplicationChecksByTransitivity, 9.2s TimeCoverageRelationStatistics Valid=294, Invalid=2462, Unknown=0, NotChecked=0, Total=2756 [2024-09-25 00:22:35,548 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 49 mSDsluCounter, 166 mSDsCounter, 0 mSdLazyCounter, 1053 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 50 SdHoareTripleChecker+Valid, 188 SdHoareTripleChecker+Invalid, 1064 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 1053 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.7s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:35,549 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [50 Valid, 188 Invalid, 1064 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 1053 Invalid, 0 Unknown, 0 Unchecked, 2.7s Time] [2024-09-25 00:22:35,549 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 110 states. [2024-09-25 00:22:35,636 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 110 to 108. [2024-09-25 00:22:35,637 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 70 states have (on average 1.1857142857142857) internal successors, (83), 77 states have internal predecessors, (83), 19 states have call successors, (19), 11 states have call predecessors, (19), 18 states have return successors, (90), 19 states have call predecessors, (90), 16 states have call successors, (90) [2024-09-25 00:22:35,638 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 192 transitions. [2024-09-25 00:22:35,638 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 192 transitions. Word has length 63 [2024-09-25 00:22:35,638 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:35,638 INFO L474 AbstractCegarLoop]: Abstraction has 108 states and 192 transitions. [2024-09-25 00:22:35,638 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 23 states have (on average 1.6956521739130435) internal successors, (39), 25 states have internal predecessors, (39), 7 states have call successors, (9), 3 states have call predecessors, (9), 5 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:22:35,639 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:35,639 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 192 transitions. [2024-09-25 00:22:35,640 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-09-25 00:22:35,640 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:35,640 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:35,662 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Ended with exit code 0 [2024-09-25 00:22:35,840 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2024-09-25 00:22:35,841 INFO L399 AbstractCegarLoop]: === Iteration 28 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:35,841 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:35,841 INFO L85 PathProgramCache]: Analyzing trace with hash 1590925951, now seen corresponding path program 2 times [2024-09-25 00:22:35,841 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:35,841 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1035777699] [2024-09-25 00:22:35,841 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:35,842 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:35,858 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,299 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:36,300 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,301 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:36,302 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,311 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:22:36,321 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,545 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:36,545 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,547 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:36,558 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,719 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:36,720 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,724 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:36,726 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,796 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:36,797 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:36,798 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 25 proven. 7 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-25 00:22:36,798 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:36,799 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1035777699] [2024-09-25 00:22:36,799 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1035777699] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:36,799 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [405920556] [2024-09-25 00:22:36,799 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:22:36,799 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:36,799 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:36,800 INFO L229 MonitoredProcess]: Starting monitored process 22 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:36,801 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2024-09-25 00:22:37,037 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:22:37,037 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:22:37,039 INFO L262 TraceCheckSpWp]: Trace formula consists of 458 conjuncts, 32 conjuncts are in the unsatisfiable core [2024-09-25 00:22:37,041 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:37,094 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 34 treesize of output 18 [2024-09-25 00:22:37,278 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 24 proven. 7 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-25 00:22:37,278 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:37,732 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 24 proven. 11 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:22:37,732 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [405920556] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:37,732 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:22:37,733 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 11, 13] total 25 [2024-09-25 00:22:37,733 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2038566918] [2024-09-25 00:22:37,733 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:37,733 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-09-25 00:22:37,734 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:37,734 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-09-25 00:22:37,734 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=94, Invalid=506, Unknown=0, NotChecked=0, Total=600 [2024-09-25 00:22:37,735 INFO L87 Difference]: Start difference. First operand 108 states and 192 transitions. Second operand has 25 states, 20 states have (on average 3.4) internal successors, (68), 21 states have internal predecessors, (68), 11 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (13), 8 states have call predecessors, (13), 10 states have call successors, (13) [2024-09-25 00:22:39,576 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:39,576 INFO L93 Difference]: Finished difference Result 195 states and 609 transitions. [2024-09-25 00:22:39,577 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 41 states. [2024-09-25 00:22:39,577 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 20 states have (on average 3.4) internal successors, (68), 21 states have internal predecessors, (68), 11 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (13), 8 states have call predecessors, (13), 10 states have call successors, (13) Word has length 63 [2024-09-25 00:22:39,577 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:39,579 INFO L225 Difference]: With dead ends: 195 [2024-09-25 00:22:39,579 INFO L226 Difference]: Without dead ends: 175 [2024-09-25 00:22:39,581 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 191 GetRequests, 132 SyntacticMatches, 0 SemanticMatches, 59 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1019 ImplicationChecksByTransitivity, 1.1s TimeCoverageRelationStatistics Valid=687, Invalid=2973, Unknown=0, NotChecked=0, Total=3660 [2024-09-25 00:22:39,581 INFO L434 NwaCegarLoop]: 33 mSDtfsCounter, 124 mSDsluCounter, 181 mSDsCounter, 0 mSdLazyCounter, 1231 mSolverCounterSat, 163 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 125 SdHoareTripleChecker+Valid, 214 SdHoareTripleChecker+Invalid, 1394 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 163 IncrementalHoareTripleChecker+Valid, 1231 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:39,582 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [125 Valid, 214 Invalid, 1394 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [163 Valid, 1231 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-25 00:22:39,582 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 175 states. [2024-09-25 00:22:39,680 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 175 to 121. [2024-09-25 00:22:39,681 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 76 states have (on average 1.1710526315789473) internal successors, (89), 84 states have internal predecessors, (89), 20 states have call successors, (20), 11 states have call predecessors, (20), 24 states have return successors, (138), 25 states have call predecessors, (138), 17 states have call successors, (138) [2024-09-25 00:22:39,682 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 247 transitions. [2024-09-25 00:22:39,682 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 247 transitions. Word has length 63 [2024-09-25 00:22:39,683 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:39,683 INFO L474 AbstractCegarLoop]: Abstraction has 121 states and 247 transitions. [2024-09-25 00:22:39,683 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 20 states have (on average 3.4) internal successors, (68), 21 states have internal predecessors, (68), 11 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (13), 8 states have call predecessors, (13), 10 states have call successors, (13) [2024-09-25 00:22:39,683 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:39,683 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 247 transitions. [2024-09-25 00:22:39,685 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-09-25 00:22:39,685 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:39,685 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:39,703 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Forceful destruction successful, exit code 0 [2024-09-25 00:22:39,885 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 22 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable27 [2024-09-25 00:22:39,886 INFO L399 AbstractCegarLoop]: === Iteration 29 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:39,886 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:39,886 INFO L85 PathProgramCache]: Analyzing trace with hash -682253735, now seen corresponding path program 1 times [2024-09-25 00:22:39,886 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:39,886 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1779939207] [2024-09-25 00:22:39,886 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:39,886 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:39,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,361 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:40,362 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,363 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:40,364 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,373 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:22:40,394 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,649 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:40,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,651 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:22:40,657 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,846 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:40,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,851 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:40,853 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,922 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:40,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:40,925 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 27 proven. 5 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-25 00:22:40,925 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:40,925 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1779939207] [2024-09-25 00:22:40,926 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1779939207] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:40,926 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1375980896] [2024-09-25 00:22:40,926 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:40,926 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:40,926 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:40,927 INFO L229 MonitoredProcess]: Starting monitored process 23 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:40,928 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2024-09-25 00:22:41,165 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:41,167 INFO L262 TraceCheckSpWp]: Trace formula consists of 464 conjuncts, 46 conjuncts are in the unsatisfiable core [2024-09-25 00:22:41,169 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:41,272 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 37 treesize of output 21 [2024-09-25 00:22:41,595 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 22 proven. 9 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-25 00:22:41,595 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:42,440 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 24 proven. 11 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:22:42,440 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1375980896] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:42,440 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:22:42,440 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 17, 17] total 41 [2024-09-25 00:22:42,440 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [959131886] [2024-09-25 00:22:42,440 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:42,441 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 41 states [2024-09-25 00:22:42,441 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:42,441 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 41 interpolants. [2024-09-25 00:22:42,442 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=277, Invalid=1363, Unknown=0, NotChecked=0, Total=1640 [2024-09-25 00:22:42,442 INFO L87 Difference]: Start difference. First operand 121 states and 247 transitions. Second operand has 41 states, 35 states have (on average 2.4285714285714284) internal successors, (85), 37 states have internal predecessors, (85), 12 states have call successors, (17), 6 states have call predecessors, (17), 8 states have return successors, (14), 9 states have call predecessors, (14), 11 states have call successors, (14) [2024-09-25 00:22:45,175 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:45,175 INFO L93 Difference]: Finished difference Result 304 states and 980 transitions. [2024-09-25 00:22:45,176 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2024-09-25 00:22:45,176 INFO L78 Accepts]: Start accepts. Automaton has has 41 states, 35 states have (on average 2.4285714285714284) internal successors, (85), 37 states have internal predecessors, (85), 12 states have call successors, (17), 6 states have call predecessors, (17), 8 states have return successors, (14), 9 states have call predecessors, (14), 11 states have call successors, (14) Word has length 65 [2024-09-25 00:22:45,176 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:45,191 INFO L225 Difference]: With dead ends: 304 [2024-09-25 00:22:45,191 INFO L226 Difference]: Without dead ends: 220 [2024-09-25 00:22:45,195 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 213 GetRequests, 122 SyntacticMatches, 0 SemanticMatches, 91 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2284 ImplicationChecksByTransitivity, 1.9s TimeCoverageRelationStatistics Valid=1688, Invalid=6868, Unknown=0, NotChecked=0, Total=8556 [2024-09-25 00:22:45,199 INFO L434 NwaCegarLoop]: 38 mSDtfsCounter, 357 mSDsluCounter, 229 mSDsCounter, 0 mSdLazyCounter, 1666 mSolverCounterSat, 359 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 358 SdHoareTripleChecker+Valid, 267 SdHoareTripleChecker+Invalid, 2025 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 359 IncrementalHoareTripleChecker+Valid, 1666 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:45,199 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [358 Valid, 267 Invalid, 2025 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [359 Valid, 1666 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-25 00:22:45,200 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 220 states. [2024-09-25 00:22:45,332 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 220 to 162. [2024-09-25 00:22:45,332 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 162 states, 102 states have (on average 1.1862745098039216) internal successors, (121), 114 states have internal predecessors, (121), 27 states have call successors, (27), 13 states have call predecessors, (27), 32 states have return successors, (197), 34 states have call predecessors, (197), 24 states have call successors, (197) [2024-09-25 00:22:45,333 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 162 states to 162 states and 345 transitions. [2024-09-25 00:22:45,334 INFO L78 Accepts]: Start accepts. Automaton has 162 states and 345 transitions. Word has length 65 [2024-09-25 00:22:45,334 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:45,334 INFO L474 AbstractCegarLoop]: Abstraction has 162 states and 345 transitions. [2024-09-25 00:22:45,334 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 41 states, 35 states have (on average 2.4285714285714284) internal successors, (85), 37 states have internal predecessors, (85), 12 states have call successors, (17), 6 states have call predecessors, (17), 8 states have return successors, (14), 9 states have call predecessors, (14), 11 states have call successors, (14) [2024-09-25 00:22:45,335 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:45,335 INFO L276 IsEmpty]: Start isEmpty. Operand 162 states and 345 transitions. [2024-09-25 00:22:45,336 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2024-09-25 00:22:45,336 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:45,336 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:45,356 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Ended with exit code 0 [2024-09-25 00:22:45,537 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable28 [2024-09-25 00:22:45,537 INFO L399 AbstractCegarLoop]: === Iteration 30 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:45,537 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:45,537 INFO L85 PathProgramCache]: Analyzing trace with hash 1261108705, now seen corresponding path program 1 times [2024-09-25 00:22:45,538 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:45,538 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2055439141] [2024-09-25 00:22:45,538 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:45,538 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:45,553 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:22:45,554 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [436978465] [2024-09-25 00:22:45,554 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:45,554 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:45,554 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:45,556 INFO L229 MonitoredProcess]: Starting monitored process 24 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:45,559 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2024-09-25 00:22:45,793 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:45,795 INFO L262 TraceCheckSpWp]: Trace formula consists of 372 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-25 00:22:45,796 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:45,959 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 16 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:22:45,959 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:46,157 INFO L349 Elim1Store]: treesize reduction 4, result has 63.6 percent of original size [2024-09-25 00:22:46,157 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 16 treesize of output 15 [2024-09-25 00:22:46,247 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 6 proven. 5 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-25 00:22:46,247 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:46,247 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2055439141] [2024-09-25 00:22:46,247 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:46,248 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [436978465] [2024-09-25 00:22:46,248 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [436978465] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:46,248 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-25 00:22:46,248 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 10] total 15 [2024-09-25 00:22:46,248 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [501260286] [2024-09-25 00:22:46,248 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:46,248 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-25 00:22:46,248 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:46,249 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-25 00:22:46,249 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=42, Invalid=168, Unknown=0, NotChecked=0, Total=210 [2024-09-25 00:22:46,249 INFO L87 Difference]: Start difference. First operand 162 states and 345 transitions. Second operand has 15 states, 14 states have (on average 2.857142857142857) internal successors, (40), 13 states have internal predecessors, (40), 6 states have call successors, (12), 4 states have call predecessors, (12), 4 states have return successors, (10), 6 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-25 00:22:46,749 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:46,749 INFO L93 Difference]: Finished difference Result 170 states and 351 transitions. [2024-09-25 00:22:46,749 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-09-25 00:22:46,749 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 14 states have (on average 2.857142857142857) internal successors, (40), 13 states have internal predecessors, (40), 6 states have call successors, (12), 4 states have call predecessors, (12), 4 states have return successors, (10), 6 states have call predecessors, (10), 5 states have call successors, (10) Word has length 54 [2024-09-25 00:22:46,751 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:46,753 INFO L225 Difference]: With dead ends: 170 [2024-09-25 00:22:46,753 INFO L226 Difference]: Without dead ends: 154 [2024-09-25 00:22:46,754 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 117 GetRequests, 92 SyntacticMatches, 4 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 93 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=107, Invalid=399, Unknown=0, NotChecked=0, Total=506 [2024-09-25 00:22:46,754 INFO L434 NwaCegarLoop]: 22 mSDtfsCounter, 51 mSDsluCounter, 100 mSDsCounter, 0 mSdLazyCounter, 345 mSolverCounterSat, 18 mSolverCounterUnsat, 5 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 55 SdHoareTripleChecker+Valid, 122 SdHoareTripleChecker+Invalid, 368 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 345 IncrementalHoareTripleChecker+Invalid, 5 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:46,755 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [55 Valid, 122 Invalid, 368 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 345 Invalid, 5 Unknown, 0 Unchecked, 0.3s Time] [2024-09-25 00:22:46,755 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 154 states. [2024-09-25 00:22:46,861 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 154 to 141. [2024-09-25 00:22:46,861 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 141 states, 90 states have (on average 1.2) internal successors, (108), 101 states have internal predecessors, (108), 23 states have call successors, (23), 11 states have call predecessors, (23), 27 states have return successors, (156), 28 states have call predecessors, (156), 21 states have call successors, (156) [2024-09-25 00:22:46,862 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 141 states to 141 states and 287 transitions. [2024-09-25 00:22:46,863 INFO L78 Accepts]: Start accepts. Automaton has 141 states and 287 transitions. Word has length 54 [2024-09-25 00:22:46,863 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:46,863 INFO L474 AbstractCegarLoop]: Abstraction has 141 states and 287 transitions. [2024-09-25 00:22:46,863 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 14 states have (on average 2.857142857142857) internal successors, (40), 13 states have internal predecessors, (40), 6 states have call successors, (12), 4 states have call predecessors, (12), 4 states have return successors, (10), 6 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-25 00:22:46,863 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:46,863 INFO L276 IsEmpty]: Start isEmpty. Operand 141 states and 287 transitions. [2024-09-25 00:22:46,865 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-09-25 00:22:46,865 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:46,865 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:46,885 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Forceful destruction successful, exit code 0 [2024-09-25 00:22:47,065 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable29,24 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:47,066 INFO L399 AbstractCegarLoop]: === Iteration 31 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:47,066 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:47,066 INFO L85 PathProgramCache]: Analyzing trace with hash 2060506709, now seen corresponding path program 1 times [2024-09-25 00:22:47,066 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:47,066 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [706272631] [2024-09-25 00:22:47,066 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:47,066 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:47,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:47,708 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:47,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:47,710 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:47,711 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:47,745 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:22:47,759 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,146 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:48,147 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,149 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:22:48,156 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,344 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:48,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,347 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:48,350 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,363 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:48,364 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,365 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 10 proven. 14 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2024-09-25 00:22:48,366 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:48,366 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [706272631] [2024-09-25 00:22:48,366 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [706272631] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:48,366 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [544678301] [2024-09-25 00:22:48,366 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:48,366 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:48,366 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:48,368 INFO L229 MonitoredProcess]: Starting monitored process 25 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:48,370 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2024-09-25 00:22:48,667 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:48,670 INFO L262 TraceCheckSpWp]: Trace formula consists of 470 conjuncts, 37 conjuncts are in the unsatisfiable core [2024-09-25 00:22:48,673 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:48,702 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:22:48,707 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:49,034 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 10 proven. 17 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-09-25 00:22:49,034 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:49,727 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 10 proven. 17 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-09-25 00:22:49,727 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [544678301] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:49,727 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:22:49,728 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 16, 14] total 35 [2024-09-25 00:22:49,728 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [512629036] [2024-09-25 00:22:49,728 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:49,728 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 35 states [2024-09-25 00:22:49,728 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:49,729 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 35 interpolants. [2024-09-25 00:22:49,729 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=144, Invalid=1046, Unknown=0, NotChecked=0, Total=1190 [2024-09-25 00:22:49,729 INFO L87 Difference]: Start difference. First operand 141 states and 287 transitions. Second operand has 35 states, 27 states have (on average 2.5555555555555554) internal successors, (69), 30 states have internal predecessors, (69), 13 states have call successors, (17), 5 states have call predecessors, (17), 6 states have return successors, (15), 9 states have call predecessors, (15), 12 states have call successors, (15) [2024-09-25 00:22:51,847 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:51,847 INFO L93 Difference]: Finished difference Result 328 states and 837 transitions. [2024-09-25 00:22:51,848 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 37 states. [2024-09-25 00:22:51,848 INFO L78 Accepts]: Start accepts. Automaton has has 35 states, 27 states have (on average 2.5555555555555554) internal successors, (69), 30 states have internal predecessors, (69), 13 states have call successors, (17), 5 states have call predecessors, (17), 6 states have return successors, (15), 9 states have call predecessors, (15), 12 states have call successors, (15) Word has length 65 [2024-09-25 00:22:51,848 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:51,850 INFO L225 Difference]: With dead ends: 328 [2024-09-25 00:22:51,850 INFO L226 Difference]: Without dead ends: 202 [2024-09-25 00:22:51,852 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 192 GetRequests, 132 SyntacticMatches, 0 SemanticMatches, 60 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 738 ImplicationChecksByTransitivity, 1.5s TimeCoverageRelationStatistics Valid=488, Invalid=3294, Unknown=0, NotChecked=0, Total=3782 [2024-09-25 00:22:51,853 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 112 mSDsluCounter, 324 mSDsCounter, 0 mSdLazyCounter, 1317 mSolverCounterSat, 72 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 114 SdHoareTripleChecker+Valid, 356 SdHoareTripleChecker+Invalid, 1389 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 72 IncrementalHoareTripleChecker+Valid, 1317 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:51,853 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [114 Valid, 356 Invalid, 1389 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [72 Valid, 1317 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 00:22:51,853 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 202 states. [2024-09-25 00:22:52,044 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 202 to 173. [2024-09-25 00:22:52,048 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 111 states have (on average 1.2162162162162162) internal successors, (135), 125 states have internal predecessors, (135), 27 states have call successors, (27), 12 states have call predecessors, (27), 34 states have return successors, (235), 35 states have call predecessors, (235), 25 states have call successors, (235) [2024-09-25 00:22:52,049 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 397 transitions. [2024-09-25 00:22:52,051 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 397 transitions. Word has length 65 [2024-09-25 00:22:52,052 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:52,052 INFO L474 AbstractCegarLoop]: Abstraction has 173 states and 397 transitions. [2024-09-25 00:22:52,052 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 35 states, 27 states have (on average 2.5555555555555554) internal successors, (69), 30 states have internal predecessors, (69), 13 states have call successors, (17), 5 states have call predecessors, (17), 6 states have return successors, (15), 9 states have call predecessors, (15), 12 states have call successors, (15) [2024-09-25 00:22:52,052 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:52,052 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 397 transitions. [2024-09-25 00:22:52,054 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-09-25 00:22:52,054 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:52,054 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:52,074 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Forceful destruction successful, exit code 0 [2024-09-25 00:22:52,255 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable30,25 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:52,255 INFO L399 AbstractCegarLoop]: === Iteration 32 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:52,256 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:52,256 INFO L85 PathProgramCache]: Analyzing trace with hash 1768826007, now seen corresponding path program 1 times [2024-09-25 00:22:52,256 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:52,256 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1048504906] [2024-09-25 00:22:52,256 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:52,256 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:52,278 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:52,638 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:52,639 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:52,640 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:52,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:52,651 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:22:52,664 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:52,898 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:52,898 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:52,900 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:22:52,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:53,084 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:53,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:53,090 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:53,092 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:53,162 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:53,163 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:53,165 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 27 proven. 5 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-25 00:22:53,165 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:53,166 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1048504906] [2024-09-25 00:22:53,166 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1048504906] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:53,166 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2127823649] [2024-09-25 00:22:53,166 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:53,166 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:53,166 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:53,168 INFO L229 MonitoredProcess]: Starting monitored process 26 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:53,170 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2024-09-25 00:22:53,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:53,430 INFO L262 TraceCheckSpWp]: Trace formula consists of 466 conjuncts, 8 conjuncts are in the unsatisfiable core [2024-09-25 00:22:53,432 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:53,492 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 26 proven. 0 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-25 00:22:53,492 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-25 00:22:53,492 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2127823649] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:22:53,492 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:22:53,493 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [11] total 14 [2024-09-25 00:22:53,493 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1651196356] [2024-09-25 00:22:53,493 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:22:53,493 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-25 00:22:53,493 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:53,494 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-25 00:22:53,494 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=31, Invalid=151, Unknown=0, NotChecked=0, Total=182 [2024-09-25 00:22:53,494 INFO L87 Difference]: Start difference. First operand 173 states and 397 transitions. Second operand has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-25 00:22:53,743 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:53,743 INFO L93 Difference]: Finished difference Result 291 states and 758 transitions. [2024-09-25 00:22:53,745 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-25 00:22:53,745 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 65 [2024-09-25 00:22:53,745 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:53,747 INFO L225 Difference]: With dead ends: 291 [2024-09-25 00:22:53,747 INFO L226 Difference]: Without dead ends: 149 [2024-09-25 00:22:53,749 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 95 GetRequests, 81 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 32 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=42, Invalid=198, Unknown=0, NotChecked=0, Total=240 [2024-09-25 00:22:53,750 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 5 mSDsluCounter, 94 mSDsCounter, 0 mSdLazyCounter, 48 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 5 SdHoareTripleChecker+Valid, 134 SdHoareTripleChecker+Invalid, 48 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 48 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:53,750 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [5 Valid, 134 Invalid, 48 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 48 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 00:22:53,751 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2024-09-25 00:22:53,899 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 145. [2024-09-25 00:22:53,900 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 98 states have (on average 1.183673469387755) internal successors, (116), 107 states have internal predecessors, (116), 22 states have call successors, (22), 12 states have call predecessors, (22), 24 states have return successors, (122), 25 states have call predecessors, (122), 20 states have call successors, (122) [2024-09-25 00:22:53,901 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 260 transitions. [2024-09-25 00:22:53,902 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 260 transitions. Word has length 65 [2024-09-25 00:22:53,902 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:53,903 INFO L474 AbstractCegarLoop]: Abstraction has 145 states and 260 transitions. [2024-09-25 00:22:53,903 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-25 00:22:53,903 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:53,903 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 260 transitions. [2024-09-25 00:22:53,904 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2024-09-25 00:22:53,904 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:53,904 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:53,922 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Ended with exit code 0 [2024-09-25 00:22:54,104 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable31 [2024-09-25 00:22:54,105 INFO L399 AbstractCegarLoop]: === Iteration 33 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:54,105 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:54,106 INFO L85 PathProgramCache]: Analyzing trace with hash -315216678, now seen corresponding path program 1 times [2024-09-25 00:22:54,106 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:54,106 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [316502518] [2024-09-25 00:22:54,106 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:54,106 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:54,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:54,785 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:54,786 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:54,787 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:54,788 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:54,823 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:22:54,842 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:55,421 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:55,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:55,425 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-09-25 00:22:55,439 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:55,906 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:55,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:55,910 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:22:55,917 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:56,115 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:56,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:56,118 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:56,120 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:56,129 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:56,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:56,131 INFO L134 CoverageAnalysis]: Checked inductivity of 91 backedges. 16 proven. 27 refuted. 0 times theorem prover too weak. 48 trivial. 0 not checked. [2024-09-25 00:22:56,131 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:56,131 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [316502518] [2024-09-25 00:22:56,131 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [316502518] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:56,132 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1945715849] [2024-09-25 00:22:56,132 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:56,132 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:56,132 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:56,134 INFO L229 MonitoredProcess]: Starting monitored process 27 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:56,135 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2024-09-25 00:22:56,419 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:56,422 INFO L262 TraceCheckSpWp]: Trace formula consists of 577 conjuncts, 45 conjuncts are in the unsatisfiable core [2024-09-25 00:22:56,424 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:56,442 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:56,445 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:22:56,913 INFO L134 CoverageAnalysis]: Checked inductivity of 91 backedges. 17 proven. 35 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2024-09-25 00:22:56,914 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:58,513 INFO L134 CoverageAnalysis]: Checked inductivity of 91 backedges. 16 proven. 43 refuted. 0 times theorem prover too weak. 32 trivial. 0 not checked. [2024-09-25 00:22:58,513 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1945715849] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:58,513 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:22:58,513 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 16, 17] total 40 [2024-09-25 00:22:58,513 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1654408625] [2024-09-25 00:22:58,514 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:58,514 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 40 states [2024-09-25 00:22:58,514 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:58,514 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 40 interpolants. [2024-09-25 00:22:58,515 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=161, Invalid=1399, Unknown=0, NotChecked=0, Total=1560 [2024-09-25 00:22:58,515 INFO L87 Difference]: Start difference. First operand 145 states and 260 transitions. Second operand has 40 states, 30 states have (on average 2.6666666666666665) internal successors, (80), 34 states have internal predecessors, (80), 16 states have call successors, (20), 6 states have call predecessors, (20), 8 states have return successors, (18), 12 states have call predecessors, (18), 15 states have call successors, (18) [2024-09-25 00:23:02,489 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:23:02,489 INFO L93 Difference]: Finished difference Result 231 states and 599 transitions. [2024-09-25 00:23:02,490 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 44 states. [2024-09-25 00:23:02,490 INFO L78 Accepts]: Start accepts. Automaton has has 40 states, 30 states have (on average 2.6666666666666665) internal successors, (80), 34 states have internal predecessors, (80), 16 states have call successors, (20), 6 states have call predecessors, (20), 8 states have return successors, (18), 12 states have call predecessors, (18), 15 states have call successors, (18) Word has length 80 [2024-09-25 00:23:02,490 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:23:02,493 INFO L225 Difference]: With dead ends: 231 [2024-09-25 00:23:02,493 INFO L226 Difference]: Without dead ends: 223 [2024-09-25 00:23:02,495 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 238 GetRequests, 162 SyntacticMatches, 1 SemanticMatches, 75 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1198 ImplicationChecksByTransitivity, 3.1s TimeCoverageRelationStatistics Valid=639, Invalid=5213, Unknown=0, NotChecked=0, Total=5852 [2024-09-25 00:23:02,496 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 194 mSDsluCounter, 378 mSDsCounter, 0 mSdLazyCounter, 1978 mSolverCounterSat, 216 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 194 SdHoareTripleChecker+Valid, 410 SdHoareTripleChecker+Invalid, 2194 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 216 IncrementalHoareTripleChecker+Valid, 1978 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.8s IncrementalHoareTripleChecker+Time [2024-09-25 00:23:02,496 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [194 Valid, 410 Invalid, 2194 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [216 Valid, 1978 Invalid, 0 Unknown, 0 Unchecked, 1.8s Time] [2024-09-25 00:23:02,496 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 223 states. [2024-09-25 00:23:02,683 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 223 to 173. [2024-09-25 00:23:02,684 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 112 states have (on average 1.1517857142857142) internal successors, (129), 121 states have internal predecessors, (129), 22 states have call successors, (22), 12 states have call predecessors, (22), 38 states have return successors, (212), 39 states have call predecessors, (212), 20 states have call successors, (212) [2024-09-25 00:23:02,686 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 363 transitions. [2024-09-25 00:23:02,686 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 363 transitions. Word has length 80 [2024-09-25 00:23:02,687 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:23:02,687 INFO L474 AbstractCegarLoop]: Abstraction has 173 states and 363 transitions. [2024-09-25 00:23:02,687 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 40 states, 30 states have (on average 2.6666666666666665) internal successors, (80), 34 states have internal predecessors, (80), 16 states have call successors, (20), 6 states have call predecessors, (20), 8 states have return successors, (18), 12 states have call predecessors, (18), 15 states have call successors, (18) [2024-09-25 00:23:02,687 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:02,687 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 363 transitions. [2024-09-25 00:23:02,688 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2024-09-25 00:23:02,689 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:23:02,689 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:23:02,708 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Ended with exit code 0 [2024-09-25 00:23:02,889 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable32,27 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:02,890 INFO L399 AbstractCegarLoop]: === Iteration 34 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:23:02,890 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:02,890 INFO L85 PathProgramCache]: Analyzing trace with hash -1758475267, now seen corresponding path program 2 times [2024-09-25 00:23:02,890 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:23:02,890 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [214740468] [2024-09-25 00:23:02,890 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:02,890 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:23:02,913 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,327 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:23:03,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,329 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:23:03,329 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,338 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2024-09-25 00:23:03,348 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,519 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:23:03,520 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,521 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:23:03,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,698 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:23:03,699 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,702 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2024-09-25 00:23:03,705 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,777 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:23:03,778 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:03,780 INFO L134 CoverageAnalysis]: Checked inductivity of 49 backedges. 29 proven. 5 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-25 00:23:03,780 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:23:03,780 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [214740468] [2024-09-25 00:23:03,781 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [214740468] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:23:03,781 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1344176067] [2024-09-25 00:23:03,781 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:23:03,781 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:03,781 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:23:03,783 INFO L229 MonitoredProcess]: Starting monitored process 28 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:23:03,784 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2024-09-25 00:23:04,092 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:23:04,092 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:23:04,094 INFO L262 TraceCheckSpWp]: Trace formula consists of 477 conjuncts, 36 conjuncts are in the unsatisfiable core [2024-09-25 00:23:04,096 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:23:04,161 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 34 treesize of output 18 [2024-09-25 00:23:04,353 INFO L134 CoverageAnalysis]: Checked inductivity of 49 backedges. 26 proven. 6 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-09-25 00:23:04,353 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:23:04,759 INFO L134 CoverageAnalysis]: Checked inductivity of 49 backedges. 27 proven. 10 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:23:04,759 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1344176067] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:23:04,759 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:23:04,759 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 11, 12] total 24 [2024-09-25 00:23:04,759 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [281375323] [2024-09-25 00:23:04,760 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:23:04,760 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-25 00:23:04,760 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:23:04,760 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-25 00:23:04,761 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=90, Invalid=462, Unknown=0, NotChecked=0, Total=552 [2024-09-25 00:23:04,761 INFO L87 Difference]: Start difference. First operand 173 states and 363 transitions. Second operand has 24 states, 19 states have (on average 4.368421052631579) internal successors, (83), 20 states have internal predecessors, (83), 12 states have call successors, (18), 6 states have call predecessors, (18), 6 states have return successors, (14), 9 states have call predecessors, (14), 11 states have call successors, (14) [2024-09-25 00:23:05,771 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:23:05,771 INFO L93 Difference]: Finished difference Result 257 states and 664 transitions. [2024-09-25 00:23:05,771 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-25 00:23:05,771 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 19 states have (on average 4.368421052631579) internal successors, (83), 20 states have internal predecessors, (83), 12 states have call successors, (18), 6 states have call predecessors, (18), 6 states have return successors, (14), 9 states have call predecessors, (14), 11 states have call successors, (14) Word has length 67 [2024-09-25 00:23:05,771 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:23:05,774 INFO L225 Difference]: With dead ends: 257 [2024-09-25 00:23:05,774 INFO L226 Difference]: Without dead ends: 217 [2024-09-25 00:23:05,774 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 180 GetRequests, 141 SyntacticMatches, 0 SemanticMatches, 39 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 354 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=317, Invalid=1323, Unknown=0, NotChecked=0, Total=1640 [2024-09-25 00:23:05,775 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 114 mSDsluCounter, 136 mSDsCounter, 0 mSdLazyCounter, 641 mSolverCounterSat, 74 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 118 SdHoareTripleChecker+Valid, 161 SdHoareTripleChecker+Invalid, 715 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 74 IncrementalHoareTripleChecker+Valid, 641 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-25 00:23:05,775 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [118 Valid, 161 Invalid, 715 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [74 Valid, 641 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-25 00:23:05,775 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 217 states. [2024-09-25 00:23:05,985 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 217 to 183. [2024-09-25 00:23:05,986 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 183 states, 117 states have (on average 1.1452991452991452) internal successors, (134), 126 states have internal predecessors, (134), 22 states have call successors, (22), 12 states have call predecessors, (22), 43 states have return successors, (234), 44 states have call predecessors, (234), 20 states have call successors, (234) [2024-09-25 00:23:05,987 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 183 states to 183 states and 390 transitions. [2024-09-25 00:23:05,988 INFO L78 Accepts]: Start accepts. Automaton has 183 states and 390 transitions. Word has length 67 [2024-09-25 00:23:05,988 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:23:05,988 INFO L474 AbstractCegarLoop]: Abstraction has 183 states and 390 transitions. [2024-09-25 00:23:05,988 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 19 states have (on average 4.368421052631579) internal successors, (83), 20 states have internal predecessors, (83), 12 states have call successors, (18), 6 states have call predecessors, (18), 6 states have return successors, (14), 9 states have call predecessors, (14), 11 states have call successors, (14) [2024-09-25 00:23:05,988 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:05,989 INFO L276 IsEmpty]: Start isEmpty. Operand 183 states and 390 transitions. [2024-09-25 00:23:05,990 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2024-09-25 00:23:05,990 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:23:05,990 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:23:06,011 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Ended with exit code 0 [2024-09-25 00:23:06,190 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable33,28 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:06,191 INFO L399 AbstractCegarLoop]: === Iteration 35 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:23:06,191 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:06,191 INFO L85 PathProgramCache]: Analyzing trace with hash -1813149505, now seen corresponding path program 1 times [2024-09-25 00:23:06,191 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:23:06,191 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [754808100] [2024-09-25 00:23:06,191 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:06,191 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:23:06,225 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:23:06,226 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1779144340] [2024-09-25 00:23:06,227 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:06,227 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:06,227 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:23:06,229 INFO L229 MonitoredProcess]: Starting monitored process 29 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:23:06,230 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Waiting until timeout for monitored process [2024-09-25 00:23:06,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:06,559 INFO L262 TraceCheckSpWp]: Trace formula consists of 475 conjuncts, 152 conjuncts are in the unsatisfiable core [2024-09-25 00:23:06,564 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:23:06,567 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:23:06,569 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:23:06,573 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:06,577 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:23:06,582 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:23:06,588 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:06,608 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:06,618 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:09,629 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 48 treesize of output 32 [2024-09-25 00:23:09,632 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-25 00:23:09,675 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-09-25 00:23:09,678 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 36 treesize of output 20 [2024-09-25 00:23:09,785 INFO L134 CoverageAnalysis]: Checked inductivity of 49 backedges. 9 proven. 23 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-09-25 00:23:09,785 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:23:13,406 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:23:13,406 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [754808100] [2024-09-25 00:23:13,406 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:23:13,406 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1779144340] [2024-09-25 00:23:13,406 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1779144340] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:23:13,406 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:23:13,406 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-25 00:23:13,407 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [210183419] [2024-09-25 00:23:13,407 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:23:13,407 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-25 00:23:13,407 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:23:13,408 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-25 00:23:13,408 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=99, Invalid=713, Unknown=0, NotChecked=0, Total=812 [2024-09-25 00:23:13,408 INFO L87 Difference]: Start difference. First operand 183 states and 390 transitions. Second operand has 24 states, 20 states have (on average 2.0) internal successors, (40), 20 states have internal predecessors, (40), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:23:16,024 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:23:16,024 INFO L93 Difference]: Finished difference Result 221 states and 516 transitions. [2024-09-25 00:23:16,025 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2024-09-25 00:23:16,025 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 20 states have (on average 2.0) internal successors, (40), 20 states have internal predecessors, (40), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) Word has length 67 [2024-09-25 00:23:16,026 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:23:16,028 INFO L225 Difference]: With dead ends: 221 [2024-09-25 00:23:16,028 INFO L226 Difference]: Without dead ends: 185 [2024-09-25 00:23:16,029 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 85 GetRequests, 46 SyntacticMatches, 2 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 346 ImplicationChecksByTransitivity, 2.5s TimeCoverageRelationStatistics Valid=180, Invalid=1302, Unknown=0, NotChecked=0, Total=1482 [2024-09-25 00:23:16,029 INFO L434 NwaCegarLoop]: 23 mSDtfsCounter, 40 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 709 mSolverCounterSat, 19 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 41 SdHoareTripleChecker+Valid, 188 SdHoareTripleChecker+Invalid, 728 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 19 IncrementalHoareTripleChecker+Valid, 709 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.7s IncrementalHoareTripleChecker+Time [2024-09-25 00:23:16,029 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [41 Valid, 188 Invalid, 728 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [19 Valid, 709 Invalid, 0 Unknown, 0 Unchecked, 1.7s Time] [2024-09-25 00:23:16,030 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 185 states. [2024-09-25 00:23:16,244 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 185 to 185. [2024-09-25 00:23:16,245 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 185 states, 118 states have (on average 1.1440677966101696) internal successors, (135), 127 states have internal predecessors, (135), 22 states have call successors, (22), 12 states have call predecessors, (22), 44 states have return successors, (239), 45 states have call predecessors, (239), 20 states have call successors, (239) [2024-09-25 00:23:16,247 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 185 states to 185 states and 396 transitions. [2024-09-25 00:23:16,247 INFO L78 Accepts]: Start accepts. Automaton has 185 states and 396 transitions. Word has length 67 [2024-09-25 00:23:16,249 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:23:16,249 INFO L474 AbstractCegarLoop]: Abstraction has 185 states and 396 transitions. [2024-09-25 00:23:16,249 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 20 states have (on average 2.0) internal successors, (40), 20 states have internal predecessors, (40), 7 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2024-09-25 00:23:16,249 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:16,249 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 396 transitions. [2024-09-25 00:23:16,250 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2024-09-25 00:23:16,251 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:23:16,251 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:23:16,282 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Ended with exit code 0 [2024-09-25 00:23:16,451 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 29 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable34 [2024-09-25 00:23:16,451 INFO L399 AbstractCegarLoop]: === Iteration 36 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:23:16,452 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:16,452 INFO L85 PathProgramCache]: Analyzing trace with hash 964392132, now seen corresponding path program 1 times [2024-09-25 00:23:16,452 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:23:16,452 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [241790856] [2024-09-25 00:23:16,452 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:16,452 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:23:16,488 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:23:16,490 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [931990797] [2024-09-25 00:23:16,490 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:16,490 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:16,490 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:23:16,492 INFO L229 MonitoredProcess]: Starting monitored process 30 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:23:16,494 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (30)] Waiting until timeout for monitored process [2024-09-25 00:23:16,880 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:16,883 INFO L262 TraceCheckSpWp]: Trace formula consists of 582 conjuncts, 189 conjuncts are in the unsatisfiable core [2024-09-25 00:23:16,887 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:23:16,892 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:23:16,894 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:23:16,917 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 11 [2024-09-25 00:23:16,934 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:18,453 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 30 treesize of output 18 [2024-09-25 00:23:18,509 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-25 00:23:18,518 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:23:18,518 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 38 [2024-09-25 00:23:18,523 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-09-25 00:23:18,600 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 9 proven. 36 refuted. 0 times theorem prover too weak. 48 trivial. 0 not checked. [2024-09-25 00:23:18,601 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:23:20,447 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:23:20,447 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 36 treesize of output 39 [2024-09-25 00:23:21,273 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:23:21,273 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 87 treesize of output 108 [2024-09-25 00:23:21,465 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:23:21,465 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [241790856] [2024-09-25 00:23:21,465 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:23:21,465 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [931990797] [2024-09-25 00:23:21,465 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [931990797] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:23:21,465 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:23:21,465 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [26] total 26 [2024-09-25 00:23:21,466 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [360633974] [2024-09-25 00:23:21,466 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:23:21,466 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 26 states [2024-09-25 00:23:21,466 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:23:21,466 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 26 interpolants. [2024-09-25 00:23:21,467 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=101, Invalid=891, Unknown=0, NotChecked=0, Total=992 [2024-09-25 00:23:21,467 INFO L87 Difference]: Start difference. First operand 185 states and 396 transitions. Second operand has 26 states, 20 states have (on average 2.0) internal successors, (40), 22 states have internal predecessors, (40), 8 states have call successors, (9), 4 states have call predecessors, (9), 8 states have return successors, (8), 8 states have call predecessors, (8), 7 states have call successors, (8)