./Ultimate.py --spec ../sv-benchmarks/c/properties/valid-memsafety.prp --file ../sv-benchmarks/c/array-memsafety/lis_unsafe.i --full-output --cacsl2boogietranslator.adapt.memory.model.on.pointer.casts.if.necessary true --architecture 32bit -------------------------------------------------------------------------------- Checking for memory safety (deref-memtrack) Using default analysis Version 264dba86 Using bit-precise analysis Retrying with bit-precise analysis Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx12G -Xms1G -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerMemDerefMemtrack.xml -i ../sv-benchmarks/c/array-memsafety/lis_unsafe.i -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-DerefFreeMemtrack-32bit-Automizer_Bitvector.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 22d1ff4f4fd6702e3a4a8affc05625a9c9bb8113 --cacsl2boogietranslator.adapt.memory.model.on.pointer.casts.if.necessary true ........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................ Execution finished normally Writing output log to file Ultimate.log Writing human readable error path to file UltimateCounterExample.errorpath Result: FALSE(valid-deref) --- Real Ultimate output --- Skipped default analysis because property is memsafety ### Bit-precise run ### This is Ultimate 0.1.24-264dba8 [2019-11-21 13:02:21,465 INFO L177 SettingsManager]: Resetting all preferences to default values... [2019-11-21 13:02:21,467 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2019-11-21 13:02:21,481 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-11-21 13:02:21,481 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-11-21 13:02:21,482 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-11-21 13:02:21,484 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-11-21 13:02:21,486 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2019-11-21 13:02:21,488 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-11-21 13:02:21,489 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-11-21 13:02:21,491 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2019-11-21 13:02:21,492 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-11-21 13:02:21,492 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-11-21 13:02:21,494 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-11-21 13:02:21,495 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-11-21 13:02:21,496 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-11-21 13:02:21,497 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-11-21 13:02:21,498 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-11-21 13:02:21,500 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-11-21 13:02:21,502 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2019-11-21 13:02:21,505 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-11-21 13:02:21,510 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-11-21 13:02:21,511 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2019-11-21 13:02:21,514 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-11-21 13:02:21,518 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-11-21 13:02:21,520 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-11-21 13:02:21,521 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-11-21 13:02:21,522 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2019-11-21 13:02:21,523 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-11-21 13:02:21,524 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2019-11-21 13:02:21,525 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-11-21 13:02:21,526 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2019-11-21 13:02:21,527 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-11-21 13:02:21,529 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2019-11-21 13:02:21,532 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-11-21 13:02:21,533 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2019-11-21 13:02:21,535 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-11-21 13:02:21,535 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-11-21 13:02:21,535 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2019-11-21 13:02:21,538 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2019-11-21 13:02:21,540 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2019-11-21 13:02:21,541 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-DerefFreeMemtrack-32bit-Automizer_Bitvector.epf [2019-11-21 13:02:21,565 INFO L113 SettingsManager]: Loading preferences was successful [2019-11-21 13:02:21,565 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2019-11-21 13:02:21,567 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-11-21 13:02:21,568 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2019-11-21 13:02:21,568 INFO L138 SettingsManager]: * Use SBE=true [2019-11-21 13:02:21,568 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-11-21 13:02:21,569 INFO L138 SettingsManager]: * sizeof long=4 [2019-11-21 13:02:21,569 INFO L138 SettingsManager]: * Check unreachability of error function in SV-COMP mode=false [2019-11-21 13:02:21,569 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2019-11-21 13:02:21,569 INFO L138 SettingsManager]: * sizeof POINTER=4 [2019-11-21 13:02:21,570 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2019-11-21 13:02:21,570 INFO L138 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2019-11-21 13:02:21,570 INFO L138 SettingsManager]: * Bitprecise bitfields=true [2019-11-21 13:02:21,570 INFO L138 SettingsManager]: * SV-COMP memtrack compatibility mode=true [2019-11-21 13:02:21,571 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-11-21 13:02:21,571 INFO L138 SettingsManager]: * Use bitvectors instead of ints=true [2019-11-21 13:02:21,571 INFO L138 SettingsManager]: * Memory model=HoenickeLindenmann_4ByteResolution [2019-11-21 13:02:21,571 INFO L138 SettingsManager]: * sizeof long double=12 [2019-11-21 13:02:21,571 INFO L138 SettingsManager]: * Use constant arrays=true [2019-11-21 13:02:21,571 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-11-21 13:02:21,572 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-11-21 13:02:21,572 INFO L138 SettingsManager]: * To the following directory=./dump/ [2019-11-21 13:02:21,572 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2019-11-21 13:02:21,572 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-21 13:02:21,573 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-11-21 13:02:21,573 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-11-21 13:02:21,573 INFO L138 SettingsManager]: * Trace refinement strategy=WOLF [2019-11-21 13:02:21,573 INFO L138 SettingsManager]: * Command for external solver=cvc4 --incremental --rewrite-divk --print-success --lang smt [2019-11-21 13:02:21,573 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2019-11-21 13:02:21,574 INFO L138 SettingsManager]: * Logic for external solver=AUFBV Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 22d1ff4f4fd6702e3a4a8affc05625a9c9bb8113 Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Adapt memory model on pointer casts if necessary -> true [2019-11-21 13:02:21,912 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-11-21 13:02:21,925 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-11-21 13:02:21,929 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-11-21 13:02:21,930 INFO L271 PluginConnector]: Initializing CDTParser... [2019-11-21 13:02:21,931 INFO L275 PluginConnector]: CDTParser initialized [2019-11-21 13:02:21,932 INFO L428 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/array-memsafety/lis_unsafe.i [2019-11-21 13:02:21,995 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/e88910f18/60f0e14922d2492f9344be0dd96f3540/FLAGa523f23c0 [2019-11-21 13:02:22,478 INFO L306 CDTParser]: Found 1 translation units. [2019-11-21 13:02:22,479 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/array-memsafety/lis_unsafe.i [2019-11-21 13:02:22,495 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/e88910f18/60f0e14922d2492f9344be0dd96f3540/FLAGa523f23c0 [2019-11-21 13:02:22,831 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/e88910f18/60f0e14922d2492f9344be0dd96f3540 [2019-11-21 13:02:22,834 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-11-21 13:02:22,836 INFO L131 ToolchainWalker]: Walking toolchain with 5 elements. [2019-11-21 13:02:22,837 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2019-11-21 13:02:22,837 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2019-11-21 13:02:22,840 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2019-11-21 13:02:22,841 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 01:02:22" (1/1) ... [2019-11-21 13:02:22,844 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2cdc8ff3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:22, skipping insertion in model container [2019-11-21 13:02:22,845 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 01:02:22" (1/1) ... [2019-11-21 13:02:22,852 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2019-11-21 13:02:22,901 INFO L179 MainTranslator]: Built tables and reachable declarations [2019-11-21 13:02:23,291 INFO L966 CHandler]: Found a cast between two array/pointer types where the value type is smaller than the cast-to type, and where that value type is smaller than our current memory model resolution [2019-11-21 13:02:23,292 INFO L969 CHandler]: at location: C: (int*) malloc(sizeof(int) * N) [515] [2019-11-21 13:02:23,292 INFO L970 CHandler]: current memory model: HoenickeLindenmann_4ByteResolution [2019-11-21 13:02:23,294 INFO L966 CHandler]: Found a cast between two array/pointer types where the value type is smaller than the cast-to type, and where that value type is smaller than our current memory model resolution [2019-11-21 13:02:23,294 INFO L969 CHandler]: at location: C: (int*) malloc(sizeof(int) * N) [516] [2019-11-21 13:02:23,295 INFO L970 CHandler]: current memory model: HoenickeLindenmann_4ByteResolution [2019-11-21 13:02:23,327 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-21 13:02:23,343 INFO L198 MainTranslator]: Restarting translation with changed settings: SettingsChange [mNewPreferredMemoryModel=HoenickeLindenmann_1ByteResolution] [2019-11-21 13:02:23,360 INFO L179 MainTranslator]: Built tables and reachable declarations [2019-11-21 13:02:23,438 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-21 13:02:23,457 INFO L201 MainTranslator]: Completed pre-run [2019-11-21 13:02:23,509 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-21 13:02:23,579 INFO L205 MainTranslator]: Completed translation [2019-11-21 13:02:23,580 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23 WrapperNode [2019-11-21 13:02:23,581 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2019-11-21 13:02:23,582 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-11-21 13:02:23,582 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-11-21 13:02:23,582 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2019-11-21 13:02:23,596 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,596 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,621 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,621 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,642 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,648 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,652 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... [2019-11-21 13:02:23,660 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-11-21 13:02:23,660 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-11-21 13:02:23,661 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-11-21 13:02:23,661 INFO L275 PluginConnector]: RCFGBuilder initialized [2019-11-21 13:02:23,662 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure __bswap_32 [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure __bswap_64 [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure __uint16_identity [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure __uint32_identity [2019-11-21 13:02:23,735 INFO L138 BoogieDeclarations]: Found implementation of procedure __uint64_identity [2019-11-21 13:02:23,736 INFO L138 BoogieDeclarations]: Found implementation of procedure lis [2019-11-21 13:02:23,736 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2019-11-21 13:02:23,736 INFO L130 BoogieDeclarations]: Found specification of procedure __ctype_get_mb_cur_max [2019-11-21 13:02:23,736 INFO L130 BoogieDeclarations]: Found specification of procedure atof [2019-11-21 13:02:23,736 INFO L130 BoogieDeclarations]: Found specification of procedure atoi [2019-11-21 13:02:23,736 INFO L130 BoogieDeclarations]: Found specification of procedure atol [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure atoll [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure strtod [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure strtof [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure strtold [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure strtol [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure strtoul [2019-11-21 13:02:23,737 INFO L130 BoogieDeclarations]: Found specification of procedure strtoq [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure strtouq [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure strtoll [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure strtoull [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure l64a [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure a64l [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure __bswap_32 [2019-11-21 13:02:23,738 INFO L130 BoogieDeclarations]: Found specification of procedure __bswap_64 [2019-11-21 13:02:23,739 INFO L130 BoogieDeclarations]: Found specification of procedure __uint16_identity [2019-11-21 13:02:23,739 INFO L130 BoogieDeclarations]: Found specification of procedure __uint32_identity [2019-11-21 13:02:23,739 INFO L130 BoogieDeclarations]: Found specification of procedure __uint64_identity [2019-11-21 13:02:23,739 INFO L130 BoogieDeclarations]: Found specification of procedure select [2019-11-21 13:02:23,739 INFO L130 BoogieDeclarations]: Found specification of procedure pselect [2019-11-21 13:02:23,739 INFO L130 BoogieDeclarations]: Found specification of procedure gnu_dev_major [2019-11-21 13:02:23,740 INFO L130 BoogieDeclarations]: Found specification of procedure gnu_dev_minor [2019-11-21 13:02:23,740 INFO L130 BoogieDeclarations]: Found specification of procedure gnu_dev_makedev [2019-11-21 13:02:23,740 INFO L130 BoogieDeclarations]: Found specification of procedure random [2019-11-21 13:02:23,740 INFO L130 BoogieDeclarations]: Found specification of procedure srandom [2019-11-21 13:02:23,740 INFO L130 BoogieDeclarations]: Found specification of procedure initstate [2019-11-21 13:02:23,741 INFO L130 BoogieDeclarations]: Found specification of procedure setstate [2019-11-21 13:02:23,741 INFO L130 BoogieDeclarations]: Found specification of procedure random_r [2019-11-21 13:02:23,741 INFO L130 BoogieDeclarations]: Found specification of procedure srandom_r [2019-11-21 13:02:23,741 INFO L130 BoogieDeclarations]: Found specification of procedure initstate_r [2019-11-21 13:02:23,741 INFO L130 BoogieDeclarations]: Found specification of procedure setstate_r [2019-11-21 13:02:23,741 INFO L130 BoogieDeclarations]: Found specification of procedure rand [2019-11-21 13:02:23,742 INFO L130 BoogieDeclarations]: Found specification of procedure srand [2019-11-21 13:02:23,742 INFO L130 BoogieDeclarations]: Found specification of procedure rand_r [2019-11-21 13:02:23,742 INFO L130 BoogieDeclarations]: Found specification of procedure drand48 [2019-11-21 13:02:23,742 INFO L130 BoogieDeclarations]: Found specification of procedure erand48 [2019-11-21 13:02:23,742 INFO L130 BoogieDeclarations]: Found specification of procedure lrand48 [2019-11-21 13:02:23,742 INFO L130 BoogieDeclarations]: Found specification of procedure nrand48 [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure mrand48 [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure jrand48 [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure srand48 [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure seed48 [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure lcong48 [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure drand48_r [2019-11-21 13:02:23,743 INFO L130 BoogieDeclarations]: Found specification of procedure erand48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure lrand48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure nrand48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure mrand48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure jrand48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure srand48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure seed48_r [2019-11-21 13:02:23,744 INFO L130 BoogieDeclarations]: Found specification of procedure lcong48_r [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure malloc [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure calloc [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure realloc [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure free [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure alloca [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure valloc [2019-11-21 13:02:23,745 INFO L130 BoogieDeclarations]: Found specification of procedure posix_memalign [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure aligned_alloc [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure abort [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure atexit [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure at_quick_exit [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure on_exit [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure exit [2019-11-21 13:02:23,746 INFO L130 BoogieDeclarations]: Found specification of procedure quick_exit [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure _Exit [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure getenv [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure putenv [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure setenv [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure unsetenv [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure clearenv [2019-11-21 13:02:23,747 INFO L130 BoogieDeclarations]: Found specification of procedure mktemp [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure mkstemp [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure mkstemps [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure mkdtemp [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure system [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure realpath [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure bsearch [2019-11-21 13:02:23,748 INFO L130 BoogieDeclarations]: Found specification of procedure qsort [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure abs [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure labs [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure llabs [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure div [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure ldiv [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure lldiv [2019-11-21 13:02:23,749 INFO L130 BoogieDeclarations]: Found specification of procedure ecvt [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure fcvt [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure gcvt [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure qecvt [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure qfcvt [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure qgcvt [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure ecvt_r [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure fcvt_r [2019-11-21 13:02:23,750 INFO L130 BoogieDeclarations]: Found specification of procedure qecvt_r [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure qfcvt_r [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure mblen [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure mbtowc [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure wctomb [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure mbstowcs [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure wcstombs [2019-11-21 13:02:23,751 INFO L130 BoogieDeclarations]: Found specification of procedure rpmatch [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure getsubopt [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure getloadavg [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_int [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure lis [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnHeap [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure write~intINTTYPE4 [2019-11-21 13:02:23,752 INFO L130 BoogieDeclarations]: Found specification of procedure read~intINTTYPE4 [2019-11-21 13:02:23,753 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2019-11-21 13:02:23,753 INFO L130 BoogieDeclarations]: Found specification of procedure main [2019-11-21 13:02:23,753 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2019-11-21 13:02:23,753 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2019-11-21 13:02:24,673 INFO L279 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2019-11-21 13:02:24,674 INFO L284 CfgBuilder]: Removed 4 assume(true) statements. [2019-11-21 13:02:24,675 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 01:02:24 BoogieIcfgContainer [2019-11-21 13:02:24,676 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-11-21 13:02:24,677 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2019-11-21 13:02:24,677 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2019-11-21 13:02:24,680 INFO L275 PluginConnector]: TraceAbstraction initialized [2019-11-21 13:02:24,681 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.11 01:02:22" (1/3) ... [2019-11-21 13:02:24,681 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@45c8d940 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 01:02:24, skipping insertion in model container [2019-11-21 13:02:24,682 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 01:02:23" (2/3) ... [2019-11-21 13:02:24,682 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@45c8d940 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 01:02:24, skipping insertion in model container [2019-11-21 13:02:24,682 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 01:02:24" (3/3) ... [2019-11-21 13:02:24,684 INFO L109 eAbstractionObserver]: Analyzing ICFG lis_unsafe.i [2019-11-21 13:02:24,694 INFO L153 ceAbstractionStarter]: Automizer settings: Hoare:false NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2019-11-21 13:02:24,703 INFO L165 ceAbstractionStarter]: Appying trace abstraction to program that has 29 error locations. [2019-11-21 13:02:24,715 INFO L249 AbstractCegarLoop]: Starting to check reachability of 29 error locations. [2019-11-21 13:02:24,737 INFO L373 AbstractCegarLoop]: Interprodecural is true [2019-11-21 13:02:24,738 INFO L374 AbstractCegarLoop]: Hoare is false [2019-11-21 13:02:24,738 INFO L375 AbstractCegarLoop]: Compute interpolants for FPandBP [2019-11-21 13:02:24,738 INFO L376 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2019-11-21 13:02:24,738 INFO L377 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2019-11-21 13:02:24,738 INFO L378 AbstractCegarLoop]: Difference is false [2019-11-21 13:02:24,739 INFO L379 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2019-11-21 13:02:24,739 INFO L383 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2019-11-21 13:02:24,754 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states. [2019-11-21 13:02:24,763 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2019-11-21 13:02:24,763 INFO L402 BasicCegarLoop]: Found error trace [2019-11-21 13:02:24,764 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-21 13:02:24,765 INFO L410 AbstractCegarLoop]: === Iteration 1 === [lisErr12REQUIRES_VIOLATION, lisErr11REQUIRES_VIOLATION, lisErr10REQUIRES_VIOLATION, lisErr23ASSERT_VIOLATIONMEMORY_FREE, lisErr9REQUIRES_VIOLATION, lisErr8REQUIRES_VIOLATION, lisErr26ASSERT_VIOLATIONMEMORY_FREE, lisErr17REQUIRES_VIOLATION, lisErr25ASSERT_VIOLATIONMEMORY_FREE, lisErr16REQUIRES_VIOLATION, lisErr15REQUIRES_VIOLATION, lisErr14REQUIRES_VIOLATION, lisErr13REQUIRES_VIOLATION, lisErr1REQUIRES_VIOLATION, lisErr0REQUIRES_VIOLATION, lisErr21REQUIRES_VIOLATION, lisErr22ASSERT_VIOLATIONMEMORY_FREE, lisErr27ASSERT_VIOLATIONMEMORY_FREE, lisErr20REQUIRES_VIOLATION, lisErr24ASSERT_VIOLATIONMEMORY_FREE, lisErr19REQUIRES_VIOLATION, lisErr18REQUIRES_VIOLATION, lisErr7REQUIRES_VIOLATION, lisErr6REQUIRES_VIOLATION, lisErr5REQUIRES_VIOLATION, lisErr4REQUIRES_VIOLATION, lisErr3REQUIRES_VIOLATION, lisErr2REQUIRES_VIOLATION, mainErr0ENSURES_VIOLATIONMEMORY_LEAK]=== [2019-11-21 13:02:24,771 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-21 13:02:24,772 INFO L82 PathProgramCache]: Analyzing trace with hash 1727722235, now seen corresponding path program 1 times [2019-11-21 13:02:24,784 INFO L163 FreeRefinementEngine]: Executing refinement strategy WOLF [2019-11-21 13:02:24,784 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleCvc4 [778884388] [2019-11-21 13:02:24,785 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/cvc4 Starting monitored process 2 with cvc4 --incremental --print-success --lang smt --rewrite-divk (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 2 with cvc4 --incremental --print-success --lang smt --rewrite-divk [2019-11-21 13:02:25,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-21 13:02:25,047 INFO L255 TraceCheckSpWp]: Trace formula consists of 55 conjuncts, 3 conjunts are in the unsatisfiable core [2019-11-21 13:02:25,054 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2019-11-21 13:02:25,151 INFO L343 Elim1Store]: treesize reduction 15, result has 25.0 percent of original size [2019-11-21 13:02:25,152 INFO L377 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 11 [2019-11-21 13:02:25,153 INFO L496 ElimStorePlain]: Start of recursive call 2: End of recursive call: and 1 xjuncts. [2019-11-21 13:02:25,165 INFO L567 ElimStorePlain]: treesize reduction 0, result has 100.0 percent of original size [2019-11-21 13:02:25,167 INFO L496 ElimStorePlain]: Start of recursive call 1: 1 dim-0 vars, 1 dim-1 vars, End of recursive call: 1 dim-0 vars, and 1 xjuncts. [2019-11-21 13:02:25,167 INFO L221 ElimStorePlain]: Needed 2 recursive calls to eliminate 2 variables, input treesize:9, output treesize:11 [2019-11-21 13:02:25,191 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-21 13:02:25,192 INFO L320 TraceCheckSpWp]: Computing backward predicates... [2019-11-21 13:02:25,210 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-21 13:02:25,211 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleCvc4 [778884388] [2019-11-21 13:02:25,212 INFO L220 FreeRefinementEngine]: Constructing automaton from 2 perfect and 0 imperfect interpolant sequences. [2019-11-21 13:02:25,213 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2, 2] imperfect sequences [] total 2 [2019-11-21 13:02:25,214 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1547022966] [2019-11-21 13:02:25,219 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-21 13:02:25,219 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy WOLF [2019-11-21 13:02:25,235 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-21 13:02:25,236 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-21 13:02:25,238 INFO L87 Difference]: Start difference. First operand 79 states. Second operand 3 states. [2019-11-21 13:02:25,482 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-21 13:02:25,482 INFO L93 Difference]: Finished difference Result 71 states and 78 transitions. [2019-11-21 13:02:25,483 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-21 13:02:25,485 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 11 [2019-11-21 13:02:25,485 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-21 13:02:25,497 INFO L225 Difference]: With dead ends: 71 [2019-11-21 13:02:25,497 INFO L226 Difference]: Without dead ends: 68 [2019-11-21 13:02:25,500 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 20 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-21 13:02:25,522 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2019-11-21 13:02:25,555 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2019-11-21 13:02:25,556 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 68 states. [2019-11-21 13:02:25,562 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 75 transitions. [2019-11-21 13:02:25,564 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 75 transitions. Word has length 11 [2019-11-21 13:02:25,565 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-21 13:02:25,565 INFO L462 AbstractCegarLoop]: Abstraction has 68 states and 75 transitions. [2019-11-21 13:02:25,565 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-21 13:02:25,565 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 75 transitions. [2019-11-21 13:02:25,566 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2019-11-21 13:02:25,566 INFO L402 BasicCegarLoop]: Found error trace [2019-11-21 13:02:25,567 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-21 13:02:25,771 WARN L499 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 cvc4 --incremental --print-success --lang smt --rewrite-divk [2019-11-21 13:02:25,771 INFO L410 AbstractCegarLoop]: === Iteration 2 === [lisErr12REQUIRES_VIOLATION, lisErr11REQUIRES_VIOLATION, lisErr10REQUIRES_VIOLATION, lisErr23ASSERT_VIOLATIONMEMORY_FREE, lisErr9REQUIRES_VIOLATION, lisErr8REQUIRES_VIOLATION, lisErr26ASSERT_VIOLATIONMEMORY_FREE, lisErr17REQUIRES_VIOLATION, lisErr25ASSERT_VIOLATIONMEMORY_FREE, lisErr16REQUIRES_VIOLATION, lisErr15REQUIRES_VIOLATION, lisErr14REQUIRES_VIOLATION, lisErr13REQUIRES_VIOLATION, lisErr1REQUIRES_VIOLATION, lisErr0REQUIRES_VIOLATION, lisErr21REQUIRES_VIOLATION, lisErr22ASSERT_VIOLATIONMEMORY_FREE, lisErr27ASSERT_VIOLATIONMEMORY_FREE, lisErr20REQUIRES_VIOLATION, lisErr24ASSERT_VIOLATIONMEMORY_FREE, lisErr19REQUIRES_VIOLATION, lisErr18REQUIRES_VIOLATION, lisErr7REQUIRES_VIOLATION, lisErr6REQUIRES_VIOLATION, lisErr5REQUIRES_VIOLATION, lisErr4REQUIRES_VIOLATION, lisErr3REQUIRES_VIOLATION, lisErr2REQUIRES_VIOLATION, mainErr0ENSURES_VIOLATIONMEMORY_LEAK]=== [2019-11-21 13:02:25,771 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-21 13:02:25,772 INFO L82 PathProgramCache]: Analyzing trace with hash 1727722236, now seen corresponding path program 1 times [2019-11-21 13:02:25,772 INFO L163 FreeRefinementEngine]: Executing refinement strategy WOLF [2019-11-21 13:02:25,773 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleCvc4 [2073509748] [2019-11-21 13:02:25,773 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/cvc4 Starting monitored process 3 with cvc4 --incremental --print-success --lang smt --rewrite-divk (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 3 with cvc4 --incremental --print-success --lang smt --rewrite-divk [2019-11-21 13:02:25,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-21 13:02:25,994 INFO L255 TraceCheckSpWp]: Trace formula consists of 55 conjuncts, 10 conjunts are in the unsatisfiable core [2019-11-21 13:02:25,996 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2019-11-21 13:02:26,053 INFO L392 ElimStorePlain]: Different costs {0=[|v_#length_31|], 1=[|v_#valid_47|]} [2019-11-21 13:02:26,061 INFO L189 IndexEqualityManager]: detected not equals via solver [2019-11-21 13:02:26,064 INFO L377 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 11 [2019-11-21 13:02:26,064 INFO L496 ElimStorePlain]: Start of recursive call 2: End of recursive call: and 1 xjuncts. [2019-11-21 13:02:26,089 INFO L567 ElimStorePlain]: treesize reduction 0, result has 100.0 percent of original size [2019-11-21 13:02:26,103 INFO L377 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2019-11-21 13:02:26,104 INFO L496 ElimStorePlain]: Start of recursive call 3: End of recursive call: and 1 xjuncts. [2019-11-21 13:02:26,123 INFO L567 ElimStorePlain]: treesize reduction 0, result has 100.0 percent of original size [2019-11-21 13:02:26,124 INFO L496 ElimStorePlain]: Start of recursive call 1: 1 dim-0 vars, 2 dim-1 vars, End of recursive call: 1 dim-0 vars, and 1 xjuncts. [2019-11-21 13:02:26,125 INFO L221 ElimStorePlain]: Needed 3 recursive calls to eliminate 3 variables, input treesize:24, output treesize:21 [2019-11-21 13:02:26,159 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-21 13:02:26,160 INFO L320 TraceCheckSpWp]: Computing backward predicates... [2019-11-21 13:02:26,273 INFO L392 ElimStorePlain]: Different costs {1=[|#valid|], 2=[|#length|]} [2019-11-21 13:02:26,288 INFO L377 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2019-11-21 13:02:26,289 INFO L496 ElimStorePlain]: Start of recursive call 2: End of recursive call: and 1 xjuncts. [2019-11-21 13:02:26,301 INFO L567 ElimStorePlain]: treesize reduction 0, result has 100.0 percent of original size [2019-11-21 13:02:26,303 INFO L172 IndexEqualityManager]: detected equality via solver [2019-11-21 13:02:26,304 INFO L496 ElimStorePlain]: Start of recursive call 3: End of recursive call: and 1 xjuncts. [2019-11-21 13:02:26,313 INFO L567 ElimStorePlain]: treesize reduction 0, result has 100.0 percent of original size [2019-11-21 13:02:26,314 INFO L496 ElimStorePlain]: Start of recursive call 1: 2 dim-0 vars, 2 dim-1 vars, End of recursive call: and 1 xjuncts. [2019-11-21 13:02:26,314 INFO L221 ElimStorePlain]: Needed 3 recursive calls to eliminate 4 variables, input treesize:25, output treesize:5 [2019-11-21 13:02:26,371 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-21 13:02:26,371 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleCvc4 [2073509748] [2019-11-21 13:02:26,371 INFO L220 FreeRefinementEngine]: Constructing automaton from 2 perfect and 0 imperfect interpolant sequences. [2019-11-21 13:02:26,372 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4, 4] imperfect sequences [] total 7 [2019-11-21 13:02:26,372 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [878989457] [2019-11-21 13:02:26,374 INFO L442 AbstractCegarLoop]: Interpolant automaton has 8 states [2019-11-21 13:02:26,375 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy WOLF [2019-11-21 13:02:26,375 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2019-11-21 13:02:26,376 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2019-11-21 13:02:26,376 INFO L87 Difference]: Start difference. First operand 68 states and 75 transitions. Second operand 8 states. [2019-11-21 13:02:27,655 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-21 13:02:27,655 INFO L93 Difference]: Finished difference Result 166 states and 186 transitions. [2019-11-21 13:02:27,659 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2019-11-21 13:02:27,659 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 11 [2019-11-21 13:02:27,660 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-21 13:02:27,665 INFO L225 Difference]: With dead ends: 166 [2019-11-21 13:02:27,665 INFO L226 Difference]: Without dead ends: 166 [2019-11-21 13:02:27,666 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 15 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=28, Invalid=62, Unknown=0, NotChecked=0, Total=90 [2019-11-21 13:02:27,667 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 166 states. [2019-11-21 13:02:27,683 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 166 to 127. [2019-11-21 13:02:27,683 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 127 states. [2019-11-21 13:02:27,686 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 127 states to 127 states and 177 transitions. [2019-11-21 13:02:27,687 INFO L78 Accepts]: Start accepts. Automaton has 127 states and 177 transitions. Word has length 11 [2019-11-21 13:02:27,687 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-21 13:02:27,687 INFO L462 AbstractCegarLoop]: Abstraction has 127 states and 177 transitions. [2019-11-21 13:02:27,687 INFO L463 AbstractCegarLoop]: Interpolant automaton has 8 states. [2019-11-21 13:02:27,687 INFO L276 IsEmpty]: Start isEmpty. Operand 127 states and 177 transitions. [2019-11-21 13:02:27,688 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2019-11-21 13:02:27,688 INFO L402 BasicCegarLoop]: Found error trace [2019-11-21 13:02:27,688 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-21 13:02:27,891 WARN L499 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 cvc4 --incremental --print-success --lang smt --rewrite-divk [2019-11-21 13:02:27,892 INFO L410 AbstractCegarLoop]: === Iteration 3 === [lisErr12REQUIRES_VIOLATION, lisErr11REQUIRES_VIOLATION, lisErr10REQUIRES_VIOLATION, lisErr23ASSERT_VIOLATIONMEMORY_FREE, lisErr9REQUIRES_VIOLATION, lisErr8REQUIRES_VIOLATION, lisErr26ASSERT_VIOLATIONMEMORY_FREE, lisErr17REQUIRES_VIOLATION, lisErr25ASSERT_VIOLATIONMEMORY_FREE, lisErr16REQUIRES_VIOLATION, lisErr15REQUIRES_VIOLATION, lisErr14REQUIRES_VIOLATION, lisErr13REQUIRES_VIOLATION, lisErr1REQUIRES_VIOLATION, lisErr0REQUIRES_VIOLATION, lisErr21REQUIRES_VIOLATION, lisErr22ASSERT_VIOLATIONMEMORY_FREE, lisErr27ASSERT_VIOLATIONMEMORY_FREE, lisErr20REQUIRES_VIOLATION, lisErr24ASSERT_VIOLATIONMEMORY_FREE, lisErr19REQUIRES_VIOLATION, lisErr18REQUIRES_VIOLATION, lisErr7REQUIRES_VIOLATION, lisErr6REQUIRES_VIOLATION, lisErr5REQUIRES_VIOLATION, lisErr4REQUIRES_VIOLATION, lisErr3REQUIRES_VIOLATION, lisErr2REQUIRES_VIOLATION, mainErr0ENSURES_VIOLATIONMEMORY_LEAK]=== [2019-11-21 13:02:27,893 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-21 13:02:27,894 INFO L82 PathProgramCache]: Analyzing trace with hash 1729569278, now seen corresponding path program 1 times [2019-11-21 13:02:27,895 INFO L163 FreeRefinementEngine]: Executing refinement strategy WOLF [2019-11-21 13:02:27,895 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleCvc4 [513333984] [2019-11-21 13:02:27,895 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/cvc4 Starting monitored process 4 with cvc4 --incremental --print-success --lang smt --rewrite-divk (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 4 with cvc4 --incremental --print-success --lang smt --rewrite-divk [2019-11-21 13:02:28,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2019-11-21 13:02:28,143 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2019-11-21 13:02:28,163 INFO L174 FreeRefinementEngine]: Strategy WOLF found a feasible trace [2019-11-21 13:02:28,163 INFO L475 BasicCegarLoop]: Counterexample might be feasible [2019-11-21 13:02:28,364 WARN L499 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 cvc4 --incremental --print-success --lang smt --rewrite-divk [2019-11-21 13:02:28,388 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.11 01:02:28 BoogieIcfgContainer [2019-11-21 13:02:28,389 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2019-11-21 13:02:28,389 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2019-11-21 13:02:28,389 INFO L271 PluginConnector]: Initializing Witness Printer... [2019-11-21 13:02:28,390 INFO L275 PluginConnector]: Witness Printer initialized [2019-11-21 13:02:28,390 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 01:02:24" (3/4) ... [2019-11-21 13:02:28,393 INFO L131 WitnessPrinter]: Generating witness for reachability counterexample [2019-11-21 13:02:28,437 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2019-11-21 13:02:28,437 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2019-11-21 13:02:28,439 INFO L168 Benchmark]: Toolchain (without parser) took 5603.39 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 102.2 MB). Free memory was 961.7 MB in the beginning and 828.4 MB in the end (delta: 133.3 MB). Peak memory consumption was 235.5 MB. Max. memory is 11.5 GB. [2019-11-21 13:02:28,440 INFO L168 Benchmark]: CDTParser took 0.21 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-21 13:02:28,441 INFO L168 Benchmark]: CACSL2BoogieTranslator took 744.86 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 102.2 MB). Free memory was 956.3 MB in the beginning and 1.1 GB in the end (delta: -114.3 MB). Peak memory consumption was 20.7 MB. Max. memory is 11.5 GB. [2019-11-21 13:02:28,442 INFO L168 Benchmark]: Boogie Preprocessor took 78.30 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 6.8 MB). Peak memory consumption was 6.8 MB. Max. memory is 11.5 GB. [2019-11-21 13:02:28,443 INFO L168 Benchmark]: RCFGBuilder took 1015.28 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 53.4 MB). Peak memory consumption was 53.4 MB. Max. memory is 11.5 GB. [2019-11-21 13:02:28,444 INFO L168 Benchmark]: TraceAbstraction took 3712.21 ms. Allocated memory is still 1.1 GB. Free memory was 1.0 GB in the beginning and 828.4 MB in the end (delta: 182.0 MB). Peak memory consumption was 182.0 MB. Max. memory is 11.5 GB. [2019-11-21 13:02:28,445 INFO L168 Benchmark]: Witness Printer took 47.95 ms. Allocated memory is still 1.1 GB. Free memory is still 828.4 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-21 13:02:28,448 INFO L335 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. * CACSL2BoogieTranslator took 744.86 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 102.2 MB). Free memory was 956.3 MB in the beginning and 1.1 GB in the end (delta: -114.3 MB). Peak memory consumption was 20.7 MB. Max. memory is 11.5 GB. * Boogie Preprocessor took 78.30 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 6.8 MB). Peak memory consumption was 6.8 MB. Max. memory is 11.5 GB. * RCFGBuilder took 1015.28 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 53.4 MB). Peak memory consumption was 53.4 MB. Max. memory is 11.5 GB. * TraceAbstraction took 3712.21 ms. Allocated memory is still 1.1 GB. Free memory was 1.0 GB in the beginning and 828.4 MB in the end (delta: 182.0 MB). Peak memory consumption was 182.0 MB. Max. memory is 11.5 GB. * Witness Printer took 47.95 ms. Allocated memory is still 1.1 GB. Free memory is still 828.4 MB. There was no memory consumed. Max. memory is 11.5 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - CounterExampleResult [Line: 518]: pointer dereference may fail pointer dereference may fail We found a FailurePath: [L531] int *a; [L532] int N = __VERIFIER_nondet_int(); [L533] COND FALSE !(N < 1) VAL [N=1073741824] [L535] CALL lis(a, N) VAL [\old(N)=1073741824, a={0:0}] [L514] int *best, *prev, i, j, max = 0; [L515] best = (int*) malloc(sizeof(int) * N) [L516] prev = (int*) malloc(sizeof(int) * N) [L517] i = 0 VAL [\old(N)=1073741824, a={0:0}, a={0:0}, best={-2:0}, i=0, malloc(sizeof(int) * N)={-2:0}, malloc(sizeof(int) * N)={1:0}, max=0, N=1073741824, prev={1:0}] [L517] COND TRUE i < N VAL [\old(N)=1073741824, a={0:0}, a={0:0}, best={-2:0}, i=0, malloc(sizeof(int) * N)={-2:0}, malloc(sizeof(int) * N)={1:0}, max=0, N=1073741824, prev={1:0}] [L518] best[i] = 1 - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 94 locations, 29 error locations. Result: UNSAFE, OverallTime: 3.6s, OverallIterations: 3, TraceHistogramMax: 1, AutomataDifference: 1.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, HoareTripleCheckerStatistics: 123 SDtfs, 191 SDslu, 269 SDs, 0 SdLazy, 186 SolverSat, 24 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 1.1s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 44 GetRequests, 35 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=127occurred in iteration=2, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.0s AutomataMinimizationTime, 2 MinimizatonAttempts, 39 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.5s InterpolantComputationTime, 33 NumberOfCodeBlocks, 33 NumberOfCodeBlocksAsserted, 3 NumberOfCheckSat, 40 ConstructedInterpolants, 2 QuantifiedInterpolants, 1820 SizeOfPredicates, 10 NumberOfNonLiveVariables, 110 ConjunctsInSsa, 13 ConjunctsInUnsatCore, 4 InterpolantComputations, 4 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! Received shutdown request...