./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/loops/sum_array-2-2.i --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e378df2c Calling Ultimate with: /root/.sdkman/candidates/java/11.0.12-open/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/loops/sum_array-2-2.i -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 0cf9175e436d0e00a51b884dabf87739d3176e3315a908e56fcba99730a10796 --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.5-wip.dk.contract-modifies-e378df2-m [2024-10-15 14:12:11,123 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-10-15 14:12:11,191 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-10-15 14:12:11,197 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-10-15 14:12:11,200 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-10-15 14:12:11,232 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-10-15 14:12:11,232 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-10-15 14:12:11,233 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-10-15 14:12:11,234 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-10-15 14:12:11,235 INFO L153 SettingsManager]: * Use memory slicer=true [2024-10-15 14:12:11,235 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-10-15 14:12:11,236 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-10-15 14:12:11,236 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-10-15 14:12:11,239 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-10-15 14:12:11,240 INFO L153 SettingsManager]: * Use SBE=true [2024-10-15 14:12:11,240 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-10-15 14:12:11,240 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-10-15 14:12:11,240 INFO L153 SettingsManager]: * sizeof long=4 [2024-10-15 14:12:11,241 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-10-15 14:12:11,241 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-10-15 14:12:11,241 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-10-15 14:12:11,242 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-10-15 14:12:11,242 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-10-15 14:12:11,242 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-10-15 14:12:11,242 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-10-15 14:12:11,242 INFO L153 SettingsManager]: * sizeof long double=12 [2024-10-15 14:12:11,243 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-10-15 14:12:11,243 INFO L153 SettingsManager]: * Use constant arrays=true [2024-10-15 14:12:11,243 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-10-15 14:12:11,243 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-10-15 14:12:11,243 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-10-15 14:12:11,244 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-10-15 14:12:11,244 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-10-15 14:12:11,244 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-10-15 14:12:11,244 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-10-15 14:12:11,245 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-10-15 14:12:11,245 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-10-15 14:12:11,245 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-10-15 14:12:11,248 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-10-15 14:12:11,248 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-10-15 14:12:11,248 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-10-15 14:12:11,249 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-10-15 14:12:11,249 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 0cf9175e436d0e00a51b884dabf87739d3176e3315a908e56fcba99730a10796 Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-10-15 14:12:11,534 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-10-15 14:12:11,559 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-10-15 14:12:11,561 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-10-15 14:12:11,562 INFO L270 PluginConnector]: Initializing CDTParser... [2024-10-15 14:12:11,562 INFO L274 PluginConnector]: CDTParser initialized [2024-10-15 14:12:11,563 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/loops/sum_array-2-2.i [2024-10-15 14:12:12,947 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-10-15 14:12:13,119 INFO L384 CDTParser]: Found 1 translation units. [2024-10-15 14:12:13,119 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops/sum_array-2-2.i [2024-10-15 14:12:13,126 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/3852009ad/ac53190745544bfeaa13f727f6f69d8f/FLAGfe8b95af8 [2024-10-15 14:12:13,141 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/3852009ad/ac53190745544bfeaa13f727f6f69d8f [2024-10-15 14:12:13,143 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-10-15 14:12:13,144 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-10-15 14:12:13,146 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-10-15 14:12:13,146 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-10-15 14:12:13,150 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-10-15 14:12:13,151 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,152 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@22ea4025 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13, skipping insertion in model container [2024-10-15 14:12:13,152 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,168 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-10-15 14:12:13,316 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops/sum_array-2-2.i[940,953] [2024-10-15 14:12:13,334 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-10-15 14:12:13,341 INFO L200 MainTranslator]: Completed pre-run [2024-10-15 14:12:13,351 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops/sum_array-2-2.i[940,953] [2024-10-15 14:12:13,361 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-10-15 14:12:13,379 INFO L204 MainTranslator]: Completed translation [2024-10-15 14:12:13,379 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13 WrapperNode [2024-10-15 14:12:13,379 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-10-15 14:12:13,380 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-10-15 14:12:13,381 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-10-15 14:12:13,381 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-10-15 14:12:13,392 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,400 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,408 INFO L138 Inliner]: procedures = 18, calls = 37, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-10-15 14:12:13,408 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-10-15 14:12:13,409 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-10-15 14:12:13,410 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-10-15 14:12:13,410 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-10-15 14:12:13,422 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,422 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,429 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,456 INFO L175 MemorySlicer]: Split 14 memory accesses to 4 slices as follows [2, 5, 2, 5]. 36 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0, 0, 0]. The 3 writes are split as follows [0, 1, 1, 1]. [2024-10-15 14:12:13,457 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,458 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,469 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,477 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,479 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,483 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,485 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-10-15 14:12:13,489 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-10-15 14:12:13,489 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-10-15 14:12:13,489 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-10-15 14:12:13,490 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (1/1) ... [2024-10-15 14:12:13,496 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-10-15 14:12:13,507 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:12:13,521 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-10-15 14:12:13,526 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-10-15 14:12:13,569 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-10-15 14:12:13,569 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-10-15 14:12:13,570 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#2 [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#3 [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2024-10-15 14:12:13,570 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2024-10-15 14:12:13,571 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#2 [2024-10-15 14:12:13,571 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#3 [2024-10-15 14:12:13,571 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-10-15 14:12:13,571 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-10-15 14:12:13,571 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-10-15 14:12:13,571 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-10-15 14:12:13,572 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2024-10-15 14:12:13,572 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2024-10-15 14:12:13,572 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#2 [2024-10-15 14:12:13,572 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#3 [2024-10-15 14:12:13,572 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-10-15 14:12:13,572 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-10-15 14:12:13,573 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2024-10-15 14:12:13,686 INFO L238 CfgBuilder]: Building ICFG [2024-10-15 14:12:13,687 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-10-15 14:12:13,931 INFO L? ?]: Removed 11 outVars from TransFormulas that were not future-live. [2024-10-15 14:12:13,931 INFO L287 CfgBuilder]: Performing block encoding [2024-10-15 14:12:13,957 INFO L309 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-10-15 14:12:13,958 INFO L314 CfgBuilder]: Removed 4 assume(true) statements. [2024-10-15 14:12:13,958 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.10 02:12:13 BoogieIcfgContainer [2024-10-15 14:12:13,958 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-10-15 14:12:13,960 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-10-15 14:12:13,960 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-10-15 14:12:13,965 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-10-15 14:12:13,966 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 15.10 02:12:13" (1/3) ... [2024-10-15 14:12:13,966 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7196f7c2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.10 02:12:13, skipping insertion in model container [2024-10-15 14:12:13,967 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.10 02:12:13" (2/3) ... [2024-10-15 14:12:13,968 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7196f7c2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.10 02:12:13, skipping insertion in model container [2024-10-15 14:12:13,968 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.10 02:12:13" (3/3) ... [2024-10-15 14:12:13,969 INFO L112 eAbstractionObserver]: Analyzing ICFG sum_array-2-2.i [2024-10-15 14:12:13,983 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-10-15 14:12:13,983 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-10-15 14:12:14,024 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-10-15 14:12:14,030 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@ef9acd6, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-10-15 14:12:14,030 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-10-15 14:12:14,034 INFO L276 IsEmpty]: Start isEmpty. Operand has 30 states, 22 states have (on average 1.6818181818181819) internal successors, (37), 23 states have internal predecessors, (37), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:14,041 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-10-15 14:12:14,041 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:14,041 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:14,042 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:14,046 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:14,046 INFO L85 PathProgramCache]: Analyzing trace with hash 868990998, now seen corresponding path program 1 times [2024-10-15 14:12:14,055 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:14,056 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [305175816] [2024-10-15 14:12:14,056 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:14,056 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:14,180 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:14,256 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:14,262 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:14,271 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-10-15 14:12:14,275 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:14,276 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [305175816] [2024-10-15 14:12:14,276 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [305175816] provided 1 perfect and 0 imperfect interpolant sequences [2024-10-15 14:12:14,277 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-10-15 14:12:14,277 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-10-15 14:12:14,282 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1994798519] [2024-10-15 14:12:14,282 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-10-15 14:12:14,287 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-10-15 14:12:14,287 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:14,310 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-10-15 14:12:14,312 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-10-15 14:12:14,314 INFO L87 Difference]: Start difference. First operand has 30 states, 22 states have (on average 1.6818181818181819) internal successors, (37), 23 states have internal predecessors, (37), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-10-15 14:12:14,354 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:12:14,354 INFO L93 Difference]: Finished difference Result 51 states and 73 transitions. [2024-10-15 14:12:14,356 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-10-15 14:12:14,357 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-10-15 14:12:14,358 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:12:14,363 INFO L225 Difference]: With dead ends: 51 [2024-10-15 14:12:14,363 INFO L226 Difference]: Without dead ends: 25 [2024-10-15 14:12:14,366 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-10-15 14:12:14,371 INFO L432 NwaCegarLoop]: 34 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 34 SdHoareTripleChecker+Invalid, 4 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-10-15 14:12:14,372 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 34 Invalid, 4 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-10-15 14:12:14,387 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 25 states. [2024-10-15 14:12:14,399 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 25 to 25. [2024-10-15 14:12:14,402 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 25 states, 19 states have (on average 1.2105263157894737) internal successors, (23), 19 states have internal predecessors, (23), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-10-15 14:12:14,403 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 25 states to 25 states and 28 transitions. [2024-10-15 14:12:14,406 INFO L78 Accepts]: Start accepts. Automaton has 25 states and 28 transitions. Word has length 17 [2024-10-15 14:12:14,406 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:12:14,406 INFO L471 AbstractCegarLoop]: Abstraction has 25 states and 28 transitions. [2024-10-15 14:12:14,407 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-10-15 14:12:14,407 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:14,408 INFO L276 IsEmpty]: Start isEmpty. Operand 25 states and 28 transitions. [2024-10-15 14:12:14,408 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-10-15 14:12:14,408 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:14,409 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:14,409 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-10-15 14:12:14,409 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:14,410 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:14,410 INFO L85 PathProgramCache]: Analyzing trace with hash 256506248, now seen corresponding path program 1 times [2024-10-15 14:12:14,410 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:14,410 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [760285057] [2024-10-15 14:12:14,411 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:14,411 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:14,475 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:14,729 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:14,731 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:14,738 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-10-15 14:12:14,738 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:14,739 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [760285057] [2024-10-15 14:12:14,739 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [760285057] provided 1 perfect and 0 imperfect interpolant sequences [2024-10-15 14:12:14,739 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-10-15 14:12:14,739 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-10-15 14:12:14,741 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2118464934] [2024-10-15 14:12:14,741 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-10-15 14:12:14,743 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-10-15 14:12:14,744 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:14,745 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-10-15 14:12:14,745 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-10-15 14:12:14,745 INFO L87 Difference]: Start difference. First operand 25 states and 28 transitions. Second operand has 5 states, 5 states have (on average 2.6) internal successors, (13), 5 states have internal predecessors, (13), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-10-15 14:12:14,869 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:12:14,870 INFO L93 Difference]: Finished difference Result 56 states and 67 transitions. [2024-10-15 14:12:14,870 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-10-15 14:12:14,871 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.6) internal successors, (13), 5 states have internal predecessors, (13), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-10-15 14:12:14,871 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:12:14,873 INFO L225 Difference]: With dead ends: 56 [2024-10-15 14:12:14,874 INFO L226 Difference]: Without dead ends: 35 [2024-10-15 14:12:14,874 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-10-15 14:12:14,876 INFO L432 NwaCegarLoop]: 15 mSDtfsCounter, 5 mSDsluCounter, 33 mSDsCounter, 0 mSdLazyCounter, 60 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 6 SdHoareTripleChecker+Valid, 48 SdHoareTripleChecker+Invalid, 69 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 60 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-10-15 14:12:14,876 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [6 Valid, 48 Invalid, 69 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 60 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-10-15 14:12:14,877 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 35 states. [2024-10-15 14:12:14,883 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 35 to 28. [2024-10-15 14:12:14,884 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 28 states, 22 states have (on average 1.1818181818181819) internal successors, (26), 22 states have internal predecessors, (26), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-10-15 14:12:14,885 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 28 states to 28 states and 31 transitions. [2024-10-15 14:12:14,885 INFO L78 Accepts]: Start accepts. Automaton has 28 states and 31 transitions. Word has length 17 [2024-10-15 14:12:14,885 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:12:14,885 INFO L471 AbstractCegarLoop]: Abstraction has 28 states and 31 transitions. [2024-10-15 14:12:14,886 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.6) internal successors, (13), 5 states have internal predecessors, (13), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-10-15 14:12:14,886 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:14,886 INFO L276 IsEmpty]: Start isEmpty. Operand 28 states and 31 transitions. [2024-10-15 14:12:14,887 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-10-15 14:12:14,887 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:14,887 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:14,887 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-10-15 14:12:14,888 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:14,888 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:14,888 INFO L85 PathProgramCache]: Analyzing trace with hash 1240316604, now seen corresponding path program 1 times [2024-10-15 14:12:14,888 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:14,889 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1453084427] [2024-10-15 14:12:14,889 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:14,889 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:15,000 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:16,144 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:16,147 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:16,153 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:16,153 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:16,153 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1453084427] [2024-10-15 14:12:16,153 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1453084427] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:12:16,153 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1258698372] [2024-10-15 14:12:16,154 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:16,154 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:16,154 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:12:16,156 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:12:16,158 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-10-15 14:12:16,241 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:16,244 INFO L255 TraceCheckSpWp]: Trace formula consists of 130 conjuncts, 26 conjuncts are in the unsatisfiable core [2024-10-15 14:12:16,250 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:12:16,331 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 17 [2024-10-15 14:12:16,394 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-10-15 14:12:16,400 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-10-15 14:12:16,404 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-10-15 14:12:16,435 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-10-15 14:12:16,435 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:12:16,651 INFO L349 Elim1Store]: treesize reduction 5, result has 50.0 percent of original size [2024-10-15 14:12:16,652 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 83 treesize of output 63 [2024-10-15 14:12:16,668 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:16,668 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 25 [2024-10-15 14:12:16,675 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 40 [2024-10-15 14:12:16,689 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:16,690 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 2 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 40 treesize of output 87 [2024-10-15 14:12:16,750 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:16,751 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1258698372] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:12:16,751 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:12:16,752 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 9, 8] total 17 [2024-10-15 14:12:16,752 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1984469976] [2024-10-15 14:12:16,752 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:12:16,752 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 17 states [2024-10-15 14:12:16,753 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:16,753 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 17 interpolants. [2024-10-15 14:12:16,754 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=55, Invalid=217, Unknown=0, NotChecked=0, Total=272 [2024-10-15 14:12:16,756 INFO L87 Difference]: Start difference. First operand 28 states and 31 transitions. Second operand has 17 states, 16 states have (on average 2.6875) internal successors, (43), 15 states have internal predecessors, (43), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-10-15 14:12:17,019 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:12:17,019 INFO L93 Difference]: Finished difference Result 42 states and 45 transitions. [2024-10-15 14:12:17,020 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-10-15 14:12:17,020 INFO L78 Accepts]: Start accepts. Automaton has has 17 states, 16 states have (on average 2.6875) internal successors, (43), 15 states have internal predecessors, (43), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2024-10-15 14:12:17,021 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:12:17,021 INFO L225 Difference]: With dead ends: 42 [2024-10-15 14:12:17,022 INFO L226 Difference]: Without dead ends: 40 [2024-10-15 14:12:17,023 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 43 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 77 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=81, Invalid=299, Unknown=0, NotChecked=0, Total=380 [2024-10-15 14:12:17,025 INFO L432 NwaCegarLoop]: 12 mSDtfsCounter, 20 mSDsluCounter, 107 mSDsCounter, 0 mSdLazyCounter, 193 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 119 SdHoareTripleChecker+Invalid, 202 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 193 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-10-15 14:12:17,025 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 119 Invalid, 202 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 193 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-10-15 14:12:17,028 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 40 states. [2024-10-15 14:12:17,036 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 40 to 34. [2024-10-15 14:12:17,036 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 34 states, 26 states have (on average 1.1538461538461537) internal successors, (30), 27 states have internal predecessors, (30), 4 states have call successors, (4), 4 states have call predecessors, (4), 3 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:17,037 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 34 states to 34 states and 37 transitions. [2024-10-15 14:12:17,037 INFO L78 Accepts]: Start accepts. Automaton has 34 states and 37 transitions. Word has length 24 [2024-10-15 14:12:17,038 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:12:17,038 INFO L471 AbstractCegarLoop]: Abstraction has 34 states and 37 transitions. [2024-10-15 14:12:17,038 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 17 states, 16 states have (on average 2.6875) internal successors, (43), 15 states have internal predecessors, (43), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-10-15 14:12:17,038 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:17,038 INFO L276 IsEmpty]: Start isEmpty. Operand 34 states and 37 transitions. [2024-10-15 14:12:17,040 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-10-15 14:12:17,040 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:17,040 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:17,057 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-10-15 14:12:17,241 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:17,242 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:17,242 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:17,242 INFO L85 PathProgramCache]: Analyzing trace with hash 1226106264, now seen corresponding path program 1 times [2024-10-15 14:12:17,242 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:17,242 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1295807219] [2024-10-15 14:12:17,242 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:17,243 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:17,268 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:17,474 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:17,475 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:17,477 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-10-15 14:12:17,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:17,483 INFO L134 CoverageAnalysis]: Checked inductivity of 7 backedges. 3 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:17,483 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:17,483 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1295807219] [2024-10-15 14:12:17,484 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1295807219] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:12:17,484 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1343089651] [2024-10-15 14:12:17,484 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:17,484 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:17,484 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:12:17,486 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:12:17,488 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-10-15 14:12:17,558 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:17,559 INFO L255 TraceCheckSpWp]: Trace formula consists of 148 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-10-15 14:12:17,561 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:12:17,671 INFO L134 CoverageAnalysis]: Checked inductivity of 7 backedges. 3 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:17,672 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:12:17,856 INFO L134 CoverageAnalysis]: Checked inductivity of 7 backedges. 3 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:17,857 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1343089651] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:12:17,857 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:12:17,857 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 7, 7] total 13 [2024-10-15 14:12:17,857 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1479429118] [2024-10-15 14:12:17,857 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:12:17,858 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2024-10-15 14:12:17,858 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:17,858 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2024-10-15 14:12:17,859 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=46, Invalid=110, Unknown=0, NotChecked=0, Total=156 [2024-10-15 14:12:17,859 INFO L87 Difference]: Start difference. First operand 34 states and 37 transitions. Second operand has 13 states, 13 states have (on average 3.0) internal successors, (39), 13 states have internal predecessors, (39), 4 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:18,087 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:12:18,088 INFO L93 Difference]: Finished difference Result 84 states and 96 transitions. [2024-10-15 14:12:18,088 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-10-15 14:12:18,088 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 13 states have (on average 3.0) internal successors, (39), 13 states have internal predecessors, (39), 4 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 31 [2024-10-15 14:12:18,089 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:12:18,089 INFO L225 Difference]: With dead ends: 84 [2024-10-15 14:12:18,091 INFO L226 Difference]: Without dead ends: 49 [2024-10-15 14:12:18,091 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 60 SyntacticMatches, 2 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 44 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=46, Invalid=110, Unknown=0, NotChecked=0, Total=156 [2024-10-15 14:12:18,092 INFO L432 NwaCegarLoop]: 17 mSDtfsCounter, 31 mSDsluCounter, 58 mSDsCounter, 0 mSdLazyCounter, 185 mSolverCounterSat, 34 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 75 SdHoareTripleChecker+Invalid, 219 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 34 IncrementalHoareTripleChecker+Valid, 185 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-10-15 14:12:18,093 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 75 Invalid, 219 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [34 Valid, 185 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-10-15 14:12:18,094 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 49 states. [2024-10-15 14:12:18,104 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 49 to 41. [2024-10-15 14:12:18,105 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 33 states have (on average 1.121212121212121) internal successors, (37), 34 states have internal predecessors, (37), 4 states have call successors, (4), 4 states have call predecessors, (4), 3 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:18,106 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 44 transitions. [2024-10-15 14:12:18,106 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 44 transitions. Word has length 31 [2024-10-15 14:12:18,106 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:12:18,106 INFO L471 AbstractCegarLoop]: Abstraction has 41 states and 44 transitions. [2024-10-15 14:12:18,107 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 13 states have (on average 3.0) internal successors, (39), 13 states have internal predecessors, (39), 4 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:18,107 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:18,107 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 44 transitions. [2024-10-15 14:12:18,108 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2024-10-15 14:12:18,108 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:18,108 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:18,126 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-10-15 14:12:18,311 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:18,312 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:18,312 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:18,313 INFO L85 PathProgramCache]: Analyzing trace with hash 1365597324, now seen corresponding path program 2 times [2024-10-15 14:12:18,313 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:18,313 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1056498571] [2024-10-15 14:12:18,313 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:18,313 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:18,441 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:20,964 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:20,967 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:20,969 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-10-15 14:12:20,972 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:20,984 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 2 proven. 15 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-10-15 14:12:20,984 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:20,984 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1056498571] [2024-10-15 14:12:20,985 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1056498571] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:12:20,985 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1219514689] [2024-10-15 14:12:20,985 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-10-15 14:12:20,985 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:20,985 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:12:20,987 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:12:20,989 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-10-15 14:12:21,070 INFO L227 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-10-15 14:12:21,070 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:12:21,072 INFO L255 TraceCheckSpWp]: Trace formula consists of 185 conjuncts, 34 conjuncts are in the unsatisfiable core [2024-10-15 14:12:21,074 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:12:21,185 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 23 [2024-10-15 14:12:21,460 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-10-15 14:12:21,464 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 15 [2024-10-15 14:12:21,467 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 9 [2024-10-15 14:12:21,518 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:21,518 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:12:21,934 INFO L349 Elim1Store]: treesize reduction 5, result has 50.0 percent of original size [2024-10-15 14:12:21,935 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 89 treesize of output 67 [2024-10-15 14:12:21,950 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:21,950 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 25 [2024-10-15 14:12:21,958 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 40 [2024-10-15 14:12:21,970 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:21,971 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 2 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 40 treesize of output 87 [2024-10-15 14:12:22,067 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 2 proven. 5 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-10-15 14:12:22,068 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1219514689] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:12:22,068 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:12:22,068 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 12, 10] total 33 [2024-10-15 14:12:22,069 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1132387870] [2024-10-15 14:12:22,069 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:12:22,070 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-10-15 14:12:22,070 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:22,071 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-10-15 14:12:22,072 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=137, Invalid=919, Unknown=0, NotChecked=0, Total=1056 [2024-10-15 14:12:22,073 INFO L87 Difference]: Start difference. First operand 41 states and 44 transitions. Second operand has 33 states, 32 states have (on average 2.46875) internal successors, (79), 31 states have internal predecessors, (79), 5 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2024-10-15 14:12:27,169 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-10-15 14:12:31,562 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.99s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-10-15 14:12:32,858 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:12:32,858 INFO L93 Difference]: Finished difference Result 96 states and 110 transitions. [2024-10-15 14:12:32,859 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 37 states. [2024-10-15 14:12:32,859 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 32 states have (on average 2.46875) internal successors, (79), 31 states have internal predecessors, (79), 5 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) Word has length 38 [2024-10-15 14:12:32,859 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:12:32,860 INFO L225 Difference]: With dead ends: 96 [2024-10-15 14:12:32,860 INFO L226 Difference]: Without dead ends: 57 [2024-10-15 14:12:32,861 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 69 SyntacticMatches, 1 SemanticMatches, 53 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 744 ImplicationChecksByTransitivity, 3.6s TimeCoverageRelationStatistics Valid=481, Invalid=2489, Unknown=0, NotChecked=0, Total=2970 [2024-10-15 14:12:32,862 INFO L432 NwaCegarLoop]: 16 mSDtfsCounter, 92 mSDsluCounter, 171 mSDsCounter, 0 mSdLazyCounter, 585 mSolverCounterSat, 105 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 7.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 93 SdHoareTripleChecker+Valid, 187 SdHoareTripleChecker+Invalid, 691 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 105 IncrementalHoareTripleChecker+Valid, 585 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 8.0s IncrementalHoareTripleChecker+Time [2024-10-15 14:12:32,862 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [93 Valid, 187 Invalid, 691 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [105 Valid, 585 Invalid, 1 Unknown, 0 Unchecked, 8.0s Time] [2024-10-15 14:12:32,863 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2024-10-15 14:12:32,876 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 51. [2024-10-15 14:12:32,877 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 51 states, 41 states have (on average 1.0975609756097562) internal successors, (45), 42 states have internal predecessors, (45), 5 states have call successors, (5), 5 states have call predecessors, (5), 4 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2024-10-15 14:12:32,877 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 51 states to 51 states and 54 transitions. [2024-10-15 14:12:32,878 INFO L78 Accepts]: Start accepts. Automaton has 51 states and 54 transitions. Word has length 38 [2024-10-15 14:12:32,878 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:12:32,878 INFO L471 AbstractCegarLoop]: Abstraction has 51 states and 54 transitions. [2024-10-15 14:12:32,878 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 32 states have (on average 2.46875) internal successors, (79), 31 states have internal predecessors, (79), 5 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2024-10-15 14:12:32,879 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:32,879 INFO L276 IsEmpty]: Start isEmpty. Operand 51 states and 54 transitions. [2024-10-15 14:12:32,879 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-10-15 14:12:32,880 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:32,880 INFO L215 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:32,897 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-10-15 14:12:33,080 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:33,081 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:33,081 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:33,081 INFO L85 PathProgramCache]: Analyzing trace with hash 1196273537, now seen corresponding path program 3 times [2024-10-15 14:12:33,082 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:33,082 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1342808312] [2024-10-15 14:12:33,082 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:33,082 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:33,117 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:33,326 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:33,327 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:33,329 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2024-10-15 14:12:33,329 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:33,330 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2024-10-15 14:12:33,331 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:33,332 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 4 proven. 17 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-10-15 14:12:33,332 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:33,332 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1342808312] [2024-10-15 14:12:33,333 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1342808312] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:12:33,333 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [93579070] [2024-10-15 14:12:33,333 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-10-15 14:12:33,333 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:33,333 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:12:33,335 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:12:33,336 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-10-15 14:12:33,483 INFO L227 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2024-10-15 14:12:33,484 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:12:33,486 INFO L255 TraceCheckSpWp]: Trace formula consists of 155 conjuncts, 38 conjuncts are in the unsatisfiable core [2024-10-15 14:12:33,489 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:12:33,781 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 17 [2024-10-15 14:12:33,841 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 38 [2024-10-15 14:12:34,401 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:34,402 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 1 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 44 treesize of output 46 [2024-10-15 14:12:34,419 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:34,420 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 1 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 46 treesize of output 48 [2024-10-15 14:12:34,436 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:34,436 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 1 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 38 treesize of output 40 [2024-10-15 14:12:34,538 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 0 proven. 12 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2024-10-15 14:12:34,538 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:12:34,841 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [93579070] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:12:34,841 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-10-15 14:12:34,842 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 12] total 20 [2024-10-15 14:12:34,842 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [812549777] [2024-10-15 14:12:34,842 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-10-15 14:12:34,842 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-10-15 14:12:34,843 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:34,843 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-10-15 14:12:34,844 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=362, Unknown=0, NotChecked=0, Total=420 [2024-10-15 14:12:34,844 INFO L87 Difference]: Start difference. First operand 51 states and 54 transitions. Second operand has 20 states, 19 states have (on average 3.0) internal successors, (57), 19 states have internal predecessors, (57), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:35,756 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:12:35,757 INFO L93 Difference]: Finished difference Result 118 states and 127 transitions. [2024-10-15 14:12:35,757 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-10-15 14:12:35,758 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 19 states have (on average 3.0) internal successors, (57), 19 states have internal predecessors, (57), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 48 [2024-10-15 14:12:35,758 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:12:35,760 INFO L225 Difference]: With dead ends: 118 [2024-10-15 14:12:35,760 INFO L226 Difference]: Without dead ends: 91 [2024-10-15 14:12:35,761 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 87 GetRequests, 46 SyntacticMatches, 5 SemanticMatches, 36 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 310 ImplicationChecksByTransitivity, 1.1s TimeCoverageRelationStatistics Valid=243, Invalid=1163, Unknown=0, NotChecked=0, Total=1406 [2024-10-15 14:12:35,765 INFO L432 NwaCegarLoop]: 16 mSDtfsCounter, 90 mSDsluCounter, 171 mSDsCounter, 0 mSdLazyCounter, 429 mSolverCounterSat, 91 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 90 SdHoareTripleChecker+Valid, 187 SdHoareTripleChecker+Invalid, 520 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 91 IncrementalHoareTripleChecker+Valid, 429 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-10-15 14:12:35,765 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [90 Valid, 187 Invalid, 520 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [91 Valid, 429 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-10-15 14:12:35,766 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2024-10-15 14:12:35,786 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 55. [2024-10-15 14:12:35,786 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 45 states have (on average 1.0888888888888888) internal successors, (49), 46 states have internal predecessors, (49), 5 states have call successors, (5), 5 states have call predecessors, (5), 4 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2024-10-15 14:12:35,787 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 58 transitions. [2024-10-15 14:12:35,787 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 58 transitions. Word has length 48 [2024-10-15 14:12:35,787 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:12:35,788 INFO L471 AbstractCegarLoop]: Abstraction has 55 states and 58 transitions. [2024-10-15 14:12:35,788 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 19 states have (on average 3.0) internal successors, (57), 19 states have internal predecessors, (57), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-10-15 14:12:35,788 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:35,788 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 58 transitions. [2024-10-15 14:12:35,790 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2024-10-15 14:12:35,790 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:12:35,790 INFO L215 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:12:35,804 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-10-15 14:12:35,991 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:35,991 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:12:35,991 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:12:35,992 INFO L85 PathProgramCache]: Analyzing trace with hash 1482814844, now seen corresponding path program 4 times [2024-10-15 14:12:35,992 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:12:35,992 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1598339801] [2024-10-15 14:12:35,992 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:12:35,992 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:12:36,110 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:38,664 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:12:38,666 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:38,668 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2024-10-15 14:12:38,673 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:38,679 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-10-15 14:12:38,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:12:38,692 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 4 proven. 37 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-10-15 14:12:38,692 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:12:38,692 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1598339801] [2024-10-15 14:12:38,693 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1598339801] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:12:38,693 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1226218703] [2024-10-15 14:12:38,693 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-10-15 14:12:38,693 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:12:38,693 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:12:38,695 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:12:38,696 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-10-15 14:12:38,798 INFO L227 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-10-15 14:12:38,799 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:12:38,801 INFO L255 TraceCheckSpWp]: Trace formula consists of 240 conjuncts, 47 conjuncts are in the unsatisfiable core [2024-10-15 14:12:38,806 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:12:38,977 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 23 [2024-10-15 14:12:40,556 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-10-15 14:12:40,562 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 15 [2024-10-15 14:12:40,570 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 9 [2024-10-15 14:12:40,634 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 43 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-10-15 14:12:40,634 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:12:53,036 INFO L349 Elim1Store]: treesize reduction 5, result has 50.0 percent of original size [2024-10-15 14:12:53,036 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 89 treesize of output 67 [2024-10-15 14:12:53,049 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:53,049 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 25 [2024-10-15 14:12:53,073 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 40 [2024-10-15 14:12:53,091 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:12:53,091 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 2 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 40 treesize of output 87 [2024-10-15 14:12:53,208 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 4 proven. 13 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2024-10-15 14:12:53,208 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1226218703] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:12:53,209 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:12:53,209 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21, 18, 12] total 42 [2024-10-15 14:12:53,209 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1107159039] [2024-10-15 14:12:53,209 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:12:53,209 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 42 states [2024-10-15 14:12:53,209 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:12:53,210 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 42 interpolants. [2024-10-15 14:12:53,211 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=176, Invalid=1543, Unknown=3, NotChecked=0, Total=1722 [2024-10-15 14:12:53,211 INFO L87 Difference]: Start difference. First operand 55 states and 58 transitions. Second operand has 42 states, 41 states have (on average 2.317073170731707) internal successors, (95), 40 states have internal predecessors, (95), 8 states have call successors, (10), 4 states have call predecessors, (10), 3 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-10-15 14:13:04,841 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.14s for a HTC check with result VALID. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2024-10-15 14:13:04,848 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:13:04,848 INFO L93 Difference]: Finished difference Result 116 states and 131 transitions. [2024-10-15 14:13:04,848 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2024-10-15 14:13:04,848 INFO L78 Accepts]: Start accepts. Automaton has has 42 states, 41 states have (on average 2.317073170731707) internal successors, (95), 40 states have internal predecessors, (95), 8 states have call successors, (10), 4 states have call predecessors, (10), 3 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Word has length 52 [2024-10-15 14:13:04,849 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:13:04,850 INFO L225 Difference]: With dead ends: 116 [2024-10-15 14:13:04,850 INFO L226 Difference]: Without dead ends: 114 [2024-10-15 14:13:04,852 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 157 GetRequests, 91 SyntacticMatches, 3 SemanticMatches, 63 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1100 ImplicationChecksByTransitivity, 22.9s TimeCoverageRelationStatistics Valid=524, Invalid=3633, Unknown=3, NotChecked=0, Total=4160 [2024-10-15 14:13:04,853 INFO L432 NwaCegarLoop]: 15 mSDtfsCounter, 146 mSDsluCounter, 212 mSDsCounter, 0 mSdLazyCounter, 836 mSolverCounterSat, 122 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 147 SdHoareTripleChecker+Valid, 227 SdHoareTripleChecker+Invalid, 958 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 122 IncrementalHoareTripleChecker+Valid, 836 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.0s IncrementalHoareTripleChecker+Time [2024-10-15 14:13:04,853 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [147 Valid, 227 Invalid, 958 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [122 Valid, 836 Invalid, 0 Unknown, 0 Unchecked, 3.0s Time] [2024-10-15 14:13:04,854 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 114 states. [2024-10-15 14:13:04,890 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 114 to 62. [2024-10-15 14:13:04,890 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 50 states have (on average 1.08) internal successors, (54), 51 states have internal predecessors, (54), 6 states have call successors, (6), 6 states have call predecessors, (6), 5 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2024-10-15 14:13:04,890 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 65 transitions. [2024-10-15 14:13:04,891 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 65 transitions. Word has length 52 [2024-10-15 14:13:04,891 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:13:04,891 INFO L471 AbstractCegarLoop]: Abstraction has 62 states and 65 transitions. [2024-10-15 14:13:04,891 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 42 states, 41 states have (on average 2.317073170731707) internal successors, (95), 40 states have internal predecessors, (95), 8 states have call successors, (10), 4 states have call predecessors, (10), 3 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-10-15 14:13:04,891 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:13:04,892 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 65 transitions. [2024-10-15 14:13:04,892 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-10-15 14:13:04,892 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:13:04,892 INFO L215 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:13:04,906 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-10-15 14:13:05,093 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-10-15 14:13:05,093 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:13:05,094 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:13:05,094 INFO L85 PathProgramCache]: Analyzing trace with hash -1121119528, now seen corresponding path program 5 times [2024-10-15 14:13:05,094 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:13:05,094 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [248770780] [2024-10-15 14:13:05,094 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:13:05,094 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:13:05,141 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:13:05,405 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:13:05,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:13:05,407 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2024-10-15 14:13:05,408 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:13:05,411 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-10-15 14:13:05,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:13:05,416 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-10-15 14:13:05,417 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:13:05,420 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 9 proven. 24 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2024-10-15 14:13:05,421 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:13:05,421 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [248770780] [2024-10-15 14:13:05,421 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [248770780] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:13:05,421 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [474584079] [2024-10-15 14:13:05,421 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-10-15 14:13:05,421 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:13:05,421 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:13:05,423 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:13:05,424 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-10-15 14:14:37,166 INFO L227 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2024-10-15 14:14:37,166 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:14:37,170 INFO L255 TraceCheckSpWp]: Trace formula consists of 258 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-10-15 14:14:37,172 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:14:37,361 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 9 proven. 24 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2024-10-15 14:14:37,362 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:14:37,580 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 9 proven. 24 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2024-10-15 14:14:37,580 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [474584079] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:14:37,580 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:14:37,580 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 11, 11] total 19 [2024-10-15 14:14:37,580 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [25001486] [2024-10-15 14:14:37,581 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:14:37,581 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-10-15 14:14:37,581 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:14:37,582 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-10-15 14:14:37,582 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=73, Invalid=269, Unknown=0, NotChecked=0, Total=342 [2024-10-15 14:14:37,582 INFO L87 Difference]: Start difference. First operand 62 states and 65 transitions. Second operand has 19 states, 19 states have (on average 2.8947368421052633) internal successors, (55), 19 states have internal predecessors, (55), 8 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-10-15 14:14:38,037 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:14:38,037 INFO L93 Difference]: Finished difference Result 142 states and 156 transitions. [2024-10-15 14:14:38,037 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-10-15 14:14:38,037 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 2.8947368421052633) internal successors, (55), 19 states have internal predecessors, (55), 8 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Word has length 59 [2024-10-15 14:14:38,038 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:14:38,038 INFO L225 Difference]: With dead ends: 142 [2024-10-15 14:14:38,038 INFO L226 Difference]: Without dead ends: 77 [2024-10-15 14:14:38,039 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 136 GetRequests, 115 SyntacticMatches, 4 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 71 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=73, Invalid=269, Unknown=0, NotChecked=0, Total=342 [2024-10-15 14:14:38,040 INFO L432 NwaCegarLoop]: 21 mSDtfsCounter, 47 mSDsluCounter, 158 mSDsCounter, 0 mSdLazyCounter, 520 mSolverCounterSat, 62 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 51 SdHoareTripleChecker+Valid, 179 SdHoareTripleChecker+Invalid, 582 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 62 IncrementalHoareTripleChecker+Valid, 520 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-10-15 14:14:38,040 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [51 Valid, 179 Invalid, 582 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [62 Valid, 520 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-10-15 14:14:38,040 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 77 states. [2024-10-15 14:14:38,070 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 77 to 69. [2024-10-15 14:14:38,070 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 57 states have (on average 1.0701754385964912) internal successors, (61), 58 states have internal predecessors, (61), 6 states have call successors, (6), 6 states have call predecessors, (6), 5 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2024-10-15 14:14:38,071 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 72 transitions. [2024-10-15 14:14:38,071 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 72 transitions. Word has length 59 [2024-10-15 14:14:38,071 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:14:38,072 INFO L471 AbstractCegarLoop]: Abstraction has 69 states and 72 transitions. [2024-10-15 14:14:38,072 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 2.8947368421052633) internal successors, (55), 19 states have internal predecessors, (55), 8 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-10-15 14:14:38,072 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:14:38,072 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 72 transitions. [2024-10-15 14:14:38,073 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2024-10-15 14:14:38,073 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:14:38,073 INFO L215 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:14:38,095 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-10-15 14:14:38,274 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:14:38,274 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:14:38,275 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:14:38,275 INFO L85 PathProgramCache]: Analyzing trace with hash 1279452236, now seen corresponding path program 6 times [2024-10-15 14:14:38,275 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:14:38,275 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1806821051] [2024-10-15 14:14:38,275 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:14:38,275 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:14:38,499 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:41,189 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:14:41,190 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:41,191 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-10-15 14:14:41,193 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:41,197 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-10-15 14:14:41,198 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:41,202 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-10-15 14:14:41,204 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:41,208 INFO L134 CoverageAnalysis]: Checked inductivity of 87 backedges. 6 proven. 69 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-10-15 14:14:41,209 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:14:41,209 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1806821051] [2024-10-15 14:14:41,209 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1806821051] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:14:41,209 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1197839200] [2024-10-15 14:14:41,209 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-10-15 14:14:41,209 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:14:41,210 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:14:41,211 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:14:41,218 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-10-15 14:14:43,010 INFO L227 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 5 check-sat command(s) [2024-10-15 14:14:43,010 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:14:43,012 INFO L255 TraceCheckSpWp]: Trace formula consists of 295 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-10-15 14:14:43,015 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:14:43,247 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 17 [2024-10-15 14:14:43,766 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 25 treesize of output 17 [2024-10-15 14:14:43,770 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 13 [2024-10-15 14:14:43,775 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2024-10-15 14:14:43,823 INFO L134 CoverageAnalysis]: Checked inductivity of 87 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 56 trivial. 0 not checked. [2024-10-15 14:14:43,823 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:14:44,273 INFO L349 Elim1Store]: treesize reduction 5, result has 50.0 percent of original size [2024-10-15 14:14:44,273 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 89 treesize of output 67 [2024-10-15 14:14:44,282 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:14:44,282 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 25 [2024-10-15 14:14:44,285 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 40 [2024-10-15 14:14:44,293 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:14:44,293 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 2 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 40 treesize of output 87 [2024-10-15 14:14:44,303 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 62 treesize of output 12 [2024-10-15 14:14:44,456 INFO L134 CoverageAnalysis]: Checked inductivity of 87 backedges. 6 proven. 25 refuted. 0 times theorem prover too weak. 56 trivial. 0 not checked. [2024-10-15 14:14:44,456 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1197839200] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:14:44,456 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:14:44,456 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 16, 14] total 36 [2024-10-15 14:14:44,457 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1737433366] [2024-10-15 14:14:44,457 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:14:44,457 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 36 states [2024-10-15 14:14:44,457 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:14:44,458 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 36 interpolants. [2024-10-15 14:14:44,458 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=161, Invalid=1099, Unknown=0, NotChecked=0, Total=1260 [2024-10-15 14:14:44,459 INFO L87 Difference]: Start difference. First operand 69 states and 72 transitions. Second operand has 36 states, 35 states have (on average 2.8) internal successors, (98), 34 states have internal predecessors, (98), 11 states have call successors, (13), 4 states have call predecessors, (13), 2 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) [2024-10-15 14:14:45,294 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:14:45,294 INFO L93 Difference]: Finished difference Result 84 states and 87 transitions. [2024-10-15 14:14:45,294 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-10-15 14:14:45,295 INFO L78 Accepts]: Start accepts. Automaton has has 36 states, 35 states have (on average 2.8) internal successors, (98), 34 states have internal predecessors, (98), 11 states have call successors, (13), 4 states have call predecessors, (13), 2 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) Word has length 66 [2024-10-15 14:14:45,295 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:14:45,296 INFO L225 Difference]: With dead ends: 84 [2024-10-15 14:14:45,296 INFO L226 Difference]: Without dead ends: 82 [2024-10-15 14:14:45,297 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 174 GetRequests, 125 SyntacticMatches, 11 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 595 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=200, Invalid=1360, Unknown=0, NotChecked=0, Total=1560 [2024-10-15 14:14:45,297 INFO L432 NwaCegarLoop]: 18 mSDtfsCounter, 32 mSDsluCounter, 274 mSDsCounter, 0 mSdLazyCounter, 1100 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 292 SdHoareTripleChecker+Invalid, 1122 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 1100 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-10-15 14:14:45,298 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 292 Invalid, 1122 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 1100 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-10-15 14:14:45,298 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 82 states. [2024-10-15 14:14:45,328 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 82 to 76. [2024-10-15 14:14:45,329 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 62 states have (on average 1.064516129032258) internal successors, (66), 63 states have internal predecessors, (66), 7 states have call successors, (7), 7 states have call predecessors, (7), 6 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2024-10-15 14:14:45,329 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 79 transitions. [2024-10-15 14:14:45,329 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 79 transitions. Word has length 66 [2024-10-15 14:14:45,329 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:14:45,330 INFO L471 AbstractCegarLoop]: Abstraction has 76 states and 79 transitions. [2024-10-15 14:14:45,330 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 36 states, 35 states have (on average 2.8) internal successors, (98), 34 states have internal predecessors, (98), 11 states have call successors, (13), 4 states have call predecessors, (13), 2 states have return successors, (10), 10 states have call predecessors, (10), 10 states have call successors, (10) [2024-10-15 14:14:45,330 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:14:45,330 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 79 transitions. [2024-10-15 14:14:45,331 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 74 [2024-10-15 14:14:45,331 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:14:45,331 INFO L215 NwaCegarLoop]: trace histogram [5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:14:45,346 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2024-10-15 14:14:45,531 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:14:45,532 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:14:45,532 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:14:45,532 INFO L85 PathProgramCache]: Analyzing trace with hash 1811470856, now seen corresponding path program 7 times [2024-10-15 14:14:45,533 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:14:45,533 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [854130047] [2024-10-15 14:14:45,533 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:14:45,533 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:14:45,588 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,121 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:14:46,123 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,124 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-10-15 14:14:46,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,127 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-10-15 14:14:46,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,129 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-10-15 14:14:46,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,132 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 62 [2024-10-15 14:14:46,133 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,135 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 12 proven. 54 refuted. 0 times theorem prover too weak. 46 trivial. 0 not checked. [2024-10-15 14:14:46,135 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:14:46,135 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [854130047] [2024-10-15 14:14:46,135 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [854130047] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:14:46,135 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [648981419] [2024-10-15 14:14:46,135 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-10-15 14:14:46,136 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:14:46,136 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:14:46,137 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:14:46,139 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-10-15 14:14:46,247 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:46,250 INFO L255 TraceCheckSpWp]: Trace formula consists of 313 conjuncts, 22 conjuncts are in the unsatisfiable core [2024-10-15 14:14:46,251 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:14:46,553 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 12 proven. 44 refuted. 0 times theorem prover too weak. 56 trivial. 0 not checked. [2024-10-15 14:14:46,553 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:14:46,997 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 12 proven. 44 refuted. 0 times theorem prover too weak. 56 trivial. 0 not checked. [2024-10-15 14:14:46,998 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [648981419] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:14:46,998 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:14:46,998 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 13, 13] total 32 [2024-10-15 14:14:46,998 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [509789002] [2024-10-15 14:14:46,998 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:14:46,998 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-10-15 14:14:46,998 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:14:46,999 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-10-15 14:14:46,999 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=164, Invalid=828, Unknown=0, NotChecked=0, Total=992 [2024-10-15 14:14:46,999 INFO L87 Difference]: Start difference. First operand 76 states and 79 transitions. Second operand has 32 states, 32 states have (on average 2.78125) internal successors, (89), 32 states have internal predecessors, (89), 13 states have call successors, (14), 2 states have call predecessors, (14), 1 states have return successors, (12), 12 states have call predecessors, (12), 12 states have call successors, (12) [2024-10-15 14:14:47,545 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:14:47,545 INFO L93 Difference]: Finished difference Result 171 states and 186 transitions. [2024-10-15 14:14:47,545 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-10-15 14:14:47,545 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 2.78125) internal successors, (89), 32 states have internal predecessors, (89), 13 states have call successors, (14), 2 states have call predecessors, (14), 1 states have return successors, (12), 12 states have call predecessors, (12), 12 states have call successors, (12) Word has length 73 [2024-10-15 14:14:47,545 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:14:47,546 INFO L225 Difference]: With dead ends: 171 [2024-10-15 14:14:47,546 INFO L226 Difference]: Without dead ends: 91 [2024-10-15 14:14:47,547 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 172 GetRequests, 137 SyntacticMatches, 5 SemanticMatches, 30 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 245 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=164, Invalid=828, Unknown=0, NotChecked=0, Total=992 [2024-10-15 14:14:47,548 INFO L432 NwaCegarLoop]: 23 mSDtfsCounter, 72 mSDsluCounter, 211 mSDsCounter, 0 mSdLazyCounter, 883 mSolverCounterSat, 96 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 77 SdHoareTripleChecker+Valid, 234 SdHoareTripleChecker+Invalid, 979 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 96 IncrementalHoareTripleChecker+Valid, 883 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-10-15 14:14:47,548 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [77 Valid, 234 Invalid, 979 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [96 Valid, 883 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-10-15 14:14:47,549 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2024-10-15 14:14:47,578 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 83. [2024-10-15 14:14:47,579 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 83 states, 69 states have (on average 1.0579710144927537) internal successors, (73), 70 states have internal predecessors, (73), 7 states have call successors, (7), 7 states have call predecessors, (7), 6 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2024-10-15 14:14:47,579 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 83 states to 83 states and 86 transitions. [2024-10-15 14:14:47,579 INFO L78 Accepts]: Start accepts. Automaton has 83 states and 86 transitions. Word has length 73 [2024-10-15 14:14:47,580 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:14:47,580 INFO L471 AbstractCegarLoop]: Abstraction has 83 states and 86 transitions. [2024-10-15 14:14:47,580 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 2.78125) internal successors, (89), 32 states have internal predecessors, (89), 13 states have call successors, (14), 2 states have call predecessors, (14), 1 states have return successors, (12), 12 states have call predecessors, (12), 12 states have call successors, (12) [2024-10-15 14:14:47,580 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:14:47,580 INFO L276 IsEmpty]: Start isEmpty. Operand 83 states and 86 transitions. [2024-10-15 14:14:47,581 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2024-10-15 14:14:47,581 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:14:47,581 INFO L215 NwaCegarLoop]: trace histogram [5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:14:47,594 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-10-15 14:14:47,782 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:14:47,782 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:14:47,783 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:14:47,783 INFO L85 PathProgramCache]: Analyzing trace with hash -1570893764, now seen corresponding path program 8 times [2024-10-15 14:14:47,783 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:14:47,783 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1722071108] [2024-10-15 14:14:47,783 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:14:47,783 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:14:47,933 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:50,639 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:14:50,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:50,641 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-10-15 14:14:50,642 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:50,646 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-10-15 14:14:50,647 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:50,651 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 62 [2024-10-15 14:14:50,653 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:50,657 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 69 [2024-10-15 14:14:50,658 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:14:50,662 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 8 proven. 111 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2024-10-15 14:14:50,662 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:14:50,662 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1722071108] [2024-10-15 14:14:50,662 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1722071108] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:14:50,663 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1060873331] [2024-10-15 14:14:50,663 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-10-15 14:14:50,663 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:14:50,663 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:14:50,665 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:14:50,666 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-10-15 14:14:50,787 INFO L227 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-10-15 14:14:50,787 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:14:50,789 INFO L255 TraceCheckSpWp]: Trace formula consists of 350 conjuncts, 63 conjuncts are in the unsatisfiable core [2024-10-15 14:14:50,792 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:14:50,996 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 23 [2024-10-15 14:15:00,070 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 21 [2024-10-15 14:15:00,073 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 15 [2024-10-15 14:15:00,074 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 9 [2024-10-15 14:15:00,117 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 0 proven. 126 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-10-15 14:15:00,117 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:15:00,751 INFO L349 Elim1Store]: treesize reduction 5, result has 50.0 percent of original size [2024-10-15 14:15:00,752 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 89 treesize of output 67 [2024-10-15 14:15:00,762 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:15:00,762 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 46 treesize of output 25 [2024-10-15 14:15:00,767 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 40 [2024-10-15 14:15:00,777 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:15:00,778 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 2 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 40 treesize of output 87 [2024-10-15 14:15:00,975 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 8 proven. 41 refuted. 0 times theorem prover too weak. 94 trivial. 0 not checked. [2024-10-15 14:15:00,975 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1060873331] provided 0 perfect and 2 imperfect interpolant sequences [2024-10-15 14:15:00,975 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-10-15 14:15:00,975 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 20, 16] total 48 [2024-10-15 14:15:00,975 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1230549630] [2024-10-15 14:15:00,975 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-10-15 14:15:00,976 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 48 states [2024-10-15 14:15:00,976 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:15:00,977 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 48 interpolants. [2024-10-15 14:15:00,977 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=226, Invalid=2030, Unknown=0, NotChecked=0, Total=2256 [2024-10-15 14:15:00,978 INFO L87 Difference]: Start difference. First operand 83 states and 86 transitions. Second operand has 48 states, 47 states have (on average 3.0851063829787235) internal successors, (145), 46 states have internal predecessors, (145), 14 states have call successors, (16), 4 states have call predecessors, (16), 3 states have return successors, (13), 13 states have call predecessors, (13), 13 states have call successors, (13) [2024-10-15 14:15:03,886 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:15:03,886 INFO L93 Difference]: Finished difference Result 97 states and 100 transitions. [2024-10-15 14:15:03,886 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2024-10-15 14:15:03,887 INFO L78 Accepts]: Start accepts. Automaton has has 48 states, 47 states have (on average 3.0851063829787235) internal successors, (145), 46 states have internal predecessors, (145), 14 states have call successors, (16), 4 states have call predecessors, (16), 3 states have return successors, (13), 13 states have call predecessors, (13), 13 states have call successors, (13) Word has length 80 [2024-10-15 14:15:03,887 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:15:03,888 INFO L225 Difference]: With dead ends: 97 [2024-10-15 14:15:03,888 INFO L226 Difference]: Without dead ends: 95 [2024-10-15 14:15:03,889 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 216 GetRequests, 149 SyntacticMatches, 7 SemanticMatches, 60 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1215 ImplicationChecksByTransitivity, 10.4s TimeCoverageRelationStatistics Valid=396, Invalid=3386, Unknown=0, NotChecked=0, Total=3782 [2024-10-15 14:15:03,889 INFO L432 NwaCegarLoop]: 17 mSDtfsCounter, 51 mSDsluCounter, 249 mSDsCounter, 0 mSdLazyCounter, 1478 mSolverCounterSat, 37 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 266 SdHoareTripleChecker+Invalid, 1515 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 37 IncrementalHoareTripleChecker+Valid, 1478 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.2s IncrementalHoareTripleChecker+Time [2024-10-15 14:15:03,889 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 266 Invalid, 1515 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [37 Valid, 1478 Invalid, 0 Unknown, 0 Unchecked, 2.2s Time] [2024-10-15 14:15:03,890 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 95 states. [2024-10-15 14:15:03,935 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 95 to 90. [2024-10-15 14:15:03,935 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 74 states have (on average 1.054054054054054) internal successors, (78), 75 states have internal predecessors, (78), 8 states have call successors, (8), 8 states have call predecessors, (8), 7 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-10-15 14:15:03,935 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 93 transitions. [2024-10-15 14:15:03,936 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 93 transitions. Word has length 80 [2024-10-15 14:15:03,936 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:15:03,936 INFO L471 AbstractCegarLoop]: Abstraction has 90 states and 93 transitions. [2024-10-15 14:15:03,936 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 48 states, 47 states have (on average 3.0851063829787235) internal successors, (145), 46 states have internal predecessors, (145), 14 states have call successors, (16), 4 states have call predecessors, (16), 3 states have return successors, (13), 13 states have call predecessors, (13), 13 states have call successors, (13) [2024-10-15 14:15:03,937 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:15:03,937 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 93 transitions. [2024-10-15 14:15:03,937 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2024-10-15 14:15:03,937 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:15:03,938 INFO L215 NwaCegarLoop]: trace histogram [6, 6, 6, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:15:03,957 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2024-10-15 14:15:04,138 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-10-15 14:15:04,138 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:15:04,139 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:15:04,139 INFO L85 PathProgramCache]: Analyzing trace with hash 1193369624, now seen corresponding path program 9 times [2024-10-15 14:15:04,139 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:15:04,139 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1377131324] [2024-10-15 14:15:04,139 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:15:04,139 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:15:04,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,833 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-10-15 14:15:04,833 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,834 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2024-10-15 14:15:04,835 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,837 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-10-15 14:15:04,837 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,838 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 62 [2024-10-15 14:15:04,839 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,841 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 69 [2024-10-15 14:15:04,841 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,843 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 76 [2024-10-15 14:15:04,844 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-10-15 14:15:04,846 INFO L134 CoverageAnalysis]: Checked inductivity of 175 backedges. 15 proven. 83 refuted. 0 times theorem prover too weak. 77 trivial. 0 not checked. [2024-10-15 14:15:04,846 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-10-15 14:15:04,846 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1377131324] [2024-10-15 14:15:04,846 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1377131324] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:15:04,847 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1046060611] [2024-10-15 14:15:04,847 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-10-15 14:15:04,847 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-10-15 14:15:04,847 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-10-15 14:15:04,849 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-10-15 14:15:04,851 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-10-15 14:15:07,454 INFO L227 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2024-10-15 14:15:07,454 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-10-15 14:15:07,458 INFO L255 TraceCheckSpWp]: Trace formula consists of 272 conjuncts, 106 conjuncts are in the unsatisfiable core [2024-10-15 14:15:07,464 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-10-15 14:15:07,678 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 52 treesize of output 39 [2024-10-15 14:15:07,683 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 1 [2024-10-15 14:15:07,887 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 52 treesize of output 39 [2024-10-15 14:15:07,893 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 1 [2024-10-15 14:15:08,100 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 17 [2024-10-15 14:15:08,155 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 38 [2024-10-15 14:15:08,236 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:15:08,236 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 3 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 56 treesize of output 58 [2024-10-15 14:15:08,306 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:15:08,307 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 3 select indices, 3 select index equivalence classes, 6 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 73 treesize of output 78 [2024-10-15 14:15:08,388 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2024-10-15 14:15:08,388 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 10 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 6 case distinctions, treesize of input 90 treesize of output 98 [2024-10-15 14:15:10,986 INFO L190 IndexEqualityManager]: detected not equals via solver [2024-10-15 14:15:10,991 INFO L190 IndexEqualityManager]: detected not equals via solver [2024-10-15 14:15:11,060 INFO L349 Elim1Store]: treesize reduction 48, result has 61.6 percent of original size [2024-10-15 14:15:11,061 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 11 select indices, 11 select index equivalence classes, 12 disjoint index pairs (out of 55 index pairs), introduced 11 new quantified variables, introduced 55 case distinctions, treesize of input 184 treesize of output 210 [2024-10-15 14:15:11,079 INFO L190 IndexEqualityManager]: detected not equals via solver [2024-10-15 14:15:11,082 INFO L190 IndexEqualityManager]: detected not equals via solver [2024-10-15 14:15:11,155 INFO L349 Elim1Store]: treesize reduction 48, result has 61.6 percent of original size [2024-10-15 14:15:11,155 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 11 select indices, 11 select index equivalence classes, 12 disjoint index pairs (out of 55 index pairs), introduced 11 new quantified variables, introduced 55 case distinctions, treesize of input 220 treesize of output 234 [2024-10-15 14:15:11,168 INFO L190 IndexEqualityManager]: detected not equals via solver [2024-10-15 14:15:11,171 INFO L190 IndexEqualityManager]: detected not equals via solver [2024-10-15 14:15:11,237 INFO L349 Elim1Store]: treesize reduction 48, result has 61.6 percent of original size [2024-10-15 14:15:11,237 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 11 select indices, 11 select index equivalence classes, 12 disjoint index pairs (out of 55 index pairs), introduced 11 new quantified variables, introduced 55 case distinctions, treesize of input 168 treesize of output 182 [2024-10-15 14:15:11,548 INFO L134 CoverageAnalysis]: Checked inductivity of 175 backedges. 62 proven. 46 refuted. 0 times theorem prover too weak. 67 trivial. 0 not checked. [2024-10-15 14:15:11,548 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-10-15 14:15:17,998 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1046060611] provided 0 perfect and 1 imperfect interpolant sequences [2024-10-15 14:15:17,998 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-10-15 14:15:17,998 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16, 27] total 41 [2024-10-15 14:15:17,999 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1062854190] [2024-10-15 14:15:17,999 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-10-15 14:15:17,999 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 41 states [2024-10-15 14:15:17,999 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-10-15 14:15:18,000 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 41 interpolants. [2024-10-15 14:15:18,000 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=237, Invalid=2212, Unknown=1, NotChecked=0, Total=2450 [2024-10-15 14:15:18,000 INFO L87 Difference]: Start difference. First operand 90 states and 93 transitions. Second operand has 41 states, 39 states have (on average 2.358974358974359) internal successors, (92), 39 states have internal predecessors, (92), 11 states have call successors, (12), 4 states have call predecessors, (12), 3 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) [2024-10-15 14:15:26,233 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-10-15 14:15:26,234 INFO L93 Difference]: Finished difference Result 269 states and 282 transitions. [2024-10-15 14:15:26,234 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 76 states. [2024-10-15 14:15:26,234 INFO L78 Accepts]: Start accepts. Automaton has has 41 states, 39 states have (on average 2.358974358974359) internal successors, (92), 39 states have internal predecessors, (92), 11 states have call successors, (12), 4 states have call predecessors, (12), 3 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) Word has length 87 [2024-10-15 14:15:26,234 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-10-15 14:15:26,235 INFO L225 Difference]: With dead ends: 269 [2024-10-15 14:15:26,235 INFO L226 Difference]: Without dead ends: 154 [2024-10-15 14:15:26,238 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 198 GetRequests, 81 SyntacticMatches, 9 SemanticMatches, 108 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3172 ImplicationChecksByTransitivity, 13.2s TimeCoverageRelationStatistics Valid=1301, Invalid=10688, Unknown=1, NotChecked=0, Total=11990 [2024-10-15 14:15:26,238 INFO L432 NwaCegarLoop]: 16 mSDtfsCounter, 249 mSDsluCounter, 303 mSDsCounter, 0 mSdLazyCounter, 1745 mSolverCounterSat, 277 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 250 SdHoareTripleChecker+Valid, 319 SdHoareTripleChecker+Invalid, 2022 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 277 IncrementalHoareTripleChecker+Valid, 1745 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.2s IncrementalHoareTripleChecker+Time [2024-10-15 14:15:26,239 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [250 Valid, 319 Invalid, 2022 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [277 Valid, 1745 Invalid, 0 Unknown, 0 Unchecked, 2.2s Time] [2024-10-15 14:15:26,239 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 154 states. [2024-10-15 14:15:26,284 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 154 to 97. [2024-10-15 14:15:26,284 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 97 states, 81 states have (on average 1.0493827160493827) internal successors, (85), 82 states have internal predecessors, (85), 8 states have call successors, (8), 8 states have call predecessors, (8), 7 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2024-10-15 14:15:26,285 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 97 states to 97 states and 100 transitions. [2024-10-15 14:15:26,285 INFO L78 Accepts]: Start accepts. Automaton has 97 states and 100 transitions. Word has length 87 [2024-10-15 14:15:26,285 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-10-15 14:15:26,285 INFO L471 AbstractCegarLoop]: Abstraction has 97 states and 100 transitions. [2024-10-15 14:15:26,286 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 41 states, 39 states have (on average 2.358974358974359) internal successors, (92), 39 states have internal predecessors, (92), 11 states have call successors, (12), 4 states have call predecessors, (12), 3 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) [2024-10-15 14:15:26,286 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:15:26,286 INFO L276 IsEmpty]: Start isEmpty. Operand 97 states and 100 transitions. [2024-10-15 14:15:26,287 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2024-10-15 14:15:26,287 INFO L207 NwaCegarLoop]: Found error trace [2024-10-15 14:15:26,287 INFO L215 NwaCegarLoop]: trace histogram [6, 6, 6, 6, 6, 6, 6, 6, 6, 6, 5, 5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-10-15 14:15:26,301 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-10-15 14:15:26,487 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-10-15 14:15:26,488 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-10-15 14:15:26,488 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-10-15 14:15:26,488 INFO L85 PathProgramCache]: Analyzing trace with hash 1265552396, now seen corresponding path program 10 times [2024-10-15 14:15:26,488 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-10-15 14:15:26,488 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1992252671] [2024-10-15 14:15:26,488 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-10-15 14:15:26,488 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-10-15 14:15:26,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat