./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 6908dde5 Calling Ultimate with: /root/.sdkman/candidates/java/11.0.12-open/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash ac02a57e98f6481647f49b84c91fda6d0505e35fbffb37ed6b508f20e911a1af --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-6908dde-m [2024-09-25 00:21:54,848 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-25 00:21:54,914 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-25 00:21:54,920 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-25 00:21:54,921 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-25 00:21:54,954 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-25 00:21:54,955 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-25 00:21:54,955 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-25 00:21:54,956 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-25 00:21:54,956 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-25 00:21:54,956 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-25 00:21:54,957 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-25 00:21:54,957 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-25 00:21:54,957 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-25 00:21:54,958 INFO L153 SettingsManager]: * Use SBE=true [2024-09-25 00:21:54,965 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-25 00:21:54,965 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-25 00:21:54,965 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-25 00:21:54,966 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-25 00:21:54,966 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-25 00:21:54,967 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-25 00:21:54,968 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-25 00:21:54,968 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-25 00:21:54,968 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-25 00:21:54,969 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-25 00:21:54,969 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-25 00:21:54,969 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-25 00:21:54,970 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-25 00:21:54,970 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-25 00:21:54,970 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-25 00:21:54,971 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-25 00:21:54,971 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-25 00:21:54,971 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-25 00:21:54,972 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-25 00:21:54,972 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-25 00:21:54,972 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-25 00:21:54,973 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-25 00:21:54,973 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-25 00:21:54,973 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-25 00:21:54,974 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-25 00:21:54,974 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-25 00:21:54,975 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-25 00:21:54,975 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> ac02a57e98f6481647f49b84c91fda6d0505e35fbffb37ed6b508f20e911a1af Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-25 00:21:55,227 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-25 00:21:55,257 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-25 00:21:55,261 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-25 00:21:55,262 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-25 00:21:55,263 INFO L274 PluginConnector]: CDTParser initialized [2024-09-25 00:21:55,264 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c [2024-09-25 00:21:56,728 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-25 00:21:56,955 INFO L384 CDTParser]: Found 1 translation units. [2024-09-25 00:21:56,956 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c [2024-09-25 00:21:56,963 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/dba161511/5a2c92961c3a4a7bb3c516883393403d/FLAGbdae5bb21 [2024-09-25 00:21:56,979 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/dba161511/5a2c92961c3a4a7bb3c516883393403d [2024-09-25 00:21:56,981 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-25 00:21:56,984 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-25 00:21:56,985 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-25 00:21:56,985 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-25 00:21:56,989 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-25 00:21:56,990 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.09 12:21:56" (1/1) ... [2024-09-25 00:21:56,991 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@18b765e6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:56, skipping insertion in model container [2024-09-25 00:21:56,991 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.09 12:21:56" (1/1) ... [2024-09-25 00:21:57,008 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-25 00:21:57,165 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c[1052,1065] [2024-09-25 00:21:57,191 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-25 00:21:57,212 INFO L200 MainTranslator]: Completed pre-run [2024-09-25 00:21:57,225 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/recursified_nla-digbench/recursified_sqrt1-ll.c[1052,1065] [2024-09-25 00:21:57,241 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-25 00:21:57,264 INFO L204 MainTranslator]: Completed translation [2024-09-25 00:21:57,265 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57 WrapperNode [2024-09-25 00:21:57,265 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-25 00:21:57,267 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-25 00:21:57,267 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-25 00:21:57,268 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-25 00:21:57,275 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,283 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,293 INFO L138 Inliner]: procedures = 16, calls = 58, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-25 00:21:57,294 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-25 00:21:57,295 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-25 00:21:57,295 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-25 00:21:57,295 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-25 00:21:57,304 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,305 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,307 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,329 INFO L175 MemorySlicer]: Split 33 memory accesses to 5 slices as follows [2, 9, 2, 12, 8]. 36 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0, 0]. The 7 writes are split as follows [0, 2, 1, 2, 2]. [2024-09-25 00:21:57,330 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,330 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,337 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,343 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,344 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,345 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,352 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-25 00:21:57,352 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-25 00:21:57,353 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-25 00:21:57,353 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-25 00:21:57,358 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (1/1) ... [2024-09-25 00:21:57,363 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-25 00:21:57,373 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:21:57,392 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-25 00:21:57,395 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-25 00:21:57,440 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-25 00:21:57,440 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-25 00:21:57,440 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-25 00:21:57,440 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-25 00:21:57,440 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-09-25 00:21:57,441 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-09-25 00:21:57,441 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-09-25 00:21:57,442 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#4 [2024-09-25 00:21:57,442 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#4 [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-25 00:21:57,443 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-25 00:21:57,443 INFO L130 BoogieDeclarations]: Found specification of procedure func_to_recursive_line_29_to_40_0 [2024-09-25 00:21:57,444 INFO L138 BoogieDeclarations]: Found implementation of procedure func_to_recursive_line_29_to_40_0 [2024-09-25 00:21:57,444 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-25 00:21:57,444 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-25 00:21:57,444 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-09-25 00:21:57,444 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-09-25 00:21:57,445 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-09-25 00:21:57,446 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-09-25 00:21:57,446 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#4 [2024-09-25 00:21:57,446 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-25 00:21:57,446 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-25 00:21:57,446 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-09-25 00:21:57,531 INFO L241 CfgBuilder]: Building ICFG [2024-09-25 00:21:57,533 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-25 00:21:57,722 INFO L? ?]: Removed 6 outVars from TransFormulas that were not future-live. [2024-09-25 00:21:57,723 INFO L290 CfgBuilder]: Performing block encoding [2024-09-25 00:21:57,746 INFO L312 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-25 00:21:57,747 INFO L317 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-25 00:21:57,748 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.09 12:21:57 BoogieIcfgContainer [2024-09-25 00:21:57,748 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-25 00:21:57,750 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-25 00:21:57,750 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-25 00:21:57,753 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-25 00:21:57,754 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 25.09 12:21:56" (1/3) ... [2024-09-25 00:21:57,755 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@75c6fb05 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.09 12:21:57, skipping insertion in model container [2024-09-25 00:21:57,755 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 12:21:57" (2/3) ... [2024-09-25 00:21:57,755 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@75c6fb05 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.09 12:21:57, skipping insertion in model container [2024-09-25 00:21:57,755 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.09 12:21:57" (3/3) ... [2024-09-25 00:21:57,756 INFO L112 eAbstractionObserver]: Analyzing ICFG recursified_sqrt1-ll.c [2024-09-25 00:21:57,774 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-25 00:21:57,775 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-25 00:21:57,823 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-25 00:21:57,829 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@53dd98b9, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-25 00:21:57,830 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-25 00:21:57,833 INFO L276 IsEmpty]: Start isEmpty. Operand has 34 states, 18 states have (on average 1.2222222222222223) internal successors, (22), 20 states have internal predecessors, (22), 10 states have call successors, (10), 4 states have call predecessors, (10), 4 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) [2024-09-25 00:21:57,840 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2024-09-25 00:21:57,840 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:21:57,841 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:21:57,841 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:21:57,846 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:21:57,847 INFO L85 PathProgramCache]: Analyzing trace with hash 793561350, now seen corresponding path program 1 times [2024-09-25 00:21:57,856 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:21:57,857 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [356840014] [2024-09-25 00:21:57,860 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:21:57,861 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:21:58,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:21:58,725 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:21:58,727 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:21:58,736 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:21:58,737 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:21:58,737 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [356840014] [2024-09-25 00:21:58,738 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [356840014] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:21:58,738 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:21:58,739 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-25 00:21:58,740 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1387581946] [2024-09-25 00:21:58,741 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:21:58,745 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:21:58,745 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:21:58,770 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:21:58,771 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2024-09-25 00:21:58,773 INFO L87 Difference]: Start difference. First operand has 34 states, 18 states have (on average 1.2222222222222223) internal successors, (22), 20 states have internal predecessors, (22), 10 states have call successors, (10), 4 states have call predecessors, (10), 4 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 8 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 00:21:59,046 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:21:59,046 INFO L93 Difference]: Finished difference Result 80 states and 113 transitions. [2024-09-25 00:21:59,049 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-25 00:21:59,050 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 12 [2024-09-25 00:21:59,051 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:21:59,058 INFO L225 Difference]: With dead ends: 80 [2024-09-25 00:21:59,059 INFO L226 Difference]: Without dead ends: 48 [2024-09-25 00:21:59,063 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:21:59,067 INFO L434 NwaCegarLoop]: 27 mSDtfsCounter, 17 mSDsluCounter, 133 mSDsCounter, 0 mSdLazyCounter, 118 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 160 SdHoareTripleChecker+Invalid, 126 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 118 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 00:21:59,068 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 160 Invalid, 126 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 118 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 00:21:59,084 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 48 states. [2024-09-25 00:21:59,118 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 48 to 45. [2024-09-25 00:21:59,119 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 45 states, 26 states have (on average 1.1153846153846154) internal successors, (29), 28 states have internal predecessors, (29), 13 states have call successors, (13), 6 states have call predecessors, (13), 5 states have return successors, (12), 11 states have call predecessors, (12), 11 states have call successors, (12) [2024-09-25 00:21:59,121 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 54 transitions. [2024-09-25 00:21:59,123 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 54 transitions. Word has length 12 [2024-09-25 00:21:59,123 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:21:59,123 INFO L474 AbstractCegarLoop]: Abstraction has 45 states and 54 transitions. [2024-09-25 00:21:59,124 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 00:21:59,124 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:21:59,125 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 54 transitions. [2024-09-25 00:21:59,125 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-09-25 00:21:59,125 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:21:59,126 INFO L216 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:21:59,126 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-25 00:21:59,126 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:21:59,127 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:21:59,127 INFO L85 PathProgramCache]: Analyzing trace with hash -179619090, now seen corresponding path program 1 times [2024-09-25 00:21:59,127 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:21:59,127 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1532636752] [2024-09-25 00:21:59,128 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:21:59,128 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:21:59,166 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:21:59,171 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [838860695] [2024-09-25 00:21:59,171 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:21:59,172 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:21:59,172 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:21:59,174 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:21:59,177 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-25 00:21:59,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:21:59,289 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 44 conjuncts are in the unsatisfiable core [2024-09-25 00:21:59,298 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:21:59,359 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:59,367 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:21:59,633 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:21:59,633 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:21:59,934 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 27 [2024-09-25 00:22:00,094 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 00:22:00,094 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:00,095 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1532636752] [2024-09-25 00:22:00,095 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:00,095 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [838860695] [2024-09-25 00:22:00,096 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [838860695] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:00,096 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-25 00:22:00,096 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 12] total 21 [2024-09-25 00:22:00,097 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1490968887] [2024-09-25 00:22:00,097 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:00,100 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-25 00:22:00,100 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:00,101 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-25 00:22:00,101 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=60, Invalid=360, Unknown=0, NotChecked=0, Total=420 [2024-09-25 00:22:00,101 INFO L87 Difference]: Start difference. First operand 45 states and 54 transitions. Second operand has 21 states, 15 states have (on average 1.2) internal successors, (18), 15 states have internal predecessors, (18), 7 states have call successors, (8), 5 states have call predecessors, (8), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-25 00:22:05,296 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-25 00:22:09,466 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [1] [2024-09-25 00:22:09,581 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:09,581 INFO L93 Difference]: Finished difference Result 81 states and 95 transitions. [2024-09-25 00:22:09,582 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2024-09-25 00:22:09,582 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 15 states have (on average 1.2) internal successors, (18), 15 states have internal predecessors, (18), 7 states have call successors, (8), 5 states have call predecessors, (8), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 18 [2024-09-25 00:22:09,582 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:09,586 INFO L225 Difference]: With dead ends: 81 [2024-09-25 00:22:09,586 INFO L226 Difference]: Without dead ends: 79 [2024-09-25 00:22:09,589 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 48 GetRequests, 14 SyntacticMatches, 2 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 168 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=191, Invalid=931, Unknown=0, NotChecked=0, Total=1122 [2024-09-25 00:22:09,590 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 59 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 435 mSolverCounterSat, 33 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 8.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 180 SdHoareTripleChecker+Invalid, 470 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 435 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 8.8s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:09,591 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 180 Invalid, 470 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 435 Invalid, 2 Unknown, 0 Unchecked, 8.8s Time] [2024-09-25 00:22:09,592 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-25 00:22:09,630 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 77. [2024-09-25 00:22:09,631 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 77 states, 46 states have (on average 1.108695652173913) internal successors, (51), 49 states have internal predecessors, (51), 20 states have call successors, (20), 10 states have call predecessors, (20), 10 states have return successors, (20), 18 states have call predecessors, (20), 17 states have call successors, (20) [2024-09-25 00:22:09,632 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 77 states to 77 states and 91 transitions. [2024-09-25 00:22:09,633 INFO L78 Accepts]: Start accepts. Automaton has 77 states and 91 transitions. Word has length 18 [2024-09-25 00:22:09,633 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:09,634 INFO L474 AbstractCegarLoop]: Abstraction has 77 states and 91 transitions. [2024-09-25 00:22:09,637 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 15 states have (on average 1.2) internal successors, (18), 15 states have internal predecessors, (18), 7 states have call successors, (8), 5 states have call predecessors, (8), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-25 00:22:09,637 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:09,638 INFO L276 IsEmpty]: Start isEmpty. Operand 77 states and 91 transitions. [2024-09-25 00:22:09,638 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-25 00:22:09,638 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:09,638 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:09,658 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-25 00:22:09,839 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:09,840 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:09,840 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:09,840 INFO L85 PathProgramCache]: Analyzing trace with hash 1495099348, now seen corresponding path program 1 times [2024-09-25 00:22:09,840 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:09,840 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1285334030] [2024-09-25 00:22:09,840 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:09,841 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:09,870 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:22:09,872 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [22134333] [2024-09-25 00:22:09,872 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:09,872 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:09,872 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:09,876 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:09,877 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-25 00:22:09,954 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:09,956 INFO L262 TraceCheckSpWp]: Trace formula consists of 181 conjuncts, 37 conjuncts are in the unsatisfiable core [2024-09-25 00:22:09,958 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:09,966 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:09,975 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:10,306 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:22:10,307 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:10,538 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:22:10,539 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:10,539 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1285334030] [2024-09-25 00:22:10,539 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:10,539 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [22134333] [2024-09-25 00:22:10,539 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [22134333] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:10,539 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:22:10,539 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [9] total 13 [2024-09-25 00:22:10,539 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1615630392] [2024-09-25 00:22:10,540 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:22:10,540 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:22:10,540 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:10,541 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:22:10,541 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=30, Invalid=126, Unknown=0, NotChecked=0, Total=156 [2024-09-25 00:22:10,541 INFO L87 Difference]: Start difference. First operand 77 states and 91 transitions. Second operand has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 4 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-25 00:22:11,090 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:11,090 INFO L93 Difference]: Finished difference Result 91 states and 105 transitions. [2024-09-25 00:22:11,091 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-25 00:22:11,091 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 4 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 24 [2024-09-25 00:22:11,091 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:11,093 INFO L225 Difference]: With dead ends: 91 [2024-09-25 00:22:11,093 INFO L226 Difference]: Without dead ends: 89 [2024-09-25 00:22:11,093 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 50 GetRequests, 31 SyntacticMatches, 5 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=44, Invalid=196, Unknown=0, NotChecked=0, Total=240 [2024-09-25 00:22:11,094 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 17 mSDsluCounter, 97 mSDsCounter, 0 mSdLazyCounter, 123 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 19 SdHoareTripleChecker+Valid, 121 SdHoareTripleChecker+Invalid, 132 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 123 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:11,095 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [19 Valid, 121 Invalid, 132 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 123 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-25 00:22:11,096 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2024-09-25 00:22:11,134 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2024-09-25 00:22:11,135 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 54 states have (on average 1.0925925925925926) internal successors, (59), 57 states have internal predecessors, (59), 20 states have call successors, (20), 12 states have call predecessors, (20), 14 states have return successors, (23), 19 states have call predecessors, (23), 17 states have call successors, (23) [2024-09-25 00:22:11,137 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 102 transitions. [2024-09-25 00:22:11,137 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 102 transitions. Word has length 24 [2024-09-25 00:22:11,137 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:11,138 INFO L474 AbstractCegarLoop]: Abstraction has 89 states and 102 transitions. [2024-09-25 00:22:11,138 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 2.0) internal successors, (12), 6 states have internal predecessors, (12), 4 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-25 00:22:11,138 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:11,138 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 102 transitions. [2024-09-25 00:22:11,139 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-25 00:22:11,139 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:11,140 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:11,157 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-09-25 00:22:11,343 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:11,344 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:11,345 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:11,345 INFO L85 PathProgramCache]: Analyzing trace with hash -1496297149, now seen corresponding path program 1 times [2024-09-25 00:22:11,345 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:11,345 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1203037574] [2024-09-25 00:22:11,345 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:11,346 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:11,375 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:12,113 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:12,115 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:12,117 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:22:12,119 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:12,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:12,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:12,127 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-09-25 00:22:12,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:12,133 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 6 proven. 3 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:22:12,133 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:12,133 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1203037574] [2024-09-25 00:22:12,133 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1203037574] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:12,133 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1908810920] [2024-09-25 00:22:12,134 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:12,134 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:12,134 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:12,136 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:12,140 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-25 00:22:12,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:12,262 INFO L262 TraceCheckSpWp]: Trace formula consists of 249 conjuncts, 42 conjuncts are in the unsatisfiable core [2024-09-25 00:22:12,265 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:12,631 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-25 00:22:12,638 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-25 00:22:12,696 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:22:12,703 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:22:12,799 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 5 proven. 12 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 00:22:12,799 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:17,381 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 7 proven. 8 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 00:22:17,381 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1908810920] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:17,381 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 00:22:17,381 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 11, 10] total 21 [2024-09-25 00:22:17,381 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1581149021] [2024-09-25 00:22:17,381 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:17,382 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-25 00:22:17,382 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:17,383 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-25 00:22:17,383 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=63, Invalid=356, Unknown=1, NotChecked=0, Total=420 [2024-09-25 00:22:17,383 INFO L87 Difference]: Start difference. First operand 89 states and 102 transitions. Second operand has 21 states, 16 states have (on average 2.3125) internal successors, (37), 17 states have internal predecessors, (37), 9 states have call successors, (17), 7 states have call predecessors, (17), 4 states have return successors, (10), 3 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-25 00:22:19,431 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:19,431 INFO L93 Difference]: Finished difference Result 95 states and 107 transitions. [2024-09-25 00:22:19,432 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-25 00:22:19,432 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 16 states have (on average 2.3125) internal successors, (37), 17 states have internal predecessors, (37), 9 states have call successors, (17), 7 states have call predecessors, (17), 4 states have return successors, (10), 3 states have call predecessors, (10), 5 states have call successors, (10) Word has length 34 [2024-09-25 00:22:19,432 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:19,434 INFO L225 Difference]: With dead ends: 95 [2024-09-25 00:22:19,434 INFO L226 Difference]: Without dead ends: 93 [2024-09-25 00:22:19,434 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 99 GetRequests, 65 SyntacticMatches, 5 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 116 ImplicationChecksByTransitivity, 5.6s TimeCoverageRelationStatistics Valid=155, Invalid=774, Unknown=1, NotChecked=0, Total=930 [2024-09-25 00:22:19,436 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 79 mSDsluCounter, 132 mSDsCounter, 0 mSdLazyCounter, 322 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 156 SdHoareTripleChecker+Invalid, 360 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 322 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:19,437 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 156 Invalid, 360 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 322 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 00:22:19,438 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 93 states. [2024-09-25 00:22:19,478 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 93 to 93. [2024-09-25 00:22:19,479 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 93 states, 57 states have (on average 1.087719298245614) internal successors, (62), 60 states have internal predecessors, (62), 20 states have call successors, (20), 13 states have call predecessors, (20), 15 states have return successors, (23), 19 states have call predecessors, (23), 17 states have call successors, (23) [2024-09-25 00:22:19,480 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 93 states to 93 states and 105 transitions. [2024-09-25 00:22:19,480 INFO L78 Accepts]: Start accepts. Automaton has 93 states and 105 transitions. Word has length 34 [2024-09-25 00:22:19,481 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:19,481 INFO L474 AbstractCegarLoop]: Abstraction has 93 states and 105 transitions. [2024-09-25 00:22:19,481 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 16 states have (on average 2.3125) internal successors, (37), 17 states have internal predecessors, (37), 9 states have call successors, (17), 7 states have call predecessors, (17), 4 states have return successors, (10), 3 states have call predecessors, (10), 5 states have call successors, (10) [2024-09-25 00:22:19,482 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:19,482 INFO L276 IsEmpty]: Start isEmpty. Operand 93 states and 105 transitions. [2024-09-25 00:22:19,483 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-25 00:22:19,483 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:19,484 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:19,504 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-25 00:22:19,687 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:19,688 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:19,688 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:19,688 INFO L85 PathProgramCache]: Analyzing trace with hash 2049263454, now seen corresponding path program 1 times [2024-09-25 00:22:19,689 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:19,689 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1848594361] [2024-09-25 00:22:19,689 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:19,689 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:19,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:19,964 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:19,965 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:19,996 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:20,001 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:20,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:20,123 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:20,126 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:22:20,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:20,130 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:20,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:20,134 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:22:20,134 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:20,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1848594361] [2024-09-25 00:22:20,135 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1848594361] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 00:22:20,135 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 00:22:20,135 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-25 00:22:20,135 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1910465101] [2024-09-25 00:22:20,135 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 00:22:20,135 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:22:20,135 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:20,136 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:22:20,136 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2024-09-25 00:22:20,136 INFO L87 Difference]: Start difference. First operand 93 states and 105 transitions. Second operand has 8 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 6 states have internal predecessors, (16), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-25 00:22:20,989 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:20,989 INFO L93 Difference]: Finished difference Result 99 states and 110 transitions. [2024-09-25 00:22:20,989 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-25 00:22:20,990 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 6 states have internal predecessors, (16), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) Word has length 34 [2024-09-25 00:22:20,990 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:20,991 INFO L225 Difference]: With dead ends: 99 [2024-09-25 00:22:20,991 INFO L226 Difference]: Without dead ends: 97 [2024-09-25 00:22:20,992 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=30, Invalid=80, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:22:20,992 INFO L434 NwaCegarLoop]: 17 mSDtfsCounter, 23 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 136 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 65 SdHoareTripleChecker+Invalid, 158 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 136 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:20,993 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 65 Invalid, 158 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 136 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-09-25 00:22:20,997 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 97 states. [2024-09-25 00:22:21,042 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 97 to 97. [2024-09-25 00:22:21,043 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 97 states, 60 states have (on average 1.0833333333333333) internal successors, (65), 63 states have internal predecessors, (65), 20 states have call successors, (20), 14 states have call predecessors, (20), 16 states have return successors, (23), 19 states have call predecessors, (23), 17 states have call successors, (23) [2024-09-25 00:22:21,044 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 97 states to 97 states and 108 transitions. [2024-09-25 00:22:21,048 INFO L78 Accepts]: Start accepts. Automaton has 97 states and 108 transitions. Word has length 34 [2024-09-25 00:22:21,048 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:21,049 INFO L474 AbstractCegarLoop]: Abstraction has 97 states and 108 transitions. [2024-09-25 00:22:21,049 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 2.2857142857142856) internal successors, (16), 6 states have internal predecessors, (16), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2024-09-25 00:22:21,049 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:21,049 INFO L276 IsEmpty]: Start isEmpty. Operand 97 states and 108 transitions. [2024-09-25 00:22:21,050 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-25 00:22:21,050 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:21,050 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:21,050 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-09-25 00:22:21,051 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:21,051 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:21,051 INFO L85 PathProgramCache]: Analyzing trace with hash 863672261, now seen corresponding path program 1 times [2024-09-25 00:22:21,052 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:21,052 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1137529992] [2024-09-25 00:22:21,052 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:21,053 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:21,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:22:21,076 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [774268692] [2024-09-25 00:22:21,076 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:21,076 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:21,077 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:21,078 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:21,102 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-25 00:22:21,190 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:21,193 INFO L262 TraceCheckSpWp]: Trace formula consists of 216 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-25 00:22:21,196 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:21,209 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:21,220 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:21,716 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 18 proven. 2 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:22:21,716 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:22,212 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:22,213 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1137529992] [2024-09-25 00:22:22,213 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:22,213 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [774268692] [2024-09-25 00:22:22,213 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [774268692] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:22,213 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:22:22,213 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8] total 8 [2024-09-25 00:22:22,213 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1011451655] [2024-09-25 00:22:22,213 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:22,214 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:22:22,214 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:22,214 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:22:22,215 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:22:22,215 INFO L87 Difference]: Start difference. First operand 97 states and 108 transitions. Second operand has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 7 states have internal predecessors, (20), 4 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-25 00:22:23,124 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:23,124 INFO L93 Difference]: Finished difference Result 105 states and 114 transitions. [2024-09-25 00:22:23,125 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-25 00:22:23,125 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 7 states have internal predecessors, (20), 4 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 40 [2024-09-25 00:22:23,125 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:23,126 INFO L225 Difference]: With dead ends: 105 [2024-09-25 00:22:23,126 INFO L226 Difference]: Without dead ends: 101 [2024-09-25 00:22:23,127 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 46 SyntacticMatches, 3 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=49, Invalid=161, Unknown=0, NotChecked=0, Total=210 [2024-09-25 00:22:23,127 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 26 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 167 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 68 SdHoareTripleChecker+Invalid, 192 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 167 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:23,128 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 68 Invalid, 192 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 167 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-25 00:22:23,130 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 101 states. [2024-09-25 00:22:23,176 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 101 to 99. [2024-09-25 00:22:23,176 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 99 states, 62 states have (on average 1.064516129032258) internal successors, (66), 64 states have internal predecessors, (66), 20 states have call successors, (20), 15 states have call predecessors, (20), 16 states have return successors, (23), 19 states have call predecessors, (23), 17 states have call successors, (23) [2024-09-25 00:22:23,177 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 99 states to 99 states and 109 transitions. [2024-09-25 00:22:23,177 INFO L78 Accepts]: Start accepts. Automaton has 99 states and 109 transitions. Word has length 40 [2024-09-25 00:22:23,178 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:23,178 INFO L474 AbstractCegarLoop]: Abstraction has 99 states and 109 transitions. [2024-09-25 00:22:23,178 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 2.857142857142857) internal successors, (20), 7 states have internal predecessors, (20), 4 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-09-25 00:22:23,178 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:23,178 INFO L276 IsEmpty]: Start isEmpty. Operand 99 states and 109 transitions. [2024-09-25 00:22:23,179 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2024-09-25 00:22:23,179 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:23,180 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:23,197 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-25 00:22:23,383 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:23,384 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:23,384 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:23,384 INFO L85 PathProgramCache]: Analyzing trace with hash 398231530, now seen corresponding path program 1 times [2024-09-25 00:22:23,384 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:23,384 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [740675496] [2024-09-25 00:22:23,384 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:23,385 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:23,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:22:23,406 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2126466193] [2024-09-25 00:22:23,406 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:23,406 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:23,406 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:23,408 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:23,410 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-25 00:22:23,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:23,496 INFO L262 TraceCheckSpWp]: Trace formula consists of 233 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-25 00:22:23,499 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:23,510 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:23,530 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:24,136 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 30 proven. 4 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-25 00:22:24,137 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:24,581 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:24,581 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [740675496] [2024-09-25 00:22:24,581 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:24,581 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2126466193] [2024-09-25 00:22:24,581 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2126466193] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:24,581 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:22:24,581 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8] total 8 [2024-09-25 00:22:24,582 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1068658831] [2024-09-25 00:22:24,582 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:24,582 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 00:22:24,582 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:24,583 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 00:22:24,583 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2024-09-25 00:22:24,583 INFO L87 Difference]: Start difference. First operand 99 states and 109 transitions. Second operand has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 4 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-09-25 00:22:25,350 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:25,350 INFO L93 Difference]: Finished difference Result 101 states and 110 transitions. [2024-09-25 00:22:25,351 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-25 00:22:25,351 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 4 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 46 [2024-09-25 00:22:25,351 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:25,367 INFO L225 Difference]: With dead ends: 101 [2024-09-25 00:22:25,367 INFO L226 Difference]: Without dead ends: 81 [2024-09-25 00:22:25,368 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 55 SyntacticMatches, 5 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=49, Invalid=161, Unknown=0, NotChecked=0, Total=210 [2024-09-25 00:22:25,368 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 18 mSDsluCounter, 50 mSDsCounter, 0 mSdLazyCounter, 146 mSolverCounterSat, 23 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 65 SdHoareTripleChecker+Invalid, 171 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 146 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:25,369 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 65 Invalid, 171 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 146 Invalid, 2 Unknown, 0 Unchecked, 0.5s Time] [2024-09-25 00:22:25,369 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2024-09-25 00:22:25,397 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 81. [2024-09-25 00:22:25,398 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 50 states have (on average 1.06) internal successors, (53), 52 states have internal predecessors, (53), 17 states have call successors, (17), 12 states have call predecessors, (17), 13 states have return successors, (20), 16 states have call predecessors, (20), 15 states have call successors, (20) [2024-09-25 00:22:25,398 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 90 transitions. [2024-09-25 00:22:25,399 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 90 transitions. Word has length 46 [2024-09-25 00:22:25,399 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:25,399 INFO L474 AbstractCegarLoop]: Abstraction has 81 states and 90 transitions. [2024-09-25 00:22:25,399 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 4 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-09-25 00:22:25,399 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:25,399 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 90 transitions. [2024-09-25 00:22:25,402 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2024-09-25 00:22:25,402 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:25,402 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:25,419 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-25 00:22:25,602 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-25 00:22:25,603 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:25,604 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:25,604 INFO L85 PathProgramCache]: Analyzing trace with hash 15363389, now seen corresponding path program 1 times [2024-09-25 00:22:25,604 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:25,604 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1644892252] [2024-09-25 00:22:25,604 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:25,604 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:25,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:26,428 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:22:26,429 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:26,505 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:22:26,520 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,454 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:27,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,467 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:22:27,469 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,481 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:27,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,497 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2024-09-25 00:22:27,502 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,687 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:22:27,689 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,691 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:22:27,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,694 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:22:27,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,697 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 12 proven. 10 refuted. 0 times theorem prover too weak. 61 trivial. 0 not checked. [2024-09-25 00:22:27,697 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:27,698 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1644892252] [2024-09-25 00:22:27,698 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1644892252] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:27,698 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1379747539] [2024-09-25 00:22:27,698 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:27,698 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:27,698 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:27,700 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:27,702 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-25 00:22:27,798 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:22:27,801 INFO L262 TraceCheckSpWp]: Trace formula consists of 303 conjuncts, 62 conjuncts are in the unsatisfiable core [2024-09-25 00:22:27,837 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:27,851 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:27,872 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:29,506 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:22:29,526 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:22:29,801 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 9 proven. 54 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-09-25 00:22:29,801 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:30,895 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1379747539] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:22:30,895 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-25 00:22:30,895 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 16] total 22 [2024-09-25 00:22:30,896 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [650612732] [2024-09-25 00:22:30,896 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:30,896 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-25 00:22:30,896 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:30,897 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-25 00:22:30,897 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=83, Invalid=567, Unknown=0, NotChecked=0, Total=650 [2024-09-25 00:22:30,897 INFO L87 Difference]: Start difference. First operand 81 states and 90 transitions. Second operand has 22 states, 16 states have (on average 2.5) internal successors, (40), 19 states have internal predecessors, (40), 10 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (14), 7 states have call predecessors, (14), 9 states have call successors, (14) [2024-09-25 00:22:32,880 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:22:32,881 INFO L93 Difference]: Finished difference Result 90 states and 99 transitions. [2024-09-25 00:22:32,882 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-25 00:22:32,882 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 16 states have (on average 2.5) internal successors, (40), 19 states have internal predecessors, (40), 10 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (14), 7 states have call predecessors, (14), 9 states have call successors, (14) Word has length 58 [2024-09-25 00:22:32,882 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:22:32,883 INFO L225 Difference]: With dead ends: 90 [2024-09-25 00:22:32,883 INFO L226 Difference]: Without dead ends: 88 [2024-09-25 00:22:32,884 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 111 GetRequests, 73 SyntacticMatches, 3 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 226 ImplicationChecksByTransitivity, 3.0s TimeCoverageRelationStatistics Valid=192, Invalid=1140, Unknown=0, NotChecked=0, Total=1332 [2024-09-25 00:22:32,884 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 42 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 408 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 44 SdHoareTripleChecker+Valid, 97 SdHoareTripleChecker+Invalid, 430 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 408 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 00:22:32,885 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [44 Valid, 97 Invalid, 430 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 408 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 00:22:32,887 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 88 states. [2024-09-25 00:22:32,923 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 88 to 87. [2024-09-25 00:22:32,923 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 87 states, 54 states have (on average 1.0555555555555556) internal successors, (57), 56 states have internal predecessors, (57), 18 states have call successors, (18), 13 states have call predecessors, (18), 14 states have return successors, (21), 17 states have call predecessors, (21), 16 states have call successors, (21) [2024-09-25 00:22:32,924 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 87 states to 87 states and 96 transitions. [2024-09-25 00:22:32,924 INFO L78 Accepts]: Start accepts. Automaton has 87 states and 96 transitions. Word has length 58 [2024-09-25 00:22:32,925 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:22:32,925 INFO L474 AbstractCegarLoop]: Abstraction has 87 states and 96 transitions. [2024-09-25 00:22:32,925 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 16 states have (on average 2.5) internal successors, (40), 19 states have internal predecessors, (40), 10 states have call successors, (17), 6 states have call predecessors, (17), 6 states have return successors, (14), 7 states have call predecessors, (14), 9 states have call successors, (14) [2024-09-25 00:22:32,926 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:32,926 INFO L276 IsEmpty]: Start isEmpty. Operand 87 states and 96 transitions. [2024-09-25 00:22:32,927 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 63 [2024-09-25 00:22:32,927 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:22:32,927 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:22:32,946 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-25 00:22:33,131 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:33,132 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:22:33,132 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:22:33,132 INFO L85 PathProgramCache]: Analyzing trace with hash -1755980760, now seen corresponding path program 2 times [2024-09-25 00:22:33,132 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:22:33,132 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2066090060] [2024-09-25 00:22:33,132 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:22:33,133 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:22:33,161 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:22:33,163 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2136053976] [2024-09-25 00:22:33,163 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:22:33,163 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:22:33,163 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:22:33,165 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:22:33,167 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-25 00:22:33,286 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:22:33,286 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:22:33,289 INFO L262 TraceCheckSpWp]: Trace formula consists of 364 conjuncts, 134 conjuncts are in the unsatisfiable core [2024-09-25 00:22:33,293 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:22:33,310 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:22:33,320 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:33,339 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:22:33,472 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2024-09-25 00:22:34,255 INFO L349 Elim1Store]: treesize reduction 29, result has 34.1 percent of original size [2024-09-25 00:22:34,255 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 29 [2024-09-25 00:22:34,322 INFO L349 Elim1Store]: treesize reduction 29, result has 34.1 percent of original size [2024-09-25 00:22:34,322 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 29 [2024-09-25 00:22:35,793 INFO L349 Elim1Store]: treesize reduction 29, result has 34.1 percent of original size [2024-09-25 00:22:35,793 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 29 [2024-09-25 00:22:35,805 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:22:35,876 INFO L349 Elim1Store]: treesize reduction 29, result has 34.1 percent of original size [2024-09-25 00:22:35,876 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 29 [2024-09-25 00:22:36,732 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 2 proven. 106 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 00:22:36,733 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:22:37,885 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 33 [2024-09-25 00:22:59,971 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 20 proven. 44 refuted. 3 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-25 00:22:59,971 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:22:59,971 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2066090060] [2024-09-25 00:22:59,972 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:22:59,972 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2136053976] [2024-09-25 00:22:59,972 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2136053976] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 00:22:59,972 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-25 00:22:59,972 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [25, 20] total 41 [2024-09-25 00:22:59,972 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1496381712] [2024-09-25 00:22:59,972 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-25 00:22:59,972 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 41 states [2024-09-25 00:22:59,973 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:22:59,973 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 41 interpolants. [2024-09-25 00:22:59,974 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=172, Invalid=1464, Unknown=4, NotChecked=0, Total=1640 [2024-09-25 00:22:59,974 INFO L87 Difference]: Start difference. First operand 87 states and 96 transitions. Second operand has 41 states, 33 states have (on average 1.8181818181818181) internal successors, (60), 33 states have internal predecessors, (60), 18 states have call successors, (24), 12 states have call predecessors, (24), 8 states have return successors, (15), 7 states have call predecessors, (15), 11 states have call successors, (15) [2024-09-25 00:23:15,134 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.24s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-25 00:23:16,633 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.49s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [1] [2024-09-25 00:23:20,652 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-25 00:23:23,449 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.80s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=true, quantifiers [] [2024-09-25 00:23:24,181 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:23:24,181 INFO L93 Difference]: Finished difference Result 151 states and 161 transitions. [2024-09-25 00:23:24,182 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 47 states. [2024-09-25 00:23:24,182 INFO L78 Accepts]: Start accepts. Automaton has has 41 states, 33 states have (on average 1.8181818181818181) internal successors, (60), 33 states have internal predecessors, (60), 18 states have call successors, (24), 12 states have call predecessors, (24), 8 states have return successors, (15), 7 states have call predecessors, (15), 11 states have call successors, (15) Word has length 62 [2024-09-25 00:23:24,182 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:23:24,183 INFO L225 Difference]: With dead ends: 151 [2024-09-25 00:23:24,183 INFO L226 Difference]: Without dead ends: 149 [2024-09-25 00:23:24,185 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 158 GetRequests, 77 SyntacticMatches, 8 SemanticMatches, 73 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1305 ImplicationChecksByTransitivity, 32.9s TimeCoverageRelationStatistics Valid=690, Invalid=4856, Unknown=4, NotChecked=0, Total=5550 [2024-09-25 00:23:24,186 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 175 mSDsluCounter, 331 mSDsCounter, 0 mSdLazyCounter, 1154 mSolverCounterSat, 83 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 15.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 179 SdHoareTripleChecker+Valid, 371 SdHoareTripleChecker+Invalid, 1238 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 83 IncrementalHoareTripleChecker+Valid, 1154 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 15.4s IncrementalHoareTripleChecker+Time [2024-09-25 00:23:24,186 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [179 Valid, 371 Invalid, 1238 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [83 Valid, 1154 Invalid, 1 Unknown, 0 Unchecked, 15.4s Time] [2024-09-25 00:23:24,186 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2024-09-25 00:23:24,240 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 135. [2024-09-25 00:23:24,241 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 135 states, 86 states have (on average 1.058139534883721) internal successors, (91), 89 states have internal predecessors, (91), 24 states have call successors, (24), 21 states have call predecessors, (24), 24 states have return successors, (29), 24 states have call predecessors, (29), 21 states have call successors, (29) [2024-09-25 00:23:24,241 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 144 transitions. [2024-09-25 00:23:24,242 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 144 transitions. Word has length 62 [2024-09-25 00:23:24,242 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:23:24,242 INFO L474 AbstractCegarLoop]: Abstraction has 135 states and 144 transitions. [2024-09-25 00:23:24,242 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 41 states, 33 states have (on average 1.8181818181818181) internal successors, (60), 33 states have internal predecessors, (60), 18 states have call successors, (24), 12 states have call predecessors, (24), 8 states have return successors, (15), 7 states have call predecessors, (15), 11 states have call successors, (15) [2024-09-25 00:23:24,242 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:24,243 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 144 transitions. [2024-09-25 00:23:24,243 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2024-09-25 00:23:24,243 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:23:24,244 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:23:24,261 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-25 00:23:24,444 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:24,444 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:23:24,445 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:24,445 INFO L85 PathProgramCache]: Analyzing trace with hash 765303396, now seen corresponding path program 1 times [2024-09-25 00:23:24,445 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:23:24,445 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1717898906] [2024-09-25 00:23:24,445 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:24,445 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:23:24,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:23:24,479 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1769394896] [2024-09-25 00:23:24,479 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:24,479 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:24,479 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:23:24,485 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:23:24,486 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-25 00:23:24,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:24,604 INFO L262 TraceCheckSpWp]: Trace formula consists of 318 conjuncts, 84 conjuncts are in the unsatisfiable core [2024-09-25 00:23:24,608 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:23:24,623 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:23:24,636 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:26,067 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 38 treesize of output 30 [2024-09-25 00:23:27,438 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 55 treesize of output 28 [2024-09-25 00:23:27,459 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:23:28,232 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 67 treesize of output 47 [2024-09-25 00:23:28,276 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 48 treesize of output 24 [2024-09-25 00:23:28,824 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 25 proven. 72 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 00:23:28,824 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:23:30,745 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 57 treesize of output 45 [2024-09-25 00:23:30,981 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:23:30,982 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1717898906] [2024-09-25 00:23:30,982 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:23:30,982 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1769394896] [2024-09-25 00:23:30,982 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1769394896] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:23:30,982 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:23:30,982 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20] total 20 [2024-09-25 00:23:30,982 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [883735901] [2024-09-25 00:23:30,982 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:23:30,983 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-25 00:23:30,983 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:23:30,983 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-25 00:23:30,983 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=62, Invalid=444, Unknown=0, NotChecked=0, Total=506 [2024-09-25 00:23:30,984 INFO L87 Difference]: Start difference. First operand 135 states and 144 transitions. Second operand has 20 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 18 states have internal predecessors, (35), 10 states have call successors, (12), 6 states have call predecessors, (12), 7 states have return successors, (10), 6 states have call predecessors, (10), 9 states have call successors, (10) [2024-09-25 00:23:37,805 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:23:37,805 INFO L93 Difference]: Finished difference Result 143 states and 150 transitions. [2024-09-25 00:23:37,806 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2024-09-25 00:23:37,806 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 18 states have internal predecessors, (35), 10 states have call successors, (12), 6 states have call predecessors, (12), 7 states have return successors, (10), 6 states have call predecessors, (10), 9 states have call successors, (10) Word has length 64 [2024-09-25 00:23:37,806 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:23:37,807 INFO L225 Difference]: With dead ends: 143 [2024-09-25 00:23:37,808 INFO L226 Difference]: Without dead ends: 139 [2024-09-25 00:23:37,808 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 101 GetRequests, 49 SyntacticMatches, 7 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 470 ImplicationChecksByTransitivity, 6.7s TimeCoverageRelationStatistics Valid=314, Invalid=1845, Unknown=3, NotChecked=0, Total=2162 [2024-09-25 00:23:37,809 INFO L434 NwaCegarLoop]: 17 mSDtfsCounter, 53 mSDsluCounter, 69 mSDsCounter, 0 mSdLazyCounter, 507 mSolverCounterSat, 57 mSolverCounterUnsat, 8 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 53 SdHoareTripleChecker+Valid, 86 SdHoareTripleChecker+Invalid, 572 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 57 IncrementalHoareTripleChecker+Valid, 507 IncrementalHoareTripleChecker+Invalid, 8 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.9s IncrementalHoareTripleChecker+Time [2024-09-25 00:23:37,809 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [53 Valid, 86 Invalid, 572 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [57 Valid, 507 Invalid, 8 Unknown, 0 Unchecked, 2.9s Time] [2024-09-25 00:23:37,810 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 139 states. [2024-09-25 00:23:37,899 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 139 to 137. [2024-09-25 00:23:37,899 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 137 states, 88 states have (on average 1.0454545454545454) internal successors, (92), 90 states have internal predecessors, (92), 24 states have call successors, (24), 22 states have call predecessors, (24), 24 states have return successors, (29), 24 states have call predecessors, (29), 21 states have call successors, (29) [2024-09-25 00:23:37,900 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 137 states to 137 states and 145 transitions. [2024-09-25 00:23:37,900 INFO L78 Accepts]: Start accepts. Automaton has 137 states and 145 transitions. Word has length 64 [2024-09-25 00:23:37,901 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:23:37,901 INFO L474 AbstractCegarLoop]: Abstraction has 137 states and 145 transitions. [2024-09-25 00:23:37,901 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 18 states have internal predecessors, (35), 10 states have call successors, (12), 6 states have call predecessors, (12), 7 states have return successors, (10), 6 states have call predecessors, (10), 9 states have call successors, (10) [2024-09-25 00:23:37,901 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:37,901 INFO L276 IsEmpty]: Start isEmpty. Operand 137 states and 145 transitions. [2024-09-25 00:23:37,902 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 71 [2024-09-25 00:23:37,902 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:23:37,902 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:23:37,921 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-25 00:23:38,103 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:38,103 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:23:38,104 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:38,104 INFO L85 PathProgramCache]: Analyzing trace with hash 1393874761, now seen corresponding path program 1 times [2024-09-25 00:23:38,104 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:23:38,104 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [308704274] [2024-09-25 00:23:38,104 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:38,104 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:23:38,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:23:38,127 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [911664940] [2024-09-25 00:23:38,127 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:38,127 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:38,127 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:23:38,129 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:23:38,132 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-25 00:23:38,233 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:38,235 INFO L262 TraceCheckSpWp]: Trace formula consists of 335 conjuncts, 84 conjuncts are in the unsatisfiable core [2024-09-25 00:23:38,238 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:23:38,256 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:38,278 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:38,303 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:23:39,794 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-09-25 00:23:39,938 INFO L349 Elim1Store]: treesize reduction 14, result has 58.8 percent of original size [2024-09-25 00:23:39,938 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 25 treesize of output 32 [2024-09-25 00:23:40,039 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:23:43,219 INFO L134 CoverageAnalysis]: Checked inductivity of 139 backedges. 61 proven. 17 refuted. 0 times theorem prover too weak. 61 trivial. 0 not checked. [2024-09-25 00:23:43,219 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:23:45,829 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:23:45,829 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [308704274] [2024-09-25 00:23:45,829 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:23:45,829 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [911664940] [2024-09-25 00:23:45,829 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [911664940] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:23:45,829 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:23:45,829 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17] total 17 [2024-09-25 00:23:45,830 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [765379662] [2024-09-25 00:23:45,830 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:23:45,830 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 17 states [2024-09-25 00:23:45,830 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:23:45,830 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 17 interpolants. [2024-09-25 00:23:45,831 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=74, Invalid=478, Unknown=0, NotChecked=0, Total=552 [2024-09-25 00:23:45,831 INFO L87 Difference]: Start difference. First operand 137 states and 145 transitions. Second operand has 17 states, 13 states have (on average 2.3846153846153846) internal successors, (31), 14 states have internal predecessors, (31), 8 states have call successors, (13), 5 states have call predecessors, (13), 5 states have return successors, (11), 6 states have call predecessors, (11), 7 states have call successors, (11) [2024-09-25 00:23:50,402 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:23:50,402 INFO L93 Difference]: Finished difference Result 139 states and 146 transitions. [2024-09-25 00:23:50,403 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-09-25 00:23:50,403 INFO L78 Accepts]: Start accepts. Automaton has has 17 states, 13 states have (on average 2.3846153846153846) internal successors, (31), 14 states have internal predecessors, (31), 8 states have call successors, (13), 5 states have call predecessors, (13), 5 states have return successors, (11), 6 states have call predecessors, (11), 7 states have call successors, (11) Word has length 70 [2024-09-25 00:23:50,403 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:23:50,404 INFO L225 Difference]: With dead ends: 139 [2024-09-25 00:23:50,404 INFO L226 Difference]: Without dead ends: 117 [2024-09-25 00:23:50,405 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 98 GetRequests, 62 SyntacticMatches, 3 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 181 ImplicationChecksByTransitivity, 5.7s TimeCoverageRelationStatistics Valid=177, Invalid=1013, Unknown=0, NotChecked=0, Total=1190 [2024-09-25 00:23:50,405 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 14 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 362 mSolverCounterSat, 17 mSolverCounterUnsat, 12 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 68 SdHoareTripleChecker+Invalid, 391 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 362 IncrementalHoareTripleChecker+Invalid, 12 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.0s IncrementalHoareTripleChecker+Time [2024-09-25 00:23:50,406 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 68 Invalid, 391 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 362 Invalid, 12 Unknown, 0 Unchecked, 2.0s Time] [2024-09-25 00:23:50,406 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 117 states. [2024-09-25 00:23:50,485 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 117 to 117. [2024-09-25 00:23:50,486 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 117 states, 75 states have (on average 1.04) internal successors, (78), 77 states have internal predecessors, (78), 21 states have call successors, (21), 19 states have call predecessors, (21), 20 states have return successors, (25), 20 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-25 00:23:50,486 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 124 transitions. [2024-09-25 00:23:50,487 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 124 transitions. Word has length 70 [2024-09-25 00:23:50,487 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:23:50,487 INFO L474 AbstractCegarLoop]: Abstraction has 117 states and 124 transitions. [2024-09-25 00:23:50,488 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 17 states, 13 states have (on average 2.3846153846153846) internal successors, (31), 14 states have internal predecessors, (31), 8 states have call successors, (13), 5 states have call predecessors, (13), 5 states have return successors, (11), 6 states have call predecessors, (11), 7 states have call successors, (11) [2024-09-25 00:23:50,489 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:50,489 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 124 transitions. [2024-09-25 00:23:50,490 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2024-09-25 00:23:50,490 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:23:50,490 INFO L216 NwaCegarLoop]: trace histogram [10, 9, 9, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:23:50,509 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2024-09-25 00:23:50,690 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-25 00:23:50,691 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:23:50,691 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:23:50,691 INFO L85 PathProgramCache]: Analyzing trace with hash 657256540, now seen corresponding path program 2 times [2024-09-25 00:23:50,691 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:23:50,691 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1594602128] [2024-09-25 00:23:50,691 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:23:50,692 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:23:50,713 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:51,743 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 00:23:51,744 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:51,833 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-25 00:23:51,855 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,061 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:23:53,063 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,079 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:23:53,081 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,090 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:23:53,092 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,102 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2024-09-25 00:23:53,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,989 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:23:53,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,994 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:23:53,995 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:53,999 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:23:54,001 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:54,005 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2024-09-25 00:23:54,011 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:54,793 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-09-25 00:23:54,796 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:54,800 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-09-25 00:23:54,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:54,806 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-09-25 00:23:54,807 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 00:23:54,811 INFO L134 CoverageAnalysis]: Checked inductivity of 196 backedges. 31 proven. 16 refuted. 0 times theorem prover too weak. 149 trivial. 0 not checked. [2024-09-25 00:23:54,811 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:23:54,811 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1594602128] [2024-09-25 00:23:54,811 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1594602128] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:23:54,811 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [638919013] [2024-09-25 00:23:54,811 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:23:54,812 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:23:54,812 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:23:54,814 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:23:54,815 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-25 00:23:54,935 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:23:54,935 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:23:54,937 INFO L262 TraceCheckSpWp]: Trace formula consists of 405 conjuncts, 74 conjuncts are in the unsatisfiable core [2024-09-25 00:23:54,940 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:23:56,673 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-25 00:23:56,684 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-09-25 00:23:57,061 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 15 [2024-09-25 00:23:57,072 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:23:57,310 INFO L134 CoverageAnalysis]: Checked inductivity of 196 backedges. 58 proven. 64 refuted. 0 times theorem prover too weak. 74 trivial. 0 not checked. [2024-09-25 00:23:57,310 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:23:59,911 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:23:59,912 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 92 treesize of output 91 [2024-09-25 00:23:59,956 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:23:59,956 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 108 treesize of output 99 [2024-09-25 00:24:00,826 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [638919013] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:24:00,827 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-25 00:24:00,827 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 14] total 26 [2024-09-25 00:24:00,827 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1550895640] [2024-09-25 00:24:00,827 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-25 00:24:00,827 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 26 states [2024-09-25 00:24:00,828 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:24:00,828 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 26 interpolants. [2024-09-25 00:24:00,828 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=112, Invalid=590, Unknown=0, NotChecked=0, Total=702 [2024-09-25 00:24:00,829 INFO L87 Difference]: Start difference. First operand 117 states and 124 transitions. Second operand has 26 states, 19 states have (on average 2.8421052631578947) internal successors, (54), 23 states have internal predecessors, (54), 14 states have call successors, (28), 6 states have call predecessors, (28), 7 states have return successors, (25), 11 states have call predecessors, (25), 13 states have call successors, (25) [2024-09-25 00:24:03,395 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:24:03,395 INFO L93 Difference]: Finished difference Result 123 states and 129 transitions. [2024-09-25 00:24:03,395 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-25 00:24:03,396 INFO L78 Accepts]: Start accepts. Automaton has has 26 states, 19 states have (on average 2.8421052631578947) internal successors, (54), 23 states have internal predecessors, (54), 14 states have call successors, (28), 6 states have call predecessors, (28), 7 states have return successors, (25), 11 states have call predecessors, (25), 13 states have call successors, (25) Word has length 82 [2024-09-25 00:24:03,396 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:24:03,397 INFO L225 Difference]: With dead ends: 123 [2024-09-25 00:24:03,397 INFO L226 Difference]: Without dead ends: 121 [2024-09-25 00:24:03,398 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 154 GetRequests, 112 SyntacticMatches, 5 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 424 ImplicationChecksByTransitivity, 4.3s TimeCoverageRelationStatistics Valid=262, Invalid=1220, Unknown=0, NotChecked=0, Total=1482 [2024-09-25 00:24:03,398 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 61 mSDsluCounter, 49 mSDsCounter, 0 mSdLazyCounter, 292 mSolverCounterSat, 47 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 62 SdHoareTripleChecker+Invalid, 339 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 47 IncrementalHoareTripleChecker+Valid, 292 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-25 00:24:03,398 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [62 Valid, 62 Invalid, 339 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [47 Valid, 292 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-25 00:24:03,399 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2024-09-25 00:24:03,462 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 121. [2024-09-25 00:24:03,462 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 78 states have (on average 1.0384615384615385) internal successors, (81), 80 states have internal predecessors, (81), 21 states have call successors, (21), 20 states have call predecessors, (21), 21 states have return successors, (25), 20 states have call predecessors, (25), 19 states have call successors, (25) [2024-09-25 00:24:03,463 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 127 transitions. [2024-09-25 00:24:03,463 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 127 transitions. Word has length 82 [2024-09-25 00:24:03,464 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:24:03,464 INFO L474 AbstractCegarLoop]: Abstraction has 121 states and 127 transitions. [2024-09-25 00:24:03,464 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 26 states, 19 states have (on average 2.8421052631578947) internal successors, (54), 23 states have internal predecessors, (54), 14 states have call successors, (28), 6 states have call predecessors, (28), 7 states have return successors, (25), 11 states have call predecessors, (25), 13 states have call successors, (25) [2024-09-25 00:24:03,464 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:24:03,464 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 127 transitions. [2024-09-25 00:24:03,465 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2024-09-25 00:24:03,465 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:24:03,465 INFO L216 NwaCegarLoop]: trace histogram [11, 10, 10, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:24:03,479 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-25 00:24:03,666 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-25 00:24:03,666 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:24:03,667 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:24:03,667 INFO L85 PathProgramCache]: Analyzing trace with hash 1385368131, now seen corresponding path program 2 times [2024-09-25 00:24:03,667 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:24:03,667 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1119835720] [2024-09-25 00:24:03,667 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:24:03,667 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:24:03,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:24:03,694 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2096158836] [2024-09-25 00:24:03,694 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:24:03,694 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:24:03,694 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:24:03,696 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:24:03,699 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-25 00:24:03,828 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:24:03,828 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:24:03,831 INFO L262 TraceCheckSpWp]: Trace formula consists of 420 conjuncts, 152 conjuncts are in the unsatisfiable core [2024-09-25 00:24:03,836 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:24:03,849 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:24:03,869 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:24:03,887 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:24:09,289 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 11 [2024-09-25 00:24:09,313 INFO L173 IndexEqualityManager]: detected equality via solver [2024-09-25 00:24:09,314 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 3 [2024-09-25 00:24:09,324 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 41 treesize of output 18 [2024-09-25 00:24:09,533 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:24:09,534 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 27 [2024-09-25 00:24:10,374 INFO L134 CoverageAnalysis]: Checked inductivity of 234 backedges. 110 proven. 44 refuted. 0 times theorem prover too weak. 80 trivial. 0 not checked. [2024-09-25 00:24:10,375 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 00:24:17,113 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 00:24:17,114 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1119835720] [2024-09-25 00:24:17,114 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-25 00:24:17,114 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2096158836] [2024-09-25 00:24:17,114 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2096158836] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 00:24:17,114 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-25 00:24:17,114 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-25 00:24:17,114 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [68635904] [2024-09-25 00:24:17,114 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-25 00:24:17,115 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-25 00:24:17,115 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 00:24:17,115 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-25 00:24:17,116 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=96, Invalid=774, Unknown=0, NotChecked=0, Total=870 [2024-09-25 00:24:17,116 INFO L87 Difference]: Start difference. First operand 121 states and 127 transitions. Second operand has 24 states, 19 states have (on average 1.894736842105263) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (12), 6 states have call predecessors, (12), 8 states have return successors, (11), 8 states have call predecessors, (11), 8 states have call successors, (11) [2024-09-25 00:24:25,698 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 00:24:25,698 INFO L93 Difference]: Finished difference Result 145 states and 152 transitions. [2024-09-25 00:24:25,698 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2024-09-25 00:24:25,699 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 19 states have (on average 1.894736842105263) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (12), 6 states have call predecessors, (12), 8 states have return successors, (11), 8 states have call predecessors, (11), 8 states have call successors, (11) Word has length 88 [2024-09-25 00:24:25,699 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 00:24:25,700 INFO L225 Difference]: With dead ends: 145 [2024-09-25 00:24:25,700 INFO L226 Difference]: Without dead ends: 141 [2024-09-25 00:24:25,701 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 125 GetRequests, 74 SyntacticMatches, 2 SemanticMatches, 49 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 487 ImplicationChecksByTransitivity, 8.6s TimeCoverageRelationStatistics Valid=326, Invalid=2224, Unknown=0, NotChecked=0, Total=2550 [2024-09-25 00:24:25,702 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 59 mSDsluCounter, 105 mSDsCounter, 0 mSdLazyCounter, 764 mSolverCounterSat, 53 mSolverCounterUnsat, 4 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 123 SdHoareTripleChecker+Invalid, 821 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 53 IncrementalHoareTripleChecker+Valid, 764 IncrementalHoareTripleChecker+Invalid, 4 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.0s IncrementalHoareTripleChecker+Time [2024-09-25 00:24:25,702 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [62 Valid, 123 Invalid, 821 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [53 Valid, 764 Invalid, 4 Unknown, 0 Unchecked, 4.0s Time] [2024-09-25 00:24:25,703 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 141 states. [2024-09-25 00:24:25,813 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 141 to 139. [2024-09-25 00:24:25,813 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 90 states have (on average 1.0333333333333334) internal successors, (93), 91 states have internal predecessors, (93), 24 states have call successors, (24), 23 states have call predecessors, (24), 24 states have return successors, (30), 24 states have call predecessors, (30), 21 states have call successors, (30) [2024-09-25 00:24:25,815 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 147 transitions. [2024-09-25 00:24:25,815 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 147 transitions. Word has length 88 [2024-09-25 00:24:25,815 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 00:24:25,815 INFO L474 AbstractCegarLoop]: Abstraction has 139 states and 147 transitions. [2024-09-25 00:24:25,816 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 19 states have (on average 1.894736842105263) internal successors, (36), 19 states have internal predecessors, (36), 9 states have call successors, (12), 6 states have call predecessors, (12), 8 states have return successors, (11), 8 states have call predecessors, (11), 8 states have call successors, (11) [2024-09-25 00:24:25,817 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:24:25,817 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 147 transitions. [2024-09-25 00:24:25,818 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2024-09-25 00:24:25,818 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 00:24:25,818 INFO L216 NwaCegarLoop]: trace histogram [12, 11, 11, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 00:24:25,837 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Ended with exit code 0 [2024-09-25 00:24:26,018 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:24:26,019 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 00:24:26,019 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 00:24:26,019 INFO L85 PathProgramCache]: Analyzing trace with hash 344499176, now seen corresponding path program 2 times [2024-09-25 00:24:26,019 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 00:24:26,019 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [802784342] [2024-09-25 00:24:26,019 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 00:24:26,019 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 00:24:26,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-25 00:24:26,043 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [182443825] [2024-09-25 00:24:26,043 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 00:24:26,043 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 00:24:26,043 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 00:24:26,045 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 00:24:26,046 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-25 00:24:26,240 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 00:24:26,240 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 00:24:26,248 INFO L262 TraceCheckSpWp]: Trace formula consists of 437 conjuncts, 157 conjuncts are in the unsatisfiable core [2024-09-25 00:24:26,252 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 00:24:26,263 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:24:26,281 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2024-09-25 00:24:26,292 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2024-09-25 00:24:42,036 WARN L876 $PredicateComparison]: unable to prove that (exists ((|v_func_to_recursive_line_29_to_40_0_#in~t.offset_BEFORE_CALL_29| Int) (|v_func_to_recursive_line_29_to_40_0_#in~a.offset_BEFORE_CALL_44| Int) (|v_func_to_recursive_line_29_to_40_0_#in~t.base_BEFORE_CALL_37| Int) (|v_func_to_recursive_line_29_to_40_0_#in~a.base_BEFORE_CALL_44| Int)) (<= (select (select |c_#memory_int#3| |v_func_to_recursive_line_29_to_40_0_#in~t.base_BEFORE_CALL_37|) |v_func_to_recursive_line_29_to_40_0_#in~t.offset_BEFORE_CALL_29|) (+ (* 2 (select (select |c_#memory_int#1| |v_func_to_recursive_line_29_to_40_0_#in~a.base_BEFORE_CALL_44|) |v_func_to_recursive_line_29_to_40_0_#in~a.offset_BEFORE_CALL_44|)) 1))) is different from true [2024-09-25 00:25:16,997 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 3 [2024-09-25 00:25:17,010 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 20 [2024-09-25 00:25:17,109 INFO L349 Elim1Store]: treesize reduction 23, result has 32.4 percent of original size [2024-09-25 00:25:17,110 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 62 treesize of output 49 [2024-09-25 00:25:17,524 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 157 treesize of output 141 [2024-09-25 00:25:38,184 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:25:38,185 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 90 treesize of output 106 [2024-09-25 00:25:38,421 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-09-25 00:25:38,422 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 4 select indices, 4 select index equivalence classes, 0 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 6 case distinctions, treesize of input 117 treesize of output 133 [2024-09-25 00:25:43,513 INFO L134 CoverageAnalysis]: Checked inductivity of 276 backedges. 51 proven. 154 refuted. 10 times theorem prover too weak. 30 trivial. 31 not checked. [2024-09-25 00:25:43,513 INFO L327 TraceCheckSpWp]: Computing backward predicates...