java -ea -Xmx8000000000 -Xss4m -jar ./plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata ./data -tc ../../../trunk/examples/toolchains/AbstractInterpretationInline.xml -s ../../../trunk/examples/settings/ai/array-bench/reach_32bit_array_compound_oct_cong.epf -i ../../../trunk/examples/programs/toy/tooDifficultLoopInvariant/PointerIncrement-simplified03.bpl -------------------------------------------------------------------------------- This is Ultimate 0.1.24-1377b90 [2019-01-07 15:33:30,838 INFO L170 SettingsManager]: Resetting all preferences to default values... [2019-01-07 15:33:30,840 INFO L174 SettingsManager]: Resetting UltimateCore preferences to default values [2019-01-07 15:33:30,859 INFO L177 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-01-07 15:33:30,859 INFO L174 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-01-07 15:33:30,861 INFO L174 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-01-07 15:33:30,862 INFO L174 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-01-07 15:33:30,866 INFO L174 SettingsManager]: Resetting LassoRanker preferences to default values [2019-01-07 15:33:30,868 INFO L174 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-01-07 15:33:30,869 INFO L174 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-01-07 15:33:30,870 INFO L177 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-01-07 15:33:30,870 INFO L174 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-01-07 15:33:30,871 INFO L174 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-01-07 15:33:30,872 INFO L174 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-01-07 15:33:30,874 INFO L174 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-01-07 15:33:30,874 INFO L174 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-01-07 15:33:30,875 INFO L174 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-01-07 15:33:30,877 INFO L174 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-01-07 15:33:30,879 INFO L174 SettingsManager]: Resetting CodeCheck preferences to default values [2019-01-07 15:33:30,881 INFO L174 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-01-07 15:33:30,882 INFO L174 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-01-07 15:33:30,883 INFO L174 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-01-07 15:33:30,886 INFO L177 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-01-07 15:33:30,886 INFO L177 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-01-07 15:33:30,887 INFO L174 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-01-07 15:33:30,888 INFO L174 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-01-07 15:33:30,889 INFO L174 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-01-07 15:33:30,889 INFO L174 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-01-07 15:33:30,890 INFO L174 SettingsManager]: Resetting Witness Printer preferences to default values [2019-01-07 15:33:30,892 INFO L177 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-01-07 15:33:30,894 INFO L174 SettingsManager]: Resetting CDTParser preferences to default values [2019-01-07 15:33:30,895 INFO L177 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-01-07 15:33:30,895 INFO L177 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-01-07 15:33:30,895 INFO L174 SettingsManager]: Resetting SmtParser preferences to default values [2019-01-07 15:33:30,896 INFO L174 SettingsManager]: Resetting Witness Parser preferences to default values [2019-01-07 15:33:30,900 INFO L181 SettingsManager]: Finished resetting all preferences to default values... [2019-01-07 15:33:30,900 INFO L98 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/ai/array-bench/reach_32bit_array_compound_oct_cong.epf [2019-01-07 15:33:30,929 INFO L110 SettingsManager]: Loading preferences was successful [2019-01-07 15:33:30,930 INFO L112 SettingsManager]: Preferences different from defaults after loading the file: [2019-01-07 15:33:30,931 INFO L131 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2019-01-07 15:33:30,931 INFO L133 SettingsManager]: * Show backtranslation warnings=false [2019-01-07 15:33:30,931 INFO L131 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2019-01-07 15:33:30,931 INFO L133 SettingsManager]: * User list type=DISABLED [2019-01-07 15:33:30,932 INFO L133 SettingsManager]: * Inline calls to unimplemented procedures=true [2019-01-07 15:33:30,932 INFO L131 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2019-01-07 15:33:30,932 INFO L133 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2019-01-07 15:33:30,932 INFO L133 SettingsManager]: * Abstract domain=ArrayDomain [2019-01-07 15:33:30,932 INFO L133 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2019-01-07 15:33:30,933 INFO L133 SettingsManager]: * Interval Domain=false [2019-01-07 15:33:30,933 INFO L131 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-01-07 15:33:30,933 INFO L133 SettingsManager]: * Create parallel compositions if possible=false [2019-01-07 15:33:30,934 INFO L133 SettingsManager]: * Use SBE=true [2019-01-07 15:33:30,934 INFO L131 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-01-07 15:33:30,934 INFO L133 SettingsManager]: * sizeof long=4 [2019-01-07 15:33:30,934 INFO L133 SettingsManager]: * Overapproximate operations on floating types=true [2019-01-07 15:33:30,935 INFO L133 SettingsManager]: * sizeof POINTER=4 [2019-01-07 15:33:30,935 INFO L133 SettingsManager]: * Check division by zero=IGNORE [2019-01-07 15:33:30,935 INFO L133 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2019-01-07 15:33:30,935 INFO L133 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-01-07 15:33:30,935 INFO L133 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2019-01-07 15:33:30,936 INFO L133 SettingsManager]: * sizeof long double=12 [2019-01-07 15:33:30,936 INFO L133 SettingsManager]: * Check if freed pointer was valid=false [2019-01-07 15:33:30,936 INFO L133 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2019-01-07 15:33:30,936 INFO L131 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-01-07 15:33:30,936 INFO L133 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-01-07 15:33:30,937 INFO L133 SettingsManager]: * SMT solver=External_DefaultMode [2019-01-07 15:33:30,937 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-01-07 15:33:30,937 INFO L131 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-01-07 15:33:30,937 INFO L133 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-01-07 15:33:30,937 INFO L133 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2019-01-07 15:33:30,938 INFO L133 SettingsManager]: * Trace refinement strategy=TAIPAN [2019-01-07 15:33:30,938 INFO L133 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2019-01-07 15:33:30,938 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2019-01-07 15:33:30,938 INFO L133 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2019-01-07 15:33:30,938 INFO L133 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2019-01-07 15:33:30,971 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-01-07 15:33:30,984 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-01-07 15:33:30,987 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-01-07 15:33:30,989 INFO L271 PluginConnector]: Initializing Boogie PL CUP Parser... [2019-01-07 15:33:30,989 INFO L276 PluginConnector]: Boogie PL CUP Parser initialized [2019-01-07 15:33:30,990 INFO L418 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/programs/toy/tooDifficultLoopInvariant/PointerIncrement-simplified03.bpl [2019-01-07 15:33:30,990 INFO L111 BoogieParser]: Parsing: '/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/programs/toy/tooDifficultLoopInvariant/PointerIncrement-simplified03.bpl' [2019-01-07 15:33:31,037 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-01-07 15:33:31,039 INFO L131 ToolchainWalker]: Walking toolchain with 4 elements. [2019-01-07 15:33:31,040 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2019-01-07 15:33:31,040 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2019-01-07 15:33:31,041 INFO L276 PluginConnector]: Boogie Procedure Inliner initialized [2019-01-07 15:33:31,060 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,076 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,085 WARN L165 Inliner]: Program contained no entry procedure! [2019-01-07 15:33:31,085 WARN L168 Inliner]: Missing entry procedures: [ULTIMATE.start] [2019-01-07 15:33:31,085 WARN L175 Inliner]: Fallback enabled. All procedures will be processed. [2019-01-07 15:33:31,105 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2019-01-07 15:33:31,106 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-01-07 15:33:31,106 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-01-07 15:33:31,106 INFO L276 PluginConnector]: Boogie Preprocessor initialized [2019-01-07 15:33:31,120 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,120 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,122 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,122 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,128 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,132 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,134 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,136 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-01-07 15:33:31,136 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-01-07 15:33:31,137 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-01-07 15:33:31,137 INFO L276 PluginConnector]: RCFGBuilder initialized [2019-01-07 15:33:31,138 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.boogie.parser AST 07.01 03:33:31" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-01-07 15:33:31,224 INFO L130 BoogieDeclarations]: Found specification of procedure main [2019-01-07 15:33:31,224 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2019-01-07 15:33:31,225 INFO L130 BoogieDeclarations]: Found specification of procedure ~malloc [2019-01-07 15:33:31,680 INFO L278 CfgBuilder]: Using library mode [2019-01-07 15:33:31,680 INFO L286 CfgBuilder]: Removed 3 assue(true) statements. [2019-01-07 15:33:31,682 INFO L202 PluginConnector]: Adding new model PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 07.01 03:33:31 BoogieIcfgContainer [2019-01-07 15:33:31,683 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-01-07 15:33:31,687 INFO L113 PluginConnector]: ------------------------Abstract Interpretation---------------------------- [2019-01-07 15:33:31,690 INFO L271 PluginConnector]: Initializing Abstract Interpretation... [2019-01-07 15:33:31,695 INFO L276 PluginConnector]: Abstract Interpretation initialized [2019-01-07 15:33:31,698 INFO L185 PluginConnector]: Executing the observer AbstractInterpretationRcfgObserver from plugin Abstract Interpretation for "PointerIncrement-simplified03.bpl de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 07.01 03:33:31" (1/1) ... [2019-01-07 15:33:31,790 INFO L101 FixpointEngine]: Starting fixpoint engine with domain ArrayDomain (maxUnwinding=3, maxParallelStates=2) [2019-01-07 15:33:33,648 WARN L212 ngHoareTripleChecker]: Soundness check inconclusive for the following hoare triple [2019-01-07 15:33:33,649 WARN L217 ngHoareTripleChecker]: Expected: VALID Actual: UNKNOWN [2019-01-07 15:33:33,651 WARN L219 ngHoareTripleChecker]: Solver was "Z3" in version "4.8.3" [2019-01-07 15:33:33,653 WARN L223 ngHoareTripleChecker]: -- [2019-01-07 15:33:33,653 WARN L224 ngHoareTripleChecker]: Pre: {2147483647#(forall ((v_idx_7 Int) (v_idx_8 Int) (v_idx_9 Int) (v_idx_3 Int) (v_idx_10 Int) (v_idx_4 Int) (v_idx_5 Int) (v_idx_6 Int) (v_idx_1 Int) (v_idx_2 Int)) (exists ((v_v_8_1 Int) (v_v_3_1 Bool) (v_v_4_1 Bool) (v_v_0_1 Int) (v_v_7_1 (Array Int Int)) (v_v_1_1 Int) (v_v_2_1 Int) (v_v_5_1 (Array Int Int)) (v_v_9_1 Bool) (v_v_6_1 Int)) (and (= (select |c_old(#length)| v_idx_9) v_v_2_1) (= (select |c_main_~malloc_old_#length| v_idx_2) v_v_0_1) (= (select |c_old(#valid)| v_idx_5) v_v_4_1) (= (select v_v_5_1 v_idx_1) v_v_6_1) (= v_v_9_1 (select |c_main_~malloc_old_#valid| v_idx_10)) (= (select |c_#length| v_idx_8) v_v_1_1) (= v_v_5_1 (select |c_#memory_int| v_idx_6)) (= v_v_8_1 (select v_v_7_1 v_idx_3)) (= v_v_3_1 (select |c_#valid| v_idx_4)) (= (select |c_old(#memory_int)| v_idx_7) v_v_7_1))))} [2019-01-07 15:33:33,658 WARN L228 ngHoareTripleChecker]: Action: ~malloc_old_#length, ~malloc_old_#valid := #length, #valid;~malloc_~size := 400;havoc ~malloc_#res.base, ~malloc_#res.offset;havoc #valid, #length;assume ~malloc_old_#valid[~malloc_#res.base] == false;assume #valid == ~malloc_old_#valid[~malloc_#res.base := true];assume ~malloc_#res.offset == 0;assume ~malloc_#res.base != 0;assume #length == ~malloc_old_#length[~malloc_#res.base := ~malloc_~size];p.base, p.offset := ~malloc_#res.base, ~malloc_#res.offset;q.base, q.offset := p.base, p.offset; [2019-01-07 15:33:33,660 WARN L184 hOps$ForEachOp$OfRef]: ActionStr: (and (not (select |c_main_~malloc_old_#valid_primed| |c_main_~malloc_#res.base_primed|)) (= c_main_p.offset_primed |c_main_~malloc_#res.offset_primed|) (= (store |c_main_~malloc_old_#length_primed| |c_main_~malloc_#res.base_primed| c_main_~malloc_~size_primed) |c_#length_primed|) (= |c_main_~malloc_old_#valid_primed| |c_#valid|) (= c_main_p.base_primed |c_main_~malloc_#res.base_primed|) (= |c_main_~malloc_old_#length_primed| |c_#length|) (= c_main_~malloc_~size_primed 400) (= c_main_q.offset_primed c_main_p.offset_primed) (= c_main_q.base_primed c_main_p.base_primed) (= (store |c_main_~malloc_old_#valid_primed| |c_main_~malloc_#res.base_primed| true) |c_#valid_primed|) (= 0 |c_main_~malloc_#res.offset_primed|) (not (= |c_main_~malloc_#res.base_primed| 0))) [2019-01-07 15:33:33,661 WARN L230 ngHoareTripleChecker]: Post: {2147483646#(forall ((v_idx_14 Int) (v_idx_15 Int) (v_idx_23 Int) (v_idx_12 Int) (v_idx_24 Int) (v_idx_13 Int) (v_idx_21 Int) (v_idx_22 Int) (v_idx_11 Int) (v_idx_20 Int) (v_idx_18 Int) (v_idx_19 Int) (v_idx_16 Int) (v_idx_17 Int)) (exists ((v_v_24_1 Int) (v_v_25_1 Int) (v_b_4_1 Int) (v_b_5_1 Int) (v_b_8_1 Int) (v_b_9_1 Int) (v_v_4_1 Bool) (v_v_26_1 Int) (v_v_8_1 Int) (v_v_19_1 Bool) (v_v_18_1 Bool) (v_v_12_1 Bool) (v_v_7_1 (Array Int Int)) (v_v_1_1 Int) (v_v_5_1 (Array Int Int)) (v_v_2_1 Int) (v_v_6_1 Int) (v_v_20_1 Bool)) (and (<= (- c_main_q.offset (- |c_main_~malloc_#res.offset|)) 0) (= (+ |c_main_~malloc_#res.base| 1) v_b_9_1) (not (= |c_main_~malloc_#res.base| 0)) (<= (- (- c_main_~malloc_~size) v_v_25_1) (- 800)) (<= (- c_main_q.offset v_v_25_1) (- 400)) (<= (- (- c_main_q.offset) v_v_25_1) (- 400)) (<= (- (- |c_main_~malloc_#res.offset|) c_main_~malloc_~size) (- 400)) v_v_19_1 (<= (- (- v_b_4_1) (- |c_main_~malloc_#res.base|)) 0) (= (+ v_b_5_1 (- 1)) |c_main_~malloc_#res.base|) (<= (- (- c_main_p.offset) c_main_p.offset) 0) (<= (- c_main_p.offset c_main_q.offset) 0) (<= (- c_main_p.offset (- v_v_25_1)) 400) (<= (- (- c_main_p.offset) (- c_main_q.offset)) 0) (<= (- (- v_b_5_1) (- |c_main_~malloc_#res.base|)) (- 1)) (<= (- (- v_b_9_1) (- |c_main_~malloc_#res.base|)) (- 1)) (= (+ |c_main_~malloc_#res.base| 1) (+ v_b_4_1 1)) (= c_main_~malloc_~size 400) (<= (- v_b_8_1 v_b_9_1) (- 1)) (<= (- (- |c_main_~malloc_#res.offset|) (- c_main_~malloc_~size)) 400) (<= (- v_b_9_1 |c_main_~malloc_#res.base|) 1) (= v_v_6_1 (select v_v_5_1 v_idx_11)) (<= (- |c_main_~malloc_#res.offset| (- v_v_25_1)) 400) (= (select |c_main_~malloc_old_#length| v_idx_13) v_v_1_1) (= (select |c_main_~malloc_old_#valid| v_idx_24) v_v_12_1) (<= (- c_main_p.offset (- |c_main_~malloc_#res.offset|)) 0) (<= (- v_b_8_1 |c_main_~malloc_#res.base|) 0) (= v_v_5_1 (select |c_#memory_int| v_idx_18)) (= v_v_7_1 (select |c_old(#memory_int)| v_idx_19)) (<= (- c_main_q.offset (- c_main_q.offset)) 0) (or (< v_idx_22 v_b_8_1) (= (select |c_#length| v_idx_22) v_v_25_1) (<= v_b_9_1 v_idx_22)) (= |c_main_~malloc_#res.base| (+ v_b_9_1 (- 1))) (= |c_main_~malloc_#res.offset| 0) (<= (- v_v_25_1 (- v_v_25_1)) 800) (<= (- c_main_~malloc_~size (- c_main_~malloc_~size)) 800) (or (= v_v_20_1 (select |c_#valid| v_idx_17)) (< v_idx_17 v_b_5_1)) (= (select |c_old(#valid)| v_idx_14) v_v_4_1) (<= (- (- c_main_p.offset) |c_main_~malloc_#res.offset|) 0) (<= (- (- c_main_q.offset) c_main_q.offset) 0) (<= (- c_main_q.offset c_main_~malloc_~size) (- 400)) (<= (- (- v_v_25_1) v_v_25_1) (- 800)) (= |c_main_~malloc_#res.base| v_b_4_1) (<= (- c_main_p.offset v_v_25_1) (- 400)) (= v_v_25_1 400) (<= (- c_main_~malloc_~size v_v_25_1) 0) (<= (- c_main_q.offset |c_main_~malloc_#res.offset|) 0) (<= (- (- c_main_p.offset) (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- c_main_q.offset) c_main_~malloc_~size) (- 400)) (<= (- v_b_5_1 v_b_9_1) 0) (<= (- (- c_main_p.offset) v_v_25_1) (- 400)) (<= (- c_main_~malloc_~size (- v_v_25_1)) 800) (<= (- (- c_main_~malloc_~size) (- v_v_25_1)) 0) (or (< v_idx_16 v_b_4_1) (<= v_b_5_1 v_idx_16) (= (select |c_#valid| v_idx_16) v_v_19_1)) (<= (- (- v_b_8_1) (- |c_main_~malloc_#res.base|)) 0) (<= (- (- c_main_p.offset) (- v_v_25_1)) 400) (<= (- |c_main_~malloc_#res.offset| (- c_main_~malloc_~size)) 400) (= (+ |c_main_~malloc_#res.base| 1) (+ v_b_8_1 1)) (or (= (select |c_#length| v_idx_23) v_v_26_1) (< v_idx_23 v_b_9_1)) (= (select |c_old(#length)| v_idx_20) v_v_2_1) (<= (- v_b_4_1 v_b_9_1) (- 1)) (<= (- (- v_b_4_1) (- v_b_5_1)) 1) (= c_main_q.offset 0) (<= (- v_b_4_1 v_b_5_1) (- 1)) (<= (- |c_main_~malloc_#res.offset| v_v_25_1) (- 400)) (<= (- (- |c_main_~malloc_#res.offset|) (- v_v_25_1)) 400) (<= (- c_main_p.offset c_main_~malloc_~size) (- 400)) (<= (- (- c_main_p.offset) c_main_q.offset) 0) (<= (- (- c_main_p.offset) c_main_~malloc_~size) (- 400)) (<= (- c_main_q.offset (- c_main_~malloc_~size)) 400) (<= (- |c_main_~malloc_#res.offset| c_main_~malloc_~size) (- 400)) (not (= c_main_q.base 0)) (or (= (select |c_#length| v_idx_21) v_v_24_1) (<= v_b_8_1 v_idx_21)) (<= (- (- c_main_q.offset) (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- c_main_q.offset) (- c_main_~malloc_~size)) 400) (<= (- (- |c_main_~malloc_#res.offset|) |c_main_~malloc_#res.offset|) 0) (not (= v_b_8_1 0)) (<= (- (- v_b_5_1) (- v_b_9_1)) 0) (<= (- (- v_b_4_1) (- v_b_9_1)) 1) (= (+ |c_main_~malloc_#res.base| 1) v_b_5_1) (<= (- v_b_5_1 v_b_8_1) 1) (or (<= v_b_4_1 v_idx_15) (= (select |c_#valid| v_idx_15) v_v_18_1)) (<= (- c_main_p.offset (- c_main_~malloc_~size)) 400) (<= (- c_main_p.offset (- c_main_p.offset)) 0) (<= (- c_main_q.offset (- v_v_25_1)) 400) (<= (- (- c_main_~malloc_~size) c_main_~malloc_~size) (- 800)) (<= (- (- c_main_p.offset) (- c_main_~malloc_~size)) 400) (<= (- c_main_p.offset |c_main_~malloc_#res.offset|) 0) (<= (- (- v_b_4_1) (- v_b_8_1)) 0) (= |c_main_~malloc_#res.base| v_b_8_1) (<= (- (- c_main_q.offset) |c_main_~malloc_#res.offset|) 0) (<= (- (- |c_main_~malloc_#res.offset|) v_v_25_1) (- 400)) (<= (- (- c_main_q.offset) (- v_v_25_1)) 400) (<= (- |c_main_~malloc_#res.offset| (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- v_b_5_1) (- v_b_8_1)) (- 1)) (= c_main_p.offset 0) (<= (- (- v_b_8_1) (- v_b_9_1)) 1) (<= (- v_b_4_1 |c_main_~malloc_#res.base|) 0) (<= (- c_main_p.offset (- c_main_q.offset)) 0) (= v_v_8_1 (select v_v_7_1 v_idx_12)) (<= (- v_b_4_1 v_b_8_1) 0) (not (= c_main_p.base 0)) (<= (- v_b_5_1 |c_main_~malloc_#res.base|) 1))))} [2019-01-07 15:33:33,661 WARN L263 ngHoareTripleChecker]: unsat core / model generation is disabled, enable it to get more details [2019-01-07 15:33:33,662 WARN L268 ngHoareTripleChecker]: -- [2019-01-07 15:33:33,662 WARN L269 ngHoareTripleChecker]: Simplified triple [2019-01-07 15:33:33,840 WARN L270 ngHoareTripleChecker]: Pre: {2147483647#true} [2019-01-07 15:33:33,840 WARN L274 ngHoareTripleChecker]: Action: ~malloc_old_#length, ~malloc_old_#valid := #length, #valid;~malloc_~size := 400;havoc ~malloc_#res.base, ~malloc_#res.offset;havoc #valid, #length;assume ~malloc_old_#valid[~malloc_#res.base] == false;assume #valid == ~malloc_old_#valid[~malloc_#res.base := true];assume ~malloc_#res.offset == 0;assume ~malloc_#res.base != 0;assume #length == ~malloc_old_#length[~malloc_#res.base := ~malloc_~size];p.base, p.offset := ~malloc_#res.base, ~malloc_#res.offset;q.base, q.offset := p.base, p.offset; [2019-01-07 15:33:33,841 WARN L184 hOps$ForEachOp$OfRef]: ActionStr: (and (not (select |c_main_~malloc_old_#valid_primed| |c_main_~malloc_#res.base_primed|)) (= c_main_p.offset_primed |c_main_~malloc_#res.offset_primed|) (= (store |c_main_~malloc_old_#length_primed| |c_main_~malloc_#res.base_primed| c_main_~malloc_~size_primed) |c_#length_primed|) (= |c_main_~malloc_old_#valid_primed| |c_#valid|) (= c_main_p.base_primed |c_main_~malloc_#res.base_primed|) (= |c_main_~malloc_old_#length_primed| |c_#length|) (= c_main_~malloc_~size_primed 400) (= c_main_q.offset_primed c_main_p.offset_primed) (= c_main_q.base_primed c_main_p.base_primed) (= (store |c_main_~malloc_old_#valid_primed| |c_main_~malloc_#res.base_primed| true) |c_#valid_primed|) (= 0 |c_main_~malloc_#res.offset_primed|) (not (= |c_main_~malloc_#res.base_primed| 0))) [2019-01-07 15:33:36,365 WARN L276 ngHoareTripleChecker]: Post: {2147483646#(and (<= (- main_q.offset (- |main_~malloc_#res.offset|)) 0) (not (= |main_~malloc_#res.base| 0)) (<= main_~malloc_~size 400) (<= main_q.offset 0) (<= 0 |main_~malloc_#res.offset|) (<= (- (- |main_~malloc_#res.offset|) main_~malloc_~size) (- 400)) (<= (- |main_~malloc_#res.offset| (- main_~malloc_~size)) 400) (forall ((v_idx_22 Int)) (or (< v_idx_22 |main_~malloc_#res.base|) (= 400 (select |#length| v_idx_22)) (<= (+ |main_~malloc_#res.base| 1) v_idx_22))) (<= (- (- main_p.offset) main_p.offset) 0) (<= (- main_p.offset main_q.offset) 0) (<= (- (- main_p.offset) (- main_q.offset)) 0) (forall ((v_idx_16 Int)) (or (<= (+ |main_~malloc_#res.base| 1) v_idx_16) (select |#valid| v_idx_16) (< v_idx_16 |main_~malloc_#res.base|))) (= main_q.offset 0) (= main_~malloc_~size 400) (<= (- (- |main_~malloc_#res.offset|) (- main_~malloc_~size)) 400) (<= 400 main_~malloc_~size) (<= (- main_p.offset main_~malloc_~size) (- 400)) (<= (- main_p.offset (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_p.offset) main_q.offset) 0) (<= (- (- main_p.offset) main_~malloc_~size) (- 400)) (<= (- main_q.offset (- main_~malloc_~size)) 400) (<= (- |main_~malloc_#res.offset| main_~malloc_~size) (- 400)) (not (= main_q.base 0)) (<= main_p.offset 0) (<= (- main_q.offset (- main_q.offset)) 0) (<= (- (- main_q.offset) (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_q.offset) (- main_~malloc_~size)) 400) (<= (- (- |main_~malloc_#res.offset|) |main_~malloc_#res.offset|) 0) (= |main_~malloc_#res.offset| 0) (<= (- main_~malloc_~size (- main_~malloc_~size)) 800) (<= (- main_p.offset (- main_~malloc_~size)) 400) (<= (- main_p.offset (- main_p.offset)) 0) (<= (- (- main_~malloc_~size) main_~malloc_~size) (- 800)) (<= (- (- main_p.offset) (- main_~malloc_~size)) 400) (<= (- main_p.offset |main_~malloc_#res.offset|) 0) (<= 0 main_q.offset) (<= 0 main_p.offset) (<= (- (- main_q.offset) |main_~malloc_#res.offset|) 0) (<= (- |main_~malloc_#res.offset| (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_p.offset) |main_~malloc_#res.offset|) 0) (= main_p.offset 0) (<= (- (- main_q.offset) main_q.offset) 0) (<= (- main_q.offset main_~malloc_~size) (- 400)) (<= |main_~malloc_#res.offset| 0) (<= (- main_p.offset (- main_q.offset)) 0) (<= (- main_q.offset |main_~malloc_#res.offset|) 0) (not (= main_p.base 0)) (<= (- (- main_p.offset) (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_q.offset) main_~malloc_~size) (- 400)))} [2019-01-07 15:33:36,791 WARN L212 ngHoareTripleChecker]: Soundness check inconclusive for the following hoare triple [2019-01-07 15:33:36,791 WARN L217 ngHoareTripleChecker]: Expected: VALID Actual: UNKNOWN [2019-01-07 15:33:36,792 WARN L219 ngHoareTripleChecker]: Solver was "Z3" in version "4.8.3" [2019-01-07 15:33:36,792 WARN L223 ngHoareTripleChecker]: -- [2019-01-07 15:33:36,793 WARN L224 ngHoareTripleChecker]: Pre: {2147483645#(forall ((v_idx_25 Int) (v_idx_36 Int) (v_idx_26 Int) (v_idx_37 Int) (v_idx_34 Int) (v_idx_35 Int) (v_idx_32 Int) (v_idx_33 Int) (v_idx_30 Int) (v_idx_31 Int) (v_idx_29 Int) (v_idx_27 Int) (v_idx_38 Int) (v_idx_28 Int)) (exists ((v_v_24_1 Int) (v_v_25_1 Int) (v_b_4_1 Int) (v_b_5_1 Int) (v_b_8_1 Int) (v_b_9_1 Int) (v_v_4_1 Bool) (v_v_26_1 Int) (v_v_8_1 Int) (v_v_19_1 Bool) (v_v_18_1 Bool) (v_v_7_1 (Array Int Int)) (v_v_12_1 Bool) (v_v_1_1 Int) (v_v_5_1 (Array Int Int)) (v_v_2_1 Int) (v_v_6_1 Int) (v_v_20_1 Bool)) (and (<= (- c_main_q.offset (- |c_main_~malloc_#res.offset|)) 0) (= (+ |c_main_~malloc_#res.base| 1) v_b_9_1) (not (= |c_main_~malloc_#res.base| 0)) (<= (- (- c_main_~malloc_~size) v_v_25_1) (- 800)) (= v_v_5_1 (select |c_#memory_int| v_idx_32)) (<= (- c_main_q.offset v_v_25_1) (- 400)) (<= (- (- c_main_q.offset) v_v_25_1) (- 400)) (<= (- (- |c_main_~malloc_#res.offset|) c_main_~malloc_~size) (- 400)) v_v_19_1 (<= (- (- v_b_4_1) (- |c_main_~malloc_#res.base|)) 0) (= (+ v_b_5_1 (- 1)) |c_main_~malloc_#res.base|) (<= (- (- c_main_p.offset) c_main_p.offset) 0) (<= (- c_main_p.offset c_main_q.offset) 0) (or (<= v_b_4_1 v_idx_29) (= (select |c_#valid| v_idx_29) v_v_18_1)) (<= (- c_main_p.offset (- v_v_25_1)) 400) (<= (- (- c_main_p.offset) (- c_main_q.offset)) 0) (<= (- (- v_b_5_1) (- |c_main_~malloc_#res.base|)) (- 1)) (<= (- (- v_b_9_1) (- |c_main_~malloc_#res.base|)) (- 1)) (= (+ |c_main_~malloc_#res.base| 1) (+ v_b_4_1 1)) (= c_main_~malloc_~size 400) (<= (- v_b_8_1 v_b_9_1) (- 1)) (<= (- (- |c_main_~malloc_#res.offset|) (- c_main_~malloc_~size)) 400) (<= (- v_b_9_1 |c_main_~malloc_#res.base|) 1) (<= (- |c_main_~malloc_#res.offset| (- v_v_25_1)) 400) (= v_v_7_1 (select |c_old(#memory_int)| v_idx_33)) (<= (- c_main_p.offset (- |c_main_~malloc_#res.offset|)) 0) (<= (- v_b_8_1 |c_main_~malloc_#res.base|) 0) (<= (- c_main_q.offset (- c_main_q.offset)) 0) (= |c_main_~malloc_#res.base| (+ v_b_9_1 (- 1))) (= |c_main_~malloc_#res.offset| 0) (<= (- v_v_25_1 (- v_v_25_1)) 800) (or (< v_idx_37 v_b_9_1) (= (select |c_#length| v_idx_37) v_v_26_1)) (<= (- c_main_~malloc_~size (- c_main_~malloc_~size)) 800) (<= (- (- c_main_p.offset) |c_main_~malloc_#res.offset|) 0) (<= (- (- c_main_q.offset) c_main_q.offset) 0) (<= (- c_main_q.offset c_main_~malloc_~size) (- 400)) (<= (- (- v_v_25_1) v_v_25_1) (- 800)) (= |c_main_~malloc_#res.base| v_b_4_1) (<= (- c_main_p.offset v_v_25_1) (- 400)) (= v_v_25_1 400) (<= (- c_main_~malloc_~size v_v_25_1) 0) (<= (- c_main_q.offset |c_main_~malloc_#res.offset|) 0) (<= (- (- c_main_p.offset) (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- c_main_q.offset) c_main_~malloc_~size) (- 400)) (<= (- v_b_5_1 v_b_9_1) 0) (= (select |c_main_~malloc_old_#valid| v_idx_38) v_v_12_1) (<= (- (- c_main_p.offset) v_v_25_1) (- 400)) (<= (- c_main_~malloc_~size (- v_v_25_1)) 800) (<= (- (- c_main_~malloc_~size) (- v_v_25_1)) 0) (= v_v_1_1 (select |c_main_~malloc_old_#length| v_idx_27)) (<= (- (- v_b_8_1) (- |c_main_~malloc_#res.base|)) 0) (<= (- (- c_main_p.offset) (- v_v_25_1)) 400) (<= (- |c_main_~malloc_#res.offset| (- c_main_~malloc_~size)) 400) (= (+ |c_main_~malloc_#res.base| 1) (+ v_b_8_1 1)) (<= (- v_b_4_1 v_b_9_1) (- 1)) (<= (- (- v_b_4_1) (- v_b_5_1)) 1) (= c_main_q.offset 0) (or (= (select |c_#valid| v_idx_31) v_v_20_1) (< v_idx_31 v_b_5_1)) (<= (- v_b_4_1 v_b_5_1) (- 1)) (<= (- |c_main_~malloc_#res.offset| v_v_25_1) (- 400)) (<= (- (- |c_main_~malloc_#res.offset|) (- v_v_25_1)) 400) (<= (- c_main_p.offset c_main_~malloc_~size) (- 400)) (<= (- (- c_main_p.offset) c_main_q.offset) 0) (<= (- (- c_main_p.offset) c_main_~malloc_~size) (- 400)) (= (select v_v_7_1 v_idx_26) v_v_8_1) (<= (- c_main_q.offset (- c_main_~malloc_~size)) 400) (<= (- |c_main_~malloc_#res.offset| c_main_~malloc_~size) (- 400)) (not (= c_main_q.base 0)) (<= (- (- c_main_q.offset) (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- c_main_q.offset) (- c_main_~malloc_~size)) 400) (<= (- (- |c_main_~malloc_#res.offset|) |c_main_~malloc_#res.offset|) 0) (not (= v_b_8_1 0)) (<= (- (- v_b_5_1) (- v_b_9_1)) 0) (<= (- (- v_b_4_1) (- v_b_9_1)) 1) (= (select |c_old(#length)| v_idx_34) v_v_2_1) (= (+ |c_main_~malloc_#res.base| 1) v_b_5_1) (<= (- v_b_5_1 v_b_8_1) 1) (<= (- c_main_p.offset (- c_main_~malloc_~size)) 400) (or (<= v_b_8_1 v_idx_35) (= (select |c_#length| v_idx_35) v_v_24_1)) (<= (- c_main_p.offset (- c_main_p.offset)) 0) (<= (- c_main_q.offset (- v_v_25_1)) 400) (<= (- (- c_main_~malloc_~size) c_main_~malloc_~size) (- 800)) (<= (- (- c_main_p.offset) (- c_main_~malloc_~size)) 400) (<= (- c_main_p.offset |c_main_~malloc_#res.offset|) 0) (<= (- (- v_b_4_1) (- v_b_8_1)) 0) (= |c_main_~malloc_#res.base| v_b_8_1) (<= (- (- c_main_q.offset) |c_main_~malloc_#res.offset|) 0) (<= (- (- |c_main_~malloc_#res.offset|) v_v_25_1) (- 400)) (<= (- (- c_main_q.offset) (- v_v_25_1)) 400) (<= (- |c_main_~malloc_#res.offset| (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- v_b_5_1) (- v_b_8_1)) (- 1)) (= c_main_p.offset 0) (<= (- (- v_b_8_1) (- v_b_9_1)) 1) (or (<= v_b_9_1 v_idx_36) (= (select |c_#length| v_idx_36) v_v_25_1) (< v_idx_36 v_b_8_1)) (<= (- v_b_4_1 |c_main_~malloc_#res.base|) 0) (<= (- c_main_p.offset (- c_main_q.offset)) 0) (= (select v_v_5_1 v_idx_25) v_v_6_1) (<= (- v_b_4_1 v_b_8_1) 0) (or (= (select |c_#valid| v_idx_30) v_v_19_1) (<= v_b_5_1 v_idx_30) (< v_idx_30 v_b_4_1)) (not (= c_main_p.base 0)) (<= (- v_b_5_1 |c_main_~malloc_#res.base|) 1) (= v_v_4_1 (select |c_old(#valid)| v_idx_28)))))} [2019-01-07 15:33:36,794 WARN L228 ngHoareTripleChecker]: Action: assume q.offset < p.offset + 400; [2019-01-07 15:33:36,794 WARN L184 hOps$ForEachOp$OfRef]: ActionStr: (< c_main_q.offset (+ c_main_p.offset 400)) [2019-01-07 15:33:36,795 WARN L230 ngHoareTripleChecker]: Post: {2147483644#(forall ((v_idx_47 Int) (v_idx_48 Int) (v_idx_45 Int) (v_idx_46 Int) (v_idx_43 Int) (v_idx_44 Int) (v_idx_41 Int) (v_idx_52 Int) (v_idx_42 Int) (v_idx_50 Int) (v_idx_40 Int) (v_idx_51 Int) (v_idx_49 Int) (v_idx_39 Int)) (exists ((v_v_24_1 Int) (v_v_25_1 Int) (v_b_4_1 Int) (v_b_5_1 Int) (v_b_8_1 Int) (v_b_9_1 Int) (v_v_4_1 Bool) (v_v_26_1 Int) (v_v_8_1 Int) (v_v_19_1 Bool) (v_v_18_1 Bool) (v_v_12_1 Bool) (v_v_7_1 (Array Int Int)) (v_v_1_1 Int) (v_v_2_1 Int) (v_v_5_1 (Array Int Int)) (v_v_6_1 Int) (v_v_20_1 Bool)) (and (<= (- c_main_q.offset (- |c_main_~malloc_#res.offset|)) 0) (= (+ |c_main_~malloc_#res.base| 1) v_b_9_1) (not (= |c_main_~malloc_#res.base| 0)) (<= (- (- c_main_~malloc_~size) v_v_25_1) (- 800)) (<= (- c_main_q.offset v_v_25_1) (- 400)) (or (= (select |c_#length| v_idx_50) v_v_25_1) (<= v_b_9_1 v_idx_50) (< v_idx_50 v_b_8_1)) (= v_b_9_1 (+ v_b_8_1 1)) (<= (- (- c_main_q.offset) v_v_25_1) (- 400)) (<= (- (- |c_main_~malloc_#res.offset|) c_main_~malloc_~size) (- 400)) v_v_19_1 (<= (- (- v_b_4_1) (- |c_main_~malloc_#res.base|)) 0) (or (= (select |c_#valid| v_idx_44) v_v_19_1) (< v_idx_44 v_b_4_1) (<= v_b_5_1 v_idx_44)) (<= (- (- c_main_p.offset) c_main_p.offset) 0) (<= (- c_main_p.offset c_main_q.offset) 0) (<= (- c_main_p.offset (- v_v_25_1)) 400) (<= (- (- c_main_p.offset) (- c_main_q.offset)) 0) (<= (- (- v_b_5_1) (- |c_main_~malloc_#res.base|)) (- 1)) (<= (- (- v_b_9_1) (- |c_main_~malloc_#res.base|)) (- 1)) (= c_main_~malloc_~size 400) (<= (- v_b_8_1 v_b_9_1) (- 1)) (<= (- (- |c_main_~malloc_#res.offset|) (- c_main_~malloc_~size)) 400) (<= (- v_b_9_1 |c_main_~malloc_#res.base|) 1) (<= (- |c_main_~malloc_#res.offset| (- v_v_25_1)) 400) (or (< v_idx_45 v_b_5_1) (= (select |c_#valid| v_idx_45) v_v_20_1)) (= (select |c_main_~malloc_old_#length| v_idx_41) v_v_1_1) (or (<= v_b_4_1 v_idx_43) (= (select |c_#valid| v_idx_43) v_v_18_1)) (<= (- c_main_p.offset (- |c_main_~malloc_#res.offset|)) 0) (= (+ v_b_5_1 (- 1)) v_b_8_1) (<= (- v_b_8_1 |c_main_~malloc_#res.base|) 0) (<= (- c_main_q.offset (- c_main_q.offset)) 0) (= (select |c_old(#length)| v_idx_48) v_v_2_1) (= |c_main_~malloc_#res.offset| 0) (<= (- v_v_25_1 (- v_v_25_1)) 800) (= (+ v_b_9_1 (- 1)) v_b_8_1) (<= (- c_main_~malloc_~size (- c_main_~malloc_~size)) 800) (or (= (select |c_#length| v_idx_49) v_v_24_1) (<= v_b_8_1 v_idx_49)) (<= (- (- c_main_p.offset) |c_main_~malloc_#res.offset|) 0) (<= (- (- c_main_q.offset) c_main_q.offset) 0) (<= (- c_main_q.offset c_main_~malloc_~size) (- 400)) (<= (- (- v_v_25_1) v_v_25_1) (- 800)) (= (select |c_main_~malloc_old_#valid| v_idx_52) v_v_12_1) (or (= (select |c_#length| v_idx_51) v_v_26_1) (< v_idx_51 v_b_9_1)) (<= (- c_main_p.offset v_v_25_1) (- 400)) (= v_v_25_1 400) (= v_v_7_1 (select |c_old(#memory_int)| v_idx_47)) (<= (- c_main_~malloc_~size v_v_25_1) 0) (<= (- c_main_q.offset |c_main_~malloc_#res.offset|) 0) (<= (- (- c_main_p.offset) (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- c_main_q.offset) c_main_~malloc_~size) (- 400)) (<= (- v_b_5_1 v_b_9_1) 0) (= (select v_v_7_1 v_idx_40) v_v_8_1) (<= (- (- c_main_p.offset) v_v_25_1) (- 400)) (<= (- c_main_~malloc_~size (- v_v_25_1)) 800) (<= (- (- c_main_~malloc_~size) (- v_v_25_1)) 0) (= v_b_5_1 v_b_9_1) (= v_b_9_1 (+ v_b_4_1 1)) (= (select |c_old(#valid)| v_idx_42) v_v_4_1) (<= (- (- v_b_8_1) (- |c_main_~malloc_#res.base|)) 0) (<= (- (- c_main_p.offset) (- v_v_25_1)) 400) (<= (- |c_main_~malloc_#res.offset| (- c_main_~malloc_~size)) 400) (= v_b_8_1 v_b_4_1) (= (select |c_#memory_int| v_idx_46) v_v_5_1) (<= (- v_b_4_1 v_b_9_1) (- 1)) (<= (- (- v_b_4_1) (- v_b_5_1)) 1) (= c_main_q.offset 0) (<= (- v_b_4_1 v_b_5_1) (- 1)) (<= (- |c_main_~malloc_#res.offset| v_v_25_1) (- 400)) (<= (- (- |c_main_~malloc_#res.offset|) (- v_v_25_1)) 400) (= (select v_v_5_1 v_idx_39) v_v_6_1) (<= (- c_main_p.offset c_main_~malloc_~size) (- 400)) (<= (- (- c_main_p.offset) c_main_q.offset) 0) (<= (- (- c_main_p.offset) c_main_~malloc_~size) (- 400)) (<= (- c_main_q.offset (- c_main_~malloc_~size)) 400) (<= (- |c_main_~malloc_#res.offset| c_main_~malloc_~size) (- 400)) (not (= c_main_q.base 0)) (<= (- (- c_main_q.offset) (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- c_main_q.offset) (- c_main_~malloc_~size)) 400) (<= (- (- |c_main_~malloc_#res.offset|) |c_main_~malloc_#res.offset|) 0) (not (= v_b_8_1 0)) (<= (- (- v_b_5_1) (- v_b_9_1)) 0) (<= (- (- v_b_4_1) (- v_b_9_1)) 1) (<= (- v_b_5_1 v_b_8_1) 1) (<= (- c_main_p.offset (- c_main_~malloc_~size)) 400) (<= (- c_main_p.offset (- c_main_p.offset)) 0) (<= (- c_main_q.offset (- v_v_25_1)) 400) (<= (- (- c_main_~malloc_~size) c_main_~malloc_~size) (- 800)) (<= (- (- c_main_p.offset) (- c_main_~malloc_~size)) 400) (<= (- c_main_p.offset |c_main_~malloc_#res.offset|) 0) (<= (- (- v_b_4_1) (- v_b_8_1)) 0) (= |c_main_~malloc_#res.base| v_b_8_1) (<= (- (- c_main_q.offset) |c_main_~malloc_#res.offset|) 0) (<= (- (- |c_main_~malloc_#res.offset|) v_v_25_1) (- 400)) (<= (- (- c_main_q.offset) (- v_v_25_1)) 400) (<= (- |c_main_~malloc_#res.offset| (- |c_main_~malloc_#res.offset|)) 0) (<= (- (- v_b_5_1) (- v_b_8_1)) (- 1)) (= c_main_p.offset 0) (<= (- (- v_b_8_1) (- v_b_9_1)) 1) (<= (- v_b_4_1 |c_main_~malloc_#res.base|) 0) (<= (- c_main_p.offset (- c_main_q.offset)) 0) (<= (- v_b_4_1 v_b_8_1) 0) (not (= c_main_p.base 0)) (<= (- v_b_5_1 |c_main_~malloc_#res.base|) 1))))} [2019-01-07 15:33:36,795 WARN L263 ngHoareTripleChecker]: unsat core / model generation is disabled, enable it to get more details [2019-01-07 15:33:36,796 WARN L268 ngHoareTripleChecker]: -- [2019-01-07 15:33:36,797 WARN L269 ngHoareTripleChecker]: Simplified triple [2019-01-07 15:33:37,486 WARN L270 ngHoareTripleChecker]: Pre: {2147483645#(and (<= (- main_q.offset (- |main_~malloc_#res.offset|)) 0) (not (= |main_~malloc_#res.base| 0)) (<= main_~malloc_~size 400) (<= main_q.offset 0) (<= 0 |main_~malloc_#res.offset|) (forall ((v_idx_30 Int)) (or (<= (+ |main_~malloc_#res.base| 1) v_idx_30) (select |#valid| v_idx_30) (< v_idx_30 |main_~malloc_#res.base|))) (<= (- (- |main_~malloc_#res.offset|) main_~malloc_~size) (- 400)) (<= (- |main_~malloc_#res.offset| (- main_~malloc_~size)) 400) (<= (- (- main_p.offset) main_p.offset) 0) (<= (- main_p.offset main_q.offset) 0) (<= (- (- main_p.offset) (- main_q.offset)) 0) (= main_q.offset 0) (= main_~malloc_~size 400) (<= (- (- |main_~malloc_#res.offset|) (- main_~malloc_~size)) 400) (forall ((v_idx_36 Int)) (or (= (select |#length| v_idx_36) 400) (< v_idx_36 |main_~malloc_#res.base|) (<= (+ |main_~malloc_#res.base| 1) v_idx_36))) (<= 400 main_~malloc_~size) (<= (- main_p.offset main_~malloc_~size) (- 400)) (<= (- main_p.offset (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_p.offset) main_q.offset) 0) (<= (- (- main_p.offset) main_~malloc_~size) (- 400)) (<= (- main_q.offset (- main_~malloc_~size)) 400) (<= (- |main_~malloc_#res.offset| main_~malloc_~size) (- 400)) (not (= main_q.base 0)) (<= main_p.offset 0) (<= (- main_q.offset (- main_q.offset)) 0) (<= (- (- main_q.offset) (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_q.offset) (- main_~malloc_~size)) 400) (<= (- (- |main_~malloc_#res.offset|) |main_~malloc_#res.offset|) 0) (= |main_~malloc_#res.offset| 0) (<= (- main_~malloc_~size (- main_~malloc_~size)) 800) (<= (- main_p.offset (- main_~malloc_~size)) 400) (<= (- main_p.offset (- main_p.offset)) 0) (<= (- (- main_~malloc_~size) main_~malloc_~size) (- 800)) (<= (- (- main_p.offset) (- main_~malloc_~size)) 400) (<= (- main_p.offset |main_~malloc_#res.offset|) 0) (<= 0 main_q.offset) (<= (- (- main_q.offset) |main_~malloc_#res.offset|) 0) (<= 0 main_p.offset) (<= (- |main_~malloc_#res.offset| (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_p.offset) |main_~malloc_#res.offset|) 0) (= main_p.offset 0) (<= (- (- main_q.offset) main_q.offset) 0) (<= (- main_q.offset main_~malloc_~size) (- 400)) (<= |main_~malloc_#res.offset| 0) (<= (- main_p.offset (- main_q.offset)) 0) (<= (- main_q.offset |main_~malloc_#res.offset|) 0) (not (= main_p.base 0)) (<= (- (- main_p.offset) (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_q.offset) main_~malloc_~size) (- 400)))} [2019-01-07 15:33:37,486 WARN L274 ngHoareTripleChecker]: Action: assume q.offset < p.offset + 400; [2019-01-07 15:33:37,486 WARN L184 hOps$ForEachOp$OfRef]: ActionStr: (< c_main_q.offset (+ c_main_p.offset 400)) [2019-01-07 15:33:37,948 WARN L276 ngHoareTripleChecker]: Post: {2147483644#(and (<= (- main_q.offset (- |main_~malloc_#res.offset|)) 0) (not (= |main_~malloc_#res.base| 0)) (<= main_~malloc_~size 400) (<= main_q.offset 0) (<= 0 |main_~malloc_#res.offset|) (<= (- (- |main_~malloc_#res.offset|) main_~malloc_~size) (- 400)) (<= (- |main_~malloc_#res.offset| (- main_~malloc_~size)) 400) (<= (- (- main_p.offset) main_p.offset) 0) (<= (- main_p.offset main_q.offset) 0) (<= (- (- main_p.offset) (- main_q.offset)) 0) (forall ((v_idx_44 Int)) (or (<= (+ |main_~malloc_#res.base| 1) v_idx_44) (select |#valid| v_idx_44) (< v_idx_44 |main_~malloc_#res.base|))) (= main_q.offset 0) (= main_~malloc_~size 400) (<= (- (- |main_~malloc_#res.offset|) (- main_~malloc_~size)) 400) (<= 400 main_~malloc_~size) (<= (- main_p.offset main_~malloc_~size) (- 400)) (<= (- main_p.offset (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_p.offset) main_q.offset) 0) (<= (- (- main_p.offset) main_~malloc_~size) (- 400)) (<= (- main_q.offset (- main_~malloc_~size)) 400) (<= (- |main_~malloc_#res.offset| main_~malloc_~size) (- 400)) (not (= main_q.base 0)) (<= main_p.offset 0) (<= (- main_q.offset (- main_q.offset)) 0) (<= (- (- main_q.offset) (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_q.offset) (- main_~malloc_~size)) 400) (<= (- (- |main_~malloc_#res.offset|) |main_~malloc_#res.offset|) 0) (= |main_~malloc_#res.offset| 0) (<= (- main_~malloc_~size (- main_~malloc_~size)) 800) (<= (- main_p.offset (- main_~malloc_~size)) 400) (<= (- main_p.offset (- main_p.offset)) 0) (<= (- (- main_~malloc_~size) main_~malloc_~size) (- 800)) (<= (- (- main_p.offset) (- main_~malloc_~size)) 400) (<= (- main_p.offset |main_~malloc_#res.offset|) 0) (<= 0 main_q.offset) (<= 0 main_p.offset) (<= (- (- main_q.offset) |main_~malloc_#res.offset|) 0) (<= (- |main_~malloc_#res.offset| (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_p.offset) |main_~malloc_#res.offset|) 0) (= main_p.offset 0) (<= (- (- main_q.offset) main_q.offset) 0) (<= (- main_q.offset main_~malloc_~size) (- 400)) (<= |main_~malloc_#res.offset| 0) (<= (- main_p.offset (- main_q.offset)) 0) (<= (- main_q.offset |main_~malloc_#res.offset|) 0) (not (= main_p.base 0)) (<= (- (- main_p.offset) (- |main_~malloc_#res.offset|)) 0) (<= (- (- main_q.offset) main_~malloc_~size) (- 400)) (forall ((v_idx_50 Int)) (or (< v_idx_50 |main_~malloc_#res.base|) (<= (+ |main_~malloc_#res.base| 1) v_idx_50) (= (select |#length| v_idx_50) 400))))} [2019-01-07 15:33:37,956 FATAL L292 ToolchainWalker]: The Plugin de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2 has thrown an exception: java.lang.AssertionError: inappropriate decl info at de.uni_freiburg.informatik.ultimate.modelcheckerutils.boogie.Boogie2SmtSymbolTable.getBoogieVar(Boogie2SmtSymbolTable.java:240) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.transformula.poorman.Boogie2SmtSymbolTableTmpVars.getBoogieVar(Boogie2SmtSymbolTableTmpVars.java:112) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.getBoogieVar(NonrelationalEvaluator.java:204) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.visit(NonrelationalEvaluator.java:158) at de.uni_freiburg.informatik.ultimate.boogie.BoogieVisitor.processExpression(BoogieVisitor.java:369) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.processExpression(NonrelationalEvaluator.java:101) at de.uni_freiburg.informatik.ultimate.boogie.BoogieTransformer.processExpression(BoogieTransformer.java:688) at de.uni_freiburg.informatik.ultimate.boogie.BoogieVisitor.processExpression(BoogieVisitor.java:391) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.processExpression(NonrelationalEvaluator.java:101) at de.uni_freiburg.informatik.ultimate.boogie.BoogieTransformer.processExpression(BoogieTransformer.java:681) at de.uni_freiburg.informatik.ultimate.boogie.BoogieVisitor.processExpression(BoogieVisitor.java:391) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.processExpression(NonrelationalEvaluator.java:101) at de.uni_freiburg.informatik.ultimate.boogie.BoogieTransformer.processExpression(BoogieTransformer.java:681) at de.uni_freiburg.informatik.ultimate.boogie.BoogieVisitor.processExpression(BoogieVisitor.java:391) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.processExpression(NonrelationalEvaluator.java:101) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.createEvaluator(NonrelationalEvaluator.java:72) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalEvaluator.evaluate(NonrelationalEvaluator.java:81) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalPostOperator.evaluate(NonrelationalPostOperator.java:184) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.nonrelational.NonrelationalPostOperator.evaluate(NonrelationalPostOperator.java:1) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.compound.CompoundDomainPostOperator.evaluate(CompoundDomainPostOperator.java:323) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.compound.CompoundDomainPostOperator.evaluate(CompoundDomainPostOperator.java:1) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainToolkit.evaluate(ArrayDomainToolkit.java:168) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainState.isTrueInSubstate(ArrayDomainState.java:1315) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainState.simplifySegmentation(ArrayDomainState.java:1252) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainState.simplify(ArrayDomainState.java:1325) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainStatementProcessor.processAssume(ArrayDomainStatementProcessor.java:62) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainStatementProcessor.process(ArrayDomainStatementProcessor.java:45) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainPostOperator.handleInternalTransition(ArrayDomainPostOperator.java:124) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainPostOperator.apply(ArrayDomainPostOperator.java:74) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.domain.array.ArrayDomainPostOperator.apply(ArrayDomainPostOperator.java:1) at de.uni_freiburg.informatik.ultimate.modelcheckerutils.absint.DisjunctiveAbstractState.lambda$17(DisjunctiveAbstractState.java:323) at de.uni_freiburg.informatik.ultimate.modelcheckerutils.absint.DisjunctiveAbstractState.mapCollection(DisjunctiveAbstractState.java:519) at de.uni_freiburg.informatik.ultimate.modelcheckerutils.absint.DisjunctiveAbstractState.apply(DisjunctiveAbstractState.java:323) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.algorithm.FixpointEngine.calculateAbstractPost(FixpointEngine.java:249) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.algorithm.FixpointEngine.calculateFixpoint(FixpointEngine.java:134) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.algorithm.FixpointEngine.run(FixpointEngine.java:105) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.tool.AbstractInterpreter.run(AbstractInterpreter.java:109) at de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2.AbstractInterpretationRcfgObserver.process(AbstractInterpretationRcfgObserver.java:73) at de.uni_freiburg.informatik.ultimate.core.coreplugin.modelwalker.CFGWalker.runObserver(CFGWalker.java:57) at de.uni_freiburg.informatik.ultimate.core.coreplugin.modelwalker.BaseWalker.runObserver(BaseWalker.java:93) at de.uni_freiburg.informatik.ultimate.core.coreplugin.modelwalker.BaseWalker.run(BaseWalker.java:86) at de.uni_freiburg.informatik.ultimate.core.coreplugin.PluginConnector.runObserver(PluginConnector.java:167) at de.uni_freiburg.informatik.ultimate.core.coreplugin.PluginConnector.runTool(PluginConnector.java:156) at de.uni_freiburg.informatik.ultimate.core.coreplugin.PluginConnector.run(PluginConnector.java:128) at de.uni_freiburg.informatik.ultimate.core.coreplugin.ToolchainWalker.executePluginConnector(ToolchainWalker.java:232) at de.uni_freiburg.informatik.ultimate.core.coreplugin.ToolchainWalker.processPlugin(ToolchainWalker.java:226) at de.uni_freiburg.informatik.ultimate.core.coreplugin.ToolchainWalker.walkUnprotected(ToolchainWalker.java:142) at de.uni_freiburg.informatik.ultimate.core.coreplugin.ToolchainWalker.walk(ToolchainWalker.java:104) at de.uni_freiburg.informatik.ultimate.core.coreplugin.ToolchainManager$Toolchain.processToolchain(ToolchainManager.java:316) at de.uni_freiburg.informatik.ultimate.core.coreplugin.toolchain.DefaultToolchainJob.run(DefaultToolchainJob.java:145) at org.eclipse.core.internal.jobs.Worker.run(Worker.java:55) [2019-01-07 15:33:37,961 INFO L168 Benchmark]: Toolchain (without parser) took 6922.77 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 991.7 MB in the end (delta: 454.5 MB). Peak memory consumption was 454.5 MB. Max. memory is 7.1 GB. [2019-01-07 15:33:37,964 INFO L168 Benchmark]: Boogie PL CUP Parser took 0.19 ms. Allocated memory is still 1.5 GB. Free memory is still 1.4 GB. There was no memory consumed. Max. memory is 7.1 GB. [2019-01-07 15:33:37,964 INFO L168 Benchmark]: Boogie Procedure Inliner took 64.93 ms. Allocated memory is still 1.5 GB. Free memory is still 1.4 GB. There was no memory consumed. Max. memory is 7.1 GB. [2019-01-07 15:33:37,965 INFO L168 Benchmark]: Boogie Preprocessor took 30.19 ms. Allocated memory is still 1.5 GB. Free memory is still 1.4 GB. There was no memory consumed. Max. memory is 7.1 GB. [2019-01-07 15:33:37,966 INFO L168 Benchmark]: RCFGBuilder took 546.35 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 1.4 GB in the end (delta: 21.1 MB). Peak memory consumption was 21.1 MB. Max. memory is 7.1 GB. [2019-01-07 15:33:37,967 INFO L168 Benchmark]: Abstract Interpretation took 6273.24 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 991.7 MB in the end (delta: 433.4 MB). Peak memory consumption was 433.4 MB. Max. memory is 7.1 GB. [2019-01-07 15:33:37,972 INFO L336 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - GenericResult: Assertions are enabled Assertions are enabled - StatisticsResult: Toolchain Benchmarks Benchmark results are: * Boogie PL CUP Parser took 0.19 ms. Allocated memory is still 1.5 GB. Free memory is still 1.4 GB. There was no memory consumed. Max. memory is 7.1 GB. * Boogie Procedure Inliner took 64.93 ms. Allocated memory is still 1.5 GB. Free memory is still 1.4 GB. There was no memory consumed. Max. memory is 7.1 GB. * Boogie Preprocessor took 30.19 ms. Allocated memory is still 1.5 GB. Free memory is still 1.4 GB. There was no memory consumed. Max. memory is 7.1 GB. * RCFGBuilder took 546.35 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 1.4 GB in the end (delta: 21.1 MB). Peak memory consumption was 21.1 MB. Max. memory is 7.1 GB. * Abstract Interpretation took 6273.24 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 991.7 MB in the end (delta: 433.4 MB). Peak memory consumption was 433.4 MB. Max. memory is 7.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2: - ExceptionOrErrorResult: AssertionError: inappropriate decl info de.uni_freiburg.informatik.ultimate.plugins.analysis.abstractinterpretationv2: AssertionError: inappropriate decl info: de.uni_freiburg.informatik.ultimate.modelcheckerutils.boogie.Boogie2SmtSymbolTable.getBoogieVar(Boogie2SmtSymbolTable.java:240) RESULT: Ultimate could not prove your program: Toolchain returned no result. Received shutdown request...