./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/nla-digbench-scaling/ps6-ll_valuebound10.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version de325976 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/nla-digbench-scaling/ps6-ll_valuebound10.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 1c9e40c4fcbf0a2270c810eae17f30e2b9a539f72a78b9b7061997095813940b --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-de32597-m [2024-09-18 16:35:01,230 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-18 16:35:01,297 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-18 16:35:01,304 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-18 16:35:01,304 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-18 16:35:01,323 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-18 16:35:01,323 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-18 16:35:01,324 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-18 16:35:01,324 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-18 16:35:01,325 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-18 16:35:01,325 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-18 16:35:01,325 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-18 16:35:01,326 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-18 16:35:01,326 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-18 16:35:01,326 INFO L153 SettingsManager]: * Use SBE=true [2024-09-18 16:35:01,327 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-18 16:35:01,327 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-18 16:35:01,327 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-18 16:35:01,328 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-18 16:35:01,328 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-18 16:35:01,328 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-18 16:35:01,329 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-18 16:35:01,329 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-18 16:35:01,330 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-18 16:35:01,330 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-18 16:35:01,330 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-18 16:35:01,331 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-18 16:35:01,331 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-18 16:35:01,331 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-18 16:35:01,331 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-18 16:35:01,332 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-18 16:35:01,332 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-18 16:35:01,332 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-18 16:35:01,332 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-18 16:35:01,333 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-18 16:35:01,333 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-18 16:35:01,333 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-18 16:35:01,334 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-18 16:35:01,334 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-18 16:35:01,334 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-18 16:35:01,334 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-18 16:35:01,335 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-18 16:35:01,335 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 1c9e40c4fcbf0a2270c810eae17f30e2b9a539f72a78b9b7061997095813940b Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-18 16:35:01,553 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-18 16:35:01,577 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-18 16:35:01,581 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-18 16:35:01,582 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-18 16:35:01,583 INFO L274 PluginConnector]: CDTParser initialized [2024-09-18 16:35:01,584 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/nla-digbench-scaling/ps6-ll_valuebound10.c [2024-09-18 16:35:03,005 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-18 16:35:03,185 INFO L384 CDTParser]: Found 1 translation units. [2024-09-18 16:35:03,186 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench-scaling/ps6-ll_valuebound10.c [2024-09-18 16:35:03,192 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/22b899c84/0d1e54a54cbb47eeae23a1c09040415b/FLAGf97d9311c [2024-09-18 16:35:03,204 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/22b899c84/0d1e54a54cbb47eeae23a1c09040415b [2024-09-18 16:35:03,206 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-18 16:35:03,208 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-18 16:35:03,209 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-18 16:35:03,209 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-18 16:35:03,214 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-18 16:35:03,215 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,216 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@7eb9c74c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03, skipping insertion in model container [2024-09-18 16:35:03,216 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,239 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-18 16:35:03,376 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench-scaling/ps6-ll_valuebound10.c[458,471] [2024-09-18 16:35:03,410 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-18 16:35:03,419 INFO L200 MainTranslator]: Completed pre-run [2024-09-18 16:35:03,448 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench-scaling/ps6-ll_valuebound10.c[458,471] [2024-09-18 16:35:03,459 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-18 16:35:03,475 INFO L204 MainTranslator]: Completed translation [2024-09-18 16:35:03,476 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03 WrapperNode [2024-09-18 16:35:03,476 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-18 16:35:03,477 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-18 16:35:03,477 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-18 16:35:03,477 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-18 16:35:03,484 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,491 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,497 INFO L138 Inliner]: procedures = 14, calls = 12, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-18 16:35:03,498 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-18 16:35:03,498 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-18 16:35:03,498 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-18 16:35:03,499 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-18 16:35:03,509 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,510 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,516 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,538 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-09-18 16:35:03,538 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,539 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,541 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,548 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,553 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,554 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,555 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-18 16:35:03,556 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-18 16:35:03,556 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-18 16:35:03,556 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-18 16:35:03,556 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (1/1) ... [2024-09-18 16:35:03,563 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-18 16:35:03,575 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:35:03,597 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-18 16:35:03,599 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-18 16:35:03,642 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-18 16:35:03,642 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-18 16:35:03,642 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-18 16:35:03,643 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-18 16:35:03,643 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-18 16:35:03,643 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-18 16:35:03,643 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-18 16:35:03,644 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-18 16:35:03,644 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-18 16:35:03,644 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-18 16:35:03,645 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-18 16:35:03,645 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-18 16:35:03,708 INFO L242 CfgBuilder]: Building ICFG [2024-09-18 16:35:03,710 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-18 16:35:03,860 INFO L? ?]: Removed 5 outVars from TransFormulas that were not future-live. [2024-09-18 16:35:03,860 INFO L291 CfgBuilder]: Performing block encoding [2024-09-18 16:35:03,879 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-18 16:35:03,881 INFO L318 CfgBuilder]: Removed 1 assume(true) statements. [2024-09-18 16:35:03,881 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.09 04:35:03 BoogieIcfgContainer [2024-09-18 16:35:03,882 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-18 16:35:03,883 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-18 16:35:03,884 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-18 16:35:03,887 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-18 16:35:03,888 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 18.09 04:35:03" (1/3) ... [2024-09-18 16:35:03,888 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@23938df4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 18.09 04:35:03, skipping insertion in model container [2024-09-18 16:35:03,889 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.09 04:35:03" (2/3) ... [2024-09-18 16:35:03,889 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@23938df4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 18.09 04:35:03, skipping insertion in model container [2024-09-18 16:35:03,889 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.09 04:35:03" (3/3) ... [2024-09-18 16:35:03,890 INFO L112 eAbstractionObserver]: Analyzing ICFG ps6-ll_valuebound10.c [2024-09-18 16:35:03,903 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-18 16:35:03,903 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-18 16:35:03,956 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-18 16:35:03,962 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@872b7cb, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-18 16:35:03,962 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-18 16:35:03,965 INFO L276 IsEmpty]: Start isEmpty. Operand has 27 states, 14 states have (on average 1.4285714285714286) internal successors, (20), 15 states have internal predecessors, (20), 7 states have call successors, (7), 4 states have call predecessors, (7), 4 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-18 16:35:03,973 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2024-09-18 16:35:03,973 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:35:03,974 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:35:03,975 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:35:03,979 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:03,979 INFO L85 PathProgramCache]: Analyzing trace with hash -620791457, now seen corresponding path program 1 times [2024-09-18 16:35:03,987 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:35:03,987 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [989719483] [2024-09-18 16:35:03,987 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:03,988 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:35:04,076 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:04,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-18 16:35:04,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:04,133 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-18 16:35:04,134 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:04,140 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-18 16:35:04,141 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:04,150 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-18 16:35:04,150 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:35:04,150 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [989719483] [2024-09-18 16:35:04,151 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [989719483] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-18 16:35:04,151 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-18 16:35:04,151 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-18 16:35:04,154 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1826803116] [2024-09-18 16:35:04,155 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-18 16:35:04,159 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-18 16:35:04,160 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:35:04,179 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-18 16:35:04,179 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-18 16:35:04,181 INFO L87 Difference]: Start difference. First operand has 27 states, 14 states have (on average 1.4285714285714286) internal successors, (20), 15 states have internal predecessors, (20), 7 states have call successors, (7), 4 states have call predecessors, (7), 4 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-18 16:35:04,205 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:35:04,205 INFO L93 Difference]: Finished difference Result 48 states and 66 transitions. [2024-09-18 16:35:04,206 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-18 16:35:04,207 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 21 [2024-09-18 16:35:04,207 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:35:04,212 INFO L225 Difference]: With dead ends: 48 [2024-09-18 16:35:04,212 INFO L226 Difference]: Without dead ends: 23 [2024-09-18 16:35:04,214 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-18 16:35:04,217 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 28 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-18 16:35:04,218 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 28 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-18 16:35:04,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 23 states. [2024-09-18 16:35:04,243 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 23 to 23. [2024-09-18 16:35:04,244 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 23 states, 12 states have (on average 1.1666666666666667) internal successors, (14), 13 states have internal predecessors, (14), 7 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (5), 5 states have call predecessors, (5), 5 states have call successors, (5) [2024-09-18 16:35:04,245 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 23 states to 23 states and 26 transitions. [2024-09-18 16:35:04,247 INFO L78 Accepts]: Start accepts. Automaton has 23 states and 26 transitions. Word has length 21 [2024-09-18 16:35:04,247 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:35:04,247 INFO L474 AbstractCegarLoop]: Abstraction has 23 states and 26 transitions. [2024-09-18 16:35:04,247 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-18 16:35:04,248 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:04,248 INFO L276 IsEmpty]: Start isEmpty. Operand 23 states and 26 transitions. [2024-09-18 16:35:04,249 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2024-09-18 16:35:04,249 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:35:04,249 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:35:04,250 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-18 16:35:04,250 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:35:04,251 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:04,251 INFO L85 PathProgramCache]: Analyzing trace with hash -959298087, now seen corresponding path program 1 times [2024-09-18 16:35:04,251 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:35:04,251 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1474864718] [2024-09-18 16:35:04,251 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:04,252 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:35:04,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-18 16:35:04,278 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2099060625] [2024-09-18 16:35:04,278 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:04,279 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:04,279 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:35:04,281 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-18 16:35:04,285 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-18 16:35:04,366 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:04,368 INFO L262 TraceCheckSpWp]: Trace formula consists of 64 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-18 16:35:04,374 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-18 16:35:04,466 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-18 16:35:04,466 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-18 16:35:04,466 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:35:04,467 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1474864718] [2024-09-18 16:35:04,467 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-18 16:35:04,467 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2099060625] [2024-09-18 16:35:04,467 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2099060625] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-18 16:35:04,468 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-18 16:35:04,468 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-18 16:35:04,469 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [155233956] [2024-09-18 16:35:04,469 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-18 16:35:04,470 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-18 16:35:04,471 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:35:04,472 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-18 16:35:04,472 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-18 16:35:04,472 INFO L87 Difference]: Start difference. First operand 23 states and 26 transitions. Second operand has 5 states, 5 states have (on average 2.0) internal successors, (10), 4 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-18 16:35:04,533 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:35:04,534 INFO L93 Difference]: Finished difference Result 34 states and 39 transitions. [2024-09-18 16:35:04,534 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-18 16:35:04,534 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.0) internal successors, (10), 4 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 21 [2024-09-18 16:35:04,534 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:35:04,535 INFO L225 Difference]: With dead ends: 34 [2024-09-18 16:35:04,535 INFO L226 Difference]: Without dead ends: 30 [2024-09-18 16:35:04,536 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-18 16:35:04,537 INFO L434 NwaCegarLoop]: 20 mSDtfsCounter, 4 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 26 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 6 SdHoareTripleChecker+Valid, 77 SdHoareTripleChecker+Invalid, 28 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 26 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-18 16:35:04,539 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [6 Valid, 77 Invalid, 28 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 26 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-18 16:35:04,540 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 30 states. [2024-09-18 16:35:04,552 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 30 to 30. [2024-09-18 16:35:04,553 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 30 states, 17 states have (on average 1.1176470588235294) internal successors, (19), 18 states have internal predecessors, (19), 8 states have call successors, (8), 5 states have call predecessors, (8), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-18 16:35:04,553 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 30 states to 30 states and 33 transitions. [2024-09-18 16:35:04,554 INFO L78 Accepts]: Start accepts. Automaton has 30 states and 33 transitions. Word has length 21 [2024-09-18 16:35:04,554 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:35:04,554 INFO L474 AbstractCegarLoop]: Abstraction has 30 states and 33 transitions. [2024-09-18 16:35:04,554 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.0) internal successors, (10), 4 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-18 16:35:04,555 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:04,555 INFO L276 IsEmpty]: Start isEmpty. Operand 30 states and 33 transitions. [2024-09-18 16:35:04,556 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-18 16:35:04,556 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:35:04,556 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:35:04,572 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-18 16:35:04,760 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:04,761 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:35:04,762 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:04,762 INFO L85 PathProgramCache]: Analyzing trace with hash 1544704875, now seen corresponding path program 1 times [2024-09-18 16:35:04,762 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:35:04,762 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [268156157] [2024-09-18 16:35:04,762 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:04,762 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:35:04,794 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-18 16:35:04,796 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [375989884] [2024-09-18 16:35:04,798 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:04,798 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:04,798 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:35:04,800 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-18 16:35:04,804 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-18 16:35:04,863 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:04,864 INFO L262 TraceCheckSpWp]: Trace formula consists of 81 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-18 16:35:04,867 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-18 16:35:04,935 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-18 16:35:04,935 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-18 16:35:05,049 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-18 16:35:05,050 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:35:05,052 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [268156157] [2024-09-18 16:35:05,052 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-18 16:35:05,052 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [375989884] [2024-09-18 16:35:05,052 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [375989884] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-18 16:35:05,052 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-18 16:35:05,052 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [6] total 7 [2024-09-18 16:35:05,053 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2031028093] [2024-09-18 16:35:05,053 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-18 16:35:05,053 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-18 16:35:05,053 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:35:05,056 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-18 16:35:05,056 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2024-09-18 16:35:05,056 INFO L87 Difference]: Start difference. First operand 30 states and 33 transitions. Second operand has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-18 16:35:05,116 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:35:05,117 INFO L93 Difference]: Finished difference Result 36 states and 38 transitions. [2024-09-18 16:35:05,118 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-18 16:35:05,118 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 28 [2024-09-18 16:35:05,118 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:35:05,119 INFO L225 Difference]: With dead ends: 36 [2024-09-18 16:35:05,120 INFO L226 Difference]: Without dead ends: 32 [2024-09-18 16:35:05,120 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 56 GetRequests, 48 SyntacticMatches, 2 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2024-09-18 16:35:05,121 INFO L434 NwaCegarLoop]: 20 mSDtfsCounter, 4 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 5 SdHoareTripleChecker+Valid, 73 SdHoareTripleChecker+Invalid, 24 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-18 16:35:05,123 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [5 Valid, 73 Invalid, 24 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-18 16:35:05,124 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 32 states. [2024-09-18 16:35:05,140 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 32 to 32. [2024-09-18 16:35:05,141 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 32 states, 19 states have (on average 1.0526315789473684) internal successors, (20), 19 states have internal predecessors, (20), 8 states have call successors, (8), 6 states have call predecessors, (8), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2024-09-18 16:35:05,143 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 32 states to 32 states and 34 transitions. [2024-09-18 16:35:05,143 INFO L78 Accepts]: Start accepts. Automaton has 32 states and 34 transitions. Word has length 28 [2024-09-18 16:35:05,144 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:35:05,144 INFO L474 AbstractCegarLoop]: Abstraction has 32 states and 34 transitions. [2024-09-18 16:35:05,144 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-18 16:35:05,148 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:05,148 INFO L276 IsEmpty]: Start isEmpty. Operand 32 states and 34 transitions. [2024-09-18 16:35:05,149 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-18 16:35:05,149 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:35:05,149 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:35:05,163 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-18 16:35:05,353 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:05,354 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:35:05,354 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:05,355 INFO L85 PathProgramCache]: Analyzing trace with hash 21814286, now seen corresponding path program 1 times [2024-09-18 16:35:05,355 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:35:05,355 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [667130968] [2024-09-18 16:35:05,355 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:05,356 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:35:05,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-18 16:35:05,392 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1706102651] [2024-09-18 16:35:05,392 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:05,392 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:05,392 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:35:05,396 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-18 16:35:05,398 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-18 16:35:05,460 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:35:05,461 INFO L262 TraceCheckSpWp]: Trace formula consists of 100 conjuncts, 26 conjuncts are in the unsatisfiable core [2024-09-18 16:35:05,465 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-18 16:35:05,668 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 7 proven. 8 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-18 16:35:05,668 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-18 16:35:06,178 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 11 proven. 4 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-18 16:35:06,179 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:35:06,179 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [667130968] [2024-09-18 16:35:06,179 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-18 16:35:06,179 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1706102651] [2024-09-18 16:35:06,179 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1706102651] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-18 16:35:06,179 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-18 16:35:06,179 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10] total 15 [2024-09-18 16:35:06,179 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1319340055] [2024-09-18 16:35:06,180 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-18 16:35:06,180 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-18 16:35:06,180 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:35:06,181 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-18 16:35:06,181 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=46, Invalid=164, Unknown=0, NotChecked=0, Total=210 [2024-09-18 16:35:06,181 INFO L87 Difference]: Start difference. First operand 32 states and 34 transitions. Second operand has 15 states, 11 states have (on average 2.3636363636363638) internal successors, (26), 12 states have internal predecessors, (26), 9 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (9), 7 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-18 16:35:06,541 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:35:06,541 INFO L93 Difference]: Finished difference Result 53 states and 61 transitions. [2024-09-18 16:35:06,542 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-09-18 16:35:06,542 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 11 states have (on average 2.3636363636363638) internal successors, (26), 12 states have internal predecessors, (26), 9 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (9), 7 states have call predecessors, (9), 7 states have call successors, (9) Word has length 39 [2024-09-18 16:35:06,543 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:35:06,543 INFO L225 Difference]: With dead ends: 53 [2024-09-18 16:35:06,544 INFO L226 Difference]: Without dead ends: 45 [2024-09-18 16:35:06,544 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 80 GetRequests, 62 SyntacticMatches, 2 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 26 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=64, Invalid=242, Unknown=0, NotChecked=0, Total=306 [2024-09-18 16:35:06,545 INFO L434 NwaCegarLoop]: 20 mSDtfsCounter, 4 mSDsluCounter, 158 mSDsCounter, 0 mSdLazyCounter, 111 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 5 SdHoareTripleChecker+Valid, 178 SdHoareTripleChecker+Invalid, 122 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 111 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-18 16:35:06,558 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [5 Valid, 178 Invalid, 122 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 111 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-18 16:35:06,559 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 45 states. [2024-09-18 16:35:06,580 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 45 to 45. [2024-09-18 16:35:06,581 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 45 states, 28 states have (on average 1.0357142857142858) internal successors, (29), 28 states have internal predecessors, (29), 11 states have call successors, (11), 7 states have call predecessors, (11), 5 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) [2024-09-18 16:35:06,582 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 49 transitions. [2024-09-18 16:35:06,583 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 49 transitions. Word has length 39 [2024-09-18 16:35:06,583 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:35:06,583 INFO L474 AbstractCegarLoop]: Abstraction has 45 states and 49 transitions. [2024-09-18 16:35:06,583 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 11 states have (on average 2.3636363636363638) internal successors, (26), 12 states have internal predecessors, (26), 9 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (9), 7 states have call predecessors, (9), 7 states have call successors, (9) [2024-09-18 16:35:06,584 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:06,584 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 49 transitions. [2024-09-18 16:35:06,585 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2024-09-18 16:35:06,585 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:35:06,587 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 5, 5, 5, 4, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:35:06,604 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-18 16:35:06,787 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:06,788 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:35:06,788 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:35:06,788 INFO L85 PathProgramCache]: Analyzing trace with hash -244405920, now seen corresponding path program 2 times [2024-09-18 16:35:06,789 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:35:06,789 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [82823390] [2024-09-18 16:35:06,789 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:35:06,789 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:35:06,842 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-18 16:35:06,847 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1638858633] [2024-09-18 16:35:06,849 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-18 16:35:06,849 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:35:06,849 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:35:06,851 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-18 16:35:06,852 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-18 16:35:06,910 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-18 16:35:06,911 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-18 16:35:06,912 INFO L262 TraceCheckSpWp]: Trace formula consists of 151 conjuncts, 46 conjuncts are in the unsatisfiable core [2024-09-18 16:35:06,916 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-18 16:35:07,247 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 31 proven. 38 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-18 16:35:07,248 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-18 16:36:18,844 WARN L854 $PredicateComparison]: unable to prove that (let ((.cse0 (* c_main_~y~0 c_main_~y~0))) (or (= (+ 16 (* 8 c_main_~y~0) .cse0) (+ (* c_main_~y~0 c_main_~k~0) (* 4 c_main_~k~0))) (not (= (+ c_main_~c~0 4) c_main_~k~0)) (not (= (mod (+ (* 10 c_main_~y~0 c_main_~y~0 c_main_~y~0 c_main_~y~0 c_main_~y~0 c_main_~y~0) (* 7 c_main_~y~0 c_main_~y~0 c_main_~y~0 c_main_~y~0) (* 6 c_main_~y~0 c_main_~y~0 c_main_~y~0 c_main_~y~0 c_main_~y~0) .cse0) 12) 0)))) is different from false [2024-09-18 16:36:26,923 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 26 proven. 19 refuted. 0 times theorem prover too weak. 49 trivial. 12 not checked. [2024-09-18 16:36:26,924 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:36:26,924 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [82823390] [2024-09-18 16:36:26,924 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-18 16:36:26,924 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1638858633] [2024-09-18 16:36:26,924 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1638858633] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-18 16:36:26,924 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-18 16:36:26,924 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 13] total 27 [2024-09-18 16:36:26,924 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1642909970] [2024-09-18 16:36:26,924 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-18 16:36:26,925 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-18 16:36:26,926 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:36:26,926 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-18 16:36:26,927 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=100, Invalid=550, Unknown=4, NotChecked=48, Total=702 [2024-09-18 16:36:26,927 INFO L87 Difference]: Start difference. First operand 45 states and 49 transitions. Second operand has 27 states, 23 states have (on average 1.8695652173913044) internal successors, (43), 21 states have internal predecessors, (43), 15 states have call successors, (18), 3 states have call predecessors, (18), 3 states have return successors, (16), 14 states have call predecessors, (16), 13 states have call successors, (16) [2024-09-18 16:36:53,910 WARN L293 SmtUtils]: Spent 11.16s on a formula simplification that was a NOOP. DAG size: 56 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-18 16:36:54,139 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:36:54,140 INFO L93 Difference]: Finished difference Result 71 states and 83 transitions. [2024-09-18 16:36:54,140 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-09-18 16:36:54,140 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 23 states have (on average 1.8695652173913044) internal successors, (43), 21 states have internal predecessors, (43), 15 states have call successors, (18), 3 states have call predecessors, (18), 3 states have return successors, (16), 14 states have call predecessors, (16), 13 states have call successors, (16) Word has length 60 [2024-09-18 16:36:54,141 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:36:54,142 INFO L225 Difference]: With dead ends: 71 [2024-09-18 16:36:54,142 INFO L226 Difference]: Without dead ends: 63 [2024-09-18 16:36:54,143 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 132 GetRequests, 94 SyntacticMatches, 1 SemanticMatches, 37 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 256 ImplicationChecksByTransitivity, 74.1s TimeCoverageRelationStatistics Valid=219, Invalid=1186, Unknown=5, NotChecked=72, Total=1482 [2024-09-18 16:36:54,144 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 17 mSDsluCounter, 275 mSDsCounter, 0 mSdLazyCounter, 304 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 300 SdHoareTripleChecker+Invalid, 364 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 304 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 47 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-18 16:36:54,145 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 300 Invalid, 364 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 304 Invalid, 0 Unknown, 47 Unchecked, 0.3s Time] [2024-09-18 16:36:54,145 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 63 states. [2024-09-18 16:36:54,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 63 to 61. [2024-09-18 16:36:54,167 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 39 states have (on average 1.0256410256410255) internal successors, (40), 39 states have internal predecessors, (40), 15 states have call successors, (15), 8 states have call predecessors, (15), 6 states have return successors, (13), 13 states have call predecessors, (13), 13 states have call successors, (13) [2024-09-18 16:36:54,168 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 68 transitions. [2024-09-18 16:36:54,168 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 68 transitions. Word has length 60 [2024-09-18 16:36:54,168 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:36:54,169 INFO L474 AbstractCegarLoop]: Abstraction has 61 states and 68 transitions. [2024-09-18 16:36:54,169 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 23 states have (on average 1.8695652173913044) internal successors, (43), 21 states have internal predecessors, (43), 15 states have call successors, (18), 3 states have call predecessors, (18), 3 states have return successors, (16), 14 states have call predecessors, (16), 13 states have call successors, (16) [2024-09-18 16:36:54,169 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:36:54,169 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 68 transitions. [2024-09-18 16:36:54,171 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2024-09-18 16:36:54,172 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:36:54,172 INFO L216 NwaCegarLoop]: trace histogram [11, 10, 10, 9, 9, 9, 8, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:36:54,190 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-18 16:36:54,376 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:36:54,377 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:36:54,378 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:36:54,378 INFO L85 PathProgramCache]: Analyzing trace with hash -1028597280, now seen corresponding path program 3 times [2024-09-18 16:36:54,378 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:36:54,378 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [4699197] [2024-09-18 16:36:54,378 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:36:54,379 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:36:54,455 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-18 16:36:54,458 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [548818602] [2024-09-18 16:36:54,460 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-18 16:36:54,460 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:36:54,460 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:36:54,463 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-18 16:36:54,465 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-18 16:36:54,569 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 9 check-sat command(s) [2024-09-18 16:36:54,569 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-18 16:36:54,573 INFO L262 TraceCheckSpWp]: Trace formula consists of 219 conjuncts, 51 conjuncts are in the unsatisfiable core [2024-09-18 16:36:54,583 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-18 16:36:55,011 INFO L134 CoverageAnalysis]: Checked inductivity of 312 backedges. 20 proven. 111 refuted. 0 times theorem prover too weak. 181 trivial. 0 not checked. [2024-09-18 16:36:55,012 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-18 16:36:55,543 INFO L134 CoverageAnalysis]: Checked inductivity of 312 backedges. 20 proven. 108 refuted. 0 times theorem prover too weak. 184 trivial. 0 not checked. [2024-09-18 16:36:55,544 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:36:55,544 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [4699197] [2024-09-18 16:36:55,544 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-18 16:36:55,544 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [548818602] [2024-09-18 16:36:55,544 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [548818602] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-18 16:36:55,545 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-18 16:36:55,545 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 14] total 29 [2024-09-18 16:36:55,545 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [585379498] [2024-09-18 16:36:55,545 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-18 16:36:55,546 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-09-18 16:36:55,546 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:36:55,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-09-18 16:36:55,547 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=138, Invalid=674, Unknown=0, NotChecked=0, Total=812 [2024-09-18 16:36:55,548 INFO L87 Difference]: Start difference. First operand 61 states and 68 transitions. Second operand has 29 states, 27 states have (on average 2.0) internal successors, (54), 26 states have internal predecessors, (54), 22 states have call successors, (27), 3 states have call predecessors, (27), 2 states have return successors, (25), 22 states have call predecessors, (25), 22 states have call successors, (25) [2024-09-18 16:36:56,840 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:36:56,841 INFO L93 Difference]: Finished difference Result 98 states and 124 transitions. [2024-09-18 16:36:56,841 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2024-09-18 16:36:56,841 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 27 states have (on average 2.0) internal successors, (54), 26 states have internal predecessors, (54), 22 states have call successors, (27), 3 states have call predecessors, (27), 2 states have return successors, (25), 22 states have call predecessors, (25), 22 states have call successors, (25) Word has length 88 [2024-09-18 16:36:56,842 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:36:56,843 INFO L225 Difference]: With dead ends: 98 [2024-09-18 16:36:56,843 INFO L226 Difference]: Without dead ends: 90 [2024-09-18 16:36:56,844 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 193 GetRequests, 148 SyntacticMatches, 0 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 351 ImplicationChecksByTransitivity, 1.3s TimeCoverageRelationStatistics Valid=409, Invalid=1753, Unknown=0, NotChecked=0, Total=2162 [2024-09-18 16:36:56,845 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 31 mSDsluCounter, 530 mSDsCounter, 0 mSdLazyCounter, 400 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 574 SdHoareTripleChecker+Invalid, 412 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 400 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-18 16:36:56,845 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 574 Invalid, 412 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 400 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-18 16:36:56,846 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 90 states. [2024-09-18 16:36:56,878 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 90 to 88. [2024-09-18 16:36:56,878 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 88 states, 57 states have (on average 1.0175438596491229) internal successors, (58), 57 states have internal predecessors, (58), 24 states have call successors, (24), 8 states have call predecessors, (24), 6 states have return successors, (22), 22 states have call predecessors, (22), 22 states have call successors, (22) [2024-09-18 16:36:56,879 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 88 states to 88 states and 104 transitions. [2024-09-18 16:36:56,880 INFO L78 Accepts]: Start accepts. Automaton has 88 states and 104 transitions. Word has length 88 [2024-09-18 16:36:56,880 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:36:56,880 INFO L474 AbstractCegarLoop]: Abstraction has 88 states and 104 transitions. [2024-09-18 16:36:56,881 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 27 states have (on average 2.0) internal successors, (54), 26 states have internal predecessors, (54), 22 states have call successors, (27), 3 states have call predecessors, (27), 2 states have return successors, (25), 22 states have call predecessors, (25), 22 states have call successors, (25) [2024-09-18 16:36:56,881 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:36:56,881 INFO L276 IsEmpty]: Start isEmpty. Operand 88 states and 104 transitions. [2024-09-18 16:36:56,883 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 152 [2024-09-18 16:36:56,883 INFO L208 NwaCegarLoop]: Found error trace [2024-09-18 16:36:56,883 INFO L216 NwaCegarLoop]: trace histogram [20, 19, 19, 18, 18, 18, 17, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-18 16:36:56,901 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-09-18 16:36:57,087 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2024-09-18 16:36:57,088 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-18 16:36:57,088 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:36:57,088 INFO L85 PathProgramCache]: Analyzing trace with hash 1935759886, now seen corresponding path program 4 times [2024-09-18 16:36:57,089 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-18 16:36:57,089 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [671151782] [2024-09-18 16:36:57,089 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-18 16:36:57,089 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-18 16:36:57,166 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,035 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-18 16:36:58,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,038 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-18 16:36:58,039 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,094 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-18 16:36:58,096 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,102 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2024-09-18 16:36:58,104 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,110 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2024-09-18 16:36:58,114 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,119 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-09-18 16:36:58,121 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,126 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2024-09-18 16:36:58,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,134 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 45 [2024-09-18 16:36:58,137 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,141 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2024-09-18 16:36:58,143 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,150 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 59 [2024-09-18 16:36:58,152 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,158 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-09-18 16:36:58,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,166 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 73 [2024-09-18 16:36:58,168 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,174 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 80 [2024-09-18 16:36:58,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,181 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 87 [2024-09-18 16:36:58,182 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,190 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 94 [2024-09-18 16:36:58,195 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,203 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 101 [2024-09-18 16:36:58,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,210 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 108 [2024-09-18 16:36:58,212 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,218 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 115 [2024-09-18 16:36:58,220 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,228 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 122 [2024-09-18 16:36:58,230 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,234 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 129 [2024-09-18 16:36:58,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,244 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 136 [2024-09-18 16:36:58,246 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,249 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 142 [2024-09-18 16:36:58,250 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-18 16:36:58,252 INFO L134 CoverageAnalysis]: Checked inductivity of 1185 backedges. 449 proven. 51 refuted. 0 times theorem prover too weak. 685 trivial. 0 not checked. [2024-09-18 16:36:58,252 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-18 16:36:58,252 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [671151782] [2024-09-18 16:36:58,253 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [671151782] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-18 16:36:58,253 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1893727500] [2024-09-18 16:36:58,253 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-18 16:36:58,253 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:36:58,253 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-18 16:36:58,255 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-18 16:36:58,257 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-18 16:36:58,326 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-18 16:36:58,326 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-18 16:36:58,328 INFO L262 TraceCheckSpWp]: Trace formula consists of 271 conjuncts, 23 conjuncts are in the unsatisfiable core [2024-09-18 16:36:58,331 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-18 16:36:58,987 INFO L134 CoverageAnalysis]: Checked inductivity of 1185 backedges. 629 proven. 3 refuted. 0 times theorem prover too weak. 553 trivial. 0 not checked. [2024-09-18 16:36:58,988 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-18 16:36:59,386 INFO L134 CoverageAnalysis]: Checked inductivity of 1185 backedges. 497 proven. 3 refuted. 0 times theorem prover too weak. 685 trivial. 0 not checked. [2024-09-18 16:36:59,386 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1893727500] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-18 16:36:59,386 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-18 16:36:59,387 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22, 22, 22] total 58 [2024-09-18 16:36:59,387 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [640908514] [2024-09-18 16:36:59,387 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-18 16:36:59,388 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 58 states [2024-09-18 16:36:59,388 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-18 16:36:59,389 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 58 interpolants. [2024-09-18 16:36:59,391 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1209, Invalid=2097, Unknown=0, NotChecked=0, Total=3306 [2024-09-18 16:36:59,391 INFO L87 Difference]: Start difference. First operand 88 states and 104 transitions. Second operand has 58 states, 58 states have (on average 2.1551724137931036) internal successors, (125), 56 states have internal predecessors, (125), 55 states have call successors, (61), 2 states have call predecessors, (61), 3 states have return successors, (60), 55 states have call predecessors, (60), 55 states have call successors, (60) [2024-09-18 16:36:59,639 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-18 16:36:59,640 INFO L93 Difference]: Finished difference Result 94 states and 109 transitions. [2024-09-18 16:36:59,640 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-09-18 16:36:59,641 INFO L78 Accepts]: Start accepts. Automaton has has 58 states, 58 states have (on average 2.1551724137931036) internal successors, (125), 56 states have internal predecessors, (125), 55 states have call successors, (61), 2 states have call predecessors, (61), 3 states have return successors, (60), 55 states have call predecessors, (60), 55 states have call successors, (60) Word has length 151 [2024-09-18 16:36:59,642 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-18 16:36:59,643 INFO L225 Difference]: With dead ends: 94 [2024-09-18 16:36:59,643 INFO L226 Difference]: Without dead ends: 0 [2024-09-18 16:36:59,644 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 367 GetRequests, 310 SyntacticMatches, 0 SemanticMatches, 57 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1496 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=1214, Invalid=2208, Unknown=0, NotChecked=0, Total=3422 [2024-09-18 16:36:59,649 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 1 mSDsluCounter, 277 mSDsCounter, 0 mSdLazyCounter, 259 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 322 SdHoareTripleChecker+Invalid, 261 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 259 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-18 16:36:59,649 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 322 Invalid, 261 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 259 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-18 16:36:59,650 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-09-18 16:36:59,650 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-09-18 16:36:59,650 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-09-18 16:36:59,650 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-09-18 16:36:59,650 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 151 [2024-09-18 16:36:59,651 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-18 16:36:59,651 INFO L474 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-09-18 16:36:59,651 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 58 states, 58 states have (on average 2.1551724137931036) internal successors, (125), 56 states have internal predecessors, (125), 55 states have call successors, (61), 2 states have call predecessors, (61), 3 states have return successors, (60), 55 states have call predecessors, (60), 55 states have call successors, (60) [2024-09-18 16:36:59,651 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-18 16:36:59,651 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-09-18 16:36:59,651 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-09-18 16:36:59,657 INFO L785 garLoopResultBuilder]: Registering result SAFE for location __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-09-18 16:36:59,676 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-18 16:36:59,858 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-18 16:36:59,862 INFO L408 BasicCegarLoop]: Path program histogram: [4, 1, 1, 1] [2024-09-18 16:36:59,866 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-09-18 16:37:01,520 INFO L165 ceAbstractionStarter]: Computing trace abstraction results [2024-09-18 16:37:01,546 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 18.09 04:37:01 BoogieIcfgContainer [2024-09-18 16:37:01,546 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-09-18 16:37:01,547 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-09-18 16:37:01,547 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-09-18 16:37:01,547 INFO L274 PluginConnector]: Witness Printer initialized [2024-09-18 16:37:01,548 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.09 04:35:03" (3/4) ... [2024-09-18 16:37:01,550 INFO L139 WitnessPrinter]: Generating witness for correct program [2024-09-18 16:37:01,605 INFO L149 WitnessManager]: Wrote witness to /storage/repos/certificate-witnesses-artifact/automizer/witness.yml [2024-09-18 16:37:01,606 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-09-18 16:37:01,606 INFO L158 Benchmark]: Toolchain (without parser) took 118398.75ms. Allocated memory was 167.8MB in the beginning and 201.3MB in the end (delta: 33.6MB). Free memory was 98.9MB in the beginning and 152.5MB in the end (delta: -53.6MB). There was no memory consumed. Max. memory is 16.1GB. [2024-09-18 16:37:01,606 INFO L158 Benchmark]: CDTParser took 0.19ms. Allocated memory is still 113.2MB. Free memory is still 75.0MB. There was no memory consumed. Max. memory is 16.1GB. [2024-09-18 16:37:01,607 INFO L158 Benchmark]: CACSL2BoogieTranslator took 267.81ms. Allocated memory is still 167.8MB. Free memory was 98.7MB in the beginning and 139.2MB in the end (delta: -40.5MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2024-09-18 16:37:01,607 INFO L158 Benchmark]: Boogie Procedure Inliner took 20.74ms. Allocated memory is still 167.8MB. Free memory was 139.2MB in the beginning and 138.5MB in the end (delta: 784.5kB). There was no memory consumed. Max. memory is 16.1GB. [2024-09-18 16:37:01,607 INFO L158 Benchmark]: Boogie Preprocessor took 56.57ms. Allocated memory is still 167.8MB. Free memory was 138.5MB in the beginning and 136.4MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-09-18 16:37:01,608 INFO L158 Benchmark]: RCFGBuilder took 326.15ms. Allocated memory is still 167.8MB. Free memory was 136.4MB in the beginning and 123.9MB in the end (delta: 12.5MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2024-09-18 16:37:01,608 INFO L158 Benchmark]: TraceAbstraction took 117662.74ms. Allocated memory was 167.8MB in the beginning and 201.3MB in the end (delta: 33.6MB). Free memory was 123.1MB in the beginning and 154.6MB in the end (delta: -31.5MB). Peak memory consumption was 98.8MB. Max. memory is 16.1GB. [2024-09-18 16:37:01,608 INFO L158 Benchmark]: Witness Printer took 59.13ms. Allocated memory is still 201.3MB. Free memory was 154.6MB in the beginning and 152.5MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-09-18 16:37:01,610 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19ms. Allocated memory is still 113.2MB. Free memory is still 75.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 267.81ms. Allocated memory is still 167.8MB. Free memory was 98.7MB in the beginning and 139.2MB in the end (delta: -40.5MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 20.74ms. Allocated memory is still 167.8MB. Free memory was 139.2MB in the beginning and 138.5MB in the end (delta: 784.5kB). There was no memory consumed. Max. memory is 16.1GB. * Boogie Preprocessor took 56.57ms. Allocated memory is still 167.8MB. Free memory was 138.5MB in the beginning and 136.4MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 326.15ms. Allocated memory is still 167.8MB. Free memory was 136.4MB in the beginning and 123.9MB in the end (delta: 12.5MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * TraceAbstraction took 117662.74ms. Allocated memory was 167.8MB in the beginning and 201.3MB in the end (delta: 33.6MB). Free memory was 123.1MB in the beginning and 154.6MB in the end (delta: -31.5MB). Peak memory consumption was 98.8MB. Max. memory is 16.1GB. * Witness Printer took 59.13ms. Allocated memory is still 201.3MB. Free memory was 154.6MB in the beginning and 152.5MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 12]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 5 procedures, 27 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 115.9s, OverallIterations: 7, TraceHistogramMax: 20, PathProgramHistogramMax: 4, EmptinessCheckTime: 0.0s, AutomataDifference: 29.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 70 SdHoareTripleChecker+Valid, 1.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 61 mSDsluCounter, 1552 SdHoareTripleChecker+Invalid, 1.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 47 IncrementalHoareTripleChecker+Unchecked, 1350 mSDsCounter, 41 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1125 IncrementalHoareTripleChecker+Invalid, 1213 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 41 mSolverCounterUnsat, 202 mSDtfsCounter, 1125 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 859 GetRequests, 689 SyntacticMatches, 5 SemanticMatches, 165 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 2129 ImplicationChecksByTransitivity, 76.9s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=88occurred in iteration=6, InterpolantAutomatonStates: 91, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 7 MinimizatonAttempts, 4 StatesRemovedByMinimization, 2 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 84.2s InterpolantComputationTime, 795 NumberOfCodeBlocks, 773 NumberOfCodeBlocksAsserted, 22 NumberOfCheckSat, 912 ConstructedInterpolants, 0 QuantifiedInterpolants, 4790 SizeOfPredicates, 10 NumberOfNonLiveVariables, 886 ConjunctsInSsa, 164 ConjunctsInUnsatCore, 13 InterpolantComputations, 3 PerfectInterpolantSequences, 4106/4465 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 28]: Loop Invariant Derived loop invariant: ((((((((((((((x == 33) && (y == 2)) && (k <= 10)) && ((k == 2) || (2 < k))) && (c == 2)) || (((((8 <= k) && (k <= 10)) && (y == 8)) && (c == 8)) && (x == 61776))) || ((((((9 <= c) && (((k + ((__int128) k * y)) == ((((__int128) y * 2) + ((__int128) y * y)) + 1)) || (k != ((__int128) c + 1)))) && (k <= 10)) && (0 <= k)) && ((((2 * ((((((__int128) y * y) * y) * y) * y) * y)) + (6 * (((((__int128) y * y) * y) * y) * y))) + (5 * ((((__int128) y * y) * y) * y))) == (((__int128) x * 12) + ((__int128) y * y)))) && ((c < k) || (((__int128) y * y) == ((__int128) k * y))))) || (((((7 == y) && (k <= 10)) && (7 == c)) && (x == 29008)) && ((7 < k) || (7 == k)))) || (((((k <= 10) && ((5 == k) || (5 < k))) && (4425 == x)) && (5 == c)) && (5 == y))) || (((((k <= 10) && (4 <= k)) && (y == 4)) && (c == 4)) && (1300 == x))) || (((((y == 6) && (k <= 10)) && (x == 12201)) && (c == 6)) && ((k == 6) || (6 < k)))) || (((((k <= 10) && ((k == 3) || (3 < k))) && (276 == x)) && (y == 3)) && (c == 3))) || (((((x == 0) && (k <= 10)) && (0 <= k)) && (c == 0)) && (y == 0))) || (((((k <= 10) && ((1 < k) || (k == 1))) && (y == 1)) && (x == 1)) && (c == 1))) - ProcedureContractResult [Line: 6]: Procedure Contract for assume_abort_if_not Derived contract for procedure assume_abort_if_not. Ensures: (\old(cond) != 0) - ProcedureContractResult [Line: 9]: Procedure Contract for __VERIFIER_assert Derived contract for procedure __VERIFIER_assert. Requires: (1 <= \old(cond)) Ensures: (1 <= \old(cond)) RESULT: Ultimate proved your program to be correct! [2024-09-18 16:37:01,655 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE