java -Xmx6000000000 -jar ./plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data ./data --generate-csv --csv-dir ../../../releaseScripts/default/UAutomizer-linux/csv -tc ../../../trunk/examples/toolchains/AutomizerCTransformed.xml -s ../../../trunk/examples/settings/ai/eq-bench/svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf -i ../../../trunk/examples/svcomp/list-ext-properties/960521-1_1_false-valid-deref.i -------------------------------------------------------------------------------- This is Ultimate 0.1.23-5f7ec6e [2018-01-31 09:56:54,457 INFO L170 SettingsManager]: Resetting all preferences to default values... [2018-01-31 09:56:54,460 INFO L174 SettingsManager]: Resetting UltimateCore preferences to default values [2018-01-31 09:56:54,485 INFO L177 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2018-01-31 09:56:54,485 INFO L174 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2018-01-31 09:56:54,487 INFO L174 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2018-01-31 09:56:54,488 INFO L174 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2018-01-31 09:56:54,491 INFO L174 SettingsManager]: Resetting LassoRanker preferences to default values [2018-01-31 09:56:54,493 INFO L174 SettingsManager]: Resetting Reaching Definitions preferences to default values [2018-01-31 09:56:54,501 INFO L174 SettingsManager]: Resetting SyntaxChecker preferences to default values [2018-01-31 09:56:54,502 INFO L177 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2018-01-31 09:56:54,502 INFO L174 SettingsManager]: Resetting LTL2Aut preferences to default values [2018-01-31 09:56:54,503 INFO L174 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2018-01-31 09:56:54,504 INFO L174 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2018-01-31 09:56:54,505 INFO L174 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2018-01-31 09:56:54,511 INFO L174 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2018-01-31 09:56:54,512 INFO L174 SettingsManager]: Resetting CodeCheck preferences to default values [2018-01-31 09:56:54,517 INFO L174 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2018-01-31 09:56:54,518 INFO L174 SettingsManager]: Resetting RCFGBuilder preferences to default values [2018-01-31 09:56:54,519 INFO L174 SettingsManager]: Resetting TraceAbstraction preferences to default values [2018-01-31 09:56:54,523 INFO L177 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2018-01-31 09:56:54,523 INFO L177 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2018-01-31 09:56:54,523 INFO L174 SettingsManager]: Resetting IcfgTransformer preferences to default values [2018-01-31 09:56:54,525 INFO L174 SettingsManager]: Resetting Boogie Printer preferences to default values [2018-01-31 09:56:54,526 INFO L174 SettingsManager]: Resetting Witness Printer preferences to default values [2018-01-31 09:56:54,527 INFO L177 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2018-01-31 09:56:54,527 INFO L174 SettingsManager]: Resetting CDTParser preferences to default values [2018-01-31 09:56:54,528 INFO L177 SettingsManager]: PEA to Boogie provides no preferences, ignoring... [2018-01-31 09:56:54,531 INFO L177 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2018-01-31 09:56:54,531 INFO L174 SettingsManager]: Resetting Witness Parser preferences to default values [2018-01-31 09:56:54,532 INFO L181 SettingsManager]: Finished resetting all preferences to default values... [2018-01-31 09:56:54,532 INFO L98 SettingsManager]: Beginning loading settings from /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/ai/eq-bench/svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf [2018-01-31 09:56:54,542 INFO L110 SettingsManager]: Loading preferences was successful [2018-01-31 09:56:54,542 INFO L112 SettingsManager]: Preferences different from defaults after loading the file: [2018-01-31 09:56:54,543 INFO L131 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2018-01-31 09:56:54,543 INFO L133 SettingsManager]: * to procedures, called more than once=true [2018-01-31 09:56:54,543 INFO L131 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2018-01-31 09:56:54,544 INFO L133 SettingsManager]: * Abstract domain for RCFG-of-the-future=VPDomain [2018-01-31 09:56:54,544 INFO L133 SettingsManager]: * Use the RCFG-of-the-future interface=true [2018-01-31 09:56:54,544 INFO L131 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2018-01-31 09:56:54,544 INFO L133 SettingsManager]: * sizeof long=4 [2018-01-31 09:56:54,545 INFO L133 SettingsManager]: * Check unreachability of error function in SV-COMP mode=false [2018-01-31 09:56:54,545 INFO L133 SettingsManager]: * Overapproximate operations on floating types=true [2018-01-31 09:56:54,545 INFO L133 SettingsManager]: * sizeof POINTER=4 [2018-01-31 09:56:54,545 INFO L133 SettingsManager]: * Check division by zero=IGNORE [2018-01-31 09:56:54,545 INFO L133 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2018-01-31 09:56:54,545 INFO L133 SettingsManager]: * Bitprecise bitfields=true [2018-01-31 09:56:54,546 INFO L133 SettingsManager]: * SV-COMP memtrack compatibility mode=true [2018-01-31 09:56:54,546 INFO L133 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2018-01-31 09:56:54,546 INFO L133 SettingsManager]: * sizeof long double=12 [2018-01-31 09:56:54,546 INFO L131 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2018-01-31 09:56:54,546 INFO L133 SettingsManager]: * Size of a code block=SingleStatement [2018-01-31 09:56:54,546 INFO L133 SettingsManager]: * To the following directory=./dump/ [2018-01-31 09:56:54,547 INFO L133 SettingsManager]: * Add additional assume for each assert=false [2018-01-31 09:56:54,547 INFO L133 SettingsManager]: * SMT solver=External_DefaultMode [2018-01-31 09:56:54,547 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-01-31 09:56:54,547 INFO L131 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2018-01-31 09:56:54,547 INFO L133 SettingsManager]: * Interpolant automaton=TWOTRACK [2018-01-31 09:56:54,547 INFO L133 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2018-01-31 09:56:54,548 INFO L133 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2018-01-31 09:56:54,548 INFO L133 SettingsManager]: * Trace refinement strategy=CAMEL [2018-01-31 09:56:54,548 INFO L133 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2018-01-31 09:56:54,548 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-01-31 09:56:54,549 INFO L133 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2018-01-31 09:56:54,549 INFO L131 SettingsManager]: Preferences of IcfgTransformer differ from their defaults: [2018-01-31 09:56:54,550 INFO L133 SettingsManager]: * TransformationType=HEAP_SEPARATOR [2018-01-31 09:56:54,598 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2018-01-31 09:56:54,612 INFO L266 ainManager$Toolchain]: [Toolchain 1]: Parser(s) successfully initialized [2018-01-31 09:56:54,616 INFO L222 ainManager$Toolchain]: [Toolchain 1]: Toolchain data selected. [2018-01-31 09:56:54,617 INFO L271 PluginConnector]: Initializing CDTParser... [2018-01-31 09:56:54,618 INFO L276 PluginConnector]: CDTParser initialized [2018-01-31 09:56:54,619 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/list-ext-properties/960521-1_1_false-valid-deref.i [2018-01-31 09:56:54,820 INFO L304 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2018-01-31 09:56:54,830 INFO L131 ToolchainWalker]: Walking toolchain with 5 elements. [2018-01-31 09:56:54,831 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2018-01-31 09:56:54,831 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2018-01-31 09:56:54,838 INFO L276 PluginConnector]: CACSL2BoogieTranslator initialized [2018-01-31 09:56:54,839 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 31.01 09:56:54" (1/1) ... [2018-01-31 09:56:54,844 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@1f4113ff and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:54, skipping insertion in model container [2018-01-31 09:56:54,844 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 31.01 09:56:54" (1/1) ... [2018-01-31 09:56:54,864 INFO L153 Dispatcher]: Using SV-COMP mode [2018-01-31 09:56:54,922 INFO L153 Dispatcher]: Using SV-COMP mode [2018-01-31 09:56:55,095 INFO L450 PostProcessor]: Settings: Checked method=main [2018-01-31 09:56:55,121 INFO L450 PostProcessor]: Settings: Checked method=main [2018-01-31 09:56:55,129 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55 WrapperNode [2018-01-31 09:56:55,130 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2018-01-31 09:56:55,130 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2018-01-31 09:56:55,130 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2018-01-31 09:56:55,131 INFO L276 PluginConnector]: Boogie Preprocessor initialized [2018-01-31 09:56:55,146 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,146 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,157 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,157 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,163 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,168 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,169 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,171 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2018-01-31 09:56:55,171 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2018-01-31 09:56:55,172 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2018-01-31 09:56:55,172 INFO L276 PluginConnector]: RCFGBuilder initialized [2018-01-31 09:56:55,178 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (1/1) ... No working directory specified, using /storage/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-01-31 09:56:55,246 INFO L136 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2018-01-31 09:56:55,247 INFO L136 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2018-01-31 09:56:55,247 INFO L136 BoogieDeclarations]: Found implementation of procedure foo [2018-01-31 09:56:55,247 INFO L136 BoogieDeclarations]: Found implementation of procedure main [2018-01-31 09:56:55,247 INFO L128 BoogieDeclarations]: Found specification of procedure write~int [2018-01-31 09:56:55,247 INFO L128 BoogieDeclarations]: Found specification of procedure read~int [2018-01-31 09:56:55,247 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.free [2018-01-31 09:56:55,248 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2018-01-31 09:56:55,248 INFO L128 BoogieDeclarations]: Found specification of procedure #Ultimate.alloc [2018-01-31 09:56:55,248 INFO L128 BoogieDeclarations]: Found specification of procedure malloc [2018-01-31 09:56:55,248 INFO L128 BoogieDeclarations]: Found specification of procedure free [2018-01-31 09:56:55,248 INFO L128 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_int [2018-01-31 09:56:55,249 INFO L128 BoogieDeclarations]: Found specification of procedure foo [2018-01-31 09:56:55,249 INFO L128 BoogieDeclarations]: Found specification of procedure main [2018-01-31 09:56:55,249 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2018-01-31 09:56:55,251 INFO L128 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2018-01-31 09:56:55,827 INFO L257 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2018-01-31 09:56:55,828 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 31.01 09:56:55 BoogieIcfgContainer [2018-01-31 09:56:55,828 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2018-01-31 09:56:55,829 INFO L113 PluginConnector]: ------------------------IcfgTransformer---------------------------- [2018-01-31 09:56:55,829 INFO L271 PluginConnector]: Initializing IcfgTransformer... [2018-01-31 09:56:55,830 INFO L276 PluginConnector]: IcfgTransformer initialized [2018-01-31 09:56:55,835 INFO L185 PluginConnector]: Executing the observer IcfgTransformationObserver from plugin IcfgTransformer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 31.01 09:56:55" (1/1) ... [2018-01-31 09:56:55,845 INFO L103 apSepIcfgTransformer]: HeapSepIcfgTransformer: Starting heap partitioning [2018-01-31 09:56:55,846 INFO L104 apSepIcfgTransformer]: To be partitioned heap arrays found [#memory_int] [2018-01-31 09:56:55,847 INFO L150 apSepIcfgTransformer]: starting freeze-var-style preprocessing [2018-01-31 09:56:55,903 INFO L162 apSepIcfgTransformer]: finished StoreIndexFreezer, created 13 freeze vars and freeze var literals (each corresponds to one heap write) [2018-01-31 09:56:55,950 INFO L221 apSepIcfgTransformer]: finished preprocessing for the equality analysis [2018-01-31 09:56:56,014 INFO L101 FixpointEngine]: Starting fixpoint engine with domain VPDomain (maxUnwinding=3, maxParallelStates=2) [2018-01-31 09:57:28,000 INFO L314 AbstractInterpreter]: Visited 83 different actions 388 times. Merged at 52 different actions 196 times. Widened at 1 different actions 6 times. Found 24 fixpoints after 8 different actions. Largest state had 69 variables. [2018-01-31 09:57:28,003 INFO L229 apSepIcfgTransformer]: finished equality analysis [2018-01-31 09:57:28,020 INFO L244 HeapSepPreAnalysis]: Number of read from array group [#memory_int] : 4 [2018-01-31 09:57:28,021 INFO L241 apSepIcfgTransformer]: Finished pre analysis before partitioning [2018-01-31 09:57:28,021 INFO L242 apSepIcfgTransformer]: array groups: Set: [#memory_int] [2018-01-31 09:57:28,021 INFO L244 apSepIcfgTransformer]: select infos: Set: ((select |v_#memory_int_8| |v_main_#t~post8.base_3|), at (SUMMARY for call write~int(0, #t~post8.base, #t~post8.offset, 4); srcloc: L638'')) ((select |v_#memory_int_2| v_~b.base_2), at (SUMMARY for call write~int(~n, ~b.base, ~b.offset + ~i~4 * 4, 4); srcloc: L628)) ((select |v_#memory_int_4| v_~a.base_2), at (SUMMARY for call write~int(~n, ~a.base, ~a.offset + ~i~4 * 4, 4); srcloc: L626)) ((select (select |v_#memory_int_11| v_~b.base_12) (+ v_~b.offset_11 (- 8))), at (SUMMARY for call #t~mem10 := read~int(~b.base, ~b.offset + -8, 4); srcloc: L639')) [2018-01-31 09:57:28,046 INFO L547 PartitionManager]: partitioning result: [2018-01-31 09:57:28,046 INFO L552 PartitionManager]: location blocks for array group [#memory_int] [2018-01-31 09:57:28,046 INFO L562 PartitionManager]: at dimension 0 [2018-01-31 09:57:28,046 INFO L563 PartitionManager]: # array writes (possibly including 1 dummy write/NoStoreIndexInfo) : 4 [2018-01-31 09:57:28,046 INFO L564 PartitionManager]: # location blocks :3 [2018-01-31 09:57:28,047 INFO L562 PartitionManager]: at dimension 1 [2018-01-31 09:57:28,047 INFO L563 PartitionManager]: # array writes (possibly including 1 dummy write/NoStoreIndexInfo) : 3 [2018-01-31 09:57:28,047 INFO L564 PartitionManager]: # location blocks :1 [2018-01-31 09:57:28,048 INFO L86 ransitionTransformer]: executing heap partitioning transformation [2018-01-31 09:57:28,077 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.icfgtransformation CFG 31.01 09:57:28 BasicIcfg [2018-01-31 09:57:28,077 INFO L132 PluginConnector]: ------------------------ END IcfgTransformer---------------------------- [2018-01-31 09:57:28,078 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2018-01-31 09:57:28,078 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2018-01-31 09:57:28,081 INFO L276 PluginConnector]: TraceAbstraction initialized [2018-01-31 09:57:28,082 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 31.01 09:56:54" (1/4) ... [2018-01-31 09:57:28,083 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@54b88896 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 31.01 09:57:28, skipping insertion in model container [2018-01-31 09:57:28,083 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 31.01 09:56:55" (2/4) ... [2018-01-31 09:57:28,083 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@54b88896 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 31.01 09:57:28, skipping insertion in model container [2018-01-31 09:57:28,083 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 31.01 09:56:55" (3/4) ... [2018-01-31 09:57:28,084 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@54b88896 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 31.01 09:57:28, skipping insertion in model container [2018-01-31 09:57:28,084 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.icfgtransformation CFG 31.01 09:57:28" (4/4) ... [2018-01-31 09:57:28,085 INFO L107 eAbstractionObserver]: Analyzing ICFG HeapSeparatedIcfg [2018-01-31 09:57:28,091 INFO L128 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2018-01-31 09:57:28,165 INFO L140 ceAbstractionStarter]: Appying trace abstraction to program that has 17 error locations. [2018-01-31 09:57:28,207 INFO L322 AbstractCegarLoop]: Interprodecural is true [2018-01-31 09:57:28,207 INFO L323 AbstractCegarLoop]: Hoare is true [2018-01-31 09:57:28,255 INFO L324 AbstractCegarLoop]: Compute interpolants for FPandBP [2018-01-31 09:57:28,255 INFO L325 AbstractCegarLoop]: Backedges is TWOTRACK [2018-01-31 09:57:28,255 INFO L326 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2018-01-31 09:57:28,255 INFO L327 AbstractCegarLoop]: Difference is false [2018-01-31 09:57:28,255 INFO L328 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2018-01-31 09:57:28,255 INFO L333 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2018-01-31 09:57:28,256 INFO L87 2NestedWordAutomaton]: Mode: main mode - execution starts in main procedure [2018-01-31 09:57:28,266 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states. [2018-01-31 09:57:28,270 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2018-01-31 09:57:28,270 INFO L343 BasicCegarLoop]: Found error trace [2018-01-31 09:57:28,271 INFO L351 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-01-31 09:57:28,271 INFO L371 AbstractCegarLoop]: === Iteration 1 === [fooErr1RequiresViolation, fooErr0RequiresViolation, fooErr2RequiresViolation, fooErr3RequiresViolation, mainErr5RequiresViolation, mainErr1RequiresViolation, mainErr9RequiresViolation, mainErr0RequiresViolation, mainErr3RequiresViolation, mainErr7RequiresViolation, mainErr11RequiresViolation, mainErr8RequiresViolation, mainErr10RequiresViolation, mainErr2RequiresViolation, mainErr4RequiresViolation, mainErr6RequiresViolation, mainErr12EnsuresViolation]=== [2018-01-31 09:57:28,274 INFO L82 PathProgramCache]: Analyzing trace with hash -1182210392, now seen corresponding path program 1 times [2018-01-31 09:57:28,275 INFO L209 onRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-01-31 09:57:28,276 INFO L67 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-01-31 09:57:28,317 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:28,317 INFO L101 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-01-31 09:57:28,317 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:28,347 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-01-31 09:57:28,356 WARN L137 erpolLogProxyWrapper]: Using partial proofs (cut at CNF-level). Set option :produce-proofs to true to get complete proofs. [2018-01-31 09:57:28,391 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-01-31 09:57:28,393 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-01-31 09:57:28,393 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2018-01-31 09:57:28,396 INFO L409 AbstractCegarLoop]: Interpolant automaton has 2 states [2018-01-31 09:57:28,406 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2018-01-31 09:57:28,407 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2018-01-31 09:57:28,409 INFO L87 Difference]: Start difference. First operand 74 states. Second operand 2 states. [2018-01-31 09:57:28,441 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-01-31 09:57:28,441 INFO L93 Difference]: Finished difference Result 130 states and 145 transitions. [2018-01-31 09:57:28,441 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2018-01-31 09:57:28,446 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 11 [2018-01-31 09:57:28,446 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-01-31 09:57:28,456 INFO L225 Difference]: With dead ends: 130 [2018-01-31 09:57:28,456 INFO L226 Difference]: Without dead ends: 71 [2018-01-31 09:57:28,462 INFO L554 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2018-01-31 09:57:28,480 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2018-01-31 09:57:28,494 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2018-01-31 09:57:28,495 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 71 states. [2018-01-31 09:57:28,496 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 76 transitions. [2018-01-31 09:57:28,498 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 76 transitions. Word has length 11 [2018-01-31 09:57:28,498 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-01-31 09:57:28,498 INFO L432 AbstractCegarLoop]: Abstraction has 71 states and 76 transitions. [2018-01-31 09:57:28,498 INFO L433 AbstractCegarLoop]: Interpolant automaton has 2 states. [2018-01-31 09:57:28,498 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 76 transitions. [2018-01-31 09:57:28,499 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 15 [2018-01-31 09:57:28,499 INFO L343 BasicCegarLoop]: Found error trace [2018-01-31 09:57:28,499 INFO L351 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-01-31 09:57:28,499 INFO L371 AbstractCegarLoop]: === Iteration 2 === [fooErr1RequiresViolation, fooErr0RequiresViolation, fooErr2RequiresViolation, fooErr3RequiresViolation, mainErr5RequiresViolation, mainErr1RequiresViolation, mainErr9RequiresViolation, mainErr0RequiresViolation, mainErr3RequiresViolation, mainErr7RequiresViolation, mainErr11RequiresViolation, mainErr8RequiresViolation, mainErr10RequiresViolation, mainErr2RequiresViolation, mainErr4RequiresViolation, mainErr6RequiresViolation, mainErr12EnsuresViolation]=== [2018-01-31 09:57:28,499 INFO L82 PathProgramCache]: Analyzing trace with hash 874102517, now seen corresponding path program 1 times [2018-01-31 09:57:28,500 INFO L209 onRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-01-31 09:57:28,500 INFO L67 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-01-31 09:57:28,501 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:28,501 INFO L101 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-01-31 09:57:28,501 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:28,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-01-31 09:57:28,531 WARN L137 erpolLogProxyWrapper]: Using partial proofs (cut at CNF-level). Set option :produce-proofs to true to get complete proofs. [2018-01-31 09:57:28,735 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-01-31 09:57:28,736 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-01-31 09:57:28,736 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-01-31 09:57:28,737 INFO L409 AbstractCegarLoop]: Interpolant automaton has 5 states [2018-01-31 09:57:28,738 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2018-01-31 09:57:28,738 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2018-01-31 09:57:28,740 INFO L87 Difference]: Start difference. First operand 71 states and 76 transitions. Second operand 5 states. [2018-01-31 09:57:29,298 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-01-31 09:57:29,299 INFO L93 Difference]: Finished difference Result 71 states and 76 transitions. [2018-01-31 09:57:29,299 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2018-01-31 09:57:29,299 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 14 [2018-01-31 09:57:29,300 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-01-31 09:57:29,301 INFO L225 Difference]: With dead ends: 71 [2018-01-31 09:57:29,301 INFO L226 Difference]: Without dead ends: 68 [2018-01-31 09:57:29,302 INFO L554 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2018-01-31 09:57:29,302 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2018-01-31 09:57:29,307 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2018-01-31 09:57:29,308 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 68 states. [2018-01-31 09:57:29,309 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 73 transitions. [2018-01-31 09:57:29,309 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 73 transitions. Word has length 14 [2018-01-31 09:57:29,309 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-01-31 09:57:29,310 INFO L432 AbstractCegarLoop]: Abstraction has 68 states and 73 transitions. [2018-01-31 09:57:29,310 INFO L433 AbstractCegarLoop]: Interpolant automaton has 5 states. [2018-01-31 09:57:29,310 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 73 transitions. [2018-01-31 09:57:29,310 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 15 [2018-01-31 09:57:29,310 INFO L343 BasicCegarLoop]: Found error trace [2018-01-31 09:57:29,310 INFO L351 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-01-31 09:57:29,311 INFO L371 AbstractCegarLoop]: === Iteration 3 === [fooErr1RequiresViolation, fooErr0RequiresViolation, fooErr2RequiresViolation, fooErr3RequiresViolation, mainErr5RequiresViolation, mainErr1RequiresViolation, mainErr9RequiresViolation, mainErr0RequiresViolation, mainErr3RequiresViolation, mainErr7RequiresViolation, mainErr11RequiresViolation, mainErr8RequiresViolation, mainErr10RequiresViolation, mainErr2RequiresViolation, mainErr4RequiresViolation, mainErr6RequiresViolation, mainErr12EnsuresViolation]=== [2018-01-31 09:57:29,311 INFO L82 PathProgramCache]: Analyzing trace with hash 874102519, now seen corresponding path program 1 times [2018-01-31 09:57:29,311 INFO L209 onRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-01-31 09:57:29,311 INFO L67 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-01-31 09:57:29,312 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:29,312 INFO L101 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-01-31 09:57:29,312 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:29,325 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-01-31 09:57:29,326 WARN L137 erpolLogProxyWrapper]: Using partial proofs (cut at CNF-level). Set option :produce-proofs to true to get complete proofs. [2018-01-31 09:57:29,441 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-01-31 09:57:29,441 INFO L320 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-01-31 09:57:29,441 INFO L335 seRefinementStrategy]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2018-01-31 09:57:29,442 INFO L409 AbstractCegarLoop]: Interpolant automaton has 6 states [2018-01-31 09:57:29,442 INFO L132 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2018-01-31 09:57:29,442 INFO L133 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2018-01-31 09:57:29,442 INFO L87 Difference]: Start difference. First operand 68 states and 73 transitions. Second operand 6 states. [2018-01-31 09:57:29,855 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-01-31 09:57:29,855 INFO L93 Difference]: Finished difference Result 125 states and 134 transitions. [2018-01-31 09:57:29,855 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2018-01-31 09:57:29,855 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 14 [2018-01-31 09:57:29,856 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-01-31 09:57:29,857 INFO L225 Difference]: With dead ends: 125 [2018-01-31 09:57:29,857 INFO L226 Difference]: Without dead ends: 124 [2018-01-31 09:57:29,858 INFO L554 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=34, Invalid=56, Unknown=0, NotChecked=0, Total=90 [2018-01-31 09:57:29,858 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 124 states. [2018-01-31 09:57:29,865 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 124 to 79. [2018-01-31 09:57:29,865 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 79 states. [2018-01-31 09:57:29,866 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 85 transitions. [2018-01-31 09:57:29,866 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 85 transitions. Word has length 14 [2018-01-31 09:57:29,867 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-01-31 09:57:29,867 INFO L432 AbstractCegarLoop]: Abstraction has 79 states and 85 transitions. [2018-01-31 09:57:29,867 INFO L433 AbstractCegarLoop]: Interpolant automaton has 6 states. [2018-01-31 09:57:29,867 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 85 transitions. [2018-01-31 09:57:29,868 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2018-01-31 09:57:29,868 INFO L343 BasicCegarLoop]: Found error trace [2018-01-31 09:57:29,869 INFO L351 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-01-31 09:57:29,869 INFO L371 AbstractCegarLoop]: === Iteration 4 === [fooErr1RequiresViolation, fooErr0RequiresViolation, fooErr2RequiresViolation, fooErr3RequiresViolation, mainErr5RequiresViolation, mainErr1RequiresViolation, mainErr9RequiresViolation, mainErr0RequiresViolation, mainErr3RequiresViolation, mainErr7RequiresViolation, mainErr11RequiresViolation, mainErr8RequiresViolation, mainErr10RequiresViolation, mainErr2RequiresViolation, mainErr4RequiresViolation, mainErr6RequiresViolation, mainErr12EnsuresViolation]=== [2018-01-31 09:57:29,869 INFO L82 PathProgramCache]: Analyzing trace with hash 1701024, now seen corresponding path program 1 times [2018-01-31 09:57:29,869 INFO L209 onRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-01-31 09:57:29,869 INFO L67 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-01-31 09:57:29,870 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:29,870 INFO L101 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-01-31 09:57:29,870 INFO L117 rtionOrderModulation]: Craig nested/tree interpolation forces the following order [2018-01-31 09:57:29,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2018-01-31 09:57:29,899 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2018-01-31 09:57:29,922 INFO L410 BasicCegarLoop]: Counterexample might be feasible [2018-01-31 09:57:29,925 INFO L84 mationBacktranslator]: Skipped ATE [333] [333] ULTIMATE.startENTRY-->L1: Formula: true InVars {} OutVars{~n=v_~n_8, #valid=|v_#valid_7|, ~a.base=v_~a.base_5, ~b.offset=v_~b.offset_4, #NULL.offset=|v_#NULL.offset_2|, ~a.offset=v_~a.offset_4, #NULL.base=|v_#NULL.base_2|, ~b.base=v_~b.base_5} AuxVars[] AssignedVars[~n, #valid, ~a.base, ~b.offset, #NULL.offset, ~a.offset, #NULL.base, ~b.base] [2018-01-31 09:57:29,925 INFO L84 mationBacktranslator]: Skipped ATE [339] [339] L1-->mainENTRY: Formula: true InVars {} OutVars{} AuxVars[] AssignedVars[] [2018-01-31 09:57:29,925 INFO L84 mationBacktranslator]: Skipped ATE [345] [345] mainENTRY-->L633''''': Formula: (= v_~n_16 1) InVars {} OutVars{~n=v_~n_16} AuxVars[] AssignedVars[~n] [2018-01-31 09:57:29,926 INFO L84 mationBacktranslator]: Skipped ATE [349] [349] L633'''''-->L633: Formula: true InVars {} OutVars{} AuxVars[] AssignedVars[] [2018-01-31 09:57:29,926 INFO L84 mationBacktranslator]: Skipped ATE [355] [355] L633-->L633': Formula: (and (<= |v_main_#t~nondet4_2| 2147483647) (<= 0 (+ |v_main_#t~nondet4_2| 2147483648))) InVars {main_#t~nondet4=|v_main_#t~nondet4_2|} OutVars{main_#t~nondet4=|v_main_#t~nondet4_2|} AuxVars[] AssignedVars[] [2018-01-31 09:57:29,926 INFO L84 mationBacktranslator]: Skipped ATE [361] [361] L633'-->L633'': Formula: (or (= |v_main_#t~nondet4_3| 0) (not (< v_~n_17 30))) InVars {~n=v_~n_17, main_#t~nondet4=|v_main_#t~nondet4_3|} OutVars{~n=v_~n_17, main_#t~nondet4=|v_main_#t~nondet4_3|} AuxVars[] AssignedVars[] [2018-01-31 09:57:29,926 INFO L84 mationBacktranslator]: Skipped ATE [369] [369] L633''-->L633'''''': Formula: true InVars {} OutVars{main_#t~nondet4=|v_main_#t~nondet4_4|} AuxVars[] AssignedVars[main_#t~nondet4] [2018-01-31 09:57:29,926 INFO L84 mationBacktranslator]: Skipped ATE [357] [357] L633''''''-->L636: Formula: (and (not (= 0 |v_main_#t~malloc6.base_1|)) (= |v_main_#t~malloc6.offset_1| 0) (= |v_#length_7| (store |v_#length_8| |v_main_#t~malloc6.base_1| (* 4 v_~n_14))) (= |v_#valid_11| (store |v_#valid_12| |v_main_#t~malloc6.base_1| 1)) (= (select |v_#valid_12| |v_main_#t~malloc6.base_1|) 0)) InVars {~n=v_~n_14, #length=|v_#length_8|, #valid=|v_#valid_12|} OutVars{~n=v_~n_14, #length=|v_#length_7|, main_#t~malloc6.base=|v_main_#t~malloc6.base_1|, main_#t~malloc6.offset=|v_main_#t~malloc6.offset_1|, #valid=|v_#valid_11|} AuxVars[] AssignedVars[#valid, #length, main_#t~malloc6.base, main_#t~malloc6.offset] [2018-01-31 09:57:29,927 INFO L84 mationBacktranslator]: Skipped ATE [365] [365] L636-->L637: Formula: (and (= v_~a.offset_8 |v_main_#t~malloc6.offset_2|) (= v_~a.base_9 |v_main_#t~malloc6.base_2|)) InVars {main_#t~malloc6.offset=|v_main_#t~malloc6.offset_2|, main_#t~malloc6.base=|v_main_#t~malloc6.base_2|} OutVars{main_#t~malloc6.base=|v_main_#t~malloc6.base_2|, ~a.offset=v_~a.offset_8, main_#t~malloc6.offset=|v_main_#t~malloc6.offset_2|, ~a.base=v_~a.base_9} AuxVars[] AssignedVars[~a.base, ~a.offset] [2018-01-31 09:57:29,927 INFO L84 mationBacktranslator]: Skipped ATE [373] [373] L637-->L637': Formula: (and (= |v_#valid_13| (store |v_#valid_14| |v_main_#t~malloc7.base_1| 1)) (= (store |v_#length_10| |v_main_#t~malloc7.base_1| (* 4 v_~n_15)) |v_#length_9|) (not (= |v_main_#t~malloc7.base_1| 0)) (= |v_main_#t~malloc7.offset_1| 0) (= 0 (select |v_#valid_14| |v_main_#t~malloc7.base_1|))) InVars {~n=v_~n_15, #length=|v_#length_10|, #valid=|v_#valid_14|} OutVars{~n=v_~n_15, #length=|v_#length_9|, main_#t~malloc7.base=|v_main_#t~malloc7.base_1|, main_#t~malloc7.offset=|v_main_#t~malloc7.offset_1|, #valid=|v_#valid_13|} AuxVars[] AssignedVars[main_#t~malloc7.offset, #valid, #length, main_#t~malloc7.base] [2018-01-31 09:57:29,927 INFO L84 mationBacktranslator]: Skipped ATE [379] [379] L637'-->L638: Formula: (and (= v_~b.offset_8 |v_main_#t~malloc7.offset_2|) (= v_~b.base_9 |v_main_#t~malloc7.base_2|)) InVars {main_#t~malloc7.offset=|v_main_#t~malloc7.offset_2|, main_#t~malloc7.base=|v_main_#t~malloc7.base_2|} OutVars{main_#t~malloc7.base=|v_main_#t~malloc7.base_2|, main_#t~malloc7.offset=|v_main_#t~malloc7.offset_2|, ~b.base=v_~b.base_9, ~b.offset=v_~b.offset_8} AuxVars[] AssignedVars[~b.offset, ~b.base] [2018-01-31 09:57:29,927 INFO L84 mationBacktranslator]: Skipped ATE [383] [383] L638-->L638': Formula: (and (= |v_main_#t~post8.offset_1| v_~b.offset_9) (= |v_main_#t~post8.base_1| v_~b.base_10)) InVars {~b.base=v_~b.base_10, ~b.offset=v_~b.offset_9} OutVars{main_#t~post8.base=|v_main_#t~post8.base_1|, main_#t~post8.offset=|v_main_#t~post8.offset_1|, ~b.base=v_~b.base_10, ~b.offset=v_~b.offset_9} AuxVars[] AssignedVars[main_#t~post8.base, main_#t~post8.offset] [2018-01-31 09:57:29,927 INFO L84 mationBacktranslator]: Skipped ATE [387] [387] L638'-->L638'': Formula: (and (= v_~b.base_11 |v_main_#t~post8.base_2|) (= v_~b.offset_10 (+ |v_main_#t~post8.offset_2| 4))) InVars {main_#t~post8.base=|v_main_#t~post8.base_2|, main_#t~post8.offset=|v_main_#t~post8.offset_2|} OutVars{main_#t~post8.base=|v_main_#t~post8.base_2|, ~b.base=v_~b.base_11, main_#t~post8.offset=|v_main_#t~post8.offset_2|, ~b.offset=v_~b.offset_10} AuxVars[] AssignedVars[~b.offset, ~b.base] [2018-01-31 09:57:29,927 INFO L84 mationBacktranslator]: Skipped ATE [389] [389] L638''-->L638''': Formula: (and (<= (+ |v_main_#t~post8.offset_3| 4) (select |v_#length_11| |v_main_#t~post8.base_3|)) (and (= |v_#memory_int_part_locs_40_locs_19_1| |v_#memory_int_part_locs_40_locs_19_2|) (= |v_#memory_int_part_locs_30_locs_19_1| |v_#memory_int_part_locs_30_locs_19_2|) (= (store |v_#memory_int_part_locs_76_locs_19_1| |v_main_#t~post8.base_3| (store (select |v_#memory_int_part_locs_30_locs_19_1| |v_main_#t~post8.base_3|) |v_main_#t~post8.offset_3| 0)) |v_#memory_int_part_locs_76_locs_19_2|)) (<= 0 |v_main_#t~post8.offset_3|) (= 1 (select |v_#valid_15| |v_main_#t~post8.base_3|))) InVars {#memory_int_part_locs_40_locs_19=|v_#memory_int_part_locs_40_locs_19_1|, #memory_int_part_locs_30_locs_19=|v_#memory_int_part_locs_30_locs_19_1|, #valid=|v_#valid_15|, #length=|v_#length_11|, #memory_int_part_locs_76_locs_19=|v_#memory_int_part_locs_76_locs_19_1|, main_#t~post8.base=|v_main_#t~post8.base_3|, main_#t~post8.offset=|v_main_#t~post8.offset_3|} OutVars{#memory_int_part_locs_40_locs_19=|v_#memory_int_part_locs_40_locs_19_2|, #memory_int_part_locs_30_locs_19=|v_#memory_int_part_locs_30_locs_19_2|, #valid=|v_#valid_15|, #memory_int=|v_#memory_int_7|, #length=|v_#length_11|, #memory_int_part_locs_76_locs_19=|v_#memory_int_part_locs_76_locs_19_2|, main_#t~post8.base=|v_main_#t~post8.base_3|, main_#t~post8.offset=|v_main_#t~post8.offset_3|} AuxVars[] AssignedVars[#memory_int_part_locs_40_locs_19, #memory_int_part_locs_30_locs_19, #memory_int, #memory_int_part_locs_76_locs_19] [2018-01-31 09:57:29,928 INFO L84 mationBacktranslator]: Skipped ATE [395] [395] L638'''-->L639: Formula: true InVars {} OutVars{main_#t~post8.base=|v_main_#t~post8.base_6|, main_#t~post8.offset=|v_main_#t~post8.offset_5|} AuxVars[] AssignedVars[main_#t~post8.base, main_#t~post8.offset] [2018-01-31 09:57:29,928 INFO L84 mationBacktranslator]: Skipped ATE [397] [397] L639-->L639': Formula: true InVars {} OutVars{#memory_int=|v_#memory_int_9|} AuxVars[] AssignedVars[#memory_int] [2018-01-31 09:57:29,928 INFO L84 mationBacktranslator]: Skipped ATE [405] [405] L639'-->mainErr3RequiresViolation: Formula: (or (not (<= v_~b.offset_12 (+ (select |v_#length_14| v_~b.base_14) 4))) (not (<= 8 v_~b.offset_12))) InVars {#length=|v_#length_14|, ~b.base=v_~b.base_14, ~b.offset=v_~b.offset_12} OutVars{#length=|v_#length_14|, ~b.base=v_~b.base_14, ~b.offset=v_~b.offset_12} AuxVars[] AssignedVars[] [2018-01-31 09:57:29,933 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 31.01 09:57:29 BasicIcfg [2018-01-31 09:57:29,934 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2018-01-31 09:57:29,934 INFO L168 Benchmark]: Toolchain (without parser) took 35114.18 ms. Allocated memory was 303.0 MB in the beginning and 2.0 GB in the end (delta: 1.7 GB). Free memory was 262.9 MB in the beginning and 1.9 GB in the end (delta: -1.6 GB). Peak memory consumption was 92.2 MB. Max. memory is 5.3 GB. [2018-01-31 09:57:29,935 INFO L168 Benchmark]: CDTParser took 0.17 ms. Allocated memory is still 303.0 MB. Free memory is still 268.9 MB. There was no memory consumed. Max. memory is 5.3 GB. [2018-01-31 09:57:29,935 INFO L168 Benchmark]: CACSL2BoogieTranslator took 299.21 ms. Allocated memory is still 303.0 MB. Free memory was 261.9 MB in the beginning and 251.9 MB in the end (delta: 10.0 MB). Peak memory consumption was 10.0 MB. Max. memory is 5.3 GB. [2018-01-31 09:57:29,936 INFO L168 Benchmark]: Boogie Preprocessor took 40.74 ms. Allocated memory is still 303.0 MB. Free memory was 251.9 MB in the beginning and 249.9 MB in the end (delta: 2.0 MB). Peak memory consumption was 2.0 MB. Max. memory is 5.3 GB. [2018-01-31 09:57:29,936 INFO L168 Benchmark]: RCFGBuilder took 656.90 ms. Allocated memory is still 303.0 MB. Free memory was 249.9 MB in the beginning and 228.9 MB in the end (delta: 21.1 MB). Peak memory consumption was 21.1 MB. Max. memory is 5.3 GB. [2018-01-31 09:57:29,936 INFO L168 Benchmark]: IcfgTransformer took 32248.73 ms. Allocated memory was 303.0 MB in the beginning and 1.8 GB in the end (delta: 1.5 GB). Free memory was 228.9 MB in the beginning and 387.0 MB in the end (delta: -158.1 MB). Peak memory consumption was 1.4 GB. Max. memory is 5.3 GB. [2018-01-31 09:57:29,937 INFO L168 Benchmark]: TraceAbstraction took 1855.49 ms. Allocated memory was 1.8 GB in the beginning and 2.0 GB in the end (delta: 204.5 MB). Free memory was 387.0 MB in the beginning and 1.9 GB in the end (delta: -1.5 GB). There was no memory consumed. Max. memory is 5.3 GB. [2018-01-31 09:57:29,939 INFO L344 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.17 ms. Allocated memory is still 303.0 MB. Free memory is still 268.9 MB. There was no memory consumed. Max. memory is 5.3 GB. * CACSL2BoogieTranslator took 299.21 ms. Allocated memory is still 303.0 MB. Free memory was 261.9 MB in the beginning and 251.9 MB in the end (delta: 10.0 MB). Peak memory consumption was 10.0 MB. Max. memory is 5.3 GB. * Boogie Preprocessor took 40.74 ms. Allocated memory is still 303.0 MB. Free memory was 251.9 MB in the beginning and 249.9 MB in the end (delta: 2.0 MB). Peak memory consumption was 2.0 MB. Max. memory is 5.3 GB. * RCFGBuilder took 656.90 ms. Allocated memory is still 303.0 MB. Free memory was 249.9 MB in the beginning and 228.9 MB in the end (delta: 21.1 MB). Peak memory consumption was 21.1 MB. Max. memory is 5.3 GB. * IcfgTransformer took 32248.73 ms. Allocated memory was 303.0 MB in the beginning and 1.8 GB in the end (delta: 1.5 GB). Free memory was 228.9 MB in the beginning and 387.0 MB in the end (delta: -158.1 MB). Peak memory consumption was 1.4 GB. Max. memory is 5.3 GB. * TraceAbstraction took 1855.49 ms. Allocated memory was 1.8 GB in the beginning and 2.0 GB in the end (delta: 204.5 MB). Free memory was 387.0 MB in the beginning and 1.9 GB in the end (delta: -1.5 GB). There was no memory consumed. Max. memory is 5.3 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2: - StatisticsResult: ArrayEqualityDomainStatistics #Locations : 63 LocStat_MAX_WEQGRAPH_SIZE : 4 LocStat_MAX_SIZEOF_WEQEDGELABEL : 2 LocStat_NO_SUPPORTING_EQUALITIES : 2134 LocStat_NO_SUPPORTING_DISEQUALITIES : 1768 LocStat_NO_DISJUNCTIONS : -126 LocStat_MAX_NO_DISJUNCTIONS : -1 #Transitions : 92 TransStat_MAX_WEQGRAPH_SIZE : 2 TransStat_MAX_SIZEOF_WEQEDGELABEL : 1 TransStat_NO_SUPPORTING_EQUALITIES : 251 TransStat_NO_SUPPORTING_DISEQUALITIES : 31 TransStat_NO_DISJUNCTIONS : 106 TransStat_MAX_NO_DISJUNCTIONS : 4 - StatisticsResult: EqConstraintFactoryStatistics CONJOIN_DISJUNCTIVE(MILLISECONDS) : 0.003579 RENAME_VARIABLES(MILLISECONDS) : 1.843514 UNFREEZE(MILLISECONDS) : 0.000000 CONJOIN(MILLISECONDS) : 0.000829 PROJECTAWAY(MILLISECONDS) : 0.222372 ADD_WEAK_EQUALITY(MILLISECONDS) : 0.069774 DISJOIN(MILLISECONDS) : 0.742739 RENAME_VARIABLES_DISJUNCTIVE(MILLISECONDS) : 1.872236 ADD_EQUALITY(MILLISECONDS) : 0.030397 DISJOIN_DISJUNCTIVE(MILLISECONDS) : 0.000000 ADD_DISEQUALITY(MILLISECONDS) : 0.028836 #CONJOIN_DISJUNCTIVE : 641 #RENAME_VARIABLES : 1405 #UNFREEZE : 0 #CONJOIN : 1106 #PROJECTAWAY : 758 #ADD_WEAK_EQUALITY : 15 #DISJOIN : 173 #RENAME_VARIABLES_DISJUNCTIVE : 1333 #ADD_EQUALITY : 210 #DISJOIN_DISJUNCTIVE : 0 #ADD_DISEQUALITY : 25 * Results from de.uni_freiburg.informatik.ultimate.plugins.icfgtransformation: - StatisticsResult: HeapSeparatorStatistics #COUNT_NEW_ARRAY_VARS_[#memory_int] : 3 COUNT_ARRAY_WRITES_for_[#memory_int]_at_dim_0 : 4 COUNT_BLOCKS_for_[#memory_int]_at_dim_0 : 3 COUNT_ARRAY_WRITES_for_[#memory_int]_at_dim_1 : 3 COUNT_BLOCKS_for_[#memory_int]_at_dim_1 : 1 COUNT_ARRAY_READS for [#memory_int] : 4 * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - CounterExampleResult [Line: 1]: pointer dereference may fail pointer dereference may fail We found a FailurePath: - StatisticsResult: Ultimate Automizer benchmark data CFG has 4 procedures, 74 locations, 17 error locations. UNSAFE Result, 1.7s OverallTime, 4 OverallIterations, 1 TraceHistogramMax, 1.0s AutomataDifference, 0.0s DeadEndRemovalTime, 0.0s HoareAnnotationTime, HoareTripleCheckerStatistics: 193 SDtfs, 133 SDslu, 313 SDs, 0 SdLazy, 170 SolverSat, 10 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.6s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 17 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=79occurred in iteration=3, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s AbstIntTime, 0 AbstIntIterations, 0 AbstIntStrong, NaN AbsIntWeakeningRatio, NaN AbsIntAvgWeakeningVarsNumRemoved, NaN AbsIntAvgWeakenedConjuncts, 0.0s DumpTime, AutomataMinimizationStatistics: 0.0s AutomataMinimizationTime, 3 MinimizatonAttempts, 45 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TraceCheckStatistics: 0.0s SsaConstructionTime, 0.0s SatisfiabilityAnalysisTime, 0.3s InterpolantComputationTime, 56 NumberOfCodeBlocks, 56 NumberOfCodeBlocksAsserted, 4 NumberOfCheckSat, 36 ConstructedInterpolants, 0 QuantifiedInterpolants, 1244 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 3 InterpolantComputations, 3 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, InvariantSynthesisStatistics: No data available, InterpolantConsolidationStatistics: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! Written .csv to /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/960521-1_1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf_AutomizerCTransformed.xml/Csv-Benchmark-0-2018-01-31_09-57-29-949.csv Written .csv to /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/960521-1_1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf_AutomizerCTransformed.xml/Csv-VPDomainBenchmark-0-2018-01-31_09-57-29-949.csv Written .csv to /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/960521-1_1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf_AutomizerCTransformed.xml/Csv-BenchmarkWithCounters-0-2018-01-31_09-57-29-949.csv Written .csv to /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/960521-1_1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf_AutomizerCTransformed.xml/Csv-HeapSeparatorBenchmark-0-2018-01-31_09-57-29-949.csv Written .csv to /storage/ultimate/releaseScripts/default/UAutomizer-linux/../../../releaseScripts/default/UAutomizer-linux/csv/960521-1_1_false-valid-deref.i_svcomp-DerefFreeMemtrack-32bit-Automizer_Camel+AI_EQ_SS.epf_AutomizerCTransformed.xml/Csv-TraceAbstractionBenchmarks-0-2018-01-31_09-57-29-949.csv Received shutdown request...