./Ultimate.py --spec ../sv-benchmarks/c/properties/valid-memsafety.prp --file ../sv-benchmarks/c/heap-manipulation/dll_of_dll-1.i --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for memory safety (deref-memtrack) Using default analysis Version 2329fc70 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerMemDerefMemtrack.xml -i ../sv-benchmarks/c/heap-manipulation/dll_of_dll-1.i -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-DerefFreeMemtrack-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 0e14b8baad7c8f50637b16b3adcb891ef363d7563e7c4e0e74695e7b8e3d1787 --- Real Ultimate output --- This is Ultimate 0.2.2-?-2329fc7 [2023-02-14 02:04:43,236 INFO L177 SettingsManager]: Resetting all preferences to default values... [2023-02-14 02:04:43,238 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2023-02-14 02:04:43,274 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2023-02-14 02:04:43,274 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2023-02-14 02:04:43,277 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2023-02-14 02:04:43,278 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2023-02-14 02:04:43,279 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2023-02-14 02:04:43,281 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2023-02-14 02:04:43,284 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2023-02-14 02:04:43,285 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2023-02-14 02:04:43,287 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2023-02-14 02:04:43,287 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2023-02-14 02:04:43,289 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2023-02-14 02:04:43,289 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2023-02-14 02:04:43,291 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2023-02-14 02:04:43,291 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2023-02-14 02:04:43,292 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2023-02-14 02:04:43,293 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2023-02-14 02:04:43,298 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2023-02-14 02:04:43,299 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2023-02-14 02:04:43,299 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2023-02-14 02:04:43,300 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2023-02-14 02:04:43,301 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2023-02-14 02:04:43,306 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2023-02-14 02:04:43,307 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2023-02-14 02:04:43,307 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2023-02-14 02:04:43,308 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2023-02-14 02:04:43,308 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2023-02-14 02:04:43,309 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2023-02-14 02:04:43,309 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2023-02-14 02:04:43,309 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2023-02-14 02:04:43,311 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2023-02-14 02:04:43,311 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2023-02-14 02:04:43,312 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2023-02-14 02:04:43,312 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2023-02-14 02:04:43,312 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2023-02-14 02:04:43,312 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2023-02-14 02:04:43,313 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2023-02-14 02:04:43,314 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2023-02-14 02:04:43,314 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2023-02-14 02:04:43,315 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-DerefFreeMemtrack-32bit-Automizer_Default.epf [2023-02-14 02:04:43,338 INFO L113 SettingsManager]: Loading preferences was successful [2023-02-14 02:04:43,338 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2023-02-14 02:04:43,338 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-02-14 02:04:43,339 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-02-14 02:04:43,339 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-02-14 02:04:43,339 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-02-14 02:04:43,340 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-02-14 02:04:43,340 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2023-02-14 02:04:43,340 INFO L138 SettingsManager]: * Use SBE=true [2023-02-14 02:04:43,340 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-02-14 02:04:43,341 INFO L138 SettingsManager]: * sizeof long=4 [2023-02-14 02:04:43,341 INFO L138 SettingsManager]: * Check unreachability of error function in SV-COMP mode=false [2023-02-14 02:04:43,341 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2023-02-14 02:04:43,341 INFO L138 SettingsManager]: * sizeof POINTER=4 [2023-02-14 02:04:43,341 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2023-02-14 02:04:43,341 INFO L138 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * Bitprecise bitfields=true [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * SV-COMP memtrack compatibility mode=true [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * Adapt memory model on pointer casts if necessary=true [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * sizeof long double=12 [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * Use constant arrays=true [2023-02-14 02:04:43,342 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-02-14 02:04:43,342 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-02-14 02:04:43,343 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2023-02-14 02:04:43,343 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-02-14 02:04:43,343 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-02-14 02:04:43,343 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-02-14 02:04:43,343 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2023-02-14 02:04:43,343 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-02-14 02:04:43,343 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-02-14 02:04:43,344 INFO L138 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-02-14 02:04:43,344 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-02-14 02:04:43,344 INFO L138 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-02-14 02:04:43,344 INFO L138 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 0e14b8baad7c8f50637b16b3adcb891ef363d7563e7c4e0e74695e7b8e3d1787 [2023-02-14 02:04:43,562 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-02-14 02:04:43,581 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-02-14 02:04:43,584 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-02-14 02:04:43,585 INFO L271 PluginConnector]: Initializing CDTParser... [2023-02-14 02:04:43,585 INFO L275 PluginConnector]: CDTParser initialized [2023-02-14 02:04:43,586 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/heap-manipulation/dll_of_dll-1.i [2023-02-14 02:04:44,531 INFO L500 CDTParser]: Created temporary CDT project at NULL [2023-02-14 02:04:44,717 INFO L351 CDTParser]: Found 1 translation units. [2023-02-14 02:04:44,717 INFO L172 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/heap-manipulation/dll_of_dll-1.i [2023-02-14 02:04:44,727 INFO L394 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b9c064240/ef5bba96a9be4fe4b287fe961de01928/FLAG4c972e87c [2023-02-14 02:04:44,741 INFO L402 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b9c064240/ef5bba96a9be4fe4b287fe961de01928 [2023-02-14 02:04:44,743 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-02-14 02:04:44,744 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2023-02-14 02:04:44,746 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-02-14 02:04:44,746 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-02-14 02:04:44,748 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2023-02-14 02:04:44,749 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 14.02 02:04:44" (1/1) ... [2023-02-14 02:04:44,749 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4b9de607 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:44, skipping insertion in model container [2023-02-14 02:04:44,749 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 14.02 02:04:44" (1/1) ... [2023-02-14 02:04:44,754 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2023-02-14 02:04:44,782 INFO L178 MainTranslator]: Built tables and reachable declarations [2023-02-14 02:04:44,981 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/heap-manipulation/dll_of_dll-1.i[22634,22647] [2023-02-14 02:04:45,029 INFO L210 PostProcessor]: Analyzing one entry point: main [2023-02-14 02:04:45,037 INFO L203 MainTranslator]: Completed pre-run [2023-02-14 02:04:45,055 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/heap-manipulation/dll_of_dll-1.i[22634,22647] [2023-02-14 02:04:45,067 INFO L210 PostProcessor]: Analyzing one entry point: main [2023-02-14 02:04:45,092 INFO L208 MainTranslator]: Completed translation [2023-02-14 02:04:45,093 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45 WrapperNode [2023-02-14 02:04:45,093 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-02-14 02:04:45,094 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-02-14 02:04:45,094 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-02-14 02:04:45,094 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2023-02-14 02:04:45,099 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,110 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,128 INFO L138 Inliner]: procedures = 140, calls = 94, calls flagged for inlining = 13, calls inlined = 13, statements flattened = 234 [2023-02-14 02:04:45,128 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-02-14 02:04:45,129 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-02-14 02:04:45,129 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2023-02-14 02:04:45,129 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2023-02-14 02:04:45,139 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,143 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,147 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,147 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,155 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,160 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,162 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,163 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,167 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-02-14 02:04:45,168 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-02-14 02:04:45,168 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2023-02-14 02:04:45,168 INFO L275 PluginConnector]: RCFGBuilder initialized [2023-02-14 02:04:45,169 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (1/1) ... [2023-02-14 02:04:45,184 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-02-14 02:04:45,193 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:04:45,205 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-02-14 02:04:45,229 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-02-14 02:04:45,238 INFO L130 BoogieDeclarations]: Found specification of procedure fail [2023-02-14 02:04:45,238 INFO L138 BoogieDeclarations]: Found implementation of procedure fail [2023-02-14 02:04:45,239 INFO L130 BoogieDeclarations]: Found specification of procedure inspect_base [2023-02-14 02:04:45,239 INFO L138 BoogieDeclarations]: Found implementation of procedure inspect_base [2023-02-14 02:04:45,239 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnHeap [2023-02-14 02:04:45,239 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-02-14 02:04:45,239 INFO L130 BoogieDeclarations]: Found specification of procedure dll_insert_master [2023-02-14 02:04:45,239 INFO L138 BoogieDeclarations]: Found implementation of procedure dll_insert_master [2023-02-14 02:04:45,239 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2023-02-14 02:04:45,239 INFO L130 BoogieDeclarations]: Found specification of procedure write~$Pointer$ [2023-02-14 02:04:45,240 INFO L130 BoogieDeclarations]: Found specification of procedure ##fun~$Pointer$~TO~VOID [2023-02-14 02:04:45,240 INFO L138 BoogieDeclarations]: Found implementation of procedure ##fun~$Pointer$~TO~VOID [2023-02-14 02:04:45,240 INFO L130 BoogieDeclarations]: Found specification of procedure read~$Pointer$ [2023-02-14 02:04:45,240 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2023-02-14 02:04:45,240 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~$Pointer$ [2023-02-14 02:04:45,240 INFO L130 BoogieDeclarations]: Found specification of procedure dll_create_generic [2023-02-14 02:04:45,240 INFO L138 BoogieDeclarations]: Found implementation of procedure dll_create_generic [2023-02-14 02:04:45,240 INFO L130 BoogieDeclarations]: Found specification of procedure dll_create_slave [2023-02-14 02:04:45,241 INFO L138 BoogieDeclarations]: Found implementation of procedure dll_create_slave [2023-02-14 02:04:45,241 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-02-14 02:04:45,241 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-02-14 02:04:45,241 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-02-14 02:04:45,404 INFO L235 CfgBuilder]: Building ICFG [2023-02-14 02:04:45,410 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2023-02-14 02:04:45,891 INFO L276 CfgBuilder]: Performing block encoding [2023-02-14 02:04:45,896 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-02-14 02:04:45,896 INFO L300 CfgBuilder]: Removed 38 assume(true) statements. [2023-02-14 02:04:45,898 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.02 02:04:45 BoogieIcfgContainer [2023-02-14 02:04:45,898 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-02-14 02:04:45,899 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-02-14 02:04:45,899 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2023-02-14 02:04:45,901 INFO L275 PluginConnector]: TraceAbstraction initialized [2023-02-14 02:04:45,901 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 14.02 02:04:44" (1/3) ... [2023-02-14 02:04:45,902 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@65b852fd and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 14.02 02:04:45, skipping insertion in model container [2023-02-14 02:04:45,902 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.02 02:04:45" (2/3) ... [2023-02-14 02:04:45,902 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@65b852fd and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 14.02 02:04:45, skipping insertion in model container [2023-02-14 02:04:45,902 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.02 02:04:45" (3/3) ... [2023-02-14 02:04:45,910 INFO L112 eAbstractionObserver]: Analyzing ICFG dll_of_dll-1.i [2023-02-14 02:04:45,925 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:false NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-02-14 02:04:45,925 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 98 error locations. [2023-02-14 02:04:45,974 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-02-14 02:04:45,980 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=false, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@d07dfd2, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-02-14 02:04:45,981 INFO L358 AbstractCegarLoop]: Starting to check reachability of 98 error locations. [2023-02-14 02:04:45,985 INFO L276 IsEmpty]: Start isEmpty. Operand has 271 states, 142 states have (on average 2.1619718309859155) internal successors, (307), 259 states have internal predecessors, (307), 24 states have call successors, (24), 6 states have call predecessors, (24), 6 states have return successors, (24), 23 states have call predecessors, (24), 24 states have call successors, (24) [2023-02-14 02:04:45,990 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2023-02-14 02:04:45,991 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:45,991 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:45,992 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting ##fun~$Pointer$~TO~VOIDErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:45,996 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:45,997 INFO L85 PathProgramCache]: Analyzing trace with hash -853608627, now seen corresponding path program 1 times [2023-02-14 02:04:46,002 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:46,003 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1783366595] [2023-02-14 02:04:46,003 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:46,003 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:46,105 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:46,165 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:46,166 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:46,166 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1783366595] [2023-02-14 02:04:46,167 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1783366595] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:46,167 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:46,168 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-02-14 02:04:46,169 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1634262394] [2023-02-14 02:04:46,169 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:46,172 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-02-14 02:04:46,173 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:46,197 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-02-14 02:04:46,198 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-02-14 02:04:46,201 INFO L87 Difference]: Start difference. First operand has 271 states, 142 states have (on average 2.1619718309859155) internal successors, (307), 259 states have internal predecessors, (307), 24 states have call successors, (24), 6 states have call predecessors, (24), 6 states have return successors, (24), 23 states have call predecessors, (24), 24 states have call successors, (24) Second operand has 2 states, 2 states have (on average 3.5) internal successors, (7), 2 states have internal predecessors, (7), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,227 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:46,227 INFO L93 Difference]: Finished difference Result 269 states and 299 transitions. [2023-02-14 02:04:46,228 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-02-14 02:04:46,229 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 3.5) internal successors, (7), 2 states have internal predecessors, (7), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 9 [2023-02-14 02:04:46,229 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:46,236 INFO L225 Difference]: With dead ends: 269 [2023-02-14 02:04:46,237 INFO L226 Difference]: Without dead ends: 267 [2023-02-14 02:04:46,238 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-02-14 02:04:46,240 INFO L413 NwaCegarLoop]: 299 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 299 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:46,241 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 299 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-02-14 02:04:46,253 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 267 states. [2023-02-14 02:04:46,271 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 267 to 267. [2023-02-14 02:04:46,273 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 267 states, 140 states have (on average 1.8785714285714286) internal successors, (263), 255 states have internal predecessors, (263), 24 states have call successors, (24), 6 states have call predecessors, (24), 5 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) [2023-02-14 02:04:46,277 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 267 states to 267 states and 297 transitions. [2023-02-14 02:04:46,278 INFO L78 Accepts]: Start accepts. Automaton has 267 states and 297 transitions. Word has length 9 [2023-02-14 02:04:46,278 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:46,278 INFO L495 AbstractCegarLoop]: Abstraction has 267 states and 297 transitions. [2023-02-14 02:04:46,279 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 3.5) internal successors, (7), 2 states have internal predecessors, (7), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,279 INFO L276 IsEmpty]: Start isEmpty. Operand 267 states and 297 transitions. [2023-02-14 02:04:46,279 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2023-02-14 02:04:46,279 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:46,279 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:46,279 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-02-14 02:04:46,280 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting ##fun~$Pointer$~TO~VOIDErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:46,280 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:46,280 INFO L85 PathProgramCache]: Analyzing trace with hash -853608565, now seen corresponding path program 1 times [2023-02-14 02:04:46,280 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:46,280 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [483857196] [2023-02-14 02:04:46,281 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:46,281 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:46,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:46,353 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:46,354 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:46,354 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [483857196] [2023-02-14 02:04:46,354 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [483857196] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:46,354 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:46,354 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-02-14 02:04:46,355 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1338389998] [2023-02-14 02:04:46,355 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:46,356 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-02-14 02:04:46,356 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:46,356 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-02-14 02:04:46,357 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:46,357 INFO L87 Difference]: Start difference. First operand 267 states and 297 transitions. Second operand has 3 states, 2 states have (on average 3.5) internal successors, (7), 3 states have internal predecessors, (7), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,496 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:46,497 INFO L93 Difference]: Finished difference Result 267 states and 299 transitions. [2023-02-14 02:04:46,498 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-02-14 02:04:46,500 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 3.5) internal successors, (7), 3 states have internal predecessors, (7), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 9 [2023-02-14 02:04:46,526 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:46,527 INFO L225 Difference]: With dead ends: 267 [2023-02-14 02:04:46,527 INFO L226 Difference]: Without dead ends: 267 [2023-02-14 02:04:46,527 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:46,528 INFO L413 NwaCegarLoop]: 282 mSDtfsCounter, 23 mSDsluCounter, 181 mSDsCounter, 0 mSdLazyCounter, 105 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 23 SdHoareTripleChecker+Valid, 463 SdHoareTripleChecker+Invalid, 106 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 105 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:46,528 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [23 Valid, 463 Invalid, 106 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 105 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:46,529 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 267 states. [2023-02-14 02:04:46,542 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 267 to 265. [2023-02-14 02:04:46,547 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 265 states, 140 states have (on average 1.8642857142857143) internal successors, (261), 253 states have internal predecessors, (261), 24 states have call successors, (24), 6 states have call predecessors, (24), 5 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) [2023-02-14 02:04:46,550 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 265 states to 265 states and 295 transitions. [2023-02-14 02:04:46,553 INFO L78 Accepts]: Start accepts. Automaton has 265 states and 295 transitions. Word has length 9 [2023-02-14 02:04:46,554 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:46,554 INFO L495 AbstractCegarLoop]: Abstraction has 265 states and 295 transitions. [2023-02-14 02:04:46,554 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 3.5) internal successors, (7), 3 states have internal predecessors, (7), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,554 INFO L276 IsEmpty]: Start isEmpty. Operand 265 states and 295 transitions. [2023-02-14 02:04:46,555 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2023-02-14 02:04:46,555 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:46,555 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:46,555 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-02-14 02:04:46,555 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting ##fun~$Pointer$~TO~VOIDErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:46,556 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:46,556 INFO L85 PathProgramCache]: Analyzing trace with hash -853608564, now seen corresponding path program 1 times [2023-02-14 02:04:46,556 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:46,556 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1889850278] [2023-02-14 02:04:46,556 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:46,557 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:46,570 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:46,683 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:46,683 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:46,684 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1889850278] [2023-02-14 02:04:46,684 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1889850278] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:46,684 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:46,684 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-02-14 02:04:46,684 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1746597805] [2023-02-14 02:04:46,684 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:46,685 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-02-14 02:04:46,685 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:46,685 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-02-14 02:04:46,685 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-02-14 02:04:46,686 INFO L87 Difference]: Start difference. First operand 265 states and 295 transitions. Second operand has 5 states, 4 states have (on average 1.75) internal successors, (7), 4 states have internal predecessors, (7), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,767 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:46,768 INFO L93 Difference]: Finished difference Result 291 states and 329 transitions. [2023-02-14 02:04:46,768 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-02-14 02:04:46,768 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 1.75) internal successors, (7), 4 states have internal predecessors, (7), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 9 [2023-02-14 02:04:46,769 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:46,771 INFO L225 Difference]: With dead ends: 291 [2023-02-14 02:04:46,771 INFO L226 Difference]: Without dead ends: 291 [2023-02-14 02:04:46,773 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2023-02-14 02:04:46,776 INFO L413 NwaCegarLoop]: 313 mSDtfsCounter, 19 mSDsluCounter, 887 mSDsCounter, 0 mSdLazyCounter, 54 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 22 SdHoareTripleChecker+Valid, 1200 SdHoareTripleChecker+Invalid, 66 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 54 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:46,777 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [22 Valid, 1200 Invalid, 66 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 54 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-02-14 02:04:46,779 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 291 states. [2023-02-14 02:04:46,794 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 291 to 283. [2023-02-14 02:04:46,798 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 283 states, 151 states have (on average 1.8278145695364238) internal successors, (276), 264 states have internal predecessors, (276), 29 states have call successors, (29), 8 states have call predecessors, (29), 7 states have return successors, (18), 13 states have call predecessors, (18), 15 states have call successors, (18) [2023-02-14 02:04:46,799 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 283 states to 283 states and 323 transitions. [2023-02-14 02:04:46,800 INFO L78 Accepts]: Start accepts. Automaton has 283 states and 323 transitions. Word has length 9 [2023-02-14 02:04:46,800 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:46,800 INFO L495 AbstractCegarLoop]: Abstraction has 283 states and 323 transitions. [2023-02-14 02:04:46,800 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 1.75) internal successors, (7), 4 states have internal predecessors, (7), 2 states have call successors, (2), 2 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,800 INFO L276 IsEmpty]: Start isEmpty. Operand 283 states and 323 transitions. [2023-02-14 02:04:46,801 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2023-02-14 02:04:46,801 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:46,801 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:46,801 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-02-14 02:04:46,801 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:46,802 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:46,802 INFO L85 PathProgramCache]: Analyzing trace with hash 33414869, now seen corresponding path program 1 times [2023-02-14 02:04:46,802 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:46,803 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1413421327] [2023-02-14 02:04:46,803 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:46,803 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:46,821 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:46,870 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:46,872 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:46,872 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1413421327] [2023-02-14 02:04:46,872 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1413421327] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:46,872 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:46,872 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-02-14 02:04:46,872 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [345170381] [2023-02-14 02:04:46,873 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:46,873 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-02-14 02:04:46,873 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:46,874 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-02-14 02:04:46,874 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:46,874 INFO L87 Difference]: Start difference. First operand 283 states and 323 transitions. Second operand has 3 states, 2 states have (on average 4.0) internal successors, (8), 3 states have internal predecessors, (8), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,971 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:46,971 INFO L93 Difference]: Finished difference Result 280 states and 320 transitions. [2023-02-14 02:04:46,972 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-02-14 02:04:46,972 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 4.0) internal successors, (8), 3 states have internal predecessors, (8), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 11 [2023-02-14 02:04:46,972 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:46,973 INFO L225 Difference]: With dead ends: 280 [2023-02-14 02:04:46,973 INFO L226 Difference]: Without dead ends: 280 [2023-02-14 02:04:46,974 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:46,981 INFO L413 NwaCegarLoop]: 278 mSDtfsCounter, 20 mSDsluCounter, 182 mSDsCounter, 0 mSdLazyCounter, 102 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 460 SdHoareTripleChecker+Invalid, 104 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 102 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:46,982 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 460 Invalid, 104 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 102 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:46,984 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 280 states. [2023-02-14 02:04:46,991 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 280 to 280. [2023-02-14 02:04:46,992 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 280 states, 151 states have (on average 1.8079470198675496) internal successors, (273), 261 states have internal predecessors, (273), 29 states have call successors, (29), 8 states have call predecessors, (29), 7 states have return successors, (18), 13 states have call predecessors, (18), 15 states have call successors, (18) [2023-02-14 02:04:46,993 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 280 states to 280 states and 320 transitions. [2023-02-14 02:04:46,993 INFO L78 Accepts]: Start accepts. Automaton has 280 states and 320 transitions. Word has length 11 [2023-02-14 02:04:46,993 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:46,993 INFO L495 AbstractCegarLoop]: Abstraction has 280 states and 320 transitions. [2023-02-14 02:04:46,993 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 4.0) internal successors, (8), 3 states have internal predecessors, (8), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:46,994 INFO L276 IsEmpty]: Start isEmpty. Operand 280 states and 320 transitions. [2023-02-14 02:04:46,994 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2023-02-14 02:04:46,994 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:46,994 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:46,994 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-02-14 02:04:46,994 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:46,995 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:46,995 INFO L85 PathProgramCache]: Analyzing trace with hash 33414870, now seen corresponding path program 1 times [2023-02-14 02:04:46,996 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:46,996 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1898682750] [2023-02-14 02:04:46,996 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:46,996 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:47,013 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:47,087 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:47,087 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:47,087 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1898682750] [2023-02-14 02:04:47,088 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1898682750] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:47,088 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:47,088 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-02-14 02:04:47,088 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [857190799] [2023-02-14 02:04:47,089 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:47,089 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-02-14 02:04:47,089 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:47,090 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-02-14 02:04:47,091 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:47,091 INFO L87 Difference]: Start difference. First operand 280 states and 320 transitions. Second operand has 3 states, 2 states have (on average 4.0) internal successors, (8), 3 states have internal predecessors, (8), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:47,185 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:47,185 INFO L93 Difference]: Finished difference Result 277 states and 317 transitions. [2023-02-14 02:04:47,185 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-02-14 02:04:47,186 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 4.0) internal successors, (8), 3 states have internal predecessors, (8), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 11 [2023-02-14 02:04:47,186 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:47,188 INFO L225 Difference]: With dead ends: 277 [2023-02-14 02:04:47,188 INFO L226 Difference]: Without dead ends: 277 [2023-02-14 02:04:47,188 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:47,193 INFO L413 NwaCegarLoop]: 278 mSDtfsCounter, 17 mSDsluCounter, 187 mSDsCounter, 0 mSdLazyCounter, 94 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 465 SdHoareTripleChecker+Invalid, 96 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 94 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:47,193 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 465 Invalid, 96 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 94 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:47,194 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 277 states. [2023-02-14 02:04:47,199 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 277 to 277. [2023-02-14 02:04:47,199 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 277 states, 151 states have (on average 1.7880794701986755) internal successors, (270), 258 states have internal predecessors, (270), 29 states have call successors, (29), 8 states have call predecessors, (29), 7 states have return successors, (18), 13 states have call predecessors, (18), 15 states have call successors, (18) [2023-02-14 02:04:47,201 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 277 states to 277 states and 317 transitions. [2023-02-14 02:04:47,201 INFO L78 Accepts]: Start accepts. Automaton has 277 states and 317 transitions. Word has length 11 [2023-02-14 02:04:47,202 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:47,202 INFO L495 AbstractCegarLoop]: Abstraction has 277 states and 317 transitions. [2023-02-14 02:04:47,202 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 4.0) internal successors, (8), 3 states have internal predecessors, (8), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:47,202 INFO L276 IsEmpty]: Start isEmpty. Operand 277 states and 317 transitions. [2023-02-14 02:04:47,202 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2023-02-14 02:04:47,202 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:47,203 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:47,203 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-02-14 02:04:47,203 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting dll_insert_masterErr6REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:47,204 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:47,204 INFO L85 PathProgramCache]: Analyzing trace with hash -226556130, now seen corresponding path program 1 times [2023-02-14 02:04:47,204 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:47,204 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [780264765] [2023-02-14 02:04:47,204 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:47,204 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:47,222 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:47,376 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:47,377 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:47,377 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [780264765] [2023-02-14 02:04:47,377 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [780264765] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:47,377 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:47,377 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-02-14 02:04:47,377 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [388725245] [2023-02-14 02:04:47,378 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:47,378 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-02-14 02:04:47,378 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:47,379 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-02-14 02:04:47,379 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-02-14 02:04:47,379 INFO L87 Difference]: Start difference. First operand 277 states and 317 transitions. Second operand has 8 states, 6 states have (on average 2.1666666666666665) internal successors, (13), 6 states have internal predecessors, (13), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:47,684 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:47,684 INFO L93 Difference]: Finished difference Result 300 states and 343 transitions. [2023-02-14 02:04:47,684 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-02-14 02:04:47,685 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 2.1666666666666665) internal successors, (13), 6 states have internal predecessors, (13), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 16 [2023-02-14 02:04:47,685 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:47,688 INFO L225 Difference]: With dead ends: 300 [2023-02-14 02:04:47,688 INFO L226 Difference]: Without dead ends: 300 [2023-02-14 02:04:47,688 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=23, Invalid=67, Unknown=0, NotChecked=0, Total=90 [2023-02-14 02:04:47,689 INFO L413 NwaCegarLoop]: 266 mSDtfsCounter, 115 mSDsluCounter, 887 mSDsCounter, 0 mSdLazyCounter, 547 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 115 SdHoareTripleChecker+Valid, 1153 SdHoareTripleChecker+Invalid, 562 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 547 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:47,689 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [115 Valid, 1153 Invalid, 562 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 547 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-02-14 02:04:47,690 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2023-02-14 02:04:47,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 289. [2023-02-14 02:04:47,696 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 289 states, 162 states have (on average 1.7469135802469136) internal successors, (283), 268 states have internal predecessors, (283), 30 states have call successors, (30), 10 states have call predecessors, (30), 7 states have return successors, (19), 13 states have call predecessors, (19), 16 states have call successors, (19) [2023-02-14 02:04:47,697 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 289 states to 289 states and 332 transitions. [2023-02-14 02:04:47,697 INFO L78 Accepts]: Start accepts. Automaton has 289 states and 332 transitions. Word has length 16 [2023-02-14 02:04:47,697 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:47,697 INFO L495 AbstractCegarLoop]: Abstraction has 289 states and 332 transitions. [2023-02-14 02:04:47,697 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 2.1666666666666665) internal successors, (13), 6 states have internal predecessors, (13), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:47,698 INFO L276 IsEmpty]: Start isEmpty. Operand 289 states and 332 transitions. [2023-02-14 02:04:47,698 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2023-02-14 02:04:47,698 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:47,698 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:47,699 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-02-14 02:04:47,699 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting dll_insert_masterErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:47,700 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:47,700 INFO L85 PathProgramCache]: Analyzing trace with hash -226556129, now seen corresponding path program 1 times [2023-02-14 02:04:47,700 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:47,700 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [131713767] [2023-02-14 02:04:47,700 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:47,700 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:47,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:47,913 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:47,913 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:47,914 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [131713767] [2023-02-14 02:04:47,914 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [131713767] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:47,914 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:47,914 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-02-14 02:04:47,914 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [426991022] [2023-02-14 02:04:47,914 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:47,915 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-02-14 02:04:47,915 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:47,915 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-02-14 02:04:47,915 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-02-14 02:04:47,916 INFO L87 Difference]: Start difference. First operand 289 states and 332 transitions. Second operand has 7 states, 5 states have (on average 2.6) internal successors, (13), 5 states have internal predecessors, (13), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:48,251 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:48,251 INFO L93 Difference]: Finished difference Result 299 states and 342 transitions. [2023-02-14 02:04:48,252 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-02-14 02:04:48,252 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 5 states have (on average 2.6) internal successors, (13), 5 states have internal predecessors, (13), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 16 [2023-02-14 02:04:48,252 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:48,253 INFO L225 Difference]: With dead ends: 299 [2023-02-14 02:04:48,253 INFO L226 Difference]: Without dead ends: 299 [2023-02-14 02:04:48,253 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=53, Unknown=0, NotChecked=0, Total=72 [2023-02-14 02:04:48,254 INFO L413 NwaCegarLoop]: 260 mSDtfsCounter, 80 mSDsluCounter, 756 mSDsCounter, 0 mSdLazyCounter, 697 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 80 SdHoareTripleChecker+Valid, 1016 SdHoareTripleChecker+Invalid, 706 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 697 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:48,254 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [80 Valid, 1016 Invalid, 706 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 697 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-02-14 02:04:48,254 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 299 states. [2023-02-14 02:04:48,259 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 299 to 289. [2023-02-14 02:04:48,260 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 289 states, 162 states have (on average 1.7345679012345678) internal successors, (281), 268 states have internal predecessors, (281), 30 states have call successors, (30), 10 states have call predecessors, (30), 7 states have return successors, (19), 13 states have call predecessors, (19), 16 states have call successors, (19) [2023-02-14 02:04:48,261 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 289 states to 289 states and 330 transitions. [2023-02-14 02:04:48,261 INFO L78 Accepts]: Start accepts. Automaton has 289 states and 330 transitions. Word has length 16 [2023-02-14 02:04:48,261 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:48,262 INFO L495 AbstractCegarLoop]: Abstraction has 289 states and 330 transitions. [2023-02-14 02:04:48,262 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 5 states have (on average 2.6) internal successors, (13), 5 states have internal predecessors, (13), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:48,262 INFO L276 IsEmpty]: Start isEmpty. Operand 289 states and 330 transitions. [2023-02-14 02:04:48,262 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-02-14 02:04:48,262 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:48,262 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:48,262 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-02-14 02:04:48,263 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting dll_insert_masterErr8REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:48,263 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:48,263 INFO L85 PathProgramCache]: Analyzing trace with hash 1322891007, now seen corresponding path program 1 times [2023-02-14 02:04:48,263 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:48,263 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [590551320] [2023-02-14 02:04:48,263 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:48,264 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:48,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:48,334 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:48,334 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:48,334 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [590551320] [2023-02-14 02:04:48,334 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [590551320] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:48,334 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:48,334 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-02-14 02:04:48,335 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1510932074] [2023-02-14 02:04:48,335 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:48,335 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-02-14 02:04:48,335 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:48,336 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-02-14 02:04:48,336 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-02-14 02:04:48,336 INFO L87 Difference]: Start difference. First operand 289 states and 330 transitions. Second operand has 5 states, 4 states have (on average 3.75) internal successors, (15), 5 states have internal predecessors, (15), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:48,483 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:48,483 INFO L93 Difference]: Finished difference Result 288 states and 329 transitions. [2023-02-14 02:04:48,484 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-02-14 02:04:48,485 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 3.75) internal successors, (15), 5 states have internal predecessors, (15), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2023-02-14 02:04:48,485 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:48,486 INFO L225 Difference]: With dead ends: 288 [2023-02-14 02:04:48,486 INFO L226 Difference]: Without dead ends: 288 [2023-02-14 02:04:48,487 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-02-14 02:04:48,488 INFO L413 NwaCegarLoop]: 274 mSDtfsCounter, 40 mSDsluCounter, 539 mSDsCounter, 0 mSdLazyCounter, 290 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 40 SdHoareTripleChecker+Valid, 813 SdHoareTripleChecker+Invalid, 292 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 290 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:48,488 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [40 Valid, 813 Invalid, 292 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 290 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:48,488 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 288 states. [2023-02-14 02:04:48,493 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 288 to 288. [2023-02-14 02:04:48,494 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 288 states, 162 states have (on average 1.728395061728395) internal successors, (280), 267 states have internal predecessors, (280), 30 states have call successors, (30), 10 states have call predecessors, (30), 7 states have return successors, (19), 13 states have call predecessors, (19), 16 states have call successors, (19) [2023-02-14 02:04:48,496 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 288 states to 288 states and 329 transitions. [2023-02-14 02:04:48,496 INFO L78 Accepts]: Start accepts. Automaton has 288 states and 329 transitions. Word has length 18 [2023-02-14 02:04:48,497 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:48,497 INFO L495 AbstractCegarLoop]: Abstraction has 288 states and 329 transitions. [2023-02-14 02:04:48,497 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 3.75) internal successors, (15), 5 states have internal predecessors, (15), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:48,497 INFO L276 IsEmpty]: Start isEmpty. Operand 288 states and 329 transitions. [2023-02-14 02:04:48,497 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-02-14 02:04:48,498 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:48,498 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:48,498 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-02-14 02:04:48,498 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting dll_insert_masterErr9REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:48,499 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:48,499 INFO L85 PathProgramCache]: Analyzing trace with hash 1322891008, now seen corresponding path program 1 times [2023-02-14 02:04:48,499 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:48,499 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [586645039] [2023-02-14 02:04:48,499 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:48,499 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:48,518 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:48,585 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:48,585 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:48,586 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [586645039] [2023-02-14 02:04:48,586 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [586645039] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:48,586 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:48,586 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-02-14 02:04:48,586 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [929203660] [2023-02-14 02:04:48,586 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:48,587 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-02-14 02:04:48,587 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:48,587 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-02-14 02:04:48,587 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-02-14 02:04:48,588 INFO L87 Difference]: Start difference. First operand 288 states and 329 transitions. Second operand has 6 states, 5 states have (on average 3.0) internal successors, (15), 6 states have internal predecessors, (15), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:48,723 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:48,723 INFO L93 Difference]: Finished difference Result 287 states and 328 transitions. [2023-02-14 02:04:48,724 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-02-14 02:04:48,724 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 3.0) internal successors, (15), 6 states have internal predecessors, (15), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2023-02-14 02:04:48,724 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:48,725 INFO L225 Difference]: With dead ends: 287 [2023-02-14 02:04:48,725 INFO L226 Difference]: Without dead ends: 287 [2023-02-14 02:04:48,725 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-02-14 02:04:48,726 INFO L413 NwaCegarLoop]: 276 mSDtfsCounter, 54 mSDsluCounter, 638 mSDsCounter, 0 mSdLazyCounter, 194 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 914 SdHoareTripleChecker+Invalid, 196 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 194 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:48,726 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 914 Invalid, 196 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 194 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:48,727 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 287 states. [2023-02-14 02:04:48,730 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 287 to 287. [2023-02-14 02:04:48,731 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 287 states, 162 states have (on average 1.7222222222222223) internal successors, (279), 266 states have internal predecessors, (279), 30 states have call successors, (30), 10 states have call predecessors, (30), 7 states have return successors, (19), 13 states have call predecessors, (19), 16 states have call successors, (19) [2023-02-14 02:04:48,732 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 287 states to 287 states and 328 transitions. [2023-02-14 02:04:48,732 INFO L78 Accepts]: Start accepts. Automaton has 287 states and 328 transitions. Word has length 18 [2023-02-14 02:04:48,732 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:48,732 INFO L495 AbstractCegarLoop]: Abstraction has 287 states and 328 transitions. [2023-02-14 02:04:48,732 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 3.0) internal successors, (15), 6 states have internal predecessors, (15), 1 states have call successors, (3), 1 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:48,732 INFO L276 IsEmpty]: Start isEmpty. Operand 287 states and 328 transitions. [2023-02-14 02:04:48,733 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2023-02-14 02:04:48,733 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:48,733 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:48,733 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-02-14 02:04:48,733 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting dll_insert_masterErr10REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:48,734 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:48,734 INFO L85 PathProgramCache]: Analyzing trace with hash -12061856, now seen corresponding path program 1 times [2023-02-14 02:04:48,734 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:48,734 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [955888589] [2023-02-14 02:04:48,734 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:48,734 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:48,748 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:48,985 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:04:48,985 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:48,985 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [955888589] [2023-02-14 02:04:48,985 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [955888589] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:48,985 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:48,985 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2023-02-14 02:04:48,985 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [761775864] [2023-02-14 02:04:48,985 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:48,985 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2023-02-14 02:04:48,985 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:48,986 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2023-02-14 02:04:48,986 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=72, Unknown=0, NotChecked=0, Total=90 [2023-02-14 02:04:48,986 INFO L87 Difference]: Start difference. First operand 287 states and 328 transitions. Second operand has 10 states, 9 states have (on average 1.8888888888888888) internal successors, (17), 8 states have internal predecessors, (17), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:49,317 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:49,317 INFO L93 Difference]: Finished difference Result 326 states and 372 transitions. [2023-02-14 02:04:49,318 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-02-14 02:04:49,318 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 9 states have (on average 1.8888888888888888) internal successors, (17), 8 states have internal predecessors, (17), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2023-02-14 02:04:49,319 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:49,320 INFO L225 Difference]: With dead ends: 326 [2023-02-14 02:04:49,320 INFO L226 Difference]: Without dead ends: 326 [2023-02-14 02:04:49,320 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=41, Invalid=141, Unknown=0, NotChecked=0, Total=182 [2023-02-14 02:04:49,321 INFO L413 NwaCegarLoop]: 272 mSDtfsCounter, 47 mSDsluCounter, 1508 mSDsCounter, 0 mSdLazyCounter, 535 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 1780 SdHoareTripleChecker+Invalid, 551 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 535 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:49,321 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 1780 Invalid, 551 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 535 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-02-14 02:04:49,321 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 326 states. [2023-02-14 02:04:49,325 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 326 to 307. [2023-02-14 02:04:49,326 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 307 states, 179 states have (on average 1.681564245810056) internal successors, (301), 283 states have internal predecessors, (301), 32 states have call successors, (32), 12 states have call predecessors, (32), 8 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:04:49,327 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 307 states to 307 states and 356 transitions. [2023-02-14 02:04:49,327 INFO L78 Accepts]: Start accepts. Automaton has 307 states and 356 transitions. Word has length 20 [2023-02-14 02:04:49,327 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:49,327 INFO L495 AbstractCegarLoop]: Abstraction has 307 states and 356 transitions. [2023-02-14 02:04:49,328 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 9 states have (on average 1.8888888888888888) internal successors, (17), 8 states have internal predecessors, (17), 3 states have call successors, (3), 3 states have call predecessors, (3), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:49,328 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 356 transitions. [2023-02-14 02:04:49,328 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2023-02-14 02:04:49,328 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:49,328 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:49,329 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2023-02-14 02:04:49,329 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting ##fun~$Pointer$~TO~VOIDErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:49,329 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:49,329 INFO L85 PathProgramCache]: Analyzing trace with hash 551710607, now seen corresponding path program 1 times [2023-02-14 02:04:49,329 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:49,329 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1203274838] [2023-02-14 02:04:49,330 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:49,330 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:49,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:49,398 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-02-14 02:04:49,398 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:49,399 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1203274838] [2023-02-14 02:04:49,399 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1203274838] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:49,399 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:49,399 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-02-14 02:04:49,399 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [176600770] [2023-02-14 02:04:49,399 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:49,399 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-02-14 02:04:49,399 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:49,399 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-02-14 02:04:49,399 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:49,400 INFO L87 Difference]: Start difference. First operand 307 states and 356 transitions. Second operand has 3 states, 2 states have (on average 9.5) internal successors, (19), 3 states have internal predecessors, (19), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:49,478 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:49,478 INFO L93 Difference]: Finished difference Result 305 states and 354 transitions. [2023-02-14 02:04:49,478 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-02-14 02:04:49,478 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 9.5) internal successors, (19), 3 states have internal predecessors, (19), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 27 [2023-02-14 02:04:49,478 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:49,480 INFO L225 Difference]: With dead ends: 305 [2023-02-14 02:04:49,480 INFO L226 Difference]: Without dead ends: 305 [2023-02-14 02:04:49,481 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-02-14 02:04:49,481 INFO L413 NwaCegarLoop]: 274 mSDtfsCounter, 21 mSDsluCounter, 184 mSDsCounter, 0 mSdLazyCounter, 92 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 458 SdHoareTripleChecker+Invalid, 93 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 92 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:49,481 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 458 Invalid, 93 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 92 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:49,482 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2023-02-14 02:04:49,487 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 305. [2023-02-14 02:04:49,488 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 305 states, 179 states have (on average 1.670391061452514) internal successors, (299), 281 states have internal predecessors, (299), 32 states have call successors, (32), 12 states have call predecessors, (32), 8 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:04:49,489 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 305 states to 305 states and 354 transitions. [2023-02-14 02:04:49,489 INFO L78 Accepts]: Start accepts. Automaton has 305 states and 354 transitions. Word has length 27 [2023-02-14 02:04:49,489 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:49,489 INFO L495 AbstractCegarLoop]: Abstraction has 305 states and 354 transitions. [2023-02-14 02:04:49,489 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 9.5) internal successors, (19), 3 states have internal predecessors, (19), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:49,489 INFO L276 IsEmpty]: Start isEmpty. Operand 305 states and 354 transitions. [2023-02-14 02:04:49,491 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-02-14 02:04:49,491 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:49,491 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:49,491 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2023-02-14 02:04:49,491 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting ##fun~$Pointer$~TO~VOIDErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:49,492 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:49,492 INFO L85 PathProgramCache]: Analyzing trace with hash 67060467, now seen corresponding path program 1 times [2023-02-14 02:04:49,492 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:49,492 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [571080447] [2023-02-14 02:04:49,492 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:49,492 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:49,511 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:49,696 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-02-14 02:04:49,696 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:49,696 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [571080447] [2023-02-14 02:04:49,696 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [571080447] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:49,696 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:49,697 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-02-14 02:04:49,702 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2011516922] [2023-02-14 02:04:49,702 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:49,703 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-02-14 02:04:49,703 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:49,703 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-02-14 02:04:49,703 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-02-14 02:04:49,704 INFO L87 Difference]: Start difference. First operand 305 states and 354 transitions. Second operand has 6 states, 4 states have (on average 6.25) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:49,970 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:49,970 INFO L93 Difference]: Finished difference Result 304 states and 353 transitions. [2023-02-14 02:04:49,970 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-02-14 02:04:49,970 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 4 states have (on average 6.25) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2023-02-14 02:04:49,971 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:49,972 INFO L225 Difference]: With dead ends: 304 [2023-02-14 02:04:49,972 INFO L226 Difference]: Without dead ends: 304 [2023-02-14 02:04:49,972 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2023-02-14 02:04:49,972 INFO L413 NwaCegarLoop]: 268 mSDtfsCounter, 62 mSDsluCounter, 605 mSDsCounter, 0 mSdLazyCounter, 499 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 873 SdHoareTripleChecker+Invalid, 507 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 499 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:49,973 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [62 Valid, 873 Invalid, 507 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 499 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-02-14 02:04:49,973 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 304 states. [2023-02-14 02:04:49,976 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 304 to 303. [2023-02-14 02:04:49,977 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 303 states, 179 states have (on average 1.6592178770949721) internal successors, (297), 279 states have internal predecessors, (297), 32 states have call successors, (32), 12 states have call predecessors, (32), 8 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:04:49,978 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 303 states to 303 states and 352 transitions. [2023-02-14 02:04:49,978 INFO L78 Accepts]: Start accepts. Automaton has 303 states and 352 transitions. Word has length 31 [2023-02-14 02:04:49,978 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:49,978 INFO L495 AbstractCegarLoop]: Abstraction has 303 states and 352 transitions. [2023-02-14 02:04:49,978 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 4 states have (on average 6.25) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:49,979 INFO L276 IsEmpty]: Start isEmpty. Operand 303 states and 352 transitions. [2023-02-14 02:04:49,979 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-02-14 02:04:49,979 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:49,979 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:49,979 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2023-02-14 02:04:49,979 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting ##fun~$Pointer$~TO~VOIDErr4REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:49,980 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:49,980 INFO L85 PathProgramCache]: Analyzing trace with hash 67060466, now seen corresponding path program 1 times [2023-02-14 02:04:49,980 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:49,980 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [394870972] [2023-02-14 02:04:49,980 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:49,980 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:49,996 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:50,084 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-02-14 02:04:50,085 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:50,085 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [394870972] [2023-02-14 02:04:50,085 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [394870972] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:50,085 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:50,085 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-02-14 02:04:50,085 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1382332456] [2023-02-14 02:04:50,086 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:50,086 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-02-14 02:04:50,086 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:50,086 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-02-14 02:04:50,086 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2023-02-14 02:04:50,087 INFO L87 Difference]: Start difference. First operand 303 states and 352 transitions. Second operand has 7 states, 5 states have (on average 5.0) internal successors, (25), 6 states have internal predecessors, (25), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:50,267 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:50,267 INFO L93 Difference]: Finished difference Result 301 states and 350 transitions. [2023-02-14 02:04:50,267 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-02-14 02:04:50,267 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 5 states have (on average 5.0) internal successors, (25), 6 states have internal predecessors, (25), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2023-02-14 02:04:50,267 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:50,268 INFO L225 Difference]: With dead ends: 301 [2023-02-14 02:04:50,268 INFO L226 Difference]: Without dead ends: 301 [2023-02-14 02:04:50,269 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=23, Invalid=49, Unknown=0, NotChecked=0, Total=72 [2023-02-14 02:04:50,269 INFO L413 NwaCegarLoop]: 270 mSDtfsCounter, 70 mSDsluCounter, 705 mSDsCounter, 0 mSdLazyCounter, 392 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 975 SdHoareTripleChecker+Invalid, 402 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 392 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:50,269 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 975 Invalid, 402 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 392 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-02-14 02:04:50,270 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 301 states. [2023-02-14 02:04:50,273 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 301 to 301. [2023-02-14 02:04:50,273 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 301 states, 179 states have (on average 1.6480446927374302) internal successors, (295), 277 states have internal predecessors, (295), 32 states have call successors, (32), 12 states have call predecessors, (32), 8 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:04:50,274 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 301 states to 301 states and 350 transitions. [2023-02-14 02:04:50,274 INFO L78 Accepts]: Start accepts. Automaton has 301 states and 350 transitions. Word has length 31 [2023-02-14 02:04:50,274 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:50,275 INFO L495 AbstractCegarLoop]: Abstraction has 301 states and 350 transitions. [2023-02-14 02:04:50,275 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 5 states have (on average 5.0) internal successors, (25), 6 states have internal predecessors, (25), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:50,275 INFO L276 IsEmpty]: Start isEmpty. Operand 301 states and 350 transitions. [2023-02-14 02:04:50,275 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2023-02-14 02:04:50,275 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:50,275 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:50,275 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2023-02-14 02:04:50,275 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting ##fun~$Pointer$~TO~VOIDErr6REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:50,276 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:50,276 INFO L85 PathProgramCache]: Analyzing trace with hash 20600531, now seen corresponding path program 1 times [2023-02-14 02:04:50,276 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:50,276 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1743308562] [2023-02-14 02:04:50,276 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:50,276 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:50,295 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:50,334 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-02-14 02:04:50,334 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:50,334 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1743308562] [2023-02-14 02:04:50,335 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1743308562] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:50,335 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:50,335 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-02-14 02:04:50,335 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2090306788] [2023-02-14 02:04:50,335 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:50,335 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-02-14 02:04:50,335 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:50,336 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-02-14 02:04:50,336 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-02-14 02:04:50,336 INFO L87 Difference]: Start difference. First operand 301 states and 350 transitions. Second operand has 5 states, 4 states have (on average 6.25) internal successors, (25), 5 states have internal predecessors, (25), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:50,473 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:50,473 INFO L93 Difference]: Finished difference Result 300 states and 349 transitions. [2023-02-14 02:04:50,474 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-02-14 02:04:50,474 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 6.25) internal successors, (25), 5 states have internal predecessors, (25), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2023-02-14 02:04:50,475 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:50,477 INFO L225 Difference]: With dead ends: 300 [2023-02-14 02:04:50,477 INFO L226 Difference]: Without dead ends: 300 [2023-02-14 02:04:50,477 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-02-14 02:04:50,478 INFO L413 NwaCegarLoop]: 270 mSDtfsCounter, 38 mSDsluCounter, 531 mSDsCounter, 0 mSdLazyCounter, 281 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 38 SdHoareTripleChecker+Valid, 801 SdHoareTripleChecker+Invalid, 282 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 281 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:50,478 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [38 Valid, 801 Invalid, 282 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 281 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:50,479 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2023-02-14 02:04:50,484 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 300. [2023-02-14 02:04:50,485 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 300 states, 179 states have (on average 1.6424581005586592) internal successors, (294), 276 states have internal predecessors, (294), 32 states have call successors, (32), 12 states have call predecessors, (32), 8 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:04:50,486 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 300 states to 300 states and 349 transitions. [2023-02-14 02:04:50,486 INFO L78 Accepts]: Start accepts. Automaton has 300 states and 349 transitions. Word has length 33 [2023-02-14 02:04:50,487 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:50,487 INFO L495 AbstractCegarLoop]: Abstraction has 300 states and 349 transitions. [2023-02-14 02:04:50,487 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 6.25) internal successors, (25), 5 states have internal predecessors, (25), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:50,487 INFO L276 IsEmpty]: Start isEmpty. Operand 300 states and 349 transitions. [2023-02-14 02:04:50,488 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2023-02-14 02:04:50,488 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:50,488 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:50,488 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2023-02-14 02:04:50,489 INFO L420 AbstractCegarLoop]: === Iteration 15 === Targeting ##fun~$Pointer$~TO~VOIDErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:50,490 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:50,490 INFO L85 PathProgramCache]: Analyzing trace with hash 20600532, now seen corresponding path program 1 times [2023-02-14 02:04:50,490 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:50,490 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [267305895] [2023-02-14 02:04:50,490 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:50,490 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:50,507 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:50,597 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-02-14 02:04:50,597 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:50,597 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [267305895] [2023-02-14 02:04:50,597 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [267305895] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:50,597 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:50,597 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-02-14 02:04:50,597 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [455835411] [2023-02-14 02:04:50,597 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:50,597 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-02-14 02:04:50,597 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:50,598 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-02-14 02:04:50,598 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-02-14 02:04:50,598 INFO L87 Difference]: Start difference. First operand 300 states and 349 transitions. Second operand has 6 states, 5 states have (on average 5.0) internal successors, (25), 6 states have internal predecessors, (25), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:50,745 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:50,746 INFO L93 Difference]: Finished difference Result 299 states and 348 transitions. [2023-02-14 02:04:50,746 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-02-14 02:04:50,747 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 5.0) internal successors, (25), 6 states have internal predecessors, (25), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2023-02-14 02:04:50,747 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:50,748 INFO L225 Difference]: With dead ends: 299 [2023-02-14 02:04:50,748 INFO L226 Difference]: Without dead ends: 299 [2023-02-14 02:04:50,748 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-02-14 02:04:50,748 INFO L413 NwaCegarLoop]: 270 mSDtfsCounter, 36 mSDsluCounter, 816 mSDsCounter, 0 mSdLazyCounter, 259 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 1086 SdHoareTripleChecker+Invalid, 260 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 259 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:50,749 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [36 Valid, 1086 Invalid, 260 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 259 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-02-14 02:04:50,749 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 299 states. [2023-02-14 02:04:50,752 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 299 to 299. [2023-02-14 02:04:50,753 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 299 states, 179 states have (on average 1.6368715083798884) internal successors, (293), 275 states have internal predecessors, (293), 32 states have call successors, (32), 12 states have call predecessors, (32), 8 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:04:50,754 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 299 states to 299 states and 348 transitions. [2023-02-14 02:04:50,754 INFO L78 Accepts]: Start accepts. Automaton has 299 states and 348 transitions. Word has length 33 [2023-02-14 02:04:50,754 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:50,754 INFO L495 AbstractCegarLoop]: Abstraction has 299 states and 348 transitions. [2023-02-14 02:04:50,754 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 5.0) internal successors, (25), 6 states have internal predecessors, (25), 1 states have call successors, (5), 1 states have call predecessors, (5), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:50,754 INFO L276 IsEmpty]: Start isEmpty. Operand 299 states and 348 transitions. [2023-02-14 02:04:50,755 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2023-02-14 02:04:50,755 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:50,755 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:50,755 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2023-02-14 02:04:50,755 INFO L420 AbstractCegarLoop]: === Iteration 16 === Targeting ##fun~$Pointer$~TO~VOIDErr8REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:50,755 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:50,756 INFO L85 PathProgramCache]: Analyzing trace with hash -1677723852, now seen corresponding path program 1 times [2023-02-14 02:04:50,756 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:50,756 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1537701418] [2023-02-14 02:04:50,756 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:50,756 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:50,782 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:50,986 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-02-14 02:04:50,986 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:50,987 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1537701418] [2023-02-14 02:04:50,987 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1537701418] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:04:50,987 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-02-14 02:04:50,987 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2023-02-14 02:04:50,987 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1276103592] [2023-02-14 02:04:50,987 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:04:50,987 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-02-14 02:04:50,988 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:04:50,988 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-02-14 02:04:50,988 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=56, Unknown=0, NotChecked=0, Total=72 [2023-02-14 02:04:50,988 INFO L87 Difference]: Start difference. First operand 299 states and 348 transitions. Second operand has 9 states, 8 states have (on average 3.625) internal successors, (29), 8 states have internal predecessors, (29), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:51,256 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:04:51,256 INFO L93 Difference]: Finished difference Result 313 states and 363 transitions. [2023-02-14 02:04:51,257 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-02-14 02:04:51,257 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 8 states have (on average 3.625) internal successors, (29), 8 states have internal predecessors, (29), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2023-02-14 02:04:51,257 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:04:51,258 INFO L225 Difference]: With dead ends: 313 [2023-02-14 02:04:51,258 INFO L226 Difference]: Without dead ends: 313 [2023-02-14 02:04:51,258 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=111, Unknown=0, NotChecked=0, Total=156 [2023-02-14 02:04:51,259 INFO L413 NwaCegarLoop]: 271 mSDtfsCounter, 28 mSDsluCounter, 1316 mSDsCounter, 0 mSdLazyCounter, 384 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 1587 SdHoareTripleChecker+Invalid, 396 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 384 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-02-14 02:04:51,259 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [28 Valid, 1587 Invalid, 396 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 384 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-02-14 02:04:51,259 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 313 states. [2023-02-14 02:04:51,262 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 313 to 312. [2023-02-14 02:04:51,263 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 312 states, 191 states have (on average 1.5968586387434556) internal successors, (305), 288 states have internal predecessors, (305), 32 states have call successors, (32), 12 states have call predecessors, (32), 9 states have return successors, (25), 14 states have call predecessors, (25), 18 states have call successors, (25) [2023-02-14 02:04:51,264 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 312 states to 312 states and 362 transitions. [2023-02-14 02:04:51,264 INFO L78 Accepts]: Start accepts. Automaton has 312 states and 362 transitions. Word has length 35 [2023-02-14 02:04:51,264 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:04:51,264 INFO L495 AbstractCegarLoop]: Abstraction has 312 states and 362 transitions. [2023-02-14 02:04:51,264 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 8 states have (on average 3.625) internal successors, (29), 8 states have internal predecessors, (29), 2 states have call successors, (6), 2 states have call predecessors, (6), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-02-14 02:04:51,264 INFO L276 IsEmpty]: Start isEmpty. Operand 312 states and 362 transitions. [2023-02-14 02:04:51,265 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2023-02-14 02:04:51,265 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:04:51,265 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:04:51,265 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15 [2023-02-14 02:04:51,265 INFO L420 AbstractCegarLoop]: === Iteration 17 === Targeting ##fun~$Pointer$~TO~VOIDErr8REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:04:51,265 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:04:51,265 INFO L85 PathProgramCache]: Analyzing trace with hash 1451018694, now seen corresponding path program 1 times [2023-02-14 02:04:51,265 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:04:51,265 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1040752159] [2023-02-14 02:04:51,265 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:51,265 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:04:51,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:51,677 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-02-14 02:04:51,683 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:51,860 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 4 proven. 11 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:04:51,860 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:04:51,860 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1040752159] [2023-02-14 02:04:51,860 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1040752159] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:04:51,860 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1066341559] [2023-02-14 02:04:51,860 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:04:51,861 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:04:51,861 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:04:51,864 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-02-14 02:04:51,865 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-02-14 02:04:52,005 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:04:52,027 INFO L263 TraceCheckSpWp]: Trace formula consists of 495 conjuncts, 61 conjunts are in the unsatisfiable core [2023-02-14 02:04:52,033 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2023-02-14 02:04:52,158 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2023-02-14 02:04:52,211 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2023-02-14 02:04:52,322 INFO L321 Elim1Store]: treesize reduction 27, result has 25.0 percent of original size [2023-02-14 02:04:52,323 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 16 treesize of output 18 [2023-02-14 02:04:52,377 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:04:52,378 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2023-02-14 02:04:52,395 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:04:52,396 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2023-02-14 02:04:52,477 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2023-02-14 02:04:52,512 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 5 proven. 10 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:04:52,513 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2023-02-14 02:04:52,546 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_578 (Array Int Int))) (= (select |c_#valid| (select (select (store |c_#memory_$Pointer$.base| |c_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base| v_ArrVal_578) |c_##fun~$Pointer$~TO~VOID_dll_insert_slave_~dll#1.base|) |c_##fun~$Pointer$~TO~VOID_dll_insert_slave_~dll#1.offset|)) 1)) is different from false [2023-02-14 02:04:52,563 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_578 (Array Int Int)) (|v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| Int)) (or (= (select (store |c_#valid| |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| 1) (select (select (store |c_#memory_$Pointer$.base| |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| v_ArrVal_578) |c_##fun~$Pointer$~TO~VOID_#~10#1.base|) |c_##fun~$Pointer$~TO~VOID_#~10#1.offset|)) 1) (not (< |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| |c_#StackHeapBarrier|)))) is different from false [2023-02-14 02:04:52,573 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_578 (Array Int Int)) (|v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| Int)) (or (not (< |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| |c_#StackHeapBarrier|)) (= (select (store |c_#valid| |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| 1) (select (select (store |c_#memory_$Pointer$.base| |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| v_ArrVal_578) |c_##fun~$Pointer$~TO~VOID_#in~10#1.base|) |c_##fun~$Pointer$~TO~VOID_#in~10#1.offset|)) 1))) is different from false [2023-02-14 02:04:52,582 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_578 (Array Int Int)) (|v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| Int)) (or (not (< |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| |c_#StackHeapBarrier|)) (= (select (store |c_#valid| |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| 1) (select (select (store |c_#memory_$Pointer$.base| |v_##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base_12| v_ArrVal_578) |c_dll_create_generic_~#dll~0.base|) |c_dll_create_generic_~#dll~0.offset|)) 1))) is different from false [2023-02-14 02:04:52,663 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:04:52,663 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 26 treesize of output 27 [2023-02-14 02:04:52,667 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 46 treesize of output 34 [2023-02-14 02:04:52,672 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 42 treesize of output 38 [2023-02-14 02:04:52,676 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 5 treesize of output 3 [2023-02-14 02:04:52,798 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:04:52,799 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2023-02-14 02:04:52,801 INFO L173 IndexEqualityManager]: detected equality via solver [2023-02-14 02:04:52,806 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:04:52,806 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 21 treesize of output 24 [2023-02-14 02:04:59,877 WARN L233 SmtUtils]: Spent 7.02s on a formula simplification that was a NOOP. DAG size: 28 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2023-02-14 02:05:09,811 WARN L233 SmtUtils]: Spent 9.74s on a formula simplification that was a NOOP. DAG size: 28 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2023-02-14 02:05:14,655 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 21 [2023-02-14 02:05:14,663 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 21 [2023-02-14 02:05:14,706 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 5 proven. 6 refuted. 0 times theorem prover too weak. 2 trivial. 4 not checked. [2023-02-14 02:05:14,706 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1066341559] provided 0 perfect and 2 imperfect interpolant sequences [2023-02-14 02:05:14,706 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-02-14 02:05:14,706 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 14, 14] total 37 [2023-02-14 02:05:14,707 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [483293122] [2023-02-14 02:05:14,707 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-02-14 02:05:14,707 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 38 states [2023-02-14 02:05:14,708 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:05:14,708 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 38 interpolants. [2023-02-14 02:05:14,709 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=107, Invalid=1027, Unknown=4, NotChecked=268, Total=1406 [2023-02-14 02:05:14,709 INFO L87 Difference]: Start difference. First operand 312 states and 362 transitions. Second operand has 38 states, 32 states have (on average 2.71875) internal successors, (87), 32 states have internal predecessors, (87), 6 states have call successors, (11), 5 states have call predecessors, (11), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2023-02-14 02:05:16,882 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:05:16,882 INFO L93 Difference]: Finished difference Result 316 states and 365 transitions. [2023-02-14 02:05:16,882 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2023-02-14 02:05:16,883 INFO L78 Accepts]: Start accepts. Automaton has has 38 states, 32 states have (on average 2.71875) internal successors, (87), 32 states have internal predecessors, (87), 6 states have call successors, (11), 5 states have call predecessors, (11), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 51 [2023-02-14 02:05:16,883 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:05:16,889 INFO L225 Difference]: With dead ends: 316 [2023-02-14 02:05:16,889 INFO L226 Difference]: Without dead ends: 316 [2023-02-14 02:05:16,890 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 138 GetRequests, 86 SyntacticMatches, 2 SemanticMatches, 50 ConstructedPredicates, 4 IntricatePredicates, 0 DeprecatedPredicates, 375 ImplicationChecksByTransitivity, 22.5s TimeCoverageRelationStatistics Valid=355, Invalid=1913, Unknown=4, NotChecked=380, Total=2652 [2023-02-14 02:05:16,890 INFO L413 NwaCegarLoop]: 204 mSDtfsCounter, 253 mSDsluCounter, 3311 mSDsCounter, 0 mSdLazyCounter, 3125 mSolverCounterSat, 73 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 256 SdHoareTripleChecker+Valid, 3515 SdHoareTripleChecker+Invalid, 3938 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 73 IncrementalHoareTripleChecker+Valid, 3125 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 740 IncrementalHoareTripleChecker+Unchecked, 1.6s IncrementalHoareTripleChecker+Time [2023-02-14 02:05:16,891 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [256 Valid, 3515 Invalid, 3938 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [73 Valid, 3125 Invalid, 0 Unknown, 740 Unchecked, 1.6s Time] [2023-02-14 02:05:16,891 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2023-02-14 02:05:16,894 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 311. [2023-02-14 02:05:16,894 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 311 states, 191 states have (on average 1.5916230366492146) internal successors, (304), 287 states have internal predecessors, (304), 32 states have call successors, (32), 12 states have call predecessors, (32), 9 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:05:16,895 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 311 states to 311 states and 359 transitions. [2023-02-14 02:05:16,895 INFO L78 Accepts]: Start accepts. Automaton has 311 states and 359 transitions. Word has length 51 [2023-02-14 02:05:16,896 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:05:16,896 INFO L495 AbstractCegarLoop]: Abstraction has 311 states and 359 transitions. [2023-02-14 02:05:16,896 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 38 states, 32 states have (on average 2.71875) internal successors, (87), 32 states have internal predecessors, (87), 6 states have call successors, (11), 5 states have call predecessors, (11), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2023-02-14 02:05:16,896 INFO L276 IsEmpty]: Start isEmpty. Operand 311 states and 359 transitions. [2023-02-14 02:05:16,896 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2023-02-14 02:05:16,897 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:05:16,897 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:05:16,917 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2023-02-14 02:05:17,117 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2023-02-14 02:05:17,117 INFO L420 AbstractCegarLoop]: === Iteration 18 === Targeting ##fun~$Pointer$~TO~VOIDErr9REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:05:17,117 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:05:17,118 INFO L85 PathProgramCache]: Analyzing trace with hash 1451018695, now seen corresponding path program 1 times [2023-02-14 02:05:17,118 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:05:17,118 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [190652942] [2023-02-14 02:05:17,118 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:05:17,118 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:05:17,155 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:05:17,738 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-02-14 02:05:17,750 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:05:17,929 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 4 proven. 11 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:05:17,929 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:05:17,929 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [190652942] [2023-02-14 02:05:17,929 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [190652942] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:05:17,929 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1359483085] [2023-02-14 02:05:17,930 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:05:17,930 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:05:17,930 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:05:17,931 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-02-14 02:05:17,933 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-02-14 02:05:18,076 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:05:18,079 INFO L263 TraceCheckSpWp]: Trace formula consists of 495 conjuncts, 82 conjunts are in the unsatisfiable core [2023-02-14 02:05:18,085 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2023-02-14 02:05:18,111 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 6 treesize of output 5 [2023-02-14 02:05:18,311 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2023-02-14 02:05:18,315 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2023-02-14 02:05:18,487 INFO L321 Elim1Store]: treesize reduction 20, result has 39.4 percent of original size [2023-02-14 02:05:18,488 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 20 treesize of output 22 [2023-02-14 02:05:18,498 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 1 select indices, 1 select index equivalence classes, 2 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2023-02-14 02:05:18,544 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2023-02-14 02:05:18,553 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 24 treesize of output 24 [2023-02-14 02:05:18,571 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 24 treesize of output 24 [2023-02-14 02:05:18,576 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 2 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2023-02-14 02:05:18,623 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2023-02-14 02:05:18,626 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 9 [2023-02-14 02:05:18,685 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 5 proven. 10 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:05:18,685 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2023-02-14 02:05:20,233 INFO L321 Elim1Store]: treesize reduction 7, result has 12.5 percent of original size [2023-02-14 02:05:20,234 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 81 treesize of output 1 [2023-02-14 02:05:20,281 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:20,282 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 40 treesize of output 41 [2023-02-14 02:05:20,286 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:20,287 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 32 treesize of output 33 [2023-02-14 02:05:20,302 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:20,303 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 58 treesize of output 61 [2023-02-14 02:05:20,314 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:20,314 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 94 treesize of output 93 [2023-02-14 02:05:20,320 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 40 treesize of output 36 [2023-02-14 02:05:20,324 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 74 treesize of output 70 [2023-02-14 02:05:20,412 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:20,412 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 20 treesize of output 21 [2023-02-14 02:05:20,414 INFO L173 IndexEqualityManager]: detected equality via solver [2023-02-14 02:05:20,420 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:20,420 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 21 [2023-02-14 02:05:38,560 WARN L233 SmtUtils]: Spent 18.07s on a formula simplification. DAG size of input: 45 DAG size of output: 35 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2023-02-14 02:05:46,814 WARN L233 SmtUtils]: Spent 8.14s on a formula simplification. DAG size of input: 40 DAG size of output: 37 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2023-02-14 02:05:57,114 WARN L233 SmtUtils]: Spent 6.08s on a formula simplification that was a NOOP. DAG size: 37 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2023-02-14 02:05:57,131 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 70 treesize of output 66 [2023-02-14 02:05:57,276 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2023-02-14 02:05:57,277 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 3 case distinctions, treesize of input 43 treesize of output 61 [2023-02-14 02:05:57,317 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 4 proven. 10 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-02-14 02:05:57,318 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1359483085] provided 0 perfect and 2 imperfect interpolant sequences [2023-02-14 02:05:57,318 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-02-14 02:05:57,318 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 16, 14] total 40 [2023-02-14 02:05:57,318 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2081022593] [2023-02-14 02:05:57,318 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-02-14 02:05:57,318 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 41 states [2023-02-14 02:05:57,318 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:05:57,319 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 41 interpolants. [2023-02-14 02:05:57,319 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=111, Invalid=1508, Unknown=21, NotChecked=0, Total=1640 [2023-02-14 02:05:57,320 INFO L87 Difference]: Start difference. First operand 311 states and 359 transitions. Second operand has 41 states, 36 states have (on average 2.611111111111111) internal successors, (94), 36 states have internal predecessors, (94), 5 states have call successors, (10), 5 states have call predecessors, (10), 3 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2023-02-14 02:06:01,064 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:06:01,064 INFO L93 Difference]: Finished difference Result 311 states and 359 transitions. [2023-02-14 02:06:01,064 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2023-02-14 02:06:01,064 INFO L78 Accepts]: Start accepts. Automaton has has 41 states, 36 states have (on average 2.611111111111111) internal successors, (94), 36 states have internal predecessors, (94), 5 states have call successors, (10), 5 states have call predecessors, (10), 3 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) Word has length 51 [2023-02-14 02:06:01,065 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:06:01,065 INFO L225 Difference]: With dead ends: 311 [2023-02-14 02:06:01,065 INFO L226 Difference]: Without dead ends: 311 [2023-02-14 02:06:01,066 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 133 GetRequests, 78 SyntacticMatches, 0 SemanticMatches, 55 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 348 ImplicationChecksByTransitivity, 39.6s TimeCoverageRelationStatistics Valid=464, Invalid=2706, Unknown=22, NotChecked=0, Total=3192 [2023-02-14 02:06:01,067 INFO L413 NwaCegarLoop]: 205 mSDtfsCounter, 268 mSDsluCounter, 3816 mSDsCounter, 0 mSdLazyCounter, 4967 mSolverCounterSat, 69 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 271 SdHoareTripleChecker+Valid, 4021 SdHoareTripleChecker+Invalid, 5036 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 69 IncrementalHoareTripleChecker+Valid, 4967 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.4s IncrementalHoareTripleChecker+Time [2023-02-14 02:06:01,067 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [271 Valid, 4021 Invalid, 5036 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [69 Valid, 4967 Invalid, 0 Unknown, 0 Unchecked, 2.4s Time] [2023-02-14 02:06:01,067 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 311 states. [2023-02-14 02:06:01,070 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 311 to 310. [2023-02-14 02:06:01,071 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 310 states, 191 states have (on average 1.5863874345549738) internal successors, (303), 286 states have internal predecessors, (303), 32 states have call successors, (32), 12 states have call predecessors, (32), 9 states have return successors, (23), 14 states have call predecessors, (23), 18 states have call successors, (23) [2023-02-14 02:06:01,071 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 310 states to 310 states and 358 transitions. [2023-02-14 02:06:01,072 INFO L78 Accepts]: Start accepts. Automaton has 310 states and 358 transitions. Word has length 51 [2023-02-14 02:06:01,072 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:06:01,072 INFO L495 AbstractCegarLoop]: Abstraction has 310 states and 358 transitions. [2023-02-14 02:06:01,072 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 41 states, 36 states have (on average 2.611111111111111) internal successors, (94), 36 states have internal predecessors, (94), 5 states have call successors, (10), 5 states have call predecessors, (10), 3 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2023-02-14 02:06:01,072 INFO L276 IsEmpty]: Start isEmpty. Operand 310 states and 358 transitions. [2023-02-14 02:06:01,073 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2023-02-14 02:06:01,073 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:06:01,073 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:06:01,079 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2023-02-14 02:06:01,278 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable17 [2023-02-14 02:06:01,279 INFO L420 AbstractCegarLoop]: === Iteration 19 === Targeting dll_insert_masterErr10REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:06:01,279 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:06:01,279 INFO L85 PathProgramCache]: Analyzing trace with hash -470108245, now seen corresponding path program 1 times [2023-02-14 02:06:01,279 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:06:01,279 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1260769718] [2023-02-14 02:06:01,279 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:01,279 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:06:01,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:01,373 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-02-14 02:06:01,378 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:01,387 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 18 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-02-14 02:06:01,387 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:06:01,387 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1260769718] [2023-02-14 02:06:01,387 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1260769718] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:06:01,387 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1263522347] [2023-02-14 02:06:01,387 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:01,388 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:01,388 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:06:01,389 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-02-14 02:06:01,392 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-02-14 02:06:01,549 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:01,551 INFO L263 TraceCheckSpWp]: Trace formula consists of 524 conjuncts, 4 conjunts are in the unsatisfiable core [2023-02-14 02:06:01,557 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2023-02-14 02:06:01,569 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 18 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:06:01,569 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-02-14 02:06:01,569 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1263522347] provided 1 perfect and 0 imperfect interpolant sequences [2023-02-14 02:06:01,569 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-02-14 02:06:01,570 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [6] total 6 [2023-02-14 02:06:01,570 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1359680205] [2023-02-14 02:06:01,570 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-02-14 02:06:01,571 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-02-14 02:06:01,571 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:06:01,571 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-02-14 02:06:01,571 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-02-14 02:06:01,571 INFO L87 Difference]: Start difference. First operand 310 states and 358 transitions. Second operand has 5 states, 4 states have (on average 11.0) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-02-14 02:06:01,599 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:06:01,600 INFO L93 Difference]: Finished difference Result 296 states and 332 transitions. [2023-02-14 02:06:01,600 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-02-14 02:06:01,600 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 11.0) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 54 [2023-02-14 02:06:01,600 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:06:01,601 INFO L225 Difference]: With dead ends: 296 [2023-02-14 02:06:01,601 INFO L226 Difference]: Without dead ends: 296 [2023-02-14 02:06:01,602 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 57 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-02-14 02:06:01,602 INFO L413 NwaCegarLoop]: 277 mSDtfsCounter, 28 mSDsluCounter, 801 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 1078 SdHoareTripleChecker+Invalid, 36 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-02-14 02:06:01,603 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [28 Valid, 1078 Invalid, 36 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-02-14 02:06:01,603 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 296 states. [2023-02-14 02:06:01,606 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 296 to 296. [2023-02-14 02:06:01,606 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 296 states, 180 states have (on average 1.5944444444444446) internal successors, (287), 275 states have internal predecessors, (287), 29 states have call successors, (29), 11 states have call predecessors, (29), 9 states have return successors, (16), 12 states have call predecessors, (16), 15 states have call successors, (16) [2023-02-14 02:06:01,607 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 296 states to 296 states and 332 transitions. [2023-02-14 02:06:01,607 INFO L78 Accepts]: Start accepts. Automaton has 296 states and 332 transitions. Word has length 54 [2023-02-14 02:06:01,607 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:06:01,607 INFO L495 AbstractCegarLoop]: Abstraction has 296 states and 332 transitions. [2023-02-14 02:06:01,608 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 11.0) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-02-14 02:06:01,608 INFO L276 IsEmpty]: Start isEmpty. Operand 296 states and 332 transitions. [2023-02-14 02:06:01,608 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2023-02-14 02:06:01,608 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:06:01,608 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:06:01,618 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2023-02-14 02:06:01,813 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:01,816 INFO L420 AbstractCegarLoop]: === Iteration 20 === Targeting dll_insert_masterErr12REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:06:01,816 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:06:01,816 INFO L85 PathProgramCache]: Analyzing trace with hash -996489836, now seen corresponding path program 1 times [2023-02-14 02:06:01,817 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:06:01,817 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1109191328] [2023-02-14 02:06:01,817 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:01,817 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:06:01,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:02,113 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-02-14 02:06:02,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:02,291 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2023-02-14 02:06:02,302 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:02,492 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-02-14 02:06:02,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:02,606 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-02-14 02:06:02,612 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:02,863 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 6 proven. 13 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:06:02,863 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:06:02,863 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1109191328] [2023-02-14 02:06:02,863 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1109191328] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:06:02,863 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [517349614] [2023-02-14 02:06:02,864 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:02,864 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:02,864 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:06:02,865 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-02-14 02:06:02,904 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-02-14 02:06:03,044 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:03,046 INFO L263 TraceCheckSpWp]: Trace formula consists of 550 conjuncts, 58 conjunts are in the unsatisfiable core [2023-02-14 02:06:03,052 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2023-02-14 02:06:03,106 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2023-02-14 02:06:03,146 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 4 [2023-02-14 02:06:03,531 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:03,532 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 6 proven. 13 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:06:03,532 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2023-02-14 02:06:03,947 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [517349614] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:06:03,947 INFO L184 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2023-02-14 02:06:03,947 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 19] total 32 [2023-02-14 02:06:03,947 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1785792631] [2023-02-14 02:06:03,947 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2023-02-14 02:06:03,947 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2023-02-14 02:06:03,947 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:06:03,948 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2023-02-14 02:06:03,948 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=83, Invalid=945, Unknown=28, NotChecked=0, Total=1056 [2023-02-14 02:06:03,948 INFO L87 Difference]: Start difference. First operand 296 states and 332 transitions. Second operand has 32 states, 29 states have (on average 2.6206896551724137) internal successors, (76), 28 states have internal predecessors, (76), 5 states have call successors, (11), 3 states have call predecessors, (11), 5 states have return successors, (7), 3 states have call predecessors, (7), 5 states have call successors, (7) [2023-02-14 02:06:13,062 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.03s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2023-02-14 02:06:15,215 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.04s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [0] [2023-02-14 02:06:18,606 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:06:18,606 INFO L93 Difference]: Finished difference Result 300 states and 335 transitions. [2023-02-14 02:06:18,606 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2023-02-14 02:06:18,606 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 29 states have (on average 2.6206896551724137) internal successors, (76), 28 states have internal predecessors, (76), 5 states have call successors, (11), 3 states have call predecessors, (11), 5 states have return successors, (7), 3 states have call predecessors, (7), 5 states have call successors, (7) Word has length 64 [2023-02-14 02:06:18,606 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:06:18,607 INFO L225 Difference]: With dead ends: 300 [2023-02-14 02:06:18,607 INFO L226 Difference]: Without dead ends: 296 [2023-02-14 02:06:18,608 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 118 GetRequests, 70 SyntacticMatches, 1 SemanticMatches, 47 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 390 ImplicationChecksByTransitivity, 9.4s TimeCoverageRelationStatistics Valid=258, Invalid=2050, Unknown=44, NotChecked=0, Total=2352 [2023-02-14 02:06:18,608 INFO L413 NwaCegarLoop]: 196 mSDtfsCounter, 229 mSDsluCounter, 4029 mSDsCounter, 0 mSdLazyCounter, 3120 mSolverCounterSat, 49 mSolverCounterUnsat, 78 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 231 SdHoareTripleChecker+Valid, 4225 SdHoareTripleChecker+Invalid, 3247 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 49 IncrementalHoareTripleChecker+Valid, 3120 IncrementalHoareTripleChecker+Invalid, 78 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.7s IncrementalHoareTripleChecker+Time [2023-02-14 02:06:18,608 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [231 Valid, 4225 Invalid, 3247 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [49 Valid, 3120 Invalid, 78 Unknown, 0 Unchecked, 5.7s Time] [2023-02-14 02:06:18,609 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 296 states. [2023-02-14 02:06:18,611 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 296 to 296. [2023-02-14 02:06:18,612 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 296 states, 180 states have (on average 1.5888888888888888) internal successors, (286), 275 states have internal predecessors, (286), 29 states have call successors, (29), 11 states have call predecessors, (29), 9 states have return successors, (16), 12 states have call predecessors, (16), 15 states have call successors, (16) [2023-02-14 02:06:18,612 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 296 states to 296 states and 331 transitions. [2023-02-14 02:06:18,612 INFO L78 Accepts]: Start accepts. Automaton has 296 states and 331 transitions. Word has length 64 [2023-02-14 02:06:18,613 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:06:18,613 INFO L495 AbstractCegarLoop]: Abstraction has 296 states and 331 transitions. [2023-02-14 02:06:18,613 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 29 states have (on average 2.6206896551724137) internal successors, (76), 28 states have internal predecessors, (76), 5 states have call successors, (11), 3 states have call predecessors, (11), 5 states have return successors, (7), 3 states have call predecessors, (7), 5 states have call successors, (7) [2023-02-14 02:06:18,613 INFO L276 IsEmpty]: Start isEmpty. Operand 296 states and 331 transitions. [2023-02-14 02:06:18,613 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2023-02-14 02:06:18,613 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:06:18,614 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:06:18,620 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2023-02-14 02:06:18,819 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,5 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:18,819 INFO L420 AbstractCegarLoop]: === Iteration 21 === Targeting dll_insert_masterErr12REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:06:18,820 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:06:18,820 INFO L85 PathProgramCache]: Analyzing trace with hash 2033150353, now seen corresponding path program 1 times [2023-02-14 02:06:18,820 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:06:18,820 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1375046523] [2023-02-14 02:06:18,820 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:18,820 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:06:18,847 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:19,347 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-02-14 02:06:19,361 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:19,789 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2023-02-14 02:06:19,815 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:21,629 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-02-14 02:06:21,635 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:22,114 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-02-14 02:06:22,146 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:23,211 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 7 proven. 13 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-02-14 02:06:23,211 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:06:23,212 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1375046523] [2023-02-14 02:06:23,212 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1375046523] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:06:23,212 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1998544278] [2023-02-14 02:06:23,212 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:23,212 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:23,212 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:06:23,213 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-02-14 02:06:23,215 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-02-14 02:06:23,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:23,402 INFO L263 TraceCheckSpWp]: Trace formula consists of 563 conjuncts, 35 conjunts are in the unsatisfiable core [2023-02-14 02:06:23,406 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2023-02-14 02:06:23,730 WARN L859 $PredicateComparison]: unable to prove that (exists ((|##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base| Int)) (= |c_#valid| (store |c_old(#valid)| |##fun~$Pointer$~TO~VOID_alloc_or_die_slave_~ptr~0#1.base| 1))) is different from true [2023-02-14 02:06:23,954 INFO L321 Elim1Store]: treesize reduction 101, result has 24.1 percent of original size [2023-02-14 02:06:23,954 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 3 select indices, 3 select index equivalence classes, 0 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 7 case distinctions, treesize of input 35 treesize of output 50 [2023-02-14 02:06:23,963 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 7 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 13 not checked. [2023-02-14 02:06:23,963 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2023-02-14 02:06:24,108 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1998544278] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:06:24,108 INFO L184 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2023-02-14 02:06:24,108 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [27, 12] total 37 [2023-02-14 02:06:24,109 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [543815669] [2023-02-14 02:06:24,109 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2023-02-14 02:06:24,109 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 38 states [2023-02-14 02:06:24,109 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:06:24,109 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 38 interpolants. [2023-02-14 02:06:24,110 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=165, Invalid=1244, Unknown=1, NotChecked=72, Total=1482 [2023-02-14 02:06:24,110 INFO L87 Difference]: Start difference. First operand 296 states and 331 transitions. Second operand has 38 states, 33 states have (on average 3.0) internal successors, (99), 35 states have internal predecessors, (99), 8 states have call successors, (11), 3 states have call predecessors, (11), 7 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) [2023-02-14 02:06:27,970 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:06:27,970 INFO L93 Difference]: Finished difference Result 327 states and 375 transitions. [2023-02-14 02:06:27,970 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2023-02-14 02:06:27,980 INFO L78 Accepts]: Start accepts. Automaton has has 38 states, 33 states have (on average 3.0) internal successors, (99), 35 states have internal predecessors, (99), 8 states have call successors, (11), 3 states have call predecessors, (11), 7 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) Word has length 65 [2023-02-14 02:06:27,980 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:06:27,982 INFO L225 Difference]: With dead ends: 327 [2023-02-14 02:06:27,982 INFO L226 Difference]: Without dead ends: 327 [2023-02-14 02:06:27,983 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 67 SyntacticMatches, 1 SemanticMatches, 55 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 572 ImplicationChecksByTransitivity, 2.5s TimeCoverageRelationStatistics Valid=374, Invalid=2709, Unknown=1, NotChecked=108, Total=3192 [2023-02-14 02:06:27,983 INFO L413 NwaCegarLoop]: 187 mSDtfsCounter, 278 mSDsluCounter, 2040 mSDsCounter, 0 mSdLazyCounter, 3298 mSolverCounterSat, 59 mSolverCounterUnsat, 4 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 278 SdHoareTripleChecker+Valid, 2227 SdHoareTripleChecker+Invalid, 3636 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 59 IncrementalHoareTripleChecker+Valid, 3298 IncrementalHoareTripleChecker+Invalid, 4 IncrementalHoareTripleChecker+Unknown, 275 IncrementalHoareTripleChecker+Unchecked, 2.5s IncrementalHoareTripleChecker+Time [2023-02-14 02:06:27,983 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [278 Valid, 2227 Invalid, 3636 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [59 Valid, 3298 Invalid, 4 Unknown, 275 Unchecked, 2.5s Time] [2023-02-14 02:06:27,984 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 327 states. [2023-02-14 02:06:27,987 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 327 to 307. [2023-02-14 02:06:27,987 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 307 states, 189 states have (on average 1.5767195767195767) internal successors, (298), 282 states have internal predecessors, (298), 29 states have call successors, (29), 11 states have call predecessors, (29), 11 states have return successors, (19), 16 states have call predecessors, (19), 15 states have call successors, (19) [2023-02-14 02:06:27,988 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 307 states to 307 states and 346 transitions. [2023-02-14 02:06:27,988 INFO L78 Accepts]: Start accepts. Automaton has 307 states and 346 transitions. Word has length 65 [2023-02-14 02:06:27,988 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:06:27,988 INFO L495 AbstractCegarLoop]: Abstraction has 307 states and 346 transitions. [2023-02-14 02:06:27,989 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 38 states, 33 states have (on average 3.0) internal successors, (99), 35 states have internal predecessors, (99), 8 states have call successors, (11), 3 states have call predecessors, (11), 7 states have return successors, (8), 7 states have call predecessors, (8), 7 states have call successors, (8) [2023-02-14 02:06:27,989 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 346 transitions. [2023-02-14 02:06:27,989 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2023-02-14 02:06:27,989 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:06:27,989 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:06:27,995 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2023-02-14 02:06:28,194 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable20,6 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:28,195 INFO L420 AbstractCegarLoop]: === Iteration 22 === Targeting dll_insert_masterErr13REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:06:28,195 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:06:28,195 INFO L85 PathProgramCache]: Analyzing trace with hash 2033150354, now seen corresponding path program 1 times [2023-02-14 02:06:28,196 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:06:28,196 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1775845131] [2023-02-14 02:06:28,196 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:28,196 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:06:28,228 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:28,544 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-02-14 02:06:28,575 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:28,851 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2023-02-14 02:06:28,881 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:45,527 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-02-14 02:06:45,534 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:46,617 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-02-14 02:06:46,632 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:47,577 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 6 proven. 13 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-02-14 02:06:47,577 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-02-14 02:06:47,578 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1775845131] [2023-02-14 02:06:47,578 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1775845131] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:06:47,578 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1076926811] [2023-02-14 02:06:47,578 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:06:47,578 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:06:47,578 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-02-14 02:06:47,579 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-02-14 02:06:47,581 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2023-02-14 02:06:47,776 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:06:47,779 INFO L263 TraceCheckSpWp]: Trace formula consists of 563 conjuncts, 98 conjunts are in the unsatisfiable core [2023-02-14 02:06:47,782 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2023-02-14 02:06:47,976 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 5 treesize of output 3 [2023-02-14 02:06:48,318 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2023-02-14 02:06:48,491 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2023-02-14 02:06:48,491 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 15 [2023-02-14 02:06:48,494 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 4 [2023-02-14 02:06:53,214 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 44 treesize of output 32 [2023-02-14 02:06:53,481 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,482 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,483 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,483 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,484 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,498 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2023-02-14 02:06:53,498 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 1 select indices, 1 select index equivalence classes, 5 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 20 treesize of output 30 [2023-02-14 02:06:53,507 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,513 INFO L190 IndexEqualityManager]: detected not equals via solver [2023-02-14 02:06:53,538 INFO L321 Elim1Store]: treesize reduction 25, result has 39.0 percent of original size [2023-02-14 02:06:53,538 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 5 case distinctions, treesize of input 38 treesize of output 45 [2023-02-14 02:06:53,587 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 8 proven. 8 refuted. 5 times theorem prover too weak. 0 trivial. 0 not checked. [2023-02-14 02:06:53,587 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2023-02-14 02:07:00,341 WARN L233 SmtUtils]: Spent 6.07s on a formula simplification that was a NOOP. DAG size: 48 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2023-02-14 02:07:00,342 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1076926811] provided 0 perfect and 1 imperfect interpolant sequences [2023-02-14 02:07:00,342 INFO L184 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2023-02-14 02:07:00,342 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [23, 24] total 46 [2023-02-14 02:07:00,342 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1554955285] [2023-02-14 02:07:00,342 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2023-02-14 02:07:00,342 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 47 states [2023-02-14 02:07:00,342 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-02-14 02:07:00,343 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 47 interpolants. [2023-02-14 02:07:00,343 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=191, Invalid=2152, Unknown=9, NotChecked=0, Total=2352 [2023-02-14 02:07:00,344 INFO L87 Difference]: Start difference. First operand 307 states and 346 transitions. Second operand has 47 states, 42 states have (on average 2.4285714285714284) internal successors, (102), 40 states have internal predecessors, (102), 9 states have call successors, (11), 4 states have call predecessors, (11), 6 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2023-02-14 02:07:07,185 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-02-14 02:07:07,185 INFO L93 Difference]: Finished difference Result 318 states and 359 transitions. [2023-02-14 02:07:07,187 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2023-02-14 02:07:07,187 INFO L78 Accepts]: Start accepts. Automaton has has 47 states, 42 states have (on average 2.4285714285714284) internal successors, (102), 40 states have internal predecessors, (102), 9 states have call successors, (11), 4 states have call predecessors, (11), 6 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) Word has length 65 [2023-02-14 02:07:07,187 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-02-14 02:07:07,188 INFO L225 Difference]: With dead ends: 318 [2023-02-14 02:07:07,188 INFO L226 Difference]: Without dead ends: 318 [2023-02-14 02:07:07,189 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 122 GetRequests, 57 SyntacticMatches, 1 SemanticMatches, 64 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1166 ImplicationChecksByTransitivity, 16.1s TimeCoverageRelationStatistics Valid=431, Invalid=3830, Unknown=29, NotChecked=0, Total=4290 [2023-02-14 02:07:07,190 INFO L413 NwaCegarLoop]: 184 mSDtfsCounter, 351 mSDsluCounter, 2272 mSDsCounter, 0 mSdLazyCounter, 3600 mSolverCounterSat, 73 mSolverCounterUnsat, 41 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 351 SdHoareTripleChecker+Valid, 2456 SdHoareTripleChecker+Invalid, 3714 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 73 IncrementalHoareTripleChecker+Valid, 3600 IncrementalHoareTripleChecker+Invalid, 41 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.8s IncrementalHoareTripleChecker+Time [2023-02-14 02:07:07,190 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [351 Valid, 2456 Invalid, 3714 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [73 Valid, 3600 Invalid, 41 Unknown, 0 Unchecked, 2.8s Time] [2023-02-14 02:07:07,190 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 318 states. [2023-02-14 02:07:07,198 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 318 to 307. [2023-02-14 02:07:07,199 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 307 states, 189 states have (on average 1.566137566137566) internal successors, (296), 282 states have internal predecessors, (296), 29 states have call successors, (29), 11 states have call predecessors, (29), 11 states have return successors, (19), 16 states have call predecessors, (19), 15 states have call successors, (19) [2023-02-14 02:07:07,199 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 307 states to 307 states and 344 transitions. [2023-02-14 02:07:07,200 INFO L78 Accepts]: Start accepts. Automaton has 307 states and 344 transitions. Word has length 65 [2023-02-14 02:07:07,200 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-02-14 02:07:07,200 INFO L495 AbstractCegarLoop]: Abstraction has 307 states and 344 transitions. [2023-02-14 02:07:07,200 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 47 states, 42 states have (on average 2.4285714285714284) internal successors, (102), 40 states have internal predecessors, (102), 9 states have call successors, (11), 4 states have call predecessors, (11), 6 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2023-02-14 02:07:07,200 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 344 transitions. [2023-02-14 02:07:07,201 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2023-02-14 02:07:07,201 INFO L187 NwaCegarLoop]: Found error trace [2023-02-14 02:07:07,201 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-02-14 02:07:07,216 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2023-02-14 02:07:07,406 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable21,7 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-02-14 02:07:07,406 INFO L420 AbstractCegarLoop]: === Iteration 23 === Targeting dll_insert_masterErr14REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [dll_insert_masterErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, dll_insert_masterErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 95 more)] === [2023-02-14 02:07:07,407 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2023-02-14 02:07:07,407 INFO L85 PathProgramCache]: Analyzing trace with hash -352630062, now seen corresponding path program 1 times [2023-02-14 02:07:07,407 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-02-14 02:07:07,407 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1666343399] [2023-02-14 02:07:07,407 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-02-14 02:07:07,407 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-02-14 02:07:07,436 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:07:07,673 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-02-14 02:07:07,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-02-14 02:07:07,938 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2023-02-14 02:07:07,963 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat