./Ultimate.py --spec ../sv-benchmarks/c/properties/valid-memcleanup.prp --file ../sv-benchmarks/c/list-properties/list_search-2.i --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for memory safety (memcleanup) Using default analysis Version e2fb8bed Calling Ultimate with: /root/.sdkman/candidates/java/21.0.5-tem/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerMemDerefMemtrack.xml -i ../sv-benchmarks/c/list-properties/list_search-2.i -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-MemCleanup-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G valid-memcleanup) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash b1ea7ddff382751fa0e11562333bdb4981cac7bdbf1d356a007804e7e2e5a289 --- Real Ultimate output --- This is Ultimate 0.3.0-?-e2fb8be-m [2025-03-08 22:16:01,950 INFO L188 SettingsManager]: Resetting all preferences to default values... [2025-03-08 22:16:02,002 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-MemCleanup-32bit-Automizer_Default.epf [2025-03-08 22:16:02,006 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2025-03-08 22:16:02,006 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2025-03-08 22:16:02,023 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2025-03-08 22:16:02,024 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2025-03-08 22:16:02,024 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2025-03-08 22:16:02,024 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2025-03-08 22:16:02,025 INFO L153 SettingsManager]: * Use memory slicer=true [2025-03-08 22:16:02,025 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2025-03-08 22:16:02,025 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2025-03-08 22:16:02,026 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2025-03-08 22:16:02,026 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2025-03-08 22:16:02,026 INFO L153 SettingsManager]: * Use SBE=true [2025-03-08 22:16:02,026 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2025-03-08 22:16:02,026 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * sizeof long=4 [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * sizeof POINTER=4 [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Bitprecise bitfields=true [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2025-03-08 22:16:02,027 INFO L153 SettingsManager]: * Adapt memory model on pointer casts if necessary=true [2025-03-08 22:16:02,028 INFO L153 SettingsManager]: * Check unreachability of reach_error function=false [2025-03-08 22:16:02,028 INFO L153 SettingsManager]: * sizeof long double=12 [2025-03-08 22:16:02,028 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2025-03-08 22:16:02,028 INFO L153 SettingsManager]: * Behaviour of calls to undefined functions=OVERAPPROXIMATE_BEHAVIOUR [2025-03-08 22:16:02,028 INFO L153 SettingsManager]: * Use constant arrays=true [2025-03-08 22:16:02,028 INFO L151 SettingsManager]: Preferences of IcfgBuilder differ from their defaults: [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2025-03-08 22:16:02,029 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2025-03-08 22:16:02,029 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2025-03-08 22:16:02,030 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2025-03-08 22:16:02,030 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2025-03-08 22:16:02,030 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G valid-memcleanup) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> b1ea7ddff382751fa0e11562333bdb4981cac7bdbf1d356a007804e7e2e5a289 [2025-03-08 22:16:02,249 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2025-03-08 22:16:02,254 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2025-03-08 22:16:02,257 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2025-03-08 22:16:02,258 INFO L270 PluginConnector]: Initializing CDTParser... [2025-03-08 22:16:02,258 INFO L274 PluginConnector]: CDTParser initialized [2025-03-08 22:16:02,259 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/list-properties/list_search-2.i [2025-03-08 22:16:03,394 INFO L533 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/7827cfce2/efe52f2c2abe4b17b473c246214973ab/FLAGd3d449745 [2025-03-08 22:16:03,682 INFO L384 CDTParser]: Found 1 translation units. [2025-03-08 22:16:03,683 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/list-properties/list_search-2.i [2025-03-08 22:16:03,698 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/7827cfce2/efe52f2c2abe4b17b473c246214973ab/FLAGd3d449745 [2025-03-08 22:16:03,950 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/7827cfce2/efe52f2c2abe4b17b473c246214973ab [2025-03-08 22:16:03,951 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2025-03-08 22:16:03,952 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2025-03-08 22:16:03,953 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2025-03-08 22:16:03,953 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2025-03-08 22:16:03,958 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2025-03-08 22:16:03,958 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 08.03 10:16:03" (1/1) ... [2025-03-08 22:16:03,959 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@60cd8bab and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:03, skipping insertion in model container [2025-03-08 22:16:03,959 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 08.03 10:16:03" (1/1) ... [2025-03-08 22:16:03,988 INFO L175 MainTranslator]: Built tables and reachable declarations [2025-03-08 22:16:04,267 WARN L1100 CHandler]: saw a pointer cast to a type that we could not get a type size for, not adapting memory model [2025-03-08 22:16:04,272 INFO L210 PostProcessor]: Analyzing one entry point: main [2025-03-08 22:16:04,278 INFO L200 MainTranslator]: Completed pre-run [2025-03-08 22:16:04,314 INFO L210 PostProcessor]: Analyzing one entry point: main [2025-03-08 22:16:04,345 INFO L204 MainTranslator]: Completed translation [2025-03-08 22:16:04,345 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04 WrapperNode [2025-03-08 22:16:04,345 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2025-03-08 22:16:04,346 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2025-03-08 22:16:04,346 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2025-03-08 22:16:04,346 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2025-03-08 22:16:04,350 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,358 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,370 INFO L138 Inliner]: procedures = 226, calls = 30, calls flagged for inlining = 6, calls inlined = 6, statements flattened = 94 [2025-03-08 22:16:04,370 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2025-03-08 22:16:04,371 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2025-03-08 22:16:04,371 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2025-03-08 22:16:04,371 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2025-03-08 22:16:04,375 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,376 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,379 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,394 INFO L175 MemorySlicer]: Split 16 memory accesses to 2 slices as follows [2, 14]. 88 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2, 0]. The 5 writes are split as follows [0, 5]. [2025-03-08 22:16:04,395 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,395 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,404 INFO L184 PluginConnector]: Executing the observer ReplaceArrayAssignments from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,407 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,407 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,408 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,409 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2025-03-08 22:16:04,410 INFO L112 PluginConnector]: ------------------------IcfgBuilder---------------------------- [2025-03-08 22:16:04,410 INFO L270 PluginConnector]: Initializing IcfgBuilder... [2025-03-08 22:16:04,410 INFO L274 PluginConnector]: IcfgBuilder initialized [2025-03-08 22:16:04,411 INFO L184 PluginConnector]: Executing the observer IcfgBuilderObserver from plugin IcfgBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (1/1) ... [2025-03-08 22:16:04,414 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2025-03-08 22:16:04,423 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:04,433 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2025-03-08 22:16:04,437 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2025-03-08 22:16:04,453 INFO L130 BoogieDeclarations]: Found specification of procedure read~$Pointer$#0 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure read~$Pointer$#1 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#0 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure read~int#1 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#0 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure write~int#1 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnHeap [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure write~$Pointer$#0 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure write~$Pointer$#1 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure insert_list [2025-03-08 22:16:04,454 INFO L138 BoogieDeclarations]: Found implementation of procedure insert_list [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#1 [2025-03-08 22:16:04,454 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2025-03-08 22:16:04,454 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2025-03-08 22:16:04,554 INFO L256 CfgBuilder]: Building ICFG [2025-03-08 22:16:04,556 INFO L286 CfgBuilder]: Building CFG for each procedure with an implementation [2025-03-08 22:16:04,755 INFO L? ?]: Removed 41 outVars from TransFormulas that were not future-live. [2025-03-08 22:16:04,755 INFO L307 CfgBuilder]: Performing block encoding [2025-03-08 22:16:04,763 INFO L331 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2025-03-08 22:16:04,764 INFO L336 CfgBuilder]: Removed 0 assume(true) statements. [2025-03-08 22:16:04,765 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.icfgbuilder CFG 08.03 10:16:04 BoogieIcfgContainer [2025-03-08 22:16:04,765 INFO L131 PluginConnector]: ------------------------ END IcfgBuilder---------------------------- [2025-03-08 22:16:04,767 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2025-03-08 22:16:04,767 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2025-03-08 22:16:04,771 INFO L274 PluginConnector]: TraceAbstraction initialized [2025-03-08 22:16:04,771 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 08.03 10:16:03" (1/3) ... [2025-03-08 22:16:04,772 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@34da4c55 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 08.03 10:16:04, skipping insertion in model container [2025-03-08 22:16:04,772 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.03 10:16:04" (2/3) ... [2025-03-08 22:16:04,772 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@34da4c55 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 08.03 10:16:04, skipping insertion in model container [2025-03-08 22:16:04,772 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.icfgbuilder CFG 08.03 10:16:04" (3/3) ... [2025-03-08 22:16:04,773 INFO L128 eAbstractionObserver]: Analyzing ICFG list_search-2.i [2025-03-08 22:16:04,785 INFO L216 ceAbstractionStarter]: Automizer settings: Hoare:None NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2025-03-08 22:16:04,786 INFO L151 ceAbstractionStarter]: Applying trace abstraction to ICFG list_search-2.i that has 2 procedures, 38 locations, 1 initial locations, 4 loop locations, and 2 error locations. [2025-03-08 22:16:04,814 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2025-03-08 22:16:04,824 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=None, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@93461f1, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2025-03-08 22:16:04,825 INFO L334 AbstractCegarLoop]: Starting to check reachability of 2 error locations. [2025-03-08 22:16:04,829 INFO L276 IsEmpty]: Start isEmpty. Operand has 38 states, 30 states have (on average 1.4333333333333333) internal successors, (43), 32 states have internal predecessors, (43), 4 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:04,835 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2025-03-08 22:16:04,835 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:04,835 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:04,836 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:04,840 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:04,841 INFO L85 PathProgramCache]: Analyzing trace with hash -1038609290, now seen corresponding path program 1 times [2025-03-08 22:16:04,846 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:04,846 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1560826882] [2025-03-08 22:16:04,846 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:04,846 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:04,945 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 38 statements into 1 equivalence classes. [2025-03-08 22:16:04,988 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 38 of 38 statements. [2025-03-08 22:16:04,989 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:04,989 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:05,248 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 1 proven. 22 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2025-03-08 22:16:05,249 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:05,249 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1560826882] [2025-03-08 22:16:05,250 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1560826882] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:05,250 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1689756508] [2025-03-08 22:16:05,251 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:05,251 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:05,251 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:05,253 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:05,255 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2025-03-08 22:16:05,344 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 38 statements into 1 equivalence classes. [2025-03-08 22:16:05,407 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 38 of 38 statements. [2025-03-08 22:16:05,407 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:05,407 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:05,409 INFO L256 TraceCheckSpWp]: Trace formula consists of 366 conjuncts, 1 conjuncts are in the unsatisfiable core [2025-03-08 22:16:05,412 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:05,424 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2025-03-08 22:16:05,424 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2025-03-08 22:16:05,424 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1689756508] provided 1 perfect and 0 imperfect interpolant sequences [2025-03-08 22:16:05,424 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2025-03-08 22:16:05,425 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [6] total 6 [2025-03-08 22:16:05,426 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [733572860] [2025-03-08 22:16:05,427 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2025-03-08 22:16:05,429 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2025-03-08 22:16:05,430 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:05,446 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2025-03-08 22:16:05,447 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2025-03-08 22:16:05,448 INFO L87 Difference]: Start difference. First operand has 38 states, 30 states have (on average 1.4333333333333333) internal successors, (43), 32 states have internal predecessors, (43), 4 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 1 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:05,458 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:05,458 INFO L93 Difference]: Finished difference Result 37 states and 46 transitions. [2025-03-08 22:16:05,459 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2025-03-08 22:16:05,460 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 1 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) Word has length 38 [2025-03-08 22:16:05,460 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:05,463 INFO L225 Difference]: With dead ends: 37 [2025-03-08 22:16:05,463 INFO L226 Difference]: Without dead ends: 35 [2025-03-08 22:16:05,465 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 43 GetRequests, 39 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2025-03-08 22:16:05,466 INFO L435 NwaCegarLoop]: 46 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 46 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:05,467 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 46 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2025-03-08 22:16:05,476 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 35 states. [2025-03-08 22:16:05,485 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 35 to 35. [2025-03-08 22:16:05,486 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 35 states, 28 states have (on average 1.2857142857142858) internal successors, (36), 29 states have internal predecessors, (36), 4 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:05,489 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 35 states to 35 states and 44 transitions. [2025-03-08 22:16:05,490 INFO L78 Accepts]: Start accepts. Automaton has 35 states and 44 transitions. Word has length 38 [2025-03-08 22:16:05,491 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:05,492 INFO L471 AbstractCegarLoop]: Abstraction has 35 states and 44 transitions. [2025-03-08 22:16:05,492 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 1 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:05,492 INFO L276 IsEmpty]: Start isEmpty. Operand 35 states and 44 transitions. [2025-03-08 22:16:05,493 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2025-03-08 22:16:05,493 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:05,494 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:05,500 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2025-03-08 22:16:05,695 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable0 [2025-03-08 22:16:05,695 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:05,695 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:05,696 INFO L85 PathProgramCache]: Analyzing trace with hash 520358131, now seen corresponding path program 1 times [2025-03-08 22:16:05,696 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:05,696 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1886602747] [2025-03-08 22:16:05,696 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:05,696 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:05,720 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 40 statements into 1 equivalence classes. [2025-03-08 22:16:05,733 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 40 of 40 statements. [2025-03-08 22:16:05,733 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:05,734 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:05,852 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 1 proven. 22 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2025-03-08 22:16:05,853 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:05,853 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1886602747] [2025-03-08 22:16:05,853 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1886602747] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:05,853 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1015992002] [2025-03-08 22:16:05,853 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:05,853 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:05,853 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:05,856 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:05,858 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2025-03-08 22:16:05,956 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 40 statements into 1 equivalence classes. [2025-03-08 22:16:06,013 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 40 of 40 statements. [2025-03-08 22:16:06,014 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:06,014 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:06,023 INFO L256 TraceCheckSpWp]: Trace formula consists of 371 conjuncts, 9 conjuncts are in the unsatisfiable core [2025-03-08 22:16:06,025 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:06,062 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 12 proven. 0 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2025-03-08 22:16:06,063 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2025-03-08 22:16:06,063 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1015992002] provided 1 perfect and 0 imperfect interpolant sequences [2025-03-08 22:16:06,063 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2025-03-08 22:16:06,063 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [6] total 7 [2025-03-08 22:16:06,063 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1527773833] [2025-03-08 22:16:06,063 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2025-03-08 22:16:06,064 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2025-03-08 22:16:06,064 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:06,065 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2025-03-08 22:16:06,065 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2025-03-08 22:16:06,066 INFO L87 Difference]: Start difference. First operand 35 states and 44 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:06,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:06,144 INFO L93 Difference]: Finished difference Result 45 states and 54 transitions. [2025-03-08 22:16:06,145 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2025-03-08 22:16:06,145 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 40 [2025-03-08 22:16:06,145 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:06,145 INFO L225 Difference]: With dead ends: 45 [2025-03-08 22:16:06,145 INFO L226 Difference]: Without dead ends: 45 [2025-03-08 22:16:06,146 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 47 GetRequests, 41 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2025-03-08 22:16:06,146 INFO L435 NwaCegarLoop]: 39 mSDtfsCounter, 37 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 52 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 109 SdHoareTripleChecker+Invalid, 55 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 52 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:06,146 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 109 Invalid, 55 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 52 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2025-03-08 22:16:06,147 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 45 states. [2025-03-08 22:16:06,151 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 45 to 41. [2025-03-08 22:16:06,152 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 34 states have (on average 1.2352941176470589) internal successors, (42), 34 states have internal predecessors, (42), 4 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:06,152 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 50 transitions. [2025-03-08 22:16:06,153 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 50 transitions. Word has length 40 [2025-03-08 22:16:06,153 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:06,154 INFO L471 AbstractCegarLoop]: Abstraction has 41 states and 50 transitions. [2025-03-08 22:16:06,154 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:06,154 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 50 transitions. [2025-03-08 22:16:06,154 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2025-03-08 22:16:06,155 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:06,155 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:06,161 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2025-03-08 22:16:06,355 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable1 [2025-03-08 22:16:06,356 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:06,356 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:06,356 INFO L85 PathProgramCache]: Analyzing trace with hash 99159909, now seen corresponding path program 1 times [2025-03-08 22:16:06,356 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:06,356 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [8826070] [2025-03-08 22:16:06,356 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:06,356 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:06,374 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 41 statements into 1 equivalence classes. [2025-03-08 22:16:06,384 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 41 of 41 statements. [2025-03-08 22:16:06,385 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:06,385 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:06,650 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 31 trivial. 0 not checked. [2025-03-08 22:16:06,650 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:06,651 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [8826070] [2025-03-08 22:16:06,651 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [8826070] provided 1 perfect and 0 imperfect interpolant sequences [2025-03-08 22:16:06,651 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2025-03-08 22:16:06,651 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2025-03-08 22:16:06,651 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [804558966] [2025-03-08 22:16:06,652 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2025-03-08 22:16:06,652 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2025-03-08 22:16:06,652 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:06,652 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2025-03-08 22:16:06,652 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2025-03-08 22:16:06,652 INFO L87 Difference]: Start difference. First operand 41 states and 50 transitions. Second operand has 7 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 1 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:06,714 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:06,714 INFO L93 Difference]: Finished difference Result 45 states and 55 transitions. [2025-03-08 22:16:06,715 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2025-03-08 22:16:06,716 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 1 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) Word has length 41 [2025-03-08 22:16:06,716 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:06,717 INFO L225 Difference]: With dead ends: 45 [2025-03-08 22:16:06,717 INFO L226 Difference]: Without dead ends: 45 [2025-03-08 22:16:06,717 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=26, Invalid=64, Unknown=0, NotChecked=0, Total=90 [2025-03-08 22:16:06,717 INFO L435 NwaCegarLoop]: 38 mSDtfsCounter, 8 mSDsluCounter, 171 mSDsCounter, 0 mSdLazyCounter, 47 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 8 SdHoareTripleChecker+Valid, 209 SdHoareTripleChecker+Invalid, 47 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 47 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:06,717 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [8 Valid, 209 Invalid, 47 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 47 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2025-03-08 22:16:06,718 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 45 states. [2025-03-08 22:16:06,721 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 45 to 45. [2025-03-08 22:16:06,722 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 45 states, 38 states have (on average 1.236842105263158) internal successors, (47), 38 states have internal predecessors, (47), 4 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:06,722 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 55 transitions. [2025-03-08 22:16:06,723 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 55 transitions. Word has length 41 [2025-03-08 22:16:06,723 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:06,724 INFO L471 AbstractCegarLoop]: Abstraction has 45 states and 55 transitions. [2025-03-08 22:16:06,724 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 1 states have call successors, (4), 1 states have call predecessors, (4), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:06,724 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 55 transitions. [2025-03-08 22:16:06,725 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2025-03-08 22:16:06,726 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:06,726 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:06,726 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2025-03-08 22:16:06,726 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:06,727 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:06,727 INFO L85 PathProgramCache]: Analyzing trace with hash 1841970244, now seen corresponding path program 1 times [2025-03-08 22:16:06,728 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:06,728 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [438969946] [2025-03-08 22:16:06,728 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:06,728 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:06,742 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 41 statements into 1 equivalence classes. [2025-03-08 22:16:06,748 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 41 of 41 statements. [2025-03-08 22:16:06,748 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:06,748 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:06,872 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 12 proven. 1 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2025-03-08 22:16:06,872 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:06,872 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [438969946] [2025-03-08 22:16:06,872 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [438969946] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:06,872 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1395044773] [2025-03-08 22:16:06,872 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:06,872 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:06,872 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:06,875 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:06,876 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2025-03-08 22:16:06,964 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 41 statements into 1 equivalence classes. [2025-03-08 22:16:06,998 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 41 of 41 statements. [2025-03-08 22:16:06,999 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:06,999 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:07,000 INFO L256 TraceCheckSpWp]: Trace formula consists of 364 conjuncts, 9 conjuncts are in the unsatisfiable core [2025-03-08 22:16:07,002 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:07,039 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 12 proven. 0 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2025-03-08 22:16:07,039 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2025-03-08 22:16:07,039 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1395044773] provided 1 perfect and 0 imperfect interpolant sequences [2025-03-08 22:16:07,039 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2025-03-08 22:16:07,039 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [8] total 9 [2025-03-08 22:16:07,039 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [259799368] [2025-03-08 22:16:07,039 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2025-03-08 22:16:07,039 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2025-03-08 22:16:07,039 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:07,040 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2025-03-08 22:16:07,040 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2025-03-08 22:16:07,040 INFO L87 Difference]: Start difference. First operand 45 states and 55 transitions. Second operand has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:07,116 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:07,116 INFO L93 Difference]: Finished difference Result 53 states and 64 transitions. [2025-03-08 22:16:07,116 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2025-03-08 22:16:07,117 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 41 [2025-03-08 22:16:07,118 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:07,118 INFO L225 Difference]: With dead ends: 53 [2025-03-08 22:16:07,119 INFO L226 Difference]: Without dead ends: 53 [2025-03-08 22:16:07,119 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 51 GetRequests, 41 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=29, Invalid=103, Unknown=0, NotChecked=0, Total=132 [2025-03-08 22:16:07,119 INFO L435 NwaCegarLoop]: 37 mSDtfsCounter, 43 mSDsluCounter, 112 mSDsCounter, 0 mSdLazyCounter, 65 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 43 SdHoareTripleChecker+Valid, 149 SdHoareTripleChecker+Invalid, 65 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 65 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:07,119 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [43 Valid, 149 Invalid, 65 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 65 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2025-03-08 22:16:07,120 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2025-03-08 22:16:07,124 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 47. [2025-03-08 22:16:07,124 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 47 states, 40 states have (on average 1.225) internal successors, (49), 40 states have internal predecessors, (49), 4 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:07,126 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 47 states to 47 states and 57 transitions. [2025-03-08 22:16:07,127 INFO L78 Accepts]: Start accepts. Automaton has 47 states and 57 transitions. Word has length 41 [2025-03-08 22:16:07,127 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:07,127 INFO L471 AbstractCegarLoop]: Abstraction has 47 states and 57 transitions. [2025-03-08 22:16:07,127 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:07,128 INFO L276 IsEmpty]: Start isEmpty. Operand 47 states and 57 transitions. [2025-03-08 22:16:07,128 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2025-03-08 22:16:07,130 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:07,130 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:07,137 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2025-03-08 22:16:07,330 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:07,331 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:07,331 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:07,331 INFO L85 PathProgramCache]: Analyzing trace with hash -185316592, now seen corresponding path program 1 times [2025-03-08 22:16:07,331 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:07,331 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [902886044] [2025-03-08 22:16:07,331 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:07,331 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:07,354 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 44 statements into 1 equivalence classes. [2025-03-08 22:16:07,364 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 44 of 44 statements. [2025-03-08 22:16:07,364 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:07,364 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:07,677 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 12 proven. 0 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2025-03-08 22:16:07,678 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:07,678 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [902886044] [2025-03-08 22:16:07,678 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [902886044] provided 1 perfect and 0 imperfect interpolant sequences [2025-03-08 22:16:07,678 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2025-03-08 22:16:07,678 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2025-03-08 22:16:07,678 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1631882211] [2025-03-08 22:16:07,678 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2025-03-08 22:16:07,679 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2025-03-08 22:16:07,679 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:07,679 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2025-03-08 22:16:07,679 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2025-03-08 22:16:07,679 INFO L87 Difference]: Start difference. First operand 47 states and 57 transitions. Second operand has 8 states, 8 states have (on average 3.625) internal successors, (29), 8 states have internal predecessors, (29), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:07,848 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:07,848 INFO L93 Difference]: Finished difference Result 50 states and 60 transitions. [2025-03-08 22:16:07,848 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2025-03-08 22:16:07,849 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.625) internal successors, (29), 8 states have internal predecessors, (29), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 44 [2025-03-08 22:16:07,849 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:07,850 INFO L225 Difference]: With dead ends: 50 [2025-03-08 22:16:07,850 INFO L226 Difference]: Without dead ends: 50 [2025-03-08 22:16:07,850 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=131, Unknown=0, NotChecked=0, Total=182 [2025-03-08 22:16:07,850 INFO L435 NwaCegarLoop]: 27 mSDtfsCounter, 26 mSDsluCounter, 110 mSDsCounter, 0 mSdLazyCounter, 129 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 136 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 129 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:07,851 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 137 Invalid, 136 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 129 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2025-03-08 22:16:07,851 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2025-03-08 22:16:07,853 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 48. [2025-03-08 22:16:07,853 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 48 states, 41 states have (on average 1.2195121951219512) internal successors, (50), 41 states have internal predecessors, (50), 4 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:07,854 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 48 states to 48 states and 58 transitions. [2025-03-08 22:16:07,854 INFO L78 Accepts]: Start accepts. Automaton has 48 states and 58 transitions. Word has length 44 [2025-03-08 22:16:07,854 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:07,854 INFO L471 AbstractCegarLoop]: Abstraction has 48 states and 58 transitions. [2025-03-08 22:16:07,854 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.625) internal successors, (29), 8 states have internal predecessors, (29), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:07,854 INFO L276 IsEmpty]: Start isEmpty. Operand 48 states and 58 transitions. [2025-03-08 22:16:07,854 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2025-03-08 22:16:07,854 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:07,855 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:07,855 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2025-03-08 22:16:07,855 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:07,855 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:07,855 INFO L85 PathProgramCache]: Analyzing trace with hash -2001284747, now seen corresponding path program 1 times [2025-03-08 22:16:07,855 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:07,855 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1104369869] [2025-03-08 22:16:07,855 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:07,856 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:07,868 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 44 statements into 1 equivalence classes. [2025-03-08 22:16:07,876 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 44 of 44 statements. [2025-03-08 22:16:07,876 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:07,876 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:08,255 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 21 proven. 3 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2025-03-08 22:16:08,256 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:08,256 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1104369869] [2025-03-08 22:16:08,256 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1104369869] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:08,256 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1036386674] [2025-03-08 22:16:08,256 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:08,256 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:08,256 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:08,258 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:08,260 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2025-03-08 22:16:08,356 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 44 statements into 1 equivalence classes. [2025-03-08 22:16:08,392 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 44 of 44 statements. [2025-03-08 22:16:08,393 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:08,393 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:08,394 INFO L256 TraceCheckSpWp]: Trace formula consists of 374 conjuncts, 21 conjuncts are in the unsatisfiable core [2025-03-08 22:16:08,397 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:08,453 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2025-03-08 22:16:08,516 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 8 [2025-03-08 22:16:08,519 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 19 proven. 5 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2025-03-08 22:16:08,519 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:08,641 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 19 proven. 5 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2025-03-08 22:16:08,642 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1036386674] provided 0 perfect and 2 imperfect interpolant sequences [2025-03-08 22:16:08,642 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2025-03-08 22:16:08,642 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 10, 10] total 20 [2025-03-08 22:16:08,642 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [643185630] [2025-03-08 22:16:08,642 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:08,643 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2025-03-08 22:16:08,643 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:08,643 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2025-03-08 22:16:08,643 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=50, Invalid=330, Unknown=0, NotChecked=0, Total=380 [2025-03-08 22:16:08,644 INFO L87 Difference]: Start difference. First operand 48 states and 58 transitions. Second operand has 20 states, 20 states have (on average 2.4) internal successors, (48), 17 states have internal predecessors, (48), 3 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) [2025-03-08 22:16:09,107 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:09,107 INFO L93 Difference]: Finished difference Result 61 states and 72 transitions. [2025-03-08 22:16:09,107 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2025-03-08 22:16:09,108 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 2.4) internal successors, (48), 17 states have internal predecessors, (48), 3 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) Word has length 44 [2025-03-08 22:16:09,108 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:09,109 INFO L225 Difference]: With dead ends: 61 [2025-03-08 22:16:09,109 INFO L226 Difference]: Without dead ends: 61 [2025-03-08 22:16:09,110 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 85 SyntacticMatches, 0 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 187 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=265, Invalid=1067, Unknown=0, NotChecked=0, Total=1332 [2025-03-08 22:16:09,110 INFO L435 NwaCegarLoop]: 33 mSDtfsCounter, 129 mSDsluCounter, 267 mSDsCounter, 0 mSdLazyCounter, 323 mSolverCounterSat, 48 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 129 SdHoareTripleChecker+Valid, 300 SdHoareTripleChecker+Invalid, 371 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 323 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:09,110 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [129 Valid, 300 Invalid, 371 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 323 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2025-03-08 22:16:09,111 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2025-03-08 22:16:09,113 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 50. [2025-03-08 22:16:09,114 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 50 states, 42 states have (on average 1.2142857142857142) internal successors, (51), 43 states have internal predecessors, (51), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:09,114 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 50 states to 50 states and 60 transitions. [2025-03-08 22:16:09,114 INFO L78 Accepts]: Start accepts. Automaton has 50 states and 60 transitions. Word has length 44 [2025-03-08 22:16:09,114 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:09,114 INFO L471 AbstractCegarLoop]: Abstraction has 50 states and 60 transitions. [2025-03-08 22:16:09,114 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 2.4) internal successors, (48), 17 states have internal predecessors, (48), 3 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) [2025-03-08 22:16:09,114 INFO L276 IsEmpty]: Start isEmpty. Operand 50 states and 60 transitions. [2025-03-08 22:16:09,115 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2025-03-08 22:16:09,115 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:09,115 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:09,122 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2025-03-08 22:16:09,319 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:09,319 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:09,319 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:09,320 INFO L85 PathProgramCache]: Analyzing trace with hash -2104238586, now seen corresponding path program 2 times [2025-03-08 22:16:09,320 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:09,320 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [169152080] [2025-03-08 22:16:09,320 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2025-03-08 22:16:09,320 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:09,333 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 partitioned 45 statements into 2 equivalence classes. [2025-03-08 22:16:09,345 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) and asserted 45 of 45 statements. [2025-03-08 22:16:09,346 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2025-03-08 22:16:09,347 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:09,609 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 24 proven. 2 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2025-03-08 22:16:09,610 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:09,610 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [169152080] [2025-03-08 22:16:09,610 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [169152080] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:09,610 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1094241502] [2025-03-08 22:16:09,610 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2025-03-08 22:16:09,610 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:09,610 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:09,612 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:09,613 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2025-03-08 22:16:09,693 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 partitioned 45 statements into 2 equivalence classes. [2025-03-08 22:16:09,732 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) and asserted 45 of 45 statements. [2025-03-08 22:16:09,732 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2025-03-08 22:16:09,732 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:09,738 INFO L256 TraceCheckSpWp]: Trace formula consists of 379 conjuncts, 31 conjuncts are in the unsatisfiable core [2025-03-08 22:16:09,740 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:09,794 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:09,893 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 8 [2025-03-08 22:16:09,896 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 20 proven. 8 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2025-03-08 22:16:09,897 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:10,021 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 20 proven. 6 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2025-03-08 22:16:10,021 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1094241502] provided 0 perfect and 2 imperfect interpolant sequences [2025-03-08 22:16:10,021 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2025-03-08 22:16:10,021 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 13, 11] total 24 [2025-03-08 22:16:10,021 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1422744218] [2025-03-08 22:16:10,022 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:10,022 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2025-03-08 22:16:10,022 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:10,022 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2025-03-08 22:16:10,022 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=69, Invalid=483, Unknown=0, NotChecked=0, Total=552 [2025-03-08 22:16:10,023 INFO L87 Difference]: Start difference. First operand 50 states and 60 transitions. Second operand has 24 states, 24 states have (on average 2.2916666666666665) internal successors, (55), 22 states have internal predecessors, (55), 3 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) [2025-03-08 22:16:10,491 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:10,492 INFO L93 Difference]: Finished difference Result 65 states and 77 transitions. [2025-03-08 22:16:10,492 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2025-03-08 22:16:10,492 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 2.2916666666666665) internal successors, (55), 22 states have internal predecessors, (55), 3 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) Word has length 45 [2025-03-08 22:16:10,494 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:10,494 INFO L225 Difference]: With dead ends: 65 [2025-03-08 22:16:10,494 INFO L226 Difference]: Without dead ends: 65 [2025-03-08 22:16:10,495 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 81 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 289 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=318, Invalid=1404, Unknown=0, NotChecked=0, Total=1722 [2025-03-08 22:16:10,496 INFO L435 NwaCegarLoop]: 32 mSDtfsCounter, 189 mSDsluCounter, 297 mSDsCounter, 0 mSdLazyCounter, 392 mSolverCounterSat, 49 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 189 SdHoareTripleChecker+Valid, 329 SdHoareTripleChecker+Invalid, 441 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 49 IncrementalHoareTripleChecker+Valid, 392 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:10,497 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [189 Valid, 329 Invalid, 441 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [49 Valid, 392 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2025-03-08 22:16:10,497 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 65 states. [2025-03-08 22:16:10,501 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 65 to 52. [2025-03-08 22:16:10,502 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 44 states have (on average 1.2045454545454546) internal successors, (53), 45 states have internal predecessors, (53), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:10,502 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 62 transitions. [2025-03-08 22:16:10,502 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 62 transitions. Word has length 45 [2025-03-08 22:16:10,502 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:10,502 INFO L471 AbstractCegarLoop]: Abstraction has 52 states and 62 transitions. [2025-03-08 22:16:10,503 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 2.2916666666666665) internal successors, (55), 22 states have internal predecessors, (55), 3 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) [2025-03-08 22:16:10,503 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 62 transitions. [2025-03-08 22:16:10,503 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2025-03-08 22:16:10,503 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:10,503 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:10,510 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2025-03-08 22:16:10,708 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,6 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:10,708 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:10,708 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:10,708 INFO L85 PathProgramCache]: Analyzing trace with hash -1663713165, now seen corresponding path program 3 times [2025-03-08 22:16:10,708 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:10,708 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1723324049] [2025-03-08 22:16:10,708 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2025-03-08 22:16:10,709 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:10,721 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 partitioned 48 statements into 4 equivalence classes. [2025-03-08 22:16:10,735 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) and asserted 41 of 48 statements. [2025-03-08 22:16:10,736 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2025-03-08 22:16:10,736 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:11,376 INFO L134 CoverageAnalysis]: Checked inductivity of 42 backedges. 19 proven. 7 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2025-03-08 22:16:11,376 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:11,376 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1723324049] [2025-03-08 22:16:11,376 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1723324049] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:11,377 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [951361835] [2025-03-08 22:16:11,377 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2025-03-08 22:16:11,377 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:11,378 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:11,380 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:11,388 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2025-03-08 22:16:11,471 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 partitioned 48 statements into 4 equivalence classes. [2025-03-08 22:16:11,507 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) and asserted 41 of 48 statements. [2025-03-08 22:16:11,508 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2025-03-08 22:16:11,508 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:11,510 INFO L256 TraceCheckSpWp]: Trace formula consists of 317 conjuncts, 78 conjuncts are in the unsatisfiable core [2025-03-08 22:16:11,513 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:11,521 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:11,553 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2025-03-08 22:16:11,563 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2025-03-08 22:16:11,663 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:11,671 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:11,745 INFO L349 Elim1Store]: treesize reduction 21, result has 44.7 percent of original size [2025-03-08 22:16:11,745 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 34 treesize of output 37 [2025-03-08 22:16:11,757 INFO L349 Elim1Store]: treesize reduction 21, result has 44.7 percent of original size [2025-03-08 22:16:11,757 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 28 treesize of output 31 [2025-03-08 22:16:11,793 INFO L349 Elim1Store]: treesize reduction 4, result has 66.7 percent of original size [2025-03-08 22:16:11,793 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 15 treesize of output 15 [2025-03-08 22:16:12,275 INFO L349 Elim1Store]: treesize reduction 56, result has 63.4 percent of original size [2025-03-08 22:16:12,275 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 6 select indices, 6 select index equivalence classes, 0 disjoint index pairs (out of 15 index pairs), introduced 8 new quantified variables, introduced 15 case distinctions, treesize of input 97 treesize of output 151 [2025-03-08 22:16:12,325 INFO L349 Elim1Store]: treesize reduction 8, result has 83.7 percent of original size [2025-03-08 22:16:12,325 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 4 select indices, 4 select index equivalence classes, 0 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 6 case distinctions, treesize of input 53 treesize of output 77 [2025-03-08 22:16:12,844 INFO L134 CoverageAnalysis]: Checked inductivity of 42 backedges. 21 proven. 14 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2025-03-08 22:16:12,844 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:13,242 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:13,243 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 33 treesize of output 33 [2025-03-08 22:16:13,248 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:13,248 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 16 treesize of output 20 [2025-03-08 22:16:13,316 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [951361835] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:13,316 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:13,316 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 17] total 25 [2025-03-08 22:16:13,316 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2046993911] [2025-03-08 22:16:13,316 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:13,316 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2025-03-08 22:16:13,316 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:13,316 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2025-03-08 22:16:13,317 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=107, Invalid=949, Unknown=0, NotChecked=0, Total=1056 [2025-03-08 22:16:13,317 INFO L87 Difference]: Start difference. First operand 52 states and 62 transitions. Second operand has 25 states, 25 states have (on average 2.08) internal successors, (52), 22 states have internal predecessors, (52), 3 states have call successors, (5), 2 states have call predecessors, (5), 5 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) [2025-03-08 22:16:14,159 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:14,160 INFO L93 Difference]: Finished difference Result 64 states and 76 transitions. [2025-03-08 22:16:14,160 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2025-03-08 22:16:14,160 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 25 states have (on average 2.08) internal successors, (52), 22 states have internal predecessors, (52), 3 states have call successors, (5), 2 states have call predecessors, (5), 5 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) Word has length 48 [2025-03-08 22:16:14,160 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:14,161 INFO L225 Difference]: With dead ends: 64 [2025-03-08 22:16:14,161 INFO L226 Difference]: Without dead ends: 64 [2025-03-08 22:16:14,161 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 96 GetRequests, 51 SyntacticMatches, 0 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 368 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=263, Invalid=1899, Unknown=0, NotChecked=0, Total=2162 [2025-03-08 22:16:14,162 INFO L435 NwaCegarLoop]: 35 mSDtfsCounter, 99 mSDsluCounter, 354 mSDsCounter, 0 mSdLazyCounter, 532 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 99 SdHoareTripleChecker+Valid, 389 SdHoareTripleChecker+Invalid, 562 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 532 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:14,162 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [99 Valid, 389 Invalid, 562 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 532 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2025-03-08 22:16:14,162 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2025-03-08 22:16:14,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 53. [2025-03-08 22:16:14,166 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 45 states have (on average 1.2) internal successors, (54), 46 states have internal predecessors, (54), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:14,168 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 63 transitions. [2025-03-08 22:16:14,168 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 63 transitions. Word has length 48 [2025-03-08 22:16:14,168 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:14,168 INFO L471 AbstractCegarLoop]: Abstraction has 53 states and 63 transitions. [2025-03-08 22:16:14,168 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 25 states have (on average 2.08) internal successors, (52), 22 states have internal predecessors, (52), 3 states have call successors, (5), 2 states have call predecessors, (5), 5 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) [2025-03-08 22:16:14,168 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 63 transitions. [2025-03-08 22:16:14,170 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2025-03-08 22:16:14,170 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:14,170 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:14,176 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2025-03-08 22:16:14,370 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:14,370 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:14,371 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:14,371 INFO L85 PathProgramCache]: Analyzing trace with hash 289938564, now seen corresponding path program 4 times [2025-03-08 22:16:14,371 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:14,371 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [19933183] [2025-03-08 22:16:14,371 INFO L95 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2025-03-08 22:16:14,371 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:14,382 INFO L108 AnnotateAndAsserter]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST partitioned 49 statements into 2 equivalence classes. [2025-03-08 22:16:14,396 INFO L111 AnnotateAndAsserter]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 1 check-sat command(s) and asserted 44 of 49 statements. [2025-03-08 22:16:14,396 INFO L114 AnnotateAndAsserter]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 1 check-sat command(s) [2025-03-08 22:16:14,396 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:15,041 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 25 proven. 11 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2025-03-08 22:16:15,041 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:15,041 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [19933183] [2025-03-08 22:16:15,041 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [19933183] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:15,041 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [688933892] [2025-03-08 22:16:15,042 INFO L95 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2025-03-08 22:16:15,042 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:15,042 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:15,044 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:15,045 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2025-03-08 22:16:15,132 INFO L108 AnnotateAndAsserter]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST partitioned 49 statements into 2 equivalence classes. [2025-03-08 22:16:15,166 INFO L111 AnnotateAndAsserter]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 1 check-sat command(s) and asserted 44 of 49 statements. [2025-03-08 22:16:15,167 INFO L114 AnnotateAndAsserter]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 1 check-sat command(s) [2025-03-08 22:16:15,167 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:15,172 INFO L256 TraceCheckSpWp]: Trace formula consists of 363 conjuncts, 59 conjuncts are in the unsatisfiable core [2025-03-08 22:16:15,175 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:15,186 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:15,193 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2025-03-08 22:16:15,265 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 14 [2025-03-08 22:16:15,273 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2025-03-08 22:16:15,347 INFO L349 Elim1Store]: treesize reduction 25, result has 45.7 percent of original size [2025-03-08 22:16:15,347 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 28 [2025-03-08 22:16:15,358 INFO L349 Elim1Store]: treesize reduction 4, result has 71.4 percent of original size [2025-03-08 22:16:15,359 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 17 [2025-03-08 22:16:15,438 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 3 [2025-03-08 22:16:15,485 INFO L349 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2025-03-08 22:16:15,485 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 3 new quantified variables, introduced 1 case distinctions, treesize of input 38 treesize of output 15 [2025-03-08 22:16:15,488 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 23 proven. 15 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2025-03-08 22:16:15,488 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:15,599 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:15,599 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 22 [2025-03-08 22:16:15,632 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [688933892] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:15,632 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:15,632 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 18] total 24 [2025-03-08 22:16:15,632 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [248460432] [2025-03-08 22:16:15,632 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:15,632 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2025-03-08 22:16:15,632 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:15,633 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2025-03-08 22:16:15,633 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=72, Invalid=629, Unknown=1, NotChecked=0, Total=702 [2025-03-08 22:16:15,633 INFO L87 Difference]: Start difference. First operand 53 states and 63 transitions. Second operand has 24 states, 24 states have (on average 2.25) internal successors, (54), 22 states have internal predecessors, (54), 3 states have call successors, (4), 3 states have call predecessors, (4), 5 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) [2025-03-08 22:16:16,463 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:16,463 INFO L93 Difference]: Finished difference Result 70 states and 84 transitions. [2025-03-08 22:16:16,464 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2025-03-08 22:16:16,464 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 2.25) internal successors, (54), 22 states have internal predecessors, (54), 3 states have call successors, (4), 3 states have call predecessors, (4), 5 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) Word has length 49 [2025-03-08 22:16:16,464 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:16,464 INFO L225 Difference]: With dead ends: 70 [2025-03-08 22:16:16,464 INFO L226 Difference]: Without dead ends: 70 [2025-03-08 22:16:16,465 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 109 GetRequests, 66 SyntacticMatches, 0 SemanticMatches, 43 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 380 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=280, Invalid=1699, Unknown=1, NotChecked=0, Total=1980 [2025-03-08 22:16:16,465 INFO L435 NwaCegarLoop]: 28 mSDtfsCounter, 163 mSDsluCounter, 314 mSDsCounter, 0 mSdLazyCounter, 614 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 163 SdHoareTripleChecker+Valid, 342 SdHoareTripleChecker+Invalid, 652 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 614 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:16,466 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [163 Valid, 342 Invalid, 652 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 614 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2025-03-08 22:16:16,466 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2025-03-08 22:16:16,468 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 56. [2025-03-08 22:16:16,468 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 48 states have (on average 1.2083333333333333) internal successors, (58), 49 states have internal predecessors, (58), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:16,469 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 67 transitions. [2025-03-08 22:16:16,469 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 67 transitions. Word has length 49 [2025-03-08 22:16:16,469 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:16,469 INFO L471 AbstractCegarLoop]: Abstraction has 56 states and 67 transitions. [2025-03-08 22:16:16,469 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 2.25) internal successors, (54), 22 states have internal predecessors, (54), 3 states have call successors, (4), 3 states have call predecessors, (4), 5 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) [2025-03-08 22:16:16,469 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 67 transitions. [2025-03-08 22:16:16,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2025-03-08 22:16:16,473 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:16,473 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:16,480 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2025-03-08 22:16:16,673 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:16,674 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:16,674 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:16,675 INFO L85 PathProgramCache]: Analyzing trace with hash 858599878, now seen corresponding path program 1 times [2025-03-08 22:16:16,675 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:16,675 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2024774755] [2025-03-08 22:16:16,675 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:16,675 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:16,694 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 50 statements into 1 equivalence classes. [2025-03-08 22:16:16,700 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 50 of 50 statements. [2025-03-08 22:16:16,701 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:16,701 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:16,888 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2025-03-08 22:16:16,888 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:16,889 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2024774755] [2025-03-08 22:16:16,889 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2024774755] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:16,889 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1818803839] [2025-03-08 22:16:16,889 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:16,889 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:16,889 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:16,891 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:16,893 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2025-03-08 22:16:16,990 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 50 statements into 1 equivalence classes. [2025-03-08 22:16:17,026 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 50 of 50 statements. [2025-03-08 22:16:17,026 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:17,026 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:17,028 INFO L256 TraceCheckSpWp]: Trace formula consists of 438 conjuncts, 39 conjuncts are in the unsatisfiable core [2025-03-08 22:16:17,031 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:17,046 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 22 treesize of output 7 [2025-03-08 22:16:17,101 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:17,101 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 32 treesize of output 32 [2025-03-08 22:16:17,129 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 12 proven. 0 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2025-03-08 22:16:17,130 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2025-03-08 22:16:17,130 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1818803839] provided 1 perfect and 0 imperfect interpolant sequences [2025-03-08 22:16:17,130 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2025-03-08 22:16:17,130 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [10] total 15 [2025-03-08 22:16:17,130 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [460397] [2025-03-08 22:16:17,130 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2025-03-08 22:16:17,130 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2025-03-08 22:16:17,130 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:17,131 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2025-03-08 22:16:17,131 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=29, Invalid=181, Unknown=0, NotChecked=0, Total=210 [2025-03-08 22:16:17,131 INFO L87 Difference]: Start difference. First operand 56 states and 67 transitions. Second operand has 9 states, 9 states have (on average 3.4444444444444446) internal successors, (31), 9 states have internal predecessors, (31), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:17,228 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:17,228 INFO L93 Difference]: Finished difference Result 56 states and 66 transitions. [2025-03-08 22:16:17,228 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2025-03-08 22:16:17,228 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 3.4444444444444446) internal successors, (31), 9 states have internal predecessors, (31), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 50 [2025-03-08 22:16:17,229 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:17,229 INFO L225 Difference]: With dead ends: 56 [2025-03-08 22:16:17,229 INFO L226 Difference]: Without dead ends: 56 [2025-03-08 22:16:17,229 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 46 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=41, Invalid=265, Unknown=0, NotChecked=0, Total=306 [2025-03-08 22:16:17,229 INFO L435 NwaCegarLoop]: 25 mSDtfsCounter, 16 mSDsluCounter, 136 mSDsCounter, 0 mSdLazyCounter, 150 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 161 SdHoareTripleChecker+Invalid, 151 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 150 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:17,230 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 161 Invalid, 151 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 150 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2025-03-08 22:16:17,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 56 states. [2025-03-08 22:16:17,232 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 56 to 56. [2025-03-08 22:16:17,232 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 48 states have (on average 1.1875) internal successors, (57), 49 states have internal predecessors, (57), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:17,232 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 66 transitions. [2025-03-08 22:16:17,232 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 66 transitions. Word has length 50 [2025-03-08 22:16:17,232 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:17,232 INFO L471 AbstractCegarLoop]: Abstraction has 56 states and 66 transitions. [2025-03-08 22:16:17,233 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 3.4444444444444446) internal successors, (31), 9 states have internal predecessors, (31), 1 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2025-03-08 22:16:17,233 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 66 transitions. [2025-03-08 22:16:17,233 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2025-03-08 22:16:17,233 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:17,233 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:17,240 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2025-03-08 22:16:17,438 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 9 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2025-03-08 22:16:17,438 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:17,438 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:17,438 INFO L85 PathProgramCache]: Analyzing trace with hash -1782864889, now seen corresponding path program 1 times [2025-03-08 22:16:17,438 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:17,438 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [428152792] [2025-03-08 22:16:17,438 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:17,439 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:17,450 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 52 statements into 1 equivalence classes. [2025-03-08 22:16:17,458 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 52 of 52 statements. [2025-03-08 22:16:17,458 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:17,458 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:18,081 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 19 proven. 9 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2025-03-08 22:16:18,082 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:18,082 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [428152792] [2025-03-08 22:16:18,082 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [428152792] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:18,082 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1276645903] [2025-03-08 22:16:18,082 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:18,082 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:18,082 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:18,084 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:18,086 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2025-03-08 22:16:18,192 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 52 statements into 1 equivalence classes. [2025-03-08 22:16:18,230 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 52 of 52 statements. [2025-03-08 22:16:18,231 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:18,231 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:18,233 INFO L256 TraceCheckSpWp]: Trace formula consists of 439 conjuncts, 66 conjuncts are in the unsatisfiable core [2025-03-08 22:16:18,236 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:18,243 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:18,268 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 18 treesize of output 7 [2025-03-08 22:16:18,391 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:18,398 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:18,481 INFO L349 Elim1Store]: treesize reduction 4, result has 66.7 percent of original size [2025-03-08 22:16:18,481 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 15 treesize of output 15 [2025-03-08 22:16:18,486 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 15 [2025-03-08 22:16:18,612 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 27 treesize of output 15 [2025-03-08 22:16:18,617 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2025-03-08 22:16:18,666 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 19 proven. 10 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2025-03-08 22:16:18,666 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:18,848 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1276645903] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:18,849 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:18,849 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 15] total 32 [2025-03-08 22:16:18,849 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1749332076] [2025-03-08 22:16:18,849 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:18,849 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2025-03-08 22:16:18,849 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:18,853 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2025-03-08 22:16:18,853 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=102, Invalid=1230, Unknown=0, NotChecked=0, Total=1332 [2025-03-08 22:16:18,853 INFO L87 Difference]: Start difference. First operand 56 states and 66 transitions. Second operand has 32 states, 32 states have (on average 2.0625) internal successors, (66), 30 states have internal predecessors, (66), 3 states have call successors, (5), 3 states have call predecessors, (5), 5 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) [2025-03-08 22:16:19,271 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:19,271 INFO L93 Difference]: Finished difference Result 58 states and 67 transitions. [2025-03-08 22:16:19,271 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2025-03-08 22:16:19,271 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 2.0625) internal successors, (66), 30 states have internal predecessors, (66), 3 states have call successors, (5), 3 states have call predecessors, (5), 5 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) Word has length 52 [2025-03-08 22:16:19,271 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:19,272 INFO L225 Difference]: With dead ends: 58 [2025-03-08 22:16:19,272 INFO L226 Difference]: Without dead ends: 58 [2025-03-08 22:16:19,272 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 103 GetRequests, 60 SyntacticMatches, 0 SemanticMatches, 43 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 396 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=173, Invalid=1807, Unknown=0, NotChecked=0, Total=1980 [2025-03-08 22:16:19,273 INFO L435 NwaCegarLoop]: 23 mSDtfsCounter, 54 mSDsluCounter, 366 mSDsCounter, 0 mSdLazyCounter, 601 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 389 SdHoareTripleChecker+Invalid, 614 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 601 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:19,273 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 389 Invalid, 614 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 601 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2025-03-08 22:16:19,273 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2025-03-08 22:16:19,279 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 56. [2025-03-08 22:16:19,279 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 48 states have (on average 1.1666666666666667) internal successors, (56), 49 states have internal predecessors, (56), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:19,279 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 65 transitions. [2025-03-08 22:16:19,279 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 65 transitions. Word has length 52 [2025-03-08 22:16:19,279 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:19,279 INFO L471 AbstractCegarLoop]: Abstraction has 56 states and 65 transitions. [2025-03-08 22:16:19,279 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 2.0625) internal successors, (66), 30 states have internal predecessors, (66), 3 states have call successors, (5), 3 states have call predecessors, (5), 5 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) [2025-03-08 22:16:19,280 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 65 transitions. [2025-03-08 22:16:19,280 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2025-03-08 22:16:19,280 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:19,280 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:19,289 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2025-03-08 22:16:19,480 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,10 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:19,481 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:19,481 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:19,481 INFO L85 PathProgramCache]: Analyzing trace with hash 1040845109, now seen corresponding path program 5 times [2025-03-08 22:16:19,481 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:19,481 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1574382934] [2025-03-08 22:16:19,482 INFO L95 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2025-03-08 22:16:19,482 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:19,495 INFO L108 AnnotateAndAsserter]: Assert order INSIDE_LOOP_FIRST1 partitioned 52 statements into 4 equivalence classes. [2025-03-08 22:16:19,510 INFO L111 AnnotateAndAsserter]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) and asserted 52 of 52 statements. [2025-03-08 22:16:19,511 INFO L114 AnnotateAndAsserter]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2025-03-08 22:16:19,512 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:20,669 INFO L134 CoverageAnalysis]: Checked inductivity of 54 backedges. 22 proven. 26 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2025-03-08 22:16:20,670 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:20,670 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1574382934] [2025-03-08 22:16:20,670 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1574382934] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:20,670 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1025528003] [2025-03-08 22:16:20,670 INFO L95 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2025-03-08 22:16:20,670 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:20,670 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:20,672 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:20,672 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2025-03-08 22:16:20,780 INFO L108 AnnotateAndAsserter]: Assert order INSIDE_LOOP_FIRST1 partitioned 52 statements into 4 equivalence classes. [2025-03-08 22:16:20,837 INFO L111 AnnotateAndAsserter]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) and asserted 52 of 52 statements. [2025-03-08 22:16:20,837 INFO L114 AnnotateAndAsserter]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2025-03-08 22:16:20,837 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:20,839 INFO L256 TraceCheckSpWp]: Trace formula consists of 404 conjuncts, 98 conjuncts are in the unsatisfiable core [2025-03-08 22:16:20,845 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:20,856 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:20,887 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2025-03-08 22:16:21,024 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:21,035 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:21,125 INFO L349 Elim1Store]: treesize reduction 21, result has 44.7 percent of original size [2025-03-08 22:16:21,125 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 21 treesize of output 24 [2025-03-08 22:16:21,147 INFO L349 Elim1Store]: treesize reduction 30, result has 37.5 percent of original size [2025-03-08 22:16:21,147 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 21 treesize of output 29 [2025-03-08 22:16:21,216 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:21,222 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:21,319 INFO L349 Elim1Store]: treesize reduction 21, result has 44.7 percent of original size [2025-03-08 22:16:21,319 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 20 treesize of output 23 [2025-03-08 22:16:21,325 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:21,333 INFO L349 Elim1Store]: treesize reduction 29, result has 14.7 percent of original size [2025-03-08 22:16:21,333 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 3 new quantified variables, introduced 2 case distinctions, treesize of input 54 treesize of output 43 [2025-03-08 22:16:21,339 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:21,343 INFO L349 Elim1Store]: treesize reduction 4, result has 75.0 percent of original size [2025-03-08 22:16:21,343 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 3 select indices, 3 select index equivalence classes, 2 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 1 case distinctions, treesize of input 28 treesize of output 22 [2025-03-08 22:16:21,487 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:21,487 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 0 case distinctions, treesize of input 19 treesize of output 7 [2025-03-08 22:16:21,536 INFO L349 Elim1Store]: treesize reduction 21, result has 16.0 percent of original size [2025-03-08 22:16:21,537 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 5 new quantified variables, introduced 3 case distinctions, treesize of input 60 treesize of output 26 [2025-03-08 22:16:21,560 INFO L134 CoverageAnalysis]: Checked inductivity of 54 backedges. 19 proven. 17 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2025-03-08 22:16:21,561 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:21,740 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:21,740 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 40 treesize of output 41 [2025-03-08 22:16:21,744 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:21,744 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 34 treesize of output 38 [2025-03-08 22:16:21,795 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1025528003] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:21,795 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:21,795 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24, 23] total 39 [2025-03-08 22:16:21,795 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1723443215] [2025-03-08 22:16:21,795 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:21,796 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 39 states [2025-03-08 22:16:21,796 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:21,796 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 39 interpolants. [2025-03-08 22:16:21,797 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=139, Invalid=1753, Unknown=0, NotChecked=0, Total=1892 [2025-03-08 22:16:21,797 INFO L87 Difference]: Start difference. First operand 56 states and 65 transitions. Second operand has 39 states, 39 states have (on average 1.641025641025641) internal successors, (64), 35 states have internal predecessors, (64), 6 states have call successors, (6), 4 states have call predecessors, (6), 7 states have return successors, (7), 7 states have call predecessors, (7), 6 states have call successors, (7) [2025-03-08 22:16:23,562 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:23,563 INFO L93 Difference]: Finished difference Result 78 states and 92 transitions. [2025-03-08 22:16:23,563 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2025-03-08 22:16:23,563 INFO L78 Accepts]: Start accepts. Automaton has has 39 states, 39 states have (on average 1.641025641025641) internal successors, (64), 35 states have internal predecessors, (64), 6 states have call successors, (6), 4 states have call predecessors, (6), 7 states have return successors, (7), 7 states have call predecessors, (7), 6 states have call successors, (7) Word has length 52 [2025-03-08 22:16:23,563 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:23,564 INFO L225 Difference]: With dead ends: 78 [2025-03-08 22:16:23,565 INFO L226 Difference]: Without dead ends: 78 [2025-03-08 22:16:23,566 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 130 GetRequests, 60 SyntacticMatches, 0 SemanticMatches, 70 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1206 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=604, Invalid=4508, Unknown=0, NotChecked=0, Total=5112 [2025-03-08 22:16:23,566 INFO L435 NwaCegarLoop]: 27 mSDtfsCounter, 282 mSDsluCounter, 358 mSDsCounter, 0 mSdLazyCounter, 825 mSolverCounterSat, 63 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 282 SdHoareTripleChecker+Valid, 385 SdHoareTripleChecker+Invalid, 888 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 63 IncrementalHoareTripleChecker+Valid, 825 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:23,566 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [282 Valid, 385 Invalid, 888 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [63 Valid, 825 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2025-03-08 22:16:23,567 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2025-03-08 22:16:23,572 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 60. [2025-03-08 22:16:23,573 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 52 states have (on average 1.1730769230769231) internal successors, (61), 53 states have internal predecessors, (61), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:23,574 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 70 transitions. [2025-03-08 22:16:23,574 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 70 transitions. Word has length 52 [2025-03-08 22:16:23,574 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:23,574 INFO L471 AbstractCegarLoop]: Abstraction has 60 states and 70 transitions. [2025-03-08 22:16:23,574 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 39 states, 39 states have (on average 1.641025641025641) internal successors, (64), 35 states have internal predecessors, (64), 6 states have call successors, (6), 4 states have call predecessors, (6), 7 states have return successors, (7), 7 states have call predecessors, (7), 6 states have call successors, (7) [2025-03-08 22:16:23,574 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 70 transitions. [2025-03-08 22:16:23,574 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2025-03-08 22:16:23,574 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:23,574 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 3, 3, 3, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:23,582 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Ended with exit code 0 [2025-03-08 22:16:23,775 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2025-03-08 22:16:23,775 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:23,775 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:23,775 INFO L85 PathProgramCache]: Analyzing trace with hash -363541371, now seen corresponding path program 2 times [2025-03-08 22:16:23,776 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:23,776 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1965950732] [2025-03-08 22:16:23,776 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2025-03-08 22:16:23,776 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:23,790 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 partitioned 56 statements into 2 equivalence classes. [2025-03-08 22:16:23,795 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) and asserted 56 of 56 statements. [2025-03-08 22:16:23,795 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2025-03-08 22:16:23,795 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:24,449 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 19 proven. 10 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2025-03-08 22:16:24,449 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:24,449 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1965950732] [2025-03-08 22:16:24,450 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1965950732] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:24,450 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1608629128] [2025-03-08 22:16:24,450 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2025-03-08 22:16:24,450 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:24,450 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:24,451 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:24,453 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2025-03-08 22:16:24,562 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 partitioned 56 statements into 2 equivalence classes. [2025-03-08 22:16:24,600 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) and asserted 56 of 56 statements. [2025-03-08 22:16:24,600 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2025-03-08 22:16:24,600 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:24,602 INFO L256 TraceCheckSpWp]: Trace formula consists of 454 conjuncts, 77 conjuncts are in the unsatisfiable core [2025-03-08 22:16:24,606 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:24,618 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 18 treesize of output 7 [2025-03-08 22:16:24,643 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:24,647 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:24,688 WARN L851 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |c_#memory_int#1| .cse0))) (= .cse0 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))) (= (select (select |c_#memory_int#1| .cse1) 0) 1)))) is different from false [2025-03-08 22:16:24,689 WARN L873 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |c_#memory_int#1| .cse0))) (= .cse0 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))) (= (select (select |c_#memory_int#1| .cse1) 0) 1)))) is different from true [2025-03-08 22:16:24,828 WARN L851 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |c_#memory_int#1| .cse0))) (= .cse0 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))) (= (select (select |c_#memory_int#1| .cse1) 0) 1)))) is different from false [2025-03-08 22:16:24,830 WARN L873 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |c_#memory_int#1| .cse0))) (= .cse0 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))) (= (select (select |c_#memory_int#1| .cse1) 0) 1)))) is different from true [2025-03-08 22:16:24,896 WARN L851 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |c_#memory_int#1| .cse0))) (= .cse0 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))) (= (select (select |c_#memory_int#1| .cse1) 0) 1))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_search_list_#res#1.base|))) is different from false [2025-03-08 22:16:24,898 WARN L873 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |c_#memory_int#1| .cse0))) (= .cse0 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))) (= (select (select |c_#memory_int#1| .cse1) 0) 1))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_search_list_#res#1.base|))) is different from true [2025-03-08 22:16:24,922 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:24,922 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 20 treesize of output 24 [2025-03-08 22:16:24,933 INFO L349 Elim1Store]: treesize reduction 3, result has 81.3 percent of original size [2025-03-08 22:16:24,933 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 20 [2025-03-08 22:16:24,952 WARN L851 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (or (and (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 1) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse0 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |#memory_int#1| .cse0))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|)) (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0))))) (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 0)) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0)) is different from false [2025-03-08 22:16:24,954 WARN L873 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (or (and (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 1) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse0 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |#memory_int#1| .cse0))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|)) (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0))))) (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 0)) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0)) is different from true [2025-03-08 22:16:24,977 WARN L851 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse0 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |#memory_int#1| .cse0))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|)) (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0)))) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0)) is different from false [2025-03-08 22:16:24,979 WARN L873 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse0 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |#memory_int#1| .cse0))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|)) (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0)))) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0)) is different from true [2025-03-08 22:16:25,017 WARN L851 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse0 .cse1)) (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (and (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| .cse2) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse3 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse3 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse3 (select |#memory_int#1| .cse3))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1))))))))))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| c_~head~0.base) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0)) is different from false [2025-03-08 22:16:25,020 WARN L873 $PredicateComparison]: unable to prove that (and (= c_~head~0.offset 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse0 .cse1)) (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (and (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| .cse2) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse3 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse3 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse3 (select |#memory_int#1| .cse3))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1))))))))))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| c_~head~0.base) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0)) is different from true [2025-03-08 22:16:25,063 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse4 (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)))) (and (= (select (select |c_#memory_$Pointer$#1.offset| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4))) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse0 .cse1)) (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse3 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse3 (select |#memory_int#1| .cse3))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| .cse3)))) (= 2 (select (select |#memory_int#1| .cse2) 0))))))) (and .cse4 (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|))))) (or .cse4 (not (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| |c_ULTIMATE.start_delete_list_~l#1.base|))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0))) is different from false [2025-03-08 22:16:25,065 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse4 (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)))) (and (= (select (select |c_#memory_$Pointer$#1.offset| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4) 0) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4))) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse0 .cse1)) (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse3 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse3 (select |#memory_int#1| .cse3))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| .cse3)))) (= 2 (select (select |#memory_int#1| .cse2) 0))))))) (and .cse4 (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|))))) (or .cse4 (not (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| |c_ULTIMATE.start_delete_list_~l#1.base|))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0))) is different from true [2025-03-08 22:16:25,110 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:25,111 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 4 select indices, 4 select index equivalence classes, 0 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 6 case distinctions, treesize of input 98 treesize of output 128 [2025-03-08 22:16:25,118 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2025-03-08 22:16:25,217 WARN L851 $PredicateComparison]: unable to prove that (and (= |c_ULTIMATE.start_delete_list_#t~mem34#1.offset| 0) (or (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int))) (|#memory_int#1| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (not (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)) (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_delete_list_~l#1.base|) 0)) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |#memory_int#1| .cse0)))))) (not (= |c_ULTIMATE.start_delete_list_~l#1.base| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|)))) is different from false [2025-03-08 22:16:25,219 WARN L873 $PredicateComparison]: unable to prove that (and (= |c_ULTIMATE.start_delete_list_#t~mem34#1.offset| 0) (or (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int))) (|#memory_int#1| (Array Int (Array Int Int)))) (let ((.cse0 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (not (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)) (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_delete_list_~l#1.base|) 0)) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse0 (select |#memory_int#1| .cse0)))))) (not (= |c_ULTIMATE.start_delete_list_~l#1.base| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|)))) is different from true [2025-03-08 22:16:25,223 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 19 proven. 4 refuted. 0 times theorem prover too weak. 21 trivial. 6 not checked. [2025-03-08 22:16:25,224 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:25,614 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 28 treesize of output 22 [2025-03-08 22:16:25,665 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1608629128] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:25,665 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:25,665 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 18] total 28 [2025-03-08 22:16:25,665 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1073140158] [2025-03-08 22:16:25,665 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:25,666 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2025-03-08 22:16:25,666 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:25,666 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2025-03-08 22:16:25,666 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=90, Invalid=737, Unknown=17, NotChecked=488, Total=1332 [2025-03-08 22:16:25,666 INFO L87 Difference]: Start difference. First operand 60 states and 70 transitions. Second operand has 28 states, 28 states have (on average 2.0357142857142856) internal successors, (57), 27 states have internal predecessors, (57), 2 states have call successors, (4), 2 states have call predecessors, (4), 3 states have return successors, (5), 4 states have call predecessors, (5), 2 states have call successors, (5) [2025-03-08 22:16:25,872 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse1 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse3 (= .cse1 0)) (.cse0 (select |c_#memory_int#1| .cse2))) (and (or (= (select .cse0 .cse1) 1) (and (= .cse2 c_~head~0.base) .cse3)) (= c_~head~0.offset 0) .cse3 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse2) 0) 1)))) (= (select .cse0 0) 1))))) is different from false [2025-03-08 22:16:25,873 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse1 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse3 (= .cse1 0)) (.cse0 (select |c_#memory_int#1| .cse2))) (and (or (= (select .cse0 .cse1) 1) (and (= .cse2 c_~head~0.base) .cse3)) (= c_~head~0.offset 0) .cse3 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse2) 0) 1)))) (= (select .cse0 0) 1))))) is different from true [2025-03-08 22:16:25,876 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse2 (select |c_#memory_int#1| .cse0))) (and (= c_~head~0.offset 0) (or (and (= .cse0 c_~head~0.base) .cse1) (not (= (select .cse2 .cse3) |c_ULTIMATE.start_search_list_~k#1|))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select .cse2 0) 1))))) is different from false [2025-03-08 22:16:25,878 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse2 (select |c_#memory_int#1| .cse0))) (and (= c_~head~0.offset 0) (or (and (= .cse0 c_~head~0.base) .cse1) (not (= (select .cse2 .cse3) |c_ULTIMATE.start_search_list_~k#1|))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select .cse2 0) 1))))) is different from true [2025-03-08 22:16:25,880 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse2 (select |c_#memory_int#1| .cse0))) (and (= c_~head~0.offset 0) (or (and (= .cse0 c_~head~0.base) .cse1) (not (= (select .cse2 .cse3) |c_ULTIMATE.start_search_list_~k#1|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select .cse2 0) 1))))) is different from false [2025-03-08 22:16:25,882 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse2 (select |c_#memory_int#1| .cse0))) (and (= c_~head~0.offset 0) (or (and (= .cse0 c_~head~0.base) .cse1) (not (= (select .cse2 .cse3) |c_ULTIMATE.start_search_list_~k#1|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select .cse2 0) 1))))) is different from true [2025-03-08 22:16:25,885 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse5 (= .cse3 0))) (let ((.cse1 (and (= .cse0 c_~head~0.base) .cse5)) (.cse4 (select |c_#memory_int#1| .cse0))) (and (or (not (= |c_ULTIMATE.start_search_list_~l#1.base| .cse0)) .cse1 (not (let ((.cse2 (select |c_#memory_int#1| |c_ULTIMATE.start_search_list_~l#1.base|))) (= (select .cse2 .cse3) (select .cse2 |c_ULTIMATE.start_search_list_~l#1.offset|)))) |c_ULTIMATE.start_search_list_#t~short32#1|) (= c_~head~0.offset 0) (or .cse1 (not (= (select .cse4 .cse3) |c_ULTIMATE.start_search_list_~k#1|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) .cse5 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse6 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse6 (select |c_#memory_int#1| .cse6))) (= .cse6 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select .cse4 0) 1)))))) is different from false [2025-03-08 22:16:25,887 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4)) (.cse5 (= .cse3 0))) (let ((.cse1 (and (= .cse0 c_~head~0.base) .cse5)) (.cse4 (select |c_#memory_int#1| .cse0))) (and (or (not (= |c_ULTIMATE.start_search_list_~l#1.base| .cse0)) .cse1 (not (let ((.cse2 (select |c_#memory_int#1| |c_ULTIMATE.start_search_list_~l#1.base|))) (= (select .cse2 .cse3) (select .cse2 |c_ULTIMATE.start_search_list_~l#1.offset|)))) |c_ULTIMATE.start_search_list_#t~short32#1|) (= c_~head~0.offset 0) (or .cse1 (not (= (select .cse4 .cse3) |c_ULTIMATE.start_search_list_~k#1|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) .cse5 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse6 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse6 (select |c_#memory_int#1| .cse6))) (= .cse6 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select .cse4 0) 1)))))) is different from true [2025-03-08 22:16:25,890 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (and (= c_~head~0.offset 0) (or (not (= |c_ULTIMATE.start_search_list_~l#1.base| .cse0)) (and (= .cse0 c_~head~0.base) .cse1) (not (let ((.cse2 (select |c_#memory_int#1| |c_ULTIMATE.start_search_list_~l#1.base|))) (= (select .cse2 .cse3) (select .cse2 |c_ULTIMATE.start_search_list_~l#1.offset|))))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select (select |c_#memory_int#1| .cse0) 0) 1))))) is different from false [2025-03-08 22:16:25,892 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (and (= c_~head~0.offset 0) (or (not (= |c_ULTIMATE.start_search_list_~l#1.base| .cse0)) (and (= .cse0 c_~head~0.base) .cse1) (not (let ((.cse2 (select |c_#memory_int#1| |c_ULTIMATE.start_search_list_~l#1.base|))) (= (select .cse2 .cse3) (select .cse2 |c_ULTIMATE.start_search_list_~l#1.offset|))))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= |c_ULTIMATE.start_search_list_~l#1.base| (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select (select |c_#memory_int#1| .cse0) 0) 1))))) is different from true [2025-03-08 22:16:25,895 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (and (= c_~head~0.offset 0) (or (not (= .cse0 |c_ULTIMATE.start_search_list_#res#1.base|)) (and (= .cse0 c_~head~0.base) .cse1) (not (let ((.cse2 (select |c_#memory_int#1| |c_ULTIMATE.start_search_list_#res#1.base|))) (= (select .cse2 |c_ULTIMATE.start_search_list_#res#1.offset|) (select .cse2 .cse3))))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select (select |c_#memory_int#1| .cse0) 0) 1)) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_search_list_#res#1.base|))))) is different from false [2025-03-08 22:16:25,896 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse3 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4))) (let ((.cse1 (= .cse3 0)) (.cse0 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (and (= c_~head~0.offset 0) (or (not (= .cse0 |c_ULTIMATE.start_search_list_#res#1.base|)) (and (= .cse0 c_~head~0.base) .cse1) (not (let ((.cse2 (select |c_#memory_int#1| |c_ULTIMATE.start_search_list_#res#1.base|))) (= (select .cse2 |c_ULTIMATE.start_search_list_#res#1.offset|) (select .cse2 .cse3))))) .cse1 (or (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |c_#memory_int#1|))) (and (= |c_#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |c_#memory_int#1| .cse4))) (= .cse4 c_~head~0.base) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse0) 0) 1)))) (= (select (select |c_#memory_int#1| .cse0) 0) 1)) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_search_list_#res#1.base|))))) is different from true [2025-03-08 22:16:25,899 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4)) (.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (let ((.cse3 (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|))) (.cse2 (= .cse0 0))) (and (= c_~head~0.offset 0) (or (not (= .cse0 |c_ULTIMATE.start_main_~temp~0#1.offset|)) (and (= .cse1 c_~head~0.base) .cse2) .cse3) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (or (and (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 1) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse4 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |#memory_int#1| .cse4))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) .cse3 (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0)))) (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 0)) .cse2))) is different from false [2025-03-08 22:16:25,900 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4)) (.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (let ((.cse3 (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|))) (.cse2 (= .cse0 0))) (and (= c_~head~0.offset 0) (or (not (= .cse0 |c_ULTIMATE.start_main_~temp~0#1.offset|)) (and (= .cse1 c_~head~0.base) .cse2) .cse3) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (or (and (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 1) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse4 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |#memory_int#1| .cse4))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) .cse3 (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0)))) (= |c_ULTIMATE.start___VERIFIER_assert_~cond#1| 0)) .cse2))) is different from true [2025-03-08 22:16:25,903 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4)) (.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (let ((.cse3 (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|))) (.cse2 (= .cse0 0))) (and (= c_~head~0.offset 0) (or (not (= .cse0 |c_ULTIMATE.start_main_~temp~0#1.offset|)) (and (= .cse1 c_~head~0.base) .cse2) .cse3) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse4 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |#memory_int#1| .cse4))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) .cse3 (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0))) .cse2))) is different from false [2025-03-08 22:16:25,906 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4)) (.cse1 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (let ((.cse3 (not (= .cse1 |c_ULTIMATE.start_main_~temp~0#1.base|))) (.cse2 (= .cse0 0))) (and (= c_~head~0.offset 0) (or (not (= .cse0 |c_ULTIMATE.start_main_~temp~0#1.offset|)) (and (= .cse1 c_~head~0.base) .cse2) .cse3) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_main_~temp~0#1.base|)) (or (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_main_~temp~0#1.base|) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse4 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |#memory_int#1| .cse4))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse1) 0) 1)))))) .cse3 (not (= |c_ULTIMATE.start_main_~temp~0#1.offset| 0))) .cse2))) is different from true [2025-03-08 22:16:25,909 WARN L851 $PredicateComparison]: unable to prove that (and (let ((.cse1 (select (select |c_#memory_$Pointer$#1.offset| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4)) (.cse0 (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4))) (or (and (= .cse0 c_~head~0.base) (= c_~head~0.offset .cse1)) (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| .cse1)) (not (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (= c_~head~0.offset 0) (let ((.cse3 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse2 .cse3)) (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (and (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse4 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse4 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| .cse4) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse5 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse5 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse5 (select |#memory_int#1| .cse5))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse3) 0) 1))))))))))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| c_~head~0.base) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0)) is different from false [2025-03-08 22:16:25,911 WARN L873 $PredicateComparison]: unable to prove that (and (let ((.cse1 (select (select |c_#memory_$Pointer$#1.offset| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4)) (.cse0 (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4))) (or (and (= .cse0 c_~head~0.base) (= c_~head~0.offset .cse1)) (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| .cse1)) (not (= .cse0 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (= c_~head~0.offset 0) (let ((.cse3 (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) 4))) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse2 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse2 .cse3)) (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (and (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse4 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse4 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (= 2 (select (select |#memory_int#1| .cse4) 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse5 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= .cse5 c_~head~0.base) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse5 (select |#memory_int#1| .cse5))) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse3) 0) 1))))))))))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| c_~head~0.base) (= (select (select |c_#memory_$Pointer$#1.offset| c_~head~0.base) 4) 0) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0)) is different from true [2025-03-08 22:16:25,917 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.offset| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4)) (.cse2 (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4)) (.cse5 (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)))) (and (= .cse0 0) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse1 .cse2)) (= .cse1 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse3 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse3 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse2) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |#memory_int#1| .cse4))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| .cse4)))) (= 2 (select (select |#memory_int#1| .cse3) 0))))))) (and .cse5 (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|)))) (or (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| .cse0)) (not (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|))) (or .cse5 (not (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| |c_ULTIMATE.start_delete_list_~l#1.base|))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0))) is different from false [2025-03-08 22:16:25,919 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse0 (select (select |c_#memory_$Pointer$#1.offset| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4)) (.cse2 (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) 4)) (.cse5 (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)))) (and (= .cse0 0) (or (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse1 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (not (= .cse1 .cse2)) (= .cse1 |c_ULTIMATE.start_delete_list_~l#1.base|)))) (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (let ((.cse3 (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)))) (and (= .cse3 |c_ULTIMATE.start_delete_list_~l#1.base|) (exists ((|#memory_int#1| (Array Int (Array Int Int)))) (and (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int)))) (let ((.cse4 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (= (select (select |v_#memory_int#1_BEFORE_CALL_4| .cse2) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse4 (select |#memory_int#1| .cse4))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| .cse4)))) (= 2 (select (select |#memory_int#1| .cse3) 0))))))) (and .cse5 (exists ((|v_ULTIMATE.start_search_list_~l#1.base_39| Int) (|v_ULTIMATE.start_search_list_~l#1.offset_36| Int)) (= (select (select |c_#memory_$Pointer$#1.base| |v_ULTIMATE.start_search_list_~l#1.base_39|) (+ |v_ULTIMATE.start_search_list_~l#1.offset_36| 4)) |c_ULTIMATE.start_delete_list_~l#1.base|)))) (or (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| .cse0)) (not (= .cse2 |c_ULTIMATE.start_delete_list_~l#1.base|))) (or .cse5 (not (= |c_ULTIMATE.start_delete_list_~tmp~0#1.base| |c_ULTIMATE.start_delete_list_~l#1.base|))) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0))) is different from true [2025-03-08 22:16:25,921 WARN L851 $PredicateComparison]: unable to prove that (let ((.cse0 (not (= |c_ULTIMATE.start_delete_list_~l#1.base| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|)))) (and (or (not (= |c_ULTIMATE.start_delete_list_#t~mem34#1.offset| |c_ULTIMATE.start_delete_list_~l#1.offset|)) .cse0) (= |c_ULTIMATE.start_delete_list_#t~mem34#1.offset| 0) (or (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int))) (|#memory_int#1| (Array Int (Array Int Int)))) (let ((.cse1 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (not (= .cse1 |c_ULTIMATE.start_delete_list_~l#1.base|)) (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_delete_list_~l#1.base|) 0)) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse1 (select |#memory_int#1| .cse1)))))) .cse0) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0))) is different from false [2025-03-08 22:16:25,923 WARN L873 $PredicateComparison]: unable to prove that (let ((.cse0 (not (= |c_ULTIMATE.start_delete_list_~l#1.base| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|)))) (and (or (not (= |c_ULTIMATE.start_delete_list_#t~mem34#1.offset| |c_ULTIMATE.start_delete_list_~l#1.offset|)) .cse0) (= |c_ULTIMATE.start_delete_list_#t~mem34#1.offset| 0) (or (not (= |c_ULTIMATE.start_delete_list_~l#1.offset| 0)) (exists ((|v_#memory_int#1_BEFORE_CALL_4| (Array Int (Array Int Int))) (|#memory_int#1| (Array Int (Array Int Int)))) (let ((.cse1 (@diff |v_#memory_int#1_BEFORE_CALL_4| |#memory_int#1|))) (and (not (= .cse1 |c_ULTIMATE.start_delete_list_~l#1.base|)) (= 2 (select (select |#memory_int#1| |c_ULTIMATE.start_delete_list_~l#1.base|) 0)) (= (select (select |v_#memory_int#1_BEFORE_CALL_4| |c_ULTIMATE.start_delete_list_#t~mem34#1.base|) 0) 1) (= |#memory_int#1| (store |v_#memory_int#1_BEFORE_CALL_4| .cse1 (select |#memory_int#1| .cse1)))))) .cse0) (= |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 0))) is different from true [2025-03-08 22:16:25,997 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:25,998 INFO L93 Difference]: Finished difference Result 72 states and 84 transitions. [2025-03-08 22:16:25,998 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2025-03-08 22:16:25,998 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 28 states have (on average 2.0357142857142856) internal successors, (57), 27 states have internal predecessors, (57), 2 states have call successors, (4), 2 states have call predecessors, (4), 3 states have return successors, (5), 4 states have call predecessors, (5), 2 states have call successors, (5) Word has length 56 [2025-03-08 22:16:25,998 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:25,998 INFO L225 Difference]: With dead ends: 72 [2025-03-08 22:16:25,998 INFO L226 Difference]: Without dead ends: 72 [2025-03-08 22:16:25,999 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 68 SyntacticMatches, 1 SemanticMatches, 51 ConstructedPredicates, 19 IntricatePredicates, 0 DeprecatedPredicates, 124 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=139, Invalid=1020, Unknown=39, NotChecked=1558, Total=2756 [2025-03-08 22:16:25,999 INFO L435 NwaCegarLoop]: 34 mSDtfsCounter, 2 mSDsluCounter, 330 mSDsCounter, 0 mSdLazyCounter, 289 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2 SdHoareTripleChecker+Valid, 364 SdHoareTripleChecker+Invalid, 1075 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 289 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 781 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:25,999 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [2 Valid, 364 Invalid, 1075 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 289 Invalid, 0 Unknown, 781 Unchecked, 0.2s Time] [2025-03-08 22:16:26,000 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 72 states. [2025-03-08 22:16:26,001 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 72 to 70. [2025-03-08 22:16:26,002 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 62 states have (on average 1.1774193548387097) internal successors, (73), 63 states have internal predecessors, (73), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:26,002 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 82 transitions. [2025-03-08 22:16:26,002 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 82 transitions. Word has length 56 [2025-03-08 22:16:26,002 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:26,002 INFO L471 AbstractCegarLoop]: Abstraction has 70 states and 82 transitions. [2025-03-08 22:16:26,002 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 28 states have (on average 2.0357142857142856) internal successors, (57), 27 states have internal predecessors, (57), 2 states have call successors, (4), 2 states have call predecessors, (4), 3 states have return successors, (5), 4 states have call predecessors, (5), 2 states have call successors, (5) [2025-03-08 22:16:26,002 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 82 transitions. [2025-03-08 22:16:26,002 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2025-03-08 22:16:26,002 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:26,002 INFO L218 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:26,011 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Ended with exit code 0 [2025-03-08 22:16:26,203 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2025-03-08 22:16:26,203 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:26,203 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:26,203 INFO L85 PathProgramCache]: Analyzing trace with hash -1834798669, now seen corresponding path program 6 times [2025-03-08 22:16:26,204 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:26,204 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1241104660] [2025-03-08 22:16:26,204 INFO L95 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2025-03-08 22:16:26,204 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:26,222 INFO L108 AnnotateAndAsserter]: Assert order MIX_INSIDE_OUTSIDE partitioned 56 statements into 5 equivalence classes. [2025-03-08 22:16:26,251 INFO L111 AnnotateAndAsserter]: Assert order MIX_INSIDE_OUTSIDE issued 5 check-sat command(s) and asserted 56 of 56 statements. [2025-03-08 22:16:26,252 INFO L114 AnnotateAndAsserter]: Assert order MIX_INSIDE_OUTSIDE issued 5 check-sat command(s) [2025-03-08 22:16:26,252 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:28,134 INFO L134 CoverageAnalysis]: Checked inductivity of 70 backedges. 21 proven. 45 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2025-03-08 22:16:28,134 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:28,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1241104660] [2025-03-08 22:16:28,134 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1241104660] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:28,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [3373851] [2025-03-08 22:16:28,134 INFO L95 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2025-03-08 22:16:28,135 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:28,135 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:28,137 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:28,147 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2025-03-08 22:16:28,269 INFO L108 AnnotateAndAsserter]: Assert order MIX_INSIDE_OUTSIDE partitioned 56 statements into 5 equivalence classes. [2025-03-08 22:16:28,327 INFO L111 AnnotateAndAsserter]: Assert order MIX_INSIDE_OUTSIDE issued 5 check-sat command(s) and asserted 56 of 56 statements. [2025-03-08 22:16:28,328 INFO L114 AnnotateAndAsserter]: Assert order MIX_INSIDE_OUTSIDE issued 5 check-sat command(s) [2025-03-08 22:16:28,328 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:28,334 INFO L256 TraceCheckSpWp]: Trace formula consists of 419 conjuncts, 155 conjuncts are in the unsatisfiable core [2025-03-08 22:16:28,341 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:28,344 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:28,350 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 18 treesize of output 7 [2025-03-08 22:16:28,389 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:28,394 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:28,488 INFO L349 Elim1Store]: treesize reduction 21, result has 44.7 percent of original size [2025-03-08 22:16:28,489 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 20 treesize of output 23 [2025-03-08 22:16:28,507 INFO L349 Elim1Store]: treesize reduction 30, result has 37.5 percent of original size [2025-03-08 22:16:28,507 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 21 treesize of output 29 [2025-03-08 22:16:28,585 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:28,601 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:28,753 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,754 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 2 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 53 treesize of output 36 [2025-03-08 22:16:28,765 INFO L349 Elim1Store]: treesize reduction 29, result has 46.3 percent of original size [2025-03-08 22:16:28,766 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 24 treesize of output 31 [2025-03-08 22:16:28,778 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,786 INFO L349 Elim1Store]: treesize reduction 42, result has 38.2 percent of original size [2025-03-08 22:16:28,786 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 3 select indices, 3 select index equivalence classes, 3 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 2 case distinctions, treesize of input 34 treesize of output 49 [2025-03-08 22:16:28,795 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,796 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 2 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 15 [2025-03-08 22:16:28,887 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:28,891 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:28,970 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,980 INFO L349 Elim1Store]: treesize reduction 29, result has 14.7 percent of original size [2025-03-08 22:16:28,980 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 3 new quantified variables, introduced 2 case distinctions, treesize of input 129 treesize of output 76 [2025-03-08 22:16:28,985 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,985 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,986 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:28,988 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 4 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 0 case distinctions, treesize of input 35 treesize of output 33 [2025-03-08 22:16:29,005 INFO L349 Elim1Store]: treesize reduction 37, result has 47.1 percent of original size [2025-03-08 22:16:29,005 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 2 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 28 treesize of output 39 [2025-03-08 22:16:29,013 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:29,014 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:29,015 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:29,020 INFO L349 Elim1Store]: treesize reduction 4, result has 80.0 percent of original size [2025-03-08 22:16:29,020 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 4 select indices, 4 select index equivalence classes, 6 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 45 treesize of output 29 [2025-03-08 22:16:29,784 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:29,784 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:29,785 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:29,786 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 5 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 0 case distinctions, treesize of input 34 treesize of output 10 [2025-03-08 22:16:29,934 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 3 disjoint index pairs (out of 1 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 41 treesize of output 17 [2025-03-08 22:16:30,013 INFO L134 CoverageAnalysis]: Checked inductivity of 70 backedges. 21 proven. 45 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2025-03-08 22:16:30,013 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:30,618 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:30,618 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 171 treesize of output 156 [2025-03-08 22:16:30,622 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:30,622 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 150 treesize of output 138 [2025-03-08 22:16:30,715 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [3373851] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:30,715 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:30,716 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [27, 29] total 43 [2025-03-08 22:16:30,716 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [393185756] [2025-03-08 22:16:30,716 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:30,716 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 43 states [2025-03-08 22:16:30,716 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:30,716 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 43 interpolants. [2025-03-08 22:16:30,717 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=182, Invalid=2680, Unknown=0, NotChecked=0, Total=2862 [2025-03-08 22:16:30,717 INFO L87 Difference]: Start difference. First operand 70 states and 82 transitions. Second operand has 43 states, 43 states have (on average 1.697674418604651) internal successors, (73), 41 states have internal predecessors, (73), 6 states have call successors, (6), 3 states have call predecessors, (6), 7 states have return successors, (7), 7 states have call predecessors, (7), 6 states have call successors, (7) [2025-03-08 22:16:33,138 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:33,138 INFO L93 Difference]: Finished difference Result 57 states and 64 transitions. [2025-03-08 22:16:33,139 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2025-03-08 22:16:33,139 INFO L78 Accepts]: Start accepts. Automaton has has 43 states, 43 states have (on average 1.697674418604651) internal successors, (73), 41 states have internal predecessors, (73), 6 states have call successors, (6), 3 states have call predecessors, (6), 7 states have return successors, (7), 7 states have call predecessors, (7), 6 states have call successors, (7) Word has length 56 [2025-03-08 22:16:33,139 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:33,139 INFO L225 Difference]: With dead ends: 57 [2025-03-08 22:16:33,139 INFO L226 Difference]: Without dead ends: 57 [2025-03-08 22:16:33,141 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 130 GetRequests, 60 SyntacticMatches, 0 SemanticMatches, 70 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1151 ImplicationChecksByTransitivity, 3.0s TimeCoverageRelationStatistics Valid=345, Invalid=4767, Unknown=0, NotChecked=0, Total=5112 [2025-03-08 22:16:33,141 INFO L435 NwaCegarLoop]: 18 mSDtfsCounter, 29 mSDsluCounter, 314 mSDsCounter, 0 mSdLazyCounter, 1280 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 29 SdHoareTripleChecker+Valid, 332 SdHoareTripleChecker+Invalid, 1289 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 1280 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:33,141 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [29 Valid, 332 Invalid, 1289 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 1280 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2025-03-08 22:16:33,142 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2025-03-08 22:16:33,144 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 52. [2025-03-08 22:16:33,146 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 45 states have (on average 1.1111111111111112) internal successors, (50), 45 states have internal predecessors, (50), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:33,146 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 59 transitions. [2025-03-08 22:16:33,146 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 59 transitions. Word has length 56 [2025-03-08 22:16:33,146 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:33,146 INFO L471 AbstractCegarLoop]: Abstraction has 52 states and 59 transitions. [2025-03-08 22:16:33,146 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 43 states, 43 states have (on average 1.697674418604651) internal successors, (73), 41 states have internal predecessors, (73), 6 states have call successors, (6), 3 states have call predecessors, (6), 7 states have return successors, (7), 7 states have call predecessors, (7), 6 states have call successors, (7) [2025-03-08 22:16:33,146 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 59 transitions. [2025-03-08 22:16:33,146 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2025-03-08 22:16:33,147 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:33,147 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 3, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:33,165 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Ended with exit code 0 [2025-03-08 22:16:33,347 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2025-03-08 22:16:33,347 INFO L396 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:33,347 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:33,348 INFO L85 PathProgramCache]: Analyzing trace with hash 560433926, now seen corresponding path program 1 times [2025-03-08 22:16:33,348 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:33,348 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1934691914] [2025-03-08 22:16:33,348 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:33,348 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:33,360 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 58 statements into 1 equivalence classes. [2025-03-08 22:16:33,366 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 58 of 58 statements. [2025-03-08 22:16:33,366 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:33,366 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:34,127 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 21 proven. 14 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2025-03-08 22:16:34,127 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:34,127 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1934691914] [2025-03-08 22:16:34,127 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1934691914] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:34,127 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [826690099] [2025-03-08 22:16:34,127 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2025-03-08 22:16:34,127 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:34,127 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:34,129 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:34,130 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2025-03-08 22:16:34,249 INFO L108 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY partitioned 58 statements into 1 equivalence classes. [2025-03-08 22:16:34,287 INFO L111 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) and asserted 58 of 58 statements. [2025-03-08 22:16:34,287 INFO L114 AnnotateAndAsserter]: Assert order NOT_INCREMENTALLY issued 1 check-sat command(s) [2025-03-08 22:16:34,287 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:34,290 INFO L256 TraceCheckSpWp]: Trace formula consists of 463 conjuncts, 134 conjuncts are in the unsatisfiable core [2025-03-08 22:16:34,294 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:34,304 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:34,335 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 22 treesize of output 1 [2025-03-08 22:16:34,459 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:34,465 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:34,545 INFO L349 Elim1Store]: treesize reduction 30, result has 37.5 percent of original size [2025-03-08 22:16:34,545 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 21 treesize of output 29 [2025-03-08 22:16:34,554 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 15 [2025-03-08 22:16:34,665 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:34,671 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 12 [2025-03-08 22:16:34,769 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:34,770 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 53 treesize of output 36 [2025-03-08 22:16:34,779 INFO L349 Elim1Store]: treesize reduction 29, result has 46.3 percent of original size [2025-03-08 22:16:34,779 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 24 treesize of output 31 [2025-03-08 22:16:34,785 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:34,788 INFO L349 Elim1Store]: treesize reduction 4, result has 75.0 percent of original size [2025-03-08 22:16:34,788 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 3 select indices, 3 select index equivalence classes, 2 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 1 case distinctions, treesize of input 28 treesize of output 22 [2025-03-08 22:16:34,797 INFO L190 IndexEqualityManager]: detected not equals via solver [2025-03-08 22:16:34,798 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 15 [2025-03-08 22:16:35,263 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 2 disjoint index pairs (out of 1 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 7 [2025-03-08 22:16:35,306 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 17 proven. 28 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2025-03-08 22:16:35,307 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:35,524 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:35,524 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 34 treesize of output 38 [2025-03-08 22:16:35,531 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:35,531 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 31 treesize of output 35 [2025-03-08 22:16:35,593 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [826690099] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:35,593 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:35,593 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24, 23] total 45 [2025-03-08 22:16:35,594 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [355559631] [2025-03-08 22:16:35,594 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:35,596 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 45 states [2025-03-08 22:16:35,596 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:35,596 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 45 interpolants. [2025-03-08 22:16:35,597 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=185, Invalid=2466, Unknown=1, NotChecked=0, Total=2652 [2025-03-08 22:16:35,597 INFO L87 Difference]: Start difference. First operand 52 states and 59 transitions. Second operand has 45 states, 45 states have (on average 1.9111111111111112) internal successors, (86), 42 states have internal predecessors, (86), 4 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 6 states have call predecessors, (7), 4 states have call successors, (7) [2025-03-08 22:16:37,129 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:37,129 INFO L93 Difference]: Finished difference Result 65 states and 72 transitions. [2025-03-08 22:16:37,129 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 31 states. [2025-03-08 22:16:37,130 INFO L78 Accepts]: Start accepts. Automaton has has 45 states, 45 states have (on average 1.9111111111111112) internal successors, (86), 42 states have internal predecessors, (86), 4 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 6 states have call predecessors, (7), 4 states have call successors, (7) Word has length 58 [2025-03-08 22:16:37,130 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:37,130 INFO L225 Difference]: With dead ends: 65 [2025-03-08 22:16:37,130 INFO L226 Difference]: Without dead ends: 62 [2025-03-08 22:16:37,131 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 141 GetRequests, 64 SyntacticMatches, 0 SemanticMatches, 77 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1471 ImplicationChecksByTransitivity, 1.9s TimeCoverageRelationStatistics Valid=506, Invalid=5655, Unknown=1, NotChecked=0, Total=6162 [2025-03-08 22:16:37,131 INFO L435 NwaCegarLoop]: 19 mSDtfsCounter, 102 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 1370 mSolverCounterSat, 49 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 102 SdHoareTripleChecker+Valid, 356 SdHoareTripleChecker+Invalid, 1419 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 49 IncrementalHoareTripleChecker+Valid, 1370 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:37,132 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [102 Valid, 356 Invalid, 1419 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [49 Valid, 1370 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2025-03-08 22:16:37,132 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2025-03-08 22:16:37,133 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 52. [2025-03-08 22:16:37,133 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 45 states have (on average 1.0888888888888888) internal successors, (49), 45 states have internal predecessors, (49), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2025-03-08 22:16:37,134 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 58 transitions. [2025-03-08 22:16:37,134 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 58 transitions. Word has length 58 [2025-03-08 22:16:37,134 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:37,134 INFO L471 AbstractCegarLoop]: Abstraction has 52 states and 58 transitions. [2025-03-08 22:16:37,134 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 45 states, 45 states have (on average 1.9111111111111112) internal successors, (86), 42 states have internal predecessors, (86), 4 states have call successors, (6), 4 states have call predecessors, (6), 6 states have return successors, (7), 6 states have call predecessors, (7), 4 states have call successors, (7) [2025-03-08 22:16:37,134 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 58 transitions. [2025-03-08 22:16:37,134 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2025-03-08 22:16:37,134 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:37,134 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 3, 3, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:37,142 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Ended with exit code 0 [2025-03-08 22:16:37,334 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2025-03-08 22:16:37,335 INFO L396 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:37,335 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:37,335 INFO L85 PathProgramCache]: Analyzing trace with hash -738960839, now seen corresponding path program 2 times [2025-03-08 22:16:37,335 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:37,335 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [584456546] [2025-03-08 22:16:37,335 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2025-03-08 22:16:37,335 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:37,352 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 partitioned 61 statements into 2 equivalence classes. [2025-03-08 22:16:37,364 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) and asserted 61 of 61 statements. [2025-03-08 22:16:37,364 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2025-03-08 22:16:37,364 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:37,961 INFO L134 CoverageAnalysis]: Checked inductivity of 61 backedges. 19 proven. 18 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2025-03-08 22:16:37,962 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:37,962 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [584456546] [2025-03-08 22:16:37,962 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [584456546] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:37,962 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [552958981] [2025-03-08 22:16:37,962 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2025-03-08 22:16:37,962 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:37,962 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:37,963 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:37,964 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2025-03-08 22:16:38,087 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 partitioned 61 statements into 2 equivalence classes. [2025-03-08 22:16:38,133 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) and asserted 61 of 61 statements. [2025-03-08 22:16:38,133 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2025-03-08 22:16:38,133 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:38,135 INFO L256 TraceCheckSpWp]: Trace formula consists of 473 conjuncts, 64 conjuncts are in the unsatisfiable core [2025-03-08 22:16:38,138 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:38,141 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:38,163 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:38,166 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:38,215 INFO L349 Elim1Store]: treesize reduction 4, result has 66.7 percent of original size [2025-03-08 22:16:38,215 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 15 treesize of output 15 [2025-03-08 22:16:38,313 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2025-03-08 22:16:38,471 INFO L349 Elim1Store]: treesize reduction 19, result has 20.8 percent of original size [2025-03-08 22:16:38,471 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 33 treesize of output 32 [2025-03-08 22:16:38,498 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 24 treesize of output 12 [2025-03-08 22:16:38,499 INFO L134 CoverageAnalysis]: Checked inductivity of 61 backedges. 19 proven. 24 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2025-03-08 22:16:38,499 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2025-03-08 22:16:38,504 WARN L851 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1786 (Array Int Int))) (not (= (select (select (store |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base| v_ArrVal_1786) c_~head~0.base) (+ c_~head~0.offset 4)) 0))) is different from false [2025-03-08 22:16:38,509 WARN L851 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1786 (Array Int Int))) (not (= (select (select (store |c_#memory_$Pointer$#1.base| (select (select |c_#memory_$Pointer$#1.base| |c_ULTIMATE.start_delete_list_~tmp~0#1.base|) (+ |c_ULTIMATE.start_delete_list_~tmp~0#1.offset| 4)) v_ArrVal_1786) c_~head~0.base) (+ c_~head~0.offset 4)) 0))) is different from false [2025-03-08 22:16:38,515 WARN L851 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1786 (Array Int Int))) (not (= (let ((.cse0 (+ c_~head~0.offset 4))) (select (select (store |c_#memory_$Pointer$#1.base| (select (select |c_#memory_$Pointer$#1.base| c_~head~0.base) .cse0) v_ArrVal_1786) c_~head~0.base) .cse0)) 0))) is different from false [2025-03-08 22:16:38,732 INFO L349 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2025-03-08 22:16:38,733 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 20 [2025-03-08 22:16:38,736 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 25 [2025-03-08 22:16:38,738 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 20 treesize of output 18 [2025-03-08 22:16:38,785 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [552958981] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:38,785 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2025-03-08 22:16:38,785 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 18] total 30 [2025-03-08 22:16:38,785 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1509274376] [2025-03-08 22:16:38,785 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2025-03-08 22:16:38,785 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2025-03-08 22:16:38,785 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2025-03-08 22:16:38,786 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2025-03-08 22:16:38,786 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=145, Invalid=1054, Unknown=3, NotChecked=204, Total=1406 [2025-03-08 22:16:38,786 INFO L87 Difference]: Start difference. First operand 52 states and 58 transitions. Second operand has 30 states, 30 states have (on average 2.3666666666666667) internal successors, (71), 29 states have internal predecessors, (71), 2 states have call successors, (4), 2 states have call predecessors, (4), 4 states have return successors, (5), 4 states have call predecessors, (5), 2 states have call successors, (5) [2025-03-08 22:16:39,614 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2025-03-08 22:16:39,614 INFO L93 Difference]: Finished difference Result 67 states and 73 transitions. [2025-03-08 22:16:39,614 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2025-03-08 22:16:39,614 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 2.3666666666666667) internal successors, (71), 29 states have internal predecessors, (71), 2 states have call successors, (4), 2 states have call predecessors, (4), 4 states have return successors, (5), 4 states have call predecessors, (5), 2 states have call successors, (5) Word has length 61 [2025-03-08 22:16:39,614 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2025-03-08 22:16:39,615 INFO L225 Difference]: With dead ends: 67 [2025-03-08 22:16:39,615 INFO L226 Difference]: Without dead ends: 67 [2025-03-08 22:16:39,616 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 145 GetRequests, 80 SyntacticMatches, 0 SemanticMatches, 65 ConstructedPredicates, 3 IntricatePredicates, 0 DeprecatedPredicates, 787 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=540, Invalid=3501, Unknown=3, NotChecked=378, Total=4422 [2025-03-08 22:16:39,616 INFO L435 NwaCegarLoop]: 18 mSDtfsCounter, 95 mSDsluCounter, 222 mSDsCounter, 0 mSdLazyCounter, 831 mSolverCounterSat, 31 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 95 SdHoareTripleChecker+Valid, 240 SdHoareTripleChecker+Invalid, 862 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 31 IncrementalHoareTripleChecker+Valid, 831 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2025-03-08 22:16:39,616 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [95 Valid, 240 Invalid, 862 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [31 Valid, 831 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2025-03-08 22:16:39,617 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 67 states. [2025-03-08 22:16:39,618 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 67 to 57. [2025-03-08 22:16:39,618 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 50 states have (on average 1.1) internal successors, (55), 50 states have internal predecessors, (55), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (4), 4 states have call predecessors, (4), 4 states have call successors, (4) [2025-03-08 22:16:39,618 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 63 transitions. [2025-03-08 22:16:39,618 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 63 transitions. Word has length 61 [2025-03-08 22:16:39,619 INFO L84 Accepts]: Finished accepts. word is rejected. [2025-03-08 22:16:39,619 INFO L471 AbstractCegarLoop]: Abstraction has 57 states and 63 transitions. [2025-03-08 22:16:39,619 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 2.3666666666666667) internal successors, (71), 29 states have internal predecessors, (71), 2 states have call successors, (4), 2 states have call predecessors, (4), 4 states have return successors, (5), 4 states have call predecessors, (5), 2 states have call successors, (5) [2025-03-08 22:16:39,619 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 63 transitions. [2025-03-08 22:16:39,619 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 63 [2025-03-08 22:16:39,619 INFO L210 NwaCegarLoop]: Found error trace [2025-03-08 22:16:39,619 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 3, 3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2025-03-08 22:16:39,626 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2025-03-08 22:16:39,820 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15,15 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:39,820 INFO L396 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0ASSERT_VIOLATIONMEMORY_LEAK, ULTIMATE.startErr1ASSERT_VIOLATIONMEMORY_LEAK] === [2025-03-08 22:16:39,820 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2025-03-08 22:16:39,820 INFO L85 PathProgramCache]: Analyzing trace with hash -1432948500, now seen corresponding path program 3 times [2025-03-08 22:16:39,820 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2025-03-08 22:16:39,820 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1954349856] [2025-03-08 22:16:39,820 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2025-03-08 22:16:39,820 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2025-03-08 22:16:39,832 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 partitioned 62 statements into 4 equivalence classes. [2025-03-08 22:16:39,841 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) and asserted 52 of 62 statements. [2025-03-08 22:16:39,841 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2025-03-08 22:16:39,841 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:40,953 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 19 proven. 19 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2025-03-08 22:16:40,953 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2025-03-08 22:16:40,953 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1954349856] [2025-03-08 22:16:40,953 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1954349856] provided 0 perfect and 1 imperfect interpolant sequences [2025-03-08 22:16:40,953 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [201217979] [2025-03-08 22:16:40,953 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2025-03-08 22:16:40,953 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2025-03-08 22:16:40,953 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2025-03-08 22:16:40,955 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2025-03-08 22:16:40,956 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2025-03-08 22:16:41,092 INFO L108 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 partitioned 62 statements into 4 equivalence classes. [2025-03-08 22:16:41,171 INFO L111 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) and asserted 52 of 62 statements. [2025-03-08 22:16:41,171 INFO L114 AnnotateAndAsserter]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2025-03-08 22:16:41,171 INFO L115 AnnotateAndAsserter]: Conjunction of SSA is unsat [2025-03-08 22:16:41,174 INFO L256 TraceCheckSpWp]: Trace formula consists of 396 conjuncts, 100 conjuncts are in the unsatisfiable core [2025-03-08 22:16:41,176 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2025-03-08 22:16:41,180 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2025-03-08 22:16:41,202 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:41,205 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2025-03-08 22:16:41,222 INFO L349 Elim1Store]: treesize reduction 4, result has 66.7 percent of original size [2025-03-08 22:16:41,222 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 15 treesize of output 15 [2025-03-08 22:16:41,619 INFO L349 Elim1Store]: treesize reduction 60, result has 31.0 percent of original size [2025-03-08 22:16:41,619 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 6 new quantified variables, introduced 5 case distinctions, treesize of input 144 treesize of output 93 [2025-03-08 22:16:41,634 INFO L349 Elim1Store]: treesize reduction 44, result has 35.3 percent of original size [2025-03-08 22:16:41,635 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 3 select indices, 3 select index equivalence classes, 1 disjoint index pairs (out of 3 index pairs), introduced 4 new quantified variables, introduced 3 case distinctions, treesize of input 129 treesize of output 108 [2025-03-08 22:17:03,342 WARN L286 SmtUtils]: Spent 20.51s on a formula simplification. DAG size of input: 2044 DAG size of output: 1964 (called from [L 346] de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.arrays.Elim1Store.elim1) [2025-03-08 22:17:03,343 INFO L349 Elim1Store]: treesize reduction 200, result has 95.8 percent of original size [2025-03-08 22:17:03,345 INFO L378 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 31 select indices, 31 select index equivalence classes, 0 disjoint index pairs (out of 465 index pairs), introduced 47 new quantified variables, introduced 465 case distinctions, treesize of input 847 treesize of output 5003 [2025-03-08 22:17:04,868 INFO L224 Elim1Store]: Index analysis took 723 ms