./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i --full-output --architecture 64bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0f8a17c6 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-64bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 64bit --witnessprinter.graph.data.programhash 971edb75bb0f677639f0c3e5b019bf9afe7575a35e63ddba584727b568db50c6 --- Real Ultimate output --- This is Ultimate 0.2.1-dev-0f8a17c [2021-11-16 20:14:44,037 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-11-16 20:14:44,039 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-11-16 20:14:44,075 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-11-16 20:14:44,076 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-11-16 20:14:44,079 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-11-16 20:14:44,081 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-11-16 20:14:44,084 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-11-16 20:14:44,086 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-11-16 20:14:44,090 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-11-16 20:14:44,091 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-11-16 20:14:44,092 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-11-16 20:14:44,092 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-11-16 20:14:44,095 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-11-16 20:14:44,096 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-11-16 20:14:44,100 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-11-16 20:14:44,101 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-11-16 20:14:44,101 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-11-16 20:14:44,103 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-11-16 20:14:44,109 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-11-16 20:14:44,110 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-11-16 20:14:44,111 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-11-16 20:14:44,113 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-11-16 20:14:44,114 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-11-16 20:14:44,120 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-11-16 20:14:44,120 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-11-16 20:14:44,120 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-11-16 20:14:44,122 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-11-16 20:14:44,123 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-11-16 20:14:44,124 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-11-16 20:14:44,124 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-11-16 20:14:44,125 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-11-16 20:14:44,127 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-11-16 20:14:44,128 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-11-16 20:14:44,129 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-11-16 20:14:44,129 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-11-16 20:14:44,130 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-11-16 20:14:44,130 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-11-16 20:14:44,130 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-11-16 20:14:44,131 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-11-16 20:14:44,131 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-11-16 20:14:44,132 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-64bit-Automizer_Default.epf [2021-11-16 20:14:44,174 INFO L113 SettingsManager]: Loading preferences was successful [2021-11-16 20:14:44,175 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-11-16 20:14:44,176 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-11-16 20:14:44,176 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-11-16 20:14:44,177 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-11-16 20:14:44,177 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-11-16 20:14:44,177 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-11-16 20:14:44,178 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-11-16 20:14:44,178 INFO L138 SettingsManager]: * Use SBE=true [2021-11-16 20:14:44,178 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-11-16 20:14:44,179 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-11-16 20:14:44,179 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-11-16 20:14:44,187 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-11-16 20:14:44,187 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-11-16 20:14:44,187 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-11-16 20:14:44,188 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-11-16 20:14:44,188 INFO L138 SettingsManager]: * Use constant arrays=true [2021-11-16 20:14:44,188 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-11-16 20:14:44,188 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-11-16 20:14:44,188 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-11-16 20:14:44,189 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-11-16 20:14:44,189 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-11-16 20:14:44,189 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-11-16 20:14:44,189 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-11-16 20:14:44,189 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-11-16 20:14:44,189 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-11-16 20:14:44,190 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-11-16 20:14:44,190 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-11-16 20:14:44,190 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-11-16 20:14:44,190 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-11-16 20:14:44,190 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-11-16 20:14:44,190 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 64bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 971edb75bb0f677639f0c3e5b019bf9afe7575a35e63ddba584727b568db50c6 [2021-11-16 20:14:44,432 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-11-16 20:14:44,449 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-11-16 20:14:44,452 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-11-16 20:14:44,453 INFO L271 PluginConnector]: Initializing CDTParser... [2021-11-16 20:14:44,454 INFO L275 PluginConnector]: CDTParser initialized [2021-11-16 20:14:44,455 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i [2021-11-16 20:14:44,515 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/d4da67b53/d43447f12be244c49f696e344ef3afba/FLAG747c51e6a [2021-11-16 20:14:45,164 INFO L306 CDTParser]: Found 1 translation units. [2021-11-16 20:14:45,165 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i [2021-11-16 20:14:45,202 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/d4da67b53/d43447f12be244c49f696e344ef3afba/FLAG747c51e6a [2021-11-16 20:14:45,275 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/d4da67b53/d43447f12be244c49f696e344ef3afba [2021-11-16 20:14:45,277 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-11-16 20:14:45,278 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-11-16 20:14:45,279 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-11-16 20:14:45,279 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-11-16 20:14:45,285 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-11-16 20:14:45,286 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.11 08:14:45" (1/1) ... [2021-11-16 20:14:45,287 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@35a31d6d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:45, skipping insertion in model container [2021-11-16 20:14:45,287 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.11 08:14:45" (1/1) ... [2021-11-16 20:14:45,293 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-11-16 20:14:45,373 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-11-16 20:14:45,583 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i[4498,4511] [2021-11-16 20:14:45,591 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i[4558,4571] [2021-11-16 20:14:45,612 WARN L612 FunctionHandler]: implicit declaration of function __builtin_uaddl_overflow [2021-11-16 20:14:45,620 WARN L612 FunctionHandler]: implicit declaration of function __builtin_umull_overflow [2021-11-16 20:14:46,217 WARN L612 FunctionHandler]: implicit declaration of function __builtin_va_copy [2021-11-16 20:14:46,283 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,284 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,285 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,285 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,286 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,295 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,295 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,297 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,297 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,298 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,299 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,300 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,300 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,504 WARN L612 FunctionHandler]: implicit declaration of function __atomic_load_n [2021-11-16 20:14:46,505 WARN L612 FunctionHandler]: implicit declaration of function __atomic_store_n [2021-11-16 20:14:46,506 WARN L612 FunctionHandler]: implicit declaration of function __atomic_exchange_n [2021-11-16 20:14:46,507 WARN L612 FunctionHandler]: implicit declaration of function __atomic_compare_exchange_n [2021-11-16 20:14:46,508 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_add [2021-11-16 20:14:46,508 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_sub [2021-11-16 20:14:46,509 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_or [2021-11-16 20:14:46,509 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_and [2021-11-16 20:14:46,510 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_xor [2021-11-16 20:14:46,510 WARN L612 FunctionHandler]: implicit declaration of function __atomic_thread_fence [2021-11-16 20:14:46,602 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,607 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,646 INFO L207 PostProcessor]: Analyzing one entry point: main [2021-11-16 20:14:46,669 INFO L203 MainTranslator]: Completed pre-run [2021-11-16 20:14:46,694 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i[4498,4511] [2021-11-16 20:14:46,695 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/aws-c-common/aws_array_list_pop_front_harness.i[4558,4571] [2021-11-16 20:14:46,697 WARN L612 FunctionHandler]: implicit declaration of function __builtin_uaddl_overflow [2021-11-16 20:14:46,698 WARN L612 FunctionHandler]: implicit declaration of function __builtin_umull_overflow [2021-11-16 20:14:46,756 WARN L612 FunctionHandler]: implicit declaration of function __builtin_va_copy [2021-11-16 20:14:46,776 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,787 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,788 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,788 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,793 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,799 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,803 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,804 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,805 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,805 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,810 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,811 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,811 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,837 WARN L612 FunctionHandler]: implicit declaration of function __atomic_load_n [2021-11-16 20:14:46,838 WARN L612 FunctionHandler]: implicit declaration of function __atomic_store_n [2021-11-16 20:14:46,839 WARN L612 FunctionHandler]: implicit declaration of function __atomic_exchange_n [2021-11-16 20:14:46,839 WARN L612 FunctionHandler]: implicit declaration of function __atomic_compare_exchange_n [2021-11-16 20:14:46,840 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_add [2021-11-16 20:14:46,840 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_sub [2021-11-16 20:14:46,841 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_or [2021-11-16 20:14:46,841 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_and [2021-11-16 20:14:46,841 WARN L612 FunctionHandler]: implicit declaration of function __atomic_fetch_xor [2021-11-16 20:14:46,842 WARN L612 FunctionHandler]: implicit declaration of function __atomic_thread_fence [2021-11-16 20:14:46,864 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,868 WARN L1537 CHandler]: Possible shadowing of function index [2021-11-16 20:14:46,884 INFO L207 PostProcessor]: Analyzing one entry point: main [2021-11-16 20:14:47,055 INFO L208 MainTranslator]: Completed translation [2021-11-16 20:14:47,056 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47 WrapperNode [2021-11-16 20:14:47,056 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-11-16 20:14:47,057 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-11-16 20:14:47,057 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-11-16 20:14:47,057 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-11-16 20:14:47,063 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,146 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,211 INFO L137 Inliner]: procedures = 693, calls = 1686, calls flagged for inlining = 51, calls inlined = 10, statements flattened = 681 [2021-11-16 20:14:47,211 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-11-16 20:14:47,212 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-11-16 20:14:47,212 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-11-16 20:14:47,212 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-11-16 20:14:47,220 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,220 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,226 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,226 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,277 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,280 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,285 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,306 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-11-16 20:14:47,312 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-11-16 20:14:47,312 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-11-16 20:14:47,312 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-11-16 20:14:47,315 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (1/1) ... [2021-11-16 20:14:47,325 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-11-16 20:14:47,333 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-11-16 20:14:47,353 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-11-16 20:14:47,379 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-11-16 20:14:47,403 INFO L130 BoogieDeclarations]: Found specification of procedure memmove_impl [2021-11-16 20:14:47,404 INFO L138 BoogieDeclarations]: Found implementation of procedure memmove_impl [2021-11-16 20:14:47,404 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2021-11-16 20:14:47,404 INFO L130 BoogieDeclarations]: Found specification of procedure aws_array_list_is_bounded [2021-11-16 20:14:47,405 INFO L138 BoogieDeclarations]: Found implementation of procedure aws_array_list_is_bounded [2021-11-16 20:14:47,405 INFO L130 BoogieDeclarations]: Found specification of procedure aws_array_list_is_valid [2021-11-16 20:14:47,405 INFO L138 BoogieDeclarations]: Found implementation of procedure aws_array_list_is_valid [2021-11-16 20:14:47,405 INFO L130 BoogieDeclarations]: Found specification of procedure nondet_bool [2021-11-16 20:14:47,405 INFO L138 BoogieDeclarations]: Found implementation of procedure nondet_bool [2021-11-16 20:14:47,406 INFO L130 BoogieDeclarations]: Found specification of procedure read~int [2021-11-16 20:14:47,406 INFO L130 BoogieDeclarations]: Found specification of procedure aws_raise_error [2021-11-16 20:14:47,406 INFO L138 BoogieDeclarations]: Found implementation of procedure aws_raise_error [2021-11-16 20:14:47,406 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2021-11-16 20:14:47,406 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2021-11-16 20:14:47,406 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnHeap [2021-11-16 20:14:47,406 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-11-16 20:14:47,406 INFO L130 BoogieDeclarations]: Found specification of procedure write~$Pointer$ [2021-11-16 20:14:47,407 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-11-16 20:14:47,407 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-11-16 20:14:47,408 INFO L130 BoogieDeclarations]: Found specification of procedure bounded_malloc [2021-11-16 20:14:47,408 INFO L138 BoogieDeclarations]: Found implementation of procedure bounded_malloc [2021-11-16 20:14:47,408 INFO L130 BoogieDeclarations]: Found specification of procedure assert_byte_from_buffer_matches [2021-11-16 20:14:47,408 INFO L138 BoogieDeclarations]: Found implementation of procedure assert_byte_from_buffer_matches [2021-11-16 20:14:47,409 INFO L130 BoogieDeclarations]: Found specification of procedure aws_mul_size_checked [2021-11-16 20:14:47,409 INFO L138 BoogieDeclarations]: Found implementation of procedure aws_mul_size_checked [2021-11-16 20:14:47,409 INFO L130 BoogieDeclarations]: Found specification of procedure aws_array_list_length [2021-11-16 20:14:47,409 INFO L138 BoogieDeclarations]: Found implementation of procedure aws_array_list_length [2021-11-16 20:14:47,409 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2021-11-16 20:14:47,409 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2021-11-16 20:14:47,410 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-11-16 20:14:47,410 INFO L130 BoogieDeclarations]: Found specification of procedure __builtin_umull_overflow [2021-11-16 20:14:47,410 INFO L130 BoogieDeclarations]: Found specification of procedure read~$Pointer$ [2021-11-16 20:14:47,410 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~$Pointer$ [2021-11-16 20:14:47,410 INFO L130 BoogieDeclarations]: Found specification of procedure can_fail_allocator [2021-11-16 20:14:47,410 INFO L138 BoogieDeclarations]: Found implementation of procedure can_fail_allocator [2021-11-16 20:14:47,411 INFO L130 BoogieDeclarations]: Found specification of procedure __CPROVER_overflow_mult [2021-11-16 20:14:47,411 INFO L138 BoogieDeclarations]: Found implementation of procedure __CPROVER_overflow_mult [2021-11-16 20:14:47,411 INFO L130 BoogieDeclarations]: Found specification of procedure write~int [2021-11-16 20:14:47,411 INFO L130 BoogieDeclarations]: Found specification of procedure my_memmove [2021-11-16 20:14:47,411 INFO L138 BoogieDeclarations]: Found implementation of procedure my_memmove [2021-11-16 20:14:47,411 INFO L130 BoogieDeclarations]: Found specification of procedure aws_array_list_pop_front [2021-11-16 20:14:47,411 INFO L138 BoogieDeclarations]: Found implementation of procedure aws_array_list_pop_front [2021-11-16 20:14:47,412 INFO L130 BoogieDeclarations]: Found specification of procedure ensure_array_list_has_allocated_data_member [2021-11-16 20:14:47,412 INFO L138 BoogieDeclarations]: Found implementation of procedure ensure_array_list_has_allocated_data_member [2021-11-16 20:14:47,412 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-11-16 20:14:47,739 INFO L236 CfgBuilder]: Building ICFG [2021-11-16 20:14:47,742 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-11-16 20:14:49,551 INFO L277 CfgBuilder]: Performing block encoding [2021-11-16 20:14:49,561 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-11-16 20:14:49,562 INFO L301 CfgBuilder]: Removed 0 assume(true) statements. [2021-11-16 20:14:49,563 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.11 08:14:49 BoogieIcfgContainer [2021-11-16 20:14:49,564 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-11-16 20:14:49,565 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-11-16 20:14:49,565 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-11-16 20:14:49,568 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-11-16 20:14:49,569 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 16.11 08:14:45" (1/3) ... [2021-11-16 20:14:49,569 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7abcd732 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.11 08:14:49, skipping insertion in model container [2021-11-16 20:14:49,570 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 08:14:47" (2/3) ... [2021-11-16 20:14:49,570 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7abcd732 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.11 08:14:49, skipping insertion in model container [2021-11-16 20:14:49,571 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.11 08:14:49" (3/3) ... [2021-11-16 20:14:49,573 INFO L111 eAbstractionObserver]: Analyzing ICFG aws_array_list_pop_front_harness.i [2021-11-16 20:14:49,580 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-11-16 20:14:49,581 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-11-16 20:14:49,637 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-11-16 20:14:49,645 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-11-16 20:14:49,646 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-11-16 20:14:49,664 INFO L276 IsEmpty]: Start isEmpty. Operand has 185 states, 110 states have (on average 1.2) internal successors, (132), 111 states have internal predecessors, (132), 57 states have call successors, (57), 16 states have call predecessors, (57), 16 states have return successors, (57), 57 states have call predecessors, (57), 57 states have call successors, (57) [2021-11-16 20:14:49,674 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 85 [2021-11-16 20:14:49,675 INFO L506 BasicCegarLoop]: Found error trace [2021-11-16 20:14:49,676 INFO L514 BasicCegarLoop]: trace histogram [6, 6, 6, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-16 20:14:49,681 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-16 20:14:49,685 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-16 20:14:49,686 INFO L85 PathProgramCache]: Analyzing trace with hash 928387541, now seen corresponding path program 1 times [2021-11-16 20:14:49,693 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-16 20:14:49,693 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [925681844] [2021-11-16 20:14:49,693 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:49,694 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-16 20:14:49,955 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,173 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-11-16 20:14:50,180 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,213 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 6 [2021-11-16 20:14:50,217 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,248 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2021-11-16 20:14:50,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,279 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-11-16 20:14:50,288 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,301 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2021-11-16 20:14:50,303 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,327 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-11-16 20:14:50,330 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,340 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2021-11-16 20:14:50,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,352 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2021-11-16 20:14:50,354 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,364 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 49 [2021-11-16 20:14:50,365 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,374 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2021-11-16 20:14:50,376 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,386 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 64 [2021-11-16 20:14:50,388 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,399 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 69 [2021-11-16 20:14:50,401 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,410 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 75 [2021-11-16 20:14:50,413 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:50,423 INFO L134 CoverageAnalysis]: Checked inductivity of 84 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 84 trivial. 0 not checked. [2021-11-16 20:14:50,424 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-16 20:14:50,424 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [925681844] [2021-11-16 20:14:50,425 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [925681844] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-16 20:14:50,425 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-16 20:14:50,425 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-11-16 20:14:50,426 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1596136415] [2021-11-16 20:14:50,427 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-16 20:14:50,431 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-11-16 20:14:50,431 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-16 20:14:50,459 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-11-16 20:14:50,460 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2021-11-16 20:14:50,464 INFO L87 Difference]: Start difference. First operand has 185 states, 110 states have (on average 1.2) internal successors, (132), 111 states have internal predecessors, (132), 57 states have call successors, (57), 16 states have call predecessors, (57), 16 states have return successors, (57), 57 states have call predecessors, (57), 57 states have call successors, (57) Second operand has 4 states, 4 states have (on average 7.75) internal successors, (31), 2 states have internal predecessors, (31), 2 states have call successors, (16), 4 states have call predecessors, (16), 2 states have return successors, (13), 2 states have call predecessors, (13), 2 states have call successors, (13) [2021-11-16 20:14:52,002 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-16 20:14:52,003 INFO L93 Difference]: Finished difference Result 413 states and 633 transitions. [2021-11-16 20:14:52,004 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-11-16 20:14:52,005 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 7.75) internal successors, (31), 2 states have internal predecessors, (31), 2 states have call successors, (16), 4 states have call predecessors, (16), 2 states have return successors, (13), 2 states have call predecessors, (13), 2 states have call successors, (13) Word has length 84 [2021-11-16 20:14:52,005 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-16 20:14:52,017 INFO L225 Difference]: With dead ends: 413 [2021-11-16 20:14:52,017 INFO L226 Difference]: Without dead ends: 230 [2021-11-16 20:14:52,028 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 35 GetRequests, 33 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2021-11-16 20:14:52,031 INFO L933 BasicCegarLoop]: 245 mSDtfsCounter, 70 mSDsluCounter, 102 mSDsCounter, 0 mSdLazyCounter, 253 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 87 SdHoareTripleChecker+Valid, 347 SdHoareTripleChecker+Invalid, 337 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 253 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2021-11-16 20:14:52,036 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [87 Valid, 347 Invalid, 337 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 253 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2021-11-16 20:14:52,053 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 230 states. [2021-11-16 20:14:52,090 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 230 to 180. [2021-11-16 20:14:52,092 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 180 states, 106 states have (on average 1.1886792452830188) internal successors, (126), 107 states have internal predecessors, (126), 57 states have call successors, (57), 16 states have call predecessors, (57), 16 states have return successors, (56), 56 states have call predecessors, (56), 56 states have call successors, (56) [2021-11-16 20:14:52,095 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 180 states to 180 states and 239 transitions. [2021-11-16 20:14:52,097 INFO L78 Accepts]: Start accepts. Automaton has 180 states and 239 transitions. Word has length 84 [2021-11-16 20:14:52,098 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-16 20:14:52,098 INFO L470 AbstractCegarLoop]: Abstraction has 180 states and 239 transitions. [2021-11-16 20:14:52,100 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 7.75) internal successors, (31), 2 states have internal predecessors, (31), 2 states have call successors, (16), 4 states have call predecessors, (16), 2 states have return successors, (13), 2 states have call predecessors, (13), 2 states have call successors, (13) [2021-11-16 20:14:52,100 INFO L276 IsEmpty]: Start isEmpty. Operand 180 states and 239 transitions. [2021-11-16 20:14:52,105 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 85 [2021-11-16 20:14:52,105 INFO L506 BasicCegarLoop]: Found error trace [2021-11-16 20:14:52,106 INFO L514 BasicCegarLoop]: trace histogram [6, 6, 6, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-16 20:14:52,106 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-11-16 20:14:52,107 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-16 20:14:52,107 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-16 20:14:52,107 INFO L85 PathProgramCache]: Analyzing trace with hash -734960815, now seen corresponding path program 1 times [2021-11-16 20:14:52,108 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-16 20:14:52,109 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1068306083] [2021-11-16 20:14:52,109 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:52,109 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-16 20:14:52,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,244 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-11-16 20:14:52,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,260 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 6 [2021-11-16 20:14:52,263 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,282 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2021-11-16 20:14:52,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,300 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-11-16 20:14:52,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,308 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2021-11-16 20:14:52,309 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,330 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-11-16 20:14:52,333 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,360 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2021-11-16 20:14:52,361 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,369 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2021-11-16 20:14:52,371 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,379 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 49 [2021-11-16 20:14:52,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,388 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2021-11-16 20:14:52,389 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,396 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 64 [2021-11-16 20:14:52,398 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,406 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 69 [2021-11-16 20:14:52,407 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,414 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 75 [2021-11-16 20:14:52,415 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,425 INFO L134 CoverageAnalysis]: Checked inductivity of 84 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 75 trivial. 0 not checked. [2021-11-16 20:14:52,425 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-16 20:14:52,425 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1068306083] [2021-11-16 20:14:52,425 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1068306083] provided 0 perfect and 1 imperfect interpolant sequences [2021-11-16 20:14:52,426 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1920216761] [2021-11-16 20:14:52,426 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:52,426 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-16 20:14:52,426 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-11-16 20:14:52,431 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-16 20:14:52,462 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-11-16 20:14:52,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:52,836 INFO L263 TraceCheckSpWp]: Trace formula consists of 2101 conjuncts, 5 conjunts are in the unsatisfiable core [2021-11-16 20:14:52,844 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-16 20:14:53,105 INFO L134 CoverageAnalysis]: Checked inductivity of 84 backedges. 44 proven. 0 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2021-11-16 20:14:53,108 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-11-16 20:14:53,108 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1920216761] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-16 20:14:53,109 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-11-16 20:14:53,109 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [7] total 11 [2021-11-16 20:14:53,109 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1734462890] [2021-11-16 20:14:53,110 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-16 20:14:53,111 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-11-16 20:14:53,111 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-16 20:14:53,111 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-11-16 20:14:53,113 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2021-11-16 20:14:53,113 INFO L87 Difference]: Start difference. First operand 180 states and 239 transitions. Second operand has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 6 states have internal predecessors, (37), 3 states have call successors, (16), 2 states have call predecessors, (16), 3 states have return successors, (13), 3 states have call predecessors, (13), 3 states have call successors, (13) [2021-11-16 20:14:53,345 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-16 20:14:53,345 INFO L93 Difference]: Finished difference Result 325 states and 446 transitions. [2021-11-16 20:14:53,345 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-11-16 20:14:53,346 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 6 states have internal predecessors, (37), 3 states have call successors, (16), 2 states have call predecessors, (16), 3 states have return successors, (13), 3 states have call predecessors, (13), 3 states have call successors, (13) Word has length 84 [2021-11-16 20:14:53,346 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-16 20:14:53,349 INFO L225 Difference]: With dead ends: 325 [2021-11-16 20:14:53,350 INFO L226 Difference]: Without dead ends: 182 [2021-11-16 20:14:53,351 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 116 GetRequests, 104 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=38, Invalid=144, Unknown=0, NotChecked=0, Total=182 [2021-11-16 20:14:53,351 INFO L933 BasicCegarLoop]: 192 mSDtfsCounter, 245 mSDsluCounter, 525 mSDsCounter, 0 mSdLazyCounter, 177 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 265 SdHoareTripleChecker+Valid, 717 SdHoareTripleChecker+Invalid, 218 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 177 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-11-16 20:14:53,352 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [265 Valid, 717 Invalid, 218 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 177 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-11-16 20:14:53,353 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-11-16 20:14:53,375 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 182. [2021-11-16 20:14:53,376 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 182 states, 107 states have (on average 1.1869158878504673) internal successors, (127), 109 states have internal predecessors, (127), 57 states have call successors, (57), 16 states have call predecessors, (57), 17 states have return successors, (66), 56 states have call predecessors, (66), 56 states have call successors, (66) [2021-11-16 20:14:53,380 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 182 states to 182 states and 250 transitions. [2021-11-16 20:14:53,380 INFO L78 Accepts]: Start accepts. Automaton has 182 states and 250 transitions. Word has length 84 [2021-11-16 20:14:53,381 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-16 20:14:53,381 INFO L470 AbstractCegarLoop]: Abstraction has 182 states and 250 transitions. [2021-11-16 20:14:53,381 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 6 states have internal predecessors, (37), 3 states have call successors, (16), 2 states have call predecessors, (16), 3 states have return successors, (13), 3 states have call predecessors, (13), 3 states have call successors, (13) [2021-11-16 20:14:53,381 INFO L276 IsEmpty]: Start isEmpty. Operand 182 states and 250 transitions. [2021-11-16 20:14:53,388 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2021-11-16 20:14:53,388 INFO L506 BasicCegarLoop]: Found error trace [2021-11-16 20:14:53,388 INFO L514 BasicCegarLoop]: trace histogram [6, 6, 6, 4, 4, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-16 20:14:53,411 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2021-11-16 20:14:53,603 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1,2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-16 20:14:53,604 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-16 20:14:53,604 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-16 20:14:53,604 INFO L85 PathProgramCache]: Analyzing trace with hash -1141222523, now seen corresponding path program 1 times [2021-11-16 20:14:53,604 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-16 20:14:53,604 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [219911233] [2021-11-16 20:14:53,604 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:53,605 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-16 20:14:53,650 ERROR L247 FreeRefinementEngine]: Caught known exception: Unsupported non-linear arithmetic [2021-11-16 20:14:53,650 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1418899462] [2021-11-16 20:14:53,650 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:53,651 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-16 20:14:53,651 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-11-16 20:14:53,652 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-16 20:14:53,655 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-11-16 20:14:54,044 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:54,055 INFO L263 TraceCheckSpWp]: Trace formula consists of 2222 conjuncts, 7 conjunts are in the unsatisfiable core [2021-11-16 20:14:54,059 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-16 20:14:54,291 INFO L134 CoverageAnalysis]: Checked inductivity of 84 backedges. 55 proven. 0 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2021-11-16 20:14:54,291 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-11-16 20:14:54,291 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-16 20:14:54,291 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [219911233] [2021-11-16 20:14:54,292 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: Unknown [2021-11-16 20:14:54,293 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1418899462] [2021-11-16 20:14:54,294 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1418899462] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-16 20:14:54,294 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-16 20:14:54,294 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-11-16 20:14:54,294 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1950172459] [2021-11-16 20:14:54,294 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-16 20:14:54,296 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-11-16 20:14:54,296 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-16 20:14:54,297 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-11-16 20:14:54,297 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-11-16 20:14:54,298 INFO L87 Difference]: Start difference. First operand 182 states and 250 transitions. Second operand has 8 states, 7 states have (on average 7.285714285714286) internal successors, (51), 7 states have internal predecessors, (51), 4 states have call successors, (18), 3 states have call predecessors, (18), 3 states have return successors, (15), 3 states have call predecessors, (15), 4 states have call successors, (15) [2021-11-16 20:14:54,807 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-16 20:14:54,807 INFO L93 Difference]: Finished difference Result 317 states and 440 transitions. [2021-11-16 20:14:54,808 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-11-16 20:14:54,809 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 7.285714285714286) internal successors, (51), 7 states have internal predecessors, (51), 4 states have call successors, (18), 3 states have call predecessors, (18), 3 states have return successors, (15), 3 states have call predecessors, (15), 4 states have call successors, (15) Word has length 99 [2021-11-16 20:14:54,810 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-16 20:14:54,816 INFO L225 Difference]: With dead ends: 317 [2021-11-16 20:14:54,816 INFO L226 Difference]: Without dead ends: 182 [2021-11-16 20:14:54,817 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 105 GetRequests, 94 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=37, Invalid=119, Unknown=0, NotChecked=0, Total=156 [2021-11-16 20:14:54,820 INFO L933 BasicCegarLoop]: 177 mSDtfsCounter, 265 mSDsluCounter, 791 mSDsCounter, 0 mSdLazyCounter, 315 mSolverCounterSat, 127 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 269 SdHoareTripleChecker+Valid, 968 SdHoareTripleChecker+Invalid, 442 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 127 IncrementalHoareTripleChecker+Valid, 315 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2021-11-16 20:14:54,821 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [269 Valid, 968 Invalid, 442 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [127 Valid, 315 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2021-11-16 20:14:54,822 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-11-16 20:14:54,847 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 182. [2021-11-16 20:14:54,851 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 182 states, 107 states have (on average 1.1869158878504673) internal successors, (127), 109 states have internal predecessors, (127), 57 states have call successors, (57), 16 states have call predecessors, (57), 17 states have return successors, (63), 56 states have call predecessors, (63), 56 states have call successors, (63) [2021-11-16 20:14:54,853 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 182 states to 182 states and 247 transitions. [2021-11-16 20:14:54,853 INFO L78 Accepts]: Start accepts. Automaton has 182 states and 247 transitions. Word has length 99 [2021-11-16 20:14:54,854 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-16 20:14:54,854 INFO L470 AbstractCegarLoop]: Abstraction has 182 states and 247 transitions. [2021-11-16 20:14:54,855 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 7.285714285714286) internal successors, (51), 7 states have internal predecessors, (51), 4 states have call successors, (18), 3 states have call predecessors, (18), 3 states have return successors, (15), 3 states have call predecessors, (15), 4 states have call successors, (15) [2021-11-16 20:14:54,855 INFO L276 IsEmpty]: Start isEmpty. Operand 182 states and 247 transitions. [2021-11-16 20:14:54,860 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 115 [2021-11-16 20:14:54,860 INFO L506 BasicCegarLoop]: Found error trace [2021-11-16 20:14:54,860 INFO L514 BasicCegarLoop]: trace histogram [6, 6, 6, 4, 4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-16 20:14:54,887 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2021-11-16 20:14:55,074 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable2 [2021-11-16 20:14:55,075 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-16 20:14:55,075 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-16 20:14:55,075 INFO L85 PathProgramCache]: Analyzing trace with hash 232916013, now seen corresponding path program 2 times [2021-11-16 20:14:55,075 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-16 20:14:55,075 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [687721113] [2021-11-16 20:14:55,076 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:55,076 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-16 20:14:55,138 ERROR L247 FreeRefinementEngine]: Caught known exception: Unsupported non-linear arithmetic [2021-11-16 20:14:55,138 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1828152127] [2021-11-16 20:14:55,138 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2021-11-16 20:14:55,138 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-16 20:14:55,139 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-11-16 20:14:55,140 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-16 20:14:55,141 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2021-11-16 20:14:56,173 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2021-11-16 20:14:56,174 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2021-11-16 20:14:56,185 INFO L263 TraceCheckSpWp]: Trace formula consists of 2343 conjuncts, 9 conjunts are in the unsatisfiable core [2021-11-16 20:14:56,189 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-16 20:14:56,508 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 9 proven. 0 refuted. 0 times theorem prover too weak. 90 trivial. 0 not checked. [2021-11-16 20:14:56,508 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-11-16 20:14:56,509 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-16 20:14:56,509 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [687721113] [2021-11-16 20:14:56,509 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: Unknown [2021-11-16 20:14:56,509 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1828152127] [2021-11-16 20:14:56,509 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1828152127] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-16 20:14:56,509 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-16 20:14:56,509 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2021-11-16 20:14:56,510 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [449292937] [2021-11-16 20:14:56,510 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-16 20:14:56,510 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2021-11-16 20:14:56,510 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-16 20:14:56,511 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2021-11-16 20:14:56,511 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2021-11-16 20:14:56,511 INFO L87 Difference]: Start difference. First operand 182 states and 247 transitions. Second operand has 10 states, 10 states have (on average 4.6) internal successors, (46), 8 states have internal predecessors, (46), 5 states have call successors, (18), 4 states have call predecessors, (18), 2 states have return successors, (15), 5 states have call predecessors, (15), 4 states have call successors, (15) [2021-11-16 20:14:56,981 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-16 20:14:56,981 INFO L93 Difference]: Finished difference Result 326 states and 450 transitions. [2021-11-16 20:14:56,982 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-11-16 20:14:56,982 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 4.6) internal successors, (46), 8 states have internal predecessors, (46), 5 states have call successors, (18), 4 states have call predecessors, (18), 2 states have return successors, (15), 5 states have call predecessors, (15), 4 states have call successors, (15) Word has length 114 [2021-11-16 20:14:56,982 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-16 20:14:56,984 INFO L225 Difference]: With dead ends: 326 [2021-11-16 20:14:56,984 INFO L226 Difference]: Without dead ends: 194 [2021-11-16 20:14:56,985 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 106 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 18 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=221, Unknown=0, NotChecked=0, Total=272 [2021-11-16 20:14:56,985 INFO L933 BasicCegarLoop]: 174 mSDtfsCounter, 283 mSDsluCounter, 1123 mSDsCounter, 0 mSdLazyCounter, 493 mSolverCounterSat, 139 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 287 SdHoareTripleChecker+Valid, 1297 SdHoareTripleChecker+Invalid, 632 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 139 IncrementalHoareTripleChecker+Valid, 493 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2021-11-16 20:14:56,985 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [287 Valid, 1297 Invalid, 632 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [139 Valid, 493 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2021-11-16 20:14:56,986 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 194 states. [2021-11-16 20:14:56,996 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 194 to 194. [2021-11-16 20:14:56,996 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 194 states, 113 states have (on average 1.1858407079646018) internal successors, (134), 115 states have internal predecessors, (134), 62 states have call successors, (62), 17 states have call predecessors, (62), 18 states have return successors, (68), 61 states have call predecessors, (68), 61 states have call successors, (68) [2021-11-16 20:14:56,998 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 194 states to 194 states and 264 transitions. [2021-11-16 20:14:56,998 INFO L78 Accepts]: Start accepts. Automaton has 194 states and 264 transitions. Word has length 114 [2021-11-16 20:14:56,999 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-16 20:14:56,999 INFO L470 AbstractCegarLoop]: Abstraction has 194 states and 264 transitions. [2021-11-16 20:14:56,999 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 4.6) internal successors, (46), 8 states have internal predecessors, (46), 5 states have call successors, (18), 4 states have call predecessors, (18), 2 states have return successors, (15), 5 states have call predecessors, (15), 4 states have call successors, (15) [2021-11-16 20:14:56,999 INFO L276 IsEmpty]: Start isEmpty. Operand 194 states and 264 transitions. [2021-11-16 20:14:57,000 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 145 [2021-11-16 20:14:57,001 INFO L506 BasicCegarLoop]: Found error trace [2021-11-16 20:14:57,001 INFO L514 BasicCegarLoop]: trace histogram [6, 6, 6, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-16 20:14:57,032 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2021-11-16 20:14:57,215 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-16 20:14:57,215 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-16 20:14:57,216 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-16 20:14:57,216 INFO L85 PathProgramCache]: Analyzing trace with hash -159680425, now seen corresponding path program 1 times [2021-11-16 20:14:57,216 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-16 20:14:57,216 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1092524920] [2021-11-16 20:14:57,216 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:57,217 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-16 20:14:57,269 ERROR L247 FreeRefinementEngine]: Caught known exception: Unsupported non-linear arithmetic [2021-11-16 20:14:57,269 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [631847667] [2021-11-16 20:14:57,270 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-16 20:14:57,270 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-16 20:14:57,270 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-11-16 20:14:57,271 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-16 20:14:57,275 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2021-11-16 20:14:58,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-16 20:14:58,649 INFO L263 TraceCheckSpWp]: Trace formula consists of 2585 conjuncts, 327 conjunts are in the unsatisfiable core [2021-11-16 20:14:58,661 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-16 20:14:58,696 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2021-11-16 20:14:58,886 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 1 [2021-11-16 20:15:04,663 INFO L354 Elim1Store]: treesize reduction 68, result has 13.9 percent of original size [2021-11-16 20:15:04,664 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 1 stores, 3 select indices, 3 select index equivalence classes, 1 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 6 case distinctions, treesize of input 94 treesize of output 91 [2021-11-16 20:15:04,670 INFO L190 IndexEqualityManager]: detected not equals via solver [2021-11-16 20:15:04,671 INFO L190 IndexEqualityManager]: detected not equals via solver [2021-11-16 20:15:04,672 INFO L190 IndexEqualityManager]: detected not equals via solver [2021-11-16 20:15:04,672 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 3 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 0 case distinctions, treesize of input 82 treesize of output 84 [2021-11-16 20:15:10,837 INFO L354 Elim1Store]: treesize reduction 162, result has 21.0 percent of original size [2021-11-16 20:15:10,838 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 1 stores, 5 select indices, 5 select index equivalence classes, 0 disjoint index pairs (out of 10 index pairs), introduced 5 new quantified variables, introduced 15 case distinctions, treesize of input 81 treesize of output 109 [2021-11-16 20:15:21,026 WARN L860 $PredicateComparison]: unable to prove that (exists ((|aws_mul_size_checked_aws_mul_u64_checked_~b#1| Int) (|aws_mul_size_checked_aws_mul_u64_checked_~a#1| Int)) (= |c_#memory_int| (store |c_old(#memory_int)| |c_aws_mul_size_checked_#in~r#1.base| (store (select |c_old(#memory_int)| |c_aws_mul_size_checked_#in~r#1.base|) |c_aws_mul_size_checked_#in~r#1.offset| (* |aws_mul_size_checked_aws_mul_u64_checked_~b#1| |aws_mul_size_checked_aws_mul_u64_checked_~a#1|))))) is different from true [2021-11-16 20:15:26,548 INFO L354 Elim1Store]: treesize reduction 14, result has 58.8 percent of original size [2021-11-16 20:15:26,548 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 2, 1 stores, 5 select indices, 5 select index equivalence classes, 6 disjoint index pairs (out of 10 index pairs), introduced 5 new quantified variables, introduced 8 case distinctions, treesize of input 153 treesize of output 157 [2021-11-16 20:15:27,146 INFO L354 Elim1Store]: treesize reduction 48, result has 40.7 percent of original size [2021-11-16 20:15:27,146 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 1, 0 stores, 5 select indices, 5 select index equivalence classes, 0 disjoint index pairs (out of 10 index pairs), introduced 5 new quantified variables, introduced 10 case distinctions, treesize of input 170 treesize of output 192 [2021-11-16 20:17:42,047 INFO L190 IndexEqualityManager]: detected not equals via solver [2021-11-16 20:17:42,048 INFO L173 IndexEqualityManager]: detected equality via solver [2021-11-16 20:17:42,049 INFO L190 IndexEqualityManager]: detected not equals via solver [2021-11-16 20:17:42,050 INFO L173 IndexEqualityManager]: detected equality via solver [2021-11-16 20:17:42,052 INFO L190 IndexEqualityManager]: detected not equals via solver [2021-11-16 20:17:42,661 INFO L354 Elim1Store]: treesize reduction 40, result has 46.7 percent of original size [2021-11-16 20:17:42,661 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 2, 1 stores, 8 select indices, 8 select index equivalence classes, 6 disjoint index pairs (out of 28 index pairs), introduced 6 new quantified variables, introduced 20 case distinctions, treesize of input 144 treesize of output 131 [2021-11-16 20:26:09,122 WARN L227 SmtUtils]: Spent 12.63s on a formula simplification. DAG size of input: 115 DAG size of output: 107 (called from [L 351] de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.arrays.Elim1Store.elim1) [2021-11-16 20:26:09,123 INFO L354 Elim1Store]: treesize reduction 16, result has 91.7 percent of original size [2021-11-16 20:26:09,123 INFO L388 Elim1Store]: Elim1 did not use preprocessing eliminated variable of array dimension 2, 0 stores, 13 select indices, 13 select index equivalence classes, 6 disjoint index pairs (out of 78 index pairs), introduced 13 new quantified variables, introduced 78 case distinctions, treesize of input 388 treesize of output 400 Killed by 15