java -ea -Xmx8000000000 -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc ../../../trunk/examples/toolchains/AutomizerCInline_WitnessPrinter.xml -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf -i ../../../trunk/examples/svcomp/ssh/s3_srvr.blast.13_false-unreach-call.i.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.1.23-61f4311 [2018-11-23 12:47:25,670 INFO L170 SettingsManager]: Resetting all preferences to default values... [2018-11-23 12:47:25,672 INFO L174 SettingsManager]: Resetting UltimateCore preferences to default values [2018-11-23 12:47:25,689 INFO L177 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2018-11-23 12:47:25,690 INFO L174 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2018-11-23 12:47:25,691 INFO L174 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2018-11-23 12:47:25,693 INFO L174 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2018-11-23 12:47:25,695 INFO L174 SettingsManager]: Resetting LassoRanker preferences to default values [2018-11-23 12:47:25,698 INFO L174 SettingsManager]: Resetting Reaching Definitions preferences to default values [2018-11-23 12:47:25,700 INFO L174 SettingsManager]: Resetting SyntaxChecker preferences to default values [2018-11-23 12:47:25,701 INFO L177 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2018-11-23 12:47:25,701 INFO L174 SettingsManager]: Resetting LTL2Aut preferences to default values [2018-11-23 12:47:25,704 INFO L174 SettingsManager]: Resetting PEA to Boogie preferences to default values [2018-11-23 12:47:25,705 INFO L174 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2018-11-23 12:47:25,706 INFO L174 SettingsManager]: Resetting ChcToBoogie preferences to default values [2018-11-23 12:47:25,709 INFO L174 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2018-11-23 12:47:25,710 INFO L174 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2018-11-23 12:47:25,712 INFO L174 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2018-11-23 12:47:25,722 INFO L174 SettingsManager]: Resetting CodeCheck preferences to default values [2018-11-23 12:47:25,727 INFO L174 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2018-11-23 12:47:25,730 INFO L174 SettingsManager]: Resetting RCFGBuilder preferences to default values [2018-11-23 12:47:25,731 INFO L174 SettingsManager]: Resetting TraceAbstraction preferences to default values [2018-11-23 12:47:25,733 INFO L177 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2018-11-23 12:47:25,736 INFO L177 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2018-11-23 12:47:25,736 INFO L174 SettingsManager]: Resetting TreeAutomizer preferences to default values [2018-11-23 12:47:25,737 INFO L174 SettingsManager]: Resetting IcfgTransformer preferences to default values [2018-11-23 12:47:25,738 INFO L174 SettingsManager]: Resetting Boogie Printer preferences to default values [2018-11-23 12:47:25,739 INFO L174 SettingsManager]: Resetting ReqPrinter preferences to default values [2018-11-23 12:47:25,739 INFO L174 SettingsManager]: Resetting Witness Printer preferences to default values [2018-11-23 12:47:25,742 INFO L177 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2018-11-23 12:47:25,742 INFO L174 SettingsManager]: Resetting CDTParser preferences to default values [2018-11-23 12:47:25,744 INFO L177 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2018-11-23 12:47:25,744 INFO L177 SettingsManager]: ReqParser provides no preferences, ignoring... [2018-11-23 12:47:25,744 INFO L174 SettingsManager]: Resetting SmtParser preferences to default values [2018-11-23 12:47:25,747 INFO L174 SettingsManager]: Resetting Witness Parser preferences to default values [2018-11-23 12:47:25,748 INFO L181 SettingsManager]: Finished resetting all preferences to default values... [2018-11-23 12:47:25,749 INFO L98 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2018-11-23 12:47:25,774 INFO L110 SettingsManager]: Loading preferences was successful [2018-11-23 12:47:25,775 INFO L112 SettingsManager]: Preferences different from defaults after loading the file: [2018-11-23 12:47:25,777 INFO L131 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2018-11-23 12:47:25,777 INFO L133 SettingsManager]: * ... calls to implemented procedures=ONLY_FOR_CONCURRENT_PROGRAMS [2018-11-23 12:47:25,777 INFO L131 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2018-11-23 12:47:25,778 INFO L133 SettingsManager]: * Create parallel compositions if possible=false [2018-11-23 12:47:25,778 INFO L133 SettingsManager]: * Use SBE=true [2018-11-23 12:47:25,778 INFO L131 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2018-11-23 12:47:25,778 INFO L133 SettingsManager]: * sizeof long=4 [2018-11-23 12:47:25,778 INFO L133 SettingsManager]: * Overapproximate operations on floating types=true [2018-11-23 12:47:25,780 INFO L133 SettingsManager]: * sizeof POINTER=4 [2018-11-23 12:47:25,780 INFO L133 SettingsManager]: * Check division by zero=IGNORE [2018-11-23 12:47:25,780 INFO L133 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2018-11-23 12:47:25,780 INFO L133 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2018-11-23 12:47:25,780 INFO L133 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2018-11-23 12:47:25,781 INFO L133 SettingsManager]: * sizeof long double=12 [2018-11-23 12:47:25,781 INFO L133 SettingsManager]: * Check if freed pointer was valid=false [2018-11-23 12:47:25,781 INFO L133 SettingsManager]: * Use constant arrays=true [2018-11-23 12:47:25,781 INFO L133 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2018-11-23 12:47:25,781 INFO L131 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2018-11-23 12:47:25,782 INFO L133 SettingsManager]: * Size of a code block=SequenceOfStatements [2018-11-23 12:47:25,782 INFO L133 SettingsManager]: * To the following directory=./dump/ [2018-11-23 12:47:25,782 INFO L133 SettingsManager]: * SMT solver=External_DefaultMode [2018-11-23 12:47:25,782 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-11-23 12:47:25,782 INFO L131 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2018-11-23 12:47:25,783 INFO L133 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2018-11-23 12:47:25,783 INFO L133 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2018-11-23 12:47:25,783 INFO L133 SettingsManager]: * Trace refinement strategy=CAMEL [2018-11-23 12:47:25,783 INFO L133 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2018-11-23 12:47:25,783 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-11-23 12:47:25,783 INFO L133 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2018-11-23 12:47:25,846 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2018-11-23 12:47:25,862 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2018-11-23 12:47:25,866 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2018-11-23 12:47:25,867 INFO L271 PluginConnector]: Initializing CDTParser... [2018-11-23 12:47:25,868 INFO L276 PluginConnector]: CDTParser initialized [2018-11-23 12:47:25,869 INFO L418 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/ssh/s3_srvr.blast.13_false-unreach-call.i.cil.c [2018-11-23 12:47:25,939 INFO L221 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/8e1b6be57/fb7743598e9a448996a35d5c3ab6d88e/FLAG5f34c9e0f [2018-11-23 12:47:26,603 INFO L307 CDTParser]: Found 1 translation units. [2018-11-23 12:47:26,603 INFO L161 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/ssh/s3_srvr.blast.13_false-unreach-call.i.cil.c [2018-11-23 12:47:26,641 INFO L355 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/8e1b6be57/fb7743598e9a448996a35d5c3ab6d88e/FLAG5f34c9e0f [2018-11-23 12:47:26,934 INFO L363 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/8e1b6be57/fb7743598e9a448996a35d5c3ab6d88e [2018-11-23 12:47:26,944 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2018-11-23 12:47:26,946 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2018-11-23 12:47:26,947 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2018-11-23 12:47:26,947 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2018-11-23 12:47:26,951 INFO L276 PluginConnector]: CACSL2BoogieTranslator initialized [2018-11-23 12:47:26,952 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 12:47:26" (1/1) ... [2018-11-23 12:47:26,955 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2231af0d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:26, skipping insertion in model container [2018-11-23 12:47:26,956 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 12:47:26" (1/1) ... [2018-11-23 12:47:26,966 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2018-11-23 12:47:27,060 INFO L176 MainTranslator]: Built tables and reachable declarations [2018-11-23 12:47:27,629 INFO L201 PostProcessor]: Analyzing one entry point: main [2018-11-23 12:47:27,786 INFO L191 MainTranslator]: Completed pre-run [2018-11-23 12:47:27,991 INFO L201 PostProcessor]: Analyzing one entry point: main [2018-11-23 12:47:28,019 INFO L195 MainTranslator]: Completed translation [2018-11-23 12:47:28,019 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28 WrapperNode [2018-11-23 12:47:28,019 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2018-11-23 12:47:28,020 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2018-11-23 12:47:28,021 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2018-11-23 12:47:28,021 INFO L276 PluginConnector]: Boogie Procedure Inliner initialized [2018-11-23 12:47:28,031 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,065 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,082 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2018-11-23 12:47:28,083 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2018-11-23 12:47:28,083 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2018-11-23 12:47:28,083 INFO L276 PluginConnector]: Boogie Preprocessor initialized [2018-11-23 12:47:28,094 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,094 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,118 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,118 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,196 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,217 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,223 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... [2018-11-23 12:47:28,231 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2018-11-23 12:47:28,231 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2018-11-23 12:47:28,232 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2018-11-23 12:47:28,232 INFO L276 PluginConnector]: RCFGBuilder initialized [2018-11-23 12:47:28,233 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-11-23 12:47:28,310 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~$Pointer$ [2018-11-23 12:47:28,311 INFO L130 BoogieDeclarations]: Found specification of procedure main [2018-11-23 12:47:28,311 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2018-11-23 12:47:28,311 INFO L130 BoogieDeclarations]: Found specification of procedure write~$Pointer$ [2018-11-23 12:47:28,312 INFO L130 BoogieDeclarations]: Found specification of procedure write~int [2018-11-23 12:47:28,312 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.alloc [2018-11-23 12:47:28,312 INFO L130 BoogieDeclarations]: Found specification of procedure read~int [2018-11-23 12:47:28,313 INFO L130 BoogieDeclarations]: Found specification of procedure read~$Pointer$ [2018-11-23 12:47:28,313 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2018-11-23 12:47:28,313 INFO L130 BoogieDeclarations]: Found specification of procedure ssl3_accept [2018-11-23 12:47:28,313 INFO L138 BoogieDeclarations]: Found implementation of procedure ssl3_accept [2018-11-23 12:47:28,313 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2018-11-23 12:47:28,313 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2018-11-23 12:47:28,314 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2018-11-23 12:47:28,314 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2018-11-23 12:47:28,959 WARN L640 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-23 12:47:28,959 WARN L605 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-23 12:47:31,426 INFO L275 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2018-11-23 12:47:31,426 INFO L280 CfgBuilder]: Removed 1 assue(true) statements. [2018-11-23 12:47:31,427 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 12:47:31 BoogieIcfgContainer [2018-11-23 12:47:31,427 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2018-11-23 12:47:31,428 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2018-11-23 12:47:31,429 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2018-11-23 12:47:31,432 INFO L276 PluginConnector]: TraceAbstraction initialized [2018-11-23 12:47:31,432 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 23.11 12:47:26" (1/3) ... [2018-11-23 12:47:31,433 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@271b6086 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 12:47:31, skipping insertion in model container [2018-11-23 12:47:31,433 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 12:47:28" (2/3) ... [2018-11-23 12:47:31,434 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@271b6086 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 12:47:31, skipping insertion in model container [2018-11-23 12:47:31,434 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 12:47:31" (3/3) ... [2018-11-23 12:47:31,435 INFO L112 eAbstractionObserver]: Analyzing ICFG s3_srvr.blast.13_false-unreach-call.i.cil.c [2018-11-23 12:47:31,445 INFO L156 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2018-11-23 12:47:31,452 INFO L168 ceAbstractionStarter]: Appying trace abstraction to program that has 1 error locations. [2018-11-23 12:47:31,468 INFO L257 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2018-11-23 12:47:31,502 INFO L133 ementStrategyFactory]: Using default assertion order modulation [2018-11-23 12:47:31,503 INFO L382 AbstractCegarLoop]: Interprodecural is true [2018-11-23 12:47:31,503 INFO L383 AbstractCegarLoop]: Hoare is true [2018-11-23 12:47:31,503 INFO L384 AbstractCegarLoop]: Compute interpolants for FPandBP [2018-11-23 12:47:31,503 INFO L385 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2018-11-23 12:47:31,504 INFO L386 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2018-11-23 12:47:31,504 INFO L387 AbstractCegarLoop]: Difference is false [2018-11-23 12:47:31,504 INFO L388 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2018-11-23 12:47:31,504 INFO L393 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2018-11-23 12:47:31,529 INFO L276 IsEmpty]: Start isEmpty. Operand 157 states. [2018-11-23 12:47:31,539 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2018-11-23 12:47:31,540 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:31,541 INFO L402 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:31,544 INFO L423 AbstractCegarLoop]: === Iteration 1 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:31,550 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:31,551 INFO L82 PathProgramCache]: Analyzing trace with hash -995657757, now seen corresponding path program 1 times [2018-11-23 12:47:31,553 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:31,553 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:31,607 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:31,608 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:31,608 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:31,731 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:32,138 INFO L256 TraceCheckUtils]: 0: Hoare triple {160#true} call ULTIMATE.init(); {160#true} is VALID [2018-11-23 12:47:32,143 INFO L273 TraceCheckUtils]: 1: Hoare triple {160#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {160#true} is VALID [2018-11-23 12:47:32,144 INFO L273 TraceCheckUtils]: 2: Hoare triple {160#true} assume true; {160#true} is VALID [2018-11-23 12:47:32,144 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {160#true} {160#true} #633#return; {160#true} is VALID [2018-11-23 12:47:32,145 INFO L256 TraceCheckUtils]: 4: Hoare triple {160#true} call #t~ret138 := main(); {160#true} is VALID [2018-11-23 12:47:32,145 INFO L273 TraceCheckUtils]: 5: Hoare triple {160#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {160#true} is VALID [2018-11-23 12:47:32,145 INFO L256 TraceCheckUtils]: 6: Hoare triple {160#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {160#true} is VALID [2018-11-23 12:47:32,163 INFO L273 TraceCheckUtils]: 7: Hoare triple {160#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,174 INFO L273 TraceCheckUtils]: 8: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,188 INFO L273 TraceCheckUtils]: 9: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,201 INFO L273 TraceCheckUtils]: 10: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,214 INFO L273 TraceCheckUtils]: 11: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,227 INFO L273 TraceCheckUtils]: 12: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,240 INFO L273 TraceCheckUtils]: 13: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !false; {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,253 INFO L273 TraceCheckUtils]: 14: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,267 INFO L273 TraceCheckUtils]: 15: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,280 INFO L273 TraceCheckUtils]: 16: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,293 INFO L273 TraceCheckUtils]: 17: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,306 INFO L273 TraceCheckUtils]: 18: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,319 INFO L273 TraceCheckUtils]: 19: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,332 INFO L273 TraceCheckUtils]: 20: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,345 INFO L273 TraceCheckUtils]: 21: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:32,358 INFO L273 TraceCheckUtils]: 22: Hoare triple {162#(= 8464 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {163#(= 8464 |ssl3_accept_#t~mem32|)} is VALID [2018-11-23 12:47:32,371 INFO L273 TraceCheckUtils]: 23: Hoare triple {163#(= 8464 |ssl3_accept_#t~mem32|)} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,372 INFO L273 TraceCheckUtils]: 24: Hoare triple {161#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,373 INFO L273 TraceCheckUtils]: 25: Hoare triple {161#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,373 INFO L273 TraceCheckUtils]: 26: Hoare triple {161#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,373 INFO L273 TraceCheckUtils]: 27: Hoare triple {161#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,374 INFO L273 TraceCheckUtils]: 28: Hoare triple {161#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,374 INFO L273 TraceCheckUtils]: 29: Hoare triple {161#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,375 INFO L273 TraceCheckUtils]: 30: Hoare triple {161#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,375 INFO L273 TraceCheckUtils]: 31: Hoare triple {161#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,375 INFO L273 TraceCheckUtils]: 32: Hoare triple {161#false} assume 8544 == #t~mem41;havoc #t~mem41; {161#false} is VALID [2018-11-23 12:47:32,376 INFO L273 TraceCheckUtils]: 33: Hoare triple {161#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,376 INFO L273 TraceCheckUtils]: 34: Hoare triple {161#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,376 INFO L273 TraceCheckUtils]: 35: Hoare triple {161#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {161#false} is VALID [2018-11-23 12:47:32,377 INFO L273 TraceCheckUtils]: 36: Hoare triple {161#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {161#false} is VALID [2018-11-23 12:47:32,377 INFO L273 TraceCheckUtils]: 37: Hoare triple {161#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {161#false} is VALID [2018-11-23 12:47:32,378 INFO L273 TraceCheckUtils]: 38: Hoare triple {161#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {161#false} is VALID [2018-11-23 12:47:32,378 INFO L273 TraceCheckUtils]: 39: Hoare triple {161#false} assume 8 == ~blastFlag~0; {161#false} is VALID [2018-11-23 12:47:32,378 INFO L273 TraceCheckUtils]: 40: Hoare triple {161#false} assume !false; {161#false} is VALID [2018-11-23 12:47:32,393 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:32,396 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:32,397 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:32,402 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 41 [2018-11-23 12:47:32,410 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:32,414 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:32,771 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 41 edges. 41 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:32,772 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:32,780 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:32,780 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:32,783 INFO L87 Difference]: Start difference. First operand 157 states. Second operand 4 states. [2018-11-23 12:47:34,770 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:34,771 INFO L93 Difference]: Finished difference Result 333 states and 558 transitions. [2018-11-23 12:47:34,771 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:34,771 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 41 [2018-11-23 12:47:34,771 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:34,773 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:34,803 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 558 transitions. [2018-11-23 12:47:34,804 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:34,816 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 558 transitions. [2018-11-23 12:47:34,816 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 558 transitions. [2018-11-23 12:47:35,892 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 558 edges. 558 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:35,919 INFO L225 Difference]: With dead ends: 333 [2018-11-23 12:47:35,920 INFO L226 Difference]: Without dead ends: 169 [2018-11-23 12:47:35,925 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:35,945 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 169 states. [2018-11-23 12:47:36,048 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 169 to 152. [2018-11-23 12:47:36,048 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:36,048 INFO L82 GeneralOperation]: Start isEquivalent. First operand 169 states. Second operand 152 states. [2018-11-23 12:47:36,049 INFO L74 IsIncluded]: Start isIncluded. First operand 169 states. Second operand 152 states. [2018-11-23 12:47:36,049 INFO L87 Difference]: Start difference. First operand 169 states. Second operand 152 states. [2018-11-23 12:47:36,061 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:36,061 INFO L93 Difference]: Finished difference Result 169 states and 253 transitions. [2018-11-23 12:47:36,061 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 253 transitions. [2018-11-23 12:47:36,063 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:36,063 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:36,064 INFO L74 IsIncluded]: Start isIncluded. First operand 152 states. Second operand 169 states. [2018-11-23 12:47:36,064 INFO L87 Difference]: Start difference. First operand 152 states. Second operand 169 states. [2018-11-23 12:47:36,075 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:36,075 INFO L93 Difference]: Finished difference Result 169 states and 253 transitions. [2018-11-23 12:47:36,075 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 253 transitions. [2018-11-23 12:47:36,077 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:36,078 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:36,078 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:36,078 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:36,078 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 152 states. [2018-11-23 12:47:36,086 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 152 states to 152 states and 232 transitions. [2018-11-23 12:47:36,088 INFO L78 Accepts]: Start accepts. Automaton has 152 states and 232 transitions. Word has length 41 [2018-11-23 12:47:36,089 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:36,089 INFO L480 AbstractCegarLoop]: Abstraction has 152 states and 232 transitions. [2018-11-23 12:47:36,089 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:36,089 INFO L276 IsEmpty]: Start isEmpty. Operand 152 states and 232 transitions. [2018-11-23 12:47:36,092 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2018-11-23 12:47:36,092 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:36,092 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:36,092 INFO L423 AbstractCegarLoop]: === Iteration 2 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:36,093 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:36,093 INFO L82 PathProgramCache]: Analyzing trace with hash -1978591950, now seen corresponding path program 1 times [2018-11-23 12:47:36,093 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:36,093 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:36,095 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:36,095 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:36,096 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:36,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:36,402 INFO L256 TraceCheckUtils]: 0: Hoare triple {1086#true} call ULTIMATE.init(); {1086#true} is VALID [2018-11-23 12:47:36,403 INFO L273 TraceCheckUtils]: 1: Hoare triple {1086#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {1086#true} is VALID [2018-11-23 12:47:36,403 INFO L273 TraceCheckUtils]: 2: Hoare triple {1086#true} assume true; {1086#true} is VALID [2018-11-23 12:47:36,403 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {1086#true} {1086#true} #633#return; {1086#true} is VALID [2018-11-23 12:47:36,404 INFO L256 TraceCheckUtils]: 4: Hoare triple {1086#true} call #t~ret138 := main(); {1086#true} is VALID [2018-11-23 12:47:36,404 INFO L273 TraceCheckUtils]: 5: Hoare triple {1086#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {1086#true} is VALID [2018-11-23 12:47:36,404 INFO L256 TraceCheckUtils]: 6: Hoare triple {1086#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {1086#true} is VALID [2018-11-23 12:47:36,409 INFO L273 TraceCheckUtils]: 7: Hoare triple {1086#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,409 INFO L273 TraceCheckUtils]: 8: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,411 INFO L273 TraceCheckUtils]: 9: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,427 INFO L273 TraceCheckUtils]: 10: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,431 INFO L273 TraceCheckUtils]: 11: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,432 INFO L273 TraceCheckUtils]: 12: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,432 INFO L273 TraceCheckUtils]: 13: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,434 INFO L273 TraceCheckUtils]: 14: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,441 INFO L273 TraceCheckUtils]: 15: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,441 INFO L273 TraceCheckUtils]: 16: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,444 INFO L273 TraceCheckUtils]: 17: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,444 INFO L273 TraceCheckUtils]: 18: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:36,446 INFO L273 TraceCheckUtils]: 19: Hoare triple {1088#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {1089#(= |ssl3_accept_#t~mem29| 8464)} is VALID [2018-11-23 12:47:36,446 INFO L273 TraceCheckUtils]: 20: Hoare triple {1089#(= |ssl3_accept_#t~mem29| 8464)} assume 8480 == #t~mem29;havoc #t~mem29; {1087#false} is VALID [2018-11-23 12:47:36,447 INFO L273 TraceCheckUtils]: 21: Hoare triple {1087#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {1087#false} is VALID [2018-11-23 12:47:36,447 INFO L273 TraceCheckUtils]: 22: Hoare triple {1087#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,448 INFO L273 TraceCheckUtils]: 23: Hoare triple {1087#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,448 INFO L273 TraceCheckUtils]: 24: Hoare triple {1087#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {1087#false} is VALID [2018-11-23 12:47:36,448 INFO L273 TraceCheckUtils]: 25: Hoare triple {1087#false} ~skip~0 := 0; {1087#false} is VALID [2018-11-23 12:47:36,449 INFO L273 TraceCheckUtils]: 26: Hoare triple {1087#false} assume !false; {1087#false} is VALID [2018-11-23 12:47:36,449 INFO L273 TraceCheckUtils]: 27: Hoare triple {1087#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,449 INFO L273 TraceCheckUtils]: 28: Hoare triple {1087#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,449 INFO L273 TraceCheckUtils]: 29: Hoare triple {1087#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,450 INFO L273 TraceCheckUtils]: 30: Hoare triple {1087#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,450 INFO L273 TraceCheckUtils]: 31: Hoare triple {1087#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,450 INFO L273 TraceCheckUtils]: 32: Hoare triple {1087#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,451 INFO L273 TraceCheckUtils]: 33: Hoare triple {1087#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,451 INFO L273 TraceCheckUtils]: 34: Hoare triple {1087#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,451 INFO L273 TraceCheckUtils]: 35: Hoare triple {1087#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,452 INFO L273 TraceCheckUtils]: 36: Hoare triple {1087#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,452 INFO L273 TraceCheckUtils]: 37: Hoare triple {1087#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,452 INFO L273 TraceCheckUtils]: 38: Hoare triple {1087#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,453 INFO L273 TraceCheckUtils]: 39: Hoare triple {1087#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,453 INFO L273 TraceCheckUtils]: 40: Hoare triple {1087#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,453 INFO L273 TraceCheckUtils]: 41: Hoare triple {1087#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,454 INFO L273 TraceCheckUtils]: 42: Hoare triple {1087#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,454 INFO L273 TraceCheckUtils]: 43: Hoare triple {1087#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,454 INFO L273 TraceCheckUtils]: 44: Hoare triple {1087#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,455 INFO L273 TraceCheckUtils]: 45: Hoare triple {1087#false} assume 8544 == #t~mem41;havoc #t~mem41; {1087#false} is VALID [2018-11-23 12:47:36,455 INFO L273 TraceCheckUtils]: 46: Hoare triple {1087#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,455 INFO L273 TraceCheckUtils]: 47: Hoare triple {1087#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,456 INFO L273 TraceCheckUtils]: 48: Hoare triple {1087#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {1087#false} is VALID [2018-11-23 12:47:36,456 INFO L273 TraceCheckUtils]: 49: Hoare triple {1087#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {1087#false} is VALID [2018-11-23 12:47:36,456 INFO L273 TraceCheckUtils]: 50: Hoare triple {1087#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {1087#false} is VALID [2018-11-23 12:47:36,457 INFO L273 TraceCheckUtils]: 51: Hoare triple {1087#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {1087#false} is VALID [2018-11-23 12:47:36,457 INFO L273 TraceCheckUtils]: 52: Hoare triple {1087#false} assume 8 == ~blastFlag~0; {1087#false} is VALID [2018-11-23 12:47:36,458 INFO L273 TraceCheckUtils]: 53: Hoare triple {1087#false} assume !false; {1087#false} is VALID [2018-11-23 12:47:36,467 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:36,468 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:36,468 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:36,469 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 54 [2018-11-23 12:47:36,470 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:36,470 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:36,610 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 54 edges. 54 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:36,610 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:36,611 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:36,611 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:36,611 INFO L87 Difference]: Start difference. First operand 152 states and 232 transitions. Second operand 4 states. [2018-11-23 12:47:37,991 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:37,992 INFO L93 Difference]: Finished difference Result 296 states and 449 transitions. [2018-11-23 12:47:37,992 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:37,992 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 54 [2018-11-23 12:47:37,992 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:37,992 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:37,999 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 449 transitions. [2018-11-23 12:47:37,999 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:38,005 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 449 transitions. [2018-11-23 12:47:38,005 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 449 transitions. [2018-11-23 12:47:38,655 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 449 edges. 449 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:38,660 INFO L225 Difference]: With dead ends: 296 [2018-11-23 12:47:38,660 INFO L226 Difference]: Without dead ends: 169 [2018-11-23 12:47:38,662 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:38,662 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 169 states. [2018-11-23 12:47:38,703 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 169 to 152. [2018-11-23 12:47:38,704 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:38,704 INFO L82 GeneralOperation]: Start isEquivalent. First operand 169 states. Second operand 152 states. [2018-11-23 12:47:38,704 INFO L74 IsIncluded]: Start isIncluded. First operand 169 states. Second operand 152 states. [2018-11-23 12:47:38,704 INFO L87 Difference]: Start difference. First operand 169 states. Second operand 152 states. [2018-11-23 12:47:38,711 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:38,712 INFO L93 Difference]: Finished difference Result 169 states and 252 transitions. [2018-11-23 12:47:38,712 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 252 transitions. [2018-11-23 12:47:38,713 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:38,713 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:38,713 INFO L74 IsIncluded]: Start isIncluded. First operand 152 states. Second operand 169 states. [2018-11-23 12:47:38,714 INFO L87 Difference]: Start difference. First operand 152 states. Second operand 169 states. [2018-11-23 12:47:38,720 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:38,721 INFO L93 Difference]: Finished difference Result 169 states and 252 transitions. [2018-11-23 12:47:38,721 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 252 transitions. [2018-11-23 12:47:38,722 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:38,722 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:38,722 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:38,722 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:38,723 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 152 states. [2018-11-23 12:47:38,729 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 152 states to 152 states and 231 transitions. [2018-11-23 12:47:38,729 INFO L78 Accepts]: Start accepts. Automaton has 152 states and 231 transitions. Word has length 54 [2018-11-23 12:47:38,729 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:38,729 INFO L480 AbstractCegarLoop]: Abstraction has 152 states and 231 transitions. [2018-11-23 12:47:38,730 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:38,730 INFO L276 IsEmpty]: Start isEmpty. Operand 152 states and 231 transitions. [2018-11-23 12:47:38,731 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2018-11-23 12:47:38,731 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:38,731 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:38,732 INFO L423 AbstractCegarLoop]: === Iteration 3 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:38,732 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:38,732 INFO L82 PathProgramCache]: Analyzing trace with hash -659098542, now seen corresponding path program 1 times [2018-11-23 12:47:38,732 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:38,732 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:38,734 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:38,734 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:38,734 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:38,770 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:39,047 INFO L256 TraceCheckUtils]: 0: Hoare triple {1968#true} call ULTIMATE.init(); {1968#true} is VALID [2018-11-23 12:47:39,047 INFO L273 TraceCheckUtils]: 1: Hoare triple {1968#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {1968#true} is VALID [2018-11-23 12:47:39,048 INFO L273 TraceCheckUtils]: 2: Hoare triple {1968#true} assume true; {1968#true} is VALID [2018-11-23 12:47:39,048 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {1968#true} {1968#true} #633#return; {1968#true} is VALID [2018-11-23 12:47:39,049 INFO L256 TraceCheckUtils]: 4: Hoare triple {1968#true} call #t~ret138 := main(); {1968#true} is VALID [2018-11-23 12:47:39,049 INFO L273 TraceCheckUtils]: 5: Hoare triple {1968#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {1968#true} is VALID [2018-11-23 12:47:39,049 INFO L256 TraceCheckUtils]: 6: Hoare triple {1968#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {1968#true} is VALID [2018-11-23 12:47:39,050 INFO L273 TraceCheckUtils]: 7: Hoare triple {1968#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {1968#true} is VALID [2018-11-23 12:47:39,050 INFO L273 TraceCheckUtils]: 8: Hoare triple {1968#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {1968#true} is VALID [2018-11-23 12:47:39,050 INFO L273 TraceCheckUtils]: 9: Hoare triple {1968#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {1968#true} is VALID [2018-11-23 12:47:39,051 INFO L273 TraceCheckUtils]: 10: Hoare triple {1968#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {1968#true} is VALID [2018-11-23 12:47:39,051 INFO L273 TraceCheckUtils]: 11: Hoare triple {1968#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {1968#true} is VALID [2018-11-23 12:47:39,051 INFO L273 TraceCheckUtils]: 12: Hoare triple {1968#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {1968#true} is VALID [2018-11-23 12:47:39,051 INFO L273 TraceCheckUtils]: 13: Hoare triple {1968#true} assume !false; {1968#true} is VALID [2018-11-23 12:47:39,055 INFO L273 TraceCheckUtils]: 14: Hoare triple {1968#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {1970#(= |ssl3_accept_#t~mem24| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:39,056 INFO L273 TraceCheckUtils]: 15: Hoare triple {1970#(= |ssl3_accept_#t~mem24| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,061 INFO L273 TraceCheckUtils]: 16: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume 16384 == #t~mem25;havoc #t~mem25; {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,062 INFO L273 TraceCheckUtils]: 17: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} call write~int(1, ~s.base, 36 + ~s.offset, 4); {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,063 INFO L273 TraceCheckUtils]: 18: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,064 INFO L273 TraceCheckUtils]: 19: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,065 INFO L273 TraceCheckUtils]: 20: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,066 INFO L273 TraceCheckUtils]: 21: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:47:39,067 INFO L273 TraceCheckUtils]: 22: Hoare triple {1971#(not (= 12292 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {1972#(not (= 12292 |ssl3_accept_#t~mem62|))} is VALID [2018-11-23 12:47:39,069 INFO L273 TraceCheckUtils]: 23: Hoare triple {1972#(not (= 12292 |ssl3_accept_#t~mem62|))} assume !(12292 != #t~mem62);havoc #t~mem62;call #t~mem65.base, #t~mem65.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem66 := read~int(#t~mem65.base, 76 + #t~mem65.offset, 4);call write~int(1 + #t~mem66, #t~mem65.base, 76 + #t~mem65.offset, 4);havoc #t~mem66;havoc #t~mem65.base, #t~mem65.offset;call write~int(8480, ~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,069 INFO L273 TraceCheckUtils]: 24: Hoare triple {1969#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,069 INFO L273 TraceCheckUtils]: 25: Hoare triple {1969#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {1969#false} is VALID [2018-11-23 12:47:39,070 INFO L273 TraceCheckUtils]: 26: Hoare triple {1969#false} ~skip~0 := 0; {1969#false} is VALID [2018-11-23 12:47:39,070 INFO L273 TraceCheckUtils]: 27: Hoare triple {1969#false} assume !false; {1969#false} is VALID [2018-11-23 12:47:39,070 INFO L273 TraceCheckUtils]: 28: Hoare triple {1969#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,071 INFO L273 TraceCheckUtils]: 29: Hoare triple {1969#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,071 INFO L273 TraceCheckUtils]: 30: Hoare triple {1969#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,071 INFO L273 TraceCheckUtils]: 31: Hoare triple {1969#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,071 INFO L273 TraceCheckUtils]: 32: Hoare triple {1969#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,072 INFO L273 TraceCheckUtils]: 33: Hoare triple {1969#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,072 INFO L273 TraceCheckUtils]: 34: Hoare triple {1969#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,072 INFO L273 TraceCheckUtils]: 35: Hoare triple {1969#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,072 INFO L273 TraceCheckUtils]: 36: Hoare triple {1969#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,072 INFO L273 TraceCheckUtils]: 37: Hoare triple {1969#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,072 INFO L273 TraceCheckUtils]: 38: Hoare triple {1969#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,074 INFO L273 TraceCheckUtils]: 39: Hoare triple {1969#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,074 INFO L273 TraceCheckUtils]: 40: Hoare triple {1969#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,074 INFO L273 TraceCheckUtils]: 41: Hoare triple {1969#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,075 INFO L273 TraceCheckUtils]: 42: Hoare triple {1969#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,075 INFO L273 TraceCheckUtils]: 43: Hoare triple {1969#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,075 INFO L273 TraceCheckUtils]: 44: Hoare triple {1969#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,075 INFO L273 TraceCheckUtils]: 45: Hoare triple {1969#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,076 INFO L273 TraceCheckUtils]: 46: Hoare triple {1969#false} assume 8544 == #t~mem41;havoc #t~mem41; {1969#false} is VALID [2018-11-23 12:47:39,076 INFO L273 TraceCheckUtils]: 47: Hoare triple {1969#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,076 INFO L273 TraceCheckUtils]: 48: Hoare triple {1969#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,076 INFO L273 TraceCheckUtils]: 49: Hoare triple {1969#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {1969#false} is VALID [2018-11-23 12:47:39,077 INFO L273 TraceCheckUtils]: 50: Hoare triple {1969#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {1969#false} is VALID [2018-11-23 12:47:39,077 INFO L273 TraceCheckUtils]: 51: Hoare triple {1969#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {1969#false} is VALID [2018-11-23 12:47:39,077 INFO L273 TraceCheckUtils]: 52: Hoare triple {1969#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {1969#false} is VALID [2018-11-23 12:47:39,077 INFO L273 TraceCheckUtils]: 53: Hoare triple {1969#false} assume 8 == ~blastFlag~0; {1969#false} is VALID [2018-11-23 12:47:39,077 INFO L273 TraceCheckUtils]: 54: Hoare triple {1969#false} assume !false; {1969#false} is VALID [2018-11-23 12:47:39,081 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:39,081 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:39,089 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2018-11-23 12:47:39,089 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 55 [2018-11-23 12:47:39,090 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:39,090 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 5 states. [2018-11-23 12:47:39,168 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 55 edges. 55 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:39,168 INFO L459 AbstractCegarLoop]: Interpolant automaton has 5 states [2018-11-23 12:47:39,169 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2018-11-23 12:47:39,169 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:39,169 INFO L87 Difference]: Start difference. First operand 152 states and 231 transitions. Second operand 5 states. [2018-11-23 12:47:40,959 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:40,959 INFO L93 Difference]: Finished difference Result 300 states and 457 transitions. [2018-11-23 12:47:40,959 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2018-11-23 12:47:40,959 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 55 [2018-11-23 12:47:40,960 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:40,960 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 5 states. [2018-11-23 12:47:40,965 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 6 states to 6 states and 439 transitions. [2018-11-23 12:47:40,965 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 5 states. [2018-11-23 12:47:40,971 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 6 states to 6 states and 439 transitions. [2018-11-23 12:47:40,971 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 6 states and 439 transitions. [2018-11-23 12:47:41,589 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 439 edges. 439 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:41,594 INFO L225 Difference]: With dead ends: 300 [2018-11-23 12:47:41,594 INFO L226 Difference]: Without dead ends: 173 [2018-11-23 12:47:41,595 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2018-11-23 12:47:41,596 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 173 states. [2018-11-23 12:47:41,655 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 173 to 172. [2018-11-23 12:47:41,655 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:41,655 INFO L82 GeneralOperation]: Start isEquivalent. First operand 173 states. Second operand 172 states. [2018-11-23 12:47:41,655 INFO L74 IsIncluded]: Start isIncluded. First operand 173 states. Second operand 172 states. [2018-11-23 12:47:41,655 INFO L87 Difference]: Start difference. First operand 173 states. Second operand 172 states. [2018-11-23 12:47:41,661 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:41,662 INFO L93 Difference]: Finished difference Result 173 states and 258 transitions. [2018-11-23 12:47:41,662 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 258 transitions. [2018-11-23 12:47:41,663 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:41,663 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:41,663 INFO L74 IsIncluded]: Start isIncluded. First operand 172 states. Second operand 173 states. [2018-11-23 12:47:41,663 INFO L87 Difference]: Start difference. First operand 172 states. Second operand 173 states. [2018-11-23 12:47:41,669 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:41,670 INFO L93 Difference]: Finished difference Result 173 states and 258 transitions. [2018-11-23 12:47:41,670 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 258 transitions. [2018-11-23 12:47:41,671 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:41,671 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:41,671 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:41,671 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:41,671 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 172 states. [2018-11-23 12:47:41,677 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 257 transitions. [2018-11-23 12:47:41,678 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 257 transitions. Word has length 55 [2018-11-23 12:47:41,678 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:41,678 INFO L480 AbstractCegarLoop]: Abstraction has 172 states and 257 transitions. [2018-11-23 12:47:41,678 INFO L481 AbstractCegarLoop]: Interpolant automaton has 5 states. [2018-11-23 12:47:41,678 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 257 transitions. [2018-11-23 12:47:41,681 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2018-11-23 12:47:41,681 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:41,682 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:41,682 INFO L423 AbstractCegarLoop]: === Iteration 4 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:41,682 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:41,682 INFO L82 PathProgramCache]: Analyzing trace with hash 1162543817, now seen corresponding path program 1 times [2018-11-23 12:47:41,682 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:41,683 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:41,684 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:41,684 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:41,684 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:41,708 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:41,961 INFO L256 TraceCheckUtils]: 0: Hoare triple {2886#true} call ULTIMATE.init(); {2886#true} is VALID [2018-11-23 12:47:41,962 INFO L273 TraceCheckUtils]: 1: Hoare triple {2886#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {2886#true} is VALID [2018-11-23 12:47:41,962 INFO L273 TraceCheckUtils]: 2: Hoare triple {2886#true} assume true; {2886#true} is VALID [2018-11-23 12:47:41,962 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {2886#true} {2886#true} #633#return; {2886#true} is VALID [2018-11-23 12:47:41,963 INFO L256 TraceCheckUtils]: 4: Hoare triple {2886#true} call #t~ret138 := main(); {2886#true} is VALID [2018-11-23 12:47:41,963 INFO L273 TraceCheckUtils]: 5: Hoare triple {2886#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {2886#true} is VALID [2018-11-23 12:47:41,963 INFO L256 TraceCheckUtils]: 6: Hoare triple {2886#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {2886#true} is VALID [2018-11-23 12:47:41,965 INFO L273 TraceCheckUtils]: 7: Hoare triple {2886#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,967 INFO L273 TraceCheckUtils]: 8: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,969 INFO L273 TraceCheckUtils]: 9: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,970 INFO L273 TraceCheckUtils]: 10: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,970 INFO L273 TraceCheckUtils]: 11: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,971 INFO L273 TraceCheckUtils]: 12: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,972 INFO L273 TraceCheckUtils]: 13: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,972 INFO L273 TraceCheckUtils]: 14: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,973 INFO L273 TraceCheckUtils]: 15: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,974 INFO L273 TraceCheckUtils]: 16: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,974 INFO L273 TraceCheckUtils]: 17: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,975 INFO L273 TraceCheckUtils]: 18: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,975 INFO L273 TraceCheckUtils]: 19: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:41,976 INFO L273 TraceCheckUtils]: 20: Hoare triple {2888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {2889#(= |ssl3_accept_#t~mem30| 8464)} is VALID [2018-11-23 12:47:41,977 INFO L273 TraceCheckUtils]: 21: Hoare triple {2889#(= |ssl3_accept_#t~mem30| 8464)} assume 8481 == #t~mem30;havoc #t~mem30; {2887#false} is VALID [2018-11-23 12:47:41,977 INFO L273 TraceCheckUtils]: 22: Hoare triple {2887#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {2887#false} is VALID [2018-11-23 12:47:41,978 INFO L273 TraceCheckUtils]: 23: Hoare triple {2887#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,978 INFO L273 TraceCheckUtils]: 24: Hoare triple {2887#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,978 INFO L273 TraceCheckUtils]: 25: Hoare triple {2887#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {2887#false} is VALID [2018-11-23 12:47:41,979 INFO L273 TraceCheckUtils]: 26: Hoare triple {2887#false} ~skip~0 := 0; {2887#false} is VALID [2018-11-23 12:47:41,979 INFO L273 TraceCheckUtils]: 27: Hoare triple {2887#false} assume !false; {2887#false} is VALID [2018-11-23 12:47:41,979 INFO L273 TraceCheckUtils]: 28: Hoare triple {2887#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,980 INFO L273 TraceCheckUtils]: 29: Hoare triple {2887#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,980 INFO L273 TraceCheckUtils]: 30: Hoare triple {2887#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,980 INFO L273 TraceCheckUtils]: 31: Hoare triple {2887#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,980 INFO L273 TraceCheckUtils]: 32: Hoare triple {2887#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,981 INFO L273 TraceCheckUtils]: 33: Hoare triple {2887#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,981 INFO L273 TraceCheckUtils]: 34: Hoare triple {2887#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,981 INFO L273 TraceCheckUtils]: 35: Hoare triple {2887#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,981 INFO L273 TraceCheckUtils]: 36: Hoare triple {2887#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,981 INFO L273 TraceCheckUtils]: 37: Hoare triple {2887#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,982 INFO L273 TraceCheckUtils]: 38: Hoare triple {2887#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,982 INFO L273 TraceCheckUtils]: 39: Hoare triple {2887#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,982 INFO L273 TraceCheckUtils]: 40: Hoare triple {2887#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,982 INFO L273 TraceCheckUtils]: 41: Hoare triple {2887#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,982 INFO L273 TraceCheckUtils]: 42: Hoare triple {2887#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,983 INFO L273 TraceCheckUtils]: 43: Hoare triple {2887#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,983 INFO L273 TraceCheckUtils]: 44: Hoare triple {2887#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,983 INFO L273 TraceCheckUtils]: 45: Hoare triple {2887#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,983 INFO L273 TraceCheckUtils]: 46: Hoare triple {2887#false} assume 8544 == #t~mem41;havoc #t~mem41; {2887#false} is VALID [2018-11-23 12:47:41,984 INFO L273 TraceCheckUtils]: 47: Hoare triple {2887#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,984 INFO L273 TraceCheckUtils]: 48: Hoare triple {2887#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,984 INFO L273 TraceCheckUtils]: 49: Hoare triple {2887#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {2887#false} is VALID [2018-11-23 12:47:41,984 INFO L273 TraceCheckUtils]: 50: Hoare triple {2887#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {2887#false} is VALID [2018-11-23 12:47:41,985 INFO L273 TraceCheckUtils]: 51: Hoare triple {2887#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {2887#false} is VALID [2018-11-23 12:47:41,985 INFO L273 TraceCheckUtils]: 52: Hoare triple {2887#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {2887#false} is VALID [2018-11-23 12:47:41,985 INFO L273 TraceCheckUtils]: 53: Hoare triple {2887#false} assume 8 == ~blastFlag~0; {2887#false} is VALID [2018-11-23 12:47:41,985 INFO L273 TraceCheckUtils]: 54: Hoare triple {2887#false} assume !false; {2887#false} is VALID [2018-11-23 12:47:41,990 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 9 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:41,990 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:41,990 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:41,990 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 55 [2018-11-23 12:47:41,991 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:41,991 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:42,050 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 55 edges. 55 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:42,050 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:42,051 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:42,051 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:42,051 INFO L87 Difference]: Start difference. First operand 172 states and 257 transitions. Second operand 4 states. [2018-11-23 12:47:43,178 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:43,178 INFO L93 Difference]: Finished difference Result 333 states and 497 transitions. [2018-11-23 12:47:43,179 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:43,179 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 55 [2018-11-23 12:47:43,179 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:43,179 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:43,184 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 443 transitions. [2018-11-23 12:47:43,185 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:43,190 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 443 transitions. [2018-11-23 12:47:43,190 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 443 transitions. [2018-11-23 12:47:43,754 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 443 edges. 443 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:43,758 INFO L225 Difference]: With dead ends: 333 [2018-11-23 12:47:43,758 INFO L226 Difference]: Without dead ends: 186 [2018-11-23 12:47:43,759 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:43,760 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 186 states. [2018-11-23 12:47:44,270 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 186 to 172. [2018-11-23 12:47:44,270 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:44,271 INFO L82 GeneralOperation]: Start isEquivalent. First operand 186 states. Second operand 172 states. [2018-11-23 12:47:44,271 INFO L74 IsIncluded]: Start isIncluded. First operand 186 states. Second operand 172 states. [2018-11-23 12:47:44,271 INFO L87 Difference]: Start difference. First operand 186 states. Second operand 172 states. [2018-11-23 12:47:44,278 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:44,279 INFO L93 Difference]: Finished difference Result 186 states and 273 transitions. [2018-11-23 12:47:44,279 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 273 transitions. [2018-11-23 12:47:44,280 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:44,280 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:44,280 INFO L74 IsIncluded]: Start isIncluded. First operand 172 states. Second operand 186 states. [2018-11-23 12:47:44,280 INFO L87 Difference]: Start difference. First operand 172 states. Second operand 186 states. [2018-11-23 12:47:44,287 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:44,287 INFO L93 Difference]: Finished difference Result 186 states and 273 transitions. [2018-11-23 12:47:44,287 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 273 transitions. [2018-11-23 12:47:44,288 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:44,288 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:44,288 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:44,288 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:44,289 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 172 states. [2018-11-23 12:47:44,295 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 256 transitions. [2018-11-23 12:47:44,295 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 256 transitions. Word has length 55 [2018-11-23 12:47:44,295 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:44,295 INFO L480 AbstractCegarLoop]: Abstraction has 172 states and 256 transitions. [2018-11-23 12:47:44,295 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:44,296 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 256 transitions. [2018-11-23 12:47:44,296 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2018-11-23 12:47:44,297 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:44,297 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:44,297 INFO L423 AbstractCegarLoop]: === Iteration 5 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:44,297 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:44,298 INFO L82 PathProgramCache]: Analyzing trace with hash -480987638, now seen corresponding path program 1 times [2018-11-23 12:47:44,298 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:44,298 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:44,299 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:44,300 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:44,300 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:44,320 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:44,510 INFO L256 TraceCheckUtils]: 0: Hoare triple {3866#true} call ULTIMATE.init(); {3866#true} is VALID [2018-11-23 12:47:44,511 INFO L273 TraceCheckUtils]: 1: Hoare triple {3866#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {3866#true} is VALID [2018-11-23 12:47:44,511 INFO L273 TraceCheckUtils]: 2: Hoare triple {3866#true} assume true; {3866#true} is VALID [2018-11-23 12:47:44,511 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {3866#true} {3866#true} #633#return; {3866#true} is VALID [2018-11-23 12:47:44,512 INFO L256 TraceCheckUtils]: 4: Hoare triple {3866#true} call #t~ret138 := main(); {3866#true} is VALID [2018-11-23 12:47:44,512 INFO L273 TraceCheckUtils]: 5: Hoare triple {3866#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {3866#true} is VALID [2018-11-23 12:47:44,512 INFO L256 TraceCheckUtils]: 6: Hoare triple {3866#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {3866#true} is VALID [2018-11-23 12:47:44,515 INFO L273 TraceCheckUtils]: 7: Hoare triple {3866#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,520 INFO L273 TraceCheckUtils]: 8: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,530 INFO L273 TraceCheckUtils]: 9: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,530 INFO L273 TraceCheckUtils]: 10: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,531 INFO L273 TraceCheckUtils]: 11: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,531 INFO L273 TraceCheckUtils]: 12: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,532 INFO L273 TraceCheckUtils]: 13: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,532 INFO L273 TraceCheckUtils]: 14: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,533 INFO L273 TraceCheckUtils]: 15: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,533 INFO L273 TraceCheckUtils]: 16: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,534 INFO L273 TraceCheckUtils]: 17: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,534 INFO L273 TraceCheckUtils]: 18: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,534 INFO L273 TraceCheckUtils]: 19: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,535 INFO L273 TraceCheckUtils]: 20: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:44,536 INFO L273 TraceCheckUtils]: 21: Hoare triple {3868#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {3869#(= |ssl3_accept_#t~mem31| 8464)} is VALID [2018-11-23 12:47:44,536 INFO L273 TraceCheckUtils]: 22: Hoare triple {3869#(= |ssl3_accept_#t~mem31| 8464)} assume 8482 == #t~mem31;havoc #t~mem31; {3867#false} is VALID [2018-11-23 12:47:44,537 INFO L273 TraceCheckUtils]: 23: Hoare triple {3867#false} call write~int(3, ~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,537 INFO L273 TraceCheckUtils]: 24: Hoare triple {3867#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,537 INFO L273 TraceCheckUtils]: 25: Hoare triple {3867#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {3867#false} is VALID [2018-11-23 12:47:44,538 INFO L273 TraceCheckUtils]: 26: Hoare triple {3867#false} ~skip~0 := 0; {3867#false} is VALID [2018-11-23 12:47:44,538 INFO L273 TraceCheckUtils]: 27: Hoare triple {3867#false} assume !false; {3867#false} is VALID [2018-11-23 12:47:44,539 INFO L273 TraceCheckUtils]: 28: Hoare triple {3867#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,539 INFO L273 TraceCheckUtils]: 29: Hoare triple {3867#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,539 INFO L273 TraceCheckUtils]: 30: Hoare triple {3867#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,540 INFO L273 TraceCheckUtils]: 31: Hoare triple {3867#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,540 INFO L273 TraceCheckUtils]: 32: Hoare triple {3867#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,540 INFO L273 TraceCheckUtils]: 33: Hoare triple {3867#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,540 INFO L273 TraceCheckUtils]: 34: Hoare triple {3867#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,541 INFO L273 TraceCheckUtils]: 35: Hoare triple {3867#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,541 INFO L273 TraceCheckUtils]: 36: Hoare triple {3867#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,541 INFO L273 TraceCheckUtils]: 37: Hoare triple {3867#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,541 INFO L273 TraceCheckUtils]: 38: Hoare triple {3867#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,542 INFO L273 TraceCheckUtils]: 39: Hoare triple {3867#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,542 INFO L273 TraceCheckUtils]: 40: Hoare triple {3867#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,542 INFO L273 TraceCheckUtils]: 41: Hoare triple {3867#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,542 INFO L273 TraceCheckUtils]: 42: Hoare triple {3867#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,542 INFO L273 TraceCheckUtils]: 43: Hoare triple {3867#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,543 INFO L273 TraceCheckUtils]: 44: Hoare triple {3867#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,543 INFO L273 TraceCheckUtils]: 45: Hoare triple {3867#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,543 INFO L273 TraceCheckUtils]: 46: Hoare triple {3867#false} assume 8544 == #t~mem41;havoc #t~mem41; {3867#false} is VALID [2018-11-23 12:47:44,543 INFO L273 TraceCheckUtils]: 47: Hoare triple {3867#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,543 INFO L273 TraceCheckUtils]: 48: Hoare triple {3867#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,544 INFO L273 TraceCheckUtils]: 49: Hoare triple {3867#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {3867#false} is VALID [2018-11-23 12:47:44,544 INFO L273 TraceCheckUtils]: 50: Hoare triple {3867#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {3867#false} is VALID [2018-11-23 12:47:44,544 INFO L273 TraceCheckUtils]: 51: Hoare triple {3867#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {3867#false} is VALID [2018-11-23 12:47:44,544 INFO L273 TraceCheckUtils]: 52: Hoare triple {3867#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {3867#false} is VALID [2018-11-23 12:47:44,545 INFO L273 TraceCheckUtils]: 53: Hoare triple {3867#false} assume 8 == ~blastFlag~0; {3867#false} is VALID [2018-11-23 12:47:44,545 INFO L273 TraceCheckUtils]: 54: Hoare triple {3867#false} assume !false; {3867#false} is VALID [2018-11-23 12:47:44,552 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:44,552 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:44,553 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:44,553 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 55 [2018-11-23 12:47:44,553 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:44,553 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:44,625 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 55 edges. 55 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:44,625 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:44,626 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:44,626 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:44,626 INFO L87 Difference]: Start difference. First operand 172 states and 256 transitions. Second operand 4 states. [2018-11-23 12:47:46,092 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:46,093 INFO L93 Difference]: Finished difference Result 332 states and 495 transitions. [2018-11-23 12:47:46,093 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:46,093 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 55 [2018-11-23 12:47:46,093 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:46,094 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:46,101 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 441 transitions. [2018-11-23 12:47:46,101 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:46,105 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 441 transitions. [2018-11-23 12:47:46,105 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 441 transitions. [2018-11-23 12:47:46,709 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 441 edges. 441 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:46,713 INFO L225 Difference]: With dead ends: 332 [2018-11-23 12:47:46,713 INFO L226 Difference]: Without dead ends: 185 [2018-11-23 12:47:46,714 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:46,715 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 185 states. [2018-11-23 12:47:46,770 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 185 to 172. [2018-11-23 12:47:46,771 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:46,771 INFO L82 GeneralOperation]: Start isEquivalent. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:46,771 INFO L74 IsIncluded]: Start isIncluded. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:46,771 INFO L87 Difference]: Start difference. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:46,776 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:46,776 INFO L93 Difference]: Finished difference Result 185 states and 271 transitions. [2018-11-23 12:47:46,776 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 271 transitions. [2018-11-23 12:47:46,777 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:46,777 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:46,777 INFO L74 IsIncluded]: Start isIncluded. First operand 172 states. Second operand 185 states. [2018-11-23 12:47:46,777 INFO L87 Difference]: Start difference. First operand 172 states. Second operand 185 states. [2018-11-23 12:47:46,782 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:46,782 INFO L93 Difference]: Finished difference Result 185 states and 271 transitions. [2018-11-23 12:47:46,782 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 271 transitions. [2018-11-23 12:47:46,783 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:46,783 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:46,783 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:46,783 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:46,783 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 172 states. [2018-11-23 12:47:46,787 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 255 transitions. [2018-11-23 12:47:46,787 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 255 transitions. Word has length 55 [2018-11-23 12:47:46,788 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:46,788 INFO L480 AbstractCegarLoop]: Abstraction has 172 states and 255 transitions. [2018-11-23 12:47:46,788 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:46,788 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 255 transitions. [2018-11-23 12:47:46,789 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2018-11-23 12:47:46,789 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:46,789 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:46,789 INFO L423 AbstractCegarLoop]: === Iteration 6 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:46,790 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:46,790 INFO L82 PathProgramCache]: Analyzing trace with hash -2014271313, now seen corresponding path program 1 times [2018-11-23 12:47:46,790 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:46,790 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:46,792 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:46,792 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:46,792 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:46,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:47,082 WARN L180 SmtUtils]: Spent 100.00 ms on a formula simplification. DAG size of input: 18 DAG size of output: 15 [2018-11-23 12:47:47,314 INFO L256 TraceCheckUtils]: 0: Hoare triple {4842#true} call ULTIMATE.init(); {4842#true} is VALID [2018-11-23 12:47:47,314 INFO L273 TraceCheckUtils]: 1: Hoare triple {4842#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {4842#true} is VALID [2018-11-23 12:47:47,314 INFO L273 TraceCheckUtils]: 2: Hoare triple {4842#true} assume true; {4842#true} is VALID [2018-11-23 12:47:47,315 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {4842#true} {4842#true} #633#return; {4842#true} is VALID [2018-11-23 12:47:47,315 INFO L256 TraceCheckUtils]: 4: Hoare triple {4842#true} call #t~ret138 := main(); {4842#true} is VALID [2018-11-23 12:47:47,315 INFO L273 TraceCheckUtils]: 5: Hoare triple {4842#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {4842#true} is VALID [2018-11-23 12:47:47,316 INFO L256 TraceCheckUtils]: 6: Hoare triple {4842#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {4842#true} is VALID [2018-11-23 12:47:47,318 INFO L273 TraceCheckUtils]: 7: Hoare triple {4842#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,318 INFO L273 TraceCheckUtils]: 8: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,319 INFO L273 TraceCheckUtils]: 9: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,320 INFO L273 TraceCheckUtils]: 10: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,320 INFO L273 TraceCheckUtils]: 11: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,321 INFO L273 TraceCheckUtils]: 12: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,321 INFO L273 TraceCheckUtils]: 13: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,321 INFO L273 TraceCheckUtils]: 14: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:47,322 INFO L273 TraceCheckUtils]: 15: Hoare triple {4844#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {4845#(= |ssl3_accept_#t~mem25| 8464)} is VALID [2018-11-23 12:47:47,322 INFO L273 TraceCheckUtils]: 16: Hoare triple {4845#(= |ssl3_accept_#t~mem25| 8464)} assume 16384 == #t~mem25;havoc #t~mem25; {4843#false} is VALID [2018-11-23 12:47:47,323 INFO L273 TraceCheckUtils]: 17: Hoare triple {4843#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,323 INFO L273 TraceCheckUtils]: 18: Hoare triple {4843#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {4843#false} is VALID [2018-11-23 12:47:47,323 INFO L273 TraceCheckUtils]: 19: Hoare triple {4843#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,323 INFO L273 TraceCheckUtils]: 20: Hoare triple {4843#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,323 INFO L273 TraceCheckUtils]: 21: Hoare triple {4843#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {4843#false} is VALID [2018-11-23 12:47:47,324 INFO L273 TraceCheckUtils]: 22: Hoare triple {4843#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,324 INFO L273 TraceCheckUtils]: 23: Hoare triple {4843#false} assume 12292 != #t~mem62;havoc #t~mem62; {4843#false} is VALID [2018-11-23 12:47:47,324 INFO L273 TraceCheckUtils]: 24: Hoare triple {4843#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {4843#false} is VALID [2018-11-23 12:47:47,325 INFO L273 TraceCheckUtils]: 25: Hoare triple {4843#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,325 INFO L273 TraceCheckUtils]: 26: Hoare triple {4843#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {4843#false} is VALID [2018-11-23 12:47:47,325 INFO L273 TraceCheckUtils]: 27: Hoare triple {4843#false} ~skip~0 := 0; {4843#false} is VALID [2018-11-23 12:47:47,325 INFO L273 TraceCheckUtils]: 28: Hoare triple {4843#false} assume !false; {4843#false} is VALID [2018-11-23 12:47:47,326 INFO L273 TraceCheckUtils]: 29: Hoare triple {4843#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,326 INFO L273 TraceCheckUtils]: 30: Hoare triple {4843#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,326 INFO L273 TraceCheckUtils]: 31: Hoare triple {4843#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,326 INFO L273 TraceCheckUtils]: 32: Hoare triple {4843#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,327 INFO L273 TraceCheckUtils]: 33: Hoare triple {4843#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,327 INFO L273 TraceCheckUtils]: 34: Hoare triple {4843#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,327 INFO L273 TraceCheckUtils]: 35: Hoare triple {4843#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,327 INFO L273 TraceCheckUtils]: 36: Hoare triple {4843#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,327 INFO L273 TraceCheckUtils]: 37: Hoare triple {4843#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,328 INFO L273 TraceCheckUtils]: 38: Hoare triple {4843#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,328 INFO L273 TraceCheckUtils]: 39: Hoare triple {4843#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,328 INFO L273 TraceCheckUtils]: 40: Hoare triple {4843#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,328 INFO L273 TraceCheckUtils]: 41: Hoare triple {4843#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,328 INFO L273 TraceCheckUtils]: 42: Hoare triple {4843#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,329 INFO L273 TraceCheckUtils]: 43: Hoare triple {4843#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,329 INFO L273 TraceCheckUtils]: 44: Hoare triple {4843#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,329 INFO L273 TraceCheckUtils]: 45: Hoare triple {4843#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,329 INFO L273 TraceCheckUtils]: 46: Hoare triple {4843#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,329 INFO L273 TraceCheckUtils]: 47: Hoare triple {4843#false} assume 8544 == #t~mem41;havoc #t~mem41; {4843#false} is VALID [2018-11-23 12:47:47,329 INFO L273 TraceCheckUtils]: 48: Hoare triple {4843#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,330 INFO L273 TraceCheckUtils]: 49: Hoare triple {4843#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,330 INFO L273 TraceCheckUtils]: 50: Hoare triple {4843#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {4843#false} is VALID [2018-11-23 12:47:47,330 INFO L273 TraceCheckUtils]: 51: Hoare triple {4843#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {4843#false} is VALID [2018-11-23 12:47:47,330 INFO L273 TraceCheckUtils]: 52: Hoare triple {4843#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {4843#false} is VALID [2018-11-23 12:47:47,331 INFO L273 TraceCheckUtils]: 53: Hoare triple {4843#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {4843#false} is VALID [2018-11-23 12:47:47,331 INFO L273 TraceCheckUtils]: 54: Hoare triple {4843#false} assume 8 == ~blastFlag~0; {4843#false} is VALID [2018-11-23 12:47:47,331 INFO L273 TraceCheckUtils]: 55: Hoare triple {4843#false} assume !false; {4843#false} is VALID [2018-11-23 12:47:47,335 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:47,336 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:47,336 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:47,336 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 56 [2018-11-23 12:47:47,337 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:47,337 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:47,413 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 56 edges. 56 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:47,413 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:47,413 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:47,414 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:47,414 INFO L87 Difference]: Start difference. First operand 172 states and 255 transitions. Second operand 4 states. [2018-11-23 12:47:48,730 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:48,730 INFO L93 Difference]: Finished difference Result 332 states and 494 transitions. [2018-11-23 12:47:48,730 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:48,730 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 56 [2018-11-23 12:47:48,731 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:48,731 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:48,735 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 440 transitions. [2018-11-23 12:47:48,735 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:48,738 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 440 transitions. [2018-11-23 12:47:48,738 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 440 transitions. [2018-11-23 12:47:49,644 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 440 edges. 440 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:49,647 INFO L225 Difference]: With dead ends: 332 [2018-11-23 12:47:49,648 INFO L226 Difference]: Without dead ends: 185 [2018-11-23 12:47:49,648 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:49,649 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 185 states. [2018-11-23 12:47:49,702 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 185 to 172. [2018-11-23 12:47:49,702 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:49,702 INFO L82 GeneralOperation]: Start isEquivalent. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:49,703 INFO L74 IsIncluded]: Start isIncluded. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:49,703 INFO L87 Difference]: Start difference. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:49,707 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:49,708 INFO L93 Difference]: Finished difference Result 185 states and 270 transitions. [2018-11-23 12:47:49,708 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 270 transitions. [2018-11-23 12:47:49,708 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:49,708 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:49,709 INFO L74 IsIncluded]: Start isIncluded. First operand 172 states. Second operand 185 states. [2018-11-23 12:47:49,709 INFO L87 Difference]: Start difference. First operand 172 states. Second operand 185 states. [2018-11-23 12:47:49,713 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:49,713 INFO L93 Difference]: Finished difference Result 185 states and 270 transitions. [2018-11-23 12:47:49,713 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 270 transitions. [2018-11-23 12:47:49,714 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:49,714 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:49,714 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:49,714 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:49,715 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 172 states. [2018-11-23 12:47:49,718 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 254 transitions. [2018-11-23 12:47:49,719 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 254 transitions. Word has length 56 [2018-11-23 12:47:49,719 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:49,719 INFO L480 AbstractCegarLoop]: Abstraction has 172 states and 254 transitions. [2018-11-23 12:47:49,719 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:49,719 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 254 transitions. [2018-11-23 12:47:49,720 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2018-11-23 12:47:49,720 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:49,720 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:49,721 INFO L423 AbstractCegarLoop]: === Iteration 7 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:49,721 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:49,721 INFO L82 PathProgramCache]: Analyzing trace with hash -515871290, now seen corresponding path program 1 times [2018-11-23 12:47:49,721 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:49,721 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:49,722 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:49,723 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:49,723 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:49,741 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:50,377 WARN L180 SmtUtils]: Spent 103.00 ms on a formula simplification. DAG size of input: 6 DAG size of output: 3 [2018-11-23 12:47:50,441 INFO L256 TraceCheckUtils]: 0: Hoare triple {5818#true} call ULTIMATE.init(); {5818#true} is VALID [2018-11-23 12:47:50,441 INFO L273 TraceCheckUtils]: 1: Hoare triple {5818#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {5818#true} is VALID [2018-11-23 12:47:50,441 INFO L273 TraceCheckUtils]: 2: Hoare triple {5818#true} assume true; {5818#true} is VALID [2018-11-23 12:47:50,442 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {5818#true} {5818#true} #633#return; {5818#true} is VALID [2018-11-23 12:47:50,442 INFO L256 TraceCheckUtils]: 4: Hoare triple {5818#true} call #t~ret138 := main(); {5818#true} is VALID [2018-11-23 12:47:50,442 INFO L273 TraceCheckUtils]: 5: Hoare triple {5818#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {5818#true} is VALID [2018-11-23 12:47:50,442 INFO L256 TraceCheckUtils]: 6: Hoare triple {5818#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {5818#true} is VALID [2018-11-23 12:47:50,452 INFO L273 TraceCheckUtils]: 7: Hoare triple {5818#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,452 INFO L273 TraceCheckUtils]: 8: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,458 INFO L273 TraceCheckUtils]: 9: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,458 INFO L273 TraceCheckUtils]: 10: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,458 INFO L273 TraceCheckUtils]: 11: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,459 INFO L273 TraceCheckUtils]: 12: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,459 INFO L273 TraceCheckUtils]: 13: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,460 INFO L273 TraceCheckUtils]: 14: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,460 INFO L273 TraceCheckUtils]: 15: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:50,460 INFO L273 TraceCheckUtils]: 16: Hoare triple {5820#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {5821#(= |ssl3_accept_#t~mem26| 8464)} is VALID [2018-11-23 12:47:50,461 INFO L273 TraceCheckUtils]: 17: Hoare triple {5821#(= |ssl3_accept_#t~mem26| 8464)} assume 8192 == #t~mem26;havoc #t~mem26; {5819#false} is VALID [2018-11-23 12:47:50,461 INFO L273 TraceCheckUtils]: 18: Hoare triple {5819#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,462 INFO L273 TraceCheckUtils]: 19: Hoare triple {5819#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {5819#false} is VALID [2018-11-23 12:47:50,462 INFO L273 TraceCheckUtils]: 20: Hoare triple {5819#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,462 INFO L273 TraceCheckUtils]: 21: Hoare triple {5819#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,462 INFO L273 TraceCheckUtils]: 22: Hoare triple {5819#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {5819#false} is VALID [2018-11-23 12:47:50,463 INFO L273 TraceCheckUtils]: 23: Hoare triple {5819#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,463 INFO L273 TraceCheckUtils]: 24: Hoare triple {5819#false} assume 12292 != #t~mem62;havoc #t~mem62; {5819#false} is VALID [2018-11-23 12:47:50,463 INFO L273 TraceCheckUtils]: 25: Hoare triple {5819#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {5819#false} is VALID [2018-11-23 12:47:50,463 INFO L273 TraceCheckUtils]: 26: Hoare triple {5819#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,464 INFO L273 TraceCheckUtils]: 27: Hoare triple {5819#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {5819#false} is VALID [2018-11-23 12:47:50,464 INFO L273 TraceCheckUtils]: 28: Hoare triple {5819#false} ~skip~0 := 0; {5819#false} is VALID [2018-11-23 12:47:50,464 INFO L273 TraceCheckUtils]: 29: Hoare triple {5819#false} assume !false; {5819#false} is VALID [2018-11-23 12:47:50,464 INFO L273 TraceCheckUtils]: 30: Hoare triple {5819#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,464 INFO L273 TraceCheckUtils]: 31: Hoare triple {5819#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,464 INFO L273 TraceCheckUtils]: 32: Hoare triple {5819#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,465 INFO L273 TraceCheckUtils]: 33: Hoare triple {5819#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,465 INFO L273 TraceCheckUtils]: 34: Hoare triple {5819#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,465 INFO L273 TraceCheckUtils]: 35: Hoare triple {5819#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,465 INFO L273 TraceCheckUtils]: 36: Hoare triple {5819#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,465 INFO L273 TraceCheckUtils]: 37: Hoare triple {5819#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,466 INFO L273 TraceCheckUtils]: 38: Hoare triple {5819#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,466 INFO L273 TraceCheckUtils]: 39: Hoare triple {5819#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,466 INFO L273 TraceCheckUtils]: 40: Hoare triple {5819#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,466 INFO L273 TraceCheckUtils]: 41: Hoare triple {5819#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,467 INFO L273 TraceCheckUtils]: 42: Hoare triple {5819#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,467 INFO L273 TraceCheckUtils]: 43: Hoare triple {5819#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,467 INFO L273 TraceCheckUtils]: 44: Hoare triple {5819#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,467 INFO L273 TraceCheckUtils]: 45: Hoare triple {5819#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,467 INFO L273 TraceCheckUtils]: 46: Hoare triple {5819#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,468 INFO L273 TraceCheckUtils]: 47: Hoare triple {5819#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,468 INFO L273 TraceCheckUtils]: 48: Hoare triple {5819#false} assume 8544 == #t~mem41;havoc #t~mem41; {5819#false} is VALID [2018-11-23 12:47:50,468 INFO L273 TraceCheckUtils]: 49: Hoare triple {5819#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,468 INFO L273 TraceCheckUtils]: 50: Hoare triple {5819#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,468 INFO L273 TraceCheckUtils]: 51: Hoare triple {5819#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {5819#false} is VALID [2018-11-23 12:47:50,469 INFO L273 TraceCheckUtils]: 52: Hoare triple {5819#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {5819#false} is VALID [2018-11-23 12:47:50,469 INFO L273 TraceCheckUtils]: 53: Hoare triple {5819#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {5819#false} is VALID [2018-11-23 12:47:50,469 INFO L273 TraceCheckUtils]: 54: Hoare triple {5819#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {5819#false} is VALID [2018-11-23 12:47:50,469 INFO L273 TraceCheckUtils]: 55: Hoare triple {5819#false} assume 8 == ~blastFlag~0; {5819#false} is VALID [2018-11-23 12:47:50,469 INFO L273 TraceCheckUtils]: 56: Hoare triple {5819#false} assume !false; {5819#false} is VALID [2018-11-23 12:47:50,473 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:50,474 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:50,474 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:50,474 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 57 [2018-11-23 12:47:50,474 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:50,474 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:50,596 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 57 edges. 57 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:50,596 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:50,596 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:50,596 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:50,597 INFO L87 Difference]: Start difference. First operand 172 states and 254 transitions. Second operand 4 states. [2018-11-23 12:47:52,491 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:52,491 INFO L93 Difference]: Finished difference Result 332 states and 493 transitions. [2018-11-23 12:47:52,491 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:52,492 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 57 [2018-11-23 12:47:52,492 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:52,492 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:52,495 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 439 transitions. [2018-11-23 12:47:52,495 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:52,502 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 439 transitions. [2018-11-23 12:47:52,502 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 439 transitions. [2018-11-23 12:47:53,342 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 439 edges. 439 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:53,346 INFO L225 Difference]: With dead ends: 332 [2018-11-23 12:47:53,346 INFO L226 Difference]: Without dead ends: 185 [2018-11-23 12:47:53,347 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:53,347 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 185 states. [2018-11-23 12:47:53,506 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 185 to 172. [2018-11-23 12:47:53,506 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:53,506 INFO L82 GeneralOperation]: Start isEquivalent. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:53,506 INFO L74 IsIncluded]: Start isIncluded. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:53,506 INFO L87 Difference]: Start difference. First operand 185 states. Second operand 172 states. [2018-11-23 12:47:53,510 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:53,511 INFO L93 Difference]: Finished difference Result 185 states and 269 transitions. [2018-11-23 12:47:53,511 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 269 transitions. [2018-11-23 12:47:53,511 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:53,511 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:53,512 INFO L74 IsIncluded]: Start isIncluded. First operand 172 states. Second operand 185 states. [2018-11-23 12:47:53,512 INFO L87 Difference]: Start difference. First operand 172 states. Second operand 185 states. [2018-11-23 12:47:53,516 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:53,516 INFO L93 Difference]: Finished difference Result 185 states and 269 transitions. [2018-11-23 12:47:53,516 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 269 transitions. [2018-11-23 12:47:53,517 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:53,517 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:53,517 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:53,517 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:53,518 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 172 states. [2018-11-23 12:47:53,522 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 253 transitions. [2018-11-23 12:47:53,522 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 253 transitions. Word has length 57 [2018-11-23 12:47:53,522 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:53,522 INFO L480 AbstractCegarLoop]: Abstraction has 172 states and 253 transitions. [2018-11-23 12:47:53,523 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:53,523 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 253 transitions. [2018-11-23 12:47:53,523 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2018-11-23 12:47:53,524 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:53,524 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:53,524 INFO L423 AbstractCegarLoop]: === Iteration 8 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:53,524 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:53,524 INFO L82 PathProgramCache]: Analyzing trace with hash -623975095, now seen corresponding path program 1 times [2018-11-23 12:47:53,525 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:53,525 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:53,526 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:53,526 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:53,526 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:53,545 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:54,054 WARN L180 SmtUtils]: Spent 100.00 ms on a formula simplification. DAG size of input: 6 DAG size of output: 3 [2018-11-23 12:47:54,169 INFO L256 TraceCheckUtils]: 0: Hoare triple {6794#true} call ULTIMATE.init(); {6794#true} is VALID [2018-11-23 12:47:54,169 INFO L273 TraceCheckUtils]: 1: Hoare triple {6794#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,170 INFO L273 TraceCheckUtils]: 2: Hoare triple {6794#true} assume true; {6794#true} is VALID [2018-11-23 12:47:54,170 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {6794#true} {6794#true} #633#return; {6794#true} is VALID [2018-11-23 12:47:54,170 INFO L256 TraceCheckUtils]: 4: Hoare triple {6794#true} call #t~ret138 := main(); {6794#true} is VALID [2018-11-23 12:47:54,170 INFO L273 TraceCheckUtils]: 5: Hoare triple {6794#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,170 INFO L256 TraceCheckUtils]: 6: Hoare triple {6794#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {6794#true} is VALID [2018-11-23 12:47:54,171 INFO L273 TraceCheckUtils]: 7: Hoare triple {6794#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,171 INFO L273 TraceCheckUtils]: 8: Hoare triple {6794#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {6794#true} is VALID [2018-11-23 12:47:54,171 INFO L273 TraceCheckUtils]: 9: Hoare triple {6794#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {6794#true} is VALID [2018-11-23 12:47:54,171 INFO L273 TraceCheckUtils]: 10: Hoare triple {6794#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {6794#true} is VALID [2018-11-23 12:47:54,172 INFO L273 TraceCheckUtils]: 11: Hoare triple {6794#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,172 INFO L273 TraceCheckUtils]: 12: Hoare triple {6794#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {6794#true} is VALID [2018-11-23 12:47:54,172 INFO L273 TraceCheckUtils]: 13: Hoare triple {6794#true} assume !false; {6794#true} is VALID [2018-11-23 12:47:54,172 INFO L273 TraceCheckUtils]: 14: Hoare triple {6794#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,172 INFO L273 TraceCheckUtils]: 15: Hoare triple {6794#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,173 INFO L273 TraceCheckUtils]: 16: Hoare triple {6794#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,173 INFO L273 TraceCheckUtils]: 17: Hoare triple {6794#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,173 INFO L273 TraceCheckUtils]: 18: Hoare triple {6794#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,173 INFO L273 TraceCheckUtils]: 19: Hoare triple {6794#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,173 INFO L273 TraceCheckUtils]: 20: Hoare triple {6794#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,174 INFO L273 TraceCheckUtils]: 21: Hoare triple {6794#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,174 INFO L273 TraceCheckUtils]: 22: Hoare triple {6794#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {6794#true} is VALID [2018-11-23 12:47:54,174 INFO L273 TraceCheckUtils]: 23: Hoare triple {6794#true} assume 8464 == #t~mem32;havoc #t~mem32; {6794#true} is VALID [2018-11-23 12:47:54,174 INFO L273 TraceCheckUtils]: 24: Hoare triple {6794#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {6794#true} is VALID [2018-11-23 12:47:54,175 INFO L273 TraceCheckUtils]: 25: Hoare triple {6794#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {6794#true} is VALID [2018-11-23 12:47:54,186 INFO L273 TraceCheckUtils]: 26: Hoare triple {6794#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,199 INFO L273 TraceCheckUtils]: 27: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,211 INFO L273 TraceCheckUtils]: 28: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,224 INFO L273 TraceCheckUtils]: 29: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,237 INFO L273 TraceCheckUtils]: 30: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !false; {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,249 INFO L273 TraceCheckUtils]: 31: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,262 INFO L273 TraceCheckUtils]: 32: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,265 INFO L273 TraceCheckUtils]: 33: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,265 INFO L273 TraceCheckUtils]: 34: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,267 INFO L273 TraceCheckUtils]: 35: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,267 INFO L273 TraceCheckUtils]: 36: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,269 INFO L273 TraceCheckUtils]: 37: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,269 INFO L273 TraceCheckUtils]: 38: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,271 INFO L273 TraceCheckUtils]: 39: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,271 INFO L273 TraceCheckUtils]: 40: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,272 INFO L273 TraceCheckUtils]: 41: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:47:54,272 INFO L273 TraceCheckUtils]: 42: Hoare triple {6796#(= 8496 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {6797#(= 8496 |ssl3_accept_#t~mem35|)} is VALID [2018-11-23 12:47:54,274 INFO L273 TraceCheckUtils]: 43: Hoare triple {6797#(= 8496 |ssl3_accept_#t~mem35|)} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,274 INFO L273 TraceCheckUtils]: 44: Hoare triple {6795#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,274 INFO L273 TraceCheckUtils]: 45: Hoare triple {6795#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,274 INFO L273 TraceCheckUtils]: 46: Hoare triple {6795#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,274 INFO L273 TraceCheckUtils]: 47: Hoare triple {6795#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,275 INFO L273 TraceCheckUtils]: 48: Hoare triple {6795#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,275 INFO L273 TraceCheckUtils]: 49: Hoare triple {6795#false} assume 8544 == #t~mem41;havoc #t~mem41; {6795#false} is VALID [2018-11-23 12:47:54,275 INFO L273 TraceCheckUtils]: 50: Hoare triple {6795#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,275 INFO L273 TraceCheckUtils]: 51: Hoare triple {6795#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,275 INFO L273 TraceCheckUtils]: 52: Hoare triple {6795#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {6795#false} is VALID [2018-11-23 12:47:54,276 INFO L273 TraceCheckUtils]: 53: Hoare triple {6795#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {6795#false} is VALID [2018-11-23 12:47:54,276 INFO L273 TraceCheckUtils]: 54: Hoare triple {6795#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {6795#false} is VALID [2018-11-23 12:47:54,276 INFO L273 TraceCheckUtils]: 55: Hoare triple {6795#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {6795#false} is VALID [2018-11-23 12:47:54,276 INFO L273 TraceCheckUtils]: 56: Hoare triple {6795#false} assume 8 == ~blastFlag~0; {6795#false} is VALID [2018-11-23 12:47:54,276 INFO L273 TraceCheckUtils]: 57: Hoare triple {6795#false} assume !false; {6795#false} is VALID [2018-11-23 12:47:54,280 INFO L134 CoverageAnalysis]: Checked inductivity of 11 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:54,280 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:54,280 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:54,281 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 58 [2018-11-23 12:47:54,281 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:54,281 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:54,347 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 58 edges. 58 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:54,347 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:54,348 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:54,348 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:54,348 INFO L87 Difference]: Start difference. First operand 172 states and 253 transitions. Second operand 4 states. [2018-11-23 12:47:55,544 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:55,544 INFO L93 Difference]: Finished difference Result 361 states and 539 transitions. [2018-11-23 12:47:55,544 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:55,545 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 58 [2018-11-23 12:47:55,545 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:55,545 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:55,549 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 472 transitions. [2018-11-23 12:47:55,549 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:55,553 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 472 transitions. [2018-11-23 12:47:55,553 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 472 transitions. [2018-11-23 12:47:57,195 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 472 edges. 472 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:57,200 INFO L225 Difference]: With dead ends: 361 [2018-11-23 12:47:57,200 INFO L226 Difference]: Without dead ends: 214 [2018-11-23 12:47:57,201 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:47:57,202 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 214 states. [2018-11-23 12:47:57,299 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 214 to 194. [2018-11-23 12:47:57,299 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:47:57,300 INFO L82 GeneralOperation]: Start isEquivalent. First operand 214 states. Second operand 194 states. [2018-11-23 12:47:57,300 INFO L74 IsIncluded]: Start isIncluded. First operand 214 states. Second operand 194 states. [2018-11-23 12:47:57,300 INFO L87 Difference]: Start difference. First operand 214 states. Second operand 194 states. [2018-11-23 12:47:57,305 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:57,306 INFO L93 Difference]: Finished difference Result 214 states and 315 transitions. [2018-11-23 12:47:57,306 INFO L276 IsEmpty]: Start isEmpty. Operand 214 states and 315 transitions. [2018-11-23 12:47:57,306 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:57,306 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:57,307 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 214 states. [2018-11-23 12:47:57,307 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 214 states. [2018-11-23 12:47:57,312 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:57,312 INFO L93 Difference]: Finished difference Result 214 states and 315 transitions. [2018-11-23 12:47:57,313 INFO L276 IsEmpty]: Start isEmpty. Operand 214 states and 315 transitions. [2018-11-23 12:47:57,313 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:47:57,313 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:47:57,313 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:47:57,314 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:47:57,314 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:47:57,319 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 290 transitions. [2018-11-23 12:47:57,320 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 290 transitions. Word has length 58 [2018-11-23 12:47:57,320 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:47:57,320 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 290 transitions. [2018-11-23 12:47:57,320 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:47:57,320 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 290 transitions. [2018-11-23 12:47:57,321 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2018-11-23 12:47:57,321 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:47:57,321 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:47:57,321 INFO L423 AbstractCegarLoop]: === Iteration 9 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:47:57,322 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:47:57,322 INFO L82 PathProgramCache]: Analyzing trace with hash 1702821866, now seen corresponding path program 1 times [2018-11-23 12:47:57,322 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:47:57,322 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:47:57,323 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:57,323 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:47:57,324 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:47:57,339 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:47:58,081 INFO L256 TraceCheckUtils]: 0: Hoare triple {7886#true} call ULTIMATE.init(); {7886#true} is VALID [2018-11-23 12:47:58,082 INFO L273 TraceCheckUtils]: 1: Hoare triple {7886#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {7886#true} is VALID [2018-11-23 12:47:58,082 INFO L273 TraceCheckUtils]: 2: Hoare triple {7886#true} assume true; {7886#true} is VALID [2018-11-23 12:47:58,082 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {7886#true} {7886#true} #633#return; {7886#true} is VALID [2018-11-23 12:47:58,083 INFO L256 TraceCheckUtils]: 4: Hoare triple {7886#true} call #t~ret138 := main(); {7886#true} is VALID [2018-11-23 12:47:58,083 INFO L273 TraceCheckUtils]: 5: Hoare triple {7886#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {7886#true} is VALID [2018-11-23 12:47:58,083 INFO L256 TraceCheckUtils]: 6: Hoare triple {7886#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {7886#true} is VALID [2018-11-23 12:47:58,096 INFO L273 TraceCheckUtils]: 7: Hoare triple {7886#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,109 INFO L273 TraceCheckUtils]: 8: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,122 INFO L273 TraceCheckUtils]: 9: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,140 INFO L273 TraceCheckUtils]: 10: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,149 INFO L273 TraceCheckUtils]: 11: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,161 INFO L273 TraceCheckUtils]: 12: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,174 INFO L273 TraceCheckUtils]: 13: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,187 INFO L273 TraceCheckUtils]: 14: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,203 INFO L273 TraceCheckUtils]: 15: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,211 INFO L273 TraceCheckUtils]: 16: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:47:58,221 INFO L273 TraceCheckUtils]: 17: Hoare triple {7888#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {7889#(= |ssl3_accept_#t~mem27| 8464)} is VALID [2018-11-23 12:47:58,221 INFO L273 TraceCheckUtils]: 18: Hoare triple {7889#(= |ssl3_accept_#t~mem27| 8464)} assume 24576 == #t~mem27;havoc #t~mem27; {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 19: Hoare triple {7887#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 20: Hoare triple {7887#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 21: Hoare triple {7887#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 22: Hoare triple {7887#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 23: Hoare triple {7887#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 24: Hoare triple {7887#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,222 INFO L273 TraceCheckUtils]: 25: Hoare triple {7887#false} assume 12292 != #t~mem62;havoc #t~mem62; {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 26: Hoare triple {7887#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 27: Hoare triple {7887#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 28: Hoare triple {7887#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 29: Hoare triple {7887#false} ~skip~0 := 0; {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 30: Hoare triple {7887#false} assume !false; {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 31: Hoare triple {7887#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 32: Hoare triple {7887#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,223 INFO L273 TraceCheckUtils]: 33: Hoare triple {7887#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,224 INFO L273 TraceCheckUtils]: 34: Hoare triple {7887#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,224 INFO L273 TraceCheckUtils]: 35: Hoare triple {7887#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,224 INFO L273 TraceCheckUtils]: 36: Hoare triple {7887#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,224 INFO L273 TraceCheckUtils]: 37: Hoare triple {7887#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,224 INFO L273 TraceCheckUtils]: 38: Hoare triple {7887#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,224 INFO L273 TraceCheckUtils]: 39: Hoare triple {7887#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 40: Hoare triple {7887#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 41: Hoare triple {7887#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 42: Hoare triple {7887#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 43: Hoare triple {7887#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 44: Hoare triple {7887#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 45: Hoare triple {7887#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 46: Hoare triple {7887#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,225 INFO L273 TraceCheckUtils]: 47: Hoare triple {7887#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 48: Hoare triple {7887#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 49: Hoare triple {7887#false} assume 8544 == #t~mem41;havoc #t~mem41; {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 50: Hoare triple {7887#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 51: Hoare triple {7887#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 52: Hoare triple {7887#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 53: Hoare triple {7887#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 54: Hoare triple {7887#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {7887#false} is VALID [2018-11-23 12:47:58,226 INFO L273 TraceCheckUtils]: 55: Hoare triple {7887#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {7887#false} is VALID [2018-11-23 12:47:58,227 INFO L273 TraceCheckUtils]: 56: Hoare triple {7887#false} assume 8 == ~blastFlag~0; {7887#false} is VALID [2018-11-23 12:47:58,227 INFO L273 TraceCheckUtils]: 57: Hoare triple {7887#false} assume !false; {7887#false} is VALID [2018-11-23 12:47:58,230 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:47:58,230 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:47:58,230 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:47:58,230 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 58 [2018-11-23 12:47:58,231 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:47:58,231 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:47:58,299 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 58 edges. 58 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:47:58,299 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:47:58,299 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:47:58,300 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:47:58,300 INFO L87 Difference]: Start difference. First operand 194 states and 290 transitions. Second operand 4 states. [2018-11-23 12:47:59,289 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:47:59,289 INFO L93 Difference]: Finished difference Result 376 states and 566 transitions. [2018-11-23 12:47:59,290 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:47:59,290 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 58 [2018-11-23 12:47:59,290 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:47:59,290 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:59,294 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 438 transitions. [2018-11-23 12:47:59,294 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:47:59,297 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 438 transitions. [2018-11-23 12:47:59,297 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 438 transitions. [2018-11-23 12:48:00,381 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 438 edges. 438 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:00,387 INFO L225 Difference]: With dead ends: 376 [2018-11-23 12:48:00,387 INFO L226 Difference]: Without dead ends: 207 [2018-11-23 12:48:00,387 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:00,388 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 207 states. [2018-11-23 12:48:00,518 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 207 to 194. [2018-11-23 12:48:00,518 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:00,518 INFO L82 GeneralOperation]: Start isEquivalent. First operand 207 states. Second operand 194 states. [2018-11-23 12:48:00,518 INFO L74 IsIncluded]: Start isIncluded. First operand 207 states. Second operand 194 states. [2018-11-23 12:48:00,518 INFO L87 Difference]: Start difference. First operand 207 states. Second operand 194 states. [2018-11-23 12:48:00,524 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:00,524 INFO L93 Difference]: Finished difference Result 207 states and 305 transitions. [2018-11-23 12:48:00,524 INFO L276 IsEmpty]: Start isEmpty. Operand 207 states and 305 transitions. [2018-11-23 12:48:00,525 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:00,525 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:00,525 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 207 states. [2018-11-23 12:48:00,525 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 207 states. [2018-11-23 12:48:00,530 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:00,530 INFO L93 Difference]: Finished difference Result 207 states and 305 transitions. [2018-11-23 12:48:00,531 INFO L276 IsEmpty]: Start isEmpty. Operand 207 states and 305 transitions. [2018-11-23 12:48:00,531 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:00,531 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:00,531 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:00,531 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:00,532 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:00,537 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 289 transitions. [2018-11-23 12:48:00,538 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 289 transitions. Word has length 58 [2018-11-23 12:48:00,538 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:00,538 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 289 transitions. [2018-11-23 12:48:00,538 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:00,538 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 289 transitions. [2018-11-23 12:48:00,539 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2018-11-23 12:48:00,539 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:00,539 INFO L402 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:00,539 INFO L423 AbstractCegarLoop]: === Iteration 10 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:00,539 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:00,540 INFO L82 PathProgramCache]: Analyzing trace with hash 480798369, now seen corresponding path program 1 times [2018-11-23 12:48:00,540 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:00,540 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:00,541 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:00,541 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:00,541 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:00,555 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:00,829 WARN L180 SmtUtils]: Spent 105.00 ms on a formula simplification. DAG size of input: 18 DAG size of output: 15 [2018-11-23 12:48:01,310 INFO L256 TraceCheckUtils]: 0: Hoare triple {8978#true} call ULTIMATE.init(); {8978#true} is VALID [2018-11-23 12:48:01,310 INFO L273 TraceCheckUtils]: 1: Hoare triple {8978#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {8978#true} is VALID [2018-11-23 12:48:01,310 INFO L273 TraceCheckUtils]: 2: Hoare triple {8978#true} assume true; {8978#true} is VALID [2018-11-23 12:48:01,311 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {8978#true} {8978#true} #633#return; {8978#true} is VALID [2018-11-23 12:48:01,311 INFO L256 TraceCheckUtils]: 4: Hoare triple {8978#true} call #t~ret138 := main(); {8978#true} is VALID [2018-11-23 12:48:01,311 INFO L273 TraceCheckUtils]: 5: Hoare triple {8978#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {8978#true} is VALID [2018-11-23 12:48:01,311 INFO L256 TraceCheckUtils]: 6: Hoare triple {8978#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {8978#true} is VALID [2018-11-23 12:48:01,324 INFO L273 TraceCheckUtils]: 7: Hoare triple {8978#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,342 INFO L273 TraceCheckUtils]: 8: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,351 INFO L273 TraceCheckUtils]: 9: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,364 INFO L273 TraceCheckUtils]: 10: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,375 INFO L273 TraceCheckUtils]: 11: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,375 INFO L273 TraceCheckUtils]: 12: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,377 INFO L273 TraceCheckUtils]: 13: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !false; {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,377 INFO L273 TraceCheckUtils]: 14: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,379 INFO L273 TraceCheckUtils]: 15: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,379 INFO L273 TraceCheckUtils]: 16: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,382 INFO L273 TraceCheckUtils]: 17: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} is VALID [2018-11-23 12:48:01,382 INFO L273 TraceCheckUtils]: 18: Hoare triple {8980#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28) (+ (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 28)) 1)) (+ ssl3_accept_~s.offset 52)) 8464)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {8981#(= |ssl3_accept_#t~mem28| 8464)} is VALID [2018-11-23 12:48:01,383 INFO L273 TraceCheckUtils]: 19: Hoare triple {8981#(= |ssl3_accept_#t~mem28| 8464)} assume 8195 == #t~mem28;havoc #t~mem28; {8979#false} is VALID [2018-11-23 12:48:01,383 INFO L273 TraceCheckUtils]: 20: Hoare triple {8979#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,383 INFO L273 TraceCheckUtils]: 21: Hoare triple {8979#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {8979#false} is VALID [2018-11-23 12:48:01,383 INFO L273 TraceCheckUtils]: 22: Hoare triple {8979#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,383 INFO L273 TraceCheckUtils]: 23: Hoare triple {8979#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,384 INFO L273 TraceCheckUtils]: 24: Hoare triple {8979#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {8979#false} is VALID [2018-11-23 12:48:01,384 INFO L273 TraceCheckUtils]: 25: Hoare triple {8979#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,384 INFO L273 TraceCheckUtils]: 26: Hoare triple {8979#false} assume 12292 != #t~mem62;havoc #t~mem62; {8979#false} is VALID [2018-11-23 12:48:01,384 INFO L273 TraceCheckUtils]: 27: Hoare triple {8979#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {8979#false} is VALID [2018-11-23 12:48:01,384 INFO L273 TraceCheckUtils]: 28: Hoare triple {8979#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,385 INFO L273 TraceCheckUtils]: 29: Hoare triple {8979#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {8979#false} is VALID [2018-11-23 12:48:01,385 INFO L273 TraceCheckUtils]: 30: Hoare triple {8979#false} ~skip~0 := 0; {8979#false} is VALID [2018-11-23 12:48:01,385 INFO L273 TraceCheckUtils]: 31: Hoare triple {8979#false} assume !false; {8979#false} is VALID [2018-11-23 12:48:01,385 INFO L273 TraceCheckUtils]: 32: Hoare triple {8979#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,385 INFO L273 TraceCheckUtils]: 33: Hoare triple {8979#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,385 INFO L273 TraceCheckUtils]: 34: Hoare triple {8979#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,386 INFO L273 TraceCheckUtils]: 35: Hoare triple {8979#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,386 INFO L273 TraceCheckUtils]: 36: Hoare triple {8979#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,386 INFO L273 TraceCheckUtils]: 37: Hoare triple {8979#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,386 INFO L273 TraceCheckUtils]: 38: Hoare triple {8979#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,386 INFO L273 TraceCheckUtils]: 39: Hoare triple {8979#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,387 INFO L273 TraceCheckUtils]: 40: Hoare triple {8979#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,387 INFO L273 TraceCheckUtils]: 41: Hoare triple {8979#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,387 INFO L273 TraceCheckUtils]: 42: Hoare triple {8979#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,387 INFO L273 TraceCheckUtils]: 43: Hoare triple {8979#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,387 INFO L273 TraceCheckUtils]: 44: Hoare triple {8979#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,388 INFO L273 TraceCheckUtils]: 45: Hoare triple {8979#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,388 INFO L273 TraceCheckUtils]: 46: Hoare triple {8979#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,388 INFO L273 TraceCheckUtils]: 47: Hoare triple {8979#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,388 INFO L273 TraceCheckUtils]: 48: Hoare triple {8979#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,388 INFO L273 TraceCheckUtils]: 49: Hoare triple {8979#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,388 INFO L273 TraceCheckUtils]: 50: Hoare triple {8979#false} assume 8544 == #t~mem41;havoc #t~mem41; {8979#false} is VALID [2018-11-23 12:48:01,389 INFO L273 TraceCheckUtils]: 51: Hoare triple {8979#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,389 INFO L273 TraceCheckUtils]: 52: Hoare triple {8979#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,389 INFO L273 TraceCheckUtils]: 53: Hoare triple {8979#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {8979#false} is VALID [2018-11-23 12:48:01,389 INFO L273 TraceCheckUtils]: 54: Hoare triple {8979#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {8979#false} is VALID [2018-11-23 12:48:01,389 INFO L273 TraceCheckUtils]: 55: Hoare triple {8979#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {8979#false} is VALID [2018-11-23 12:48:01,389 INFO L273 TraceCheckUtils]: 56: Hoare triple {8979#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {8979#false} is VALID [2018-11-23 12:48:01,390 INFO L273 TraceCheckUtils]: 57: Hoare triple {8979#false} assume 8 == ~blastFlag~0; {8979#false} is VALID [2018-11-23 12:48:01,390 INFO L273 TraceCheckUtils]: 58: Hoare triple {8979#false} assume !false; {8979#false} is VALID [2018-11-23 12:48:01,394 INFO L134 CoverageAnalysis]: Checked inductivity of 7 backedges. 7 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:01,394 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:01,395 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:01,395 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 59 [2018-11-23 12:48:01,395 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:01,395 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:01,522 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 59 edges. 59 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:01,522 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:01,523 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:01,523 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:01,523 INFO L87 Difference]: Start difference. First operand 194 states and 289 transitions. Second operand 4 states. [2018-11-23 12:48:02,726 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:02,726 INFO L93 Difference]: Finished difference Result 366 states and 553 transitions. [2018-11-23 12:48:02,726 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:02,726 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 59 [2018-11-23 12:48:02,727 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:02,727 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:02,730 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 425 transitions. [2018-11-23 12:48:02,730 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:02,732 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 425 transitions. [2018-11-23 12:48:02,732 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 425 transitions. [2018-11-23 12:48:03,131 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 425 edges. 425 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:03,135 INFO L225 Difference]: With dead ends: 366 [2018-11-23 12:48:03,135 INFO L226 Difference]: Without dead ends: 197 [2018-11-23 12:48:03,136 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:03,136 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 197 states. [2018-11-23 12:48:03,210 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 197 to 194. [2018-11-23 12:48:03,211 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:03,211 INFO L82 GeneralOperation]: Start isEquivalent. First operand 197 states. Second operand 194 states. [2018-11-23 12:48:03,211 INFO L74 IsIncluded]: Start isIncluded. First operand 197 states. Second operand 194 states. [2018-11-23 12:48:03,211 INFO L87 Difference]: Start difference. First operand 197 states. Second operand 194 states. [2018-11-23 12:48:03,214 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:03,214 INFO L93 Difference]: Finished difference Result 197 states and 292 transitions. [2018-11-23 12:48:03,214 INFO L276 IsEmpty]: Start isEmpty. Operand 197 states and 292 transitions. [2018-11-23 12:48:03,215 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:03,215 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:03,215 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 197 states. [2018-11-23 12:48:03,215 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 197 states. [2018-11-23 12:48:03,218 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:03,218 INFO L93 Difference]: Finished difference Result 197 states and 292 transitions. [2018-11-23 12:48:03,218 INFO L276 IsEmpty]: Start isEmpty. Operand 197 states and 292 transitions. [2018-11-23 12:48:03,219 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:03,219 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:03,219 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:03,219 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:03,219 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:03,222 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 288 transitions. [2018-11-23 12:48:03,222 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 288 transitions. Word has length 59 [2018-11-23 12:48:03,222 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:03,222 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 288 transitions. [2018-11-23 12:48:03,222 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:03,222 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 288 transitions. [2018-11-23 12:48:03,223 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 72 [2018-11-23 12:48:03,223 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:03,223 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:03,224 INFO L423 AbstractCegarLoop]: === Iteration 11 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:03,224 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:03,224 INFO L82 PathProgramCache]: Analyzing trace with hash 1484856716, now seen corresponding path program 1 times [2018-11-23 12:48:03,224 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:03,224 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:03,225 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:03,225 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:03,226 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:03,245 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:03,502 INFO L256 TraceCheckUtils]: 0: Hoare triple {10039#true} call ULTIMATE.init(); {10039#true} is VALID [2018-11-23 12:48:03,503 INFO L273 TraceCheckUtils]: 1: Hoare triple {10039#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,503 INFO L273 TraceCheckUtils]: 2: Hoare triple {10039#true} assume true; {10039#true} is VALID [2018-11-23 12:48:03,504 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {10039#true} {10039#true} #633#return; {10039#true} is VALID [2018-11-23 12:48:03,504 INFO L256 TraceCheckUtils]: 4: Hoare triple {10039#true} call #t~ret138 := main(); {10039#true} is VALID [2018-11-23 12:48:03,504 INFO L273 TraceCheckUtils]: 5: Hoare triple {10039#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,504 INFO L256 TraceCheckUtils]: 6: Hoare triple {10039#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {10039#true} is VALID [2018-11-23 12:48:03,504 INFO L273 TraceCheckUtils]: 7: Hoare triple {10039#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 8: Hoare triple {10039#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 9: Hoare triple {10039#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 10: Hoare triple {10039#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 11: Hoare triple {10039#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 12: Hoare triple {10039#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 13: Hoare triple {10039#true} assume !false; {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 14: Hoare triple {10039#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 15: Hoare triple {10039#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,505 INFO L273 TraceCheckUtils]: 16: Hoare triple {10039#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 17: Hoare triple {10039#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 18: Hoare triple {10039#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 19: Hoare triple {10039#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 20: Hoare triple {10039#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 21: Hoare triple {10039#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 22: Hoare triple {10039#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 23: Hoare triple {10039#true} assume 8464 == #t~mem32;havoc #t~mem32; {10039#true} is VALID [2018-11-23 12:48:03,506 INFO L273 TraceCheckUtils]: 24: Hoare triple {10039#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {10039#true} is VALID [2018-11-23 12:48:03,507 INFO L273 TraceCheckUtils]: 25: Hoare triple {10039#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {10039#true} is VALID [2018-11-23 12:48:03,508 INFO L273 TraceCheckUtils]: 26: Hoare triple {10039#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,508 INFO L273 TraceCheckUtils]: 27: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,508 INFO L273 TraceCheckUtils]: 28: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,509 INFO L273 TraceCheckUtils]: 29: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,509 INFO L273 TraceCheckUtils]: 30: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,509 INFO L273 TraceCheckUtils]: 31: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,510 INFO L273 TraceCheckUtils]: 32: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,510 INFO L273 TraceCheckUtils]: 33: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,510 INFO L273 TraceCheckUtils]: 34: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,511 INFO L273 TraceCheckUtils]: 35: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:03,512 INFO L273 TraceCheckUtils]: 36: Hoare triple {10041#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {10042#(= |ssl3_accept_#t~mem29| 8496)} is VALID [2018-11-23 12:48:03,512 INFO L273 TraceCheckUtils]: 37: Hoare triple {10042#(= |ssl3_accept_#t~mem29| 8496)} assume 8480 == #t~mem29;havoc #t~mem29; {10040#false} is VALID [2018-11-23 12:48:03,513 INFO L273 TraceCheckUtils]: 38: Hoare triple {10040#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {10040#false} is VALID [2018-11-23 12:48:03,513 INFO L273 TraceCheckUtils]: 39: Hoare triple {10040#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,513 INFO L273 TraceCheckUtils]: 40: Hoare triple {10040#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,513 INFO L273 TraceCheckUtils]: 41: Hoare triple {10040#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {10040#false} is VALID [2018-11-23 12:48:03,513 INFO L273 TraceCheckUtils]: 42: Hoare triple {10040#false} ~skip~0 := 0; {10040#false} is VALID [2018-11-23 12:48:03,514 INFO L273 TraceCheckUtils]: 43: Hoare triple {10040#false} assume !false; {10040#false} is VALID [2018-11-23 12:48:03,514 INFO L273 TraceCheckUtils]: 44: Hoare triple {10040#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,514 INFO L273 TraceCheckUtils]: 45: Hoare triple {10040#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,514 INFO L273 TraceCheckUtils]: 46: Hoare triple {10040#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,514 INFO L273 TraceCheckUtils]: 47: Hoare triple {10040#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,515 INFO L273 TraceCheckUtils]: 48: Hoare triple {10040#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,515 INFO L273 TraceCheckUtils]: 49: Hoare triple {10040#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,515 INFO L273 TraceCheckUtils]: 50: Hoare triple {10040#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,515 INFO L273 TraceCheckUtils]: 51: Hoare triple {10040#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,515 INFO L273 TraceCheckUtils]: 52: Hoare triple {10040#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,515 INFO L273 TraceCheckUtils]: 53: Hoare triple {10040#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 54: Hoare triple {10040#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 55: Hoare triple {10040#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 56: Hoare triple {10040#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 57: Hoare triple {10040#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 58: Hoare triple {10040#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 59: Hoare triple {10040#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 60: Hoare triple {10040#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,516 INFO L273 TraceCheckUtils]: 61: Hoare triple {10040#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 62: Hoare triple {10040#false} assume 8544 == #t~mem41;havoc #t~mem41; {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 63: Hoare triple {10040#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 64: Hoare triple {10040#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 65: Hoare triple {10040#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 66: Hoare triple {10040#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 67: Hoare triple {10040#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {10040#false} is VALID [2018-11-23 12:48:03,517 INFO L273 TraceCheckUtils]: 68: Hoare triple {10040#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {10040#false} is VALID [2018-11-23 12:48:03,518 INFO L273 TraceCheckUtils]: 69: Hoare triple {10040#false} assume 8 == ~blastFlag~0; {10040#false} is VALID [2018-11-23 12:48:03,518 INFO L273 TraceCheckUtils]: 70: Hoare triple {10040#false} assume !false; {10040#false} is VALID [2018-11-23 12:48:03,522 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 30 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:03,522 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:03,522 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:03,522 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 71 [2018-11-23 12:48:03,523 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:03,523 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:03,602 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 71 edges. 71 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:03,602 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:03,602 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:03,602 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:03,603 INFO L87 Difference]: Start difference. First operand 194 states and 288 transitions. Second operand 4 states. [2018-11-23 12:48:04,923 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:04,924 INFO L93 Difference]: Finished difference Result 383 states and 573 transitions. [2018-11-23 12:48:04,924 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:04,924 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 71 [2018-11-23 12:48:04,924 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:04,924 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:04,927 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 471 transitions. [2018-11-23 12:48:04,927 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:04,929 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 471 transitions. [2018-11-23 12:48:04,930 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 471 transitions. [2018-11-23 12:48:05,399 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 471 edges. 471 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:05,403 INFO L225 Difference]: With dead ends: 383 [2018-11-23 12:48:05,403 INFO L226 Difference]: Without dead ends: 214 [2018-11-23 12:48:05,404 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:05,404 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 214 states. [2018-11-23 12:48:05,461 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 214 to 194. [2018-11-23 12:48:05,462 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:05,462 INFO L82 GeneralOperation]: Start isEquivalent. First operand 214 states. Second operand 194 states. [2018-11-23 12:48:05,462 INFO L74 IsIncluded]: Start isIncluded. First operand 214 states. Second operand 194 states. [2018-11-23 12:48:05,462 INFO L87 Difference]: Start difference. First operand 214 states. Second operand 194 states. [2018-11-23 12:48:05,468 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:05,468 INFO L93 Difference]: Finished difference Result 214 states and 312 transitions. [2018-11-23 12:48:05,468 INFO L276 IsEmpty]: Start isEmpty. Operand 214 states and 312 transitions. [2018-11-23 12:48:05,469 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:05,469 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:05,469 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 214 states. [2018-11-23 12:48:05,469 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 214 states. [2018-11-23 12:48:05,473 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:05,474 INFO L93 Difference]: Finished difference Result 214 states and 312 transitions. [2018-11-23 12:48:05,474 INFO L276 IsEmpty]: Start isEmpty. Operand 214 states and 312 transitions. [2018-11-23 12:48:05,474 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:05,475 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:05,475 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:05,475 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:05,475 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:05,478 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 287 transitions. [2018-11-23 12:48:05,479 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 287 transitions. Word has length 71 [2018-11-23 12:48:05,479 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:05,479 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 287 transitions. [2018-11-23 12:48:05,479 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:05,479 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 287 transitions. [2018-11-23 12:48:05,480 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 73 [2018-11-23 12:48:05,480 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:05,480 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:05,481 INFO L423 AbstractCegarLoop]: === Iteration 12 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:05,481 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:05,481 INFO L82 PathProgramCache]: Analyzing trace with hash 1155270063, now seen corresponding path program 1 times [2018-11-23 12:48:05,481 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:05,481 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:05,482 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:05,482 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:05,482 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:05,499 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:05,879 INFO L256 TraceCheckUtils]: 0: Hoare triple {11155#true} call ULTIMATE.init(); {11155#true} is VALID [2018-11-23 12:48:05,879 INFO L273 TraceCheckUtils]: 1: Hoare triple {11155#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,880 INFO L273 TraceCheckUtils]: 2: Hoare triple {11155#true} assume true; {11155#true} is VALID [2018-11-23 12:48:05,880 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {11155#true} {11155#true} #633#return; {11155#true} is VALID [2018-11-23 12:48:05,880 INFO L256 TraceCheckUtils]: 4: Hoare triple {11155#true} call #t~ret138 := main(); {11155#true} is VALID [2018-11-23 12:48:05,880 INFO L273 TraceCheckUtils]: 5: Hoare triple {11155#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,880 INFO L256 TraceCheckUtils]: 6: Hoare triple {11155#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {11155#true} is VALID [2018-11-23 12:48:05,883 INFO L273 TraceCheckUtils]: 7: Hoare triple {11155#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,883 INFO L273 TraceCheckUtils]: 8: Hoare triple {11155#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {11155#true} is VALID [2018-11-23 12:48:05,883 INFO L273 TraceCheckUtils]: 9: Hoare triple {11155#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {11155#true} is VALID [2018-11-23 12:48:05,883 INFO L273 TraceCheckUtils]: 10: Hoare triple {11155#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {11155#true} is VALID [2018-11-23 12:48:05,884 INFO L273 TraceCheckUtils]: 11: Hoare triple {11155#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,884 INFO L273 TraceCheckUtils]: 12: Hoare triple {11155#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {11155#true} is VALID [2018-11-23 12:48:05,884 INFO L273 TraceCheckUtils]: 13: Hoare triple {11155#true} assume !false; {11155#true} is VALID [2018-11-23 12:48:05,884 INFO L273 TraceCheckUtils]: 14: Hoare triple {11155#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,884 INFO L273 TraceCheckUtils]: 15: Hoare triple {11155#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,884 INFO L273 TraceCheckUtils]: 16: Hoare triple {11155#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,885 INFO L273 TraceCheckUtils]: 17: Hoare triple {11155#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,885 INFO L273 TraceCheckUtils]: 18: Hoare triple {11155#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,885 INFO L273 TraceCheckUtils]: 19: Hoare triple {11155#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,885 INFO L273 TraceCheckUtils]: 20: Hoare triple {11155#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,885 INFO L273 TraceCheckUtils]: 21: Hoare triple {11155#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,885 INFO L273 TraceCheckUtils]: 22: Hoare triple {11155#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {11155#true} is VALID [2018-11-23 12:48:05,886 INFO L273 TraceCheckUtils]: 23: Hoare triple {11155#true} assume 8464 == #t~mem32;havoc #t~mem32; {11155#true} is VALID [2018-11-23 12:48:05,886 INFO L273 TraceCheckUtils]: 24: Hoare triple {11155#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {11155#true} is VALID [2018-11-23 12:48:05,886 INFO L273 TraceCheckUtils]: 25: Hoare triple {11155#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {11155#true} is VALID [2018-11-23 12:48:05,897 INFO L273 TraceCheckUtils]: 26: Hoare triple {11155#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,910 INFO L273 TraceCheckUtils]: 27: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,918 INFO L273 TraceCheckUtils]: 28: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,918 INFO L273 TraceCheckUtils]: 29: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,919 INFO L273 TraceCheckUtils]: 30: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,919 INFO L273 TraceCheckUtils]: 31: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,921 INFO L273 TraceCheckUtils]: 32: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,921 INFO L273 TraceCheckUtils]: 33: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,924 INFO L273 TraceCheckUtils]: 34: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,924 INFO L273 TraceCheckUtils]: 35: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,927 INFO L273 TraceCheckUtils]: 36: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:05,927 INFO L273 TraceCheckUtils]: 37: Hoare triple {11157#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {11158#(= |ssl3_accept_#t~mem30| 8496)} is VALID [2018-11-23 12:48:05,927 INFO L273 TraceCheckUtils]: 38: Hoare triple {11158#(= |ssl3_accept_#t~mem30| 8496)} assume 8481 == #t~mem30;havoc #t~mem30; {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 39: Hoare triple {11156#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 40: Hoare triple {11156#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 41: Hoare triple {11156#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 42: Hoare triple {11156#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 43: Hoare triple {11156#false} ~skip~0 := 0; {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 44: Hoare triple {11156#false} assume !false; {11156#false} is VALID [2018-11-23 12:48:05,928 INFO L273 TraceCheckUtils]: 45: Hoare triple {11156#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,929 INFO L273 TraceCheckUtils]: 46: Hoare triple {11156#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,929 INFO L273 TraceCheckUtils]: 47: Hoare triple {11156#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,929 INFO L273 TraceCheckUtils]: 48: Hoare triple {11156#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,929 INFO L273 TraceCheckUtils]: 49: Hoare triple {11156#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,929 INFO L273 TraceCheckUtils]: 50: Hoare triple {11156#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,930 INFO L273 TraceCheckUtils]: 51: Hoare triple {11156#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,930 INFO L273 TraceCheckUtils]: 52: Hoare triple {11156#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,930 INFO L273 TraceCheckUtils]: 53: Hoare triple {11156#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,930 INFO L273 TraceCheckUtils]: 54: Hoare triple {11156#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,930 INFO L273 TraceCheckUtils]: 55: Hoare triple {11156#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,930 INFO L273 TraceCheckUtils]: 56: Hoare triple {11156#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,931 INFO L273 TraceCheckUtils]: 57: Hoare triple {11156#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,931 INFO L273 TraceCheckUtils]: 58: Hoare triple {11156#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,931 INFO L273 TraceCheckUtils]: 59: Hoare triple {11156#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,931 INFO L273 TraceCheckUtils]: 60: Hoare triple {11156#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,931 INFO L273 TraceCheckUtils]: 61: Hoare triple {11156#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,932 INFO L273 TraceCheckUtils]: 62: Hoare triple {11156#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,932 INFO L273 TraceCheckUtils]: 63: Hoare triple {11156#false} assume 8544 == #t~mem41;havoc #t~mem41; {11156#false} is VALID [2018-11-23 12:48:05,932 INFO L273 TraceCheckUtils]: 64: Hoare triple {11156#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,932 INFO L273 TraceCheckUtils]: 65: Hoare triple {11156#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,932 INFO L273 TraceCheckUtils]: 66: Hoare triple {11156#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {11156#false} is VALID [2018-11-23 12:48:05,932 INFO L273 TraceCheckUtils]: 67: Hoare triple {11156#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {11156#false} is VALID [2018-11-23 12:48:05,933 INFO L273 TraceCheckUtils]: 68: Hoare triple {11156#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {11156#false} is VALID [2018-11-23 12:48:05,933 INFO L273 TraceCheckUtils]: 69: Hoare triple {11156#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {11156#false} is VALID [2018-11-23 12:48:05,933 INFO L273 TraceCheckUtils]: 70: Hoare triple {11156#false} assume 8 == ~blastFlag~0; {11156#false} is VALID [2018-11-23 12:48:05,933 INFO L273 TraceCheckUtils]: 71: Hoare triple {11156#false} assume !false; {11156#false} is VALID [2018-11-23 12:48:05,937 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 32 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:05,937 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:05,938 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:05,938 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 72 [2018-11-23 12:48:05,938 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:05,938 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:06,023 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 72 edges. 72 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:06,023 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:06,023 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:06,023 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:06,024 INFO L87 Difference]: Start difference. First operand 194 states and 287 transitions. Second operand 4 states. [2018-11-23 12:48:07,150 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:07,150 INFO L93 Difference]: Finished difference Result 381 states and 569 transitions. [2018-11-23 12:48:07,150 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:07,150 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 72 [2018-11-23 12:48:07,150 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:07,150 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:07,153 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 468 transitions. [2018-11-23 12:48:07,153 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:07,155 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 468 transitions. [2018-11-23 12:48:07,156 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 468 transitions. [2018-11-23 12:48:07,603 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 468 edges. 468 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:07,608 INFO L225 Difference]: With dead ends: 381 [2018-11-23 12:48:07,608 INFO L226 Difference]: Without dead ends: 212 [2018-11-23 12:48:07,608 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:07,609 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 212 states. [2018-11-23 12:48:07,655 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 212 to 194. [2018-11-23 12:48:07,656 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:07,656 INFO L82 GeneralOperation]: Start isEquivalent. First operand 212 states. Second operand 194 states. [2018-11-23 12:48:07,656 INFO L74 IsIncluded]: Start isIncluded. First operand 212 states. Second operand 194 states. [2018-11-23 12:48:07,656 INFO L87 Difference]: Start difference. First operand 212 states. Second operand 194 states. [2018-11-23 12:48:07,661 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:07,661 INFO L93 Difference]: Finished difference Result 212 states and 309 transitions. [2018-11-23 12:48:07,661 INFO L276 IsEmpty]: Start isEmpty. Operand 212 states and 309 transitions. [2018-11-23 12:48:07,662 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:07,662 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:07,662 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 212 states. [2018-11-23 12:48:07,662 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 212 states. [2018-11-23 12:48:07,666 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:07,667 INFO L93 Difference]: Finished difference Result 212 states and 309 transitions. [2018-11-23 12:48:07,667 INFO L276 IsEmpty]: Start isEmpty. Operand 212 states and 309 transitions. [2018-11-23 12:48:07,667 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:07,668 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:07,668 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:07,668 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:07,668 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:07,672 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 286 transitions. [2018-11-23 12:48:07,672 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 286 transitions. Word has length 72 [2018-11-23 12:48:07,672 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:07,672 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 286 transitions. [2018-11-23 12:48:07,672 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:07,672 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 286 transitions. [2018-11-23 12:48:07,673 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 73 [2018-11-23 12:48:07,673 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:07,673 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:07,674 INFO L423 AbstractCegarLoop]: === Iteration 13 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:07,674 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:07,674 INFO L82 PathProgramCache]: Analyzing trace with hash -488261392, now seen corresponding path program 1 times [2018-11-23 12:48:07,674 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:07,674 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:07,675 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:07,675 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:07,675 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:07,691 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:08,301 INFO L256 TraceCheckUtils]: 0: Hoare triple {12264#true} call ULTIMATE.init(); {12264#true} is VALID [2018-11-23 12:48:08,301 INFO L273 TraceCheckUtils]: 1: Hoare triple {12264#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,302 INFO L273 TraceCheckUtils]: 2: Hoare triple {12264#true} assume true; {12264#true} is VALID [2018-11-23 12:48:08,302 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {12264#true} {12264#true} #633#return; {12264#true} is VALID [2018-11-23 12:48:08,302 INFO L256 TraceCheckUtils]: 4: Hoare triple {12264#true} call #t~ret138 := main(); {12264#true} is VALID [2018-11-23 12:48:08,302 INFO L273 TraceCheckUtils]: 5: Hoare triple {12264#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,303 INFO L256 TraceCheckUtils]: 6: Hoare triple {12264#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {12264#true} is VALID [2018-11-23 12:48:08,303 INFO L273 TraceCheckUtils]: 7: Hoare triple {12264#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,303 INFO L273 TraceCheckUtils]: 8: Hoare triple {12264#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {12264#true} is VALID [2018-11-23 12:48:08,303 INFO L273 TraceCheckUtils]: 9: Hoare triple {12264#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {12264#true} is VALID [2018-11-23 12:48:08,303 INFO L273 TraceCheckUtils]: 10: Hoare triple {12264#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {12264#true} is VALID [2018-11-23 12:48:08,304 INFO L273 TraceCheckUtils]: 11: Hoare triple {12264#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,304 INFO L273 TraceCheckUtils]: 12: Hoare triple {12264#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {12264#true} is VALID [2018-11-23 12:48:08,304 INFO L273 TraceCheckUtils]: 13: Hoare triple {12264#true} assume !false; {12264#true} is VALID [2018-11-23 12:48:08,304 INFO L273 TraceCheckUtils]: 14: Hoare triple {12264#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,304 INFO L273 TraceCheckUtils]: 15: Hoare triple {12264#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,305 INFO L273 TraceCheckUtils]: 16: Hoare triple {12264#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,305 INFO L273 TraceCheckUtils]: 17: Hoare triple {12264#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,305 INFO L273 TraceCheckUtils]: 18: Hoare triple {12264#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,305 INFO L273 TraceCheckUtils]: 19: Hoare triple {12264#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,305 INFO L273 TraceCheckUtils]: 20: Hoare triple {12264#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,306 INFO L273 TraceCheckUtils]: 21: Hoare triple {12264#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,306 INFO L273 TraceCheckUtils]: 22: Hoare triple {12264#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {12264#true} is VALID [2018-11-23 12:48:08,306 INFO L273 TraceCheckUtils]: 23: Hoare triple {12264#true} assume 8464 == #t~mem32;havoc #t~mem32; {12264#true} is VALID [2018-11-23 12:48:08,306 INFO L273 TraceCheckUtils]: 24: Hoare triple {12264#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {12264#true} is VALID [2018-11-23 12:48:08,306 INFO L273 TraceCheckUtils]: 25: Hoare triple {12264#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {12264#true} is VALID [2018-11-23 12:48:08,319 INFO L273 TraceCheckUtils]: 26: Hoare triple {12264#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,332 INFO L273 TraceCheckUtils]: 27: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,344 INFO L273 TraceCheckUtils]: 28: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,357 INFO L273 TraceCheckUtils]: 29: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,370 INFO L273 TraceCheckUtils]: 30: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,370 INFO L273 TraceCheckUtils]: 31: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,372 INFO L273 TraceCheckUtils]: 32: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,372 INFO L273 TraceCheckUtils]: 33: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,374 INFO L273 TraceCheckUtils]: 34: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,374 INFO L273 TraceCheckUtils]: 35: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,376 INFO L273 TraceCheckUtils]: 36: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,378 INFO L273 TraceCheckUtils]: 37: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:08,378 INFO L273 TraceCheckUtils]: 38: Hoare triple {12266#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {12267#(= |ssl3_accept_#t~mem31| 8496)} is VALID [2018-11-23 12:48:08,380 INFO L273 TraceCheckUtils]: 39: Hoare triple {12267#(= |ssl3_accept_#t~mem31| 8496)} assume 8482 == #t~mem31;havoc #t~mem31; {12265#false} is VALID [2018-11-23 12:48:08,380 INFO L273 TraceCheckUtils]: 40: Hoare triple {12265#false} call write~int(3, ~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,380 INFO L273 TraceCheckUtils]: 41: Hoare triple {12265#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,380 INFO L273 TraceCheckUtils]: 42: Hoare triple {12265#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {12265#false} is VALID [2018-11-23 12:48:08,380 INFO L273 TraceCheckUtils]: 43: Hoare triple {12265#false} ~skip~0 := 0; {12265#false} is VALID [2018-11-23 12:48:08,380 INFO L273 TraceCheckUtils]: 44: Hoare triple {12265#false} assume !false; {12265#false} is VALID [2018-11-23 12:48:08,381 INFO L273 TraceCheckUtils]: 45: Hoare triple {12265#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,381 INFO L273 TraceCheckUtils]: 46: Hoare triple {12265#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,381 INFO L273 TraceCheckUtils]: 47: Hoare triple {12265#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,381 INFO L273 TraceCheckUtils]: 48: Hoare triple {12265#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,381 INFO L273 TraceCheckUtils]: 49: Hoare triple {12265#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,381 INFO L273 TraceCheckUtils]: 50: Hoare triple {12265#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,382 INFO L273 TraceCheckUtils]: 51: Hoare triple {12265#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,382 INFO L273 TraceCheckUtils]: 52: Hoare triple {12265#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,382 INFO L273 TraceCheckUtils]: 53: Hoare triple {12265#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,382 INFO L273 TraceCheckUtils]: 54: Hoare triple {12265#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,382 INFO L273 TraceCheckUtils]: 55: Hoare triple {12265#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,382 INFO L273 TraceCheckUtils]: 56: Hoare triple {12265#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,383 INFO L273 TraceCheckUtils]: 57: Hoare triple {12265#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,383 INFO L273 TraceCheckUtils]: 58: Hoare triple {12265#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,383 INFO L273 TraceCheckUtils]: 59: Hoare triple {12265#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,383 INFO L273 TraceCheckUtils]: 60: Hoare triple {12265#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,383 INFO L273 TraceCheckUtils]: 61: Hoare triple {12265#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,383 INFO L273 TraceCheckUtils]: 62: Hoare triple {12265#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,384 INFO L273 TraceCheckUtils]: 63: Hoare triple {12265#false} assume 8544 == #t~mem41;havoc #t~mem41; {12265#false} is VALID [2018-11-23 12:48:08,384 INFO L273 TraceCheckUtils]: 64: Hoare triple {12265#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,384 INFO L273 TraceCheckUtils]: 65: Hoare triple {12265#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,384 INFO L273 TraceCheckUtils]: 66: Hoare triple {12265#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {12265#false} is VALID [2018-11-23 12:48:08,384 INFO L273 TraceCheckUtils]: 67: Hoare triple {12265#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {12265#false} is VALID [2018-11-23 12:48:08,385 INFO L273 TraceCheckUtils]: 68: Hoare triple {12265#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {12265#false} is VALID [2018-11-23 12:48:08,385 INFO L273 TraceCheckUtils]: 69: Hoare triple {12265#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {12265#false} is VALID [2018-11-23 12:48:08,385 INFO L273 TraceCheckUtils]: 70: Hoare triple {12265#false} assume 8 == ~blastFlag~0; {12265#false} is VALID [2018-11-23 12:48:08,385 INFO L273 TraceCheckUtils]: 71: Hoare triple {12265#false} assume !false; {12265#false} is VALID [2018-11-23 12:48:08,389 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 34 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:08,390 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:08,390 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:08,390 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 72 [2018-11-23 12:48:08,390 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:08,390 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:08,463 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 72 edges. 72 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:08,463 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:08,464 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:08,464 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:08,464 INFO L87 Difference]: Start difference. First operand 194 states and 286 transitions. Second operand 4 states. [2018-11-23 12:48:09,446 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:09,446 INFO L93 Difference]: Finished difference Result 380 states and 566 transitions. [2018-11-23 12:48:09,447 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:09,447 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 72 [2018-11-23 12:48:09,447 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:09,447 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:09,449 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 466 transitions. [2018-11-23 12:48:09,450 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:09,452 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 466 transitions. [2018-11-23 12:48:09,452 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 466 transitions. [2018-11-23 12:48:09,894 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 466 edges. 466 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:09,899 INFO L225 Difference]: With dead ends: 380 [2018-11-23 12:48:09,899 INFO L226 Difference]: Without dead ends: 211 [2018-11-23 12:48:09,899 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:09,900 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 211 states. [2018-11-23 12:48:09,953 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 211 to 194. [2018-11-23 12:48:09,954 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:09,954 INFO L82 GeneralOperation]: Start isEquivalent. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:09,954 INFO L74 IsIncluded]: Start isIncluded. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:09,954 INFO L87 Difference]: Start difference. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:09,959 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:09,960 INFO L93 Difference]: Finished difference Result 211 states and 307 transitions. [2018-11-23 12:48:09,960 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 307 transitions. [2018-11-23 12:48:09,960 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:09,960 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:09,961 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:09,961 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:09,965 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:09,965 INFO L93 Difference]: Finished difference Result 211 states and 307 transitions. [2018-11-23 12:48:09,965 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 307 transitions. [2018-11-23 12:48:09,966 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:09,966 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:09,966 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:09,966 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:09,966 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:09,970 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 285 transitions. [2018-11-23 12:48:09,970 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 285 transitions. Word has length 72 [2018-11-23 12:48:09,970 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:09,971 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 285 transitions. [2018-11-23 12:48:09,971 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:09,971 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 285 transitions. [2018-11-23 12:48:09,972 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 74 [2018-11-23 12:48:09,972 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:09,972 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:09,972 INFO L423 AbstractCegarLoop]: === Iteration 14 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:09,972 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:09,972 INFO L82 PathProgramCache]: Analyzing trace with hash 2055209609, now seen corresponding path program 1 times [2018-11-23 12:48:09,973 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:09,973 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:09,974 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:09,974 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:09,974 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:09,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:10,226 INFO L256 TraceCheckUtils]: 0: Hoare triple {13369#true} call ULTIMATE.init(); {13369#true} is VALID [2018-11-23 12:48:10,226 INFO L273 TraceCheckUtils]: 1: Hoare triple {13369#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,226 INFO L273 TraceCheckUtils]: 2: Hoare triple {13369#true} assume true; {13369#true} is VALID [2018-11-23 12:48:10,227 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {13369#true} {13369#true} #633#return; {13369#true} is VALID [2018-11-23 12:48:10,227 INFO L256 TraceCheckUtils]: 4: Hoare triple {13369#true} call #t~ret138 := main(); {13369#true} is VALID [2018-11-23 12:48:10,227 INFO L273 TraceCheckUtils]: 5: Hoare triple {13369#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,227 INFO L256 TraceCheckUtils]: 6: Hoare triple {13369#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {13369#true} is VALID [2018-11-23 12:48:10,227 INFO L273 TraceCheckUtils]: 7: Hoare triple {13369#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,228 INFO L273 TraceCheckUtils]: 8: Hoare triple {13369#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {13369#true} is VALID [2018-11-23 12:48:10,228 INFO L273 TraceCheckUtils]: 9: Hoare triple {13369#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {13369#true} is VALID [2018-11-23 12:48:10,228 INFO L273 TraceCheckUtils]: 10: Hoare triple {13369#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {13369#true} is VALID [2018-11-23 12:48:10,228 INFO L273 TraceCheckUtils]: 11: Hoare triple {13369#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,228 INFO L273 TraceCheckUtils]: 12: Hoare triple {13369#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {13369#true} is VALID [2018-11-23 12:48:10,229 INFO L273 TraceCheckUtils]: 13: Hoare triple {13369#true} assume !false; {13369#true} is VALID [2018-11-23 12:48:10,229 INFO L273 TraceCheckUtils]: 14: Hoare triple {13369#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,229 INFO L273 TraceCheckUtils]: 15: Hoare triple {13369#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,229 INFO L273 TraceCheckUtils]: 16: Hoare triple {13369#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,229 INFO L273 TraceCheckUtils]: 17: Hoare triple {13369#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,230 INFO L273 TraceCheckUtils]: 18: Hoare triple {13369#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,230 INFO L273 TraceCheckUtils]: 19: Hoare triple {13369#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,230 INFO L273 TraceCheckUtils]: 20: Hoare triple {13369#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,230 INFO L273 TraceCheckUtils]: 21: Hoare triple {13369#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,230 INFO L273 TraceCheckUtils]: 22: Hoare triple {13369#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {13369#true} is VALID [2018-11-23 12:48:10,230 INFO L273 TraceCheckUtils]: 23: Hoare triple {13369#true} assume 8464 == #t~mem32;havoc #t~mem32; {13369#true} is VALID [2018-11-23 12:48:10,231 INFO L273 TraceCheckUtils]: 24: Hoare triple {13369#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {13369#true} is VALID [2018-11-23 12:48:10,231 INFO L273 TraceCheckUtils]: 25: Hoare triple {13369#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {13369#true} is VALID [2018-11-23 12:48:10,248 INFO L273 TraceCheckUtils]: 26: Hoare triple {13369#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:10,257 INFO L273 TraceCheckUtils]: 27: Hoare triple {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:10,270 INFO L273 TraceCheckUtils]: 28: Hoare triple {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:10,279 INFO L273 TraceCheckUtils]: 29: Hoare triple {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:10,293 INFO L273 TraceCheckUtils]: 30: Hoare triple {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:10,301 INFO L273 TraceCheckUtils]: 31: Hoare triple {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:10,312 INFO L273 TraceCheckUtils]: 32: Hoare triple {13371#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {13372#(and (= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496) (= |ssl3_accept_#t~mem25| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:48:10,323 INFO L273 TraceCheckUtils]: 33: Hoare triple {13372#(and (= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496) (= |ssl3_accept_#t~mem25| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume 16384 == #t~mem25;havoc #t~mem25; {13370#false} is VALID [2018-11-23 12:48:10,323 INFO L273 TraceCheckUtils]: 34: Hoare triple {13370#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,324 INFO L273 TraceCheckUtils]: 35: Hoare triple {13370#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {13370#false} is VALID [2018-11-23 12:48:10,324 INFO L273 TraceCheckUtils]: 36: Hoare triple {13370#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,324 INFO L273 TraceCheckUtils]: 37: Hoare triple {13370#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,324 INFO L273 TraceCheckUtils]: 38: Hoare triple {13370#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {13370#false} is VALID [2018-11-23 12:48:10,324 INFO L273 TraceCheckUtils]: 39: Hoare triple {13370#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,325 INFO L273 TraceCheckUtils]: 40: Hoare triple {13370#false} assume 12292 != #t~mem62;havoc #t~mem62; {13370#false} is VALID [2018-11-23 12:48:10,325 INFO L273 TraceCheckUtils]: 41: Hoare triple {13370#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {13370#false} is VALID [2018-11-23 12:48:10,325 INFO L273 TraceCheckUtils]: 42: Hoare triple {13370#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,325 INFO L273 TraceCheckUtils]: 43: Hoare triple {13370#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {13370#false} is VALID [2018-11-23 12:48:10,325 INFO L273 TraceCheckUtils]: 44: Hoare triple {13370#false} ~skip~0 := 0; {13370#false} is VALID [2018-11-23 12:48:10,325 INFO L273 TraceCheckUtils]: 45: Hoare triple {13370#false} assume !false; {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 46: Hoare triple {13370#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 47: Hoare triple {13370#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 48: Hoare triple {13370#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 49: Hoare triple {13370#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 50: Hoare triple {13370#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 51: Hoare triple {13370#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,326 INFO L273 TraceCheckUtils]: 52: Hoare triple {13370#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,327 INFO L273 TraceCheckUtils]: 53: Hoare triple {13370#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,327 INFO L273 TraceCheckUtils]: 54: Hoare triple {13370#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,327 INFO L273 TraceCheckUtils]: 55: Hoare triple {13370#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,327 INFO L273 TraceCheckUtils]: 56: Hoare triple {13370#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,327 INFO L273 TraceCheckUtils]: 57: Hoare triple {13370#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,327 INFO L273 TraceCheckUtils]: 58: Hoare triple {13370#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,328 INFO L273 TraceCheckUtils]: 59: Hoare triple {13370#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,328 INFO L273 TraceCheckUtils]: 60: Hoare triple {13370#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,328 INFO L273 TraceCheckUtils]: 61: Hoare triple {13370#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,328 INFO L273 TraceCheckUtils]: 62: Hoare triple {13370#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,328 INFO L273 TraceCheckUtils]: 63: Hoare triple {13370#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,328 INFO L273 TraceCheckUtils]: 64: Hoare triple {13370#false} assume 8544 == #t~mem41;havoc #t~mem41; {13370#false} is VALID [2018-11-23 12:48:10,329 INFO L273 TraceCheckUtils]: 65: Hoare triple {13370#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,329 INFO L273 TraceCheckUtils]: 66: Hoare triple {13370#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,329 INFO L273 TraceCheckUtils]: 67: Hoare triple {13370#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {13370#false} is VALID [2018-11-23 12:48:10,329 INFO L273 TraceCheckUtils]: 68: Hoare triple {13370#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {13370#false} is VALID [2018-11-23 12:48:10,329 INFO L273 TraceCheckUtils]: 69: Hoare triple {13370#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {13370#false} is VALID [2018-11-23 12:48:10,329 INFO L273 TraceCheckUtils]: 70: Hoare triple {13370#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {13370#false} is VALID [2018-11-23 12:48:10,330 INFO L273 TraceCheckUtils]: 71: Hoare triple {13370#false} assume 8 == ~blastFlag~0; {13370#false} is VALID [2018-11-23 12:48:10,330 INFO L273 TraceCheckUtils]: 72: Hoare triple {13370#false} assume !false; {13370#false} is VALID [2018-11-23 12:48:10,334 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 22 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:10,334 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:10,335 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:10,335 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 73 [2018-11-23 12:48:10,335 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:10,335 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:10,420 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 73 edges. 73 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:10,421 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:10,421 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:10,421 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:10,422 INFO L87 Difference]: Start difference. First operand 194 states and 285 transitions. Second operand 4 states. [2018-11-23 12:48:11,262 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:11,263 INFO L93 Difference]: Finished difference Result 380 states and 564 transitions. [2018-11-23 12:48:11,263 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:11,263 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 73 [2018-11-23 12:48:11,263 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:11,263 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:11,265 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 465 transitions. [2018-11-23 12:48:11,265 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:11,267 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 465 transitions. [2018-11-23 12:48:11,267 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 465 transitions. [2018-11-23 12:48:11,727 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 465 edges. 465 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:11,731 INFO L225 Difference]: With dead ends: 380 [2018-11-23 12:48:11,731 INFO L226 Difference]: Without dead ends: 211 [2018-11-23 12:48:11,732 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 4 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:11,732 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 211 states. [2018-11-23 12:48:11,816 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 211 to 194. [2018-11-23 12:48:11,816 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:11,816 INFO L82 GeneralOperation]: Start isEquivalent. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:11,816 INFO L74 IsIncluded]: Start isIncluded. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:11,816 INFO L87 Difference]: Start difference. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:11,821 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:11,821 INFO L93 Difference]: Finished difference Result 211 states and 306 transitions. [2018-11-23 12:48:11,821 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 306 transitions. [2018-11-23 12:48:11,822 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:11,822 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:11,822 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:11,822 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:11,826 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:11,826 INFO L93 Difference]: Finished difference Result 211 states and 306 transitions. [2018-11-23 12:48:11,826 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 306 transitions. [2018-11-23 12:48:11,827 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:11,827 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:11,827 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:11,827 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:11,827 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:11,830 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 284 transitions. [2018-11-23 12:48:11,830 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 284 transitions. Word has length 73 [2018-11-23 12:48:11,830 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:11,830 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 284 transitions. [2018-11-23 12:48:11,830 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:11,830 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 284 transitions. [2018-11-23 12:48:11,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 75 [2018-11-23 12:48:11,831 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:11,831 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:11,831 INFO L423 AbstractCegarLoop]: === Iteration 15 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:11,831 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:11,832 INFO L82 PathProgramCache]: Analyzing trace with hash 1083985708, now seen corresponding path program 1 times [2018-11-23 12:48:11,832 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:11,832 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:11,833 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:11,833 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:11,833 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:11,847 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:12,072 INFO L256 TraceCheckUtils]: 0: Hoare triple {14472#true} call ULTIMATE.init(); {14472#true} is VALID [2018-11-23 12:48:12,073 INFO L273 TraceCheckUtils]: 1: Hoare triple {14472#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,073 INFO L273 TraceCheckUtils]: 2: Hoare triple {14472#true} assume true; {14472#true} is VALID [2018-11-23 12:48:12,073 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {14472#true} {14472#true} #633#return; {14472#true} is VALID [2018-11-23 12:48:12,073 INFO L256 TraceCheckUtils]: 4: Hoare triple {14472#true} call #t~ret138 := main(); {14472#true} is VALID [2018-11-23 12:48:12,073 INFO L273 TraceCheckUtils]: 5: Hoare triple {14472#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,074 INFO L256 TraceCheckUtils]: 6: Hoare triple {14472#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {14472#true} is VALID [2018-11-23 12:48:12,074 INFO L273 TraceCheckUtils]: 7: Hoare triple {14472#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,074 INFO L273 TraceCheckUtils]: 8: Hoare triple {14472#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {14472#true} is VALID [2018-11-23 12:48:12,074 INFO L273 TraceCheckUtils]: 9: Hoare triple {14472#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {14472#true} is VALID [2018-11-23 12:48:12,075 INFO L273 TraceCheckUtils]: 10: Hoare triple {14472#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {14472#true} is VALID [2018-11-23 12:48:12,075 INFO L273 TraceCheckUtils]: 11: Hoare triple {14472#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,075 INFO L273 TraceCheckUtils]: 12: Hoare triple {14472#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {14472#true} is VALID [2018-11-23 12:48:12,075 INFO L273 TraceCheckUtils]: 13: Hoare triple {14472#true} assume !false; {14472#true} is VALID [2018-11-23 12:48:12,075 INFO L273 TraceCheckUtils]: 14: Hoare triple {14472#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,075 INFO L273 TraceCheckUtils]: 15: Hoare triple {14472#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 16: Hoare triple {14472#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 17: Hoare triple {14472#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 18: Hoare triple {14472#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 19: Hoare triple {14472#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 20: Hoare triple {14472#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 21: Hoare triple {14472#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 22: Hoare triple {14472#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 23: Hoare triple {14472#true} assume 8464 == #t~mem32;havoc #t~mem32; {14472#true} is VALID [2018-11-23 12:48:12,076 INFO L273 TraceCheckUtils]: 24: Hoare triple {14472#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {14472#true} is VALID [2018-11-23 12:48:12,077 INFO L273 TraceCheckUtils]: 25: Hoare triple {14472#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {14472#true} is VALID [2018-11-23 12:48:12,078 INFO L273 TraceCheckUtils]: 26: Hoare triple {14472#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,081 INFO L273 TraceCheckUtils]: 27: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,081 INFO L273 TraceCheckUtils]: 28: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,083 INFO L273 TraceCheckUtils]: 29: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,083 INFO L273 TraceCheckUtils]: 30: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,086 INFO L273 TraceCheckUtils]: 31: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,086 INFO L273 TraceCheckUtils]: 32: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:12,089 INFO L273 TraceCheckUtils]: 33: Hoare triple {14474#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {14475#(and (= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496) (= |ssl3_accept_#t~mem26| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:48:12,089 INFO L273 TraceCheckUtils]: 34: Hoare triple {14475#(and (= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496) (= |ssl3_accept_#t~mem26| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume 8192 == #t~mem26;havoc #t~mem26; {14473#false} is VALID [2018-11-23 12:48:12,089 INFO L273 TraceCheckUtils]: 35: Hoare triple {14473#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,089 INFO L273 TraceCheckUtils]: 36: Hoare triple {14473#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {14473#false} is VALID [2018-11-23 12:48:12,089 INFO L273 TraceCheckUtils]: 37: Hoare triple {14473#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 38: Hoare triple {14473#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 39: Hoare triple {14473#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 40: Hoare triple {14473#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 41: Hoare triple {14473#false} assume 12292 != #t~mem62;havoc #t~mem62; {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 42: Hoare triple {14473#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 43: Hoare triple {14473#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 44: Hoare triple {14473#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {14473#false} is VALID [2018-11-23 12:48:12,090 INFO L273 TraceCheckUtils]: 45: Hoare triple {14473#false} ~skip~0 := 0; {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 46: Hoare triple {14473#false} assume !false; {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 47: Hoare triple {14473#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 48: Hoare triple {14473#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 49: Hoare triple {14473#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 50: Hoare triple {14473#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 51: Hoare triple {14473#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 52: Hoare triple {14473#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 53: Hoare triple {14473#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,091 INFO L273 TraceCheckUtils]: 54: Hoare triple {14473#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 55: Hoare triple {14473#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 56: Hoare triple {14473#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 57: Hoare triple {14473#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 58: Hoare triple {14473#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 59: Hoare triple {14473#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 60: Hoare triple {14473#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 61: Hoare triple {14473#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,092 INFO L273 TraceCheckUtils]: 62: Hoare triple {14473#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 63: Hoare triple {14473#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 64: Hoare triple {14473#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 65: Hoare triple {14473#false} assume 8544 == #t~mem41;havoc #t~mem41; {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 66: Hoare triple {14473#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 67: Hoare triple {14473#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 68: Hoare triple {14473#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 69: Hoare triple {14473#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 70: Hoare triple {14473#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {14473#false} is VALID [2018-11-23 12:48:12,093 INFO L273 TraceCheckUtils]: 71: Hoare triple {14473#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {14473#false} is VALID [2018-11-23 12:48:12,094 INFO L273 TraceCheckUtils]: 72: Hoare triple {14473#false} assume 8 == ~blastFlag~0; {14473#false} is VALID [2018-11-23 12:48:12,094 INFO L273 TraceCheckUtils]: 73: Hoare triple {14473#false} assume !false; {14473#false} is VALID [2018-11-23 12:48:12,097 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 24 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:12,097 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:12,098 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:12,098 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 74 [2018-11-23 12:48:12,098 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:12,098 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:12,214 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 74 edges. 74 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:12,214 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:12,214 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:12,214 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:12,215 INFO L87 Difference]: Start difference. First operand 194 states and 284 transitions. Second operand 4 states. [2018-11-23 12:48:13,074 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:13,074 INFO L93 Difference]: Finished difference Result 380 states and 562 transitions. [2018-11-23 12:48:13,075 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:13,075 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 74 [2018-11-23 12:48:13,075 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:13,075 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:13,078 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 464 transitions. [2018-11-23 12:48:13,078 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:13,080 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 464 transitions. [2018-11-23 12:48:13,081 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 464 transitions. [2018-11-23 12:48:13,546 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 464 edges. 464 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:13,550 INFO L225 Difference]: With dead ends: 380 [2018-11-23 12:48:13,550 INFO L226 Difference]: Without dead ends: 211 [2018-11-23 12:48:13,551 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 4 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:13,551 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 211 states. [2018-11-23 12:48:13,641 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 211 to 194. [2018-11-23 12:48:13,641 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:13,642 INFO L82 GeneralOperation]: Start isEquivalent. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:13,642 INFO L74 IsIncluded]: Start isIncluded. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:13,642 INFO L87 Difference]: Start difference. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:13,647 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:13,647 INFO L93 Difference]: Finished difference Result 211 states and 305 transitions. [2018-11-23 12:48:13,647 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 305 transitions. [2018-11-23 12:48:13,648 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:13,648 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:13,648 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:13,648 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:13,652 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:13,653 INFO L93 Difference]: Finished difference Result 211 states and 305 transitions. [2018-11-23 12:48:13,653 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 305 transitions. [2018-11-23 12:48:13,653 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:13,653 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:13,654 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:13,654 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:13,654 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:13,658 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 283 transitions. [2018-11-23 12:48:13,658 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 283 transitions. Word has length 74 [2018-11-23 12:48:13,658 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:13,658 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 283 transitions. [2018-11-23 12:48:13,659 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:13,659 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 283 transitions. [2018-11-23 12:48:13,659 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 76 [2018-11-23 12:48:13,660 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:13,660 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:13,660 INFO L423 AbstractCegarLoop]: === Iteration 16 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:13,660 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:13,660 INFO L82 PathProgramCache]: Analyzing trace with hash -241218748, now seen corresponding path program 1 times [2018-11-23 12:48:13,661 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:13,661 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:13,662 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:13,662 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:13,662 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:13,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:13,830 INFO L256 TraceCheckUtils]: 0: Hoare triple {15575#true} call ULTIMATE.init(); {15575#true} is VALID [2018-11-23 12:48:13,830 INFO L273 TraceCheckUtils]: 1: Hoare triple {15575#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,831 INFO L273 TraceCheckUtils]: 2: Hoare triple {15575#true} assume true; {15575#true} is VALID [2018-11-23 12:48:13,831 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {15575#true} {15575#true} #633#return; {15575#true} is VALID [2018-11-23 12:48:13,831 INFO L256 TraceCheckUtils]: 4: Hoare triple {15575#true} call #t~ret138 := main(); {15575#true} is VALID [2018-11-23 12:48:13,832 INFO L273 TraceCheckUtils]: 5: Hoare triple {15575#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,832 INFO L256 TraceCheckUtils]: 6: Hoare triple {15575#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {15575#true} is VALID [2018-11-23 12:48:13,832 INFO L273 TraceCheckUtils]: 7: Hoare triple {15575#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,832 INFO L273 TraceCheckUtils]: 8: Hoare triple {15575#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {15575#true} is VALID [2018-11-23 12:48:13,833 INFO L273 TraceCheckUtils]: 9: Hoare triple {15575#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {15575#true} is VALID [2018-11-23 12:48:13,833 INFO L273 TraceCheckUtils]: 10: Hoare triple {15575#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {15575#true} is VALID [2018-11-23 12:48:13,833 INFO L273 TraceCheckUtils]: 11: Hoare triple {15575#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,833 INFO L273 TraceCheckUtils]: 12: Hoare triple {15575#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {15575#true} is VALID [2018-11-23 12:48:13,833 INFO L273 TraceCheckUtils]: 13: Hoare triple {15575#true} assume !false; {15575#true} is VALID [2018-11-23 12:48:13,833 INFO L273 TraceCheckUtils]: 14: Hoare triple {15575#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 15: Hoare triple {15575#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 16: Hoare triple {15575#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 17: Hoare triple {15575#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 18: Hoare triple {15575#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 19: Hoare triple {15575#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 20: Hoare triple {15575#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,834 INFO L273 TraceCheckUtils]: 21: Hoare triple {15575#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,835 INFO L273 TraceCheckUtils]: 22: Hoare triple {15575#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {15575#true} is VALID [2018-11-23 12:48:13,835 INFO L273 TraceCheckUtils]: 23: Hoare triple {15575#true} assume 8464 == #t~mem32;havoc #t~mem32; {15575#true} is VALID [2018-11-23 12:48:13,835 INFO L273 TraceCheckUtils]: 24: Hoare triple {15575#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {15575#true} is VALID [2018-11-23 12:48:13,835 INFO L273 TraceCheckUtils]: 25: Hoare triple {15575#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {15575#true} is VALID [2018-11-23 12:48:13,836 INFO L273 TraceCheckUtils]: 26: Hoare triple {15575#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,837 INFO L273 TraceCheckUtils]: 27: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,837 INFO L273 TraceCheckUtils]: 28: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,838 INFO L273 TraceCheckUtils]: 29: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,838 INFO L273 TraceCheckUtils]: 30: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,839 INFO L273 TraceCheckUtils]: 31: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,839 INFO L273 TraceCheckUtils]: 32: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,840 INFO L273 TraceCheckUtils]: 33: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:13,841 INFO L273 TraceCheckUtils]: 34: Hoare triple {15577#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {15578#(= |ssl3_accept_#t~mem27| 8496)} is VALID [2018-11-23 12:48:13,841 INFO L273 TraceCheckUtils]: 35: Hoare triple {15578#(= |ssl3_accept_#t~mem27| 8496)} assume 24576 == #t~mem27;havoc #t~mem27; {15576#false} is VALID [2018-11-23 12:48:13,842 INFO L273 TraceCheckUtils]: 36: Hoare triple {15576#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,842 INFO L273 TraceCheckUtils]: 37: Hoare triple {15576#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {15576#false} is VALID [2018-11-23 12:48:13,842 INFO L273 TraceCheckUtils]: 38: Hoare triple {15576#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,843 INFO L273 TraceCheckUtils]: 39: Hoare triple {15576#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,843 INFO L273 TraceCheckUtils]: 40: Hoare triple {15576#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {15576#false} is VALID [2018-11-23 12:48:13,843 INFO L273 TraceCheckUtils]: 41: Hoare triple {15576#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,843 INFO L273 TraceCheckUtils]: 42: Hoare triple {15576#false} assume 12292 != #t~mem62;havoc #t~mem62; {15576#false} is VALID [2018-11-23 12:48:13,844 INFO L273 TraceCheckUtils]: 43: Hoare triple {15576#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {15576#false} is VALID [2018-11-23 12:48:13,844 INFO L273 TraceCheckUtils]: 44: Hoare triple {15576#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,844 INFO L273 TraceCheckUtils]: 45: Hoare triple {15576#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {15576#false} is VALID [2018-11-23 12:48:13,844 INFO L273 TraceCheckUtils]: 46: Hoare triple {15576#false} ~skip~0 := 0; {15576#false} is VALID [2018-11-23 12:48:13,845 INFO L273 TraceCheckUtils]: 47: Hoare triple {15576#false} assume !false; {15576#false} is VALID [2018-11-23 12:48:13,845 INFO L273 TraceCheckUtils]: 48: Hoare triple {15576#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,845 INFO L273 TraceCheckUtils]: 49: Hoare triple {15576#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,845 INFO L273 TraceCheckUtils]: 50: Hoare triple {15576#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,846 INFO L273 TraceCheckUtils]: 51: Hoare triple {15576#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,846 INFO L273 TraceCheckUtils]: 52: Hoare triple {15576#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,846 INFO L273 TraceCheckUtils]: 53: Hoare triple {15576#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,846 INFO L273 TraceCheckUtils]: 54: Hoare triple {15576#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,846 INFO L273 TraceCheckUtils]: 55: Hoare triple {15576#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,846 INFO L273 TraceCheckUtils]: 56: Hoare triple {15576#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,847 INFO L273 TraceCheckUtils]: 57: Hoare triple {15576#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,847 INFO L273 TraceCheckUtils]: 58: Hoare triple {15576#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,847 INFO L273 TraceCheckUtils]: 59: Hoare triple {15576#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,847 INFO L273 TraceCheckUtils]: 60: Hoare triple {15576#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,847 INFO L273 TraceCheckUtils]: 61: Hoare triple {15576#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,847 INFO L273 TraceCheckUtils]: 62: Hoare triple {15576#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,848 INFO L273 TraceCheckUtils]: 63: Hoare triple {15576#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,848 INFO L273 TraceCheckUtils]: 64: Hoare triple {15576#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,848 INFO L273 TraceCheckUtils]: 65: Hoare triple {15576#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,848 INFO L273 TraceCheckUtils]: 66: Hoare triple {15576#false} assume 8544 == #t~mem41;havoc #t~mem41; {15576#false} is VALID [2018-11-23 12:48:13,848 INFO L273 TraceCheckUtils]: 67: Hoare triple {15576#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,848 INFO L273 TraceCheckUtils]: 68: Hoare triple {15576#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,849 INFO L273 TraceCheckUtils]: 69: Hoare triple {15576#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {15576#false} is VALID [2018-11-23 12:48:13,849 INFO L273 TraceCheckUtils]: 70: Hoare triple {15576#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {15576#false} is VALID [2018-11-23 12:48:13,849 INFO L273 TraceCheckUtils]: 71: Hoare triple {15576#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {15576#false} is VALID [2018-11-23 12:48:13,849 INFO L273 TraceCheckUtils]: 72: Hoare triple {15576#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {15576#false} is VALID [2018-11-23 12:48:13,849 INFO L273 TraceCheckUtils]: 73: Hoare triple {15576#false} assume 8 == ~blastFlag~0; {15576#false} is VALID [2018-11-23 12:48:13,849 INFO L273 TraceCheckUtils]: 74: Hoare triple {15576#false} assume !false; {15576#false} is VALID [2018-11-23 12:48:13,856 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 26 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:13,857 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:13,857 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:13,857 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 75 [2018-11-23 12:48:13,857 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:13,858 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:13,948 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 75 edges. 75 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:13,949 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:13,949 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:13,949 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:13,949 INFO L87 Difference]: Start difference. First operand 194 states and 283 transitions. Second operand 4 states. [2018-11-23 12:48:14,998 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:14,999 INFO L93 Difference]: Finished difference Result 380 states and 560 transitions. [2018-11-23 12:48:14,999 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:14,999 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 75 [2018-11-23 12:48:14,999 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:14,999 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:15,001 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 463 transitions. [2018-11-23 12:48:15,001 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:15,003 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 463 transitions. [2018-11-23 12:48:15,003 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 463 transitions. [2018-11-23 12:48:15,433 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 463 edges. 463 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:15,437 INFO L225 Difference]: With dead ends: 380 [2018-11-23 12:48:15,437 INFO L226 Difference]: Without dead ends: 211 [2018-11-23 12:48:15,438 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:15,438 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 211 states. [2018-11-23 12:48:15,523 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 211 to 194. [2018-11-23 12:48:15,523 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:15,523 INFO L82 GeneralOperation]: Start isEquivalent. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:15,523 INFO L74 IsIncluded]: Start isIncluded. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:15,524 INFO L87 Difference]: Start difference. First operand 211 states. Second operand 194 states. [2018-11-23 12:48:15,528 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:15,528 INFO L93 Difference]: Finished difference Result 211 states and 304 transitions. [2018-11-23 12:48:15,528 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 304 transitions. [2018-11-23 12:48:15,528 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:15,529 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:15,529 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:15,529 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 211 states. [2018-11-23 12:48:15,533 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:15,533 INFO L93 Difference]: Finished difference Result 211 states and 304 transitions. [2018-11-23 12:48:15,533 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 304 transitions. [2018-11-23 12:48:15,534 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:15,534 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:15,534 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:15,534 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:15,534 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:15,538 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 282 transitions. [2018-11-23 12:48:15,538 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 282 transitions. Word has length 75 [2018-11-23 12:48:15,538 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:15,538 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 282 transitions. [2018-11-23 12:48:15,538 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:15,538 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 282 transitions. [2018-11-23 12:48:15,539 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2018-11-23 12:48:15,539 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:15,539 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:15,539 INFO L423 AbstractCegarLoop]: === Iteration 17 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:15,540 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:15,540 INFO L82 PathProgramCache]: Analyzing trace with hash 345081479, now seen corresponding path program 1 times [2018-11-23 12:48:15,540 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:15,540 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:15,541 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:15,541 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:15,541 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:15,555 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:15,710 INFO L256 TraceCheckUtils]: 0: Hoare triple {16680#true} call ULTIMATE.init(); {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L273 TraceCheckUtils]: 1: Hoare triple {16680#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L273 TraceCheckUtils]: 2: Hoare triple {16680#true} assume true; {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {16680#true} {16680#true} #633#return; {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L256 TraceCheckUtils]: 4: Hoare triple {16680#true} call #t~ret138 := main(); {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L273 TraceCheckUtils]: 5: Hoare triple {16680#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L256 TraceCheckUtils]: 6: Hoare triple {16680#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {16680#true} is VALID [2018-11-23 12:48:15,711 INFO L273 TraceCheckUtils]: 7: Hoare triple {16680#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 8: Hoare triple {16680#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 9: Hoare triple {16680#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 10: Hoare triple {16680#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 11: Hoare triple {16680#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 12: Hoare triple {16680#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 13: Hoare triple {16680#true} assume !false; {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 14: Hoare triple {16680#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,712 INFO L273 TraceCheckUtils]: 15: Hoare triple {16680#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 16: Hoare triple {16680#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 17: Hoare triple {16680#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 18: Hoare triple {16680#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 19: Hoare triple {16680#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 20: Hoare triple {16680#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 21: Hoare triple {16680#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 22: Hoare triple {16680#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 23: Hoare triple {16680#true} assume 8464 == #t~mem32;havoc #t~mem32; {16680#true} is VALID [2018-11-23 12:48:15,713 INFO L273 TraceCheckUtils]: 24: Hoare triple {16680#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {16680#true} is VALID [2018-11-23 12:48:15,714 INFO L273 TraceCheckUtils]: 25: Hoare triple {16680#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {16680#true} is VALID [2018-11-23 12:48:15,715 INFO L273 TraceCheckUtils]: 26: Hoare triple {16680#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,715 INFO L273 TraceCheckUtils]: 27: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,715 INFO L273 TraceCheckUtils]: 28: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,716 INFO L273 TraceCheckUtils]: 29: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} ~skip~0 := 0; {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,716 INFO L273 TraceCheckUtils]: 30: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !false; {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,716 INFO L273 TraceCheckUtils]: 31: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,717 INFO L273 TraceCheckUtils]: 32: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,717 INFO L273 TraceCheckUtils]: 33: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,717 INFO L273 TraceCheckUtils]: 34: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} is VALID [2018-11-23 12:48:15,718 INFO L273 TraceCheckUtils]: 35: Hoare triple {16682#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {16683#(and (= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496) (= |ssl3_accept_#t~mem28| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} is VALID [2018-11-23 12:48:15,719 INFO L273 TraceCheckUtils]: 36: Hoare triple {16683#(and (= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 36) 1) (+ ssl3_accept_~s.offset 52)) 8496) (= |ssl3_accept_#t~mem28| (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52))))} assume 8195 == #t~mem28;havoc #t~mem28; {16681#false} is VALID [2018-11-23 12:48:15,719 INFO L273 TraceCheckUtils]: 37: Hoare triple {16681#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,719 INFO L273 TraceCheckUtils]: 38: Hoare triple {16681#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {16681#false} is VALID [2018-11-23 12:48:15,719 INFO L273 TraceCheckUtils]: 39: Hoare triple {16681#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,719 INFO L273 TraceCheckUtils]: 40: Hoare triple {16681#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,720 INFO L273 TraceCheckUtils]: 41: Hoare triple {16681#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {16681#false} is VALID [2018-11-23 12:48:15,720 INFO L273 TraceCheckUtils]: 42: Hoare triple {16681#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,720 INFO L273 TraceCheckUtils]: 43: Hoare triple {16681#false} assume 12292 != #t~mem62;havoc #t~mem62; {16681#false} is VALID [2018-11-23 12:48:15,720 INFO L273 TraceCheckUtils]: 44: Hoare triple {16681#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {16681#false} is VALID [2018-11-23 12:48:15,720 INFO L273 TraceCheckUtils]: 45: Hoare triple {16681#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,721 INFO L273 TraceCheckUtils]: 46: Hoare triple {16681#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {16681#false} is VALID [2018-11-23 12:48:15,721 INFO L273 TraceCheckUtils]: 47: Hoare triple {16681#false} ~skip~0 := 0; {16681#false} is VALID [2018-11-23 12:48:15,721 INFO L273 TraceCheckUtils]: 48: Hoare triple {16681#false} assume !false; {16681#false} is VALID [2018-11-23 12:48:15,721 INFO L273 TraceCheckUtils]: 49: Hoare triple {16681#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,721 INFO L273 TraceCheckUtils]: 50: Hoare triple {16681#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,722 INFO L273 TraceCheckUtils]: 51: Hoare triple {16681#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,722 INFO L273 TraceCheckUtils]: 52: Hoare triple {16681#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,722 INFO L273 TraceCheckUtils]: 53: Hoare triple {16681#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,722 INFO L273 TraceCheckUtils]: 54: Hoare triple {16681#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,722 INFO L273 TraceCheckUtils]: 55: Hoare triple {16681#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,722 INFO L273 TraceCheckUtils]: 56: Hoare triple {16681#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,723 INFO L273 TraceCheckUtils]: 57: Hoare triple {16681#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,723 INFO L273 TraceCheckUtils]: 58: Hoare triple {16681#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,723 INFO L273 TraceCheckUtils]: 59: Hoare triple {16681#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,723 INFO L273 TraceCheckUtils]: 60: Hoare triple {16681#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,723 INFO L273 TraceCheckUtils]: 61: Hoare triple {16681#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 62: Hoare triple {16681#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 63: Hoare triple {16681#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 64: Hoare triple {16681#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 65: Hoare triple {16681#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 66: Hoare triple {16681#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 67: Hoare triple {16681#false} assume 8544 == #t~mem41;havoc #t~mem41; {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 68: Hoare triple {16681#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 69: Hoare triple {16681#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,724 INFO L273 TraceCheckUtils]: 70: Hoare triple {16681#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {16681#false} is VALID [2018-11-23 12:48:15,725 INFO L273 TraceCheckUtils]: 71: Hoare triple {16681#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {16681#false} is VALID [2018-11-23 12:48:15,725 INFO L273 TraceCheckUtils]: 72: Hoare triple {16681#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {16681#false} is VALID [2018-11-23 12:48:15,725 INFO L273 TraceCheckUtils]: 73: Hoare triple {16681#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {16681#false} is VALID [2018-11-23 12:48:15,725 INFO L273 TraceCheckUtils]: 74: Hoare triple {16681#false} assume 8 == ~blastFlag~0; {16681#false} is VALID [2018-11-23 12:48:15,725 INFO L273 TraceCheckUtils]: 75: Hoare triple {16681#false} assume !false; {16681#false} is VALID [2018-11-23 12:48:15,729 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-23 12:48:15,730 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:15,730 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:15,730 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 76 [2018-11-23 12:48:15,730 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:15,731 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:15,807 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 76 edges. 76 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:15,807 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:15,808 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:15,808 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:15,808 INFO L87 Difference]: Start difference. First operand 194 states and 282 transitions. Second operand 4 states. [2018-11-23 12:48:16,621 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:16,621 INFO L93 Difference]: Finished difference Result 370 states and 546 transitions. [2018-11-23 12:48:16,621 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:16,622 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 76 [2018-11-23 12:48:16,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:16,622 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:16,624 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 450 transitions. [2018-11-23 12:48:16,624 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:16,626 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 450 transitions. [2018-11-23 12:48:16,626 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 450 transitions. [2018-11-23 12:48:17,070 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 450 edges. 450 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:17,074 INFO L225 Difference]: With dead ends: 370 [2018-11-23 12:48:17,074 INFO L226 Difference]: Without dead ends: 201 [2018-11-23 12:48:17,075 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 4 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:17,075 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 201 states. [2018-11-23 12:48:17,201 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 201 to 194. [2018-11-23 12:48:17,201 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:17,201 INFO L82 GeneralOperation]: Start isEquivalent. First operand 201 states. Second operand 194 states. [2018-11-23 12:48:17,201 INFO L74 IsIncluded]: Start isIncluded. First operand 201 states. Second operand 194 states. [2018-11-23 12:48:17,202 INFO L87 Difference]: Start difference. First operand 201 states. Second operand 194 states. [2018-11-23 12:48:17,205 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:17,205 INFO L93 Difference]: Finished difference Result 201 states and 291 transitions. [2018-11-23 12:48:17,205 INFO L276 IsEmpty]: Start isEmpty. Operand 201 states and 291 transitions. [2018-11-23 12:48:17,205 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:17,205 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:17,206 INFO L74 IsIncluded]: Start isIncluded. First operand 194 states. Second operand 201 states. [2018-11-23 12:48:17,206 INFO L87 Difference]: Start difference. First operand 194 states. Second operand 201 states. [2018-11-23 12:48:17,210 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:17,210 INFO L93 Difference]: Finished difference Result 201 states and 291 transitions. [2018-11-23 12:48:17,210 INFO L276 IsEmpty]: Start isEmpty. Operand 201 states and 291 transitions. [2018-11-23 12:48:17,210 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:17,210 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:17,211 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:17,211 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:17,211 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 194 states. [2018-11-23 12:48:17,214 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 281 transitions. [2018-11-23 12:48:17,215 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 281 transitions. Word has length 76 [2018-11-23 12:48:17,215 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:17,215 INFO L480 AbstractCegarLoop]: Abstraction has 194 states and 281 transitions. [2018-11-23 12:48:17,215 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:17,215 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 281 transitions. [2018-11-23 12:48:17,216 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2018-11-23 12:48:17,216 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:17,216 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:17,216 INFO L423 AbstractCegarLoop]: === Iteration 18 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:17,217 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:17,217 INFO L82 PathProgramCache]: Analyzing trace with hash 1440674399, now seen corresponding path program 1 times [2018-11-23 12:48:17,217 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:17,217 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:17,218 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:17,218 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:17,218 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:17,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:17,474 INFO L256 TraceCheckUtils]: 0: Hoare triple {17752#true} call ULTIMATE.init(); {17752#true} is VALID [2018-11-23 12:48:17,475 INFO L273 TraceCheckUtils]: 1: Hoare triple {17752#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,475 INFO L273 TraceCheckUtils]: 2: Hoare triple {17752#true} assume true; {17752#true} is VALID [2018-11-23 12:48:17,475 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {17752#true} {17752#true} #633#return; {17752#true} is VALID [2018-11-23 12:48:17,476 INFO L256 TraceCheckUtils]: 4: Hoare triple {17752#true} call #t~ret138 := main(); {17752#true} is VALID [2018-11-23 12:48:17,476 INFO L273 TraceCheckUtils]: 5: Hoare triple {17752#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,476 INFO L256 TraceCheckUtils]: 6: Hoare triple {17752#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {17752#true} is VALID [2018-11-23 12:48:17,476 INFO L273 TraceCheckUtils]: 7: Hoare triple {17752#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,476 INFO L273 TraceCheckUtils]: 8: Hoare triple {17752#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 9: Hoare triple {17752#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 10: Hoare triple {17752#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 11: Hoare triple {17752#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 12: Hoare triple {17752#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 13: Hoare triple {17752#true} assume !false; {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 14: Hoare triple {17752#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 15: Hoare triple {17752#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,477 INFO L273 TraceCheckUtils]: 16: Hoare triple {17752#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 17: Hoare triple {17752#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 18: Hoare triple {17752#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 19: Hoare triple {17752#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 20: Hoare triple {17752#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 21: Hoare triple {17752#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 22: Hoare triple {17752#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 23: Hoare triple {17752#true} assume 8464 == #t~mem32;havoc #t~mem32; {17752#true} is VALID [2018-11-23 12:48:17,478 INFO L273 TraceCheckUtils]: 24: Hoare triple {17752#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 25: Hoare triple {17752#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 26: Hoare triple {17752#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 27: Hoare triple {17752#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 28: Hoare triple {17752#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 29: Hoare triple {17752#true} ~skip~0 := 0; {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 30: Hoare triple {17752#true} assume !false; {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 31: Hoare triple {17752#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 32: Hoare triple {17752#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,479 INFO L273 TraceCheckUtils]: 33: Hoare triple {17752#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 34: Hoare triple {17752#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 35: Hoare triple {17752#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 36: Hoare triple {17752#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 37: Hoare triple {17752#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 38: Hoare triple {17752#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 39: Hoare triple {17752#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 40: Hoare triple {17752#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 41: Hoare triple {17752#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,480 INFO L273 TraceCheckUtils]: 42: Hoare triple {17752#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,481 INFO L273 TraceCheckUtils]: 43: Hoare triple {17752#true} assume 8496 == #t~mem35;havoc #t~mem35; {17752#true} is VALID [2018-11-23 12:48:17,481 INFO L273 TraceCheckUtils]: 44: Hoare triple {17752#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {17752#true} is VALID [2018-11-23 12:48:17,481 INFO L273 TraceCheckUtils]: 45: Hoare triple {17752#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {17752#true} is VALID [2018-11-23 12:48:17,481 INFO L273 TraceCheckUtils]: 46: Hoare triple {17752#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {17752#true} is VALID [2018-11-23 12:48:17,482 INFO L273 TraceCheckUtils]: 47: Hoare triple {17752#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,483 INFO L273 TraceCheckUtils]: 48: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,483 INFO L273 TraceCheckUtils]: 49: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,483 INFO L273 TraceCheckUtils]: 50: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,484 INFO L273 TraceCheckUtils]: 51: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,484 INFO L273 TraceCheckUtils]: 52: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,484 INFO L273 TraceCheckUtils]: 53: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,485 INFO L273 TraceCheckUtils]: 54: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,485 INFO L273 TraceCheckUtils]: 55: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,485 INFO L273 TraceCheckUtils]: 56: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,486 INFO L273 TraceCheckUtils]: 57: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,486 INFO L273 TraceCheckUtils]: 58: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,487 INFO L273 TraceCheckUtils]: 59: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,487 INFO L273 TraceCheckUtils]: 60: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,488 INFO L273 TraceCheckUtils]: 61: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,488 INFO L273 TraceCheckUtils]: 62: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,489 INFO L273 TraceCheckUtils]: 63: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,489 INFO L273 TraceCheckUtils]: 64: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,490 INFO L273 TraceCheckUtils]: 65: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,490 INFO L273 TraceCheckUtils]: 66: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,491 INFO L273 TraceCheckUtils]: 67: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,491 INFO L273 TraceCheckUtils]: 68: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,492 INFO L273 TraceCheckUtils]: 69: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:17,493 INFO L273 TraceCheckUtils]: 70: Hoare triple {17754#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {17755#(= 8656 |ssl3_accept_#t~mem41|)} is VALID [2018-11-23 12:48:17,493 INFO L273 TraceCheckUtils]: 71: Hoare triple {17755#(= 8656 |ssl3_accept_#t~mem41|)} assume 8544 == #t~mem41;havoc #t~mem41; {17753#false} is VALID [2018-11-23 12:48:17,493 INFO L273 TraceCheckUtils]: 72: Hoare triple {17753#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {17753#false} is VALID [2018-11-23 12:48:17,494 INFO L273 TraceCheckUtils]: 73: Hoare triple {17753#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {17753#false} is VALID [2018-11-23 12:48:17,494 INFO L273 TraceCheckUtils]: 74: Hoare triple {17753#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {17753#false} is VALID [2018-11-23 12:48:17,494 INFO L273 TraceCheckUtils]: 75: Hoare triple {17753#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {17753#false} is VALID [2018-11-23 12:48:17,494 INFO L273 TraceCheckUtils]: 76: Hoare triple {17753#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {17753#false} is VALID [2018-11-23 12:48:17,494 INFO L273 TraceCheckUtils]: 77: Hoare triple {17753#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {17753#false} is VALID [2018-11-23 12:48:17,495 INFO L273 TraceCheckUtils]: 78: Hoare triple {17753#false} assume 8 == ~blastFlag~0; {17753#false} is VALID [2018-11-23 12:48:17,495 INFO L273 TraceCheckUtils]: 79: Hoare triple {17753#false} assume !false; {17753#false} is VALID [2018-11-23 12:48:17,503 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:17,503 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:17,503 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:17,503 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 80 [2018-11-23 12:48:17,504 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:17,504 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:17,574 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 70 edges. 70 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:17,574 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:17,574 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:17,575 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:17,575 INFO L87 Difference]: Start difference. First operand 194 states and 281 transitions. Second operand 4 states. [2018-11-23 12:48:19,092 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:19,092 INFO L93 Difference]: Finished difference Result 469 states and 696 transitions. [2018-11-23 12:48:19,093 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:19,093 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 80 [2018-11-23 12:48:19,093 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:19,093 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:19,095 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 571 transitions. [2018-11-23 12:48:19,095 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:19,097 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 571 transitions. [2018-11-23 12:48:19,098 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 571 transitions. [2018-11-23 12:48:19,660 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 571 edges. 571 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:19,666 INFO L225 Difference]: With dead ends: 469 [2018-11-23 12:48:19,666 INFO L226 Difference]: Without dead ends: 300 [2018-11-23 12:48:19,667 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:19,667 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2018-11-23 12:48:20,140 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 224. [2018-11-23 12:48:20,140 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:20,140 INFO L82 GeneralOperation]: Start isEquivalent. First operand 300 states. Second operand 224 states. [2018-11-23 12:48:20,140 INFO L74 IsIncluded]: Start isIncluded. First operand 300 states. Second operand 224 states. [2018-11-23 12:48:20,140 INFO L87 Difference]: Start difference. First operand 300 states. Second operand 224 states. [2018-11-23 12:48:20,146 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:20,146 INFO L93 Difference]: Finished difference Result 300 states and 442 transitions. [2018-11-23 12:48:20,146 INFO L276 IsEmpty]: Start isEmpty. Operand 300 states and 442 transitions. [2018-11-23 12:48:20,147 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:20,147 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:20,147 INFO L74 IsIncluded]: Start isIncluded. First operand 224 states. Second operand 300 states. [2018-11-23 12:48:20,147 INFO L87 Difference]: Start difference. First operand 224 states. Second operand 300 states. [2018-11-23 12:48:20,153 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:20,153 INFO L93 Difference]: Finished difference Result 300 states and 442 transitions. [2018-11-23 12:48:20,153 INFO L276 IsEmpty]: Start isEmpty. Operand 300 states and 442 transitions. [2018-11-23 12:48:20,154 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:20,154 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:20,154 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:20,154 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:20,155 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 224 states. [2018-11-23 12:48:20,159 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 224 states to 224 states and 332 transitions. [2018-11-23 12:48:20,159 INFO L78 Accepts]: Start accepts. Automaton has 224 states and 332 transitions. Word has length 80 [2018-11-23 12:48:20,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:20,159 INFO L480 AbstractCegarLoop]: Abstraction has 224 states and 332 transitions. [2018-11-23 12:48:20,159 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:20,160 INFO L276 IsEmpty]: Start isEmpty. Operand 224 states and 332 transitions. [2018-11-23 12:48:20,160 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2018-11-23 12:48:20,160 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:20,160 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:20,161 INFO L423 AbstractCegarLoop]: === Iteration 19 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:20,161 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:20,161 INFO L82 PathProgramCache]: Analyzing trace with hash 1368287841, now seen corresponding path program 1 times [2018-11-23 12:48:20,161 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:20,161 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:20,162 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:20,162 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:20,162 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:20,177 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:20,336 INFO L256 TraceCheckUtils]: 0: Hoare triple {19174#true} call ULTIMATE.init(); {19174#true} is VALID [2018-11-23 12:48:20,337 INFO L273 TraceCheckUtils]: 1: Hoare triple {19174#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,337 INFO L273 TraceCheckUtils]: 2: Hoare triple {19174#true} assume true; {19174#true} is VALID [2018-11-23 12:48:20,337 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {19174#true} {19174#true} #633#return; {19174#true} is VALID [2018-11-23 12:48:20,337 INFO L256 TraceCheckUtils]: 4: Hoare triple {19174#true} call #t~ret138 := main(); {19174#true} is VALID [2018-11-23 12:48:20,338 INFO L273 TraceCheckUtils]: 5: Hoare triple {19174#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,338 INFO L256 TraceCheckUtils]: 6: Hoare triple {19174#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {19174#true} is VALID [2018-11-23 12:48:20,338 INFO L273 TraceCheckUtils]: 7: Hoare triple {19174#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,338 INFO L273 TraceCheckUtils]: 8: Hoare triple {19174#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {19174#true} is VALID [2018-11-23 12:48:20,338 INFO L273 TraceCheckUtils]: 9: Hoare triple {19174#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {19174#true} is VALID [2018-11-23 12:48:20,339 INFO L273 TraceCheckUtils]: 10: Hoare triple {19174#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {19174#true} is VALID [2018-11-23 12:48:20,339 INFO L273 TraceCheckUtils]: 11: Hoare triple {19174#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,339 INFO L273 TraceCheckUtils]: 12: Hoare triple {19174#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {19174#true} is VALID [2018-11-23 12:48:20,339 INFO L273 TraceCheckUtils]: 13: Hoare triple {19174#true} assume !false; {19174#true} is VALID [2018-11-23 12:48:20,339 INFO L273 TraceCheckUtils]: 14: Hoare triple {19174#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 15: Hoare triple {19174#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 16: Hoare triple {19174#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 17: Hoare triple {19174#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 18: Hoare triple {19174#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 19: Hoare triple {19174#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 20: Hoare triple {19174#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,340 INFO L273 TraceCheckUtils]: 21: Hoare triple {19174#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 22: Hoare triple {19174#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 23: Hoare triple {19174#true} assume 8464 == #t~mem32;havoc #t~mem32; {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 24: Hoare triple {19174#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 25: Hoare triple {19174#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 26: Hoare triple {19174#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 27: Hoare triple {19174#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 28: Hoare triple {19174#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {19174#true} is VALID [2018-11-23 12:48:20,341 INFO L273 TraceCheckUtils]: 29: Hoare triple {19174#true} ~skip~0 := 0; {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 30: Hoare triple {19174#true} assume !false; {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 31: Hoare triple {19174#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 32: Hoare triple {19174#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 33: Hoare triple {19174#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 34: Hoare triple {19174#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 35: Hoare triple {19174#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 36: Hoare triple {19174#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 37: Hoare triple {19174#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,342 INFO L273 TraceCheckUtils]: 38: Hoare triple {19174#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 39: Hoare triple {19174#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 40: Hoare triple {19174#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 41: Hoare triple {19174#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 42: Hoare triple {19174#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 43: Hoare triple {19174#true} assume 8496 == #t~mem35;havoc #t~mem35; {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 44: Hoare triple {19174#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 45: Hoare triple {19174#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {19174#true} is VALID [2018-11-23 12:48:20,343 INFO L273 TraceCheckUtils]: 46: Hoare triple {19174#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {19174#true} is VALID [2018-11-23 12:48:20,344 INFO L273 TraceCheckUtils]: 47: Hoare triple {19174#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,345 INFO L273 TraceCheckUtils]: 48: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,345 INFO L273 TraceCheckUtils]: 49: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,346 INFO L273 TraceCheckUtils]: 50: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,346 INFO L273 TraceCheckUtils]: 51: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,346 INFO L273 TraceCheckUtils]: 52: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,347 INFO L273 TraceCheckUtils]: 53: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,347 INFO L273 TraceCheckUtils]: 54: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,348 INFO L273 TraceCheckUtils]: 55: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,348 INFO L273 TraceCheckUtils]: 56: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,349 INFO L273 TraceCheckUtils]: 57: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,349 INFO L273 TraceCheckUtils]: 58: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,350 INFO L273 TraceCheckUtils]: 59: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,350 INFO L273 TraceCheckUtils]: 60: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,351 INFO L273 TraceCheckUtils]: 61: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,351 INFO L273 TraceCheckUtils]: 62: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,352 INFO L273 TraceCheckUtils]: 63: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,352 INFO L273 TraceCheckUtils]: 64: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,353 INFO L273 TraceCheckUtils]: 65: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:20,353 INFO L273 TraceCheckUtils]: 66: Hoare triple {19176#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {19177#(= 8512 |ssl3_accept_#t~mem37|)} is VALID [2018-11-23 12:48:20,354 INFO L273 TraceCheckUtils]: 67: Hoare triple {19177#(= 8512 |ssl3_accept_#t~mem37|)} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,354 INFO L273 TraceCheckUtils]: 68: Hoare triple {19175#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,354 INFO L273 TraceCheckUtils]: 69: Hoare triple {19175#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,355 INFO L273 TraceCheckUtils]: 70: Hoare triple {19175#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,355 INFO L273 TraceCheckUtils]: 71: Hoare triple {19175#false} assume 8544 == #t~mem41;havoc #t~mem41; {19175#false} is VALID [2018-11-23 12:48:20,355 INFO L273 TraceCheckUtils]: 72: Hoare triple {19175#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,355 INFO L273 TraceCheckUtils]: 73: Hoare triple {19175#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,355 INFO L273 TraceCheckUtils]: 74: Hoare triple {19175#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {19175#false} is VALID [2018-11-23 12:48:20,356 INFO L273 TraceCheckUtils]: 75: Hoare triple {19175#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {19175#false} is VALID [2018-11-23 12:48:20,356 INFO L273 TraceCheckUtils]: 76: Hoare triple {19175#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {19175#false} is VALID [2018-11-23 12:48:20,356 INFO L273 TraceCheckUtils]: 77: Hoare triple {19175#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {19175#false} is VALID [2018-11-23 12:48:20,356 INFO L273 TraceCheckUtils]: 78: Hoare triple {19175#false} assume 8 == ~blastFlag~0; {19175#false} is VALID [2018-11-23 12:48:20,357 INFO L273 TraceCheckUtils]: 79: Hoare triple {19175#false} assume !false; {19175#false} is VALID [2018-11-23 12:48:20,363 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:20,363 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:20,363 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:20,363 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 80 [2018-11-23 12:48:20,364 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:20,364 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:20,440 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 70 edges. 70 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:20,440 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:20,440 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:20,440 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:20,441 INFO L87 Difference]: Start difference. First operand 224 states and 332 transitions. Second operand 4 states. [2018-11-23 12:48:21,698 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:21,698 INFO L93 Difference]: Finished difference Result 472 states and 710 transitions. [2018-11-23 12:48:21,698 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:21,698 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 80 [2018-11-23 12:48:21,699 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:21,699 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:21,701 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 484 transitions. [2018-11-23 12:48:21,701 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:21,703 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 484 transitions. [2018-11-23 12:48:21,705 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 484 transitions. [2018-11-23 12:48:22,244 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 484 edges. 484 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:22,250 INFO L225 Difference]: With dead ends: 472 [2018-11-23 12:48:22,250 INFO L226 Difference]: Without dead ends: 273 [2018-11-23 12:48:22,251 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:22,251 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 273 states. [2018-11-23 12:48:22,424 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 273 to 248. [2018-11-23 12:48:22,424 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:22,424 INFO L82 GeneralOperation]: Start isEquivalent. First operand 273 states. Second operand 248 states. [2018-11-23 12:48:22,424 INFO L74 IsIncluded]: Start isIncluded. First operand 273 states. Second operand 248 states. [2018-11-23 12:48:22,424 INFO L87 Difference]: Start difference. First operand 273 states. Second operand 248 states. [2018-11-23 12:48:22,429 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:22,429 INFO L93 Difference]: Finished difference Result 273 states and 405 transitions. [2018-11-23 12:48:22,429 INFO L276 IsEmpty]: Start isEmpty. Operand 273 states and 405 transitions. [2018-11-23 12:48:22,429 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:22,430 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:22,430 INFO L74 IsIncluded]: Start isIncluded. First operand 248 states. Second operand 273 states. [2018-11-23 12:48:22,430 INFO L87 Difference]: Start difference. First operand 248 states. Second operand 273 states. [2018-11-23 12:48:22,435 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:22,435 INFO L93 Difference]: Finished difference Result 273 states and 405 transitions. [2018-11-23 12:48:22,436 INFO L276 IsEmpty]: Start isEmpty. Operand 273 states and 405 transitions. [2018-11-23 12:48:22,436 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:22,436 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:22,436 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:22,436 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:22,437 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 248 states. [2018-11-23 12:48:22,441 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 248 states to 248 states and 373 transitions. [2018-11-23 12:48:22,442 INFO L78 Accepts]: Start accepts. Automaton has 248 states and 373 transitions. Word has length 80 [2018-11-23 12:48:22,442 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:22,442 INFO L480 AbstractCegarLoop]: Abstraction has 248 states and 373 transitions. [2018-11-23 12:48:22,442 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:22,442 INFO L276 IsEmpty]: Start isEmpty. Operand 248 states and 373 transitions. [2018-11-23 12:48:22,443 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 82 [2018-11-23 12:48:22,443 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:22,443 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:22,443 INFO L423 AbstractCegarLoop]: === Iteration 20 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:22,444 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:22,444 INFO L82 PathProgramCache]: Analyzing trace with hash -2002550352, now seen corresponding path program 1 times [2018-11-23 12:48:22,444 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:22,444 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:22,445 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:22,445 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:22,445 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:22,461 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:22,655 INFO L256 TraceCheckUtils]: 0: Hoare triple {20562#true} call ULTIMATE.init(); {20562#true} is VALID [2018-11-23 12:48:22,656 INFO L273 TraceCheckUtils]: 1: Hoare triple {20562#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,656 INFO L273 TraceCheckUtils]: 2: Hoare triple {20562#true} assume true; {20562#true} is VALID [2018-11-23 12:48:22,656 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {20562#true} {20562#true} #633#return; {20562#true} is VALID [2018-11-23 12:48:22,656 INFO L256 TraceCheckUtils]: 4: Hoare triple {20562#true} call #t~ret138 := main(); {20562#true} is VALID [2018-11-23 12:48:22,657 INFO L273 TraceCheckUtils]: 5: Hoare triple {20562#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,657 INFO L256 TraceCheckUtils]: 6: Hoare triple {20562#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {20562#true} is VALID [2018-11-23 12:48:22,657 INFO L273 TraceCheckUtils]: 7: Hoare triple {20562#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,657 INFO L273 TraceCheckUtils]: 8: Hoare triple {20562#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {20562#true} is VALID [2018-11-23 12:48:22,657 INFO L273 TraceCheckUtils]: 9: Hoare triple {20562#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {20562#true} is VALID [2018-11-23 12:48:22,658 INFO L273 TraceCheckUtils]: 10: Hoare triple {20562#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {20562#true} is VALID [2018-11-23 12:48:22,658 INFO L273 TraceCheckUtils]: 11: Hoare triple {20562#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,658 INFO L273 TraceCheckUtils]: 12: Hoare triple {20562#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {20562#true} is VALID [2018-11-23 12:48:22,658 INFO L273 TraceCheckUtils]: 13: Hoare triple {20562#true} assume !false; {20562#true} is VALID [2018-11-23 12:48:22,658 INFO L273 TraceCheckUtils]: 14: Hoare triple {20562#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,658 INFO L273 TraceCheckUtils]: 15: Hoare triple {20562#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,659 INFO L273 TraceCheckUtils]: 16: Hoare triple {20562#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,659 INFO L273 TraceCheckUtils]: 17: Hoare triple {20562#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,659 INFO L273 TraceCheckUtils]: 18: Hoare triple {20562#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,659 INFO L273 TraceCheckUtils]: 19: Hoare triple {20562#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,659 INFO L273 TraceCheckUtils]: 20: Hoare triple {20562#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 21: Hoare triple {20562#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 22: Hoare triple {20562#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 23: Hoare triple {20562#true} assume 8464 == #t~mem32;havoc #t~mem32; {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 24: Hoare triple {20562#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 25: Hoare triple {20562#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 26: Hoare triple {20562#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 27: Hoare triple {20562#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 28: Hoare triple {20562#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {20562#true} is VALID [2018-11-23 12:48:22,660 INFO L273 TraceCheckUtils]: 29: Hoare triple {20562#true} ~skip~0 := 0; {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 30: Hoare triple {20562#true} assume !false; {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 31: Hoare triple {20562#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 32: Hoare triple {20562#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 33: Hoare triple {20562#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 34: Hoare triple {20562#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 35: Hoare triple {20562#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 36: Hoare triple {20562#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,661 INFO L273 TraceCheckUtils]: 37: Hoare triple {20562#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 38: Hoare triple {20562#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 39: Hoare triple {20562#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 40: Hoare triple {20562#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 41: Hoare triple {20562#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 42: Hoare triple {20562#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 43: Hoare triple {20562#true} assume 8496 == #t~mem35;havoc #t~mem35; {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 44: Hoare triple {20562#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 45: Hoare triple {20562#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {20562#true} is VALID [2018-11-23 12:48:22,662 INFO L273 TraceCheckUtils]: 46: Hoare triple {20562#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {20562#true} is VALID [2018-11-23 12:48:22,663 INFO L273 TraceCheckUtils]: 47: Hoare triple {20562#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,664 INFO L273 TraceCheckUtils]: 48: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,664 INFO L273 TraceCheckUtils]: 49: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,665 INFO L273 TraceCheckUtils]: 50: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,665 INFO L273 TraceCheckUtils]: 51: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,665 INFO L273 TraceCheckUtils]: 52: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,666 INFO L273 TraceCheckUtils]: 53: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,666 INFO L273 TraceCheckUtils]: 54: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,667 INFO L273 TraceCheckUtils]: 55: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,667 INFO L273 TraceCheckUtils]: 56: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,668 INFO L273 TraceCheckUtils]: 57: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,668 INFO L273 TraceCheckUtils]: 58: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,669 INFO L273 TraceCheckUtils]: 59: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,669 INFO L273 TraceCheckUtils]: 60: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,670 INFO L273 TraceCheckUtils]: 61: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,670 INFO L273 TraceCheckUtils]: 62: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,671 INFO L273 TraceCheckUtils]: 63: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,671 INFO L273 TraceCheckUtils]: 64: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,672 INFO L273 TraceCheckUtils]: 65: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,672 INFO L273 TraceCheckUtils]: 66: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,673 INFO L273 TraceCheckUtils]: 67: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,673 INFO L273 TraceCheckUtils]: 68: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,674 INFO L273 TraceCheckUtils]: 69: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,674 INFO L273 TraceCheckUtils]: 70: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:22,675 INFO L273 TraceCheckUtils]: 71: Hoare triple {20564#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {20565#(= 8656 |ssl3_accept_#t~mem42|)} is VALID [2018-11-23 12:48:22,676 INFO L273 TraceCheckUtils]: 72: Hoare triple {20565#(= 8656 |ssl3_accept_#t~mem42|)} assume 8545 == #t~mem42;havoc #t~mem42; {20563#false} is VALID [2018-11-23 12:48:22,676 INFO L273 TraceCheckUtils]: 73: Hoare triple {20563#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {20563#false} is VALID [2018-11-23 12:48:22,676 INFO L273 TraceCheckUtils]: 74: Hoare triple {20563#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {20563#false} is VALID [2018-11-23 12:48:22,676 INFO L273 TraceCheckUtils]: 75: Hoare triple {20563#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {20563#false} is VALID [2018-11-23 12:48:22,676 INFO L273 TraceCheckUtils]: 76: Hoare triple {20563#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {20563#false} is VALID [2018-11-23 12:48:22,677 INFO L273 TraceCheckUtils]: 77: Hoare triple {20563#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {20563#false} is VALID [2018-11-23 12:48:22,677 INFO L273 TraceCheckUtils]: 78: Hoare triple {20563#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {20563#false} is VALID [2018-11-23 12:48:22,677 INFO L273 TraceCheckUtils]: 79: Hoare triple {20563#false} assume 8 == ~blastFlag~0; {20563#false} is VALID [2018-11-23 12:48:22,677 INFO L273 TraceCheckUtils]: 80: Hoare triple {20563#false} assume !false; {20563#false} is VALID [2018-11-23 12:48:22,686 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:22,686 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:22,686 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:22,686 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 81 [2018-11-23 12:48:22,686 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:22,687 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:22,775 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 71 edges. 71 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:22,776 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:22,776 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:22,776 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:22,777 INFO L87 Difference]: Start difference. First operand 248 states and 373 transitions. Second operand 4 states. [2018-11-23 12:48:24,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:24,145 INFO L93 Difference]: Finished difference Result 539 states and 815 transitions. [2018-11-23 12:48:24,145 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:24,145 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 81 [2018-11-23 12:48:24,145 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:24,145 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:24,147 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 557 transitions. [2018-11-23 12:48:24,147 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:24,150 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 557 transitions. [2018-11-23 12:48:24,150 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 557 transitions. [2018-11-23 12:48:24,705 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 557 edges. 557 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:24,711 INFO L225 Difference]: With dead ends: 539 [2018-11-23 12:48:24,712 INFO L226 Difference]: Without dead ends: 316 [2018-11-23 12:48:24,712 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:24,713 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2018-11-23 12:48:24,802 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 249. [2018-11-23 12:48:24,802 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:24,802 INFO L82 GeneralOperation]: Start isEquivalent. First operand 316 states. Second operand 249 states. [2018-11-23 12:48:24,803 INFO L74 IsIncluded]: Start isIncluded. First operand 316 states. Second operand 249 states. [2018-11-23 12:48:24,803 INFO L87 Difference]: Start difference. First operand 316 states. Second operand 249 states. [2018-11-23 12:48:24,808 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:24,808 INFO L93 Difference]: Finished difference Result 316 states and 469 transitions. [2018-11-23 12:48:24,808 INFO L276 IsEmpty]: Start isEmpty. Operand 316 states and 469 transitions. [2018-11-23 12:48:24,809 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:24,809 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:24,809 INFO L74 IsIncluded]: Start isIncluded. First operand 249 states. Second operand 316 states. [2018-11-23 12:48:24,809 INFO L87 Difference]: Start difference. First operand 249 states. Second operand 316 states. [2018-11-23 12:48:24,816 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:24,816 INFO L93 Difference]: Finished difference Result 316 states and 469 transitions. [2018-11-23 12:48:24,816 INFO L276 IsEmpty]: Start isEmpty. Operand 316 states and 469 transitions. [2018-11-23 12:48:24,817 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:24,817 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:24,817 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:24,817 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:24,817 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 249 states. [2018-11-23 12:48:24,822 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 249 states to 249 states and 374 transitions. [2018-11-23 12:48:24,822 INFO L78 Accepts]: Start accepts. Automaton has 249 states and 374 transitions. Word has length 81 [2018-11-23 12:48:24,822 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:24,823 INFO L480 AbstractCegarLoop]: Abstraction has 249 states and 374 transitions. [2018-11-23 12:48:24,823 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:24,823 INFO L276 IsEmpty]: Start isEmpty. Operand 249 states and 374 transitions. [2018-11-23 12:48:24,823 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 87 [2018-11-23 12:48:24,823 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:24,824 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:24,824 INFO L423 AbstractCegarLoop]: === Iteration 21 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:24,824 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:24,824 INFO L82 PathProgramCache]: Analyzing trace with hash -959400867, now seen corresponding path program 1 times [2018-11-23 12:48:24,824 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:24,825 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:24,825 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:24,826 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:24,826 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:24,841 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:25,435 INFO L256 TraceCheckUtils]: 0: Hoare triple {22116#true} call ULTIMATE.init(); {22116#true} is VALID [2018-11-23 12:48:25,435 INFO L273 TraceCheckUtils]: 1: Hoare triple {22116#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,435 INFO L273 TraceCheckUtils]: 2: Hoare triple {22116#true} assume true; {22116#true} is VALID [2018-11-23 12:48:25,435 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {22116#true} {22116#true} #633#return; {22116#true} is VALID [2018-11-23 12:48:25,436 INFO L256 TraceCheckUtils]: 4: Hoare triple {22116#true} call #t~ret138 := main(); {22116#true} is VALID [2018-11-23 12:48:25,436 INFO L273 TraceCheckUtils]: 5: Hoare triple {22116#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,436 INFO L256 TraceCheckUtils]: 6: Hoare triple {22116#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {22116#true} is VALID [2018-11-23 12:48:25,436 INFO L273 TraceCheckUtils]: 7: Hoare triple {22116#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,436 INFO L273 TraceCheckUtils]: 8: Hoare triple {22116#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {22116#true} is VALID [2018-11-23 12:48:25,436 INFO L273 TraceCheckUtils]: 9: Hoare triple {22116#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {22116#true} is VALID [2018-11-23 12:48:25,437 INFO L273 TraceCheckUtils]: 10: Hoare triple {22116#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {22116#true} is VALID [2018-11-23 12:48:25,437 INFO L273 TraceCheckUtils]: 11: Hoare triple {22116#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,437 INFO L273 TraceCheckUtils]: 12: Hoare triple {22116#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {22116#true} is VALID [2018-11-23 12:48:25,437 INFO L273 TraceCheckUtils]: 13: Hoare triple {22116#true} assume !false; {22116#true} is VALID [2018-11-23 12:48:25,437 INFO L273 TraceCheckUtils]: 14: Hoare triple {22116#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,437 INFO L273 TraceCheckUtils]: 15: Hoare triple {22116#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,438 INFO L273 TraceCheckUtils]: 16: Hoare triple {22116#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,438 INFO L273 TraceCheckUtils]: 17: Hoare triple {22116#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,438 INFO L273 TraceCheckUtils]: 18: Hoare triple {22116#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,438 INFO L273 TraceCheckUtils]: 19: Hoare triple {22116#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,438 INFO L273 TraceCheckUtils]: 20: Hoare triple {22116#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,438 INFO L273 TraceCheckUtils]: 21: Hoare triple {22116#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,439 INFO L273 TraceCheckUtils]: 22: Hoare triple {22116#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,439 INFO L273 TraceCheckUtils]: 23: Hoare triple {22116#true} assume 8464 == #t~mem32;havoc #t~mem32; {22116#true} is VALID [2018-11-23 12:48:25,439 INFO L273 TraceCheckUtils]: 24: Hoare triple {22116#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {22116#true} is VALID [2018-11-23 12:48:25,439 INFO L273 TraceCheckUtils]: 25: Hoare triple {22116#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {22116#true} is VALID [2018-11-23 12:48:25,439 INFO L273 TraceCheckUtils]: 26: Hoare triple {22116#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,439 INFO L273 TraceCheckUtils]: 27: Hoare triple {22116#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,440 INFO L273 TraceCheckUtils]: 28: Hoare triple {22116#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {22116#true} is VALID [2018-11-23 12:48:25,440 INFO L273 TraceCheckUtils]: 29: Hoare triple {22116#true} ~skip~0 := 0; {22116#true} is VALID [2018-11-23 12:48:25,440 INFO L273 TraceCheckUtils]: 30: Hoare triple {22116#true} assume !false; {22116#true} is VALID [2018-11-23 12:48:25,440 INFO L273 TraceCheckUtils]: 31: Hoare triple {22116#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,440 INFO L273 TraceCheckUtils]: 32: Hoare triple {22116#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,440 INFO L273 TraceCheckUtils]: 33: Hoare triple {22116#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,441 INFO L273 TraceCheckUtils]: 34: Hoare triple {22116#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,441 INFO L273 TraceCheckUtils]: 35: Hoare triple {22116#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,441 INFO L273 TraceCheckUtils]: 36: Hoare triple {22116#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,441 INFO L273 TraceCheckUtils]: 37: Hoare triple {22116#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,441 INFO L273 TraceCheckUtils]: 38: Hoare triple {22116#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,441 INFO L273 TraceCheckUtils]: 39: Hoare triple {22116#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,442 INFO L273 TraceCheckUtils]: 40: Hoare triple {22116#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,442 INFO L273 TraceCheckUtils]: 41: Hoare triple {22116#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,442 INFO L273 TraceCheckUtils]: 42: Hoare triple {22116#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,442 INFO L273 TraceCheckUtils]: 43: Hoare triple {22116#true} assume 8496 == #t~mem35;havoc #t~mem35; {22116#true} is VALID [2018-11-23 12:48:25,442 INFO L273 TraceCheckUtils]: 44: Hoare triple {22116#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {22116#true} is VALID [2018-11-23 12:48:25,442 INFO L273 TraceCheckUtils]: 45: Hoare triple {22116#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {22116#true} is VALID [2018-11-23 12:48:25,443 INFO L273 TraceCheckUtils]: 46: Hoare triple {22116#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {22116#true} is VALID [2018-11-23 12:48:25,455 INFO L273 TraceCheckUtils]: 47: Hoare triple {22116#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,458 INFO L273 TraceCheckUtils]: 48: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,459 INFO L273 TraceCheckUtils]: 49: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,461 INFO L273 TraceCheckUtils]: 50: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,461 INFO L273 TraceCheckUtils]: 51: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,463 INFO L273 TraceCheckUtils]: 52: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,463 INFO L273 TraceCheckUtils]: 53: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,465 INFO L273 TraceCheckUtils]: 54: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,465 INFO L273 TraceCheckUtils]: 55: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,467 INFO L273 TraceCheckUtils]: 56: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,467 INFO L273 TraceCheckUtils]: 57: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,469 INFO L273 TraceCheckUtils]: 58: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,469 INFO L273 TraceCheckUtils]: 59: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,471 INFO L273 TraceCheckUtils]: 60: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,471 INFO L273 TraceCheckUtils]: 61: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,473 INFO L273 TraceCheckUtils]: 62: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,473 INFO L273 TraceCheckUtils]: 63: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,473 INFO L273 TraceCheckUtils]: 64: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,474 INFO L273 TraceCheckUtils]: 65: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,474 INFO L273 TraceCheckUtils]: 66: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,474 INFO L273 TraceCheckUtils]: 67: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,475 INFO L273 TraceCheckUtils]: 68: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,475 INFO L273 TraceCheckUtils]: 69: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,479 INFO L273 TraceCheckUtils]: 70: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,479 INFO L273 TraceCheckUtils]: 71: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,479 INFO L273 TraceCheckUtils]: 72: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,480 INFO L273 TraceCheckUtils]: 73: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,480 INFO L273 TraceCheckUtils]: 74: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,480 INFO L273 TraceCheckUtils]: 75: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,481 INFO L273 TraceCheckUtils]: 76: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,481 INFO L273 TraceCheckUtils]: 77: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,481 INFO L273 TraceCheckUtils]: 78: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,482 INFO L273 TraceCheckUtils]: 79: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,482 INFO L273 TraceCheckUtils]: 80: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:25,483 INFO L273 TraceCheckUtils]: 81: Hoare triple {22118#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {22119#(= 8656 |ssl3_accept_#t~mem52|)} is VALID [2018-11-23 12:48:25,484 INFO L273 TraceCheckUtils]: 82: Hoare triple {22119#(= 8656 |ssl3_accept_#t~mem52|)} assume 8640 == #t~mem52;havoc #t~mem52; {22117#false} is VALID [2018-11-23 12:48:25,484 INFO L273 TraceCheckUtils]: 83: Hoare triple {22117#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {22117#false} is VALID [2018-11-23 12:48:25,484 INFO L273 TraceCheckUtils]: 84: Hoare triple {22117#false} assume 4 == ~blastFlag~0; {22117#false} is VALID [2018-11-23 12:48:25,484 INFO L273 TraceCheckUtils]: 85: Hoare triple {22117#false} assume !false; {22117#false} is VALID [2018-11-23 12:48:25,495 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:25,495 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:25,495 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:25,495 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 86 [2018-11-23 12:48:25,496 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:25,496 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:25,572 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 76 edges. 76 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:25,572 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:25,573 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:25,573 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:25,573 INFO L87 Difference]: Start difference. First operand 249 states and 374 transitions. Second operand 4 states. [2018-11-23 12:48:27,160 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:27,160 INFO L93 Difference]: Finished difference Result 540 states and 815 transitions. [2018-11-23 12:48:27,160 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:27,161 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 86 [2018-11-23 12:48:27,161 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:27,161 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:27,163 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 556 transitions. [2018-11-23 12:48:27,163 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:27,165 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 556 transitions. [2018-11-23 12:48:27,165 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 556 transitions. [2018-11-23 12:48:27,857 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 556 edges. 556 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:27,863 INFO L225 Difference]: With dead ends: 540 [2018-11-23 12:48:27,863 INFO L226 Difference]: Without dead ends: 316 [2018-11-23 12:48:27,864 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:27,865 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2018-11-23 12:48:27,976 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 259. [2018-11-23 12:48:27,976 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:27,976 INFO L82 GeneralOperation]: Start isEquivalent. First operand 316 states. Second operand 259 states. [2018-11-23 12:48:27,976 INFO L74 IsIncluded]: Start isIncluded. First operand 316 states. Second operand 259 states. [2018-11-23 12:48:27,976 INFO L87 Difference]: Start difference. First operand 316 states. Second operand 259 states. [2018-11-23 12:48:27,983 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:27,983 INFO L93 Difference]: Finished difference Result 316 states and 468 transitions. [2018-11-23 12:48:27,983 INFO L276 IsEmpty]: Start isEmpty. Operand 316 states and 468 transitions. [2018-11-23 12:48:27,983 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:27,983 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:27,983 INFO L74 IsIncluded]: Start isIncluded. First operand 259 states. Second operand 316 states. [2018-11-23 12:48:27,983 INFO L87 Difference]: Start difference. First operand 259 states. Second operand 316 states. [2018-11-23 12:48:27,989 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:27,989 INFO L93 Difference]: Finished difference Result 316 states and 468 transitions. [2018-11-23 12:48:27,989 INFO L276 IsEmpty]: Start isEmpty. Operand 316 states and 468 transitions. [2018-11-23 12:48:27,989 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:27,990 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:27,990 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:27,990 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:27,990 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 259 states. [2018-11-23 12:48:27,994 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 259 states to 259 states and 393 transitions. [2018-11-23 12:48:27,994 INFO L78 Accepts]: Start accepts. Automaton has 259 states and 393 transitions. Word has length 86 [2018-11-23 12:48:27,995 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:27,995 INFO L480 AbstractCegarLoop]: Abstraction has 259 states and 393 transitions. [2018-11-23 12:48:27,995 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:27,995 INFO L276 IsEmpty]: Start isEmpty. Operand 259 states and 393 transitions. [2018-11-23 12:48:27,996 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2018-11-23 12:48:27,996 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:27,996 INFO L402 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:27,996 INFO L423 AbstractCegarLoop]: === Iteration 22 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:27,996 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:27,996 INFO L82 PathProgramCache]: Analyzing trace with hash 316009449, now seen corresponding path program 1 times [2018-11-23 12:48:27,997 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:27,997 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:27,997 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:27,998 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:27,998 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:28,017 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:28,439 INFO L256 TraceCheckUtils]: 0: Hoare triple {23681#true} call ULTIMATE.init(); {23681#true} is VALID [2018-11-23 12:48:28,439 INFO L273 TraceCheckUtils]: 1: Hoare triple {23681#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,439 INFO L273 TraceCheckUtils]: 2: Hoare triple {23681#true} assume true; {23681#true} is VALID [2018-11-23 12:48:28,439 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {23681#true} {23681#true} #633#return; {23681#true} is VALID [2018-11-23 12:48:28,439 INFO L256 TraceCheckUtils]: 4: Hoare triple {23681#true} call #t~ret138 := main(); {23681#true} is VALID [2018-11-23 12:48:28,439 INFO L273 TraceCheckUtils]: 5: Hoare triple {23681#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L256 TraceCheckUtils]: 6: Hoare triple {23681#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 7: Hoare triple {23681#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 8: Hoare triple {23681#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 9: Hoare triple {23681#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 10: Hoare triple {23681#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 11: Hoare triple {23681#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 12: Hoare triple {23681#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {23681#true} is VALID [2018-11-23 12:48:28,440 INFO L273 TraceCheckUtils]: 13: Hoare triple {23681#true} assume !false; {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 14: Hoare triple {23681#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 15: Hoare triple {23681#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 16: Hoare triple {23681#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 17: Hoare triple {23681#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 18: Hoare triple {23681#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 19: Hoare triple {23681#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 20: Hoare triple {23681#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 21: Hoare triple {23681#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,441 INFO L273 TraceCheckUtils]: 22: Hoare triple {23681#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 23: Hoare triple {23681#true} assume 8464 == #t~mem32;havoc #t~mem32; {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 24: Hoare triple {23681#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 25: Hoare triple {23681#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 26: Hoare triple {23681#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 27: Hoare triple {23681#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 28: Hoare triple {23681#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 29: Hoare triple {23681#true} ~skip~0 := 0; {23681#true} is VALID [2018-11-23 12:48:28,442 INFO L273 TraceCheckUtils]: 30: Hoare triple {23681#true} assume !false; {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 31: Hoare triple {23681#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 32: Hoare triple {23681#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 33: Hoare triple {23681#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 34: Hoare triple {23681#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 35: Hoare triple {23681#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 36: Hoare triple {23681#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 37: Hoare triple {23681#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 38: Hoare triple {23681#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,443 INFO L273 TraceCheckUtils]: 39: Hoare triple {23681#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 40: Hoare triple {23681#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 41: Hoare triple {23681#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 42: Hoare triple {23681#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 43: Hoare triple {23681#true} assume 8496 == #t~mem35;havoc #t~mem35; {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 44: Hoare triple {23681#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 45: Hoare triple {23681#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {23681#true} is VALID [2018-11-23 12:48:28,444 INFO L273 TraceCheckUtils]: 46: Hoare triple {23681#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {23681#true} is VALID [2018-11-23 12:48:28,445 INFO L273 TraceCheckUtils]: 47: Hoare triple {23681#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,446 INFO L273 TraceCheckUtils]: 48: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,446 INFO L273 TraceCheckUtils]: 49: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,447 INFO L273 TraceCheckUtils]: 50: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,447 INFO L273 TraceCheckUtils]: 51: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,447 INFO L273 TraceCheckUtils]: 52: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,448 INFO L273 TraceCheckUtils]: 53: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,448 INFO L273 TraceCheckUtils]: 54: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,449 INFO L273 TraceCheckUtils]: 55: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,449 INFO L273 TraceCheckUtils]: 56: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,450 INFO L273 TraceCheckUtils]: 57: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,450 INFO L273 TraceCheckUtils]: 58: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,451 INFO L273 TraceCheckUtils]: 59: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,451 INFO L273 TraceCheckUtils]: 60: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,452 INFO L273 TraceCheckUtils]: 61: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,452 INFO L273 TraceCheckUtils]: 62: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,453 INFO L273 TraceCheckUtils]: 63: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,453 INFO L273 TraceCheckUtils]: 64: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,454 INFO L273 TraceCheckUtils]: 65: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,454 INFO L273 TraceCheckUtils]: 66: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,455 INFO L273 TraceCheckUtils]: 67: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,455 INFO L273 TraceCheckUtils]: 68: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,456 INFO L273 TraceCheckUtils]: 69: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,456 INFO L273 TraceCheckUtils]: 70: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,457 INFO L273 TraceCheckUtils]: 71: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,457 INFO L273 TraceCheckUtils]: 72: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,458 INFO L273 TraceCheckUtils]: 73: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,458 INFO L273 TraceCheckUtils]: 74: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,459 INFO L273 TraceCheckUtils]: 75: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,459 INFO L273 TraceCheckUtils]: 76: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,460 INFO L273 TraceCheckUtils]: 77: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,460 INFO L273 TraceCheckUtils]: 78: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,461 INFO L273 TraceCheckUtils]: 79: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,461 INFO L273 TraceCheckUtils]: 80: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,462 INFO L273 TraceCheckUtils]: 81: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:28,463 INFO L273 TraceCheckUtils]: 82: Hoare triple {23683#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {23684#(= 8656 |ssl3_accept_#t~mem53|)} is VALID [2018-11-23 12:48:28,463 INFO L273 TraceCheckUtils]: 83: Hoare triple {23684#(= 8656 |ssl3_accept_#t~mem53|)} assume 8641 == #t~mem53;havoc #t~mem53; {23682#false} is VALID [2018-11-23 12:48:28,464 INFO L273 TraceCheckUtils]: 84: Hoare triple {23682#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {23682#false} is VALID [2018-11-23 12:48:28,464 INFO L273 TraceCheckUtils]: 85: Hoare triple {23682#false} assume 4 == ~blastFlag~0; {23682#false} is VALID [2018-11-23 12:48:28,464 INFO L273 TraceCheckUtils]: 86: Hoare triple {23682#false} assume !false; {23682#false} is VALID [2018-11-23 12:48:28,475 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:28,475 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:28,475 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:28,475 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 87 [2018-11-23 12:48:28,476 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:28,476 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:28,554 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 77 edges. 77 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:28,554 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:28,554 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:28,555 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:28,555 INFO L87 Difference]: Start difference. First operand 259 states and 393 transitions. Second operand 4 states. [2018-11-23 12:48:30,019 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:30,019 INFO L93 Difference]: Finished difference Result 544 states and 826 transitions. [2018-11-23 12:48:30,019 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:30,019 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 87 [2018-11-23 12:48:30,020 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:30,020 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:30,023 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 548 transitions. [2018-11-23 12:48:30,023 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:30,027 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 548 transitions. [2018-11-23 12:48:30,027 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 548 transitions. [2018-11-23 12:48:30,622 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 548 edges. 548 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:30,629 INFO L225 Difference]: With dead ends: 544 [2018-11-23 12:48:30,629 INFO L226 Difference]: Without dead ends: 310 [2018-11-23 12:48:30,630 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:30,631 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 310 states. [2018-11-23 12:48:30,778 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 310 to 260. [2018-11-23 12:48:30,778 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:30,778 INFO L82 GeneralOperation]: Start isEquivalent. First operand 310 states. Second operand 260 states. [2018-11-23 12:48:30,778 INFO L74 IsIncluded]: Start isIncluded. First operand 310 states. Second operand 260 states. [2018-11-23 12:48:30,779 INFO L87 Difference]: Start difference. First operand 310 states. Second operand 260 states. [2018-11-23 12:48:30,786 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:30,786 INFO L93 Difference]: Finished difference Result 310 states and 460 transitions. [2018-11-23 12:48:30,786 INFO L276 IsEmpty]: Start isEmpty. Operand 310 states and 460 transitions. [2018-11-23 12:48:30,786 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:30,786 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:30,786 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 310 states. [2018-11-23 12:48:30,787 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 310 states. [2018-11-23 12:48:30,793 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:30,793 INFO L93 Difference]: Finished difference Result 310 states and 460 transitions. [2018-11-23 12:48:30,794 INFO L276 IsEmpty]: Start isEmpty. Operand 310 states and 460 transitions. [2018-11-23 12:48:30,794 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:30,794 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:30,794 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:30,794 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:30,794 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:30,798 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 394 transitions. [2018-11-23 12:48:30,798 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 394 transitions. Word has length 87 [2018-11-23 12:48:30,799 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:30,799 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 394 transitions. [2018-11-23 12:48:30,799 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:30,799 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 394 transitions. [2018-11-23 12:48:30,800 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 94 [2018-11-23 12:48:30,800 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:30,800 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:30,800 INFO L423 AbstractCegarLoop]: === Iteration 23 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:30,801 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:30,801 INFO L82 PathProgramCache]: Analyzing trace with hash 62751798, now seen corresponding path program 1 times [2018-11-23 12:48:30,801 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:30,801 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:30,802 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:30,802 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:30,802 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:30,819 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:30,991 INFO L256 TraceCheckUtils]: 0: Hoare triple {25237#true} call ULTIMATE.init(); {25237#true} is VALID [2018-11-23 12:48:30,992 INFO L273 TraceCheckUtils]: 1: Hoare triple {25237#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,992 INFO L273 TraceCheckUtils]: 2: Hoare triple {25237#true} assume true; {25237#true} is VALID [2018-11-23 12:48:30,992 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {25237#true} {25237#true} #633#return; {25237#true} is VALID [2018-11-23 12:48:30,992 INFO L256 TraceCheckUtils]: 4: Hoare triple {25237#true} call #t~ret138 := main(); {25237#true} is VALID [2018-11-23 12:48:30,993 INFO L273 TraceCheckUtils]: 5: Hoare triple {25237#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,993 INFO L256 TraceCheckUtils]: 6: Hoare triple {25237#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {25237#true} is VALID [2018-11-23 12:48:30,993 INFO L273 TraceCheckUtils]: 7: Hoare triple {25237#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,993 INFO L273 TraceCheckUtils]: 8: Hoare triple {25237#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {25237#true} is VALID [2018-11-23 12:48:30,993 INFO L273 TraceCheckUtils]: 9: Hoare triple {25237#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {25237#true} is VALID [2018-11-23 12:48:30,994 INFO L273 TraceCheckUtils]: 10: Hoare triple {25237#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {25237#true} is VALID [2018-11-23 12:48:30,994 INFO L273 TraceCheckUtils]: 11: Hoare triple {25237#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,994 INFO L273 TraceCheckUtils]: 12: Hoare triple {25237#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {25237#true} is VALID [2018-11-23 12:48:30,994 INFO L273 TraceCheckUtils]: 13: Hoare triple {25237#true} assume !false; {25237#true} is VALID [2018-11-23 12:48:30,994 INFO L273 TraceCheckUtils]: 14: Hoare triple {25237#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,994 INFO L273 TraceCheckUtils]: 15: Hoare triple {25237#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,995 INFO L273 TraceCheckUtils]: 16: Hoare triple {25237#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,995 INFO L273 TraceCheckUtils]: 17: Hoare triple {25237#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,995 INFO L273 TraceCheckUtils]: 18: Hoare triple {25237#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,995 INFO L273 TraceCheckUtils]: 19: Hoare triple {25237#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,995 INFO L273 TraceCheckUtils]: 20: Hoare triple {25237#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,995 INFO L273 TraceCheckUtils]: 21: Hoare triple {25237#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 22: Hoare triple {25237#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 23: Hoare triple {25237#true} assume 8464 == #t~mem32;havoc #t~mem32; {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 24: Hoare triple {25237#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 25: Hoare triple {25237#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 26: Hoare triple {25237#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 27: Hoare triple {25237#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 28: Hoare triple {25237#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 29: Hoare triple {25237#true} ~skip~0 := 0; {25237#true} is VALID [2018-11-23 12:48:30,996 INFO L273 TraceCheckUtils]: 30: Hoare triple {25237#true} assume !false; {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 31: Hoare triple {25237#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 32: Hoare triple {25237#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 33: Hoare triple {25237#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 34: Hoare triple {25237#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 35: Hoare triple {25237#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 36: Hoare triple {25237#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 37: Hoare triple {25237#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,997 INFO L273 TraceCheckUtils]: 38: Hoare triple {25237#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 39: Hoare triple {25237#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 40: Hoare triple {25237#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 41: Hoare triple {25237#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 42: Hoare triple {25237#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 43: Hoare triple {25237#true} assume 8496 == #t~mem35;havoc #t~mem35; {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 44: Hoare triple {25237#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 45: Hoare triple {25237#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {25237#true} is VALID [2018-11-23 12:48:30,998 INFO L273 TraceCheckUtils]: 46: Hoare triple {25237#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {25237#true} is VALID [2018-11-23 12:48:30,999 INFO L273 TraceCheckUtils]: 47: Hoare triple {25237#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,000 INFO L273 TraceCheckUtils]: 48: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,000 INFO L273 TraceCheckUtils]: 49: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,001 INFO L273 TraceCheckUtils]: 50: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,001 INFO L273 TraceCheckUtils]: 51: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,001 INFO L273 TraceCheckUtils]: 52: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,002 INFO L273 TraceCheckUtils]: 53: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,002 INFO L273 TraceCheckUtils]: 54: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,003 INFO L273 TraceCheckUtils]: 55: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,003 INFO L273 TraceCheckUtils]: 56: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,004 INFO L273 TraceCheckUtils]: 57: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:31,004 INFO L273 TraceCheckUtils]: 58: Hoare triple {25239#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {25240#(= 8656 |ssl3_accept_#t~mem29|)} is VALID [2018-11-23 12:48:31,005 INFO L273 TraceCheckUtils]: 59: Hoare triple {25240#(= 8656 |ssl3_accept_#t~mem29|)} assume 8480 == #t~mem29;havoc #t~mem29; {25238#false} is VALID [2018-11-23 12:48:31,005 INFO L273 TraceCheckUtils]: 60: Hoare triple {25238#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {25238#false} is VALID [2018-11-23 12:48:31,005 INFO L273 TraceCheckUtils]: 61: Hoare triple {25238#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,006 INFO L273 TraceCheckUtils]: 62: Hoare triple {25238#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,006 INFO L273 TraceCheckUtils]: 63: Hoare triple {25238#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {25238#false} is VALID [2018-11-23 12:48:31,006 INFO L273 TraceCheckUtils]: 64: Hoare triple {25238#false} ~skip~0 := 0; {25238#false} is VALID [2018-11-23 12:48:31,006 INFO L273 TraceCheckUtils]: 65: Hoare triple {25238#false} assume !false; {25238#false} is VALID [2018-11-23 12:48:31,007 INFO L273 TraceCheckUtils]: 66: Hoare triple {25238#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,007 INFO L273 TraceCheckUtils]: 67: Hoare triple {25238#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,007 INFO L273 TraceCheckUtils]: 68: Hoare triple {25238#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,007 INFO L273 TraceCheckUtils]: 69: Hoare triple {25238#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,007 INFO L273 TraceCheckUtils]: 70: Hoare triple {25238#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,007 INFO L273 TraceCheckUtils]: 71: Hoare triple {25238#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 72: Hoare triple {25238#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 73: Hoare triple {25238#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 74: Hoare triple {25238#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 75: Hoare triple {25238#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 76: Hoare triple {25238#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 77: Hoare triple {25238#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 78: Hoare triple {25238#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 79: Hoare triple {25238#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,008 INFO L273 TraceCheckUtils]: 80: Hoare triple {25238#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 81: Hoare triple {25238#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 82: Hoare triple {25238#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 83: Hoare triple {25238#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 84: Hoare triple {25238#false} assume 8544 == #t~mem41;havoc #t~mem41; {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 85: Hoare triple {25238#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 86: Hoare triple {25238#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 87: Hoare triple {25238#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 88: Hoare triple {25238#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {25238#false} is VALID [2018-11-23 12:48:31,009 INFO L273 TraceCheckUtils]: 89: Hoare triple {25238#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {25238#false} is VALID [2018-11-23 12:48:31,010 INFO L273 TraceCheckUtils]: 90: Hoare triple {25238#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {25238#false} is VALID [2018-11-23 12:48:31,010 INFO L273 TraceCheckUtils]: 91: Hoare triple {25238#false} assume 8 == ~blastFlag~0; {25238#false} is VALID [2018-11-23 12:48:31,010 INFO L273 TraceCheckUtils]: 92: Hoare triple {25238#false} assume !false; {25238#false} is VALID [2018-11-23 12:48:31,015 INFO L134 CoverageAnalysis]: Checked inductivity of 69 backedges. 58 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:31,015 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:31,015 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:31,016 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 93 [2018-11-23 12:48:31,016 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:31,016 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:31,094 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 83 edges. 83 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:31,094 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:31,095 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:31,095 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:31,095 INFO L87 Difference]: Start difference. First operand 260 states and 394 transitions. Second operand 4 states. [2018-11-23 12:48:32,873 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:32,873 INFO L93 Difference]: Finished difference Result 545 states and 826 transitions. [2018-11-23 12:48:32,874 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:32,874 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 93 [2018-11-23 12:48:32,874 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:32,874 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:32,877 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 547 transitions. [2018-11-23 12:48:32,877 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:32,879 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 547 transitions. [2018-11-23 12:48:32,880 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 547 transitions. [2018-11-23 12:48:33,411 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 547 edges. 547 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:33,417 INFO L225 Difference]: With dead ends: 545 [2018-11-23 12:48:33,418 INFO L226 Difference]: Without dead ends: 310 [2018-11-23 12:48:33,418 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:33,419 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 310 states. [2018-11-23 12:48:33,506 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 310 to 260. [2018-11-23 12:48:33,506 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:33,507 INFO L82 GeneralOperation]: Start isEquivalent. First operand 310 states. Second operand 260 states. [2018-11-23 12:48:33,507 INFO L74 IsIncluded]: Start isIncluded. First operand 310 states. Second operand 260 states. [2018-11-23 12:48:33,507 INFO L87 Difference]: Start difference. First operand 310 states. Second operand 260 states. [2018-11-23 12:48:33,512 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:33,513 INFO L93 Difference]: Finished difference Result 310 states and 459 transitions. [2018-11-23 12:48:33,513 INFO L276 IsEmpty]: Start isEmpty. Operand 310 states and 459 transitions. [2018-11-23 12:48:33,513 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:33,513 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:33,513 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 310 states. [2018-11-23 12:48:33,514 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 310 states. [2018-11-23 12:48:33,520 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:33,520 INFO L93 Difference]: Finished difference Result 310 states and 459 transitions. [2018-11-23 12:48:33,520 INFO L276 IsEmpty]: Start isEmpty. Operand 310 states and 459 transitions. [2018-11-23 12:48:33,521 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:33,521 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:33,521 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:33,521 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:33,521 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:33,526 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 393 transitions. [2018-11-23 12:48:33,526 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 393 transitions. Word has length 93 [2018-11-23 12:48:33,527 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:33,527 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 393 transitions. [2018-11-23 12:48:33,527 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:33,527 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 393 transitions. [2018-11-23 12:48:33,528 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 94 [2018-11-23 12:48:33,528 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:33,528 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:33,528 INFO L423 AbstractCegarLoop]: === Iteration 24 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:33,528 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:33,529 INFO L82 PathProgramCache]: Analyzing trace with hash 1991024500, now seen corresponding path program 1 times [2018-11-23 12:48:33,529 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:33,529 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:33,530 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:33,530 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:33,530 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:33,546 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:33,696 INFO L256 TraceCheckUtils]: 0: Hoare triple {26794#true} call ULTIMATE.init(); {26794#true} is VALID [2018-11-23 12:48:33,696 INFO L273 TraceCheckUtils]: 1: Hoare triple {26794#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,696 INFO L273 TraceCheckUtils]: 2: Hoare triple {26794#true} assume true; {26794#true} is VALID [2018-11-23 12:48:33,696 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {26794#true} {26794#true} #633#return; {26794#true} is VALID [2018-11-23 12:48:33,696 INFO L256 TraceCheckUtils]: 4: Hoare triple {26794#true} call #t~ret138 := main(); {26794#true} is VALID [2018-11-23 12:48:33,696 INFO L273 TraceCheckUtils]: 5: Hoare triple {26794#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,696 INFO L256 TraceCheckUtils]: 6: Hoare triple {26794#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 7: Hoare triple {26794#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 8: Hoare triple {26794#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 9: Hoare triple {26794#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 10: Hoare triple {26794#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 11: Hoare triple {26794#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 12: Hoare triple {26794#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 13: Hoare triple {26794#true} assume !false; {26794#true} is VALID [2018-11-23 12:48:33,697 INFO L273 TraceCheckUtils]: 14: Hoare triple {26794#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 15: Hoare triple {26794#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 16: Hoare triple {26794#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 17: Hoare triple {26794#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 18: Hoare triple {26794#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 19: Hoare triple {26794#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 20: Hoare triple {26794#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 21: Hoare triple {26794#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 22: Hoare triple {26794#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,698 INFO L273 TraceCheckUtils]: 23: Hoare triple {26794#true} assume 8464 == #t~mem32;havoc #t~mem32; {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 24: Hoare triple {26794#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 25: Hoare triple {26794#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 26: Hoare triple {26794#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 27: Hoare triple {26794#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 28: Hoare triple {26794#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 29: Hoare triple {26794#true} ~skip~0 := 0; {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 30: Hoare triple {26794#true} assume !false; {26794#true} is VALID [2018-11-23 12:48:33,699 INFO L273 TraceCheckUtils]: 31: Hoare triple {26794#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,700 INFO L273 TraceCheckUtils]: 32: Hoare triple {26794#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,700 INFO L273 TraceCheckUtils]: 33: Hoare triple {26794#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,700 INFO L273 TraceCheckUtils]: 34: Hoare triple {26794#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,700 INFO L273 TraceCheckUtils]: 35: Hoare triple {26794#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,700 INFO L273 TraceCheckUtils]: 36: Hoare triple {26794#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,700 INFO L273 TraceCheckUtils]: 37: Hoare triple {26794#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,701 INFO L273 TraceCheckUtils]: 38: Hoare triple {26794#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,701 INFO L273 TraceCheckUtils]: 39: Hoare triple {26794#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,701 INFO L273 TraceCheckUtils]: 40: Hoare triple {26794#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,701 INFO L273 TraceCheckUtils]: 41: Hoare triple {26794#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,701 INFO L273 TraceCheckUtils]: 42: Hoare triple {26794#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,701 INFO L273 TraceCheckUtils]: 43: Hoare triple {26794#true} assume 8496 == #t~mem35;havoc #t~mem35; {26794#true} is VALID [2018-11-23 12:48:33,702 INFO L273 TraceCheckUtils]: 44: Hoare triple {26794#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {26794#true} is VALID [2018-11-23 12:48:33,702 INFO L273 TraceCheckUtils]: 45: Hoare triple {26794#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {26794#true} is VALID [2018-11-23 12:48:33,702 INFO L273 TraceCheckUtils]: 46: Hoare triple {26794#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {26794#true} is VALID [2018-11-23 12:48:33,716 INFO L273 TraceCheckUtils]: 47: Hoare triple {26794#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,725 INFO L273 TraceCheckUtils]: 48: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,729 INFO L273 TraceCheckUtils]: 49: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,739 INFO L273 TraceCheckUtils]: 50: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,753 INFO L273 TraceCheckUtils]: 51: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,761 INFO L273 TraceCheckUtils]: 52: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,774 INFO L273 TraceCheckUtils]: 53: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,775 INFO L273 TraceCheckUtils]: 54: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,776 INFO L273 TraceCheckUtils]: 55: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,776 INFO L273 TraceCheckUtils]: 56: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,779 INFO L273 TraceCheckUtils]: 57: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:33,779 INFO L273 TraceCheckUtils]: 58: Hoare triple {26796#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {26797#(= 8512 |ssl3_accept_#t~mem29|)} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 59: Hoare triple {26797#(= 8512 |ssl3_accept_#t~mem29|)} assume 8480 == #t~mem29;havoc #t~mem29; {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 60: Hoare triple {26795#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 61: Hoare triple {26795#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 62: Hoare triple {26795#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 63: Hoare triple {26795#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 64: Hoare triple {26795#false} ~skip~0 := 0; {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 65: Hoare triple {26795#false} assume !false; {26795#false} is VALID [2018-11-23 12:48:33,782 INFO L273 TraceCheckUtils]: 66: Hoare triple {26795#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 67: Hoare triple {26795#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 68: Hoare triple {26795#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 69: Hoare triple {26795#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 70: Hoare triple {26795#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 71: Hoare triple {26795#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 72: Hoare triple {26795#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 73: Hoare triple {26795#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,783 INFO L273 TraceCheckUtils]: 74: Hoare triple {26795#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 75: Hoare triple {26795#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 76: Hoare triple {26795#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 77: Hoare triple {26795#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 78: Hoare triple {26795#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 79: Hoare triple {26795#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 80: Hoare triple {26795#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 81: Hoare triple {26795#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 82: Hoare triple {26795#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,784 INFO L273 TraceCheckUtils]: 83: Hoare triple {26795#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 84: Hoare triple {26795#false} assume 8544 == #t~mem41;havoc #t~mem41; {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 85: Hoare triple {26795#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 86: Hoare triple {26795#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 87: Hoare triple {26795#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 88: Hoare triple {26795#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 89: Hoare triple {26795#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 90: Hoare triple {26795#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 91: Hoare triple {26795#false} assume 8 == ~blastFlag~0; {26795#false} is VALID [2018-11-23 12:48:33,785 INFO L273 TraceCheckUtils]: 92: Hoare triple {26795#false} assume !false; {26795#false} is VALID [2018-11-23 12:48:33,791 INFO L134 CoverageAnalysis]: Checked inductivity of 69 backedges. 58 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:33,791 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:33,791 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:33,791 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 93 [2018-11-23 12:48:33,792 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:33,792 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:33,878 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 83 edges. 83 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:33,878 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:33,879 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:33,879 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:33,879 INFO L87 Difference]: Start difference. First operand 260 states and 393 transitions. Second operand 4 states. [2018-11-23 12:48:35,168 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:35,168 INFO L93 Difference]: Finished difference Result 520 states and 790 transitions. [2018-11-23 12:48:35,168 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:35,168 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 93 [2018-11-23 12:48:35,168 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:35,168 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:35,171 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 483 transitions. [2018-11-23 12:48:35,171 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:35,173 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 483 transitions. [2018-11-23 12:48:35,173 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 483 transitions. [2018-11-23 12:48:35,636 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 483 edges. 483 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:35,643 INFO L225 Difference]: With dead ends: 520 [2018-11-23 12:48:35,644 INFO L226 Difference]: Without dead ends: 285 [2018-11-23 12:48:35,644 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:35,645 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 285 states. [2018-11-23 12:48:35,759 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 285 to 260. [2018-11-23 12:48:35,759 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:35,759 INFO L82 GeneralOperation]: Start isEquivalent. First operand 285 states. Second operand 260 states. [2018-11-23 12:48:35,760 INFO L74 IsIncluded]: Start isIncluded. First operand 285 states. Second operand 260 states. [2018-11-23 12:48:35,760 INFO L87 Difference]: Start difference. First operand 285 states. Second operand 260 states. [2018-11-23 12:48:35,764 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:35,764 INFO L93 Difference]: Finished difference Result 285 states and 424 transitions. [2018-11-23 12:48:35,764 INFO L276 IsEmpty]: Start isEmpty. Operand 285 states and 424 transitions. [2018-11-23 12:48:35,765 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:35,765 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:35,765 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 285 states. [2018-11-23 12:48:35,765 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 285 states. [2018-11-23 12:48:35,770 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:35,771 INFO L93 Difference]: Finished difference Result 285 states and 424 transitions. [2018-11-23 12:48:35,771 INFO L276 IsEmpty]: Start isEmpty. Operand 285 states and 424 transitions. [2018-11-23 12:48:35,771 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:35,771 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:35,771 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:35,771 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:35,771 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:35,775 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 392 transitions. [2018-11-23 12:48:35,775 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 392 transitions. Word has length 93 [2018-11-23 12:48:35,776 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:35,776 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 392 transitions. [2018-11-23 12:48:35,776 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:35,776 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 392 transitions. [2018-11-23 12:48:35,777 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2018-11-23 12:48:35,777 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:35,777 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:35,777 INFO L423 AbstractCegarLoop]: === Iteration 25 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:35,777 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:35,777 INFO L82 PathProgramCache]: Analyzing trace with hash 19690565, now seen corresponding path program 1 times [2018-11-23 12:48:35,778 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:35,778 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:35,779 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:35,779 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:35,779 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:35,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:36,026 INFO L256 TraceCheckUtils]: 0: Hoare triple {28268#true} call ULTIMATE.init(); {28268#true} is VALID [2018-11-23 12:48:36,027 INFO L273 TraceCheckUtils]: 1: Hoare triple {28268#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,027 INFO L273 TraceCheckUtils]: 2: Hoare triple {28268#true} assume true; {28268#true} is VALID [2018-11-23 12:48:36,027 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {28268#true} {28268#true} #633#return; {28268#true} is VALID [2018-11-23 12:48:36,027 INFO L256 TraceCheckUtils]: 4: Hoare triple {28268#true} call #t~ret138 := main(); {28268#true} is VALID [2018-11-23 12:48:36,027 INFO L273 TraceCheckUtils]: 5: Hoare triple {28268#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,028 INFO L256 TraceCheckUtils]: 6: Hoare triple {28268#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {28268#true} is VALID [2018-11-23 12:48:36,028 INFO L273 TraceCheckUtils]: 7: Hoare triple {28268#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,028 INFO L273 TraceCheckUtils]: 8: Hoare triple {28268#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {28268#true} is VALID [2018-11-23 12:48:36,028 INFO L273 TraceCheckUtils]: 9: Hoare triple {28268#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {28268#true} is VALID [2018-11-23 12:48:36,028 INFO L273 TraceCheckUtils]: 10: Hoare triple {28268#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {28268#true} is VALID [2018-11-23 12:48:36,029 INFO L273 TraceCheckUtils]: 11: Hoare triple {28268#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,029 INFO L273 TraceCheckUtils]: 12: Hoare triple {28268#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {28268#true} is VALID [2018-11-23 12:48:36,029 INFO L273 TraceCheckUtils]: 13: Hoare triple {28268#true} assume !false; {28268#true} is VALID [2018-11-23 12:48:36,029 INFO L273 TraceCheckUtils]: 14: Hoare triple {28268#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,029 INFO L273 TraceCheckUtils]: 15: Hoare triple {28268#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 16: Hoare triple {28268#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 17: Hoare triple {28268#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 18: Hoare triple {28268#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 19: Hoare triple {28268#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 20: Hoare triple {28268#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 21: Hoare triple {28268#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 22: Hoare triple {28268#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,030 INFO L273 TraceCheckUtils]: 23: Hoare triple {28268#true} assume 8464 == #t~mem32;havoc #t~mem32; {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 24: Hoare triple {28268#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 25: Hoare triple {28268#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 26: Hoare triple {28268#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 27: Hoare triple {28268#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 28: Hoare triple {28268#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 29: Hoare triple {28268#true} ~skip~0 := 0; {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 30: Hoare triple {28268#true} assume !false; {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 31: Hoare triple {28268#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,031 INFO L273 TraceCheckUtils]: 32: Hoare triple {28268#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 33: Hoare triple {28268#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 34: Hoare triple {28268#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 35: Hoare triple {28268#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 36: Hoare triple {28268#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 37: Hoare triple {28268#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 38: Hoare triple {28268#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,032 INFO L273 TraceCheckUtils]: 39: Hoare triple {28268#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,033 INFO L273 TraceCheckUtils]: 40: Hoare triple {28268#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,033 INFO L273 TraceCheckUtils]: 41: Hoare triple {28268#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,033 INFO L273 TraceCheckUtils]: 42: Hoare triple {28268#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,033 INFO L273 TraceCheckUtils]: 43: Hoare triple {28268#true} assume 8496 == #t~mem35;havoc #t~mem35; {28268#true} is VALID [2018-11-23 12:48:36,033 INFO L273 TraceCheckUtils]: 44: Hoare triple {28268#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {28268#true} is VALID [2018-11-23 12:48:36,033 INFO L273 TraceCheckUtils]: 45: Hoare triple {28268#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {28268#true} is VALID [2018-11-23 12:48:36,034 INFO L273 TraceCheckUtils]: 46: Hoare triple {28268#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {28268#true} is VALID [2018-11-23 12:48:36,044 INFO L273 TraceCheckUtils]: 47: Hoare triple {28268#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,045 INFO L273 TraceCheckUtils]: 48: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,045 INFO L273 TraceCheckUtils]: 49: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,045 INFO L273 TraceCheckUtils]: 50: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,046 INFO L273 TraceCheckUtils]: 51: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,046 INFO L273 TraceCheckUtils]: 52: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,046 INFO L273 TraceCheckUtils]: 53: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,047 INFO L273 TraceCheckUtils]: 54: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,047 INFO L273 TraceCheckUtils]: 55: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,048 INFO L273 TraceCheckUtils]: 56: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,048 INFO L273 TraceCheckUtils]: 57: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,049 INFO L273 TraceCheckUtils]: 58: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:36,049 INFO L273 TraceCheckUtils]: 59: Hoare triple {28270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {28271#(= 8656 |ssl3_accept_#t~mem30|)} is VALID [2018-11-23 12:48:36,050 INFO L273 TraceCheckUtils]: 60: Hoare triple {28271#(= 8656 |ssl3_accept_#t~mem30|)} assume 8481 == #t~mem30;havoc #t~mem30; {28269#false} is VALID [2018-11-23 12:48:36,050 INFO L273 TraceCheckUtils]: 61: Hoare triple {28269#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {28269#false} is VALID [2018-11-23 12:48:36,050 INFO L273 TraceCheckUtils]: 62: Hoare triple {28269#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,050 INFO L273 TraceCheckUtils]: 63: Hoare triple {28269#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,051 INFO L273 TraceCheckUtils]: 64: Hoare triple {28269#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {28269#false} is VALID [2018-11-23 12:48:36,051 INFO L273 TraceCheckUtils]: 65: Hoare triple {28269#false} ~skip~0 := 0; {28269#false} is VALID [2018-11-23 12:48:36,051 INFO L273 TraceCheckUtils]: 66: Hoare triple {28269#false} assume !false; {28269#false} is VALID [2018-11-23 12:48:36,051 INFO L273 TraceCheckUtils]: 67: Hoare triple {28269#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,051 INFO L273 TraceCheckUtils]: 68: Hoare triple {28269#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,052 INFO L273 TraceCheckUtils]: 69: Hoare triple {28269#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,052 INFO L273 TraceCheckUtils]: 70: Hoare triple {28269#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,052 INFO L273 TraceCheckUtils]: 71: Hoare triple {28269#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,052 INFO L273 TraceCheckUtils]: 72: Hoare triple {28269#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,052 INFO L273 TraceCheckUtils]: 73: Hoare triple {28269#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,052 INFO L273 TraceCheckUtils]: 74: Hoare triple {28269#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,053 INFO L273 TraceCheckUtils]: 75: Hoare triple {28269#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,053 INFO L273 TraceCheckUtils]: 76: Hoare triple {28269#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,053 INFO L273 TraceCheckUtils]: 77: Hoare triple {28269#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,053 INFO L273 TraceCheckUtils]: 78: Hoare triple {28269#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,053 INFO L273 TraceCheckUtils]: 79: Hoare triple {28269#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,054 INFO L273 TraceCheckUtils]: 80: Hoare triple {28269#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,054 INFO L273 TraceCheckUtils]: 81: Hoare triple {28269#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,054 INFO L273 TraceCheckUtils]: 82: Hoare triple {28269#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,054 INFO L273 TraceCheckUtils]: 83: Hoare triple {28269#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,054 INFO L273 TraceCheckUtils]: 84: Hoare triple {28269#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,054 INFO L273 TraceCheckUtils]: 85: Hoare triple {28269#false} assume 8544 == #t~mem41;havoc #t~mem41; {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 86: Hoare triple {28269#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 87: Hoare triple {28269#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 88: Hoare triple {28269#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 89: Hoare triple {28269#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 90: Hoare triple {28269#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 91: Hoare triple {28269#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 92: Hoare triple {28269#false} assume 8 == ~blastFlag~0; {28269#false} is VALID [2018-11-23 12:48:36,055 INFO L273 TraceCheckUtils]: 93: Hoare triple {28269#false} assume !false; {28269#false} is VALID [2018-11-23 12:48:36,061 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 61 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:36,061 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:36,061 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:36,062 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:36,062 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:36,062 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:36,143 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 84 edges. 84 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:36,144 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:36,144 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:36,144 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:36,144 INFO L87 Difference]: Start difference. First operand 260 states and 392 transitions. Second operand 4 states. [2018-11-23 12:48:37,467 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:37,467 INFO L93 Difference]: Finished difference Result 543 states and 820 transitions. [2018-11-23 12:48:37,467 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:37,467 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:37,468 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:37,468 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:37,470 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 544 transitions. [2018-11-23 12:48:37,470 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:37,472 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 544 transitions. [2018-11-23 12:48:37,472 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 544 transitions. [2018-11-23 12:48:38,128 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 544 edges. 544 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:38,134 INFO L225 Difference]: With dead ends: 543 [2018-11-23 12:48:38,135 INFO L226 Difference]: Without dead ends: 308 [2018-11-23 12:48:38,135 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:38,136 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 308 states. [2018-11-23 12:48:38,268 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 308 to 260. [2018-11-23 12:48:38,268 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:38,268 INFO L82 GeneralOperation]: Start isEquivalent. First operand 308 states. Second operand 260 states. [2018-11-23 12:48:38,269 INFO L74 IsIncluded]: Start isIncluded. First operand 308 states. Second operand 260 states. [2018-11-23 12:48:38,269 INFO L87 Difference]: Start difference. First operand 308 states. Second operand 260 states. [2018-11-23 12:48:38,276 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:38,277 INFO L93 Difference]: Finished difference Result 308 states and 455 transitions. [2018-11-23 12:48:38,277 INFO L276 IsEmpty]: Start isEmpty. Operand 308 states and 455 transitions. [2018-11-23 12:48:38,277 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:38,278 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:38,278 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 308 states. [2018-11-23 12:48:38,278 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 308 states. [2018-11-23 12:48:38,284 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:38,284 INFO L93 Difference]: Finished difference Result 308 states and 455 transitions. [2018-11-23 12:48:38,285 INFO L276 IsEmpty]: Start isEmpty. Operand 308 states and 455 transitions. [2018-11-23 12:48:38,285 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:38,285 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:38,285 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:38,285 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:38,285 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:38,289 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 391 transitions. [2018-11-23 12:48:38,290 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 391 transitions. Word has length 94 [2018-11-23 12:48:38,290 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:38,290 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 391 transitions. [2018-11-23 12:48:38,290 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:38,290 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 391 transitions. [2018-11-23 12:48:38,291 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2018-11-23 12:48:38,291 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:38,291 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:38,291 INFO L423 AbstractCegarLoop]: === Iteration 26 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:38,291 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:38,291 INFO L82 PathProgramCache]: Analyzing trace with hash -1623840890, now seen corresponding path program 1 times [2018-11-23 12:48:38,291 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:38,291 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:38,292 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:38,292 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:38,292 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:38,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:38,499 INFO L256 TraceCheckUtils]: 0: Hoare triple {29818#true} call ULTIMATE.init(); {29818#true} is VALID [2018-11-23 12:48:38,499 INFO L273 TraceCheckUtils]: 1: Hoare triple {29818#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,499 INFO L273 TraceCheckUtils]: 2: Hoare triple {29818#true} assume true; {29818#true} is VALID [2018-11-23 12:48:38,499 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {29818#true} {29818#true} #633#return; {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L256 TraceCheckUtils]: 4: Hoare triple {29818#true} call #t~ret138 := main(); {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L273 TraceCheckUtils]: 5: Hoare triple {29818#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L256 TraceCheckUtils]: 6: Hoare triple {29818#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L273 TraceCheckUtils]: 7: Hoare triple {29818#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L273 TraceCheckUtils]: 8: Hoare triple {29818#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L273 TraceCheckUtils]: 9: Hoare triple {29818#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L273 TraceCheckUtils]: 10: Hoare triple {29818#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {29818#true} is VALID [2018-11-23 12:48:38,500 INFO L273 TraceCheckUtils]: 11: Hoare triple {29818#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 12: Hoare triple {29818#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 13: Hoare triple {29818#true} assume !false; {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 14: Hoare triple {29818#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 15: Hoare triple {29818#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 16: Hoare triple {29818#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 17: Hoare triple {29818#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 18: Hoare triple {29818#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 19: Hoare triple {29818#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,501 INFO L273 TraceCheckUtils]: 20: Hoare triple {29818#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 21: Hoare triple {29818#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 22: Hoare triple {29818#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 23: Hoare triple {29818#true} assume 8464 == #t~mem32;havoc #t~mem32; {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 24: Hoare triple {29818#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 25: Hoare triple {29818#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 26: Hoare triple {29818#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 27: Hoare triple {29818#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 28: Hoare triple {29818#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {29818#true} is VALID [2018-11-23 12:48:38,502 INFO L273 TraceCheckUtils]: 29: Hoare triple {29818#true} ~skip~0 := 0; {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 30: Hoare triple {29818#true} assume !false; {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 31: Hoare triple {29818#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 32: Hoare triple {29818#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 33: Hoare triple {29818#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 34: Hoare triple {29818#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 35: Hoare triple {29818#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 36: Hoare triple {29818#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,503 INFO L273 TraceCheckUtils]: 37: Hoare triple {29818#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 38: Hoare triple {29818#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 39: Hoare triple {29818#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 40: Hoare triple {29818#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 41: Hoare triple {29818#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 42: Hoare triple {29818#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 43: Hoare triple {29818#true} assume 8496 == #t~mem35;havoc #t~mem35; {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 44: Hoare triple {29818#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 45: Hoare triple {29818#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {29818#true} is VALID [2018-11-23 12:48:38,504 INFO L273 TraceCheckUtils]: 46: Hoare triple {29818#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {29818#true} is VALID [2018-11-23 12:48:38,505 INFO L273 TraceCheckUtils]: 47: Hoare triple {29818#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,506 INFO L273 TraceCheckUtils]: 48: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,506 INFO L273 TraceCheckUtils]: 49: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,507 INFO L273 TraceCheckUtils]: 50: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,507 INFO L273 TraceCheckUtils]: 51: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,508 INFO L273 TraceCheckUtils]: 52: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,508 INFO L273 TraceCheckUtils]: 53: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,509 INFO L273 TraceCheckUtils]: 54: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,509 INFO L273 TraceCheckUtils]: 55: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,510 INFO L273 TraceCheckUtils]: 56: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,510 INFO L273 TraceCheckUtils]: 57: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,511 INFO L273 TraceCheckUtils]: 58: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,511 INFO L273 TraceCheckUtils]: 59: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:38,512 INFO L273 TraceCheckUtils]: 60: Hoare triple {29820#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {29821#(= 8656 |ssl3_accept_#t~mem31|)} is VALID [2018-11-23 12:48:38,513 INFO L273 TraceCheckUtils]: 61: Hoare triple {29821#(= 8656 |ssl3_accept_#t~mem31|)} assume 8482 == #t~mem31;havoc #t~mem31; {29819#false} is VALID [2018-11-23 12:48:38,513 INFO L273 TraceCheckUtils]: 62: Hoare triple {29819#false} call write~int(3, ~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,513 INFO L273 TraceCheckUtils]: 63: Hoare triple {29819#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,513 INFO L273 TraceCheckUtils]: 64: Hoare triple {29819#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {29819#false} is VALID [2018-11-23 12:48:38,513 INFO L273 TraceCheckUtils]: 65: Hoare triple {29819#false} ~skip~0 := 0; {29819#false} is VALID [2018-11-23 12:48:38,513 INFO L273 TraceCheckUtils]: 66: Hoare triple {29819#false} assume !false; {29819#false} is VALID [2018-11-23 12:48:38,514 INFO L273 TraceCheckUtils]: 67: Hoare triple {29819#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,514 INFO L273 TraceCheckUtils]: 68: Hoare triple {29819#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,514 INFO L273 TraceCheckUtils]: 69: Hoare triple {29819#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,514 INFO L273 TraceCheckUtils]: 70: Hoare triple {29819#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,514 INFO L273 TraceCheckUtils]: 71: Hoare triple {29819#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,515 INFO L273 TraceCheckUtils]: 72: Hoare triple {29819#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,515 INFO L273 TraceCheckUtils]: 73: Hoare triple {29819#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,515 INFO L273 TraceCheckUtils]: 74: Hoare triple {29819#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,515 INFO L273 TraceCheckUtils]: 75: Hoare triple {29819#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,515 INFO L273 TraceCheckUtils]: 76: Hoare triple {29819#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,515 INFO L273 TraceCheckUtils]: 77: Hoare triple {29819#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 78: Hoare triple {29819#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 79: Hoare triple {29819#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 80: Hoare triple {29819#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 81: Hoare triple {29819#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 82: Hoare triple {29819#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 83: Hoare triple {29819#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 84: Hoare triple {29819#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 85: Hoare triple {29819#false} assume 8544 == #t~mem41;havoc #t~mem41; {29819#false} is VALID [2018-11-23 12:48:38,516 INFO L273 TraceCheckUtils]: 86: Hoare triple {29819#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 87: Hoare triple {29819#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 88: Hoare triple {29819#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 89: Hoare triple {29819#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 90: Hoare triple {29819#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 91: Hoare triple {29819#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 92: Hoare triple {29819#false} assume 8 == ~blastFlag~0; {29819#false} is VALID [2018-11-23 12:48:38,517 INFO L273 TraceCheckUtils]: 93: Hoare triple {29819#false} assume !false; {29819#false} is VALID [2018-11-23 12:48:38,523 INFO L134 CoverageAnalysis]: Checked inductivity of 75 backedges. 64 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:38,523 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:38,523 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:38,524 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:38,524 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:38,524 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:38,602 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 84 edges. 84 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:38,602 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:38,602 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:38,602 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:38,603 INFO L87 Difference]: Start difference. First operand 260 states and 391 transitions. Second operand 4 states. [2018-11-23 12:48:39,918 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:39,919 INFO L93 Difference]: Finished difference Result 542 states and 817 transitions. [2018-11-23 12:48:39,919 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:39,919 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:39,919 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:39,919 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:39,921 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 542 transitions. [2018-11-23 12:48:39,921 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:39,923 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 542 transitions. [2018-11-23 12:48:39,923 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 542 transitions. [2018-11-23 12:48:40,462 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 542 edges. 542 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:40,469 INFO L225 Difference]: With dead ends: 542 [2018-11-23 12:48:40,469 INFO L226 Difference]: Without dead ends: 307 [2018-11-23 12:48:40,470 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:40,470 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 307 states. [2018-11-23 12:48:40,587 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 307 to 260. [2018-11-23 12:48:40,588 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:40,588 INFO L82 GeneralOperation]: Start isEquivalent. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:40,588 INFO L74 IsIncluded]: Start isIncluded. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:40,588 INFO L87 Difference]: Start difference. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:40,594 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:40,594 INFO L93 Difference]: Finished difference Result 307 states and 453 transitions. [2018-11-23 12:48:40,594 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 453 transitions. [2018-11-23 12:48:40,594 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:40,594 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:40,594 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:40,595 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:40,600 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:40,600 INFO L93 Difference]: Finished difference Result 307 states and 453 transitions. [2018-11-23 12:48:40,600 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 453 transitions. [2018-11-23 12:48:40,600 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:40,600 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:40,600 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:40,601 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:40,601 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:40,605 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 390 transitions. [2018-11-23 12:48:40,605 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 390 transitions. Word has length 94 [2018-11-23 12:48:40,606 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:40,606 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 390 transitions. [2018-11-23 12:48:40,606 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:40,606 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 390 transitions. [2018-11-23 12:48:40,607 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2018-11-23 12:48:40,607 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:40,607 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:40,607 INFO L423 AbstractCegarLoop]: === Iteration 27 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:40,607 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:40,607 INFO L82 PathProgramCache]: Analyzing trace with hash -333397817, now seen corresponding path program 1 times [2018-11-23 12:48:40,607 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:40,608 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:40,608 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:40,609 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:40,609 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:40,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:40,990 INFO L256 TraceCheckUtils]: 0: Hoare triple {31364#true} call ULTIMATE.init(); {31364#true} is VALID [2018-11-23 12:48:40,990 INFO L273 TraceCheckUtils]: 1: Hoare triple {31364#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,990 INFO L273 TraceCheckUtils]: 2: Hoare triple {31364#true} assume true; {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {31364#true} {31364#true} #633#return; {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L256 TraceCheckUtils]: 4: Hoare triple {31364#true} call #t~ret138 := main(); {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L273 TraceCheckUtils]: 5: Hoare triple {31364#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L256 TraceCheckUtils]: 6: Hoare triple {31364#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L273 TraceCheckUtils]: 7: Hoare triple {31364#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L273 TraceCheckUtils]: 8: Hoare triple {31364#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {31364#true} is VALID [2018-11-23 12:48:40,991 INFO L273 TraceCheckUtils]: 9: Hoare triple {31364#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 10: Hoare triple {31364#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 11: Hoare triple {31364#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 12: Hoare triple {31364#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 13: Hoare triple {31364#true} assume !false; {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 14: Hoare triple {31364#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 15: Hoare triple {31364#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 16: Hoare triple {31364#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 17: Hoare triple {31364#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,992 INFO L273 TraceCheckUtils]: 18: Hoare triple {31364#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 19: Hoare triple {31364#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 20: Hoare triple {31364#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 21: Hoare triple {31364#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 22: Hoare triple {31364#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 23: Hoare triple {31364#true} assume 8464 == #t~mem32;havoc #t~mem32; {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 24: Hoare triple {31364#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 25: Hoare triple {31364#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 26: Hoare triple {31364#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,993 INFO L273 TraceCheckUtils]: 27: Hoare triple {31364#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 28: Hoare triple {31364#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 29: Hoare triple {31364#true} ~skip~0 := 0; {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 30: Hoare triple {31364#true} assume !false; {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 31: Hoare triple {31364#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 32: Hoare triple {31364#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 33: Hoare triple {31364#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 34: Hoare triple {31364#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,994 INFO L273 TraceCheckUtils]: 35: Hoare triple {31364#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 36: Hoare triple {31364#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 37: Hoare triple {31364#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 38: Hoare triple {31364#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 39: Hoare triple {31364#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 40: Hoare triple {31364#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 41: Hoare triple {31364#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 42: Hoare triple {31364#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 43: Hoare triple {31364#true} assume 8496 == #t~mem35;havoc #t~mem35; {31364#true} is VALID [2018-11-23 12:48:40,995 INFO L273 TraceCheckUtils]: 44: Hoare triple {31364#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {31364#true} is VALID [2018-11-23 12:48:40,996 INFO L273 TraceCheckUtils]: 45: Hoare triple {31364#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {31364#true} is VALID [2018-11-23 12:48:40,996 INFO L273 TraceCheckUtils]: 46: Hoare triple {31364#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {31364#true} is VALID [2018-11-23 12:48:40,996 INFO L273 TraceCheckUtils]: 47: Hoare triple {31364#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,997 INFO L273 TraceCheckUtils]: 48: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,998 INFO L273 TraceCheckUtils]: 49: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,998 INFO L273 TraceCheckUtils]: 50: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,998 INFO L273 TraceCheckUtils]: 51: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,998 INFO L273 TraceCheckUtils]: 52: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,999 INFO L273 TraceCheckUtils]: 53: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:40,999 INFO L273 TraceCheckUtils]: 54: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:41,000 INFO L273 TraceCheckUtils]: 55: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:41,000 INFO L273 TraceCheckUtils]: 56: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:41,001 INFO L273 TraceCheckUtils]: 57: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:41,001 INFO L273 TraceCheckUtils]: 58: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:41,002 INFO L273 TraceCheckUtils]: 59: Hoare triple {31366#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {31367#(= 8512 |ssl3_accept_#t~mem30|)} is VALID [2018-11-23 12:48:41,002 INFO L273 TraceCheckUtils]: 60: Hoare triple {31367#(= 8512 |ssl3_accept_#t~mem30|)} assume 8481 == #t~mem30;havoc #t~mem30; {31365#false} is VALID [2018-11-23 12:48:41,003 INFO L273 TraceCheckUtils]: 61: Hoare triple {31365#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {31365#false} is VALID [2018-11-23 12:48:41,003 INFO L273 TraceCheckUtils]: 62: Hoare triple {31365#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,003 INFO L273 TraceCheckUtils]: 63: Hoare triple {31365#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,003 INFO L273 TraceCheckUtils]: 64: Hoare triple {31365#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {31365#false} is VALID [2018-11-23 12:48:41,003 INFO L273 TraceCheckUtils]: 65: Hoare triple {31365#false} ~skip~0 := 0; {31365#false} is VALID [2018-11-23 12:48:41,003 INFO L273 TraceCheckUtils]: 66: Hoare triple {31365#false} assume !false; {31365#false} is VALID [2018-11-23 12:48:41,004 INFO L273 TraceCheckUtils]: 67: Hoare triple {31365#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,004 INFO L273 TraceCheckUtils]: 68: Hoare triple {31365#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,004 INFO L273 TraceCheckUtils]: 69: Hoare triple {31365#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,004 INFO L273 TraceCheckUtils]: 70: Hoare triple {31365#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,004 INFO L273 TraceCheckUtils]: 71: Hoare triple {31365#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,004 INFO L273 TraceCheckUtils]: 72: Hoare triple {31365#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 73: Hoare triple {31365#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 74: Hoare triple {31365#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 75: Hoare triple {31365#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 76: Hoare triple {31365#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 77: Hoare triple {31365#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 78: Hoare triple {31365#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 79: Hoare triple {31365#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 80: Hoare triple {31365#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,005 INFO L273 TraceCheckUtils]: 81: Hoare triple {31365#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 82: Hoare triple {31365#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 83: Hoare triple {31365#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 84: Hoare triple {31365#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 85: Hoare triple {31365#false} assume 8544 == #t~mem41;havoc #t~mem41; {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 86: Hoare triple {31365#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 87: Hoare triple {31365#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 88: Hoare triple {31365#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 89: Hoare triple {31365#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {31365#false} is VALID [2018-11-23 12:48:41,006 INFO L273 TraceCheckUtils]: 90: Hoare triple {31365#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {31365#false} is VALID [2018-11-23 12:48:41,007 INFO L273 TraceCheckUtils]: 91: Hoare triple {31365#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {31365#false} is VALID [2018-11-23 12:48:41,007 INFO L273 TraceCheckUtils]: 92: Hoare triple {31365#false} assume 8 == ~blastFlag~0; {31365#false} is VALID [2018-11-23 12:48:41,007 INFO L273 TraceCheckUtils]: 93: Hoare triple {31365#false} assume !false; {31365#false} is VALID [2018-11-23 12:48:41,013 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 61 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:41,013 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:41,013 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:41,013 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:41,013 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:41,013 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:41,094 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 84 edges. 84 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:41,094 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:41,094 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:41,094 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:41,095 INFO L87 Difference]: Start difference. First operand 260 states and 390 transitions. Second operand 4 states. [2018-11-23 12:48:42,316 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:42,317 INFO L93 Difference]: Finished difference Result 518 states and 782 transitions. [2018-11-23 12:48:42,317 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:42,317 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:42,317 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:42,317 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:42,319 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 480 transitions. [2018-11-23 12:48:42,319 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:42,321 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 480 transitions. [2018-11-23 12:48:42,321 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 480 transitions. [2018-11-23 12:48:42,881 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 480 edges. 480 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:42,887 INFO L225 Difference]: With dead ends: 518 [2018-11-23 12:48:42,887 INFO L226 Difference]: Without dead ends: 283 [2018-11-23 12:48:42,888 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:42,888 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 283 states. [2018-11-23 12:48:43,060 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 283 to 260. [2018-11-23 12:48:43,060 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:43,060 INFO L82 GeneralOperation]: Start isEquivalent. First operand 283 states. Second operand 260 states. [2018-11-23 12:48:43,060 INFO L74 IsIncluded]: Start isIncluded. First operand 283 states. Second operand 260 states. [2018-11-23 12:48:43,060 INFO L87 Difference]: Start difference. First operand 283 states. Second operand 260 states. [2018-11-23 12:48:43,065 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:43,065 INFO L93 Difference]: Finished difference Result 283 states and 419 transitions. [2018-11-23 12:48:43,065 INFO L276 IsEmpty]: Start isEmpty. Operand 283 states and 419 transitions. [2018-11-23 12:48:43,066 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:43,066 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:43,066 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 283 states. [2018-11-23 12:48:43,066 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 283 states. [2018-11-23 12:48:43,071 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:43,071 INFO L93 Difference]: Finished difference Result 283 states and 419 transitions. [2018-11-23 12:48:43,072 INFO L276 IsEmpty]: Start isEmpty. Operand 283 states and 419 transitions. [2018-11-23 12:48:43,072 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:43,072 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:43,072 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:43,073 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:43,073 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:43,078 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 389 transitions. [2018-11-23 12:48:43,078 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 389 transitions. Word has length 94 [2018-11-23 12:48:43,078 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:43,078 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 389 transitions. [2018-11-23 12:48:43,079 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:43,079 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 389 transitions. [2018-11-23 12:48:43,079 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 95 [2018-11-23 12:48:43,079 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:43,080 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:43,080 INFO L423 AbstractCegarLoop]: === Iteration 28 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:43,080 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:43,080 INFO L82 PathProgramCache]: Analyzing trace with hash -1976929272, now seen corresponding path program 1 times [2018-11-23 12:48:43,080 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:43,080 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:43,081 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:43,082 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:43,082 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:43,098 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:43,302 INFO L256 TraceCheckUtils]: 0: Hoare triple {32831#true} call ULTIMATE.init(); {32831#true} is VALID [2018-11-23 12:48:43,302 INFO L273 TraceCheckUtils]: 1: Hoare triple {32831#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,303 INFO L273 TraceCheckUtils]: 2: Hoare triple {32831#true} assume true; {32831#true} is VALID [2018-11-23 12:48:43,303 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {32831#true} {32831#true} #633#return; {32831#true} is VALID [2018-11-23 12:48:43,303 INFO L256 TraceCheckUtils]: 4: Hoare triple {32831#true} call #t~ret138 := main(); {32831#true} is VALID [2018-11-23 12:48:43,303 INFO L273 TraceCheckUtils]: 5: Hoare triple {32831#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,303 INFO L256 TraceCheckUtils]: 6: Hoare triple {32831#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {32831#true} is VALID [2018-11-23 12:48:43,303 INFO L273 TraceCheckUtils]: 7: Hoare triple {32831#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 8: Hoare triple {32831#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 9: Hoare triple {32831#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 10: Hoare triple {32831#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 11: Hoare triple {32831#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 12: Hoare triple {32831#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 13: Hoare triple {32831#true} assume !false; {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 14: Hoare triple {32831#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,304 INFO L273 TraceCheckUtils]: 15: Hoare triple {32831#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 16: Hoare triple {32831#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 17: Hoare triple {32831#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 18: Hoare triple {32831#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 19: Hoare triple {32831#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 20: Hoare triple {32831#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 21: Hoare triple {32831#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 22: Hoare triple {32831#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 23: Hoare triple {32831#true} assume 8464 == #t~mem32;havoc #t~mem32; {32831#true} is VALID [2018-11-23 12:48:43,305 INFO L273 TraceCheckUtils]: 24: Hoare triple {32831#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 25: Hoare triple {32831#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 26: Hoare triple {32831#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 27: Hoare triple {32831#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 28: Hoare triple {32831#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 29: Hoare triple {32831#true} ~skip~0 := 0; {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 30: Hoare triple {32831#true} assume !false; {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 31: Hoare triple {32831#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 32: Hoare triple {32831#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,306 INFO L273 TraceCheckUtils]: 33: Hoare triple {32831#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 34: Hoare triple {32831#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 35: Hoare triple {32831#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 36: Hoare triple {32831#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 37: Hoare triple {32831#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 38: Hoare triple {32831#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 39: Hoare triple {32831#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 40: Hoare triple {32831#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 41: Hoare triple {32831#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,307 INFO L273 TraceCheckUtils]: 42: Hoare triple {32831#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,308 INFO L273 TraceCheckUtils]: 43: Hoare triple {32831#true} assume 8496 == #t~mem35;havoc #t~mem35; {32831#true} is VALID [2018-11-23 12:48:43,308 INFO L273 TraceCheckUtils]: 44: Hoare triple {32831#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {32831#true} is VALID [2018-11-23 12:48:43,308 INFO L273 TraceCheckUtils]: 45: Hoare triple {32831#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {32831#true} is VALID [2018-11-23 12:48:43,308 INFO L273 TraceCheckUtils]: 46: Hoare triple {32831#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {32831#true} is VALID [2018-11-23 12:48:43,309 INFO L273 TraceCheckUtils]: 47: Hoare triple {32831#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,310 INFO L273 TraceCheckUtils]: 48: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,311 INFO L273 TraceCheckUtils]: 49: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,311 INFO L273 TraceCheckUtils]: 50: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,311 INFO L273 TraceCheckUtils]: 51: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,312 INFO L273 TraceCheckUtils]: 52: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,313 INFO L273 TraceCheckUtils]: 53: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,313 INFO L273 TraceCheckUtils]: 54: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,313 INFO L273 TraceCheckUtils]: 55: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,314 INFO L273 TraceCheckUtils]: 56: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,314 INFO L273 TraceCheckUtils]: 57: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,315 INFO L273 TraceCheckUtils]: 58: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,315 INFO L273 TraceCheckUtils]: 59: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:43,316 INFO L273 TraceCheckUtils]: 60: Hoare triple {32833#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {32834#(= 8512 |ssl3_accept_#t~mem31|)} is VALID [2018-11-23 12:48:43,316 INFO L273 TraceCheckUtils]: 61: Hoare triple {32834#(= 8512 |ssl3_accept_#t~mem31|)} assume 8482 == #t~mem31;havoc #t~mem31; {32832#false} is VALID [2018-11-23 12:48:43,317 INFO L273 TraceCheckUtils]: 62: Hoare triple {32832#false} call write~int(3, ~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,317 INFO L273 TraceCheckUtils]: 63: Hoare triple {32832#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,317 INFO L273 TraceCheckUtils]: 64: Hoare triple {32832#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {32832#false} is VALID [2018-11-23 12:48:43,317 INFO L273 TraceCheckUtils]: 65: Hoare triple {32832#false} ~skip~0 := 0; {32832#false} is VALID [2018-11-23 12:48:43,317 INFO L273 TraceCheckUtils]: 66: Hoare triple {32832#false} assume !false; {32832#false} is VALID [2018-11-23 12:48:43,318 INFO L273 TraceCheckUtils]: 67: Hoare triple {32832#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,318 INFO L273 TraceCheckUtils]: 68: Hoare triple {32832#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,318 INFO L273 TraceCheckUtils]: 69: Hoare triple {32832#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,318 INFO L273 TraceCheckUtils]: 70: Hoare triple {32832#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,318 INFO L273 TraceCheckUtils]: 71: Hoare triple {32832#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,318 INFO L273 TraceCheckUtils]: 72: Hoare triple {32832#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,319 INFO L273 TraceCheckUtils]: 73: Hoare triple {32832#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,319 INFO L273 TraceCheckUtils]: 74: Hoare triple {32832#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,319 INFO L273 TraceCheckUtils]: 75: Hoare triple {32832#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,319 INFO L273 TraceCheckUtils]: 76: Hoare triple {32832#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,319 INFO L273 TraceCheckUtils]: 77: Hoare triple {32832#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,319 INFO L273 TraceCheckUtils]: 78: Hoare triple {32832#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,320 INFO L273 TraceCheckUtils]: 79: Hoare triple {32832#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,320 INFO L273 TraceCheckUtils]: 80: Hoare triple {32832#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,320 INFO L273 TraceCheckUtils]: 81: Hoare triple {32832#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,320 INFO L273 TraceCheckUtils]: 82: Hoare triple {32832#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,320 INFO L273 TraceCheckUtils]: 83: Hoare triple {32832#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 84: Hoare triple {32832#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 85: Hoare triple {32832#false} assume 8544 == #t~mem41;havoc #t~mem41; {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 86: Hoare triple {32832#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 87: Hoare triple {32832#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 88: Hoare triple {32832#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 89: Hoare triple {32832#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 90: Hoare triple {32832#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 91: Hoare triple {32832#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {32832#false} is VALID [2018-11-23 12:48:43,321 INFO L273 TraceCheckUtils]: 92: Hoare triple {32832#false} assume 8 == ~blastFlag~0; {32832#false} is VALID [2018-11-23 12:48:43,322 INFO L273 TraceCheckUtils]: 93: Hoare triple {32832#false} assume !false; {32832#false} is VALID [2018-11-23 12:48:43,328 INFO L134 CoverageAnalysis]: Checked inductivity of 75 backedges. 64 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:43,328 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:43,328 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:43,328 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:43,328 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:43,329 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:43,414 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 84 edges. 84 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:43,414 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:43,415 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:43,415 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:43,415 INFO L87 Difference]: Start difference. First operand 260 states and 389 transitions. Second operand 4 states. [2018-11-23 12:48:44,600 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:44,601 INFO L93 Difference]: Finished difference Result 517 states and 779 transitions. [2018-11-23 12:48:44,601 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:44,601 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 94 [2018-11-23 12:48:44,601 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:44,601 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:44,603 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 478 transitions. [2018-11-23 12:48:44,603 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:44,605 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 478 transitions. [2018-11-23 12:48:44,605 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 478 transitions. [2018-11-23 12:48:45,080 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 478 edges. 478 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:45,087 INFO L225 Difference]: With dead ends: 517 [2018-11-23 12:48:45,087 INFO L226 Difference]: Without dead ends: 282 [2018-11-23 12:48:45,088 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:45,088 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2018-11-23 12:48:45,238 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 260. [2018-11-23 12:48:45,239 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:45,239 INFO L82 GeneralOperation]: Start isEquivalent. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:45,239 INFO L74 IsIncluded]: Start isIncluded. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:45,239 INFO L87 Difference]: Start difference. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:45,243 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:45,244 INFO L93 Difference]: Finished difference Result 282 states and 417 transitions. [2018-11-23 12:48:45,244 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 417 transitions. [2018-11-23 12:48:45,244 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:45,244 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:45,244 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:45,244 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:45,249 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:45,249 INFO L93 Difference]: Finished difference Result 282 states and 417 transitions. [2018-11-23 12:48:45,249 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 417 transitions. [2018-11-23 12:48:45,249 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:45,250 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:45,250 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:45,250 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:45,250 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:45,254 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 388 transitions. [2018-11-23 12:48:45,254 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 388 transitions. Word has length 94 [2018-11-23 12:48:45,254 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:45,254 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 388 transitions. [2018-11-23 12:48:45,254 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:45,254 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 388 transitions. [2018-11-23 12:48:45,255 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 96 [2018-11-23 12:48:45,255 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:45,255 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:45,255 INFO L423 AbstractCegarLoop]: === Iteration 29 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:45,255 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:45,255 INFO L82 PathProgramCache]: Analyzing trace with hash 1211983539, now seen corresponding path program 1 times [2018-11-23 12:48:45,255 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:45,256 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:45,256 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:45,256 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:45,256 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:45,269 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:45,420 INFO L256 TraceCheckUtils]: 0: Hoare triple {34294#true} call ULTIMATE.init(); {34294#true} is VALID [2018-11-23 12:48:45,420 INFO L273 TraceCheckUtils]: 1: Hoare triple {34294#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,420 INFO L273 TraceCheckUtils]: 2: Hoare triple {34294#true} assume true; {34294#true} is VALID [2018-11-23 12:48:45,420 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {34294#true} {34294#true} #633#return; {34294#true} is VALID [2018-11-23 12:48:45,421 INFO L256 TraceCheckUtils]: 4: Hoare triple {34294#true} call #t~ret138 := main(); {34294#true} is VALID [2018-11-23 12:48:45,421 INFO L273 TraceCheckUtils]: 5: Hoare triple {34294#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,421 INFO L256 TraceCheckUtils]: 6: Hoare triple {34294#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {34294#true} is VALID [2018-11-23 12:48:45,421 INFO L273 TraceCheckUtils]: 7: Hoare triple {34294#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,421 INFO L273 TraceCheckUtils]: 8: Hoare triple {34294#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {34294#true} is VALID [2018-11-23 12:48:45,422 INFO L273 TraceCheckUtils]: 9: Hoare triple {34294#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {34294#true} is VALID [2018-11-23 12:48:45,422 INFO L273 TraceCheckUtils]: 10: Hoare triple {34294#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {34294#true} is VALID [2018-11-23 12:48:45,422 INFO L273 TraceCheckUtils]: 11: Hoare triple {34294#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,422 INFO L273 TraceCheckUtils]: 12: Hoare triple {34294#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {34294#true} is VALID [2018-11-23 12:48:45,422 INFO L273 TraceCheckUtils]: 13: Hoare triple {34294#true} assume !false; {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 14: Hoare triple {34294#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 15: Hoare triple {34294#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 16: Hoare triple {34294#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 17: Hoare triple {34294#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 18: Hoare triple {34294#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 19: Hoare triple {34294#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 20: Hoare triple {34294#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 21: Hoare triple {34294#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,423 INFO L273 TraceCheckUtils]: 22: Hoare triple {34294#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 23: Hoare triple {34294#true} assume 8464 == #t~mem32;havoc #t~mem32; {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 24: Hoare triple {34294#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 25: Hoare triple {34294#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 26: Hoare triple {34294#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 27: Hoare triple {34294#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 28: Hoare triple {34294#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 29: Hoare triple {34294#true} ~skip~0 := 0; {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 30: Hoare triple {34294#true} assume !false; {34294#true} is VALID [2018-11-23 12:48:45,424 INFO L273 TraceCheckUtils]: 31: Hoare triple {34294#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 32: Hoare triple {34294#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 33: Hoare triple {34294#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 34: Hoare triple {34294#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 35: Hoare triple {34294#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 36: Hoare triple {34294#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 37: Hoare triple {34294#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 38: Hoare triple {34294#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 39: Hoare triple {34294#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,425 INFO L273 TraceCheckUtils]: 40: Hoare triple {34294#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,426 INFO L273 TraceCheckUtils]: 41: Hoare triple {34294#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,426 INFO L273 TraceCheckUtils]: 42: Hoare triple {34294#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,426 INFO L273 TraceCheckUtils]: 43: Hoare triple {34294#true} assume 8496 == #t~mem35;havoc #t~mem35; {34294#true} is VALID [2018-11-23 12:48:45,426 INFO L273 TraceCheckUtils]: 44: Hoare triple {34294#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {34294#true} is VALID [2018-11-23 12:48:45,426 INFO L273 TraceCheckUtils]: 45: Hoare triple {34294#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {34294#true} is VALID [2018-11-23 12:48:45,426 INFO L273 TraceCheckUtils]: 46: Hoare triple {34294#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {34294#true} is VALID [2018-11-23 12:48:45,427 INFO L273 TraceCheckUtils]: 47: Hoare triple {34294#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,428 INFO L273 TraceCheckUtils]: 48: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} call write~int(0, ~s.base, 64 + ~s.offset, 4); {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,428 INFO L273 TraceCheckUtils]: 49: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,428 INFO L273 TraceCheckUtils]: 50: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,429 INFO L273 TraceCheckUtils]: 51: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} ~skip~0 := 0; {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,429 INFO L273 TraceCheckUtils]: 52: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} assume !false; {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,429 INFO L273 TraceCheckUtils]: 53: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} is VALID [2018-11-23 12:48:45,430 INFO L273 TraceCheckUtils]: 54: Hoare triple {34296#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8656)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {34297#(= |ssl3_accept_#t~mem25| 8656)} is VALID [2018-11-23 12:48:45,430 INFO L273 TraceCheckUtils]: 55: Hoare triple {34297#(= |ssl3_accept_#t~mem25| 8656)} assume 16384 == #t~mem25;havoc #t~mem25; {34295#false} is VALID [2018-11-23 12:48:45,430 INFO L273 TraceCheckUtils]: 56: Hoare triple {34295#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,430 INFO L273 TraceCheckUtils]: 57: Hoare triple {34295#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {34295#false} is VALID [2018-11-23 12:48:45,430 INFO L273 TraceCheckUtils]: 58: Hoare triple {34295#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,431 INFO L273 TraceCheckUtils]: 59: Hoare triple {34295#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,431 INFO L273 TraceCheckUtils]: 60: Hoare triple {34295#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {34295#false} is VALID [2018-11-23 12:48:45,431 INFO L273 TraceCheckUtils]: 61: Hoare triple {34295#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,431 INFO L273 TraceCheckUtils]: 62: Hoare triple {34295#false} assume 12292 != #t~mem62;havoc #t~mem62; {34295#false} is VALID [2018-11-23 12:48:45,431 INFO L273 TraceCheckUtils]: 63: Hoare triple {34295#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {34295#false} is VALID [2018-11-23 12:48:45,432 INFO L273 TraceCheckUtils]: 64: Hoare triple {34295#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,432 INFO L273 TraceCheckUtils]: 65: Hoare triple {34295#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {34295#false} is VALID [2018-11-23 12:48:45,432 INFO L273 TraceCheckUtils]: 66: Hoare triple {34295#false} ~skip~0 := 0; {34295#false} is VALID [2018-11-23 12:48:45,432 INFO L273 TraceCheckUtils]: 67: Hoare triple {34295#false} assume !false; {34295#false} is VALID [2018-11-23 12:48:45,432 INFO L273 TraceCheckUtils]: 68: Hoare triple {34295#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,432 INFO L273 TraceCheckUtils]: 69: Hoare triple {34295#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 70: Hoare triple {34295#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 71: Hoare triple {34295#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 72: Hoare triple {34295#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 73: Hoare triple {34295#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 74: Hoare triple {34295#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 75: Hoare triple {34295#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 76: Hoare triple {34295#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 77: Hoare triple {34295#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,433 INFO L273 TraceCheckUtils]: 78: Hoare triple {34295#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 79: Hoare triple {34295#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 80: Hoare triple {34295#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 81: Hoare triple {34295#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 82: Hoare triple {34295#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 83: Hoare triple {34295#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 84: Hoare triple {34295#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 85: Hoare triple {34295#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 86: Hoare triple {34295#false} assume 8544 == #t~mem41;havoc #t~mem41; {34295#false} is VALID [2018-11-23 12:48:45,434 INFO L273 TraceCheckUtils]: 87: Hoare triple {34295#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 88: Hoare triple {34295#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 89: Hoare triple {34295#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 90: Hoare triple {34295#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 91: Hoare triple {34295#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 92: Hoare triple {34295#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 93: Hoare triple {34295#false} assume 8 == ~blastFlag~0; {34295#false} is VALID [2018-11-23 12:48:45,435 INFO L273 TraceCheckUtils]: 94: Hoare triple {34295#false} assume !false; {34295#false} is VALID [2018-11-23 12:48:45,440 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 46 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:45,440 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:45,440 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:45,440 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 95 [2018-11-23 12:48:45,441 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:45,441 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:45,590 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 85 edges. 85 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:45,590 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:45,590 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:45,590 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:45,591 INFO L87 Difference]: Start difference. First operand 260 states and 388 transitions. Second operand 4 states. [2018-11-23 12:48:46,945 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:46,945 INFO L93 Difference]: Finished difference Result 542 states and 811 transitions. [2018-11-23 12:48:46,945 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:46,945 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 95 [2018-11-23 12:48:46,946 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:46,946 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:46,948 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 541 transitions. [2018-11-23 12:48:46,948 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:46,949 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 541 transitions. [2018-11-23 12:48:46,950 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 541 transitions. [2018-11-23 12:48:47,538 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 541 edges. 541 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:47,544 INFO L225 Difference]: With dead ends: 542 [2018-11-23 12:48:47,544 INFO L226 Difference]: Without dead ends: 307 [2018-11-23 12:48:47,545 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:47,545 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 307 states. [2018-11-23 12:48:47,643 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 307 to 260. [2018-11-23 12:48:47,643 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:47,643 INFO L82 GeneralOperation]: Start isEquivalent. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:47,643 INFO L74 IsIncluded]: Start isIncluded. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:47,644 INFO L87 Difference]: Start difference. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:47,650 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:47,651 INFO L93 Difference]: Finished difference Result 307 states and 450 transitions. [2018-11-23 12:48:47,651 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 450 transitions. [2018-11-23 12:48:47,651 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:47,651 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:47,651 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:47,651 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:47,658 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:47,659 INFO L93 Difference]: Finished difference Result 307 states and 450 transitions. [2018-11-23 12:48:47,659 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 450 transitions. [2018-11-23 12:48:47,659 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:47,659 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:47,660 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:47,660 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:47,660 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:47,665 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 387 transitions. [2018-11-23 12:48:47,665 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 387 transitions. Word has length 95 [2018-11-23 12:48:47,665 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:47,666 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 387 transitions. [2018-11-23 12:48:47,666 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:47,666 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 387 transitions. [2018-11-23 12:48:47,666 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 96 [2018-11-23 12:48:47,667 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:47,667 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:47,667 INFO L423 AbstractCegarLoop]: === Iteration 30 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:47,667 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:47,667 INFO L82 PathProgramCache]: Analyzing trace with hash -1143821711, now seen corresponding path program 1 times [2018-11-23 12:48:47,667 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:47,668 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:47,668 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:47,669 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:47,669 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:47,681 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:47,824 INFO L256 TraceCheckUtils]: 0: Hoare triple {35840#true} call ULTIMATE.init(); {35840#true} is VALID [2018-11-23 12:48:47,824 INFO L273 TraceCheckUtils]: 1: Hoare triple {35840#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,824 INFO L273 TraceCheckUtils]: 2: Hoare triple {35840#true} assume true; {35840#true} is VALID [2018-11-23 12:48:47,824 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {35840#true} {35840#true} #633#return; {35840#true} is VALID [2018-11-23 12:48:47,824 INFO L256 TraceCheckUtils]: 4: Hoare triple {35840#true} call #t~ret138 := main(); {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 5: Hoare triple {35840#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L256 TraceCheckUtils]: 6: Hoare triple {35840#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 7: Hoare triple {35840#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 8: Hoare triple {35840#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 9: Hoare triple {35840#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 10: Hoare triple {35840#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 11: Hoare triple {35840#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,825 INFO L273 TraceCheckUtils]: 12: Hoare triple {35840#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 13: Hoare triple {35840#true} assume !false; {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 14: Hoare triple {35840#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 15: Hoare triple {35840#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 16: Hoare triple {35840#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 17: Hoare triple {35840#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 18: Hoare triple {35840#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 19: Hoare triple {35840#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 20: Hoare triple {35840#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,826 INFO L273 TraceCheckUtils]: 21: Hoare triple {35840#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 22: Hoare triple {35840#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 23: Hoare triple {35840#true} assume 8464 == #t~mem32;havoc #t~mem32; {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 24: Hoare triple {35840#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 25: Hoare triple {35840#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 26: Hoare triple {35840#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 27: Hoare triple {35840#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 28: Hoare triple {35840#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 29: Hoare triple {35840#true} ~skip~0 := 0; {35840#true} is VALID [2018-11-23 12:48:47,827 INFO L273 TraceCheckUtils]: 30: Hoare triple {35840#true} assume !false; {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 31: Hoare triple {35840#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 32: Hoare triple {35840#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 33: Hoare triple {35840#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 34: Hoare triple {35840#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 35: Hoare triple {35840#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 36: Hoare triple {35840#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 37: Hoare triple {35840#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 38: Hoare triple {35840#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,828 INFO L273 TraceCheckUtils]: 39: Hoare triple {35840#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 40: Hoare triple {35840#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 41: Hoare triple {35840#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 42: Hoare triple {35840#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 43: Hoare triple {35840#true} assume 8496 == #t~mem35;havoc #t~mem35; {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 44: Hoare triple {35840#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 45: Hoare triple {35840#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {35840#true} is VALID [2018-11-23 12:48:47,829 INFO L273 TraceCheckUtils]: 46: Hoare triple {35840#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {35840#true} is VALID [2018-11-23 12:48:47,830 INFO L273 TraceCheckUtils]: 47: Hoare triple {35840#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,835 INFO L273 TraceCheckUtils]: 48: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} call write~int(0, ~s.base, 64 + ~s.offset, 4); {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,835 INFO L273 TraceCheckUtils]: 49: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,835 INFO L273 TraceCheckUtils]: 50: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,838 INFO L273 TraceCheckUtils]: 51: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} ~skip~0 := 0; {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,838 INFO L273 TraceCheckUtils]: 52: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} assume !false; {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,841 INFO L273 TraceCheckUtils]: 53: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} is VALID [2018-11-23 12:48:47,841 INFO L273 TraceCheckUtils]: 54: Hoare triple {35842#(= (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)) 8512)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {35843#(= |ssl3_accept_#t~mem25| 8512)} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 55: Hoare triple {35843#(= |ssl3_accept_#t~mem25| 8512)} assume 16384 == #t~mem25;havoc #t~mem25; {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 56: Hoare triple {35841#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 57: Hoare triple {35841#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 58: Hoare triple {35841#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 59: Hoare triple {35841#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 60: Hoare triple {35841#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 61: Hoare triple {35841#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,843 INFO L273 TraceCheckUtils]: 62: Hoare triple {35841#false} assume 12292 != #t~mem62;havoc #t~mem62; {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 63: Hoare triple {35841#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 64: Hoare triple {35841#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 65: Hoare triple {35841#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 66: Hoare triple {35841#false} ~skip~0 := 0; {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 67: Hoare triple {35841#false} assume !false; {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 68: Hoare triple {35841#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 69: Hoare triple {35841#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 70: Hoare triple {35841#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,844 INFO L273 TraceCheckUtils]: 71: Hoare triple {35841#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 72: Hoare triple {35841#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 73: Hoare triple {35841#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 74: Hoare triple {35841#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 75: Hoare triple {35841#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 76: Hoare triple {35841#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 77: Hoare triple {35841#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 78: Hoare triple {35841#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 79: Hoare triple {35841#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,845 INFO L273 TraceCheckUtils]: 80: Hoare triple {35841#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 81: Hoare triple {35841#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 82: Hoare triple {35841#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 83: Hoare triple {35841#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 84: Hoare triple {35841#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 85: Hoare triple {35841#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 86: Hoare triple {35841#false} assume 8544 == #t~mem41;havoc #t~mem41; {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 87: Hoare triple {35841#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 88: Hoare triple {35841#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,846 INFO L273 TraceCheckUtils]: 89: Hoare triple {35841#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {35841#false} is VALID [2018-11-23 12:48:47,847 INFO L273 TraceCheckUtils]: 90: Hoare triple {35841#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {35841#false} is VALID [2018-11-23 12:48:47,847 INFO L273 TraceCheckUtils]: 91: Hoare triple {35841#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {35841#false} is VALID [2018-11-23 12:48:47,847 INFO L273 TraceCheckUtils]: 92: Hoare triple {35841#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {35841#false} is VALID [2018-11-23 12:48:47,847 INFO L273 TraceCheckUtils]: 93: Hoare triple {35841#false} assume 8 == ~blastFlag~0; {35841#false} is VALID [2018-11-23 12:48:47,847 INFO L273 TraceCheckUtils]: 94: Hoare triple {35841#false} assume !false; {35841#false} is VALID [2018-11-23 12:48:47,852 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 46 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:47,852 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:47,852 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:47,852 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 95 [2018-11-23 12:48:47,852 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:47,852 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:47,964 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 85 edges. 85 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:47,964 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:47,964 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:47,964 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:47,964 INFO L87 Difference]: Start difference. First operand 260 states and 387 transitions. Second operand 4 states. [2018-11-23 12:48:49,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:49,188 INFO L93 Difference]: Finished difference Result 517 states and 775 transitions. [2018-11-23 12:48:49,188 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:49,188 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 95 [2018-11-23 12:48:49,188 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:49,188 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:49,190 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 477 transitions. [2018-11-23 12:48:49,190 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:49,192 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 477 transitions. [2018-11-23 12:48:49,192 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 477 transitions. [2018-11-23 12:48:49,644 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 477 edges. 477 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:49,650 INFO L225 Difference]: With dead ends: 517 [2018-11-23 12:48:49,650 INFO L226 Difference]: Without dead ends: 282 [2018-11-23 12:48:49,650 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:49,651 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2018-11-23 12:48:49,774 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 260. [2018-11-23 12:48:49,774 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:49,775 INFO L82 GeneralOperation]: Start isEquivalent. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:49,775 INFO L74 IsIncluded]: Start isIncluded. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:49,775 INFO L87 Difference]: Start difference. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:49,780 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:49,781 INFO L93 Difference]: Finished difference Result 282 states and 415 transitions. [2018-11-23 12:48:49,781 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 415 transitions. [2018-11-23 12:48:49,781 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:49,781 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:49,781 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:49,781 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:49,786 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:49,786 INFO L93 Difference]: Finished difference Result 282 states and 415 transitions. [2018-11-23 12:48:49,786 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 415 transitions. [2018-11-23 12:48:49,786 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:49,786 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:49,786 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:49,787 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:49,787 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:49,790 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 386 transitions. [2018-11-23 12:48:49,791 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 386 transitions. Word has length 95 [2018-11-23 12:48:49,791 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:49,791 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 386 transitions. [2018-11-23 12:48:49,791 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:49,791 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 386 transitions. [2018-11-23 12:48:49,792 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 97 [2018-11-23 12:48:49,792 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:49,792 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:49,792 INFO L423 AbstractCegarLoop]: === Iteration 31 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:49,792 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:49,792 INFO L82 PathProgramCache]: Analyzing trace with hash 713781314, now seen corresponding path program 1 times [2018-11-23 12:48:49,793 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:49,793 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:49,794 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:49,794 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:49,794 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:49,809 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:50,064 WARN L180 SmtUtils]: Spent 100.00 ms on a formula simplification. DAG size of input: 16 DAG size of output: 13 [2018-11-23 12:48:50,165 INFO L256 TraceCheckUtils]: 0: Hoare triple {37303#true} call ULTIMATE.init(); {37303#true} is VALID [2018-11-23 12:48:50,165 INFO L273 TraceCheckUtils]: 1: Hoare triple {37303#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,166 INFO L273 TraceCheckUtils]: 2: Hoare triple {37303#true} assume true; {37303#true} is VALID [2018-11-23 12:48:50,166 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {37303#true} {37303#true} #633#return; {37303#true} is VALID [2018-11-23 12:48:50,166 INFO L256 TraceCheckUtils]: 4: Hoare triple {37303#true} call #t~ret138 := main(); {37303#true} is VALID [2018-11-23 12:48:50,166 INFO L273 TraceCheckUtils]: 5: Hoare triple {37303#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,166 INFO L256 TraceCheckUtils]: 6: Hoare triple {37303#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {37303#true} is VALID [2018-11-23 12:48:50,167 INFO L273 TraceCheckUtils]: 7: Hoare triple {37303#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,167 INFO L273 TraceCheckUtils]: 8: Hoare triple {37303#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {37303#true} is VALID [2018-11-23 12:48:50,167 INFO L273 TraceCheckUtils]: 9: Hoare triple {37303#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {37303#true} is VALID [2018-11-23 12:48:50,167 INFO L273 TraceCheckUtils]: 10: Hoare triple {37303#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {37303#true} is VALID [2018-11-23 12:48:50,167 INFO L273 TraceCheckUtils]: 11: Hoare triple {37303#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 12: Hoare triple {37303#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 13: Hoare triple {37303#true} assume !false; {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 14: Hoare triple {37303#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 15: Hoare triple {37303#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 16: Hoare triple {37303#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 17: Hoare triple {37303#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 18: Hoare triple {37303#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 19: Hoare triple {37303#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,168 INFO L273 TraceCheckUtils]: 20: Hoare triple {37303#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 21: Hoare triple {37303#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 22: Hoare triple {37303#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 23: Hoare triple {37303#true} assume 8464 == #t~mem32;havoc #t~mem32; {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 24: Hoare triple {37303#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 25: Hoare triple {37303#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 26: Hoare triple {37303#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 27: Hoare triple {37303#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 28: Hoare triple {37303#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {37303#true} is VALID [2018-11-23 12:48:50,169 INFO L273 TraceCheckUtils]: 29: Hoare triple {37303#true} ~skip~0 := 0; {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 30: Hoare triple {37303#true} assume !false; {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 31: Hoare triple {37303#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 32: Hoare triple {37303#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 33: Hoare triple {37303#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 34: Hoare triple {37303#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 35: Hoare triple {37303#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 36: Hoare triple {37303#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 37: Hoare triple {37303#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,170 INFO L273 TraceCheckUtils]: 38: Hoare triple {37303#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 39: Hoare triple {37303#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 40: Hoare triple {37303#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 41: Hoare triple {37303#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 42: Hoare triple {37303#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 43: Hoare triple {37303#true} assume 8496 == #t~mem35;havoc #t~mem35; {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 44: Hoare triple {37303#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 45: Hoare triple {37303#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {37303#true} is VALID [2018-11-23 12:48:50,171 INFO L273 TraceCheckUtils]: 46: Hoare triple {37303#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {37303#true} is VALID [2018-11-23 12:48:50,172 INFO L273 TraceCheckUtils]: 47: Hoare triple {37303#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,173 INFO L273 TraceCheckUtils]: 48: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,173 INFO L273 TraceCheckUtils]: 49: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,173 INFO L273 TraceCheckUtils]: 50: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,174 INFO L273 TraceCheckUtils]: 51: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,174 INFO L273 TraceCheckUtils]: 52: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,174 INFO L273 TraceCheckUtils]: 53: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,175 INFO L273 TraceCheckUtils]: 54: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:50,175 INFO L273 TraceCheckUtils]: 55: Hoare triple {37305#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {37306#(= 8656 |ssl3_accept_#t~mem26|)} is VALID [2018-11-23 12:48:50,176 INFO L273 TraceCheckUtils]: 56: Hoare triple {37306#(= 8656 |ssl3_accept_#t~mem26|)} assume 8192 == #t~mem26;havoc #t~mem26; {37304#false} is VALID [2018-11-23 12:48:50,176 INFO L273 TraceCheckUtils]: 57: Hoare triple {37304#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,176 INFO L273 TraceCheckUtils]: 58: Hoare triple {37304#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {37304#false} is VALID [2018-11-23 12:48:50,176 INFO L273 TraceCheckUtils]: 59: Hoare triple {37304#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,176 INFO L273 TraceCheckUtils]: 60: Hoare triple {37304#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,177 INFO L273 TraceCheckUtils]: 61: Hoare triple {37304#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {37304#false} is VALID [2018-11-23 12:48:50,177 INFO L273 TraceCheckUtils]: 62: Hoare triple {37304#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,177 INFO L273 TraceCheckUtils]: 63: Hoare triple {37304#false} assume 12292 != #t~mem62;havoc #t~mem62; {37304#false} is VALID [2018-11-23 12:48:50,177 INFO L273 TraceCheckUtils]: 64: Hoare triple {37304#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {37304#false} is VALID [2018-11-23 12:48:50,177 INFO L273 TraceCheckUtils]: 65: Hoare triple {37304#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,177 INFO L273 TraceCheckUtils]: 66: Hoare triple {37304#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {37304#false} is VALID [2018-11-23 12:48:50,178 INFO L273 TraceCheckUtils]: 67: Hoare triple {37304#false} ~skip~0 := 0; {37304#false} is VALID [2018-11-23 12:48:50,178 INFO L273 TraceCheckUtils]: 68: Hoare triple {37304#false} assume !false; {37304#false} is VALID [2018-11-23 12:48:50,178 INFO L273 TraceCheckUtils]: 69: Hoare triple {37304#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,178 INFO L273 TraceCheckUtils]: 70: Hoare triple {37304#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,178 INFO L273 TraceCheckUtils]: 71: Hoare triple {37304#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,178 INFO L273 TraceCheckUtils]: 72: Hoare triple {37304#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 73: Hoare triple {37304#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 74: Hoare triple {37304#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 75: Hoare triple {37304#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 76: Hoare triple {37304#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 77: Hoare triple {37304#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 78: Hoare triple {37304#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 79: Hoare triple {37304#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 80: Hoare triple {37304#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,179 INFO L273 TraceCheckUtils]: 81: Hoare triple {37304#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 82: Hoare triple {37304#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 83: Hoare triple {37304#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 84: Hoare triple {37304#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 85: Hoare triple {37304#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 86: Hoare triple {37304#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 87: Hoare triple {37304#false} assume 8544 == #t~mem41;havoc #t~mem41; {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 88: Hoare triple {37304#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 89: Hoare triple {37304#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,180 INFO L273 TraceCheckUtils]: 90: Hoare triple {37304#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {37304#false} is VALID [2018-11-23 12:48:50,181 INFO L273 TraceCheckUtils]: 91: Hoare triple {37304#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {37304#false} is VALID [2018-11-23 12:48:50,181 INFO L273 TraceCheckUtils]: 92: Hoare triple {37304#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {37304#false} is VALID [2018-11-23 12:48:50,181 INFO L273 TraceCheckUtils]: 93: Hoare triple {37304#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {37304#false} is VALID [2018-11-23 12:48:50,181 INFO L273 TraceCheckUtils]: 94: Hoare triple {37304#false} assume 8 == ~blastFlag~0; {37304#false} is VALID [2018-11-23 12:48:50,181 INFO L273 TraceCheckUtils]: 95: Hoare triple {37304#false} assume !false; {37304#false} is VALID [2018-11-23 12:48:50,186 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 49 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:50,186 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:50,186 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:50,187 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 96 [2018-11-23 12:48:50,187 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:50,187 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:50,266 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 86 edges. 86 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:50,266 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:50,267 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:50,267 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:50,267 INFO L87 Difference]: Start difference. First operand 260 states and 386 transitions. Second operand 4 states. [2018-11-23 12:48:51,642 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:51,642 INFO L93 Difference]: Finished difference Result 542 states and 807 transitions. [2018-11-23 12:48:51,642 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:51,642 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 96 [2018-11-23 12:48:51,643 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:51,643 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:51,645 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 540 transitions. [2018-11-23 12:48:51,645 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:51,647 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 540 transitions. [2018-11-23 12:48:51,647 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 540 transitions. [2018-11-23 12:48:52,172 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 540 edges. 540 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:52,178 INFO L225 Difference]: With dead ends: 542 [2018-11-23 12:48:52,178 INFO L226 Difference]: Without dead ends: 307 [2018-11-23 12:48:52,179 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:52,179 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 307 states. [2018-11-23 12:48:52,381 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 307 to 260. [2018-11-23 12:48:52,381 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:52,381 INFO L82 GeneralOperation]: Start isEquivalent. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:52,381 INFO L74 IsIncluded]: Start isIncluded. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:52,381 INFO L87 Difference]: Start difference. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:52,387 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:52,387 INFO L93 Difference]: Finished difference Result 307 states and 448 transitions. [2018-11-23 12:48:52,387 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 448 transitions. [2018-11-23 12:48:52,388 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:52,388 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:52,388 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:52,388 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:52,393 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:52,393 INFO L93 Difference]: Finished difference Result 307 states and 448 transitions. [2018-11-23 12:48:52,393 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 448 transitions. [2018-11-23 12:48:52,394 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:52,394 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:52,394 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:52,394 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:52,394 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:52,398 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 385 transitions. [2018-11-23 12:48:52,398 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 385 transitions. Word has length 96 [2018-11-23 12:48:52,398 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:52,398 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 385 transitions. [2018-11-23 12:48:52,398 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:52,398 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 385 transitions. [2018-11-23 12:48:52,399 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 97 [2018-11-23 12:48:52,399 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:52,399 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:52,399 INFO L423 AbstractCegarLoop]: === Iteration 32 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:52,399 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:52,399 INFO L82 PathProgramCache]: Analyzing trace with hash 698262596, now seen corresponding path program 1 times [2018-11-23 12:48:52,399 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:52,400 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:52,400 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:52,400 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:52,401 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:52,414 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:52,994 INFO L256 TraceCheckUtils]: 0: Hoare triple {38849#true} call ULTIMATE.init(); {38849#true} is VALID [2018-11-23 12:48:52,994 INFO L273 TraceCheckUtils]: 1: Hoare triple {38849#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,994 INFO L273 TraceCheckUtils]: 2: Hoare triple {38849#true} assume true; {38849#true} is VALID [2018-11-23 12:48:52,994 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {38849#true} {38849#true} #633#return; {38849#true} is VALID [2018-11-23 12:48:52,994 INFO L256 TraceCheckUtils]: 4: Hoare triple {38849#true} call #t~ret138 := main(); {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 5: Hoare triple {38849#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L256 TraceCheckUtils]: 6: Hoare triple {38849#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 7: Hoare triple {38849#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 8: Hoare triple {38849#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 9: Hoare triple {38849#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 10: Hoare triple {38849#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 11: Hoare triple {38849#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 12: Hoare triple {38849#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {38849#true} is VALID [2018-11-23 12:48:52,995 INFO L273 TraceCheckUtils]: 13: Hoare triple {38849#true} assume !false; {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 14: Hoare triple {38849#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 15: Hoare triple {38849#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 16: Hoare triple {38849#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 17: Hoare triple {38849#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 18: Hoare triple {38849#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 19: Hoare triple {38849#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 20: Hoare triple {38849#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 21: Hoare triple {38849#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,996 INFO L273 TraceCheckUtils]: 22: Hoare triple {38849#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 23: Hoare triple {38849#true} assume 8464 == #t~mem32;havoc #t~mem32; {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 24: Hoare triple {38849#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 25: Hoare triple {38849#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 26: Hoare triple {38849#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 27: Hoare triple {38849#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 28: Hoare triple {38849#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 29: Hoare triple {38849#true} ~skip~0 := 0; {38849#true} is VALID [2018-11-23 12:48:52,997 INFO L273 TraceCheckUtils]: 30: Hoare triple {38849#true} assume !false; {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 31: Hoare triple {38849#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 32: Hoare triple {38849#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 33: Hoare triple {38849#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 34: Hoare triple {38849#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 35: Hoare triple {38849#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 36: Hoare triple {38849#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 37: Hoare triple {38849#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 38: Hoare triple {38849#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,998 INFO L273 TraceCheckUtils]: 39: Hoare triple {38849#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 40: Hoare triple {38849#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 41: Hoare triple {38849#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 42: Hoare triple {38849#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 43: Hoare triple {38849#true} assume 8496 == #t~mem35;havoc #t~mem35; {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 44: Hoare triple {38849#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 45: Hoare triple {38849#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {38849#true} is VALID [2018-11-23 12:48:52,999 INFO L273 TraceCheckUtils]: 46: Hoare triple {38849#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {38849#true} is VALID [2018-11-23 12:48:53,000 INFO L273 TraceCheckUtils]: 47: Hoare triple {38849#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,005 INFO L273 TraceCheckUtils]: 48: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,005 INFO L273 TraceCheckUtils]: 49: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,007 INFO L273 TraceCheckUtils]: 50: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,007 INFO L273 TraceCheckUtils]: 51: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,009 INFO L273 TraceCheckUtils]: 52: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,009 INFO L273 TraceCheckUtils]: 53: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,011 INFO L273 TraceCheckUtils]: 54: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:53,011 INFO L273 TraceCheckUtils]: 55: Hoare triple {38851#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {38852#(= 8512 |ssl3_accept_#t~mem26|)} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 56: Hoare triple {38852#(= 8512 |ssl3_accept_#t~mem26|)} assume 8192 == #t~mem26;havoc #t~mem26; {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 57: Hoare triple {38850#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 58: Hoare triple {38850#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 59: Hoare triple {38850#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 60: Hoare triple {38850#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 61: Hoare triple {38850#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 62: Hoare triple {38850#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,014 INFO L273 TraceCheckUtils]: 63: Hoare triple {38850#false} assume 12292 != #t~mem62;havoc #t~mem62; {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 64: Hoare triple {38850#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 65: Hoare triple {38850#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 66: Hoare triple {38850#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 67: Hoare triple {38850#false} ~skip~0 := 0; {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 68: Hoare triple {38850#false} assume !false; {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 69: Hoare triple {38850#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 70: Hoare triple {38850#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 71: Hoare triple {38850#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,015 INFO L273 TraceCheckUtils]: 72: Hoare triple {38850#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 73: Hoare triple {38850#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 74: Hoare triple {38850#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 75: Hoare triple {38850#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 76: Hoare triple {38850#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 77: Hoare triple {38850#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 78: Hoare triple {38850#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 79: Hoare triple {38850#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 80: Hoare triple {38850#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,016 INFO L273 TraceCheckUtils]: 81: Hoare triple {38850#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 82: Hoare triple {38850#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 83: Hoare triple {38850#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 84: Hoare triple {38850#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 85: Hoare triple {38850#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 86: Hoare triple {38850#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 87: Hoare triple {38850#false} assume 8544 == #t~mem41;havoc #t~mem41; {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 88: Hoare triple {38850#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,017 INFO L273 TraceCheckUtils]: 89: Hoare triple {38850#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,018 INFO L273 TraceCheckUtils]: 90: Hoare triple {38850#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {38850#false} is VALID [2018-11-23 12:48:53,018 INFO L273 TraceCheckUtils]: 91: Hoare triple {38850#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {38850#false} is VALID [2018-11-23 12:48:53,018 INFO L273 TraceCheckUtils]: 92: Hoare triple {38850#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {38850#false} is VALID [2018-11-23 12:48:53,018 INFO L273 TraceCheckUtils]: 93: Hoare triple {38850#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {38850#false} is VALID [2018-11-23 12:48:53,018 INFO L273 TraceCheckUtils]: 94: Hoare triple {38850#false} assume 8 == ~blastFlag~0; {38850#false} is VALID [2018-11-23 12:48:53,018 INFO L273 TraceCheckUtils]: 95: Hoare triple {38850#false} assume !false; {38850#false} is VALID [2018-11-23 12:48:53,023 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 49 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:53,023 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:53,023 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:53,024 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 96 [2018-11-23 12:48:53,024 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:53,024 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:53,134 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 86 edges. 86 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:53,134 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:53,135 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:53,135 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:53,135 INFO L87 Difference]: Start difference. First operand 260 states and 385 transitions. Second operand 4 states. [2018-11-23 12:48:54,387 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:54,388 INFO L93 Difference]: Finished difference Result 517 states and 771 transitions. [2018-11-23 12:48:54,388 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:54,388 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 96 [2018-11-23 12:48:54,388 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:54,388 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:54,390 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 476 transitions. [2018-11-23 12:48:54,391 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:54,392 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 476 transitions. [2018-11-23 12:48:54,392 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 476 transitions. [2018-11-23 12:48:54,844 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 476 edges. 476 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:54,849 INFO L225 Difference]: With dead ends: 517 [2018-11-23 12:48:54,850 INFO L226 Difference]: Without dead ends: 282 [2018-11-23 12:48:54,850 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:54,851 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2018-11-23 12:48:54,990 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 260. [2018-11-23 12:48:54,990 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:54,991 INFO L82 GeneralOperation]: Start isEquivalent. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:54,991 INFO L74 IsIncluded]: Start isIncluded. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:54,991 INFO L87 Difference]: Start difference. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:54,996 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:54,996 INFO L93 Difference]: Finished difference Result 282 states and 413 transitions. [2018-11-23 12:48:54,996 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 413 transitions. [2018-11-23 12:48:54,996 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:54,997 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:54,997 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:54,997 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:55,001 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:55,001 INFO L93 Difference]: Finished difference Result 282 states and 413 transitions. [2018-11-23 12:48:55,002 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 413 transitions. [2018-11-23 12:48:55,002 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:55,002 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:55,002 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:55,002 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:55,002 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:55,006 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 384 transitions. [2018-11-23 12:48:55,006 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 384 transitions. Word has length 96 [2018-11-23 12:48:55,006 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:55,006 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 384 transitions. [2018-11-23 12:48:55,007 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:55,007 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 384 transitions. [2018-11-23 12:48:55,007 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2018-11-23 12:48:55,007 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:55,007 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:55,007 INFO L423 AbstractCegarLoop]: === Iteration 33 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:55,008 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:55,008 INFO L82 PathProgramCache]: Analyzing trace with hash 1167346926, now seen corresponding path program 1 times [2018-11-23 12:48:55,008 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:55,008 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:55,009 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:55,009 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:55,009 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:55,022 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:55,249 INFO L256 TraceCheckUtils]: 0: Hoare triple {40312#true} call ULTIMATE.init(); {40312#true} is VALID [2018-11-23 12:48:55,249 INFO L273 TraceCheckUtils]: 1: Hoare triple {40312#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,249 INFO L273 TraceCheckUtils]: 2: Hoare triple {40312#true} assume true; {40312#true} is VALID [2018-11-23 12:48:55,250 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {40312#true} {40312#true} #633#return; {40312#true} is VALID [2018-11-23 12:48:55,250 INFO L256 TraceCheckUtils]: 4: Hoare triple {40312#true} call #t~ret138 := main(); {40312#true} is VALID [2018-11-23 12:48:55,250 INFO L273 TraceCheckUtils]: 5: Hoare triple {40312#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,250 INFO L256 TraceCheckUtils]: 6: Hoare triple {40312#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {40312#true} is VALID [2018-11-23 12:48:55,250 INFO L273 TraceCheckUtils]: 7: Hoare triple {40312#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,251 INFO L273 TraceCheckUtils]: 8: Hoare triple {40312#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {40312#true} is VALID [2018-11-23 12:48:55,251 INFO L273 TraceCheckUtils]: 9: Hoare triple {40312#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {40312#true} is VALID [2018-11-23 12:48:55,251 INFO L273 TraceCheckUtils]: 10: Hoare triple {40312#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {40312#true} is VALID [2018-11-23 12:48:55,251 INFO L273 TraceCheckUtils]: 11: Hoare triple {40312#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,251 INFO L273 TraceCheckUtils]: 12: Hoare triple {40312#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {40312#true} is VALID [2018-11-23 12:48:55,251 INFO L273 TraceCheckUtils]: 13: Hoare triple {40312#true} assume !false; {40312#true} is VALID [2018-11-23 12:48:55,252 INFO L273 TraceCheckUtils]: 14: Hoare triple {40312#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,252 INFO L273 TraceCheckUtils]: 15: Hoare triple {40312#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,252 INFO L273 TraceCheckUtils]: 16: Hoare triple {40312#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,252 INFO L273 TraceCheckUtils]: 17: Hoare triple {40312#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,252 INFO L273 TraceCheckUtils]: 18: Hoare triple {40312#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 19: Hoare triple {40312#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 20: Hoare triple {40312#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 21: Hoare triple {40312#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 22: Hoare triple {40312#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 23: Hoare triple {40312#true} assume 8464 == #t~mem32;havoc #t~mem32; {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 24: Hoare triple {40312#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {40312#true} is VALID [2018-11-23 12:48:55,253 INFO L273 TraceCheckUtils]: 25: Hoare triple {40312#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 26: Hoare triple {40312#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 27: Hoare triple {40312#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 28: Hoare triple {40312#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 29: Hoare triple {40312#true} ~skip~0 := 0; {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 30: Hoare triple {40312#true} assume !false; {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 31: Hoare triple {40312#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 32: Hoare triple {40312#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 33: Hoare triple {40312#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,254 INFO L273 TraceCheckUtils]: 34: Hoare triple {40312#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 35: Hoare triple {40312#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 36: Hoare triple {40312#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 37: Hoare triple {40312#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 38: Hoare triple {40312#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 39: Hoare triple {40312#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 40: Hoare triple {40312#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 41: Hoare triple {40312#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 42: Hoare triple {40312#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,255 INFO L273 TraceCheckUtils]: 43: Hoare triple {40312#true} assume 8496 == #t~mem35;havoc #t~mem35; {40312#true} is VALID [2018-11-23 12:48:55,256 INFO L273 TraceCheckUtils]: 44: Hoare triple {40312#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {40312#true} is VALID [2018-11-23 12:48:55,256 INFO L273 TraceCheckUtils]: 45: Hoare triple {40312#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {40312#true} is VALID [2018-11-23 12:48:55,256 INFO L273 TraceCheckUtils]: 46: Hoare triple {40312#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {40312#true} is VALID [2018-11-23 12:48:55,257 INFO L273 TraceCheckUtils]: 47: Hoare triple {40312#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,257 INFO L273 TraceCheckUtils]: 48: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,258 INFO L273 TraceCheckUtils]: 49: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,258 INFO L273 TraceCheckUtils]: 50: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,258 INFO L273 TraceCheckUtils]: 51: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,259 INFO L273 TraceCheckUtils]: 52: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,259 INFO L273 TraceCheckUtils]: 53: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,259 INFO L273 TraceCheckUtils]: 54: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,259 INFO L273 TraceCheckUtils]: 55: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:55,260 INFO L273 TraceCheckUtils]: 56: Hoare triple {40314#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {40315#(= 8656 |ssl3_accept_#t~mem27|)} is VALID [2018-11-23 12:48:55,260 INFO L273 TraceCheckUtils]: 57: Hoare triple {40315#(= 8656 |ssl3_accept_#t~mem27|)} assume 24576 == #t~mem27;havoc #t~mem27; {40313#false} is VALID [2018-11-23 12:48:55,260 INFO L273 TraceCheckUtils]: 58: Hoare triple {40313#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 59: Hoare triple {40313#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 60: Hoare triple {40313#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 61: Hoare triple {40313#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 62: Hoare triple {40313#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 63: Hoare triple {40313#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 64: Hoare triple {40313#false} assume 12292 != #t~mem62;havoc #t~mem62; {40313#false} is VALID [2018-11-23 12:48:55,261 INFO L273 TraceCheckUtils]: 65: Hoare triple {40313#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {40313#false} is VALID [2018-11-23 12:48:55,262 INFO L273 TraceCheckUtils]: 66: Hoare triple {40313#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,262 INFO L273 TraceCheckUtils]: 67: Hoare triple {40313#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {40313#false} is VALID [2018-11-23 12:48:55,262 INFO L273 TraceCheckUtils]: 68: Hoare triple {40313#false} ~skip~0 := 0; {40313#false} is VALID [2018-11-23 12:48:55,262 INFO L273 TraceCheckUtils]: 69: Hoare triple {40313#false} assume !false; {40313#false} is VALID [2018-11-23 12:48:55,262 INFO L273 TraceCheckUtils]: 70: Hoare triple {40313#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,262 INFO L273 TraceCheckUtils]: 71: Hoare triple {40313#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 72: Hoare triple {40313#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 73: Hoare triple {40313#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 74: Hoare triple {40313#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 75: Hoare triple {40313#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 76: Hoare triple {40313#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 77: Hoare triple {40313#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,263 INFO L273 TraceCheckUtils]: 78: Hoare triple {40313#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 79: Hoare triple {40313#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 80: Hoare triple {40313#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 81: Hoare triple {40313#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 82: Hoare triple {40313#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 83: Hoare triple {40313#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 84: Hoare triple {40313#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 85: Hoare triple {40313#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 86: Hoare triple {40313#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,264 INFO L273 TraceCheckUtils]: 87: Hoare triple {40313#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 88: Hoare triple {40313#false} assume 8544 == #t~mem41;havoc #t~mem41; {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 89: Hoare triple {40313#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 90: Hoare triple {40313#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 91: Hoare triple {40313#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 92: Hoare triple {40313#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 93: Hoare triple {40313#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 94: Hoare triple {40313#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 95: Hoare triple {40313#false} assume 8 == ~blastFlag~0; {40313#false} is VALID [2018-11-23 12:48:55,265 INFO L273 TraceCheckUtils]: 96: Hoare triple {40313#false} assume !false; {40313#false} is VALID [2018-11-23 12:48:55,271 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 52 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:55,271 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:55,271 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:55,271 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 97 [2018-11-23 12:48:55,273 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:55,273 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:55,359 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 87 edges. 87 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:55,359 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:55,359 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:55,360 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:55,360 INFO L87 Difference]: Start difference. First operand 260 states and 384 transitions. Second operand 4 states. [2018-11-23 12:48:56,800 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:56,801 INFO L93 Difference]: Finished difference Result 542 states and 803 transitions. [2018-11-23 12:48:56,801 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:56,801 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 97 [2018-11-23 12:48:56,801 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:56,801 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:56,803 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 539 transitions. [2018-11-23 12:48:56,803 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:56,805 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 539 transitions. [2018-11-23 12:48:56,805 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 539 transitions. [2018-11-23 12:48:57,330 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 539 edges. 539 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:57,336 INFO L225 Difference]: With dead ends: 542 [2018-11-23 12:48:57,336 INFO L226 Difference]: Without dead ends: 307 [2018-11-23 12:48:57,337 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:57,338 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 307 states. [2018-11-23 12:48:57,469 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 307 to 260. [2018-11-23 12:48:57,469 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:57,469 INFO L82 GeneralOperation]: Start isEquivalent. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:57,469 INFO L74 IsIncluded]: Start isIncluded. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:57,469 INFO L87 Difference]: Start difference. First operand 307 states. Second operand 260 states. [2018-11-23 12:48:57,475 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:57,475 INFO L93 Difference]: Finished difference Result 307 states and 446 transitions. [2018-11-23 12:48:57,475 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 446 transitions. [2018-11-23 12:48:57,475 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:57,475 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:57,475 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:57,476 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 307 states. [2018-11-23 12:48:57,481 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:57,481 INFO L93 Difference]: Finished difference Result 307 states and 446 transitions. [2018-11-23 12:48:57,481 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 446 transitions. [2018-11-23 12:48:57,481 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:57,481 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:57,481 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:57,481 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:57,482 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:57,486 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 383 transitions. [2018-11-23 12:48:57,486 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 383 transitions. Word has length 97 [2018-11-23 12:48:57,486 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:57,486 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 383 transitions. [2018-11-23 12:48:57,486 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:57,486 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 383 transitions. [2018-11-23 12:48:57,487 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2018-11-23 12:48:57,487 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:57,487 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:57,487 INFO L423 AbstractCegarLoop]: === Iteration 34 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:57,487 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:57,488 INFO L82 PathProgramCache]: Analyzing trace with hash 686266668, now seen corresponding path program 1 times [2018-11-23 12:48:57,488 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:57,488 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:57,488 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:57,489 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:57,489 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:57,502 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:57,597 INFO L256 TraceCheckUtils]: 0: Hoare triple {41858#true} call ULTIMATE.init(); {41858#true} is VALID [2018-11-23 12:48:57,598 INFO L273 TraceCheckUtils]: 1: Hoare triple {41858#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,598 INFO L273 TraceCheckUtils]: 2: Hoare triple {41858#true} assume true; {41858#true} is VALID [2018-11-23 12:48:57,598 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {41858#true} {41858#true} #633#return; {41858#true} is VALID [2018-11-23 12:48:57,598 INFO L256 TraceCheckUtils]: 4: Hoare triple {41858#true} call #t~ret138 := main(); {41858#true} is VALID [2018-11-23 12:48:57,598 INFO L273 TraceCheckUtils]: 5: Hoare triple {41858#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,599 INFO L256 TraceCheckUtils]: 6: Hoare triple {41858#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {41858#true} is VALID [2018-11-23 12:48:57,599 INFO L273 TraceCheckUtils]: 7: Hoare triple {41858#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,599 INFO L273 TraceCheckUtils]: 8: Hoare triple {41858#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {41858#true} is VALID [2018-11-23 12:48:57,599 INFO L273 TraceCheckUtils]: 9: Hoare triple {41858#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {41858#true} is VALID [2018-11-23 12:48:57,599 INFO L273 TraceCheckUtils]: 10: Hoare triple {41858#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 11: Hoare triple {41858#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 12: Hoare triple {41858#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 13: Hoare triple {41858#true} assume !false; {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 14: Hoare triple {41858#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 15: Hoare triple {41858#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 16: Hoare triple {41858#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 17: Hoare triple {41858#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 18: Hoare triple {41858#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,600 INFO L273 TraceCheckUtils]: 19: Hoare triple {41858#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 20: Hoare triple {41858#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 21: Hoare triple {41858#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 22: Hoare triple {41858#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 23: Hoare triple {41858#true} assume 8464 == #t~mem32;havoc #t~mem32; {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 24: Hoare triple {41858#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 25: Hoare triple {41858#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 26: Hoare triple {41858#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 27: Hoare triple {41858#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,601 INFO L273 TraceCheckUtils]: 28: Hoare triple {41858#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 29: Hoare triple {41858#true} ~skip~0 := 0; {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 30: Hoare triple {41858#true} assume !false; {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 31: Hoare triple {41858#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 32: Hoare triple {41858#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 33: Hoare triple {41858#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 34: Hoare triple {41858#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 35: Hoare triple {41858#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 36: Hoare triple {41858#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,602 INFO L273 TraceCheckUtils]: 37: Hoare triple {41858#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 38: Hoare triple {41858#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 39: Hoare triple {41858#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 40: Hoare triple {41858#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 41: Hoare triple {41858#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 42: Hoare triple {41858#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 43: Hoare triple {41858#true} assume 8496 == #t~mem35;havoc #t~mem35; {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 44: Hoare triple {41858#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 45: Hoare triple {41858#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {41858#true} is VALID [2018-11-23 12:48:57,603 INFO L273 TraceCheckUtils]: 46: Hoare triple {41858#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {41858#true} is VALID [2018-11-23 12:48:57,604 INFO L273 TraceCheckUtils]: 47: Hoare triple {41858#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,605 INFO L273 TraceCheckUtils]: 48: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,605 INFO L273 TraceCheckUtils]: 49: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,606 INFO L273 TraceCheckUtils]: 50: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,606 INFO L273 TraceCheckUtils]: 51: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,606 INFO L273 TraceCheckUtils]: 52: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,607 INFO L273 TraceCheckUtils]: 53: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,607 INFO L273 TraceCheckUtils]: 54: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,607 INFO L273 TraceCheckUtils]: 55: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:57,608 INFO L273 TraceCheckUtils]: 56: Hoare triple {41860#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {41861#(= 8512 |ssl3_accept_#t~mem27|)} is VALID [2018-11-23 12:48:57,608 INFO L273 TraceCheckUtils]: 57: Hoare triple {41861#(= 8512 |ssl3_accept_#t~mem27|)} assume 24576 == #t~mem27;havoc #t~mem27; {41859#false} is VALID [2018-11-23 12:48:57,608 INFO L273 TraceCheckUtils]: 58: Hoare triple {41859#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,609 INFO L273 TraceCheckUtils]: 59: Hoare triple {41859#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {41859#false} is VALID [2018-11-23 12:48:57,609 INFO L273 TraceCheckUtils]: 60: Hoare triple {41859#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,609 INFO L273 TraceCheckUtils]: 61: Hoare triple {41859#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,609 INFO L273 TraceCheckUtils]: 62: Hoare triple {41859#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {41859#false} is VALID [2018-11-23 12:48:57,609 INFO L273 TraceCheckUtils]: 63: Hoare triple {41859#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,610 INFO L273 TraceCheckUtils]: 64: Hoare triple {41859#false} assume 12292 != #t~mem62;havoc #t~mem62; {41859#false} is VALID [2018-11-23 12:48:57,610 INFO L273 TraceCheckUtils]: 65: Hoare triple {41859#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {41859#false} is VALID [2018-11-23 12:48:57,610 INFO L273 TraceCheckUtils]: 66: Hoare triple {41859#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,610 INFO L273 TraceCheckUtils]: 67: Hoare triple {41859#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {41859#false} is VALID [2018-11-23 12:48:57,610 INFO L273 TraceCheckUtils]: 68: Hoare triple {41859#false} ~skip~0 := 0; {41859#false} is VALID [2018-11-23 12:48:57,610 INFO L273 TraceCheckUtils]: 69: Hoare triple {41859#false} assume !false; {41859#false} is VALID [2018-11-23 12:48:57,611 INFO L273 TraceCheckUtils]: 70: Hoare triple {41859#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,611 INFO L273 TraceCheckUtils]: 71: Hoare triple {41859#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,611 INFO L273 TraceCheckUtils]: 72: Hoare triple {41859#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,611 INFO L273 TraceCheckUtils]: 73: Hoare triple {41859#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,611 INFO L273 TraceCheckUtils]: 74: Hoare triple {41859#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,611 INFO L273 TraceCheckUtils]: 75: Hoare triple {41859#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,612 INFO L273 TraceCheckUtils]: 76: Hoare triple {41859#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,612 INFO L273 TraceCheckUtils]: 77: Hoare triple {41859#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,612 INFO L273 TraceCheckUtils]: 78: Hoare triple {41859#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,612 INFO L273 TraceCheckUtils]: 79: Hoare triple {41859#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,612 INFO L273 TraceCheckUtils]: 80: Hoare triple {41859#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 81: Hoare triple {41859#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 82: Hoare triple {41859#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 83: Hoare triple {41859#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 84: Hoare triple {41859#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 85: Hoare triple {41859#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 86: Hoare triple {41859#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 87: Hoare triple {41859#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 88: Hoare triple {41859#false} assume 8544 == #t~mem41;havoc #t~mem41; {41859#false} is VALID [2018-11-23 12:48:57,613 INFO L273 TraceCheckUtils]: 89: Hoare triple {41859#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 90: Hoare triple {41859#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 91: Hoare triple {41859#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 92: Hoare triple {41859#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 93: Hoare triple {41859#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 94: Hoare triple {41859#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 95: Hoare triple {41859#false} assume 8 == ~blastFlag~0; {41859#false} is VALID [2018-11-23 12:48:57,614 INFO L273 TraceCheckUtils]: 96: Hoare triple {41859#false} assume !false; {41859#false} is VALID [2018-11-23 12:48:57,619 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 52 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:57,620 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:57,620 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:57,620 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 97 [2018-11-23 12:48:57,620 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:57,620 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:48:57,701 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 87 edges. 87 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:57,701 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:48:57,701 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:48:57,701 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:48:57,702 INFO L87 Difference]: Start difference. First operand 260 states and 383 transitions. Second operand 4 states. [2018-11-23 12:48:59,179 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:59,179 INFO L93 Difference]: Finished difference Result 517 states and 767 transitions. [2018-11-23 12:48:59,179 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:48:59,180 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 97 [2018-11-23 12:48:59,180 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:48:59,180 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:59,182 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 475 transitions. [2018-11-23 12:48:59,182 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:48:59,183 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 475 transitions. [2018-11-23 12:48:59,183 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 475 transitions. [2018-11-23 12:48:59,647 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 475 edges. 475 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:48:59,653 INFO L225 Difference]: With dead ends: 517 [2018-11-23 12:48:59,653 INFO L226 Difference]: Without dead ends: 282 [2018-11-23 12:48:59,653 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:48:59,654 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2018-11-23 12:48:59,800 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 260. [2018-11-23 12:48:59,801 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:48:59,801 INFO L82 GeneralOperation]: Start isEquivalent. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:59,801 INFO L74 IsIncluded]: Start isIncluded. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:59,801 INFO L87 Difference]: Start difference. First operand 282 states. Second operand 260 states. [2018-11-23 12:48:59,805 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:59,806 INFO L93 Difference]: Finished difference Result 282 states and 411 transitions. [2018-11-23 12:48:59,806 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 411 transitions. [2018-11-23 12:48:59,806 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:59,806 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:59,806 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:59,806 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 282 states. [2018-11-23 12:48:59,811 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:48:59,811 INFO L93 Difference]: Finished difference Result 282 states and 411 transitions. [2018-11-23 12:48:59,811 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 411 transitions. [2018-11-23 12:48:59,811 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:48:59,811 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:48:59,811 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:48:59,811 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:48:59,812 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:48:59,815 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 382 transitions. [2018-11-23 12:48:59,816 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 382 transitions. Word has length 97 [2018-11-23 12:48:59,816 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:48:59,816 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 382 transitions. [2018-11-23 12:48:59,816 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:48:59,816 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 382 transitions. [2018-11-23 12:48:59,816 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2018-11-23 12:48:59,816 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:48:59,817 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:48:59,817 INFO L423 AbstractCegarLoop]: === Iteration 35 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:48:59,817 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:48:59,817 INFO L82 PathProgramCache]: Analyzing trace with hash 1060944413, now seen corresponding path program 1 times [2018-11-23 12:48:59,817 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:48:59,817 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:48:59,818 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:59,818 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:48:59,818 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:48:59,832 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:48:59,926 INFO L256 TraceCheckUtils]: 0: Hoare triple {43321#true} call ULTIMATE.init(); {43321#true} is VALID [2018-11-23 12:48:59,926 INFO L273 TraceCheckUtils]: 1: Hoare triple {43321#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,927 INFO L273 TraceCheckUtils]: 2: Hoare triple {43321#true} assume true; {43321#true} is VALID [2018-11-23 12:48:59,927 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {43321#true} {43321#true} #633#return; {43321#true} is VALID [2018-11-23 12:48:59,927 INFO L256 TraceCheckUtils]: 4: Hoare triple {43321#true} call #t~ret138 := main(); {43321#true} is VALID [2018-11-23 12:48:59,927 INFO L273 TraceCheckUtils]: 5: Hoare triple {43321#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,927 INFO L256 TraceCheckUtils]: 6: Hoare triple {43321#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {43321#true} is VALID [2018-11-23 12:48:59,928 INFO L273 TraceCheckUtils]: 7: Hoare triple {43321#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,928 INFO L273 TraceCheckUtils]: 8: Hoare triple {43321#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {43321#true} is VALID [2018-11-23 12:48:59,928 INFO L273 TraceCheckUtils]: 9: Hoare triple {43321#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {43321#true} is VALID [2018-11-23 12:48:59,928 INFO L273 TraceCheckUtils]: 10: Hoare triple {43321#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {43321#true} is VALID [2018-11-23 12:48:59,928 INFO L273 TraceCheckUtils]: 11: Hoare triple {43321#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,928 INFO L273 TraceCheckUtils]: 12: Hoare triple {43321#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {43321#true} is VALID [2018-11-23 12:48:59,929 INFO L273 TraceCheckUtils]: 13: Hoare triple {43321#true} assume !false; {43321#true} is VALID [2018-11-23 12:48:59,929 INFO L273 TraceCheckUtils]: 14: Hoare triple {43321#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,929 INFO L273 TraceCheckUtils]: 15: Hoare triple {43321#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,929 INFO L273 TraceCheckUtils]: 16: Hoare triple {43321#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,929 INFO L273 TraceCheckUtils]: 17: Hoare triple {43321#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,930 INFO L273 TraceCheckUtils]: 18: Hoare triple {43321#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,930 INFO L273 TraceCheckUtils]: 19: Hoare triple {43321#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,930 INFO L273 TraceCheckUtils]: 20: Hoare triple {43321#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,930 INFO L273 TraceCheckUtils]: 21: Hoare triple {43321#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,930 INFO L273 TraceCheckUtils]: 22: Hoare triple {43321#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,930 INFO L273 TraceCheckUtils]: 23: Hoare triple {43321#true} assume 8464 == #t~mem32;havoc #t~mem32; {43321#true} is VALID [2018-11-23 12:48:59,931 INFO L273 TraceCheckUtils]: 24: Hoare triple {43321#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {43321#true} is VALID [2018-11-23 12:48:59,931 INFO L273 TraceCheckUtils]: 25: Hoare triple {43321#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {43321#true} is VALID [2018-11-23 12:48:59,931 INFO L273 TraceCheckUtils]: 26: Hoare triple {43321#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,931 INFO L273 TraceCheckUtils]: 27: Hoare triple {43321#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,931 INFO L273 TraceCheckUtils]: 28: Hoare triple {43321#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {43321#true} is VALID [2018-11-23 12:48:59,931 INFO L273 TraceCheckUtils]: 29: Hoare triple {43321#true} ~skip~0 := 0; {43321#true} is VALID [2018-11-23 12:48:59,932 INFO L273 TraceCheckUtils]: 30: Hoare triple {43321#true} assume !false; {43321#true} is VALID [2018-11-23 12:48:59,932 INFO L273 TraceCheckUtils]: 31: Hoare triple {43321#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,932 INFO L273 TraceCheckUtils]: 32: Hoare triple {43321#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,932 INFO L273 TraceCheckUtils]: 33: Hoare triple {43321#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,932 INFO L273 TraceCheckUtils]: 34: Hoare triple {43321#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,932 INFO L273 TraceCheckUtils]: 35: Hoare triple {43321#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,933 INFO L273 TraceCheckUtils]: 36: Hoare triple {43321#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,933 INFO L273 TraceCheckUtils]: 37: Hoare triple {43321#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,933 INFO L273 TraceCheckUtils]: 38: Hoare triple {43321#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,933 INFO L273 TraceCheckUtils]: 39: Hoare triple {43321#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,933 INFO L273 TraceCheckUtils]: 40: Hoare triple {43321#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,933 INFO L273 TraceCheckUtils]: 41: Hoare triple {43321#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,934 INFO L273 TraceCheckUtils]: 42: Hoare triple {43321#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,934 INFO L273 TraceCheckUtils]: 43: Hoare triple {43321#true} assume 8496 == #t~mem35;havoc #t~mem35; {43321#true} is VALID [2018-11-23 12:48:59,934 INFO L273 TraceCheckUtils]: 44: Hoare triple {43321#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {43321#true} is VALID [2018-11-23 12:48:59,934 INFO L273 TraceCheckUtils]: 45: Hoare triple {43321#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {43321#true} is VALID [2018-11-23 12:48:59,934 INFO L273 TraceCheckUtils]: 46: Hoare triple {43321#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {43321#true} is VALID [2018-11-23 12:48:59,937 INFO L273 TraceCheckUtils]: 47: Hoare triple {43321#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,939 INFO L273 TraceCheckUtils]: 48: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,939 INFO L273 TraceCheckUtils]: 49: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,942 INFO L273 TraceCheckUtils]: 50: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,942 INFO L273 TraceCheckUtils]: 51: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,945 INFO L273 TraceCheckUtils]: 52: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,945 INFO L273 TraceCheckUtils]: 53: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,948 INFO L273 TraceCheckUtils]: 54: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,948 INFO L273 TraceCheckUtils]: 55: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,948 INFO L273 TraceCheckUtils]: 56: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:48:59,949 INFO L273 TraceCheckUtils]: 57: Hoare triple {43323#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {43324#(= 8656 |ssl3_accept_#t~mem28|)} is VALID [2018-11-23 12:48:59,949 INFO L273 TraceCheckUtils]: 58: Hoare triple {43324#(= 8656 |ssl3_accept_#t~mem28|)} assume 8195 == #t~mem28;havoc #t~mem28; {43322#false} is VALID [2018-11-23 12:48:59,949 INFO L273 TraceCheckUtils]: 59: Hoare triple {43322#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,949 INFO L273 TraceCheckUtils]: 60: Hoare triple {43322#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {43322#false} is VALID [2018-11-23 12:48:59,949 INFO L273 TraceCheckUtils]: 61: Hoare triple {43322#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 62: Hoare triple {43322#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 63: Hoare triple {43322#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 64: Hoare triple {43322#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 65: Hoare triple {43322#false} assume 12292 != #t~mem62;havoc #t~mem62; {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 66: Hoare triple {43322#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 67: Hoare triple {43322#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 68: Hoare triple {43322#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 69: Hoare triple {43322#false} ~skip~0 := 0; {43322#false} is VALID [2018-11-23 12:48:59,950 INFO L273 TraceCheckUtils]: 70: Hoare triple {43322#false} assume !false; {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 71: Hoare triple {43322#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 72: Hoare triple {43322#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 73: Hoare triple {43322#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 74: Hoare triple {43322#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 75: Hoare triple {43322#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 76: Hoare triple {43322#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 77: Hoare triple {43322#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 78: Hoare triple {43322#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,951 INFO L273 TraceCheckUtils]: 79: Hoare triple {43322#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 80: Hoare triple {43322#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 81: Hoare triple {43322#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 82: Hoare triple {43322#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 83: Hoare triple {43322#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 84: Hoare triple {43322#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 85: Hoare triple {43322#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 86: Hoare triple {43322#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 87: Hoare triple {43322#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,952 INFO L273 TraceCheckUtils]: 88: Hoare triple {43322#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 89: Hoare triple {43322#false} assume 8544 == #t~mem41;havoc #t~mem41; {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 90: Hoare triple {43322#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 91: Hoare triple {43322#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 92: Hoare triple {43322#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 93: Hoare triple {43322#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 94: Hoare triple {43322#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 95: Hoare triple {43322#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 96: Hoare triple {43322#false} assume 8 == ~blastFlag~0; {43322#false} is VALID [2018-11-23 12:48:59,953 INFO L273 TraceCheckUtils]: 97: Hoare triple {43322#false} assume !false; {43322#false} is VALID [2018-11-23 12:48:59,959 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 55 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:48:59,959 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:48:59,959 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:48:59,960 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 98 [2018-11-23 12:48:59,960 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:48:59,960 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:00,046 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 88 edges. 88 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:00,047 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:00,047 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:00,047 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:00,048 INFO L87 Difference]: Start difference. First operand 260 states and 382 transitions. Second operand 4 states. [2018-11-23 12:49:01,324 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:01,324 INFO L93 Difference]: Finished difference Result 532 states and 787 transitions. [2018-11-23 12:49:01,324 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:01,324 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 98 [2018-11-23 12:49:01,325 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:01,325 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:01,327 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 526 transitions. [2018-11-23 12:49:01,327 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:01,328 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 526 transitions. [2018-11-23 12:49:01,329 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 526 transitions. [2018-11-23 12:49:01,844 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 526 edges. 526 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:01,850 INFO L225 Difference]: With dead ends: 532 [2018-11-23 12:49:01,850 INFO L226 Difference]: Without dead ends: 297 [2018-11-23 12:49:01,851 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:01,851 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 297 states. [2018-11-23 12:49:02,035 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 297 to 260. [2018-11-23 12:49:02,036 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:02,036 INFO L82 GeneralOperation]: Start isEquivalent. First operand 297 states. Second operand 260 states. [2018-11-23 12:49:02,036 INFO L74 IsIncluded]: Start isIncluded. First operand 297 states. Second operand 260 states. [2018-11-23 12:49:02,036 INFO L87 Difference]: Start difference. First operand 297 states. Second operand 260 states. [2018-11-23 12:49:02,041 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:02,041 INFO L93 Difference]: Finished difference Result 297 states and 432 transitions. [2018-11-23 12:49:02,041 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 432 transitions. [2018-11-23 12:49:02,041 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:02,042 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:02,042 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 297 states. [2018-11-23 12:49:02,042 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 297 states. [2018-11-23 12:49:02,047 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:02,047 INFO L93 Difference]: Finished difference Result 297 states and 432 transitions. [2018-11-23 12:49:02,047 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 432 transitions. [2018-11-23 12:49:02,048 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:02,048 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:02,048 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:02,048 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:02,048 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:49:02,052 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 381 transitions. [2018-11-23 12:49:02,052 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 381 transitions. Word has length 98 [2018-11-23 12:49:02,052 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:02,052 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 381 transitions. [2018-11-23 12:49:02,052 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:02,052 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 381 transitions. [2018-11-23 12:49:02,053 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2018-11-23 12:49:02,053 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:02,053 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:02,053 INFO L423 AbstractCegarLoop]: === Iteration 36 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:02,053 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:02,053 INFO L82 PathProgramCache]: Analyzing trace with hash -967641697, now seen corresponding path program 1 times [2018-11-23 12:49:02,053 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:02,053 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:02,054 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:02,054 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:02,054 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:02,068 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:02,314 INFO L256 TraceCheckUtils]: 0: Hoare triple {44836#true} call ULTIMATE.init(); {44836#true} is VALID [2018-11-23 12:49:02,314 INFO L273 TraceCheckUtils]: 1: Hoare triple {44836#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,314 INFO L273 TraceCheckUtils]: 2: Hoare triple {44836#true} assume true; {44836#true} is VALID [2018-11-23 12:49:02,314 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {44836#true} {44836#true} #633#return; {44836#true} is VALID [2018-11-23 12:49:02,315 INFO L256 TraceCheckUtils]: 4: Hoare triple {44836#true} call #t~ret138 := main(); {44836#true} is VALID [2018-11-23 12:49:02,315 INFO L273 TraceCheckUtils]: 5: Hoare triple {44836#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,315 INFO L256 TraceCheckUtils]: 6: Hoare triple {44836#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {44836#true} is VALID [2018-11-23 12:49:02,315 INFO L273 TraceCheckUtils]: 7: Hoare triple {44836#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,315 INFO L273 TraceCheckUtils]: 8: Hoare triple {44836#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {44836#true} is VALID [2018-11-23 12:49:02,315 INFO L273 TraceCheckUtils]: 9: Hoare triple {44836#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {44836#true} is VALID [2018-11-23 12:49:02,316 INFO L273 TraceCheckUtils]: 10: Hoare triple {44836#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {44836#true} is VALID [2018-11-23 12:49:02,316 INFO L273 TraceCheckUtils]: 11: Hoare triple {44836#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,316 INFO L273 TraceCheckUtils]: 12: Hoare triple {44836#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {44836#true} is VALID [2018-11-23 12:49:02,316 INFO L273 TraceCheckUtils]: 13: Hoare triple {44836#true} assume !false; {44836#true} is VALID [2018-11-23 12:49:02,316 INFO L273 TraceCheckUtils]: 14: Hoare triple {44836#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,316 INFO L273 TraceCheckUtils]: 15: Hoare triple {44836#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 16: Hoare triple {44836#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 17: Hoare triple {44836#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 18: Hoare triple {44836#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 19: Hoare triple {44836#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 20: Hoare triple {44836#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 21: Hoare triple {44836#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 22: Hoare triple {44836#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,317 INFO L273 TraceCheckUtils]: 23: Hoare triple {44836#true} assume 8464 == #t~mem32;havoc #t~mem32; {44836#true} is VALID [2018-11-23 12:49:02,318 INFO L273 TraceCheckUtils]: 24: Hoare triple {44836#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {44836#true} is VALID [2018-11-23 12:49:02,318 INFO L273 TraceCheckUtils]: 25: Hoare triple {44836#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {44836#true} is VALID [2018-11-23 12:49:02,318 INFO L273 TraceCheckUtils]: 26: Hoare triple {44836#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,318 INFO L273 TraceCheckUtils]: 27: Hoare triple {44836#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,318 INFO L273 TraceCheckUtils]: 28: Hoare triple {44836#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {44836#true} is VALID [2018-11-23 12:49:02,318 INFO L273 TraceCheckUtils]: 29: Hoare triple {44836#true} ~skip~0 := 0; {44836#true} is VALID [2018-11-23 12:49:02,319 INFO L273 TraceCheckUtils]: 30: Hoare triple {44836#true} assume !false; {44836#true} is VALID [2018-11-23 12:49:02,319 INFO L273 TraceCheckUtils]: 31: Hoare triple {44836#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,319 INFO L273 TraceCheckUtils]: 32: Hoare triple {44836#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,319 INFO L273 TraceCheckUtils]: 33: Hoare triple {44836#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,319 INFO L273 TraceCheckUtils]: 34: Hoare triple {44836#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,319 INFO L273 TraceCheckUtils]: 35: Hoare triple {44836#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,320 INFO L273 TraceCheckUtils]: 36: Hoare triple {44836#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,320 INFO L273 TraceCheckUtils]: 37: Hoare triple {44836#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,320 INFO L273 TraceCheckUtils]: 38: Hoare triple {44836#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,320 INFO L273 TraceCheckUtils]: 39: Hoare triple {44836#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,320 INFO L273 TraceCheckUtils]: 40: Hoare triple {44836#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,320 INFO L273 TraceCheckUtils]: 41: Hoare triple {44836#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,321 INFO L273 TraceCheckUtils]: 42: Hoare triple {44836#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,321 INFO L273 TraceCheckUtils]: 43: Hoare triple {44836#true} assume 8496 == #t~mem35;havoc #t~mem35; {44836#true} is VALID [2018-11-23 12:49:02,321 INFO L273 TraceCheckUtils]: 44: Hoare triple {44836#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {44836#true} is VALID [2018-11-23 12:49:02,321 INFO L273 TraceCheckUtils]: 45: Hoare triple {44836#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {44836#true} is VALID [2018-11-23 12:49:02,321 INFO L273 TraceCheckUtils]: 46: Hoare triple {44836#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {44836#true} is VALID [2018-11-23 12:49:02,336 INFO L273 TraceCheckUtils]: 47: Hoare triple {44836#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,352 INFO L273 TraceCheckUtils]: 48: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,356 INFO L273 TraceCheckUtils]: 49: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,356 INFO L273 TraceCheckUtils]: 50: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,359 INFO L273 TraceCheckUtils]: 51: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,359 INFO L273 TraceCheckUtils]: 52: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,359 INFO L273 TraceCheckUtils]: 53: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,361 INFO L273 TraceCheckUtils]: 54: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,363 INFO L273 TraceCheckUtils]: 55: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,363 INFO L273 TraceCheckUtils]: 56: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:02,365 INFO L273 TraceCheckUtils]: 57: Hoare triple {44838#(= 8512 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {44839#(= 8512 |ssl3_accept_#t~mem28|)} is VALID [2018-11-23 12:49:02,365 INFO L273 TraceCheckUtils]: 58: Hoare triple {44839#(= 8512 |ssl3_accept_#t~mem28|)} assume 8195 == #t~mem28;havoc #t~mem28; {44837#false} is VALID [2018-11-23 12:49:02,365 INFO L273 TraceCheckUtils]: 59: Hoare triple {44837#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 60: Hoare triple {44837#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 61: Hoare triple {44837#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 62: Hoare triple {44837#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 63: Hoare triple {44837#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 64: Hoare triple {44837#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 65: Hoare triple {44837#false} assume 12292 != #t~mem62;havoc #t~mem62; {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 66: Hoare triple {44837#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {44837#false} is VALID [2018-11-23 12:49:02,366 INFO L273 TraceCheckUtils]: 67: Hoare triple {44837#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 68: Hoare triple {44837#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 69: Hoare triple {44837#false} ~skip~0 := 0; {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 70: Hoare triple {44837#false} assume !false; {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 71: Hoare triple {44837#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 72: Hoare triple {44837#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 73: Hoare triple {44837#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 74: Hoare triple {44837#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 75: Hoare triple {44837#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,367 INFO L273 TraceCheckUtils]: 76: Hoare triple {44837#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,370 INFO L273 TraceCheckUtils]: 77: Hoare triple {44837#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,370 INFO L273 TraceCheckUtils]: 78: Hoare triple {44837#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,370 INFO L273 TraceCheckUtils]: 79: Hoare triple {44837#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,370 INFO L273 TraceCheckUtils]: 80: Hoare triple {44837#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,370 INFO L273 TraceCheckUtils]: 81: Hoare triple {44837#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,370 INFO L273 TraceCheckUtils]: 82: Hoare triple {44837#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 83: Hoare triple {44837#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 84: Hoare triple {44837#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 85: Hoare triple {44837#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 86: Hoare triple {44837#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 87: Hoare triple {44837#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 88: Hoare triple {44837#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 89: Hoare triple {44837#false} assume 8544 == #t~mem41;havoc #t~mem41; {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 90: Hoare triple {44837#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,371 INFO L273 TraceCheckUtils]: 91: Hoare triple {44837#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,372 INFO L273 TraceCheckUtils]: 92: Hoare triple {44837#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {44837#false} is VALID [2018-11-23 12:49:02,372 INFO L273 TraceCheckUtils]: 93: Hoare triple {44837#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {44837#false} is VALID [2018-11-23 12:49:02,372 INFO L273 TraceCheckUtils]: 94: Hoare triple {44837#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {44837#false} is VALID [2018-11-23 12:49:02,372 INFO L273 TraceCheckUtils]: 95: Hoare triple {44837#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {44837#false} is VALID [2018-11-23 12:49:02,372 INFO L273 TraceCheckUtils]: 96: Hoare triple {44837#false} assume 8 == ~blastFlag~0; {44837#false} is VALID [2018-11-23 12:49:02,372 INFO L273 TraceCheckUtils]: 97: Hoare triple {44837#false} assume !false; {44837#false} is VALID [2018-11-23 12:49:02,378 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 55 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:49:02,378 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:02,378 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:02,378 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 98 [2018-11-23 12:49:02,378 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:02,378 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:02,467 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 88 edges. 88 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:02,468 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:02,468 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:02,468 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:02,468 INFO L87 Difference]: Start difference. First operand 260 states and 381 transitions. Second operand 4 states. [2018-11-23 12:49:03,789 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:03,789 INFO L93 Difference]: Finished difference Result 507 states and 751 transitions. [2018-11-23 12:49:03,789 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:03,789 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 98 [2018-11-23 12:49:03,789 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:03,790 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:03,792 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 462 transitions. [2018-11-23 12:49:03,792 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:03,793 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 462 transitions. [2018-11-23 12:49:03,793 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 462 transitions. [2018-11-23 12:49:04,236 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 462 edges. 462 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:04,242 INFO L225 Difference]: With dead ends: 507 [2018-11-23 12:49:04,242 INFO L226 Difference]: Without dead ends: 272 [2018-11-23 12:49:04,242 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:04,243 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 272 states. [2018-11-23 12:49:04,392 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 272 to 260. [2018-11-23 12:49:04,393 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:04,393 INFO L82 GeneralOperation]: Start isEquivalent. First operand 272 states. Second operand 260 states. [2018-11-23 12:49:04,393 INFO L74 IsIncluded]: Start isIncluded. First operand 272 states. Second operand 260 states. [2018-11-23 12:49:04,393 INFO L87 Difference]: Start difference. First operand 272 states. Second operand 260 states. [2018-11-23 12:49:04,398 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:04,398 INFO L93 Difference]: Finished difference Result 272 states and 397 transitions. [2018-11-23 12:49:04,398 INFO L276 IsEmpty]: Start isEmpty. Operand 272 states and 397 transitions. [2018-11-23 12:49:04,398 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:04,399 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:04,399 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 272 states. [2018-11-23 12:49:04,399 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 272 states. [2018-11-23 12:49:04,403 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:04,404 INFO L93 Difference]: Finished difference Result 272 states and 397 transitions. [2018-11-23 12:49:04,404 INFO L276 IsEmpty]: Start isEmpty. Operand 272 states and 397 transitions. [2018-11-23 12:49:04,404 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:04,404 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:04,404 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:04,404 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:04,405 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:49:04,409 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 380 transitions. [2018-11-23 12:49:04,409 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 380 transitions. Word has length 98 [2018-11-23 12:49:04,409 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:04,409 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 380 transitions. [2018-11-23 12:49:04,409 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:04,409 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 380 transitions. [2018-11-23 12:49:04,410 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 103 [2018-11-23 12:49:04,410 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:04,410 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:04,410 INFO L423 AbstractCegarLoop]: === Iteration 37 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:04,411 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:04,411 INFO L82 PathProgramCache]: Analyzing trace with hash -1531434557, now seen corresponding path program 1 times [2018-11-23 12:49:04,411 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:04,411 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:04,412 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:04,412 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:04,412 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:04,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:04,529 INFO L256 TraceCheckUtils]: 0: Hoare triple {46268#true} call ULTIMATE.init(); {46268#true} is VALID [2018-11-23 12:49:04,530 INFO L273 TraceCheckUtils]: 1: Hoare triple {46268#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,530 INFO L273 TraceCheckUtils]: 2: Hoare triple {46268#true} assume true; {46268#true} is VALID [2018-11-23 12:49:04,530 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {46268#true} {46268#true} #633#return; {46268#true} is VALID [2018-11-23 12:49:04,530 INFO L256 TraceCheckUtils]: 4: Hoare triple {46268#true} call #t~ret138 := main(); {46268#true} is VALID [2018-11-23 12:49:04,531 INFO L273 TraceCheckUtils]: 5: Hoare triple {46268#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,531 INFO L256 TraceCheckUtils]: 6: Hoare triple {46268#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {46268#true} is VALID [2018-11-23 12:49:04,531 INFO L273 TraceCheckUtils]: 7: Hoare triple {46268#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,531 INFO L273 TraceCheckUtils]: 8: Hoare triple {46268#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 9: Hoare triple {46268#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 10: Hoare triple {46268#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 11: Hoare triple {46268#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 12: Hoare triple {46268#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 13: Hoare triple {46268#true} assume !false; {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 14: Hoare triple {46268#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,532 INFO L273 TraceCheckUtils]: 15: Hoare triple {46268#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 16: Hoare triple {46268#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 17: Hoare triple {46268#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 18: Hoare triple {46268#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 19: Hoare triple {46268#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 20: Hoare triple {46268#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 21: Hoare triple {46268#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,533 INFO L273 TraceCheckUtils]: 22: Hoare triple {46268#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 23: Hoare triple {46268#true} assume 8464 == #t~mem32;havoc #t~mem32; {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 24: Hoare triple {46268#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 25: Hoare triple {46268#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 26: Hoare triple {46268#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 27: Hoare triple {46268#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 28: Hoare triple {46268#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {46268#true} is VALID [2018-11-23 12:49:04,534 INFO L273 TraceCheckUtils]: 29: Hoare triple {46268#true} ~skip~0 := 0; {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 30: Hoare triple {46268#true} assume !false; {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 31: Hoare triple {46268#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 32: Hoare triple {46268#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 33: Hoare triple {46268#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 34: Hoare triple {46268#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 35: Hoare triple {46268#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,535 INFO L273 TraceCheckUtils]: 36: Hoare triple {46268#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 37: Hoare triple {46268#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 38: Hoare triple {46268#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 39: Hoare triple {46268#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 40: Hoare triple {46268#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 41: Hoare triple {46268#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 42: Hoare triple {46268#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,536 INFO L273 TraceCheckUtils]: 43: Hoare triple {46268#true} assume 8496 == #t~mem35;havoc #t~mem35; {46268#true} is VALID [2018-11-23 12:49:04,537 INFO L273 TraceCheckUtils]: 44: Hoare triple {46268#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {46268#true} is VALID [2018-11-23 12:49:04,537 INFO L273 TraceCheckUtils]: 45: Hoare triple {46268#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {46268#true} is VALID [2018-11-23 12:49:04,537 INFO L273 TraceCheckUtils]: 46: Hoare triple {46268#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {46268#true} is VALID [2018-11-23 12:49:04,539 INFO L273 TraceCheckUtils]: 47: Hoare triple {46268#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,541 INFO L273 TraceCheckUtils]: 48: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call write~int(0, ~s.base, 64 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,541 INFO L273 TraceCheckUtils]: 49: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,541 INFO L273 TraceCheckUtils]: 50: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,543 INFO L273 TraceCheckUtils]: 51: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,543 INFO L273 TraceCheckUtils]: 52: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !false; {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,544 INFO L273 TraceCheckUtils]: 53: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,544 INFO L273 TraceCheckUtils]: 54: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,545 INFO L273 TraceCheckUtils]: 55: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,546 INFO L273 TraceCheckUtils]: 56: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,547 INFO L273 TraceCheckUtils]: 57: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,547 INFO L273 TraceCheckUtils]: 58: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,548 INFO L273 TraceCheckUtils]: 59: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,548 INFO L273 TraceCheckUtils]: 60: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,550 INFO L273 TraceCheckUtils]: 61: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,550 INFO L273 TraceCheckUtils]: 62: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,553 INFO L273 TraceCheckUtils]: 63: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,553 INFO L273 TraceCheckUtils]: 64: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,556 INFO L273 TraceCheckUtils]: 65: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:04,556 INFO L273 TraceCheckUtils]: 66: Hoare triple {46270#(= 8656 (select (store (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 64) 0) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {46271#(= 8656 |ssl3_accept_#t~mem37|)} is VALID [2018-11-23 12:49:04,558 INFO L273 TraceCheckUtils]: 67: Hoare triple {46271#(= 8656 |ssl3_accept_#t~mem37|)} assume 8512 == #t~mem37;havoc #t~mem37; {46269#false} is VALID [2018-11-23 12:49:04,558 INFO L273 TraceCheckUtils]: 68: Hoare triple {46269#false} call #t~mem72.base, #t~mem72.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem73.base, #t~mem73.offset := read~$Pointer$(#t~mem72.base, 836 + #t~mem72.offset, 4);call #t~mem74 := read~int(#t~mem73.base, 12 + #t~mem73.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,558 INFO L273 TraceCheckUtils]: 69: Hoare triple {46269#false} assume 0 != ~bitwiseAnd(#t~mem74, 256) % 4294967296;havoc #t~mem73.base, #t~mem73.offset;havoc #t~mem74;havoc #t~mem72.base, #t~mem72.offset;~skip~0 := 1; {46269#false} is VALID [2018-11-23 12:49:04,558 INFO L273 TraceCheckUtils]: 70: Hoare triple {46269#false} call write~int(8528, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,559 INFO L273 TraceCheckUtils]: 71: Hoare triple {46269#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,559 INFO L273 TraceCheckUtils]: 72: Hoare triple {46269#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {46269#false} is VALID [2018-11-23 12:49:04,559 INFO L273 TraceCheckUtils]: 73: Hoare triple {46269#false} ~skip~0 := 0; {46269#false} is VALID [2018-11-23 12:49:04,559 INFO L273 TraceCheckUtils]: 74: Hoare triple {46269#false} assume !false; {46269#false} is VALID [2018-11-23 12:49:04,559 INFO L273 TraceCheckUtils]: 75: Hoare triple {46269#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,560 INFO L273 TraceCheckUtils]: 76: Hoare triple {46269#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,560 INFO L273 TraceCheckUtils]: 77: Hoare triple {46269#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,560 INFO L273 TraceCheckUtils]: 78: Hoare triple {46269#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,560 INFO L273 TraceCheckUtils]: 79: Hoare triple {46269#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,560 INFO L273 TraceCheckUtils]: 80: Hoare triple {46269#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,560 INFO L273 TraceCheckUtils]: 81: Hoare triple {46269#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,561 INFO L273 TraceCheckUtils]: 82: Hoare triple {46269#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,561 INFO L273 TraceCheckUtils]: 83: Hoare triple {46269#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,561 INFO L273 TraceCheckUtils]: 84: Hoare triple {46269#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,561 INFO L273 TraceCheckUtils]: 85: Hoare triple {46269#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,561 INFO L273 TraceCheckUtils]: 86: Hoare triple {46269#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,561 INFO L273 TraceCheckUtils]: 87: Hoare triple {46269#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,562 INFO L273 TraceCheckUtils]: 88: Hoare triple {46269#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,562 INFO L273 TraceCheckUtils]: 89: Hoare triple {46269#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,562 INFO L273 TraceCheckUtils]: 90: Hoare triple {46269#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,562 INFO L273 TraceCheckUtils]: 91: Hoare triple {46269#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,563 INFO L273 TraceCheckUtils]: 92: Hoare triple {46269#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,563 INFO L273 TraceCheckUtils]: 93: Hoare triple {46269#false} assume 8544 == #t~mem41;havoc #t~mem41; {46269#false} is VALID [2018-11-23 12:49:04,563 INFO L273 TraceCheckUtils]: 94: Hoare triple {46269#false} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,563 INFO L273 TraceCheckUtils]: 95: Hoare triple {46269#false} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,563 INFO L273 TraceCheckUtils]: 96: Hoare triple {46269#false} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {46269#false} is VALID [2018-11-23 12:49:04,563 INFO L273 TraceCheckUtils]: 97: Hoare triple {46269#false} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {46269#false} is VALID [2018-11-23 12:49:04,564 INFO L273 TraceCheckUtils]: 98: Hoare triple {46269#false} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {46269#false} is VALID [2018-11-23 12:49:04,564 INFO L273 TraceCheckUtils]: 99: Hoare triple {46269#false} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {46269#false} is VALID [2018-11-23 12:49:04,564 INFO L273 TraceCheckUtils]: 100: Hoare triple {46269#false} assume 8 == ~blastFlag~0; {46269#false} is VALID [2018-11-23 12:49:04,564 INFO L273 TraceCheckUtils]: 101: Hoare triple {46269#false} assume !false; {46269#false} is VALID [2018-11-23 12:49:04,583 INFO L134 CoverageAnalysis]: Checked inductivity of 86 backedges. 75 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2018-11-23 12:49:04,583 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:04,584 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:04,584 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 102 [2018-11-23 12:49:04,584 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:04,584 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:04,767 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 92 edges. 92 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:04,767 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:04,767 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:04,767 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:04,768 INFO L87 Difference]: Start difference. First operand 260 states and 380 transitions. Second operand 4 states. [2018-11-23 12:49:06,034 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:06,034 INFO L93 Difference]: Finished difference Result 532 states and 783 transitions. [2018-11-23 12:49:06,034 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:06,034 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 102 [2018-11-23 12:49:06,035 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:06,035 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:06,037 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 525 transitions. [2018-11-23 12:49:06,037 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:06,038 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 525 transitions. [2018-11-23 12:49:06,039 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 525 transitions. [2018-11-23 12:49:06,556 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 525 edges. 525 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:06,562 INFO L225 Difference]: With dead ends: 532 [2018-11-23 12:49:06,562 INFO L226 Difference]: Without dead ends: 297 [2018-11-23 12:49:06,563 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 2 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:06,564 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 297 states. [2018-11-23 12:49:06,667 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 297 to 260. [2018-11-23 12:49:06,667 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:06,667 INFO L82 GeneralOperation]: Start isEquivalent. First operand 297 states. Second operand 260 states. [2018-11-23 12:49:06,667 INFO L74 IsIncluded]: Start isIncluded. First operand 297 states. Second operand 260 states. [2018-11-23 12:49:06,667 INFO L87 Difference]: Start difference. First operand 297 states. Second operand 260 states. [2018-11-23 12:49:06,673 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:06,673 INFO L93 Difference]: Finished difference Result 297 states and 430 transitions. [2018-11-23 12:49:06,673 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 430 transitions. [2018-11-23 12:49:06,673 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:06,674 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:06,674 INFO L74 IsIncluded]: Start isIncluded. First operand 260 states. Second operand 297 states. [2018-11-23 12:49:06,674 INFO L87 Difference]: Start difference. First operand 260 states. Second operand 297 states. [2018-11-23 12:49:06,679 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:06,679 INFO L93 Difference]: Finished difference Result 297 states and 430 transitions. [2018-11-23 12:49:06,679 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 430 transitions. [2018-11-23 12:49:06,679 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:06,679 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:06,679 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:06,679 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:06,680 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 260 states. [2018-11-23 12:49:06,683 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 379 transitions. [2018-11-23 12:49:06,684 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 379 transitions. Word has length 102 [2018-11-23 12:49:06,684 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:06,684 INFO L480 AbstractCegarLoop]: Abstraction has 260 states and 379 transitions. [2018-11-23 12:49:06,684 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:06,684 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 379 transitions. [2018-11-23 12:49:06,684 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 103 [2018-11-23 12:49:06,684 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:06,685 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:06,685 INFO L423 AbstractCegarLoop]: === Iteration 38 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:06,685 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:06,685 INFO L82 PathProgramCache]: Analyzing trace with hash -144649147, now seen corresponding path program 1 times [2018-11-23 12:49:06,685 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:06,685 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:06,686 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:06,686 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:06,686 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:06,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:06,944 INFO L256 TraceCheckUtils]: 0: Hoare triple {47783#true} call ULTIMATE.init(); {47783#true} is VALID [2018-11-23 12:49:06,944 INFO L273 TraceCheckUtils]: 1: Hoare triple {47783#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,944 INFO L273 TraceCheckUtils]: 2: Hoare triple {47783#true} assume true; {47783#true} is VALID [2018-11-23 12:49:06,945 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {47783#true} {47783#true} #633#return; {47783#true} is VALID [2018-11-23 12:49:06,945 INFO L256 TraceCheckUtils]: 4: Hoare triple {47783#true} call #t~ret138 := main(); {47783#true} is VALID [2018-11-23 12:49:06,945 INFO L273 TraceCheckUtils]: 5: Hoare triple {47783#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,945 INFO L256 TraceCheckUtils]: 6: Hoare triple {47783#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {47783#true} is VALID [2018-11-23 12:49:06,945 INFO L273 TraceCheckUtils]: 7: Hoare triple {47783#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,945 INFO L273 TraceCheckUtils]: 8: Hoare triple {47783#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {47783#true} is VALID [2018-11-23 12:49:06,946 INFO L273 TraceCheckUtils]: 9: Hoare triple {47783#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {47783#true} is VALID [2018-11-23 12:49:06,946 INFO L273 TraceCheckUtils]: 10: Hoare triple {47783#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {47783#true} is VALID [2018-11-23 12:49:06,946 INFO L273 TraceCheckUtils]: 11: Hoare triple {47783#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,946 INFO L273 TraceCheckUtils]: 12: Hoare triple {47783#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {47783#true} is VALID [2018-11-23 12:49:06,946 INFO L273 TraceCheckUtils]: 13: Hoare triple {47783#true} assume !false; {47783#true} is VALID [2018-11-23 12:49:06,946 INFO L273 TraceCheckUtils]: 14: Hoare triple {47783#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 15: Hoare triple {47783#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 16: Hoare triple {47783#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 17: Hoare triple {47783#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 18: Hoare triple {47783#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 19: Hoare triple {47783#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 20: Hoare triple {47783#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,947 INFO L273 TraceCheckUtils]: 21: Hoare triple {47783#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 22: Hoare triple {47783#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 23: Hoare triple {47783#true} assume 8464 == #t~mem32;havoc #t~mem32; {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 24: Hoare triple {47783#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 25: Hoare triple {47783#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 26: Hoare triple {47783#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 27: Hoare triple {47783#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 28: Hoare triple {47783#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {47783#true} is VALID [2018-11-23 12:49:06,948 INFO L273 TraceCheckUtils]: 29: Hoare triple {47783#true} ~skip~0 := 0; {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 30: Hoare triple {47783#true} assume !false; {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 31: Hoare triple {47783#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 32: Hoare triple {47783#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 33: Hoare triple {47783#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 34: Hoare triple {47783#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 35: Hoare triple {47783#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 36: Hoare triple {47783#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 37: Hoare triple {47783#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 38: Hoare triple {47783#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,949 INFO L273 TraceCheckUtils]: 39: Hoare triple {47783#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,950 INFO L273 TraceCheckUtils]: 40: Hoare triple {47783#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,950 INFO L273 TraceCheckUtils]: 41: Hoare triple {47783#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,950 INFO L273 TraceCheckUtils]: 42: Hoare triple {47783#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {47783#true} is VALID [2018-11-23 12:49:06,950 INFO L273 TraceCheckUtils]: 43: Hoare triple {47783#true} assume 8496 == #t~mem35;havoc #t~mem35; {47783#true} is VALID [2018-11-23 12:49:06,950 INFO L273 TraceCheckUtils]: 44: Hoare triple {47783#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {47783#true} is VALID [2018-11-23 12:49:06,950 INFO L273 TraceCheckUtils]: 45: Hoare triple {47783#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,951 INFO L273 TraceCheckUtils]: 46: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,952 INFO L273 TraceCheckUtils]: 47: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,952 INFO L273 TraceCheckUtils]: 48: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call write~int(0, ~s.base, 64 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,954 INFO L273 TraceCheckUtils]: 49: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,954 INFO L273 TraceCheckUtils]: 50: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,956 INFO L273 TraceCheckUtils]: 51: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} ~skip~0 := 0; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,956 INFO L273 TraceCheckUtils]: 52: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !false; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,958 INFO L273 TraceCheckUtils]: 53: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,958 INFO L273 TraceCheckUtils]: 54: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,960 INFO L273 TraceCheckUtils]: 55: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,960 INFO L273 TraceCheckUtils]: 56: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,962 INFO L273 TraceCheckUtils]: 57: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,962 INFO L273 TraceCheckUtils]: 58: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,962 INFO L273 TraceCheckUtils]: 59: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,963 INFO L273 TraceCheckUtils]: 60: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,963 INFO L273 TraceCheckUtils]: 61: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,963 INFO L273 TraceCheckUtils]: 62: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,963 INFO L273 TraceCheckUtils]: 63: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,964 INFO L273 TraceCheckUtils]: 64: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,964 INFO L273 TraceCheckUtils]: 65: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,964 INFO L273 TraceCheckUtils]: 66: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,965 INFO L273 TraceCheckUtils]: 67: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume 8512 == #t~mem37;havoc #t~mem37; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,965 INFO L273 TraceCheckUtils]: 68: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem72.base, #t~mem72.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem73.base, #t~mem73.offset := read~$Pointer$(#t~mem72.base, 836 + #t~mem72.offset, 4);call #t~mem74 := read~int(#t~mem73.base, 12 + #t~mem73.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,965 INFO L273 TraceCheckUtils]: 69: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume 0 != ~bitwiseAnd(#t~mem74, 256) % 4294967296;havoc #t~mem73.base, #t~mem73.offset;havoc #t~mem74;havoc #t~mem72.base, #t~mem72.offset;~skip~0 := 1; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,966 INFO L273 TraceCheckUtils]: 70: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call write~int(8528, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,966 INFO L273 TraceCheckUtils]: 71: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,967 INFO L273 TraceCheckUtils]: 72: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,967 INFO L273 TraceCheckUtils]: 73: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} ~skip~0 := 0; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,968 INFO L273 TraceCheckUtils]: 74: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !false; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,968 INFO L273 TraceCheckUtils]: 75: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,969 INFO L273 TraceCheckUtils]: 76: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,969 INFO L273 TraceCheckUtils]: 77: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,970 INFO L273 TraceCheckUtils]: 78: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,970 INFO L273 TraceCheckUtils]: 79: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,970 INFO L273 TraceCheckUtils]: 80: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,971 INFO L273 TraceCheckUtils]: 81: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,971 INFO L273 TraceCheckUtils]: 82: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,972 INFO L273 TraceCheckUtils]: 83: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,972 INFO L273 TraceCheckUtils]: 84: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,973 INFO L273 TraceCheckUtils]: 85: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,973 INFO L273 TraceCheckUtils]: 86: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,974 INFO L273 TraceCheckUtils]: 87: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,974 INFO L273 TraceCheckUtils]: 88: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,975 INFO L273 TraceCheckUtils]: 89: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,975 INFO L273 TraceCheckUtils]: 90: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,976 INFO L273 TraceCheckUtils]: 91: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,976 INFO L273 TraceCheckUtils]: 92: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,977 INFO L273 TraceCheckUtils]: 93: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume 8544 == #t~mem41;havoc #t~mem41; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,977 INFO L273 TraceCheckUtils]: 94: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,978 INFO L273 TraceCheckUtils]: 95: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,978 INFO L273 TraceCheckUtils]: 96: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,979 INFO L273 TraceCheckUtils]: 97: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,979 INFO L273 TraceCheckUtils]: 98: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,979 INFO L273 TraceCheckUtils]: 99: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {47785#(<= ssl3_accept_~blastFlag~0 2)} is VALID [2018-11-23 12:49:06,980 INFO L273 TraceCheckUtils]: 100: Hoare triple {47785#(<= ssl3_accept_~blastFlag~0 2)} assume 8 == ~blastFlag~0; {47784#false} is VALID [2018-11-23 12:49:06,980 INFO L273 TraceCheckUtils]: 101: Hoare triple {47784#false} assume !false; {47784#false} is VALID [2018-11-23 12:49:06,986 INFO L134 CoverageAnalysis]: Checked inductivity of 86 backedges. 56 proven. 0 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2018-11-23 12:49:06,987 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:06,987 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-23 12:49:06,987 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 102 [2018-11-23 12:49:06,987 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:06,987 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-23 12:49:07,059 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 74 edges. 74 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:07,059 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-23 12:49:07,059 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-23 12:49:07,060 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:07,060 INFO L87 Difference]: Start difference. First operand 260 states and 379 transitions. Second operand 3 states. [2018-11-23 12:49:07,757 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:07,757 INFO L93 Difference]: Finished difference Result 728 states and 1080 transitions. [2018-11-23 12:49:07,758 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-23 12:49:07,758 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 102 [2018-11-23 12:49:07,758 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:07,758 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:07,760 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 604 transitions. [2018-11-23 12:49:07,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:07,762 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 604 transitions. [2018-11-23 12:49:07,762 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 604 transitions. [2018-11-23 12:49:08,396 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 604 edges. 604 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:08,408 INFO L225 Difference]: With dead ends: 728 [2018-11-23 12:49:08,408 INFO L226 Difference]: Without dead ends: 493 [2018-11-23 12:49:08,409 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:08,409 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 493 states. [2018-11-23 12:49:08,807 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 493 to 493. [2018-11-23 12:49:08,808 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:08,808 INFO L82 GeneralOperation]: Start isEquivalent. First operand 493 states. Second operand 493 states. [2018-11-23 12:49:08,808 INFO L74 IsIncluded]: Start isIncluded. First operand 493 states. Second operand 493 states. [2018-11-23 12:49:08,808 INFO L87 Difference]: Start difference. First operand 493 states. Second operand 493 states. [2018-11-23 12:49:08,820 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:08,820 INFO L93 Difference]: Finished difference Result 493 states and 723 transitions. [2018-11-23 12:49:08,820 INFO L276 IsEmpty]: Start isEmpty. Operand 493 states and 723 transitions. [2018-11-23 12:49:08,821 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:08,821 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:08,821 INFO L74 IsIncluded]: Start isIncluded. First operand 493 states. Second operand 493 states. [2018-11-23 12:49:08,821 INFO L87 Difference]: Start difference. First operand 493 states. Second operand 493 states. [2018-11-23 12:49:08,832 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:08,832 INFO L93 Difference]: Finished difference Result 493 states and 723 transitions. [2018-11-23 12:49:08,832 INFO L276 IsEmpty]: Start isEmpty. Operand 493 states and 723 transitions. [2018-11-23 12:49:08,833 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:08,833 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:08,833 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:08,833 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:08,833 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 493 states. [2018-11-23 12:49:08,844 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 493 states to 493 states and 723 transitions. [2018-11-23 12:49:08,845 INFO L78 Accepts]: Start accepts. Automaton has 493 states and 723 transitions. Word has length 102 [2018-11-23 12:49:08,845 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:08,845 INFO L480 AbstractCegarLoop]: Abstraction has 493 states and 723 transitions. [2018-11-23 12:49:08,845 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-23 12:49:08,845 INFO L276 IsEmpty]: Start isEmpty. Operand 493 states and 723 transitions. [2018-11-23 12:49:08,845 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 105 [2018-11-23 12:49:08,845 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:08,846 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:08,846 INFO L423 AbstractCegarLoop]: === Iteration 39 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:08,846 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:08,846 INFO L82 PathProgramCache]: Analyzing trace with hash -282131921, now seen corresponding path program 1 times [2018-11-23 12:49:08,846 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:08,846 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:08,847 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:08,847 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:08,847 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:08,859 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:09,052 INFO L256 TraceCheckUtils]: 0: Hoare triple {50167#true} call ULTIMATE.init(); {50167#true} is VALID [2018-11-23 12:49:09,052 INFO L273 TraceCheckUtils]: 1: Hoare triple {50167#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,052 INFO L273 TraceCheckUtils]: 2: Hoare triple {50167#true} assume true; {50167#true} is VALID [2018-11-23 12:49:09,052 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {50167#true} {50167#true} #633#return; {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L256 TraceCheckUtils]: 4: Hoare triple {50167#true} call #t~ret138 := main(); {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L273 TraceCheckUtils]: 5: Hoare triple {50167#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L256 TraceCheckUtils]: 6: Hoare triple {50167#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L273 TraceCheckUtils]: 7: Hoare triple {50167#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L273 TraceCheckUtils]: 8: Hoare triple {50167#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L273 TraceCheckUtils]: 9: Hoare triple {50167#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {50167#true} is VALID [2018-11-23 12:49:09,053 INFO L273 TraceCheckUtils]: 10: Hoare triple {50167#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {50167#true} is VALID [2018-11-23 12:49:09,054 INFO L273 TraceCheckUtils]: 11: Hoare triple {50167#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,054 INFO L273 TraceCheckUtils]: 12: Hoare triple {50167#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {50167#true} is VALID [2018-11-23 12:49:09,054 INFO L273 TraceCheckUtils]: 13: Hoare triple {50167#true} assume !false; {50167#true} is VALID [2018-11-23 12:49:09,054 INFO L273 TraceCheckUtils]: 14: Hoare triple {50167#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,054 INFO L273 TraceCheckUtils]: 15: Hoare triple {50167#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,054 INFO L273 TraceCheckUtils]: 16: Hoare triple {50167#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 17: Hoare triple {50167#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 18: Hoare triple {50167#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 19: Hoare triple {50167#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 20: Hoare triple {50167#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 21: Hoare triple {50167#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 22: Hoare triple {50167#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,055 INFO L273 TraceCheckUtils]: 23: Hoare triple {50167#true} assume 8464 == #t~mem32;havoc #t~mem32; {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 24: Hoare triple {50167#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 25: Hoare triple {50167#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 26: Hoare triple {50167#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 27: Hoare triple {50167#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 28: Hoare triple {50167#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 29: Hoare triple {50167#true} ~skip~0 := 0; {50167#true} is VALID [2018-11-23 12:49:09,056 INFO L273 TraceCheckUtils]: 30: Hoare triple {50167#true} assume !false; {50167#true} is VALID [2018-11-23 12:49:09,057 INFO L273 TraceCheckUtils]: 31: Hoare triple {50167#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,057 INFO L273 TraceCheckUtils]: 32: Hoare triple {50167#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,057 INFO L273 TraceCheckUtils]: 33: Hoare triple {50167#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,057 INFO L273 TraceCheckUtils]: 34: Hoare triple {50167#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,057 INFO L273 TraceCheckUtils]: 35: Hoare triple {50167#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,057 INFO L273 TraceCheckUtils]: 36: Hoare triple {50167#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 37: Hoare triple {50167#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 38: Hoare triple {50167#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 39: Hoare triple {50167#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 40: Hoare triple {50167#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 41: Hoare triple {50167#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 42: Hoare triple {50167#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,058 INFO L273 TraceCheckUtils]: 43: Hoare triple {50167#true} assume 8496 == #t~mem35;havoc #t~mem35; {50167#true} is VALID [2018-11-23 12:49:09,059 INFO L273 TraceCheckUtils]: 44: Hoare triple {50167#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {50167#true} is VALID [2018-11-23 12:49:09,059 INFO L273 TraceCheckUtils]: 45: Hoare triple {50167#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {50167#true} is VALID [2018-11-23 12:49:09,059 INFO L273 TraceCheckUtils]: 46: Hoare triple {50167#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,059 INFO L273 TraceCheckUtils]: 47: Hoare triple {50167#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,059 INFO L273 TraceCheckUtils]: 48: Hoare triple {50167#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,059 INFO L273 TraceCheckUtils]: 49: Hoare triple {50167#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 50: Hoare triple {50167#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 51: Hoare triple {50167#true} ~skip~0 := 0; {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 52: Hoare triple {50167#true} assume !false; {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 53: Hoare triple {50167#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 54: Hoare triple {50167#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 55: Hoare triple {50167#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,060 INFO L273 TraceCheckUtils]: 56: Hoare triple {50167#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 57: Hoare triple {50167#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 58: Hoare triple {50167#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 59: Hoare triple {50167#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 60: Hoare triple {50167#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 61: Hoare triple {50167#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 62: Hoare triple {50167#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,061 INFO L273 TraceCheckUtils]: 63: Hoare triple {50167#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,062 INFO L273 TraceCheckUtils]: 64: Hoare triple {50167#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,062 INFO L273 TraceCheckUtils]: 65: Hoare triple {50167#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,062 INFO L273 TraceCheckUtils]: 66: Hoare triple {50167#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,062 INFO L273 TraceCheckUtils]: 67: Hoare triple {50167#true} assume 8512 == #t~mem37;havoc #t~mem37; {50167#true} is VALID [2018-11-23 12:49:09,062 INFO L273 TraceCheckUtils]: 68: Hoare triple {50167#true} call #t~mem72.base, #t~mem72.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem73.base, #t~mem73.offset := read~$Pointer$(#t~mem72.base, 836 + #t~mem72.offset, 4);call #t~mem74 := read~int(#t~mem73.base, 12 + #t~mem73.offset, 4); {50167#true} is VALID [2018-11-23 12:49:09,062 INFO L273 TraceCheckUtils]: 69: Hoare triple {50167#true} assume !(0 != ~bitwiseAnd(#t~mem74, 256) % 4294967296);havoc #t~mem73.base, #t~mem73.offset;havoc #t~mem74;havoc #t~mem72.base, #t~mem72.offset;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~ret~0 := #t~nondet75;havoc #t~nondet75; {50167#true} is VALID [2018-11-23 12:49:09,068 INFO L273 TraceCheckUtils]: 70: Hoare triple {50167#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 6; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,069 INFO L273 TraceCheckUtils]: 71: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(~ret~0 <= 0); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,070 INFO L273 TraceCheckUtils]: 72: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} call write~int(8528, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,070 INFO L273 TraceCheckUtils]: 73: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,073 INFO L273 TraceCheckUtils]: 74: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,073 INFO L273 TraceCheckUtils]: 75: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} ~skip~0 := 0; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,076 INFO L273 TraceCheckUtils]: 76: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !false; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,076 INFO L273 TraceCheckUtils]: 77: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,079 INFO L273 TraceCheckUtils]: 78: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,079 INFO L273 TraceCheckUtils]: 79: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,082 INFO L273 TraceCheckUtils]: 80: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,082 INFO L273 TraceCheckUtils]: 81: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,085 INFO L273 TraceCheckUtils]: 82: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,085 INFO L273 TraceCheckUtils]: 83: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,085 INFO L273 TraceCheckUtils]: 84: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,086 INFO L273 TraceCheckUtils]: 85: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,086 INFO L273 TraceCheckUtils]: 86: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,086 INFO L273 TraceCheckUtils]: 87: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,086 INFO L273 TraceCheckUtils]: 88: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,087 INFO L273 TraceCheckUtils]: 89: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,087 INFO L273 TraceCheckUtils]: 90: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,087 INFO L273 TraceCheckUtils]: 91: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,088 INFO L273 TraceCheckUtils]: 92: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,088 INFO L273 TraceCheckUtils]: 93: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,088 INFO L273 TraceCheckUtils]: 94: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,089 INFO L273 TraceCheckUtils]: 95: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume 8544 == #t~mem41;havoc #t~mem41; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,089 INFO L273 TraceCheckUtils]: 96: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,090 INFO L273 TraceCheckUtils]: 97: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,090 INFO L273 TraceCheckUtils]: 98: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,091 INFO L273 TraceCheckUtils]: 99: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,091 INFO L273 TraceCheckUtils]: 100: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,092 INFO L273 TraceCheckUtils]: 101: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {50169#(<= ssl3_accept_~blastFlag~0 6)} is VALID [2018-11-23 12:49:09,092 INFO L273 TraceCheckUtils]: 102: Hoare triple {50169#(<= ssl3_accept_~blastFlag~0 6)} assume 8 == ~blastFlag~0; {50168#false} is VALID [2018-11-23 12:49:09,093 INFO L273 TraceCheckUtils]: 103: Hoare triple {50168#false} assume !false; {50168#false} is VALID [2018-11-23 12:49:09,098 INFO L134 CoverageAnalysis]: Checked inductivity of 86 backedges. 47 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:09,099 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:09,099 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-23 12:49:09,099 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 104 [2018-11-23 12:49:09,099 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:09,099 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-23 12:49:09,177 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 78 edges. 78 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:09,177 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-23 12:49:09,177 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-23 12:49:09,178 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:09,178 INFO L87 Difference]: Start difference. First operand 493 states and 723 transitions. Second operand 3 states. [2018-11-23 12:49:10,201 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:10,201 INFO L93 Difference]: Finished difference Result 1196 states and 1769 transitions. [2018-11-23 12:49:10,201 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-23 12:49:10,201 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 104 [2018-11-23 12:49:10,201 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:10,201 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:10,204 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 605 transitions. [2018-11-23 12:49:10,204 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:10,206 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 605 transitions. [2018-11-23 12:49:10,206 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 605 transitions. [2018-11-23 12:49:10,785 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 605 edges. 605 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:10,809 INFO L225 Difference]: With dead ends: 1196 [2018-11-23 12:49:10,810 INFO L226 Difference]: Without dead ends: 728 [2018-11-23 12:49:10,810 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:10,811 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 728 states. [2018-11-23 12:49:11,488 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 728 to 726. [2018-11-23 12:49:11,488 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:11,488 INFO L82 GeneralOperation]: Start isEquivalent. First operand 728 states. Second operand 726 states. [2018-11-23 12:49:11,488 INFO L74 IsIncluded]: Start isIncluded. First operand 728 states. Second operand 726 states. [2018-11-23 12:49:11,488 INFO L87 Difference]: Start difference. First operand 728 states. Second operand 726 states. [2018-11-23 12:49:11,509 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:11,510 INFO L93 Difference]: Finished difference Result 728 states and 1072 transitions. [2018-11-23 12:49:11,510 INFO L276 IsEmpty]: Start isEmpty. Operand 728 states and 1072 transitions. [2018-11-23 12:49:11,510 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:11,510 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:11,510 INFO L74 IsIncluded]: Start isIncluded. First operand 726 states. Second operand 728 states. [2018-11-23 12:49:11,510 INFO L87 Difference]: Start difference. First operand 726 states. Second operand 728 states. [2018-11-23 12:49:11,529 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:11,529 INFO L93 Difference]: Finished difference Result 728 states and 1072 transitions. [2018-11-23 12:49:11,529 INFO L276 IsEmpty]: Start isEmpty. Operand 728 states and 1072 transitions. [2018-11-23 12:49:11,530 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:11,530 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:11,530 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:11,530 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:11,530 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 726 states. [2018-11-23 12:49:11,548 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 726 states to 726 states and 1071 transitions. [2018-11-23 12:49:11,549 INFO L78 Accepts]: Start accepts. Automaton has 726 states and 1071 transitions. Word has length 104 [2018-11-23 12:49:11,549 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:11,549 INFO L480 AbstractCegarLoop]: Abstraction has 726 states and 1071 transitions. [2018-11-23 12:49:11,549 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-23 12:49:11,549 INFO L276 IsEmpty]: Start isEmpty. Operand 726 states and 1071 transitions. [2018-11-23 12:49:11,550 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2018-11-23 12:49:11,550 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:11,550 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:11,550 INFO L423 AbstractCegarLoop]: === Iteration 40 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:11,550 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:11,550 INFO L82 PathProgramCache]: Analyzing trace with hash -1666602963, now seen corresponding path program 1 times [2018-11-23 12:49:11,551 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:11,551 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:11,551 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:11,552 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:11,552 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:11,566 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:11,794 INFO L256 TraceCheckUtils]: 0: Hoare triple {53816#true} call ULTIMATE.init(); {53816#true} is VALID [2018-11-23 12:49:11,794 INFO L273 TraceCheckUtils]: 1: Hoare triple {53816#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,794 INFO L273 TraceCheckUtils]: 2: Hoare triple {53816#true} assume true; {53816#true} is VALID [2018-11-23 12:49:11,795 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {53816#true} {53816#true} #633#return; {53816#true} is VALID [2018-11-23 12:49:11,795 INFO L256 TraceCheckUtils]: 4: Hoare triple {53816#true} call #t~ret138 := main(); {53816#true} is VALID [2018-11-23 12:49:11,795 INFO L273 TraceCheckUtils]: 5: Hoare triple {53816#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,795 INFO L256 TraceCheckUtils]: 6: Hoare triple {53816#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {53816#true} is VALID [2018-11-23 12:49:11,795 INFO L273 TraceCheckUtils]: 7: Hoare triple {53816#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,796 INFO L273 TraceCheckUtils]: 8: Hoare triple {53816#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {53816#true} is VALID [2018-11-23 12:49:11,796 INFO L273 TraceCheckUtils]: 9: Hoare triple {53816#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {53816#true} is VALID [2018-11-23 12:49:11,796 INFO L273 TraceCheckUtils]: 10: Hoare triple {53816#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {53816#true} is VALID [2018-11-23 12:49:11,796 INFO L273 TraceCheckUtils]: 11: Hoare triple {53816#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,796 INFO L273 TraceCheckUtils]: 12: Hoare triple {53816#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {53816#true} is VALID [2018-11-23 12:49:11,797 INFO L273 TraceCheckUtils]: 13: Hoare triple {53816#true} assume !false; {53816#true} is VALID [2018-11-23 12:49:11,797 INFO L273 TraceCheckUtils]: 14: Hoare triple {53816#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,797 INFO L273 TraceCheckUtils]: 15: Hoare triple {53816#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,797 INFO L273 TraceCheckUtils]: 16: Hoare triple {53816#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,797 INFO L273 TraceCheckUtils]: 17: Hoare triple {53816#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,797 INFO L273 TraceCheckUtils]: 18: Hoare triple {53816#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 19: Hoare triple {53816#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 20: Hoare triple {53816#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 21: Hoare triple {53816#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 22: Hoare triple {53816#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 23: Hoare triple {53816#true} assume 8464 == #t~mem32;havoc #t~mem32; {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 24: Hoare triple {53816#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {53816#true} is VALID [2018-11-23 12:49:11,798 INFO L273 TraceCheckUtils]: 25: Hoare triple {53816#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {53816#true} is VALID [2018-11-23 12:49:11,799 INFO L273 TraceCheckUtils]: 26: Hoare triple {53816#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,799 INFO L273 TraceCheckUtils]: 27: Hoare triple {53816#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,799 INFO L273 TraceCheckUtils]: 28: Hoare triple {53816#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {53816#true} is VALID [2018-11-23 12:49:11,799 INFO L273 TraceCheckUtils]: 29: Hoare triple {53816#true} ~skip~0 := 0; {53816#true} is VALID [2018-11-23 12:49:11,799 INFO L273 TraceCheckUtils]: 30: Hoare triple {53816#true} assume !false; {53816#true} is VALID [2018-11-23 12:49:11,799 INFO L273 TraceCheckUtils]: 31: Hoare triple {53816#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 32: Hoare triple {53816#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 33: Hoare triple {53816#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 34: Hoare triple {53816#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 35: Hoare triple {53816#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 36: Hoare triple {53816#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 37: Hoare triple {53816#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,800 INFO L273 TraceCheckUtils]: 38: Hoare triple {53816#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,801 INFO L273 TraceCheckUtils]: 39: Hoare triple {53816#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,801 INFO L273 TraceCheckUtils]: 40: Hoare triple {53816#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,801 INFO L273 TraceCheckUtils]: 41: Hoare triple {53816#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,801 INFO L273 TraceCheckUtils]: 42: Hoare triple {53816#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,801 INFO L273 TraceCheckUtils]: 43: Hoare triple {53816#true} assume 8496 == #t~mem35;havoc #t~mem35; {53816#true} is VALID [2018-11-23 12:49:11,801 INFO L273 TraceCheckUtils]: 44: Hoare triple {53816#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {53816#true} is VALID [2018-11-23 12:49:11,802 INFO L273 TraceCheckUtils]: 45: Hoare triple {53816#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {53816#true} is VALID [2018-11-23 12:49:11,802 INFO L273 TraceCheckUtils]: 46: Hoare triple {53816#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,802 INFO L273 TraceCheckUtils]: 47: Hoare triple {53816#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,802 INFO L273 TraceCheckUtils]: 48: Hoare triple {53816#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,802 INFO L273 TraceCheckUtils]: 49: Hoare triple {53816#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,802 INFO L273 TraceCheckUtils]: 50: Hoare triple {53816#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {53816#true} is VALID [2018-11-23 12:49:11,803 INFO L273 TraceCheckUtils]: 51: Hoare triple {53816#true} ~skip~0 := 0; {53816#true} is VALID [2018-11-23 12:49:11,803 INFO L273 TraceCheckUtils]: 52: Hoare triple {53816#true} assume !false; {53816#true} is VALID [2018-11-23 12:49:11,803 INFO L273 TraceCheckUtils]: 53: Hoare triple {53816#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,803 INFO L273 TraceCheckUtils]: 54: Hoare triple {53816#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,803 INFO L273 TraceCheckUtils]: 55: Hoare triple {53816#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,804 INFO L273 TraceCheckUtils]: 56: Hoare triple {53816#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,804 INFO L273 TraceCheckUtils]: 57: Hoare triple {53816#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,804 INFO L273 TraceCheckUtils]: 58: Hoare triple {53816#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,804 INFO L273 TraceCheckUtils]: 59: Hoare triple {53816#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,804 INFO L273 TraceCheckUtils]: 60: Hoare triple {53816#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,804 INFO L273 TraceCheckUtils]: 61: Hoare triple {53816#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,805 INFO L273 TraceCheckUtils]: 62: Hoare triple {53816#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,805 INFO L273 TraceCheckUtils]: 63: Hoare triple {53816#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,805 INFO L273 TraceCheckUtils]: 64: Hoare triple {53816#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,805 INFO L273 TraceCheckUtils]: 65: Hoare triple {53816#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,805 INFO L273 TraceCheckUtils]: 66: Hoare triple {53816#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,805 INFO L273 TraceCheckUtils]: 67: Hoare triple {53816#true} assume 8512 == #t~mem37;havoc #t~mem37; {53816#true} is VALID [2018-11-23 12:49:11,806 INFO L273 TraceCheckUtils]: 68: Hoare triple {53816#true} call #t~mem72.base, #t~mem72.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem73.base, #t~mem73.offset := read~$Pointer$(#t~mem72.base, 836 + #t~mem72.offset, 4);call #t~mem74 := read~int(#t~mem73.base, 12 + #t~mem73.offset, 4); {53816#true} is VALID [2018-11-23 12:49:11,806 INFO L273 TraceCheckUtils]: 69: Hoare triple {53816#true} assume !(0 != ~bitwiseAnd(#t~mem74, 256) % 4294967296);havoc #t~mem73.base, #t~mem73.offset;havoc #t~mem74;havoc #t~mem72.base, #t~mem72.offset;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~ret~0 := #t~nondet75;havoc #t~nondet75; {53816#true} is VALID [2018-11-23 12:49:11,818 INFO L273 TraceCheckUtils]: 70: Hoare triple {53816#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 6; {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,831 INFO L273 TraceCheckUtils]: 71: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(~ret~0 <= 0); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,843 INFO L273 TraceCheckUtils]: 72: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} call write~int(8528, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,856 INFO L273 TraceCheckUtils]: 73: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,868 INFO L273 TraceCheckUtils]: 74: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,881 INFO L273 TraceCheckUtils]: 75: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} ~skip~0 := 0; {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,893 INFO L273 TraceCheckUtils]: 76: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !false; {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,906 INFO L273 TraceCheckUtils]: 77: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,918 INFO L273 TraceCheckUtils]: 78: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,931 INFO L273 TraceCheckUtils]: 79: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,943 INFO L273 TraceCheckUtils]: 80: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,955 INFO L273 TraceCheckUtils]: 81: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,968 INFO L273 TraceCheckUtils]: 82: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,980 INFO L273 TraceCheckUtils]: 83: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:11,993 INFO L273 TraceCheckUtils]: 84: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,005 INFO L273 TraceCheckUtils]: 85: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,018 INFO L273 TraceCheckUtils]: 86: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,031 INFO L273 TraceCheckUtils]: 87: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,043 INFO L273 TraceCheckUtils]: 88: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,056 INFO L273 TraceCheckUtils]: 89: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,070 INFO L273 TraceCheckUtils]: 90: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,078 INFO L273 TraceCheckUtils]: 91: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,091 INFO L273 TraceCheckUtils]: 92: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,104 INFO L273 TraceCheckUtils]: 93: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,116 INFO L273 TraceCheckUtils]: 94: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,129 INFO L273 TraceCheckUtils]: 95: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,141 INFO L273 TraceCheckUtils]: 96: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,144 INFO L273 TraceCheckUtils]: 97: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,144 INFO L273 TraceCheckUtils]: 98: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,145 INFO L273 TraceCheckUtils]: 99: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,145 INFO L273 TraceCheckUtils]: 100: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,147 INFO L273 TraceCheckUtils]: 101: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,147 INFO L273 TraceCheckUtils]: 102: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,149 INFO L273 TraceCheckUtils]: 103: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,149 INFO L273 TraceCheckUtils]: 104: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,151 INFO L273 TraceCheckUtils]: 105: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,151 INFO L273 TraceCheckUtils]: 106: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume 8640 == #t~mem52;havoc #t~mem52; {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,153 INFO L273 TraceCheckUtils]: 107: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {53818#(<= 6 ssl3_accept_~blastFlag~0)} is VALID [2018-11-23 12:49:12,153 INFO L273 TraceCheckUtils]: 108: Hoare triple {53818#(<= 6 ssl3_accept_~blastFlag~0)} assume 4 == ~blastFlag~0; {53817#false} is VALID [2018-11-23 12:49:12,153 INFO L273 TraceCheckUtils]: 109: Hoare triple {53817#false} assume !false; {53817#false} is VALID [2018-11-23 12:49:12,158 INFO L134 CoverageAnalysis]: Checked inductivity of 86 backedges. 47 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:12,159 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:12,159 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-23 12:49:12,159 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 110 [2018-11-23 12:49:12,159 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:12,159 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-23 12:49:12,238 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 84 edges. 84 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:12,238 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-23 12:49:12,238 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-23 12:49:12,238 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:12,238 INFO L87 Difference]: Start difference. First operand 726 states and 1071 transitions. Second operand 3 states. [2018-11-23 12:49:14,192 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:14,193 INFO L93 Difference]: Finished difference Result 1662 states and 2463 transitions. [2018-11-23 12:49:14,193 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-23 12:49:14,193 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 110 [2018-11-23 12:49:14,193 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:14,193 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:14,195 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 603 transitions. [2018-11-23 12:49:14,195 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:14,197 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 603 transitions. [2018-11-23 12:49:14,197 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 603 transitions. [2018-11-23 12:49:14,794 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 603 edges. 603 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:14,834 INFO L225 Difference]: With dead ends: 1662 [2018-11-23 12:49:14,835 INFO L226 Difference]: Without dead ends: 961 [2018-11-23 12:49:14,836 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:14,836 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 961 states. [2018-11-23 12:49:15,383 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 961 to 959. [2018-11-23 12:49:15,383 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:15,383 INFO L82 GeneralOperation]: Start isEquivalent. First operand 961 states. Second operand 959 states. [2018-11-23 12:49:15,383 INFO L74 IsIncluded]: Start isIncluded. First operand 961 states. Second operand 959 states. [2018-11-23 12:49:15,383 INFO L87 Difference]: Start difference. First operand 961 states. Second operand 959 states. [2018-11-23 12:49:15,420 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:15,420 INFO L93 Difference]: Finished difference Result 961 states and 1406 transitions. [2018-11-23 12:49:15,420 INFO L276 IsEmpty]: Start isEmpty. Operand 961 states and 1406 transitions. [2018-11-23 12:49:15,421 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:15,421 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:15,421 INFO L74 IsIncluded]: Start isIncluded. First operand 959 states. Second operand 961 states. [2018-11-23 12:49:15,421 INFO L87 Difference]: Start difference. First operand 959 states. Second operand 961 states. [2018-11-23 12:49:15,458 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:15,459 INFO L93 Difference]: Finished difference Result 961 states and 1406 transitions. [2018-11-23 12:49:15,459 INFO L276 IsEmpty]: Start isEmpty. Operand 961 states and 1406 transitions. [2018-11-23 12:49:15,459 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:15,460 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:15,460 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:15,460 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:15,460 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 959 states. [2018-11-23 12:49:15,495 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 959 states to 959 states and 1405 transitions. [2018-11-23 12:49:15,495 INFO L78 Accepts]: Start accepts. Automaton has 959 states and 1405 transitions. Word has length 110 [2018-11-23 12:49:15,495 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:15,495 INFO L480 AbstractCegarLoop]: Abstraction has 959 states and 1405 transitions. [2018-11-23 12:49:15,495 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-23 12:49:15,495 INFO L276 IsEmpty]: Start isEmpty. Operand 959 states and 1405 transitions. [2018-11-23 12:49:15,496 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 128 [2018-11-23 12:49:15,496 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:15,496 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:15,496 INFO L423 AbstractCegarLoop]: === Iteration 41 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:15,497 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:15,497 INFO L82 PathProgramCache]: Analyzing trace with hash -37863631, now seen corresponding path program 1 times [2018-11-23 12:49:15,497 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:15,497 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:15,497 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:15,498 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:15,498 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:15,513 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:15,664 INFO L256 TraceCheckUtils]: 0: Hoare triple {58723#true} call ULTIMATE.init(); {58723#true} is VALID [2018-11-23 12:49:15,664 INFO L273 TraceCheckUtils]: 1: Hoare triple {58723#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,665 INFO L273 TraceCheckUtils]: 2: Hoare triple {58723#true} assume true; {58723#true} is VALID [2018-11-23 12:49:15,665 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {58723#true} {58723#true} #633#return; {58723#true} is VALID [2018-11-23 12:49:15,665 INFO L256 TraceCheckUtils]: 4: Hoare triple {58723#true} call #t~ret138 := main(); {58723#true} is VALID [2018-11-23 12:49:15,665 INFO L273 TraceCheckUtils]: 5: Hoare triple {58723#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,666 INFO L256 TraceCheckUtils]: 6: Hoare triple {58723#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {58723#true} is VALID [2018-11-23 12:49:15,666 INFO L273 TraceCheckUtils]: 7: Hoare triple {58723#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,666 INFO L273 TraceCheckUtils]: 8: Hoare triple {58723#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {58723#true} is VALID [2018-11-23 12:49:15,666 INFO L273 TraceCheckUtils]: 9: Hoare triple {58723#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {58723#true} is VALID [2018-11-23 12:49:15,666 INFO L273 TraceCheckUtils]: 10: Hoare triple {58723#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {58723#true} is VALID [2018-11-23 12:49:15,666 INFO L273 TraceCheckUtils]: 11: Hoare triple {58723#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 12: Hoare triple {58723#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 13: Hoare triple {58723#true} assume !false; {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 14: Hoare triple {58723#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 15: Hoare triple {58723#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 16: Hoare triple {58723#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 17: Hoare triple {58723#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 18: Hoare triple {58723#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 19: Hoare triple {58723#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,667 INFO L273 TraceCheckUtils]: 20: Hoare triple {58723#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 21: Hoare triple {58723#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 22: Hoare triple {58723#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 23: Hoare triple {58723#true} assume 8464 == #t~mem32;havoc #t~mem32; {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 24: Hoare triple {58723#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 25: Hoare triple {58723#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 26: Hoare triple {58723#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 27: Hoare triple {58723#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 28: Hoare triple {58723#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {58723#true} is VALID [2018-11-23 12:49:15,668 INFO L273 TraceCheckUtils]: 29: Hoare triple {58723#true} ~skip~0 := 0; {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 30: Hoare triple {58723#true} assume !false; {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 31: Hoare triple {58723#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 32: Hoare triple {58723#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 33: Hoare triple {58723#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 34: Hoare triple {58723#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 35: Hoare triple {58723#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 36: Hoare triple {58723#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 37: Hoare triple {58723#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,669 INFO L273 TraceCheckUtils]: 38: Hoare triple {58723#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 39: Hoare triple {58723#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 40: Hoare triple {58723#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 41: Hoare triple {58723#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 42: Hoare triple {58723#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 43: Hoare triple {58723#true} assume 8496 == #t~mem35;havoc #t~mem35; {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 44: Hoare triple {58723#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {58723#true} is VALID [2018-11-23 12:49:15,670 INFO L273 TraceCheckUtils]: 45: Hoare triple {58723#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 46: Hoare triple {58723#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 47: Hoare triple {58723#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 48: Hoare triple {58723#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 49: Hoare triple {58723#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 50: Hoare triple {58723#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 51: Hoare triple {58723#true} ~skip~0 := 0; {58723#true} is VALID [2018-11-23 12:49:15,671 INFO L273 TraceCheckUtils]: 52: Hoare triple {58723#true} assume !false; {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 53: Hoare triple {58723#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 54: Hoare triple {58723#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 55: Hoare triple {58723#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 56: Hoare triple {58723#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 57: Hoare triple {58723#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 58: Hoare triple {58723#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 59: Hoare triple {58723#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 60: Hoare triple {58723#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,672 INFO L273 TraceCheckUtils]: 61: Hoare triple {58723#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 62: Hoare triple {58723#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 63: Hoare triple {58723#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 64: Hoare triple {58723#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 65: Hoare triple {58723#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 66: Hoare triple {58723#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 67: Hoare triple {58723#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 68: Hoare triple {58723#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 69: Hoare triple {58723#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 70: Hoare triple {58723#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,673 INFO L273 TraceCheckUtils]: 71: Hoare triple {58723#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 72: Hoare triple {58723#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 73: Hoare triple {58723#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 74: Hoare triple {58723#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 75: Hoare triple {58723#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 76: Hoare triple {58723#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 77: Hoare triple {58723#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 78: Hoare triple {58723#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 79: Hoare triple {58723#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,674 INFO L273 TraceCheckUtils]: 80: Hoare triple {58723#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 81: Hoare triple {58723#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 82: Hoare triple {58723#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 83: Hoare triple {58723#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 84: Hoare triple {58723#true} assume 8656 == #t~mem54;havoc #t~mem54; {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 85: Hoare triple {58723#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 86: Hoare triple {58723#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {58723#true} is VALID [2018-11-23 12:49:15,675 INFO L273 TraceCheckUtils]: 87: Hoare triple {58723#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {58723#true} is VALID [2018-11-23 12:49:15,676 INFO L273 TraceCheckUtils]: 88: Hoare triple {58723#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,677 INFO L273 TraceCheckUtils]: 89: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(0 == ~tmp___10~0); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,681 INFO L273 TraceCheckUtils]: 90: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,681 INFO L273 TraceCheckUtils]: 91: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,681 INFO L273 TraceCheckUtils]: 92: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,682 INFO L273 TraceCheckUtils]: 93: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !false; {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,682 INFO L273 TraceCheckUtils]: 94: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,682 INFO L273 TraceCheckUtils]: 95: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,682 INFO L273 TraceCheckUtils]: 96: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,683 INFO L273 TraceCheckUtils]: 97: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,683 INFO L273 TraceCheckUtils]: 98: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,683 INFO L273 TraceCheckUtils]: 99: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,684 INFO L273 TraceCheckUtils]: 100: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,684 INFO L273 TraceCheckUtils]: 101: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,684 INFO L273 TraceCheckUtils]: 102: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,685 INFO L273 TraceCheckUtils]: 103: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,685 INFO L273 TraceCheckUtils]: 104: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,686 INFO L273 TraceCheckUtils]: 105: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,686 INFO L273 TraceCheckUtils]: 106: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,687 INFO L273 TraceCheckUtils]: 107: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,687 INFO L273 TraceCheckUtils]: 108: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,688 INFO L273 TraceCheckUtils]: 109: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,688 INFO L273 TraceCheckUtils]: 110: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,689 INFO L273 TraceCheckUtils]: 111: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,689 INFO L273 TraceCheckUtils]: 112: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,689 INFO L273 TraceCheckUtils]: 113: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,690 INFO L273 TraceCheckUtils]: 114: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,690 INFO L273 TraceCheckUtils]: 115: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,691 INFO L273 TraceCheckUtils]: 116: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,691 INFO L273 TraceCheckUtils]: 117: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,692 INFO L273 TraceCheckUtils]: 118: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,692 INFO L273 TraceCheckUtils]: 119: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,693 INFO L273 TraceCheckUtils]: 120: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,693 INFO L273 TraceCheckUtils]: 121: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:15,694 INFO L273 TraceCheckUtils]: 122: Hoare triple {58725#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {58726#(= 8672 |ssl3_accept_#t~mem52|)} is VALID [2018-11-23 12:49:15,694 INFO L273 TraceCheckUtils]: 123: Hoare triple {58726#(= 8672 |ssl3_accept_#t~mem52|)} assume 8640 == #t~mem52;havoc #t~mem52; {58724#false} is VALID [2018-11-23 12:49:15,695 INFO L273 TraceCheckUtils]: 124: Hoare triple {58724#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {58724#false} is VALID [2018-11-23 12:49:15,695 INFO L273 TraceCheckUtils]: 125: Hoare triple {58724#false} assume 4 == ~blastFlag~0; {58724#false} is VALID [2018-11-23 12:49:15,695 INFO L273 TraceCheckUtils]: 126: Hoare triple {58724#false} assume !false; {58724#false} is VALID [2018-11-23 12:49:15,709 INFO L134 CoverageAnalysis]: Checked inductivity of 101 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:15,709 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:15,709 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:15,710 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 127 [2018-11-23 12:49:15,710 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:15,710 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:15,810 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 101 edges. 101 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:15,810 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:15,810 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:15,811 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:15,811 INFO L87 Difference]: Start difference. First operand 959 states and 1405 transitions. Second operand 4 states. [2018-11-23 12:49:19,060 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:19,061 INFO L93 Difference]: Finished difference Result 2303 states and 3401 transitions. [2018-11-23 12:49:19,061 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:19,061 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 127 [2018-11-23 12:49:19,061 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:19,061 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:19,063 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 569 transitions. [2018-11-23 12:49:19,063 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:19,065 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 569 transitions. [2018-11-23 12:49:19,065 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 569 transitions. [2018-11-23 12:49:19,652 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 569 edges. 569 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:19,720 INFO L225 Difference]: With dead ends: 2303 [2018-11-23 12:49:19,720 INFO L226 Difference]: Without dead ends: 1369 [2018-11-23 12:49:19,722 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:19,723 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1369 states. [2018-11-23 12:49:21,295 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1369 to 1115. [2018-11-23 12:49:21,295 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:21,295 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1369 states. Second operand 1115 states. [2018-11-23 12:49:21,295 INFO L74 IsIncluded]: Start isIncluded. First operand 1369 states. Second operand 1115 states. [2018-11-23 12:49:21,295 INFO L87 Difference]: Start difference. First operand 1369 states. Second operand 1115 states. [2018-11-23 12:49:21,353 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:21,353 INFO L93 Difference]: Finished difference Result 1369 states and 2020 transitions. [2018-11-23 12:49:21,353 INFO L276 IsEmpty]: Start isEmpty. Operand 1369 states and 2020 transitions. [2018-11-23 12:49:21,354 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:21,354 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:21,354 INFO L74 IsIncluded]: Start isIncluded. First operand 1115 states. Second operand 1369 states. [2018-11-23 12:49:21,354 INFO L87 Difference]: Start difference. First operand 1115 states. Second operand 1369 states. [2018-11-23 12:49:21,406 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:21,406 INFO L93 Difference]: Finished difference Result 1369 states and 2020 transitions. [2018-11-23 12:49:21,406 INFO L276 IsEmpty]: Start isEmpty. Operand 1369 states and 2020 transitions. [2018-11-23 12:49:21,407 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:21,407 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:21,407 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:21,407 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:21,407 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1115 states. [2018-11-23 12:49:21,448 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1115 states to 1115 states and 1689 transitions. [2018-11-23 12:49:21,448 INFO L78 Accepts]: Start accepts. Automaton has 1115 states and 1689 transitions. Word has length 127 [2018-11-23 12:49:21,448 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:21,448 INFO L480 AbstractCegarLoop]: Abstraction has 1115 states and 1689 transitions. [2018-11-23 12:49:21,448 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:21,448 INFO L276 IsEmpty]: Start isEmpty. Operand 1115 states and 1689 transitions. [2018-11-23 12:49:21,449 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 129 [2018-11-23 12:49:21,449 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:21,449 INFO L402 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:21,449 INFO L423 AbstractCegarLoop]: === Iteration 42 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:21,450 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:21,450 INFO L82 PathProgramCache]: Analyzing trace with hash -1181107307, now seen corresponding path program 1 times [2018-11-23 12:49:21,450 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:21,450 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:21,451 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:21,451 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:21,451 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:21,464 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:21,546 INFO L256 TraceCheckUtils]: 0: Hoare triple {65365#true} call ULTIMATE.init(); {65365#true} is VALID [2018-11-23 12:49:21,546 INFO L273 TraceCheckUtils]: 1: Hoare triple {65365#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L273 TraceCheckUtils]: 2: Hoare triple {65365#true} assume true; {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {65365#true} {65365#true} #633#return; {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L256 TraceCheckUtils]: 4: Hoare triple {65365#true} call #t~ret138 := main(); {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L273 TraceCheckUtils]: 5: Hoare triple {65365#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L256 TraceCheckUtils]: 6: Hoare triple {65365#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L273 TraceCheckUtils]: 7: Hoare triple {65365#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,547 INFO L273 TraceCheckUtils]: 8: Hoare triple {65365#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 9: Hoare triple {65365#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 10: Hoare triple {65365#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 11: Hoare triple {65365#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 12: Hoare triple {65365#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 13: Hoare triple {65365#true} assume !false; {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 14: Hoare triple {65365#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 15: Hoare triple {65365#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 16: Hoare triple {65365#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,548 INFO L273 TraceCheckUtils]: 17: Hoare triple {65365#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 18: Hoare triple {65365#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 19: Hoare triple {65365#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 20: Hoare triple {65365#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 21: Hoare triple {65365#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 22: Hoare triple {65365#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 23: Hoare triple {65365#true} assume 8464 == #t~mem32;havoc #t~mem32; {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 24: Hoare triple {65365#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 25: Hoare triple {65365#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {65365#true} is VALID [2018-11-23 12:49:21,549 INFO L273 TraceCheckUtils]: 26: Hoare triple {65365#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,550 INFO L273 TraceCheckUtils]: 27: Hoare triple {65365#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,551 INFO L273 TraceCheckUtils]: 28: Hoare triple {65365#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {65365#true} is VALID [2018-11-23 12:49:21,551 INFO L273 TraceCheckUtils]: 29: Hoare triple {65365#true} ~skip~0 := 0; {65365#true} is VALID [2018-11-23 12:49:21,551 INFO L273 TraceCheckUtils]: 30: Hoare triple {65365#true} assume !false; {65365#true} is VALID [2018-11-23 12:49:21,551 INFO L273 TraceCheckUtils]: 31: Hoare triple {65365#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,551 INFO L273 TraceCheckUtils]: 32: Hoare triple {65365#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,552 INFO L273 TraceCheckUtils]: 33: Hoare triple {65365#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,552 INFO L273 TraceCheckUtils]: 34: Hoare triple {65365#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,552 INFO L273 TraceCheckUtils]: 35: Hoare triple {65365#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,552 INFO L273 TraceCheckUtils]: 36: Hoare triple {65365#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,552 INFO L273 TraceCheckUtils]: 37: Hoare triple {65365#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,552 INFO L273 TraceCheckUtils]: 38: Hoare triple {65365#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,553 INFO L273 TraceCheckUtils]: 39: Hoare triple {65365#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,553 INFO L273 TraceCheckUtils]: 40: Hoare triple {65365#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,553 INFO L273 TraceCheckUtils]: 41: Hoare triple {65365#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,553 INFO L273 TraceCheckUtils]: 42: Hoare triple {65365#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,553 INFO L273 TraceCheckUtils]: 43: Hoare triple {65365#true} assume 8496 == #t~mem35;havoc #t~mem35; {65365#true} is VALID [2018-11-23 12:49:21,553 INFO L273 TraceCheckUtils]: 44: Hoare triple {65365#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {65365#true} is VALID [2018-11-23 12:49:21,554 INFO L273 TraceCheckUtils]: 45: Hoare triple {65365#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {65365#true} is VALID [2018-11-23 12:49:21,554 INFO L273 TraceCheckUtils]: 46: Hoare triple {65365#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,554 INFO L273 TraceCheckUtils]: 47: Hoare triple {65365#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,554 INFO L273 TraceCheckUtils]: 48: Hoare triple {65365#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,554 INFO L273 TraceCheckUtils]: 49: Hoare triple {65365#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,554 INFO L273 TraceCheckUtils]: 50: Hoare triple {65365#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {65365#true} is VALID [2018-11-23 12:49:21,555 INFO L273 TraceCheckUtils]: 51: Hoare triple {65365#true} ~skip~0 := 0; {65365#true} is VALID [2018-11-23 12:49:21,555 INFO L273 TraceCheckUtils]: 52: Hoare triple {65365#true} assume !false; {65365#true} is VALID [2018-11-23 12:49:21,555 INFO L273 TraceCheckUtils]: 53: Hoare triple {65365#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,555 INFO L273 TraceCheckUtils]: 54: Hoare triple {65365#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,555 INFO L273 TraceCheckUtils]: 55: Hoare triple {65365#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,555 INFO L273 TraceCheckUtils]: 56: Hoare triple {65365#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,556 INFO L273 TraceCheckUtils]: 57: Hoare triple {65365#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,556 INFO L273 TraceCheckUtils]: 58: Hoare triple {65365#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,556 INFO L273 TraceCheckUtils]: 59: Hoare triple {65365#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,556 INFO L273 TraceCheckUtils]: 60: Hoare triple {65365#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,556 INFO L273 TraceCheckUtils]: 61: Hoare triple {65365#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,556 INFO L273 TraceCheckUtils]: 62: Hoare triple {65365#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,557 INFO L273 TraceCheckUtils]: 63: Hoare triple {65365#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,557 INFO L273 TraceCheckUtils]: 64: Hoare triple {65365#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,557 INFO L273 TraceCheckUtils]: 65: Hoare triple {65365#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,557 INFO L273 TraceCheckUtils]: 66: Hoare triple {65365#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,557 INFO L273 TraceCheckUtils]: 67: Hoare triple {65365#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,557 INFO L273 TraceCheckUtils]: 68: Hoare triple {65365#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,558 INFO L273 TraceCheckUtils]: 69: Hoare triple {65365#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,558 INFO L273 TraceCheckUtils]: 70: Hoare triple {65365#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,558 INFO L273 TraceCheckUtils]: 71: Hoare triple {65365#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,558 INFO L273 TraceCheckUtils]: 72: Hoare triple {65365#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,558 INFO L273 TraceCheckUtils]: 73: Hoare triple {65365#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,558 INFO L273 TraceCheckUtils]: 74: Hoare triple {65365#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,559 INFO L273 TraceCheckUtils]: 75: Hoare triple {65365#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,559 INFO L273 TraceCheckUtils]: 76: Hoare triple {65365#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,559 INFO L273 TraceCheckUtils]: 77: Hoare triple {65365#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,559 INFO L273 TraceCheckUtils]: 78: Hoare triple {65365#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,559 INFO L273 TraceCheckUtils]: 79: Hoare triple {65365#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,559 INFO L273 TraceCheckUtils]: 80: Hoare triple {65365#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,560 INFO L273 TraceCheckUtils]: 81: Hoare triple {65365#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,560 INFO L273 TraceCheckUtils]: 82: Hoare triple {65365#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,560 INFO L273 TraceCheckUtils]: 83: Hoare triple {65365#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {65365#true} is VALID [2018-11-23 12:49:21,560 INFO L273 TraceCheckUtils]: 84: Hoare triple {65365#true} assume 8656 == #t~mem54;havoc #t~mem54; {65365#true} is VALID [2018-11-23 12:49:21,560 INFO L273 TraceCheckUtils]: 85: Hoare triple {65365#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {65365#true} is VALID [2018-11-23 12:49:21,560 INFO L273 TraceCheckUtils]: 86: Hoare triple {65365#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {65365#true} is VALID [2018-11-23 12:49:21,561 INFO L273 TraceCheckUtils]: 87: Hoare triple {65365#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {65365#true} is VALID [2018-11-23 12:49:21,576 INFO L273 TraceCheckUtils]: 88: Hoare triple {65365#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,585 INFO L273 TraceCheckUtils]: 89: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(0 == ~tmp___10~0); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,598 INFO L273 TraceCheckUtils]: 90: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,607 INFO L273 TraceCheckUtils]: 91: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,620 INFO L273 TraceCheckUtils]: 92: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} ~skip~0 := 0; {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,629 INFO L273 TraceCheckUtils]: 93: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !false; {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,643 INFO L273 TraceCheckUtils]: 94: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,652 INFO L273 TraceCheckUtils]: 95: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,667 INFO L273 TraceCheckUtils]: 96: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,676 INFO L273 TraceCheckUtils]: 97: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,688 INFO L273 TraceCheckUtils]: 98: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,701 INFO L273 TraceCheckUtils]: 99: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,714 INFO L273 TraceCheckUtils]: 100: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,726 INFO L273 TraceCheckUtils]: 101: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,745 INFO L273 TraceCheckUtils]: 102: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,754 INFO L273 TraceCheckUtils]: 103: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,769 INFO L273 TraceCheckUtils]: 104: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,778 INFO L273 TraceCheckUtils]: 105: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,793 INFO L273 TraceCheckUtils]: 106: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,802 INFO L273 TraceCheckUtils]: 107: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,814 INFO L273 TraceCheckUtils]: 108: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,827 INFO L273 TraceCheckUtils]: 109: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,841 INFO L273 TraceCheckUtils]: 110: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,849 INFO L273 TraceCheckUtils]: 111: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,861 INFO L273 TraceCheckUtils]: 112: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,861 INFO L273 TraceCheckUtils]: 113: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,864 INFO L273 TraceCheckUtils]: 114: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,864 INFO L273 TraceCheckUtils]: 115: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,867 INFO L273 TraceCheckUtils]: 116: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,867 INFO L273 TraceCheckUtils]: 117: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,867 INFO L273 TraceCheckUtils]: 118: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,868 INFO L273 TraceCheckUtils]: 119: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,868 INFO L273 TraceCheckUtils]: 120: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,868 INFO L273 TraceCheckUtils]: 121: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,868 INFO L273 TraceCheckUtils]: 122: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} is VALID [2018-11-23 12:49:21,869 INFO L273 TraceCheckUtils]: 123: Hoare triple {65367#(= 8672 (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)))} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {65368#(= 8672 |ssl3_accept_#t~mem53|)} is VALID [2018-11-23 12:49:21,869 INFO L273 TraceCheckUtils]: 124: Hoare triple {65368#(= 8672 |ssl3_accept_#t~mem53|)} assume 8641 == #t~mem53;havoc #t~mem53; {65366#false} is VALID [2018-11-23 12:49:21,869 INFO L273 TraceCheckUtils]: 125: Hoare triple {65366#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {65366#false} is VALID [2018-11-23 12:49:21,869 INFO L273 TraceCheckUtils]: 126: Hoare triple {65366#false} assume 4 == ~blastFlag~0; {65366#false} is VALID [2018-11-23 12:49:21,870 INFO L273 TraceCheckUtils]: 127: Hoare triple {65366#false} assume !false; {65366#false} is VALID [2018-11-23 12:49:21,883 INFO L134 CoverageAnalysis]: Checked inductivity of 102 backedges. 63 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:21,883 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:21,883 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:21,883 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 128 [2018-11-23 12:49:21,883 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:21,883 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:21,982 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 102 edges. 102 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:21,982 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:21,983 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:21,983 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:21,983 INFO L87 Difference]: Start difference. First operand 1115 states and 1689 transitions. Second operand 4 states. [2018-11-23 12:49:26,543 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:26,543 INFO L93 Difference]: Finished difference Result 2441 states and 3659 transitions. [2018-11-23 12:49:26,543 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:26,543 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 128 [2018-11-23 12:49:26,543 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:26,543 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:26,545 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 561 transitions. [2018-11-23 12:49:26,546 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:26,547 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 561 transitions. [2018-11-23 12:49:26,548 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 561 transitions. [2018-11-23 12:49:27,120 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 561 edges. 561 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:27,185 INFO L225 Difference]: With dead ends: 2441 [2018-11-23 12:49:27,185 INFO L226 Difference]: Without dead ends: 1351 [2018-11-23 12:49:27,187 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:27,187 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1351 states. [2018-11-23 12:49:27,873 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1351 to 1075. [2018-11-23 12:49:27,873 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:27,873 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1351 states. Second operand 1075 states. [2018-11-23 12:49:27,873 INFO L74 IsIncluded]: Start isIncluded. First operand 1351 states. Second operand 1075 states. [2018-11-23 12:49:27,873 INFO L87 Difference]: Start difference. First operand 1351 states. Second operand 1075 states. [2018-11-23 12:49:27,925 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:27,925 INFO L93 Difference]: Finished difference Result 1351 states and 1994 transitions. [2018-11-23 12:49:27,925 INFO L276 IsEmpty]: Start isEmpty. Operand 1351 states and 1994 transitions. [2018-11-23 12:49:27,926 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:27,926 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:27,926 INFO L74 IsIncluded]: Start isIncluded. First operand 1075 states. Second operand 1351 states. [2018-11-23 12:49:27,926 INFO L87 Difference]: Start difference. First operand 1075 states. Second operand 1351 states. [2018-11-23 12:49:27,979 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:27,979 INFO L93 Difference]: Finished difference Result 1351 states and 1994 transitions. [2018-11-23 12:49:27,979 INFO L276 IsEmpty]: Start isEmpty. Operand 1351 states and 1994 transitions. [2018-11-23 12:49:27,980 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:27,980 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:27,980 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:27,980 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:27,980 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1075 states. [2018-11-23 12:49:28,018 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1075 states to 1075 states and 1613 transitions. [2018-11-23 12:49:28,018 INFO L78 Accepts]: Start accepts. Automaton has 1075 states and 1613 transitions. Word has length 128 [2018-11-23 12:49:28,018 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:28,018 INFO L480 AbstractCegarLoop]: Abstraction has 1075 states and 1613 transitions. [2018-11-23 12:49:28,018 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:28,019 INFO L276 IsEmpty]: Start isEmpty. Operand 1075 states and 1613 transitions. [2018-11-23 12:49:28,019 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 134 [2018-11-23 12:49:28,019 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:28,020 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:28,020 INFO L423 AbstractCegarLoop]: === Iteration 43 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:28,020 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:28,020 INFO L82 PathProgramCache]: Analyzing trace with hash 2028637021, now seen corresponding path program 1 times [2018-11-23 12:49:28,020 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:28,020 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:28,021 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:28,021 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:28,021 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:28,039 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:28,128 INFO L256 TraceCheckUtils]: 0: Hoare triple {72072#true} call ULTIMATE.init(); {72072#true} is VALID [2018-11-23 12:49:28,128 INFO L273 TraceCheckUtils]: 1: Hoare triple {72072#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,128 INFO L273 TraceCheckUtils]: 2: Hoare triple {72072#true} assume true; {72072#true} is VALID [2018-11-23 12:49:28,128 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {72072#true} {72072#true} #633#return; {72072#true} is VALID [2018-11-23 12:49:28,128 INFO L256 TraceCheckUtils]: 4: Hoare triple {72072#true} call #t~ret138 := main(); {72072#true} is VALID [2018-11-23 12:49:28,128 INFO L273 TraceCheckUtils]: 5: Hoare triple {72072#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L256 TraceCheckUtils]: 6: Hoare triple {72072#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 7: Hoare triple {72072#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 8: Hoare triple {72072#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 9: Hoare triple {72072#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 10: Hoare triple {72072#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 11: Hoare triple {72072#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 12: Hoare triple {72072#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 13: Hoare triple {72072#true} assume !false; {72072#true} is VALID [2018-11-23 12:49:28,129 INFO L273 TraceCheckUtils]: 14: Hoare triple {72072#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 15: Hoare triple {72072#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 16: Hoare triple {72072#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 17: Hoare triple {72072#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 18: Hoare triple {72072#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 19: Hoare triple {72072#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 20: Hoare triple {72072#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 21: Hoare triple {72072#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 22: Hoare triple {72072#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,130 INFO L273 TraceCheckUtils]: 23: Hoare triple {72072#true} assume 8464 == #t~mem32;havoc #t~mem32; {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 24: Hoare triple {72072#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 25: Hoare triple {72072#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 26: Hoare triple {72072#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 27: Hoare triple {72072#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 28: Hoare triple {72072#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 29: Hoare triple {72072#true} ~skip~0 := 0; {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 30: Hoare triple {72072#true} assume !false; {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 31: Hoare triple {72072#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 32: Hoare triple {72072#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,131 INFO L273 TraceCheckUtils]: 33: Hoare triple {72072#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 34: Hoare triple {72072#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 35: Hoare triple {72072#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 36: Hoare triple {72072#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 37: Hoare triple {72072#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 38: Hoare triple {72072#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 39: Hoare triple {72072#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 40: Hoare triple {72072#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 41: Hoare triple {72072#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 42: Hoare triple {72072#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,132 INFO L273 TraceCheckUtils]: 43: Hoare triple {72072#true} assume 8496 == #t~mem35;havoc #t~mem35; {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 44: Hoare triple {72072#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 45: Hoare triple {72072#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 46: Hoare triple {72072#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 47: Hoare triple {72072#true} assume !(0 != #t~mem71);havoc #t~mem71;call write~int(8512, ~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 48: Hoare triple {72072#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 49: Hoare triple {72072#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 50: Hoare triple {72072#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 51: Hoare triple {72072#true} ~skip~0 := 0; {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 52: Hoare triple {72072#true} assume !false; {72072#true} is VALID [2018-11-23 12:49:28,133 INFO L273 TraceCheckUtils]: 53: Hoare triple {72072#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 54: Hoare triple {72072#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 55: Hoare triple {72072#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 56: Hoare triple {72072#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 57: Hoare triple {72072#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 58: Hoare triple {72072#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 59: Hoare triple {72072#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 60: Hoare triple {72072#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 61: Hoare triple {72072#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,134 INFO L273 TraceCheckUtils]: 62: Hoare triple {72072#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 63: Hoare triple {72072#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 64: Hoare triple {72072#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 65: Hoare triple {72072#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 66: Hoare triple {72072#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 67: Hoare triple {72072#true} assume 8512 == #t~mem37;havoc #t~mem37; {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 68: Hoare triple {72072#true} call #t~mem72.base, #t~mem72.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem73.base, #t~mem73.offset := read~$Pointer$(#t~mem72.base, 836 + #t~mem72.offset, 4);call #t~mem74 := read~int(#t~mem73.base, 12 + #t~mem73.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 69: Hoare triple {72072#true} assume !(0 != ~bitwiseAnd(#t~mem74, 256) % 4294967296);havoc #t~mem73.base, #t~mem73.offset;havoc #t~mem74;havoc #t~mem72.base, #t~mem72.offset;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~ret~0 := #t~nondet75;havoc #t~nondet75; {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 70: Hoare triple {72072#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 6; {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 71: Hoare triple {72072#true} assume !(~ret~0 <= 0); {72072#true} is VALID [2018-11-23 12:49:28,135 INFO L273 TraceCheckUtils]: 72: Hoare triple {72072#true} call write~int(8528, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 73: Hoare triple {72072#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 74: Hoare triple {72072#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 75: Hoare triple {72072#true} ~skip~0 := 0; {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 76: Hoare triple {72072#true} assume !false; {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 77: Hoare triple {72072#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 78: Hoare triple {72072#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 79: Hoare triple {72072#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 80: Hoare triple {72072#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 81: Hoare triple {72072#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,136 INFO L273 TraceCheckUtils]: 82: Hoare triple {72072#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 83: Hoare triple {72072#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 84: Hoare triple {72072#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 85: Hoare triple {72072#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 86: Hoare triple {72072#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 87: Hoare triple {72072#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 88: Hoare triple {72072#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 89: Hoare triple {72072#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 90: Hoare triple {72072#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 91: Hoare triple {72072#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,137 INFO L273 TraceCheckUtils]: 92: Hoare triple {72072#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,138 INFO L273 TraceCheckUtils]: 93: Hoare triple {72072#true} assume 8528 == #t~mem39;havoc #t~mem39; {72072#true} is VALID [2018-11-23 12:49:28,138 INFO L273 TraceCheckUtils]: 94: Hoare triple {72072#true} call #t~mem76.base, #t~mem76.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem77.base, #t~mem77.offset := read~$Pointer$(#t~mem76.base, 836 + #t~mem76.offset, 4);call #t~mem78 := read~int(#t~mem77.base, 12 + #t~mem77.offset, 4);~l~0 := #t~mem78;havoc #t~mem77.base, #t~mem77.offset;havoc #t~mem78;havoc #t~mem76.base, #t~mem76.offset;call #t~mem79 := read~int(~s.base, 232 + ~s.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,138 INFO L273 TraceCheckUtils]: 95: Hoare triple {72072#true} assume !(0 != ~bitwiseAnd(#t~mem79, 2097152) % 4294967296);havoc #t~mem79;call #t~mem81.base, #t~mem81.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(0, #t~mem81.base, 871 + #t~mem81.offset, 4);havoc #t~mem81.base, #t~mem81.offset; {72072#true} is VALID [2018-11-23 12:49:28,138 INFO L273 TraceCheckUtils]: 96: Hoare triple {72072#true} call #t~mem82.base, #t~mem82.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem83 := read~int(#t~mem82.base, 871 + #t~mem82.offset, 4); {72072#true} is VALID [2018-11-23 12:49:28,138 INFO L273 TraceCheckUtils]: 97: Hoare triple {72072#true} assume 0 != #t~mem83;havoc #t~mem82.base, #t~mem82.offset;havoc #t~mem83; {72072#true} is VALID [2018-11-23 12:49:28,140 INFO L273 TraceCheckUtils]: 98: Hoare triple {72072#true} assume -2147483648 <= #t~nondet92 && #t~nondet92 <= 2147483647;~ret~0 := #t~nondet92;havoc #t~nondet92; {72072#true} is VALID [2018-11-23 12:49:28,149 INFO L273 TraceCheckUtils]: 99: Hoare triple {72072#true} assume 6 == ~blastFlag~0;~blastFlag~0 := 7; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,150 INFO L273 TraceCheckUtils]: 100: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(~ret~0 <= 0); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,154 INFO L273 TraceCheckUtils]: 101: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} call write~int(8544, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,157 INFO L273 TraceCheckUtils]: 102: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,159 INFO L273 TraceCheckUtils]: 103: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,159 INFO L273 TraceCheckUtils]: 104: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} ~skip~0 := 0; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,161 INFO L273 TraceCheckUtils]: 105: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !false; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,161 INFO L273 TraceCheckUtils]: 106: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,163 INFO L273 TraceCheckUtils]: 107: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,163 INFO L273 TraceCheckUtils]: 108: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,165 INFO L273 TraceCheckUtils]: 109: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,165 INFO L273 TraceCheckUtils]: 110: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,165 INFO L273 TraceCheckUtils]: 111: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,166 INFO L273 TraceCheckUtils]: 112: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,166 INFO L273 TraceCheckUtils]: 113: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,166 INFO L273 TraceCheckUtils]: 114: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,166 INFO L273 TraceCheckUtils]: 115: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,167 INFO L273 TraceCheckUtils]: 116: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,167 INFO L273 TraceCheckUtils]: 117: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,167 INFO L273 TraceCheckUtils]: 118: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,168 INFO L273 TraceCheckUtils]: 119: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,168 INFO L273 TraceCheckUtils]: 120: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,169 INFO L273 TraceCheckUtils]: 121: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,169 INFO L273 TraceCheckUtils]: 122: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,170 INFO L273 TraceCheckUtils]: 123: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,170 INFO L273 TraceCheckUtils]: 124: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume 8544 == #t~mem41;havoc #t~mem41; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,171 INFO L273 TraceCheckUtils]: 125: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} call #t~mem93 := read~int(~s.base, 180 + ~s.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,171 INFO L273 TraceCheckUtils]: 126: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume 0 != ~bitwiseAnd(#t~mem93, 1);havoc #t~mem93;call #t~mem94.base, #t~mem94.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem95.base, #t~mem95.offset := read~$Pointer$(#t~mem94.base, 148 + #t~mem94.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,171 INFO L273 TraceCheckUtils]: 127: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(0 != (#t~mem95.base + #t~mem95.offset) % 4294967296);havoc #t~mem95.base, #t~mem95.offset;havoc #t~mem94.base, #t~mem94.offset; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,172 INFO L273 TraceCheckUtils]: 128: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} call #t~mem98.base, #t~mem98.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem99.base, #t~mem99.offset := read~$Pointer$(#t~mem98.base, 836 + #t~mem98.offset, 4);call #t~mem100 := read~int(#t~mem99.base, 12 + #t~mem99.offset, 4); {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,172 INFO L273 TraceCheckUtils]: 129: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume !(0 != ~bitwiseAnd(#t~mem100, 256) % 4294967296);havoc #t~mem100;havoc #t~mem99.base, #t~mem99.offset;havoc #t~mem98.base, #t~mem98.offset; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,173 INFO L273 TraceCheckUtils]: 130: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} call #t~mem103.base, #t~mem103.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(1, #t~mem103.base, 895 + #t~mem103.offset, 4);havoc #t~mem103.base, #t~mem103.offset;assume -2147483648 <= #t~nondet104 && #t~nondet104 <= 2147483647;~ret~0 := #t~nondet104;havoc #t~nondet104; {72074#(<= ssl3_accept_~blastFlag~0 7)} is VALID [2018-11-23 12:49:28,173 INFO L273 TraceCheckUtils]: 131: Hoare triple {72074#(<= ssl3_accept_~blastFlag~0 7)} assume 8 == ~blastFlag~0; {72073#false} is VALID [2018-11-23 12:49:28,174 INFO L273 TraceCheckUtils]: 132: Hoare triple {72073#false} assume !false; {72073#false} is VALID [2018-11-23 12:49:28,182 INFO L134 CoverageAnalysis]: Checked inductivity of 154 backedges. 68 proven. 0 refuted. 0 times theorem prover too weak. 86 trivial. 0 not checked. [2018-11-23 12:49:28,182 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:28,182 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-23 12:49:28,183 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 133 [2018-11-23 12:49:28,183 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:28,183 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-23 12:49:28,268 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 89 edges. 89 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:28,268 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-23 12:49:28,268 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-23 12:49:28,269 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:28,269 INFO L87 Difference]: Start difference. First operand 1075 states and 1613 transitions. Second operand 3 states. [2018-11-23 12:49:30,295 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:30,295 INFO L93 Difference]: Finished difference Result 1341 states and 2010 transitions. [2018-11-23 12:49:30,295 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-23 12:49:30,295 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 133 [2018-11-23 12:49:30,296 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:30,296 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:30,298 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 403 transitions. [2018-11-23 12:49:30,298 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-23 12:49:30,300 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 403 transitions. [2018-11-23 12:49:30,300 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 403 transitions. [2018-11-23 12:49:30,715 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 403 edges. 403 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:30,781 INFO L225 Difference]: With dead ends: 1341 [2018-11-23 12:49:30,781 INFO L226 Difference]: Without dead ends: 1339 [2018-11-23 12:49:30,781 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-23 12:49:30,783 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1339 states. [2018-11-23 12:49:33,236 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1339 to 1337. [2018-11-23 12:49:33,237 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:33,237 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1339 states. Second operand 1337 states. [2018-11-23 12:49:33,237 INFO L74 IsIncluded]: Start isIncluded. First operand 1339 states. Second operand 1337 states. [2018-11-23 12:49:33,237 INFO L87 Difference]: Start difference. First operand 1339 states. Second operand 1337 states. [2018-11-23 12:49:33,299 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:33,299 INFO L93 Difference]: Finished difference Result 1339 states and 2008 transitions. [2018-11-23 12:49:33,299 INFO L276 IsEmpty]: Start isEmpty. Operand 1339 states and 2008 transitions. [2018-11-23 12:49:33,300 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:33,300 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:33,301 INFO L74 IsIncluded]: Start isIncluded. First operand 1337 states. Second operand 1339 states. [2018-11-23 12:49:33,301 INFO L87 Difference]: Start difference. First operand 1337 states. Second operand 1339 states. [2018-11-23 12:49:33,357 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:33,358 INFO L93 Difference]: Finished difference Result 1339 states and 2008 transitions. [2018-11-23 12:49:33,358 INFO L276 IsEmpty]: Start isEmpty. Operand 1339 states and 2008 transitions. [2018-11-23 12:49:33,359 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:33,359 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:33,359 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:33,359 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:33,359 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1337 states. [2018-11-23 12:49:33,417 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1337 states to 1337 states and 2007 transitions. [2018-11-23 12:49:33,418 INFO L78 Accepts]: Start accepts. Automaton has 1337 states and 2007 transitions. Word has length 133 [2018-11-23 12:49:33,418 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:33,418 INFO L480 AbstractCegarLoop]: Abstraction has 1337 states and 2007 transitions. [2018-11-23 12:49:33,418 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-23 12:49:33,418 INFO L276 IsEmpty]: Start isEmpty. Operand 1337 states and 2007 transitions. [2018-11-23 12:49:33,419 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 141 [2018-11-23 12:49:33,419 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:33,419 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:33,420 INFO L423 AbstractCegarLoop]: === Iteration 44 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:33,420 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:33,420 INFO L82 PathProgramCache]: Analyzing trace with hash -1213729120, now seen corresponding path program 1 times [2018-11-23 12:49:33,420 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:33,420 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:33,420 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:33,421 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:33,421 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:33,436 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:33,580 INFO L256 TraceCheckUtils]: 0: Hoare triple {77781#true} call ULTIMATE.init(); {77781#true} is VALID [2018-11-23 12:49:33,580 INFO L273 TraceCheckUtils]: 1: Hoare triple {77781#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,580 INFO L273 TraceCheckUtils]: 2: Hoare triple {77781#true} assume true; {77781#true} is VALID [2018-11-23 12:49:33,581 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {77781#true} {77781#true} #633#return; {77781#true} is VALID [2018-11-23 12:49:33,581 INFO L256 TraceCheckUtils]: 4: Hoare triple {77781#true} call #t~ret138 := main(); {77781#true} is VALID [2018-11-23 12:49:33,581 INFO L273 TraceCheckUtils]: 5: Hoare triple {77781#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,581 INFO L256 TraceCheckUtils]: 6: Hoare triple {77781#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {77781#true} is VALID [2018-11-23 12:49:33,581 INFO L273 TraceCheckUtils]: 7: Hoare triple {77781#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,581 INFO L273 TraceCheckUtils]: 8: Hoare triple {77781#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {77781#true} is VALID [2018-11-23 12:49:33,582 INFO L273 TraceCheckUtils]: 9: Hoare triple {77781#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {77781#true} is VALID [2018-11-23 12:49:33,582 INFO L273 TraceCheckUtils]: 10: Hoare triple {77781#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {77781#true} is VALID [2018-11-23 12:49:33,582 INFO L273 TraceCheckUtils]: 11: Hoare triple {77781#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,582 INFO L273 TraceCheckUtils]: 12: Hoare triple {77781#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {77781#true} is VALID [2018-11-23 12:49:33,582 INFO L273 TraceCheckUtils]: 13: Hoare triple {77781#true} assume !false; {77781#true} is VALID [2018-11-23 12:49:33,582 INFO L273 TraceCheckUtils]: 14: Hoare triple {77781#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,583 INFO L273 TraceCheckUtils]: 15: Hoare triple {77781#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,583 INFO L273 TraceCheckUtils]: 16: Hoare triple {77781#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,583 INFO L273 TraceCheckUtils]: 17: Hoare triple {77781#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,583 INFO L273 TraceCheckUtils]: 18: Hoare triple {77781#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 19: Hoare triple {77781#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 20: Hoare triple {77781#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 21: Hoare triple {77781#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 22: Hoare triple {77781#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 23: Hoare triple {77781#true} assume 8464 == #t~mem32;havoc #t~mem32; {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 24: Hoare triple {77781#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 25: Hoare triple {77781#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 26: Hoare triple {77781#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,584 INFO L273 TraceCheckUtils]: 27: Hoare triple {77781#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 28: Hoare triple {77781#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 29: Hoare triple {77781#true} ~skip~0 := 0; {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 30: Hoare triple {77781#true} assume !false; {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 31: Hoare triple {77781#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 32: Hoare triple {77781#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 33: Hoare triple {77781#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 34: Hoare triple {77781#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 35: Hoare triple {77781#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 36: Hoare triple {77781#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,585 INFO L273 TraceCheckUtils]: 37: Hoare triple {77781#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 38: Hoare triple {77781#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 39: Hoare triple {77781#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 40: Hoare triple {77781#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 41: Hoare triple {77781#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 42: Hoare triple {77781#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 43: Hoare triple {77781#true} assume 8496 == #t~mem35;havoc #t~mem35; {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 44: Hoare triple {77781#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 45: Hoare triple {77781#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {77781#true} is VALID [2018-11-23 12:49:33,586 INFO L273 TraceCheckUtils]: 46: Hoare triple {77781#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 47: Hoare triple {77781#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 48: Hoare triple {77781#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 49: Hoare triple {77781#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 50: Hoare triple {77781#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 51: Hoare triple {77781#true} ~skip~0 := 0; {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 52: Hoare triple {77781#true} assume !false; {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 53: Hoare triple {77781#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 54: Hoare triple {77781#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 55: Hoare triple {77781#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,587 INFO L273 TraceCheckUtils]: 56: Hoare triple {77781#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 57: Hoare triple {77781#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 58: Hoare triple {77781#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 59: Hoare triple {77781#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 60: Hoare triple {77781#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 61: Hoare triple {77781#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 62: Hoare triple {77781#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 63: Hoare triple {77781#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 64: Hoare triple {77781#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 65: Hoare triple {77781#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,588 INFO L273 TraceCheckUtils]: 66: Hoare triple {77781#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 67: Hoare triple {77781#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 68: Hoare triple {77781#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 69: Hoare triple {77781#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 70: Hoare triple {77781#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 71: Hoare triple {77781#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 72: Hoare triple {77781#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 73: Hoare triple {77781#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 74: Hoare triple {77781#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,589 INFO L273 TraceCheckUtils]: 75: Hoare triple {77781#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 76: Hoare triple {77781#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 77: Hoare triple {77781#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 78: Hoare triple {77781#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 79: Hoare triple {77781#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 80: Hoare triple {77781#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 81: Hoare triple {77781#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 82: Hoare triple {77781#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 83: Hoare triple {77781#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 84: Hoare triple {77781#true} assume 8656 == #t~mem54;havoc #t~mem54; {77781#true} is VALID [2018-11-23 12:49:33,590 INFO L273 TraceCheckUtils]: 85: Hoare triple {77781#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {77781#true} is VALID [2018-11-23 12:49:33,591 INFO L273 TraceCheckUtils]: 86: Hoare triple {77781#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {77781#true} is VALID [2018-11-23 12:49:33,591 INFO L273 TraceCheckUtils]: 87: Hoare triple {77781#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {77781#true} is VALID [2018-11-23 12:49:33,592 INFO L273 TraceCheckUtils]: 88: Hoare triple {77781#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,592 INFO L273 TraceCheckUtils]: 89: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == ~tmp___10~0); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,594 INFO L273 TraceCheckUtils]: 90: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,594 INFO L273 TraceCheckUtils]: 91: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,596 INFO L273 TraceCheckUtils]: 92: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} ~skip~0 := 0; {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,596 INFO L273 TraceCheckUtils]: 93: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !false; {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,598 INFO L273 TraceCheckUtils]: 94: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,598 INFO L273 TraceCheckUtils]: 95: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,598 INFO L273 TraceCheckUtils]: 96: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,599 INFO L273 TraceCheckUtils]: 97: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,601 INFO L273 TraceCheckUtils]: 98: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:33,601 INFO L273 TraceCheckUtils]: 99: Hoare triple {77783#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {77784#(= |ssl3_accept_#t~mem29| 8672)} is VALID [2018-11-23 12:49:33,601 INFO L273 TraceCheckUtils]: 100: Hoare triple {77784#(= |ssl3_accept_#t~mem29| 8672)} assume 8480 == #t~mem29;havoc #t~mem29; {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 101: Hoare triple {77782#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 102: Hoare triple {77782#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 103: Hoare triple {77782#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 104: Hoare triple {77782#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 105: Hoare triple {77782#false} ~skip~0 := 0; {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 106: Hoare triple {77782#false} assume !false; {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 107: Hoare triple {77782#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 108: Hoare triple {77782#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 109: Hoare triple {77782#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,602 INFO L273 TraceCheckUtils]: 110: Hoare triple {77782#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 111: Hoare triple {77782#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 112: Hoare triple {77782#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 113: Hoare triple {77782#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 114: Hoare triple {77782#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 115: Hoare triple {77782#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 116: Hoare triple {77782#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,603 INFO L273 TraceCheckUtils]: 117: Hoare triple {77782#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,604 INFO L273 TraceCheckUtils]: 118: Hoare triple {77782#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,604 INFO L273 TraceCheckUtils]: 119: Hoare triple {77782#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,604 INFO L273 TraceCheckUtils]: 120: Hoare triple {77782#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,604 INFO L273 TraceCheckUtils]: 121: Hoare triple {77782#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,604 INFO L273 TraceCheckUtils]: 122: Hoare triple {77782#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,604 INFO L273 TraceCheckUtils]: 123: Hoare triple {77782#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,605 INFO L273 TraceCheckUtils]: 124: Hoare triple {77782#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,605 INFO L273 TraceCheckUtils]: 125: Hoare triple {77782#false} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,605 INFO L273 TraceCheckUtils]: 126: Hoare triple {77782#false} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,605 INFO L273 TraceCheckUtils]: 127: Hoare triple {77782#false} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,605 INFO L273 TraceCheckUtils]: 128: Hoare triple {77782#false} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,605 INFO L273 TraceCheckUtils]: 129: Hoare triple {77782#false} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,606 INFO L273 TraceCheckUtils]: 130: Hoare triple {77782#false} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,606 INFO L273 TraceCheckUtils]: 131: Hoare triple {77782#false} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,606 INFO L273 TraceCheckUtils]: 132: Hoare triple {77782#false} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,606 INFO L273 TraceCheckUtils]: 133: Hoare triple {77782#false} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,606 INFO L273 TraceCheckUtils]: 134: Hoare triple {77782#false} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,606 INFO L273 TraceCheckUtils]: 135: Hoare triple {77782#false} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {77782#false} is VALID [2018-11-23 12:49:33,607 INFO L273 TraceCheckUtils]: 136: Hoare triple {77782#false} assume 8640 == #t~mem52;havoc #t~mem52; {77782#false} is VALID [2018-11-23 12:49:33,607 INFO L273 TraceCheckUtils]: 137: Hoare triple {77782#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {77782#false} is VALID [2018-11-23 12:49:33,607 INFO L273 TraceCheckUtils]: 138: Hoare triple {77782#false} assume 4 == ~blastFlag~0; {77782#false} is VALID [2018-11-23 12:49:33,607 INFO L273 TraceCheckUtils]: 139: Hoare triple {77782#false} assume !false; {77782#false} is VALID [2018-11-23 12:49:33,618 INFO L134 CoverageAnalysis]: Checked inductivity of 142 backedges. 103 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:33,618 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:33,618 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:33,619 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 140 [2018-11-23 12:49:33,619 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:33,619 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:33,751 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 114 edges. 114 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:33,751 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:33,752 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:33,752 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:33,752 INFO L87 Difference]: Start difference. First operand 1337 states and 2007 transitions. Second operand 4 states. [2018-11-23 12:49:40,146 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:40,147 INFO L93 Difference]: Finished difference Result 2994 states and 4461 transitions. [2018-11-23 12:49:40,147 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:40,147 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 140 [2018-11-23 12:49:40,147 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:40,147 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:40,149 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 560 transitions. [2018-11-23 12:49:40,149 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:40,151 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 560 transitions. [2018-11-23 12:49:40,151 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 560 transitions. [2018-11-23 12:49:40,722 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 560 edges. 560 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:40,830 INFO L225 Difference]: With dead ends: 2994 [2018-11-23 12:49:40,830 INFO L226 Difference]: Without dead ends: 1682 [2018-11-23 12:49:40,832 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:40,833 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1682 states. [2018-11-23 12:49:41,975 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1682 to 1337. [2018-11-23 12:49:41,975 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:41,975 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1682 states. Second operand 1337 states. [2018-11-23 12:49:41,975 INFO L74 IsIncluded]: Start isIncluded. First operand 1682 states. Second operand 1337 states. [2018-11-23 12:49:41,975 INFO L87 Difference]: Start difference. First operand 1682 states. Second operand 1337 states. [2018-11-23 12:49:42,075 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:42,075 INFO L93 Difference]: Finished difference Result 1682 states and 2477 transitions. [2018-11-23 12:49:42,075 INFO L276 IsEmpty]: Start isEmpty. Operand 1682 states and 2477 transitions. [2018-11-23 12:49:42,076 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:42,077 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:42,077 INFO L74 IsIncluded]: Start isIncluded. First operand 1337 states. Second operand 1682 states. [2018-11-23 12:49:42,077 INFO L87 Difference]: Start difference. First operand 1337 states. Second operand 1682 states. [2018-11-23 12:49:42,159 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:42,159 INFO L93 Difference]: Finished difference Result 1682 states and 2477 transitions. [2018-11-23 12:49:42,160 INFO L276 IsEmpty]: Start isEmpty. Operand 1682 states and 2477 transitions. [2018-11-23 12:49:42,160 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:42,161 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:42,161 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:42,161 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:42,161 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1337 states. [2018-11-23 12:49:42,218 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1337 states to 1337 states and 2002 transitions. [2018-11-23 12:49:42,218 INFO L78 Accepts]: Start accepts. Automaton has 1337 states and 2002 transitions. Word has length 140 [2018-11-23 12:49:42,218 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:42,218 INFO L480 AbstractCegarLoop]: Abstraction has 1337 states and 2002 transitions. [2018-11-23 12:49:42,218 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:42,218 INFO L276 IsEmpty]: Start isEmpty. Operand 1337 states and 2002 transitions. [2018-11-23 12:49:42,219 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 142 [2018-11-23 12:49:42,219 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:42,220 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:42,220 INFO L423 AbstractCegarLoop]: === Iteration 45 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:42,220 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:42,220 INFO L82 PathProgramCache]: Analyzing trace with hash 1413134743, now seen corresponding path program 1 times [2018-11-23 12:49:42,220 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:42,220 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:42,221 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:42,221 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:42,221 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:42,237 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:42,346 INFO L256 TraceCheckUtils]: 0: Hoare triple {86081#true} call ULTIMATE.init(); {86081#true} is VALID [2018-11-23 12:49:42,346 INFO L273 TraceCheckUtils]: 1: Hoare triple {86081#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,347 INFO L273 TraceCheckUtils]: 2: Hoare triple {86081#true} assume true; {86081#true} is VALID [2018-11-23 12:49:42,347 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {86081#true} {86081#true} #633#return; {86081#true} is VALID [2018-11-23 12:49:42,347 INFO L256 TraceCheckUtils]: 4: Hoare triple {86081#true} call #t~ret138 := main(); {86081#true} is VALID [2018-11-23 12:49:42,347 INFO L273 TraceCheckUtils]: 5: Hoare triple {86081#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,347 INFO L256 TraceCheckUtils]: 6: Hoare triple {86081#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {86081#true} is VALID [2018-11-23 12:49:42,347 INFO L273 TraceCheckUtils]: 7: Hoare triple {86081#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 8: Hoare triple {86081#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 9: Hoare triple {86081#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 10: Hoare triple {86081#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 11: Hoare triple {86081#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 12: Hoare triple {86081#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 13: Hoare triple {86081#true} assume !false; {86081#true} is VALID [2018-11-23 12:49:42,348 INFO L273 TraceCheckUtils]: 14: Hoare triple {86081#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 15: Hoare triple {86081#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 16: Hoare triple {86081#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 17: Hoare triple {86081#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 18: Hoare triple {86081#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 19: Hoare triple {86081#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 20: Hoare triple {86081#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 21: Hoare triple {86081#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 22: Hoare triple {86081#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 23: Hoare triple {86081#true} assume 8464 == #t~mem32;havoc #t~mem32; {86081#true} is VALID [2018-11-23 12:49:42,349 INFO L273 TraceCheckUtils]: 24: Hoare triple {86081#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 25: Hoare triple {86081#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 26: Hoare triple {86081#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 27: Hoare triple {86081#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 28: Hoare triple {86081#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 29: Hoare triple {86081#true} ~skip~0 := 0; {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 30: Hoare triple {86081#true} assume !false; {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 31: Hoare triple {86081#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 32: Hoare triple {86081#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 33: Hoare triple {86081#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,350 INFO L273 TraceCheckUtils]: 34: Hoare triple {86081#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 35: Hoare triple {86081#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 36: Hoare triple {86081#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 37: Hoare triple {86081#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 38: Hoare triple {86081#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 39: Hoare triple {86081#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 40: Hoare triple {86081#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 41: Hoare triple {86081#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 42: Hoare triple {86081#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,351 INFO L273 TraceCheckUtils]: 43: Hoare triple {86081#true} assume 8496 == #t~mem35;havoc #t~mem35; {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 44: Hoare triple {86081#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 45: Hoare triple {86081#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 46: Hoare triple {86081#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 47: Hoare triple {86081#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 48: Hoare triple {86081#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 49: Hoare triple {86081#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 50: Hoare triple {86081#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 51: Hoare triple {86081#true} ~skip~0 := 0; {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 52: Hoare triple {86081#true} assume !false; {86081#true} is VALID [2018-11-23 12:49:42,352 INFO L273 TraceCheckUtils]: 53: Hoare triple {86081#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 54: Hoare triple {86081#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 55: Hoare triple {86081#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 56: Hoare triple {86081#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 57: Hoare triple {86081#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 58: Hoare triple {86081#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 59: Hoare triple {86081#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 60: Hoare triple {86081#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 61: Hoare triple {86081#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,353 INFO L273 TraceCheckUtils]: 62: Hoare triple {86081#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 63: Hoare triple {86081#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 64: Hoare triple {86081#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 65: Hoare triple {86081#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 66: Hoare triple {86081#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 67: Hoare triple {86081#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 68: Hoare triple {86081#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 69: Hoare triple {86081#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 70: Hoare triple {86081#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 71: Hoare triple {86081#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,354 INFO L273 TraceCheckUtils]: 72: Hoare triple {86081#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 73: Hoare triple {86081#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 74: Hoare triple {86081#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 75: Hoare triple {86081#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 76: Hoare triple {86081#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 77: Hoare triple {86081#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 78: Hoare triple {86081#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 79: Hoare triple {86081#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 80: Hoare triple {86081#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 81: Hoare triple {86081#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,355 INFO L273 TraceCheckUtils]: 82: Hoare triple {86081#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,356 INFO L273 TraceCheckUtils]: 83: Hoare triple {86081#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {86081#true} is VALID [2018-11-23 12:49:42,356 INFO L273 TraceCheckUtils]: 84: Hoare triple {86081#true} assume 8656 == #t~mem54;havoc #t~mem54; {86081#true} is VALID [2018-11-23 12:49:42,356 INFO L273 TraceCheckUtils]: 85: Hoare triple {86081#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {86081#true} is VALID [2018-11-23 12:49:42,356 INFO L273 TraceCheckUtils]: 86: Hoare triple {86081#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {86081#true} is VALID [2018-11-23 12:49:42,356 INFO L273 TraceCheckUtils]: 87: Hoare triple {86081#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {86081#true} is VALID [2018-11-23 12:49:42,360 INFO L273 TraceCheckUtils]: 88: Hoare triple {86081#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,362 INFO L273 TraceCheckUtils]: 89: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == ~tmp___10~0); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,362 INFO L273 TraceCheckUtils]: 90: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,364 INFO L273 TraceCheckUtils]: 91: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,364 INFO L273 TraceCheckUtils]: 92: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} ~skip~0 := 0; {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,366 INFO L273 TraceCheckUtils]: 93: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !false; {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,366 INFO L273 TraceCheckUtils]: 94: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,368 INFO L273 TraceCheckUtils]: 95: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,368 INFO L273 TraceCheckUtils]: 96: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,368 INFO L273 TraceCheckUtils]: 97: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,369 INFO L273 TraceCheckUtils]: 98: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,369 INFO L273 TraceCheckUtils]: 99: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:42,369 INFO L273 TraceCheckUtils]: 100: Hoare triple {86083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {86084#(= |ssl3_accept_#t~mem30| 8672)} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 101: Hoare triple {86084#(= |ssl3_accept_#t~mem30| 8672)} assume 8481 == #t~mem30;havoc #t~mem30; {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 102: Hoare triple {86082#false} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~ret~0 := #t~nondet67;havoc #t~nondet67; {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 103: Hoare triple {86082#false} assume !(~ret~0 <= 0);call #t~mem68.base, #t~mem68.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call write~int(8482, #t~mem68.base, 844 + #t~mem68.offset, 4);havoc #t~mem68.base, #t~mem68.offset;call write~int(8448, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 104: Hoare triple {86082#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 105: Hoare triple {86082#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 106: Hoare triple {86082#false} ~skip~0 := 0; {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 107: Hoare triple {86082#false} assume !false; {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 108: Hoare triple {86082#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,370 INFO L273 TraceCheckUtils]: 109: Hoare triple {86082#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 110: Hoare triple {86082#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 111: Hoare triple {86082#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 112: Hoare triple {86082#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 113: Hoare triple {86082#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 114: Hoare triple {86082#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 115: Hoare triple {86082#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 116: Hoare triple {86082#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,371 INFO L273 TraceCheckUtils]: 117: Hoare triple {86082#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,372 INFO L273 TraceCheckUtils]: 118: Hoare triple {86082#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,372 INFO L273 TraceCheckUtils]: 119: Hoare triple {86082#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,372 INFO L273 TraceCheckUtils]: 120: Hoare triple {86082#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,372 INFO L273 TraceCheckUtils]: 121: Hoare triple {86082#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,372 INFO L273 TraceCheckUtils]: 122: Hoare triple {86082#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,372 INFO L273 TraceCheckUtils]: 123: Hoare triple {86082#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 124: Hoare triple {86082#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 125: Hoare triple {86082#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 126: Hoare triple {86082#false} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 127: Hoare triple {86082#false} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 128: Hoare triple {86082#false} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 129: Hoare triple {86082#false} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,373 INFO L273 TraceCheckUtils]: 130: Hoare triple {86082#false} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 131: Hoare triple {86082#false} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 132: Hoare triple {86082#false} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 133: Hoare triple {86082#false} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 134: Hoare triple {86082#false} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 135: Hoare triple {86082#false} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 136: Hoare triple {86082#false} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 137: Hoare triple {86082#false} assume 8640 == #t~mem52;havoc #t~mem52; {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 138: Hoare triple {86082#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 139: Hoare triple {86082#false} assume 4 == ~blastFlag~0; {86082#false} is VALID [2018-11-23 12:49:42,374 INFO L273 TraceCheckUtils]: 140: Hoare triple {86082#false} assume !false; {86082#false} is VALID [2018-11-23 12:49:42,383 INFO L134 CoverageAnalysis]: Checked inductivity of 146 backedges. 107 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:42,383 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:42,383 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:42,383 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 141 [2018-11-23 12:49:42,384 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:42,384 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:42,490 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 115 edges. 115 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:42,490 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:42,490 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:42,491 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:42,491 INFO L87 Difference]: Start difference. First operand 1337 states and 2002 transitions. Second operand 4 states. [2018-11-23 12:49:48,529 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:48,530 INFO L93 Difference]: Finished difference Result 2984 states and 4441 transitions. [2018-11-23 12:49:48,530 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:48,530 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 141 [2018-11-23 12:49:48,530 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:48,530 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:48,532 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 557 transitions. [2018-11-23 12:49:48,532 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:48,534 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 557 transitions. [2018-11-23 12:49:48,534 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 557 transitions. [2018-11-23 12:49:49,087 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 557 edges. 557 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:49,205 INFO L225 Difference]: With dead ends: 2984 [2018-11-23 12:49:49,205 INFO L226 Difference]: Without dead ends: 1672 [2018-11-23 12:49:49,207 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:49,208 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1672 states. [2018-11-23 12:49:53,886 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1672 to 1337. [2018-11-23 12:49:53,887 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:49:53,887 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1672 states. Second operand 1337 states. [2018-11-23 12:49:53,887 INFO L74 IsIncluded]: Start isIncluded. First operand 1672 states. Second operand 1337 states. [2018-11-23 12:49:53,887 INFO L87 Difference]: Start difference. First operand 1672 states. Second operand 1337 states. [2018-11-23 12:49:53,977 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:53,977 INFO L93 Difference]: Finished difference Result 1672 states and 2462 transitions. [2018-11-23 12:49:53,977 INFO L276 IsEmpty]: Start isEmpty. Operand 1672 states and 2462 transitions. [2018-11-23 12:49:53,978 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:53,978 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:53,978 INFO L74 IsIncluded]: Start isIncluded. First operand 1337 states. Second operand 1672 states. [2018-11-23 12:49:53,978 INFO L87 Difference]: Start difference. First operand 1337 states. Second operand 1672 states. [2018-11-23 12:49:54,129 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:54,129 INFO L93 Difference]: Finished difference Result 1672 states and 2462 transitions. [2018-11-23 12:49:54,129 INFO L276 IsEmpty]: Start isEmpty. Operand 1672 states and 2462 transitions. [2018-11-23 12:49:54,130 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:49:54,130 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:49:54,130 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:49:54,131 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:49:54,131 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1337 states. [2018-11-23 12:49:54,186 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1337 states to 1337 states and 1997 transitions. [2018-11-23 12:49:54,186 INFO L78 Accepts]: Start accepts. Automaton has 1337 states and 1997 transitions. Word has length 141 [2018-11-23 12:49:54,187 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:49:54,187 INFO L480 AbstractCegarLoop]: Abstraction has 1337 states and 1997 transitions. [2018-11-23 12:49:54,187 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:49:54,187 INFO L276 IsEmpty]: Start isEmpty. Operand 1337 states and 1997 transitions. [2018-11-23 12:49:54,188 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 142 [2018-11-23 12:49:54,188 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:49:54,188 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:49:54,188 INFO L423 AbstractCegarLoop]: === Iteration 46 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:49:54,191 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:49:54,191 INFO L82 PathProgramCache]: Analyzing trace with hash -244893672, now seen corresponding path program 1 times [2018-11-23 12:49:54,191 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:49:54,191 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:49:54,192 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:54,192 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:49:54,192 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:49:54,203 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:49:54,370 INFO L256 TraceCheckUtils]: 0: Hoare triple {94346#true} call ULTIMATE.init(); {94346#true} is VALID [2018-11-23 12:49:54,370 INFO L273 TraceCheckUtils]: 1: Hoare triple {94346#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,370 INFO L273 TraceCheckUtils]: 2: Hoare triple {94346#true} assume true; {94346#true} is VALID [2018-11-23 12:49:54,370 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {94346#true} {94346#true} #633#return; {94346#true} is VALID [2018-11-23 12:49:54,371 INFO L256 TraceCheckUtils]: 4: Hoare triple {94346#true} call #t~ret138 := main(); {94346#true} is VALID [2018-11-23 12:49:54,371 INFO L273 TraceCheckUtils]: 5: Hoare triple {94346#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,371 INFO L256 TraceCheckUtils]: 6: Hoare triple {94346#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {94346#true} is VALID [2018-11-23 12:49:54,371 INFO L273 TraceCheckUtils]: 7: Hoare triple {94346#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,371 INFO L273 TraceCheckUtils]: 8: Hoare triple {94346#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {94346#true} is VALID [2018-11-23 12:49:54,372 INFO L273 TraceCheckUtils]: 9: Hoare triple {94346#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {94346#true} is VALID [2018-11-23 12:49:54,372 INFO L273 TraceCheckUtils]: 10: Hoare triple {94346#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {94346#true} is VALID [2018-11-23 12:49:54,372 INFO L273 TraceCheckUtils]: 11: Hoare triple {94346#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,372 INFO L273 TraceCheckUtils]: 12: Hoare triple {94346#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {94346#true} is VALID [2018-11-23 12:49:54,372 INFO L273 TraceCheckUtils]: 13: Hoare triple {94346#true} assume !false; {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 14: Hoare triple {94346#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 15: Hoare triple {94346#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 16: Hoare triple {94346#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 17: Hoare triple {94346#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 18: Hoare triple {94346#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 19: Hoare triple {94346#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 20: Hoare triple {94346#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 21: Hoare triple {94346#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,373 INFO L273 TraceCheckUtils]: 22: Hoare triple {94346#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 23: Hoare triple {94346#true} assume 8464 == #t~mem32;havoc #t~mem32; {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 24: Hoare triple {94346#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 25: Hoare triple {94346#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 26: Hoare triple {94346#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 27: Hoare triple {94346#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 28: Hoare triple {94346#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 29: Hoare triple {94346#true} ~skip~0 := 0; {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 30: Hoare triple {94346#true} assume !false; {94346#true} is VALID [2018-11-23 12:49:54,374 INFO L273 TraceCheckUtils]: 31: Hoare triple {94346#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 32: Hoare triple {94346#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 33: Hoare triple {94346#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 34: Hoare triple {94346#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 35: Hoare triple {94346#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 36: Hoare triple {94346#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 37: Hoare triple {94346#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 38: Hoare triple {94346#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 39: Hoare triple {94346#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 40: Hoare triple {94346#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,375 INFO L273 TraceCheckUtils]: 41: Hoare triple {94346#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 42: Hoare triple {94346#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 43: Hoare triple {94346#true} assume 8496 == #t~mem35;havoc #t~mem35; {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 44: Hoare triple {94346#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 45: Hoare triple {94346#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 46: Hoare triple {94346#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 47: Hoare triple {94346#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 48: Hoare triple {94346#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 49: Hoare triple {94346#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 50: Hoare triple {94346#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {94346#true} is VALID [2018-11-23 12:49:54,376 INFO L273 TraceCheckUtils]: 51: Hoare triple {94346#true} ~skip~0 := 0; {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 52: Hoare triple {94346#true} assume !false; {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 53: Hoare triple {94346#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 54: Hoare triple {94346#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 55: Hoare triple {94346#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 56: Hoare triple {94346#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 57: Hoare triple {94346#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 58: Hoare triple {94346#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 59: Hoare triple {94346#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 60: Hoare triple {94346#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,377 INFO L273 TraceCheckUtils]: 61: Hoare triple {94346#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 62: Hoare triple {94346#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 63: Hoare triple {94346#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 64: Hoare triple {94346#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 65: Hoare triple {94346#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 66: Hoare triple {94346#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 67: Hoare triple {94346#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 68: Hoare triple {94346#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 69: Hoare triple {94346#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,378 INFO L273 TraceCheckUtils]: 70: Hoare triple {94346#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 71: Hoare triple {94346#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 72: Hoare triple {94346#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 73: Hoare triple {94346#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 74: Hoare triple {94346#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 75: Hoare triple {94346#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 76: Hoare triple {94346#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 77: Hoare triple {94346#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 78: Hoare triple {94346#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 79: Hoare triple {94346#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,379 INFO L273 TraceCheckUtils]: 80: Hoare triple {94346#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 81: Hoare triple {94346#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 82: Hoare triple {94346#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 83: Hoare triple {94346#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 84: Hoare triple {94346#true} assume 8656 == #t~mem54;havoc #t~mem54; {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 85: Hoare triple {94346#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 86: Hoare triple {94346#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {94346#true} is VALID [2018-11-23 12:49:54,380 INFO L273 TraceCheckUtils]: 87: Hoare triple {94346#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {94346#true} is VALID [2018-11-23 12:49:54,385 INFO L273 TraceCheckUtils]: 88: Hoare triple {94346#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,386 INFO L273 TraceCheckUtils]: 89: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == ~tmp___10~0); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,387 INFO L273 TraceCheckUtils]: 90: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,388 INFO L273 TraceCheckUtils]: 91: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,390 INFO L273 TraceCheckUtils]: 92: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} ~skip~0 := 0; {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,391 INFO L273 TraceCheckUtils]: 93: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !false; {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,392 INFO L273 TraceCheckUtils]: 94: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,393 INFO L273 TraceCheckUtils]: 95: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,394 INFO L273 TraceCheckUtils]: 96: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,395 INFO L273 TraceCheckUtils]: 97: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,396 INFO L273 TraceCheckUtils]: 98: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,397 INFO L273 TraceCheckUtils]: 99: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,398 INFO L273 TraceCheckUtils]: 100: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:49:54,399 INFO L273 TraceCheckUtils]: 101: Hoare triple {94348#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {94349#(= |ssl3_accept_#t~mem31| 8672)} is VALID [2018-11-23 12:49:54,400 INFO L273 TraceCheckUtils]: 102: Hoare triple {94349#(= |ssl3_accept_#t~mem31| 8672)} assume 8482 == #t~mem31;havoc #t~mem31; {94347#false} is VALID [2018-11-23 12:49:54,400 INFO L273 TraceCheckUtils]: 103: Hoare triple {94347#false} call write~int(3, ~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,400 INFO L273 TraceCheckUtils]: 104: Hoare triple {94347#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,400 INFO L273 TraceCheckUtils]: 105: Hoare triple {94347#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {94347#false} is VALID [2018-11-23 12:49:54,400 INFO L273 TraceCheckUtils]: 106: Hoare triple {94347#false} ~skip~0 := 0; {94347#false} is VALID [2018-11-23 12:49:54,401 INFO L273 TraceCheckUtils]: 107: Hoare triple {94347#false} assume !false; {94347#false} is VALID [2018-11-23 12:49:54,401 INFO L273 TraceCheckUtils]: 108: Hoare triple {94347#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,401 INFO L273 TraceCheckUtils]: 109: Hoare triple {94347#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,401 INFO L273 TraceCheckUtils]: 110: Hoare triple {94347#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,401 INFO L273 TraceCheckUtils]: 111: Hoare triple {94347#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,401 INFO L273 TraceCheckUtils]: 112: Hoare triple {94347#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,402 INFO L273 TraceCheckUtils]: 113: Hoare triple {94347#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,402 INFO L273 TraceCheckUtils]: 114: Hoare triple {94347#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,402 INFO L273 TraceCheckUtils]: 115: Hoare triple {94347#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,402 INFO L273 TraceCheckUtils]: 116: Hoare triple {94347#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,402 INFO L273 TraceCheckUtils]: 117: Hoare triple {94347#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,402 INFO L273 TraceCheckUtils]: 118: Hoare triple {94347#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,403 INFO L273 TraceCheckUtils]: 119: Hoare triple {94347#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,403 INFO L273 TraceCheckUtils]: 120: Hoare triple {94347#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,403 INFO L273 TraceCheckUtils]: 121: Hoare triple {94347#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,403 INFO L273 TraceCheckUtils]: 122: Hoare triple {94347#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,403 INFO L273 TraceCheckUtils]: 123: Hoare triple {94347#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,403 INFO L273 TraceCheckUtils]: 124: Hoare triple {94347#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,404 INFO L273 TraceCheckUtils]: 125: Hoare triple {94347#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,404 INFO L273 TraceCheckUtils]: 126: Hoare triple {94347#false} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,404 INFO L273 TraceCheckUtils]: 127: Hoare triple {94347#false} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,404 INFO L273 TraceCheckUtils]: 128: Hoare triple {94347#false} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,404 INFO L273 TraceCheckUtils]: 129: Hoare triple {94347#false} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,404 INFO L273 TraceCheckUtils]: 130: Hoare triple {94347#false} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 131: Hoare triple {94347#false} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 132: Hoare triple {94347#false} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 133: Hoare triple {94347#false} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 134: Hoare triple {94347#false} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 135: Hoare triple {94347#false} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 136: Hoare triple {94347#false} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 137: Hoare triple {94347#false} assume 8640 == #t~mem52;havoc #t~mem52; {94347#false} is VALID [2018-11-23 12:49:54,405 INFO L273 TraceCheckUtils]: 138: Hoare triple {94347#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {94347#false} is VALID [2018-11-23 12:49:54,406 INFO L273 TraceCheckUtils]: 139: Hoare triple {94347#false} assume 4 == ~blastFlag~0; {94347#false} is VALID [2018-11-23 12:49:54,406 INFO L273 TraceCheckUtils]: 140: Hoare triple {94347#false} assume !false; {94347#false} is VALID [2018-11-23 12:49:54,414 INFO L134 CoverageAnalysis]: Checked inductivity of 150 backedges. 111 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:49:54,414 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:49:54,415 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:49:54,415 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 141 [2018-11-23 12:49:54,415 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:49:54,415 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:49:54,589 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 115 edges. 115 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:54,589 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:49:54,589 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:49:54,589 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:49:54,590 INFO L87 Difference]: Start difference. First operand 1337 states and 1997 transitions. Second operand 4 states. [2018-11-23 12:49:58,000 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:49:58,000 INFO L93 Difference]: Finished difference Result 2979 states and 4426 transitions. [2018-11-23 12:49:58,000 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:49:58,001 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 141 [2018-11-23 12:49:58,001 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:49:58,001 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:58,003 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 555 transitions. [2018-11-23 12:49:58,003 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:49:58,005 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 555 transitions. [2018-11-23 12:49:58,005 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 555 transitions. [2018-11-23 12:49:58,569 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 555 edges. 555 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:49:58,672 INFO L225 Difference]: With dead ends: 2979 [2018-11-23 12:49:58,673 INFO L226 Difference]: Without dead ends: 1667 [2018-11-23 12:49:58,674 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:49:58,676 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1667 states. [2018-11-23 12:50:00,898 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1667 to 1337. [2018-11-23 12:50:00,898 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:50:00,898 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:00,898 INFO L74 IsIncluded]: Start isIncluded. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:00,898 INFO L87 Difference]: Start difference. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:00,997 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:00,997 INFO L93 Difference]: Finished difference Result 1667 states and 2452 transitions. [2018-11-23 12:50:00,997 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 2452 transitions. [2018-11-23 12:50:00,998 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:50:00,998 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:50:00,999 INFO L74 IsIncluded]: Start isIncluded. First operand 1337 states. Second operand 1667 states. [2018-11-23 12:50:00,999 INFO L87 Difference]: Start difference. First operand 1337 states. Second operand 1667 states. [2018-11-23 12:50:01,082 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:01,082 INFO L93 Difference]: Finished difference Result 1667 states and 2452 transitions. [2018-11-23 12:50:01,082 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 2452 transitions. [2018-11-23 12:50:01,083 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:50:01,083 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:50:01,083 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:50:01,083 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:50:01,084 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1337 states. [2018-11-23 12:50:01,140 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1337 states to 1337 states and 1992 transitions. [2018-11-23 12:50:01,141 INFO L78 Accepts]: Start accepts. Automaton has 1337 states and 1992 transitions. Word has length 141 [2018-11-23 12:50:01,141 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:50:01,141 INFO L480 AbstractCegarLoop]: Abstraction has 1337 states and 1992 transitions. [2018-11-23 12:50:01,141 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:50:01,141 INFO L276 IsEmpty]: Start isEmpty. Operand 1337 states and 1992 transitions. [2018-11-23 12:50:01,142 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 143 [2018-11-23 12:50:01,142 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:50:01,142 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:50:01,142 INFO L423 AbstractCegarLoop]: === Iteration 47 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:50:01,142 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:50:01,143 INFO L82 PathProgramCache]: Analyzing trace with hash -1997763491, now seen corresponding path program 1 times [2018-11-23 12:50:01,143 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:50:01,143 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:50:01,143 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:50:01,144 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:50:01,144 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:50:01,157 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:50:01,334 INFO L256 TraceCheckUtils]: 0: Hoare triple {102591#true} call ULTIMATE.init(); {102591#true} is VALID [2018-11-23 12:50:01,334 INFO L273 TraceCheckUtils]: 1: Hoare triple {102591#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,334 INFO L273 TraceCheckUtils]: 2: Hoare triple {102591#true} assume true; {102591#true} is VALID [2018-11-23 12:50:01,335 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {102591#true} {102591#true} #633#return; {102591#true} is VALID [2018-11-23 12:50:01,335 INFO L256 TraceCheckUtils]: 4: Hoare triple {102591#true} call #t~ret138 := main(); {102591#true} is VALID [2018-11-23 12:50:01,335 INFO L273 TraceCheckUtils]: 5: Hoare triple {102591#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,335 INFO L256 TraceCheckUtils]: 6: Hoare triple {102591#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 7: Hoare triple {102591#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 8: Hoare triple {102591#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 9: Hoare triple {102591#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 10: Hoare triple {102591#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 11: Hoare triple {102591#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 12: Hoare triple {102591#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 13: Hoare triple {102591#true} assume !false; {102591#true} is VALID [2018-11-23 12:50:01,336 INFO L273 TraceCheckUtils]: 14: Hoare triple {102591#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 15: Hoare triple {102591#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 16: Hoare triple {102591#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 17: Hoare triple {102591#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 18: Hoare triple {102591#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 19: Hoare triple {102591#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 20: Hoare triple {102591#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 21: Hoare triple {102591#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 22: Hoare triple {102591#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 23: Hoare triple {102591#true} assume 8464 == #t~mem32;havoc #t~mem32; {102591#true} is VALID [2018-11-23 12:50:01,337 INFO L273 TraceCheckUtils]: 24: Hoare triple {102591#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 25: Hoare triple {102591#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 26: Hoare triple {102591#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 27: Hoare triple {102591#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 28: Hoare triple {102591#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 29: Hoare triple {102591#true} ~skip~0 := 0; {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 30: Hoare triple {102591#true} assume !false; {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 31: Hoare triple {102591#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 32: Hoare triple {102591#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,338 INFO L273 TraceCheckUtils]: 33: Hoare triple {102591#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 34: Hoare triple {102591#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 35: Hoare triple {102591#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 36: Hoare triple {102591#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 37: Hoare triple {102591#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 38: Hoare triple {102591#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 39: Hoare triple {102591#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 40: Hoare triple {102591#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 41: Hoare triple {102591#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 42: Hoare triple {102591#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,339 INFO L273 TraceCheckUtils]: 43: Hoare triple {102591#true} assume 8496 == #t~mem35;havoc #t~mem35; {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 44: Hoare triple {102591#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 45: Hoare triple {102591#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 46: Hoare triple {102591#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 47: Hoare triple {102591#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 48: Hoare triple {102591#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 49: Hoare triple {102591#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 50: Hoare triple {102591#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 51: Hoare triple {102591#true} ~skip~0 := 0; {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 52: Hoare triple {102591#true} assume !false; {102591#true} is VALID [2018-11-23 12:50:01,340 INFO L273 TraceCheckUtils]: 53: Hoare triple {102591#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 54: Hoare triple {102591#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 55: Hoare triple {102591#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 56: Hoare triple {102591#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 57: Hoare triple {102591#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 58: Hoare triple {102591#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 59: Hoare triple {102591#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 60: Hoare triple {102591#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 61: Hoare triple {102591#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,341 INFO L273 TraceCheckUtils]: 62: Hoare triple {102591#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 63: Hoare triple {102591#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 64: Hoare triple {102591#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 65: Hoare triple {102591#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 66: Hoare triple {102591#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 67: Hoare triple {102591#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 68: Hoare triple {102591#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 69: Hoare triple {102591#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 70: Hoare triple {102591#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 71: Hoare triple {102591#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,342 INFO L273 TraceCheckUtils]: 72: Hoare triple {102591#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 73: Hoare triple {102591#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 74: Hoare triple {102591#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 75: Hoare triple {102591#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 76: Hoare triple {102591#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 77: Hoare triple {102591#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 78: Hoare triple {102591#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 79: Hoare triple {102591#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 80: Hoare triple {102591#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 81: Hoare triple {102591#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,343 INFO L273 TraceCheckUtils]: 82: Hoare triple {102591#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,344 INFO L273 TraceCheckUtils]: 83: Hoare triple {102591#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {102591#true} is VALID [2018-11-23 12:50:01,344 INFO L273 TraceCheckUtils]: 84: Hoare triple {102591#true} assume 8656 == #t~mem54;havoc #t~mem54; {102591#true} is VALID [2018-11-23 12:50:01,344 INFO L273 TraceCheckUtils]: 85: Hoare triple {102591#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {102591#true} is VALID [2018-11-23 12:50:01,344 INFO L273 TraceCheckUtils]: 86: Hoare triple {102591#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {102591#true} is VALID [2018-11-23 12:50:01,344 INFO L273 TraceCheckUtils]: 87: Hoare triple {102591#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {102591#true} is VALID [2018-11-23 12:50:01,345 INFO L273 TraceCheckUtils]: 88: Hoare triple {102591#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,345 INFO L273 TraceCheckUtils]: 89: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == ~tmp___10~0); {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,346 INFO L273 TraceCheckUtils]: 90: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,346 INFO L273 TraceCheckUtils]: 91: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,346 INFO L273 TraceCheckUtils]: 92: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} ~skip~0 := 0; {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,346 INFO L273 TraceCheckUtils]: 93: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !false; {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,347 INFO L273 TraceCheckUtils]: 94: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:01,347 INFO L273 TraceCheckUtils]: 95: Hoare triple {102593#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {102594#(= |ssl3_accept_#t~mem25| 8672)} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 96: Hoare triple {102594#(= |ssl3_accept_#t~mem25| 8672)} assume 16384 == #t~mem25;havoc #t~mem25; {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 97: Hoare triple {102592#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 98: Hoare triple {102592#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 99: Hoare triple {102592#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 100: Hoare triple {102592#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 101: Hoare triple {102592#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 102: Hoare triple {102592#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,348 INFO L273 TraceCheckUtils]: 103: Hoare triple {102592#false} assume 12292 != #t~mem62;havoc #t~mem62; {102592#false} is VALID [2018-11-23 12:50:01,349 INFO L273 TraceCheckUtils]: 104: Hoare triple {102592#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {102592#false} is VALID [2018-11-23 12:50:01,349 INFO L273 TraceCheckUtils]: 105: Hoare triple {102592#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,349 INFO L273 TraceCheckUtils]: 106: Hoare triple {102592#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {102592#false} is VALID [2018-11-23 12:50:01,349 INFO L273 TraceCheckUtils]: 107: Hoare triple {102592#false} ~skip~0 := 0; {102592#false} is VALID [2018-11-23 12:50:01,349 INFO L273 TraceCheckUtils]: 108: Hoare triple {102592#false} assume !false; {102592#false} is VALID [2018-11-23 12:50:01,349 INFO L273 TraceCheckUtils]: 109: Hoare triple {102592#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,350 INFO L273 TraceCheckUtils]: 110: Hoare triple {102592#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,350 INFO L273 TraceCheckUtils]: 111: Hoare triple {102592#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,350 INFO L273 TraceCheckUtils]: 112: Hoare triple {102592#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,350 INFO L273 TraceCheckUtils]: 113: Hoare triple {102592#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,350 INFO L273 TraceCheckUtils]: 114: Hoare triple {102592#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,350 INFO L273 TraceCheckUtils]: 115: Hoare triple {102592#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,351 INFO L273 TraceCheckUtils]: 116: Hoare triple {102592#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,351 INFO L273 TraceCheckUtils]: 117: Hoare triple {102592#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,351 INFO L273 TraceCheckUtils]: 118: Hoare triple {102592#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,351 INFO L273 TraceCheckUtils]: 119: Hoare triple {102592#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,351 INFO L273 TraceCheckUtils]: 120: Hoare triple {102592#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,351 INFO L273 TraceCheckUtils]: 121: Hoare triple {102592#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,352 INFO L273 TraceCheckUtils]: 122: Hoare triple {102592#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,352 INFO L273 TraceCheckUtils]: 123: Hoare triple {102592#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,352 INFO L273 TraceCheckUtils]: 124: Hoare triple {102592#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,352 INFO L273 TraceCheckUtils]: 125: Hoare triple {102592#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,352 INFO L273 TraceCheckUtils]: 126: Hoare triple {102592#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,352 INFO L273 TraceCheckUtils]: 127: Hoare triple {102592#false} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 128: Hoare triple {102592#false} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 129: Hoare triple {102592#false} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 130: Hoare triple {102592#false} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 131: Hoare triple {102592#false} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 132: Hoare triple {102592#false} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 133: Hoare triple {102592#false} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,353 INFO L273 TraceCheckUtils]: 134: Hoare triple {102592#false} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 135: Hoare triple {102592#false} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 136: Hoare triple {102592#false} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 137: Hoare triple {102592#false} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 138: Hoare triple {102592#false} assume 8640 == #t~mem52;havoc #t~mem52; {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 139: Hoare triple {102592#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 140: Hoare triple {102592#false} assume 4 == ~blastFlag~0; {102592#false} is VALID [2018-11-23 12:50:01,354 INFO L273 TraceCheckUtils]: 141: Hoare triple {102592#false} assume !false; {102592#false} is VALID [2018-11-23 12:50:01,362 INFO L134 CoverageAnalysis]: Checked inductivity of 126 backedges. 87 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:50:01,362 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:50:01,362 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:50:01,363 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 142 [2018-11-23 12:50:01,363 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:50:01,363 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:50:01,471 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 116 edges. 116 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:50:01,471 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:50:01,472 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:50:01,472 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:50:01,472 INFO L87 Difference]: Start difference. First operand 1337 states and 1992 transitions. Second operand 4 states. [2018-11-23 12:50:07,682 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:07,682 INFO L93 Difference]: Finished difference Result 2979 states and 4416 transitions. [2018-11-23 12:50:07,682 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:50:07,682 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 142 [2018-11-23 12:50:07,682 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:50:07,683 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:50:07,684 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 554 transitions. [2018-11-23 12:50:07,685 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:50:07,686 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 554 transitions. [2018-11-23 12:50:07,687 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 554 transitions. [2018-11-23 12:50:08,247 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 554 edges. 554 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:50:08,354 INFO L225 Difference]: With dead ends: 2979 [2018-11-23 12:50:08,354 INFO L226 Difference]: Without dead ends: 1667 [2018-11-23 12:50:08,356 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:50:08,357 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1667 states. [2018-11-23 12:50:11,300 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1667 to 1337. [2018-11-23 12:50:11,301 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:50:11,301 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:11,301 INFO L74 IsIncluded]: Start isIncluded. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:11,301 INFO L87 Difference]: Start difference. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:11,386 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:11,386 INFO L93 Difference]: Finished difference Result 1667 states and 2447 transitions. [2018-11-23 12:50:11,386 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 2447 transitions. [2018-11-23 12:50:11,387 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:50:11,388 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:50:11,388 INFO L74 IsIncluded]: Start isIncluded. First operand 1337 states. Second operand 1667 states. [2018-11-23 12:50:11,388 INFO L87 Difference]: Start difference. First operand 1337 states. Second operand 1667 states. [2018-11-23 12:50:11,471 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:11,471 INFO L93 Difference]: Finished difference Result 1667 states and 2447 transitions. [2018-11-23 12:50:11,472 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 2447 transitions. [2018-11-23 12:50:11,473 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:50:11,473 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:50:11,473 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:50:11,473 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:50:11,473 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1337 states. [2018-11-23 12:50:11,530 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1337 states to 1337 states and 1987 transitions. [2018-11-23 12:50:11,530 INFO L78 Accepts]: Start accepts. Automaton has 1337 states and 1987 transitions. Word has length 142 [2018-11-23 12:50:11,530 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:50:11,530 INFO L480 AbstractCegarLoop]: Abstraction has 1337 states and 1987 transitions. [2018-11-23 12:50:11,530 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:50:11,530 INFO L276 IsEmpty]: Start isEmpty. Operand 1337 states and 1987 transitions. [2018-11-23 12:50:11,531 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 144 [2018-11-23 12:50:11,531 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:50:11,532 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:50:11,532 INFO L423 AbstractCegarLoop]: === Iteration 48 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:50:11,532 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:50:11,532 INFO L82 PathProgramCache]: Analyzing trace with hash -656974124, now seen corresponding path program 1 times [2018-11-23 12:50:11,532 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:50:11,532 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:50:11,533 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:50:11,533 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:50:11,533 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:50:11,548 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:50:11,958 INFO L256 TraceCheckUtils]: 0: Hoare triple {110836#true} call ULTIMATE.init(); {110836#true} is VALID [2018-11-23 12:50:11,958 INFO L273 TraceCheckUtils]: 1: Hoare triple {110836#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,958 INFO L273 TraceCheckUtils]: 2: Hoare triple {110836#true} assume true; {110836#true} is VALID [2018-11-23 12:50:11,958 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {110836#true} {110836#true} #633#return; {110836#true} is VALID [2018-11-23 12:50:11,958 INFO L256 TraceCheckUtils]: 4: Hoare triple {110836#true} call #t~ret138 := main(); {110836#true} is VALID [2018-11-23 12:50:11,959 INFO L273 TraceCheckUtils]: 5: Hoare triple {110836#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,959 INFO L256 TraceCheckUtils]: 6: Hoare triple {110836#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {110836#true} is VALID [2018-11-23 12:50:11,959 INFO L273 TraceCheckUtils]: 7: Hoare triple {110836#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,959 INFO L273 TraceCheckUtils]: 8: Hoare triple {110836#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {110836#true} is VALID [2018-11-23 12:50:11,959 INFO L273 TraceCheckUtils]: 9: Hoare triple {110836#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 10: Hoare triple {110836#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 11: Hoare triple {110836#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 12: Hoare triple {110836#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 13: Hoare triple {110836#true} assume !false; {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 14: Hoare triple {110836#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 15: Hoare triple {110836#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 16: Hoare triple {110836#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,960 INFO L273 TraceCheckUtils]: 17: Hoare triple {110836#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 18: Hoare triple {110836#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 19: Hoare triple {110836#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 20: Hoare triple {110836#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 21: Hoare triple {110836#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 22: Hoare triple {110836#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 23: Hoare triple {110836#true} assume 8464 == #t~mem32;havoc #t~mem32; {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 24: Hoare triple {110836#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 25: Hoare triple {110836#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 26: Hoare triple {110836#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,961 INFO L273 TraceCheckUtils]: 27: Hoare triple {110836#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 28: Hoare triple {110836#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 29: Hoare triple {110836#true} ~skip~0 := 0; {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 30: Hoare triple {110836#true} assume !false; {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 31: Hoare triple {110836#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 32: Hoare triple {110836#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 33: Hoare triple {110836#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 34: Hoare triple {110836#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 35: Hoare triple {110836#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,962 INFO L273 TraceCheckUtils]: 36: Hoare triple {110836#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 37: Hoare triple {110836#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 38: Hoare triple {110836#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 39: Hoare triple {110836#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 40: Hoare triple {110836#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 41: Hoare triple {110836#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 42: Hoare triple {110836#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 43: Hoare triple {110836#true} assume 8496 == #t~mem35;havoc #t~mem35; {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 44: Hoare triple {110836#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 45: Hoare triple {110836#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {110836#true} is VALID [2018-11-23 12:50:11,963 INFO L273 TraceCheckUtils]: 46: Hoare triple {110836#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 47: Hoare triple {110836#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 48: Hoare triple {110836#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 49: Hoare triple {110836#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 50: Hoare triple {110836#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 51: Hoare triple {110836#true} ~skip~0 := 0; {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 52: Hoare triple {110836#true} assume !false; {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 53: Hoare triple {110836#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 54: Hoare triple {110836#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 55: Hoare triple {110836#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,964 INFO L273 TraceCheckUtils]: 56: Hoare triple {110836#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 57: Hoare triple {110836#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 58: Hoare triple {110836#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 59: Hoare triple {110836#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 60: Hoare triple {110836#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 61: Hoare triple {110836#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 62: Hoare triple {110836#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 63: Hoare triple {110836#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 64: Hoare triple {110836#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 65: Hoare triple {110836#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,965 INFO L273 TraceCheckUtils]: 66: Hoare triple {110836#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 67: Hoare triple {110836#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 68: Hoare triple {110836#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 69: Hoare triple {110836#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 70: Hoare triple {110836#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 71: Hoare triple {110836#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 72: Hoare triple {110836#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 73: Hoare triple {110836#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 74: Hoare triple {110836#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,966 INFO L273 TraceCheckUtils]: 75: Hoare triple {110836#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 76: Hoare triple {110836#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 77: Hoare triple {110836#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 78: Hoare triple {110836#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 79: Hoare triple {110836#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 80: Hoare triple {110836#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 81: Hoare triple {110836#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 82: Hoare triple {110836#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 83: Hoare triple {110836#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 84: Hoare triple {110836#true} assume 8656 == #t~mem54;havoc #t~mem54; {110836#true} is VALID [2018-11-23 12:50:11,967 INFO L273 TraceCheckUtils]: 85: Hoare triple {110836#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {110836#true} is VALID [2018-11-23 12:50:11,968 INFO L273 TraceCheckUtils]: 86: Hoare triple {110836#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {110836#true} is VALID [2018-11-23 12:50:11,968 INFO L273 TraceCheckUtils]: 87: Hoare triple {110836#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {110836#true} is VALID [2018-11-23 12:50:11,969 INFO L273 TraceCheckUtils]: 88: Hoare triple {110836#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,970 INFO L273 TraceCheckUtils]: 89: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == ~tmp___10~0); {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,970 INFO L273 TraceCheckUtils]: 90: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,970 INFO L273 TraceCheckUtils]: 91: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,971 INFO L273 TraceCheckUtils]: 92: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} ~skip~0 := 0; {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,972 INFO L273 TraceCheckUtils]: 93: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !false; {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,972 INFO L273 TraceCheckUtils]: 94: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,972 INFO L273 TraceCheckUtils]: 95: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:11,973 INFO L273 TraceCheckUtils]: 96: Hoare triple {110838#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {110839#(= |ssl3_accept_#t~mem26| 8672)} is VALID [2018-11-23 12:50:11,973 INFO L273 TraceCheckUtils]: 97: Hoare triple {110839#(= |ssl3_accept_#t~mem26| 8672)} assume 8192 == #t~mem26;havoc #t~mem26; {110837#false} is VALID [2018-11-23 12:50:11,973 INFO L273 TraceCheckUtils]: 98: Hoare triple {110837#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,973 INFO L273 TraceCheckUtils]: 99: Hoare triple {110837#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {110837#false} is VALID [2018-11-23 12:50:11,973 INFO L273 TraceCheckUtils]: 100: Hoare triple {110837#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,973 INFO L273 TraceCheckUtils]: 101: Hoare triple {110837#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 102: Hoare triple {110837#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 103: Hoare triple {110837#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 104: Hoare triple {110837#false} assume 12292 != #t~mem62;havoc #t~mem62; {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 105: Hoare triple {110837#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 106: Hoare triple {110837#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 107: Hoare triple {110837#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 108: Hoare triple {110837#false} ~skip~0 := 0; {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 109: Hoare triple {110837#false} assume !false; {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 110: Hoare triple {110837#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,974 INFO L273 TraceCheckUtils]: 111: Hoare triple {110837#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 112: Hoare triple {110837#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 113: Hoare triple {110837#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 114: Hoare triple {110837#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 115: Hoare triple {110837#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 116: Hoare triple {110837#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 117: Hoare triple {110837#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 118: Hoare triple {110837#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 119: Hoare triple {110837#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 120: Hoare triple {110837#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,975 INFO L273 TraceCheckUtils]: 121: Hoare triple {110837#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 122: Hoare triple {110837#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 123: Hoare triple {110837#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 124: Hoare triple {110837#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 125: Hoare triple {110837#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 126: Hoare triple {110837#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 127: Hoare triple {110837#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 128: Hoare triple {110837#false} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 129: Hoare triple {110837#false} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 130: Hoare triple {110837#false} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,976 INFO L273 TraceCheckUtils]: 131: Hoare triple {110837#false} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 132: Hoare triple {110837#false} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 133: Hoare triple {110837#false} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 134: Hoare triple {110837#false} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 135: Hoare triple {110837#false} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 136: Hoare triple {110837#false} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 137: Hoare triple {110837#false} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 138: Hoare triple {110837#false} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 139: Hoare triple {110837#false} assume 8640 == #t~mem52;havoc #t~mem52; {110837#false} is VALID [2018-11-23 12:50:11,977 INFO L273 TraceCheckUtils]: 140: Hoare triple {110837#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {110837#false} is VALID [2018-11-23 12:50:11,978 INFO L273 TraceCheckUtils]: 141: Hoare triple {110837#false} assume 4 == ~blastFlag~0; {110837#false} is VALID [2018-11-23 12:50:11,978 INFO L273 TraceCheckUtils]: 142: Hoare triple {110837#false} assume !false; {110837#false} is VALID [2018-11-23 12:50:11,986 INFO L134 CoverageAnalysis]: Checked inductivity of 130 backedges. 91 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:50:11,986 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:50:11,986 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:50:11,987 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 143 [2018-11-23 12:50:11,987 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:50:11,987 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:50:12,100 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 117 edges. 117 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:50:12,101 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:50:12,101 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:50:12,101 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:50:12,101 INFO L87 Difference]: Start difference. First operand 1337 states and 1987 transitions. Second operand 4 states. [2018-11-23 12:50:21,432 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:21,432 INFO L93 Difference]: Finished difference Result 2979 states and 4406 transitions. [2018-11-23 12:50:21,432 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:50:21,432 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 143 [2018-11-23 12:50:21,432 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:50:21,433 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:50:21,435 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 553 transitions. [2018-11-23 12:50:21,435 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:50:21,437 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 553 transitions. [2018-11-23 12:50:21,437 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 553 transitions. [2018-11-23 12:50:22,017 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 553 edges. 553 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:50:22,125 INFO L225 Difference]: With dead ends: 2979 [2018-11-23 12:50:22,126 INFO L226 Difference]: Without dead ends: 1667 [2018-11-23 12:50:22,128 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:50:22,129 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1667 states. [2018-11-23 12:50:27,246 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1667 to 1337. [2018-11-23 12:50:27,246 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-23 12:50:27,246 INFO L82 GeneralOperation]: Start isEquivalent. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:27,246 INFO L74 IsIncluded]: Start isIncluded. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:27,246 INFO L87 Difference]: Start difference. First operand 1667 states. Second operand 1337 states. [2018-11-23 12:50:27,355 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:27,355 INFO L93 Difference]: Finished difference Result 1667 states and 2442 transitions. [2018-11-23 12:50:27,355 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 2442 transitions. [2018-11-23 12:50:27,356 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:50:27,357 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:50:27,357 INFO L74 IsIncluded]: Start isIncluded. First operand 1337 states. Second operand 1667 states. [2018-11-23 12:50:27,357 INFO L87 Difference]: Start difference. First operand 1337 states. Second operand 1667 states. [2018-11-23 12:50:27,462 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:27,462 INFO L93 Difference]: Finished difference Result 1667 states and 2442 transitions. [2018-11-23 12:50:27,462 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 2442 transitions. [2018-11-23 12:50:27,463 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-23 12:50:27,463 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-23 12:50:27,463 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-23 12:50:27,464 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-23 12:50:27,464 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1337 states. [2018-11-23 12:50:27,523 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1337 states to 1337 states and 1982 transitions. [2018-11-23 12:50:27,523 INFO L78 Accepts]: Start accepts. Automaton has 1337 states and 1982 transitions. Word has length 143 [2018-11-23 12:50:27,523 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-23 12:50:27,523 INFO L480 AbstractCegarLoop]: Abstraction has 1337 states and 1982 transitions. [2018-11-23 12:50:27,523 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-23 12:50:27,523 INFO L276 IsEmpty]: Start isEmpty. Operand 1337 states and 1982 transitions. [2018-11-23 12:50:27,524 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 145 [2018-11-23 12:50:27,524 INFO L394 BasicCegarLoop]: Found error trace [2018-11-23 12:50:27,525 INFO L402 BasicCegarLoop]: trace histogram [5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-23 12:50:27,525 INFO L423 AbstractCegarLoop]: === Iteration 49 === [ssl3_acceptErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-23 12:50:27,525 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-23 12:50:27,525 INFO L82 PathProgramCache]: Analyzing trace with hash 631021400, now seen corresponding path program 1 times [2018-11-23 12:50:27,525 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-23 12:50:27,525 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-23 12:50:27,526 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:50:27,526 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-23 12:50:27,526 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-23 12:50:27,543 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-23 12:50:27,655 INFO L256 TraceCheckUtils]: 0: Hoare triple {119081#true} call ULTIMATE.init(); {119081#true} is VALID [2018-11-23 12:50:27,656 INFO L273 TraceCheckUtils]: 1: Hoare triple {119081#true} #NULL.base, #NULL.offset := 0, 0;#valid := #valid[0 := 0];~init~0 := 1;call ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset := #Ultimate.alloc(100);call write~init~int(0, ~#SSLv3_server_data~0.base, ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 4 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 8 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 12 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 16 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 20 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 24 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 28 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 32 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 36 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 40 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 44 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 48 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 52 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 56 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 60 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 64 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 68 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 72 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 76 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 80 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 84 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 88 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 92 + ~#SSLv3_server_data~0.offset, 4);call write~init~$Pointer$(0, 0, ~#SSLv3_server_data~0.base, 96 + ~#SSLv3_server_data~0.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,656 INFO L273 TraceCheckUtils]: 2: Hoare triple {119081#true} assume true; {119081#true} is VALID [2018-11-23 12:50:27,656 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {119081#true} {119081#true} #633#return; {119081#true} is VALID [2018-11-23 12:50:27,656 INFO L256 TraceCheckUtils]: 4: Hoare triple {119081#true} call #t~ret138 := main(); {119081#true} is VALID [2018-11-23 12:50:27,657 INFO L273 TraceCheckUtils]: 5: Hoare triple {119081#true} havoc ~s~0.base, ~s~0.offset;havoc ~tmp~2;call #t~malloc3.base, #t~malloc3.offset := #Ultimate.alloc(248);~s~0.base, ~s~0.offset := #t~malloc3.base, #t~malloc3.offset;call #t~malloc4.base, #t~malloc4.offset := #Ultimate.alloc(899);call write~$Pointer$(#t~malloc4.base, #t~malloc4.offset, ~s~0.base, 84 + ~s~0.offset, 4);call #t~malloc5.base, #t~malloc5.offset := #Ultimate.alloc(232);call write~$Pointer$(#t~malloc5.base, #t~malloc5.offset, ~s~0.base, 204 + ~s~0.offset, 4);call #t~malloc6.base, #t~malloc6.offset := #Ultimate.alloc(200);call write~$Pointer$(#t~malloc6.base, #t~malloc6.offset, ~s~0.base, 176 + ~s~0.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,657 INFO L256 TraceCheckUtils]: 6: Hoare triple {119081#true} call #t~ret7 := ssl3_accept(~s~0.base, ~s~0.offset); {119081#true} is VALID [2018-11-23 12:50:27,657 INFO L273 TraceCheckUtils]: 7: Hoare triple {119081#true} ~s.base, ~s.offset := #in~s.base, #in~s.offset;havoc ~buf~0.base, ~buf~0.offset;havoc ~l~0;havoc ~Time~0;havoc ~tmp~3;havoc ~cb~0.base, ~cb~0.offset;havoc ~num1~0;havoc ~ret~0;havoc ~new_state~0;havoc ~state~0;havoc ~skip~0;havoc ~got_new_session~0;assume -2147483648 <= #t~nondet8 && #t~nondet8 <= 2147483647;~tmp___1~0 := #t~nondet8;havoc #t~nondet8;assume -2147483648 <= #t~nondet9 && #t~nondet9 <= 2147483647;~tmp___2~0 := #t~nondet9;havoc #t~nondet9;assume -2147483648 <= #t~nondet10 && #t~nondet10 <= 2147483647;~tmp___3~0 := #t~nondet10;havoc #t~nondet10;assume -2147483648 <= #t~nondet11 && #t~nondet11 <= 2147483647;~tmp___4~0 := #t~nondet11;havoc #t~nondet11;assume -2147483648 <= #t~nondet12 && #t~nondet12 <= 2147483647;~tmp___5~0 := #t~nondet12;havoc #t~nondet12;assume -2147483648 <= #t~nondet13 && #t~nondet13 <= 2147483647;~tmp___6~0 := #t~nondet13;havoc #t~nondet13;havoc ~tmp___7~0;assume -2147483648 <= #t~nondet14 && #t~nondet14 <= 2147483647;~tmp___8~0 := #t~nondet14;havoc #t~nondet14;assume -2147483648 <= #t~nondet15 && #t~nondet15 <= 2147483647;~tmp___9~0 := #t~nondet15;havoc #t~nondet15;assume -2147483648 <= #t~nondet16 && #t~nondet16 <= 2147483647;~tmp___10~0 := #t~nondet16;havoc #t~nondet16;havoc ~blastFlag~0;call write~int(8464, ~s.base, 52 + ~s.offset, 4);~blastFlag~0 := 0;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;call write~int(#t~nondet17, ~s.base, 92 + ~s.offset, 4);havoc #t~nondet17;call write~int(8464, ~s.base, 52 + ~s.offset, 4);assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~tmp~3 := #t~nondet18;havoc #t~nondet18;~Time~0 := ~tmp~3;~cb~0.base, ~cb~0.offset := 0, 0;~ret~0 := -1;~skip~0 := 0;~got_new_session~0 := 0;call #t~mem19.base, #t~mem19.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,657 INFO L273 TraceCheckUtils]: 8: Hoare triple {119081#true} assume 0 != (#t~mem19.base + #t~mem19.offset) % 4294967296;havoc #t~mem19.base, #t~mem19.offset;call #t~mem20.base, #t~mem20.offset := read~$Pointer$(~s.base, 192 + ~s.offset, 4);~cb~0.base, ~cb~0.offset := #t~mem20.base, #t~mem20.offset;havoc #t~mem20.base, #t~mem20.offset; {119081#true} is VALID [2018-11-23 12:50:27,657 INFO L273 TraceCheckUtils]: 9: Hoare triple {119081#true} call #t~mem21 := read~int(~s.base, 28 + ~s.offset, 4);call write~int(1 + #t~mem21, ~s.base, 28 + ~s.offset, 4);havoc #t~mem21; {119081#true} is VALID [2018-11-23 12:50:27,657 INFO L273 TraceCheckUtils]: 10: Hoare triple {119081#true} assume !(0 != ~bitwiseAnd(~tmp___1~0, 12288)); {119081#true} is VALID [2018-11-23 12:50:27,658 INFO L273 TraceCheckUtils]: 11: Hoare triple {119081#true} call #t~mem22.base, #t~mem22.offset := read~$Pointer$(~s.base, 136 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,658 INFO L273 TraceCheckUtils]: 12: Hoare triple {119081#true} assume !(0 == (#t~mem22.base + #t~mem22.offset) % 4294967296);havoc #t~mem22.base, #t~mem22.offset; {119081#true} is VALID [2018-11-23 12:50:27,658 INFO L273 TraceCheckUtils]: 13: Hoare triple {119081#true} assume !false; {119081#true} is VALID [2018-11-23 12:50:27,658 INFO L273 TraceCheckUtils]: 14: Hoare triple {119081#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,658 INFO L273 TraceCheckUtils]: 15: Hoare triple {119081#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 16: Hoare triple {119081#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 17: Hoare triple {119081#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 18: Hoare triple {119081#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 19: Hoare triple {119081#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 20: Hoare triple {119081#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 21: Hoare triple {119081#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 22: Hoare triple {119081#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 23: Hoare triple {119081#true} assume 8464 == #t~mem32;havoc #t~mem32; {119081#true} is VALID [2018-11-23 12:50:27,659 INFO L273 TraceCheckUtils]: 24: Hoare triple {119081#true} call write~int(0, ~s.base, 48 + ~s.offset, 4);assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~ret~0 := #t~nondet69;havoc #t~nondet69; {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 25: Hoare triple {119081#true} assume 0 == ~blastFlag~0;~blastFlag~0 := 1; {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 26: Hoare triple {119081#true} assume !(~ret~0 <= 0);~got_new_session~0 := 1;call write~int(8496, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 27: Hoare triple {119081#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 28: Hoare triple {119081#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 29: Hoare triple {119081#true} ~skip~0 := 0; {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 30: Hoare triple {119081#true} assume !false; {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 31: Hoare triple {119081#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 32: Hoare triple {119081#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,660 INFO L273 TraceCheckUtils]: 33: Hoare triple {119081#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 34: Hoare triple {119081#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 35: Hoare triple {119081#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 36: Hoare triple {119081#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 37: Hoare triple {119081#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 38: Hoare triple {119081#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 39: Hoare triple {119081#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 40: Hoare triple {119081#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 41: Hoare triple {119081#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 42: Hoare triple {119081#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,661 INFO L273 TraceCheckUtils]: 43: Hoare triple {119081#true} assume 8496 == #t~mem35;havoc #t~mem35; {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 44: Hoare triple {119081#true} assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~ret~0 := #t~nondet70;havoc #t~nondet70; {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 45: Hoare triple {119081#true} assume 1 == ~blastFlag~0;~blastFlag~0 := 2; {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 46: Hoare triple {119081#true} assume !(~ret~0 <= 0);call #t~mem71 := read~int(~s.base, 92 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 47: Hoare triple {119081#true} assume 0 != #t~mem71;havoc #t~mem71;call write~int(8656, ~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 48: Hoare triple {119081#true} call write~int(0, ~s.base, 64 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 49: Hoare triple {119081#true} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 50: Hoare triple {119081#true} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 51: Hoare triple {119081#true} ~skip~0 := 0; {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 52: Hoare triple {119081#true} assume !false; {119081#true} is VALID [2018-11-23 12:50:27,662 INFO L273 TraceCheckUtils]: 53: Hoare triple {119081#true} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 54: Hoare triple {119081#true} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 55: Hoare triple {119081#true} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 56: Hoare triple {119081#true} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 57: Hoare triple {119081#true} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 58: Hoare triple {119081#true} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 59: Hoare triple {119081#true} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 60: Hoare triple {119081#true} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 61: Hoare triple {119081#true} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 62: Hoare triple {119081#true} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,663 INFO L273 TraceCheckUtils]: 63: Hoare triple {119081#true} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 64: Hoare triple {119081#true} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 65: Hoare triple {119081#true} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 66: Hoare triple {119081#true} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 67: Hoare triple {119081#true} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 68: Hoare triple {119081#true} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 69: Hoare triple {119081#true} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 70: Hoare triple {119081#true} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 71: Hoare triple {119081#true} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,664 INFO L273 TraceCheckUtils]: 72: Hoare triple {119081#true} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 73: Hoare triple {119081#true} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 74: Hoare triple {119081#true} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 75: Hoare triple {119081#true} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 76: Hoare triple {119081#true} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 77: Hoare triple {119081#true} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 78: Hoare triple {119081#true} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 79: Hoare triple {119081#true} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 80: Hoare triple {119081#true} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 81: Hoare triple {119081#true} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,665 INFO L273 TraceCheckUtils]: 82: Hoare triple {119081#true} assume !(8640 == #t~mem52);havoc #t~mem52;call #t~mem53 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,666 INFO L273 TraceCheckUtils]: 83: Hoare triple {119081#true} assume !(8641 == #t~mem53);havoc #t~mem53;call #t~mem54 := read~int(~s.base, 52 + ~s.offset, 4); {119081#true} is VALID [2018-11-23 12:50:27,666 INFO L273 TraceCheckUtils]: 84: Hoare triple {119081#true} assume 8656 == #t~mem54;havoc #t~mem54; {119081#true} is VALID [2018-11-23 12:50:27,666 INFO L273 TraceCheckUtils]: 85: Hoare triple {119081#true} call #t~mem117.base, #t~mem117.offset := read~$Pointer$(~s.base, 176 + ~s.offset, 4);call #t~mem118.base, #t~mem118.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem119.base, #t~mem119.offset := read~$Pointer$(#t~mem118.base, 836 + #t~mem118.offset, 4);call write~$Pointer$(#t~mem119.base, #t~mem119.offset, #t~mem117.base, 172 + #t~mem117.offset, 4);havoc #t~mem117.base, #t~mem117.offset;havoc #t~mem119.base, #t~mem119.offset;havoc #t~mem118.base, #t~mem118.offset; {119081#true} is VALID [2018-11-23 12:50:27,666 INFO L273 TraceCheckUtils]: 86: Hoare triple {119081#true} assume !(0 == ~tmp___9~0);assume -2147483648 <= #t~nondet120 && #t~nondet120 <= 2147483647;~ret~0 := #t~nondet120;havoc #t~nondet120; {119081#true} is VALID [2018-11-23 12:50:27,666 INFO L273 TraceCheckUtils]: 87: Hoare triple {119081#true} assume 2 == ~blastFlag~0;~blastFlag~0 := 3; {119081#true} is VALID [2018-11-23 12:50:27,667 INFO L273 TraceCheckUtils]: 88: Hoare triple {119081#true} assume !(~ret~0 <= 0);call write~int(8672, ~s.base, 52 + ~s.offset, 4);call write~int(0, ~s.base, 64 + ~s.offset, 4); {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,667 INFO L273 TraceCheckUtils]: 89: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == ~tmp___10~0); {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,668 INFO L273 TraceCheckUtils]: 90: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,669 INFO L273 TraceCheckUtils]: 91: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,669 INFO L273 TraceCheckUtils]: 92: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} ~skip~0 := 0; {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,671 INFO L273 TraceCheckUtils]: 93: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !false; {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,671 INFO L273 TraceCheckUtils]: 94: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,672 INFO L273 TraceCheckUtils]: 95: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,672 INFO L273 TraceCheckUtils]: 96: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} is VALID [2018-11-23 12:50:27,673 INFO L273 TraceCheckUtils]: 97: Hoare triple {119083#(= (select (select |#memory_int| ssl3_accept_~s.base) (+ ssl3_accept_~s.offset 52)) 8672)} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {119084#(= |ssl3_accept_#t~mem27| 8672)} is VALID [2018-11-23 12:50:27,673 INFO L273 TraceCheckUtils]: 98: Hoare triple {119084#(= |ssl3_accept_#t~mem27| 8672)} assume 24576 == #t~mem27;havoc #t~mem27; {119082#false} is VALID [2018-11-23 12:50:27,673 INFO L273 TraceCheckUtils]: 99: Hoare triple {119082#false} call write~int(1, ~s.base, 36 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,673 INFO L273 TraceCheckUtils]: 100: Hoare triple {119082#false} assume 0 != (~cb~0.base + ~cb~0.offset) % 4294967296; {119082#false} is VALID [2018-11-23 12:50:27,673 INFO L273 TraceCheckUtils]: 101: Hoare triple {119082#false} call #t~mem59 := read~int(~s.base, ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,673 INFO L273 TraceCheckUtils]: 102: Hoare triple {119082#false} assume !(3 != #t~mem59 / 256);havoc #t~mem59;call write~int(8192, ~s.base, 4 + ~s.offset, 4);call #t~mem60.base, #t~mem60.offset := read~$Pointer$(~s.base, 60 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 103: Hoare triple {119082#false} assume !(0 == (#t~mem60.base + #t~mem60.offset) % 4294967296);havoc #t~mem60.base, #t~mem60.offset; {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 104: Hoare triple {119082#false} assume !(0 == ~tmp___4~0);call write~int(0, ~s.base, 64 + ~s.offset, 4);call #t~mem62 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 105: Hoare triple {119082#false} assume 12292 != #t~mem62;havoc #t~mem62; {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 106: Hoare triple {119082#false} assume !(0 == ~tmp___5~0);call write~int(8464, ~s.base, 52 + ~s.offset, 4);call #t~mem63.base, #t~mem63.offset := read~$Pointer$(~s.base, 204 + ~s.offset, 4);call #t~mem64 := read~int(#t~mem63.base, 72 + #t~mem63.offset, 4);call write~int(1 + #t~mem64, #t~mem63.base, 72 + #t~mem63.offset, 4);havoc #t~mem63.base, #t~mem63.offset;havoc #t~mem64; {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 107: Hoare triple {119082#false} call #t~mem127.base, #t~mem127.offset := read~$Pointer$(~s.base, 84 + ~s.offset, 4);call #t~mem128 := read~int(#t~mem127.base, 848 + #t~mem127.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 108: Hoare triple {119082#false} assume !(0 == #t~mem128);havoc #t~mem127.base, #t~mem127.offset;havoc #t~mem128; {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 109: Hoare triple {119082#false} ~skip~0 := 0; {119082#false} is VALID [2018-11-23 12:50:27,674 INFO L273 TraceCheckUtils]: 110: Hoare triple {119082#false} assume !false; {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 111: Hoare triple {119082#false} call #t~mem23 := read~int(~s.base, 52 + ~s.offset, 4);~state~0 := #t~mem23;havoc #t~mem23;call #t~mem24 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 112: Hoare triple {119082#false} assume !(12292 == #t~mem24);havoc #t~mem24;call #t~mem25 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 113: Hoare triple {119082#false} assume !(16384 == #t~mem25);havoc #t~mem25;call #t~mem26 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 114: Hoare triple {119082#false} assume !(8192 == #t~mem26);havoc #t~mem26;call #t~mem27 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 115: Hoare triple {119082#false} assume !(24576 == #t~mem27);havoc #t~mem27;call #t~mem28 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 116: Hoare triple {119082#false} assume !(8195 == #t~mem28);havoc #t~mem28;call #t~mem29 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 117: Hoare triple {119082#false} assume !(8480 == #t~mem29);havoc #t~mem29;call #t~mem30 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 118: Hoare triple {119082#false} assume !(8481 == #t~mem30);havoc #t~mem30;call #t~mem31 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 119: Hoare triple {119082#false} assume !(8482 == #t~mem31);havoc #t~mem31;call #t~mem32 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,675 INFO L273 TraceCheckUtils]: 120: Hoare triple {119082#false} assume !(8464 == #t~mem32);havoc #t~mem32;call #t~mem33 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,676 INFO L273 TraceCheckUtils]: 121: Hoare triple {119082#false} assume !(8465 == #t~mem33);havoc #t~mem33;call #t~mem34 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 122: Hoare triple {119082#false} assume !(8466 == #t~mem34);havoc #t~mem34;call #t~mem35 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 123: Hoare triple {119082#false} assume !(8496 == #t~mem35);havoc #t~mem35;call #t~mem36 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 124: Hoare triple {119082#false} assume !(8497 == #t~mem36);havoc #t~mem36;call #t~mem37 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 125: Hoare triple {119082#false} assume !(8512 == #t~mem37);havoc #t~mem37;call #t~mem38 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 126: Hoare triple {119082#false} assume !(8513 == #t~mem38);havoc #t~mem38;call #t~mem39 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 127: Hoare triple {119082#false} assume !(8528 == #t~mem39);havoc #t~mem39;call #t~mem40 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 128: Hoare triple {119082#false} assume !(8529 == #t~mem40);havoc #t~mem40;call #t~mem41 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 129: Hoare triple {119082#false} assume !(8544 == #t~mem41);havoc #t~mem41;call #t~mem42 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 130: Hoare triple {119082#false} assume !(8545 == #t~mem42);havoc #t~mem42;call #t~mem43 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,677 INFO L273 TraceCheckUtils]: 131: Hoare triple {119082#false} assume !(8560 == #t~mem43);havoc #t~mem43;call #t~mem44 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 132: Hoare triple {119082#false} assume !(8561 == #t~mem44);havoc #t~mem44;call #t~mem45 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 133: Hoare triple {119082#false} assume !(8448 == #t~mem45);havoc #t~mem45;call #t~mem46 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 134: Hoare triple {119082#false} assume !(8576 == #t~mem46);havoc #t~mem46;call #t~mem47 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 135: Hoare triple {119082#false} assume !(8577 == #t~mem47);havoc #t~mem47;call #t~mem48 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 136: Hoare triple {119082#false} assume !(8592 == #t~mem48);havoc #t~mem48;call #t~mem49 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 137: Hoare triple {119082#false} assume !(8593 == #t~mem49);havoc #t~mem49;call #t~mem50 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 138: Hoare triple {119082#false} assume !(8608 == #t~mem50);havoc #t~mem50;call #t~mem51 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 139: Hoare triple {119082#false} assume !(8609 == #t~mem51);havoc #t~mem51;call #t~mem52 := read~int(~s.base, 52 + ~s.offset, 4); {119082#false} is VALID [2018-11-23 12:50:27,678 INFO L273 TraceCheckUtils]: 140: Hoare triple {119082#false} assume 8640 == #t~mem52;havoc #t~mem52; {119082#false} is VALID [2018-11-23 12:50:27,679 INFO L273 TraceCheckUtils]: 141: Hoare triple {119082#false} assume -2147483648 <= #t~nondet115 && #t~nondet115 <= 2147483647;~ret~0 := #t~nondet115;havoc #t~nondet115; {119082#false} is VALID [2018-11-23 12:50:27,679 INFO L273 TraceCheckUtils]: 142: Hoare triple {119082#false} assume 4 == ~blastFlag~0; {119082#false} is VALID [2018-11-23 12:50:27,679 INFO L273 TraceCheckUtils]: 143: Hoare triple {119082#false} assume !false; {119082#false} is VALID [2018-11-23 12:50:27,687 INFO L134 CoverageAnalysis]: Checked inductivity of 134 backedges. 95 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2018-11-23 12:50:27,688 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-23 12:50:27,688 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-23 12:50:27,688 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 144 [2018-11-23 12:50:27,688 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-23 12:50:27,688 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-23 12:50:27,798 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 118 edges. 118 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:50:27,798 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-23 12:50:27,798 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-23 12:50:27,799 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-23 12:50:27,799 INFO L87 Difference]: Start difference. First operand 1337 states and 1982 transitions. Second operand 4 states. [2018-11-23 12:50:33,910 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-23 12:50:33,910 INFO L93 Difference]: Finished difference Result 2979 states and 4396 transitions. [2018-11-23 12:50:33,910 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-23 12:50:33,910 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 144 [2018-11-23 12:50:33,911 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-23 12:50:33,911 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:50:33,913 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 552 transitions. [2018-11-23 12:50:33,913 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-23 12:50:33,916 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 552 transitions. [2018-11-23 12:50:33,916 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 552 transitions. [2018-11-23 12:50:34,505 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 552 edges. 552 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-23 12:50:34,621 INFO L225 Difference]: With dead ends: 2979 [2018-11-23 12:50:34,621 INFO L226 Difference]: Without dead ends: 1667 [2018-11-23 12:50:34,623 INFO L631 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2018-11-23 12:50:34,625 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1667 states.