./Ultimate.py --spec ../../sv-benchmarks/c/properties/valid-memsafety.prp --file ../../sv-benchmarks/c/termination-memory-alloca/cstrcpy-alloca-2.i --full-output --architecture 64bit -------------------------------------------------------------------------------- Checking for memory safety (deref-memtrack) Using default analysis Version e04fb08f Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/config/TaipanMemDerefMemtrack.xml -i ../../sv-benchmarks/c/termination-memory-alloca/cstrcpy-alloca-2.i -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/config/svcomp-DerefFreeMemtrack-64bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0 --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 64bit --witnessprinter.graph.data.programhash 624eab544b12ce67976c98f49727abb376f7f963832aa58f07a7fb9fd050787e --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-e04fb08 [2022-11-16 19:32:05,776 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-16 19:32:05,778 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-16 19:32:05,802 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-16 19:32:05,805 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-16 19:32:05,809 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-16 19:32:05,813 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-16 19:32:05,820 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-16 19:32:05,822 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-16 19:32:05,828 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-16 19:32:05,829 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-16 19:32:05,831 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-16 19:32:05,832 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-16 19:32:05,837 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-16 19:32:05,838 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-16 19:32:05,840 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-16 19:32:05,842 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-16 19:32:05,843 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-16 19:32:05,845 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-16 19:32:05,847 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-16 19:32:05,848 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-16 19:32:05,849 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-16 19:32:05,851 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-16 19:32:05,851 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-16 19:32:05,855 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-16 19:32:05,855 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-16 19:32:05,855 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-16 19:32:05,856 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-16 19:32:05,857 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-16 19:32:05,858 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-16 19:32:05,858 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-16 19:32:05,859 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-16 19:32:05,859 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-16 19:32:05,860 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-16 19:32:05,861 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-16 19:32:05,861 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-16 19:32:05,862 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-16 19:32:05,862 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-16 19:32:05,863 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-16 19:32:05,863 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-16 19:32:05,864 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-16 19:32:05,865 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/config/svcomp-DerefFreeMemtrack-64bit-Taipan_Default.epf [2022-11-16 19:32:05,898 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-16 19:32:05,899 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-16 19:32:05,899 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-16 19:32:05,899 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-16 19:32:05,900 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-16 19:32:05,900 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-16 19:32:05,900 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-16 19:32:05,901 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-16 19:32:05,901 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-16 19:32:05,901 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-16 19:32:05,901 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-16 19:32:05,902 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-16 19:32:05,902 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-16 19:32:05,902 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-16 19:32:05,902 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-16 19:32:05,903 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-16 19:32:05,903 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-16 19:32:05,903 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-16 19:32:05,904 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-11-16 19:32:05,904 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-11-16 19:32:05,904 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-16 19:32:05,904 INFO L138 SettingsManager]: * Check unreachability of error function in SV-COMP mode=false [2022-11-16 19:32:05,905 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-16 19:32:05,905 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-16 19:32:05,905 INFO L138 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2022-11-16 19:32:05,905 INFO L138 SettingsManager]: * Bitprecise bitfields=true [2022-11-16 19:32:05,905 INFO L138 SettingsManager]: * SV-COMP memtrack compatibility mode=true [2022-11-16 19:32:05,906 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-16 19:32:05,906 INFO L138 SettingsManager]: * Adapt memory model on pointer casts if necessary=true [2022-11-16 19:32:05,906 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-16 19:32:05,906 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-16 19:32:05,907 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-16 19:32:05,907 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-16 19:32:05,907 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-16 19:32:05,907 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-16 19:32:05,907 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-16 19:32:05,908 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-16 19:32:05,908 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-16 19:32:05,908 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-16 19:32:05,908 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 64bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 624eab544b12ce67976c98f49727abb376f7f963832aa58f07a7fb9fd050787e [2022-11-16 19:32:06,190 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-16 19:32:06,212 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-16 19:32:06,215 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-16 19:32:06,216 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-16 19:32:06,217 INFO L275 PluginConnector]: CDTParser initialized [2022-11-16 19:32:06,218 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/../../sv-benchmarks/c/termination-memory-alloca/cstrcpy-alloca-2.i [2022-11-16 19:32:06,283 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/data/622baf289/cd4a77bc5517434c9139579d34f9028f/FLAG87906f5c0 [2022-11-16 19:32:06,908 INFO L306 CDTParser]: Found 1 translation units. [2022-11-16 19:32:06,909 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/sv-benchmarks/c/termination-memory-alloca/cstrcpy-alloca-2.i [2022-11-16 19:32:06,926 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/data/622baf289/cd4a77bc5517434c9139579d34f9028f/FLAG87906f5c0 [2022-11-16 19:32:07,179 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/data/622baf289/cd4a77bc5517434c9139579d34f9028f [2022-11-16 19:32:07,181 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-16 19:32:07,183 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-16 19:32:07,188 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-16 19:32:07,189 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-16 19:32:07,193 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-16 19:32:07,194 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,196 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@71e3711c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07, skipping insertion in model container [2022-11-16 19:32:07,196 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,204 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-16 19:32:07,277 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-16 19:32:07,608 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-16 19:32:07,617 INFO L203 MainTranslator]: Completed pre-run [2022-11-16 19:32:07,682 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-16 19:32:07,721 INFO L208 MainTranslator]: Completed translation [2022-11-16 19:32:07,721 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07 WrapperNode [2022-11-16 19:32:07,722 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-16 19:32:07,723 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-16 19:32:07,723 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-16 19:32:07,723 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-16 19:32:07,731 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,755 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,776 INFO L138 Inliner]: procedures = 111, calls = 12, calls flagged for inlining = 3, calls inlined = 3, statements flattened = 57 [2022-11-16 19:32:07,777 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-16 19:32:07,778 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-16 19:32:07,778 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-16 19:32:07,778 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-16 19:32:07,787 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,788 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,792 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,792 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,797 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,806 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,807 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,809 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,811 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-16 19:32:07,812 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-16 19:32:07,812 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-16 19:32:07,812 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-16 19:32:07,813 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (1/1) ... [2022-11-16 19:32:07,820 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-16 19:32:07,832 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:32:07,845 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-16 19:32:07,861 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-16 19:32:07,903 INFO L130 BoogieDeclarations]: Found specification of procedure read~int [2022-11-16 19:32:07,903 INFO L130 BoogieDeclarations]: Found specification of procedure write~int [2022-11-16 19:32:07,903 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2022-11-16 19:32:07,904 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2022-11-16 19:32:07,904 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-16 19:32:07,904 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-16 19:32:08,053 INFO L235 CfgBuilder]: Building ICFG [2022-11-16 19:32:08,055 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-16 19:32:08,253 INFO L276 CfgBuilder]: Performing block encoding [2022-11-16 19:32:08,289 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-16 19:32:08,289 INFO L300 CfgBuilder]: Removed 1 assume(true) statements. [2022-11-16 19:32:08,291 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.11 07:32:08 BoogieIcfgContainer [2022-11-16 19:32:08,292 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-16 19:32:08,293 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-16 19:32:08,294 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-16 19:32:08,310 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-16 19:32:08,311 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 16.11 07:32:07" (1/3) ... [2022-11-16 19:32:08,311 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@529354bc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.11 07:32:08, skipping insertion in model container [2022-11-16 19:32:08,311 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.11 07:32:07" (2/3) ... [2022-11-16 19:32:08,312 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@529354bc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.11 07:32:08, skipping insertion in model container [2022-11-16 19:32:08,312 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.11 07:32:08" (3/3) ... [2022-11-16 19:32:08,313 INFO L112 eAbstractionObserver]: Analyzing ICFG cstrcpy-alloca-2.i [2022-11-16 19:32:08,347 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:false NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-16 19:32:08,347 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 7 error locations. [2022-11-16 19:32:08,420 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-16 19:32:08,430 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=false, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@314a7b0, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-16 19:32:08,430 INFO L358 AbstractCegarLoop]: Starting to check reachability of 7 error locations. [2022-11-16 19:32:08,435 INFO L276 IsEmpty]: Start isEmpty. Operand has 17 states, 9 states have (on average 2.111111111111111) internal successors, (19), 16 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:08,446 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 4 [2022-11-16 19:32:08,446 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:08,447 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1] [2022-11-16 19:32:08,447 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr6ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:08,454 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:08,454 INFO L85 PathProgramCache]: Analyzing trace with hash 85142, now seen corresponding path program 1 times [2022-11-16 19:32:08,465 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:08,466 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1676019335] [2022-11-16 19:32:08,466 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:08,467 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:08,597 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:08,686 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:08,687 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:08,687 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1676019335] [2022-11-16 19:32:08,688 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1676019335] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:08,688 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:08,688 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [1] imperfect sequences [] total 1 [2022-11-16 19:32:08,690 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1658288090] [2022-11-16 19:32:08,690 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:08,694 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-16 19:32:08,695 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:08,728 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-16 19:32:08,730 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-16 19:32:08,732 INFO L87 Difference]: Start difference. First operand has 17 states, 9 states have (on average 2.111111111111111) internal successors, (19), 16 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:08,805 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:08,805 INFO L93 Difference]: Finished difference Result 18 states and 19 transitions. [2022-11-16 19:32:08,807 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-16 19:32:08,809 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 3 [2022-11-16 19:32:08,809 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:08,817 INFO L225 Difference]: With dead ends: 18 [2022-11-16 19:32:08,821 INFO L226 Difference]: Without dead ends: 16 [2022-11-16 19:32:08,824 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 1 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-16 19:32:08,828 INFO L413 NwaCegarLoop]: 13 mSDtfsCounter, 1 mSDsluCounter, 6 mSDsCounter, 0 mSdLazyCounter, 14 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 19 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 14 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:08,829 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 19 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 14 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-16 19:32:08,845 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 16 states. [2022-11-16 19:32:08,851 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 16 to 16. [2022-11-16 19:32:08,852 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 16 states, 9 states have (on average 1.7777777777777777) internal successors, (16), 15 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:08,853 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 16 states to 16 states and 16 transitions. [2022-11-16 19:32:08,854 INFO L78 Accepts]: Start accepts. Automaton has 16 states and 16 transitions. Word has length 3 [2022-11-16 19:32:08,854 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:08,854 INFO L495 AbstractCegarLoop]: Abstraction has 16 states and 16 transitions. [2022-11-16 19:32:08,854 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:08,855 INFO L276 IsEmpty]: Start isEmpty. Operand 16 states and 16 transitions. [2022-11-16 19:32:08,855 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 4 [2022-11-16 19:32:08,855 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:08,855 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1] [2022-11-16 19:32:08,855 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-16 19:32:08,856 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:08,856 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:08,857 INFO L85 PathProgramCache]: Analyzing trace with hash 85178, now seen corresponding path program 1 times [2022-11-16 19:32:08,857 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:08,857 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1570409440] [2022-11-16 19:32:08,857 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:08,857 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:08,916 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:09,057 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:09,057 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:09,057 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1570409440] [2022-11-16 19:32:09,058 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1570409440] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:09,058 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:09,058 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-16 19:32:09,059 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1812626762] [2022-11-16 19:32:09,059 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:09,060 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-16 19:32:09,060 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:09,061 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-16 19:32:09,061 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-16 19:32:09,062 INFO L87 Difference]: Start difference. First operand 16 states and 16 transitions. Second operand has 3 states, 2 states have (on average 1.5) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,082 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:09,082 INFO L93 Difference]: Finished difference Result 15 states and 15 transitions. [2022-11-16 19:32:09,083 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-16 19:32:09,083 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 3 [2022-11-16 19:32:09,083 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:09,084 INFO L225 Difference]: With dead ends: 15 [2022-11-16 19:32:09,084 INFO L226 Difference]: Without dead ends: 15 [2022-11-16 19:32:09,084 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-16 19:32:09,086 INFO L413 NwaCegarLoop]: 7 mSDtfsCounter, 11 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 11 SdHoareTripleChecker+Valid, 7 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:09,086 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [11 Valid, 7 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:09,087 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 15 states. [2022-11-16 19:32:09,088 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 15 to 15. [2022-11-16 19:32:09,089 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 9 states have (on average 1.6666666666666667) internal successors, (15), 14 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,089 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 15 transitions. [2022-11-16 19:32:09,090 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 15 transitions. Word has length 3 [2022-11-16 19:32:09,090 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:09,090 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 15 transitions. [2022-11-16 19:32:09,091 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,091 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 15 transitions. [2022-11-16 19:32:09,091 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 4 [2022-11-16 19:32:09,092 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:09,092 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1] [2022-11-16 19:32:09,092 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-16 19:32:09,092 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:09,093 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:09,093 INFO L85 PathProgramCache]: Analyzing trace with hash 85179, now seen corresponding path program 1 times [2022-11-16 19:32:09,094 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:09,094 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [438507753] [2022-11-16 19:32:09,094 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:09,095 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:09,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:09,541 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:09,543 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:09,543 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [438507753] [2022-11-16 19:32:09,544 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [438507753] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:09,544 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:09,544 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-16 19:32:09,545 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [836633957] [2022-11-16 19:32:09,545 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:09,546 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-16 19:32:09,547 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:09,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-16 19:32:09,549 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2022-11-16 19:32:09,549 INFO L87 Difference]: Start difference. First operand 15 states and 15 transitions. Second operand has 4 states, 3 states have (on average 1.0) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,573 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:09,573 INFO L93 Difference]: Finished difference Result 14 states and 14 transitions. [2022-11-16 19:32:09,573 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-16 19:32:09,574 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 1.0) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 3 [2022-11-16 19:32:09,574 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:09,574 INFO L225 Difference]: With dead ends: 14 [2022-11-16 19:32:09,575 INFO L226 Difference]: Without dead ends: 14 [2022-11-16 19:32:09,575 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2022-11-16 19:32:09,583 INFO L413 NwaCegarLoop]: 6 mSDtfsCounter, 13 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 13 SdHoareTripleChecker+Valid, 6 SdHoareTripleChecker+Invalid, 9 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:09,585 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [13 Valid, 6 Invalid, 9 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:09,587 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 14 states. [2022-11-16 19:32:09,592 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 14 to 14. [2022-11-16 19:32:09,592 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 14 states, 9 states have (on average 1.5555555555555556) internal successors, (14), 13 states have internal predecessors, (14), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,593 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 14 states to 14 states and 14 transitions. [2022-11-16 19:32:09,594 INFO L78 Accepts]: Start accepts. Automaton has 14 states and 14 transitions. Word has length 3 [2022-11-16 19:32:09,594 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:09,594 INFO L495 AbstractCegarLoop]: Abstraction has 14 states and 14 transitions. [2022-11-16 19:32:09,595 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 1.0) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,595 INFO L276 IsEmpty]: Start isEmpty. Operand 14 states and 14 transitions. [2022-11-16 19:32:09,596 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 6 [2022-11-16 19:32:09,596 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:09,596 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1] [2022-11-16 19:32:09,596 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-16 19:32:09,596 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:09,598 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:09,598 INFO L85 PathProgramCache]: Analyzing trace with hash 81885786, now seen corresponding path program 1 times [2022-11-16 19:32:09,598 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:09,599 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [319672247] [2022-11-16 19:32:09,599 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:09,599 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:09,633 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:09,765 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:09,765 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:09,765 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [319672247] [2022-11-16 19:32:09,766 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [319672247] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:09,766 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:09,766 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-16 19:32:09,766 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1553211927] [2022-11-16 19:32:09,767 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:09,767 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-16 19:32:09,767 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:09,769 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-16 19:32:09,770 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-16 19:32:09,770 INFO L87 Difference]: Start difference. First operand 14 states and 14 transitions. Second operand has 4 states, 3 states have (on average 1.6666666666666667) internal successors, (5), 4 states have internal predecessors, (5), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,833 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:09,833 INFO L93 Difference]: Finished difference Result 13 states and 13 transitions. [2022-11-16 19:32:09,834 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-16 19:32:09,834 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 1.6666666666666667) internal successors, (5), 4 states have internal predecessors, (5), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 5 [2022-11-16 19:32:09,835 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:09,835 INFO L225 Difference]: With dead ends: 13 [2022-11-16 19:32:09,835 INFO L226 Difference]: Without dead ends: 13 [2022-11-16 19:32:09,836 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-16 19:32:09,837 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 12 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 12 SdHoareTripleChecker+Valid, 5 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:09,837 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [12 Valid, 5 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:09,838 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 13 states. [2022-11-16 19:32:09,839 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 13 to 13. [2022-11-16 19:32:09,839 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 13 states, 9 states have (on average 1.4444444444444444) internal successors, (13), 12 states have internal predecessors, (13), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,840 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 13 states to 13 states and 13 transitions. [2022-11-16 19:32:09,840 INFO L78 Accepts]: Start accepts. Automaton has 13 states and 13 transitions. Word has length 5 [2022-11-16 19:32:09,840 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:09,841 INFO L495 AbstractCegarLoop]: Abstraction has 13 states and 13 transitions. [2022-11-16 19:32:09,841 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 1.6666666666666667) internal successors, (5), 4 states have internal predecessors, (5), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:09,841 INFO L276 IsEmpty]: Start isEmpty. Operand 13 states and 13 transitions. [2022-11-16 19:32:09,841 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 6 [2022-11-16 19:32:09,842 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:09,842 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1] [2022-11-16 19:32:09,842 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-16 19:32:09,842 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:09,843 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:09,843 INFO L85 PathProgramCache]: Analyzing trace with hash 81885787, now seen corresponding path program 1 times [2022-11-16 19:32:09,843 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:09,844 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1851291778] [2022-11-16 19:32:09,844 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:09,844 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:09,867 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:10,000 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:10,000 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:10,000 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1851291778] [2022-11-16 19:32:10,000 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1851291778] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:10,001 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:10,001 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-16 19:32:10,001 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1355137122] [2022-11-16 19:32:10,001 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:10,001 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-16 19:32:10,002 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:10,002 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-16 19:32:10,002 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-16 19:32:10,002 INFO L87 Difference]: Start difference. First operand 13 states and 13 transitions. Second operand has 5 states, 4 states have (on average 1.25) internal successors, (5), 5 states have internal predecessors, (5), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,054 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:10,055 INFO L93 Difference]: Finished difference Result 19 states and 20 transitions. [2022-11-16 19:32:10,055 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-16 19:32:10,055 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 1.25) internal successors, (5), 5 states have internal predecessors, (5), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 5 [2022-11-16 19:32:10,055 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:10,056 INFO L225 Difference]: With dead ends: 19 [2022-11-16 19:32:10,056 INFO L226 Difference]: Without dead ends: 19 [2022-11-16 19:32:10,056 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2022-11-16 19:32:10,057 INFO L413 NwaCegarLoop]: 6 mSDtfsCounter, 22 mSDsluCounter, 6 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 22 SdHoareTripleChecker+Valid, 12 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:10,057 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [22 Valid, 12 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:10,058 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 19 states. [2022-11-16 19:32:10,059 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 19 to 15. [2022-11-16 19:32:10,060 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 11 states have (on average 1.3636363636363635) internal successors, (15), 14 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,077 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 15 transitions. [2022-11-16 19:32:10,077 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 15 transitions. Word has length 5 [2022-11-16 19:32:10,077 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:10,078 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 15 transitions. [2022-11-16 19:32:10,079 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 1.25) internal successors, (5), 5 states have internal predecessors, (5), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,080 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 15 transitions. [2022-11-16 19:32:10,080 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 7 [2022-11-16 19:32:10,081 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:10,085 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1] [2022-11-16 19:32:10,085 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-16 19:32:10,085 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr4REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:10,086 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:10,086 INFO L85 PathProgramCache]: Analyzing trace with hash -1756507928, now seen corresponding path program 1 times [2022-11-16 19:32:10,088 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:10,089 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [205189008] [2022-11-16 19:32:10,089 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:10,089 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:10,146 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:10,299 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:10,299 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:10,300 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [205189008] [2022-11-16 19:32:10,301 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [205189008] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:10,301 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:10,301 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-16 19:32:10,301 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [887938936] [2022-11-16 19:32:10,301 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:10,302 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-16 19:32:10,302 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:10,303 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-16 19:32:10,305 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-16 19:32:10,305 INFO L87 Difference]: Start difference. First operand 15 states and 15 transitions. Second operand has 5 states, 4 states have (on average 1.5) internal successors, (6), 5 states have internal predecessors, (6), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,364 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:10,364 INFO L93 Difference]: Finished difference Result 14 states and 14 transitions. [2022-11-16 19:32:10,365 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-16 19:32:10,365 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 1.5) internal successors, (6), 5 states have internal predecessors, (6), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 6 [2022-11-16 19:32:10,366 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:10,371 INFO L225 Difference]: With dead ends: 14 [2022-11-16 19:32:10,371 INFO L226 Difference]: Without dead ends: 14 [2022-11-16 19:32:10,372 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-11-16 19:32:10,374 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 17 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 5 SdHoareTripleChecker+Invalid, 22 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:10,376 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 5 Invalid, 22 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:10,377 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 14 states. [2022-11-16 19:32:10,380 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 14 to 14. [2022-11-16 19:32:10,381 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 14 states, 11 states have (on average 1.2727272727272727) internal successors, (14), 13 states have internal predecessors, (14), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,382 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 14 states to 14 states and 14 transitions. [2022-11-16 19:32:10,382 INFO L78 Accepts]: Start accepts. Automaton has 14 states and 14 transitions. Word has length 6 [2022-11-16 19:32:10,382 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:10,382 INFO L495 AbstractCegarLoop]: Abstraction has 14 states and 14 transitions. [2022-11-16 19:32:10,382 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 1.5) internal successors, (6), 5 states have internal predecessors, (6), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,383 INFO L276 IsEmpty]: Start isEmpty. Operand 14 states and 14 transitions. [2022-11-16 19:32:10,383 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 7 [2022-11-16 19:32:10,383 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:10,383 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1] [2022-11-16 19:32:10,384 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-16 19:32:10,384 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:10,384 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:10,384 INFO L85 PathProgramCache]: Analyzing trace with hash -1756507927, now seen corresponding path program 1 times [2022-11-16 19:32:10,385 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:10,385 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [411711261] [2022-11-16 19:32:10,385 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:10,385 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:10,417 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:10,716 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:10,716 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:10,716 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [411711261] [2022-11-16 19:32:10,716 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [411711261] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:10,717 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:10,717 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-16 19:32:10,717 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [479913733] [2022-11-16 19:32:10,717 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:10,718 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-16 19:32:10,718 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:10,719 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-16 19:32:10,719 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-11-16 19:32:10,719 INFO L87 Difference]: Start difference. First operand 14 states and 14 transitions. Second operand has 6 states, 5 states have (on average 1.2) internal successors, (6), 5 states have internal predecessors, (6), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,814 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:10,814 INFO L93 Difference]: Finished difference Result 16 states and 17 transitions. [2022-11-16 19:32:10,815 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-16 19:32:10,815 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 1.2) internal successors, (6), 5 states have internal predecessors, (6), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 6 [2022-11-16 19:32:10,815 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:10,815 INFO L225 Difference]: With dead ends: 16 [2022-11-16 19:32:10,816 INFO L226 Difference]: Without dead ends: 16 [2022-11-16 19:32:10,816 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=25, Invalid=47, Unknown=0, NotChecked=0, Total=72 [2022-11-16 19:32:10,817 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 32 mSDsluCounter, 4 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 32 SdHoareTripleChecker+Valid, 7 SdHoareTripleChecker+Invalid, 29 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:10,817 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [32 Valid, 7 Invalid, 29 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:10,818 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 16 states. [2022-11-16 19:32:10,819 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 16 to 15. [2022-11-16 19:32:10,819 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 12 states have (on average 1.25) internal successors, (15), 14 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,820 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 15 transitions. [2022-11-16 19:32:10,820 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 15 transitions. Word has length 6 [2022-11-16 19:32:10,820 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:10,820 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 15 transitions. [2022-11-16 19:32:10,820 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 1.2) internal successors, (6), 5 states have internal predecessors, (6), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:10,821 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 15 transitions. [2022-11-16 19:32:10,821 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2022-11-16 19:32:10,821 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:10,821 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-16 19:32:10,822 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-16 19:32:10,822 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr6ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:10,822 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:10,822 INFO L85 PathProgramCache]: Analyzing trace with hash 1753858779, now seen corresponding path program 1 times [2022-11-16 19:32:10,823 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:10,823 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [751942506] [2022-11-16 19:32:10,823 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:10,823 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:10,860 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:11,022 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:11,022 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:11,023 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [751942506] [2022-11-16 19:32:11,023 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [751942506] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-16 19:32:11,023 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-16 19:32:11,023 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-16 19:32:11,023 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1456408911] [2022-11-16 19:32:11,023 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-16 19:32:11,024 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-16 19:32:11,024 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:11,024 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-16 19:32:11,024 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-16 19:32:11,025 INFO L87 Difference]: Start difference. First operand 15 states and 15 transitions. Second operand has 4 states, 3 states have (on average 3.0) internal successors, (9), 3 states have internal predecessors, (9), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:11,044 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:11,044 INFO L93 Difference]: Finished difference Result 14 states and 14 transitions. [2022-11-16 19:32:11,045 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-16 19:32:11,045 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 3.0) internal successors, (9), 3 states have internal predecessors, (9), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 9 [2022-11-16 19:32:11,045 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:11,046 INFO L225 Difference]: With dead ends: 14 [2022-11-16 19:32:11,046 INFO L226 Difference]: Without dead ends: 12 [2022-11-16 19:32:11,047 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-16 19:32:11,049 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 3 mSDsluCounter, 5 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 10 SdHoareTripleChecker+Invalid, 12 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:11,050 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 10 Invalid, 12 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-16 19:32:11,051 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 12 states. [2022-11-16 19:32:11,052 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 12 to 12. [2022-11-16 19:32:11,052 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 12 states, 10 states have (on average 1.2) internal successors, (12), 11 states have internal predecessors, (12), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:11,054 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 12 states to 12 states and 12 transitions. [2022-11-16 19:32:11,054 INFO L78 Accepts]: Start accepts. Automaton has 12 states and 12 transitions. Word has length 9 [2022-11-16 19:32:11,054 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:11,055 INFO L495 AbstractCegarLoop]: Abstraction has 12 states and 12 transitions. [2022-11-16 19:32:11,055 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 3.0) internal successors, (9), 3 states have internal predecessors, (9), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:11,055 INFO L276 IsEmpty]: Start isEmpty. Operand 12 states and 12 transitions. [2022-11-16 19:32:11,056 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 10 [2022-11-16 19:32:11,056 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:11,056 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1] [2022-11-16 19:32:11,056 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-11-16 19:32:11,056 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:11,057 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:11,057 INFO L85 PathProgramCache]: Analyzing trace with hash 1753860003, now seen corresponding path program 1 times [2022-11-16 19:32:11,057 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:11,058 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2042191225] [2022-11-16 19:32:11,058 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:11,058 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:11,079 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:11,493 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:11,493 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:11,494 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2042191225] [2022-11-16 19:32:11,494 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2042191225] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:32:11,494 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2135385209] [2022-11-16 19:32:11,494 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:11,494 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:11,495 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:32:11,502 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:32:11,519 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-16 19:32:11,588 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:11,591 INFO L263 TraceCheckSpWp]: Trace formula consists of 129 conjuncts, 35 conjunts are in the unsatisfiable core [2022-11-16 19:32:11,597 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:32:11,707 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:11,900 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:32:11,901 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 20 treesize of output 17 [2022-11-16 19:32:12,094 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:12,095 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-16 19:32:12,419 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 11 [2022-11-16 19:32:12,431 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 22 treesize of output 20 [2022-11-16 19:32:12,442 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 23 [2022-11-16 19:32:12,473 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:12,473 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2135385209] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-16 19:32:12,474 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1305417954] [2022-11-16 19:32:12,493 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-16 19:32:12,493 INFO L166 IcfgInterpreter]: Building call graph [2022-11-16 19:32:12,499 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-16 19:32:12,504 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-16 19:32:12,505 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-16 19:32:12,593 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:12,606 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-16 19:32:12,692 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:12,845 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:12,848 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:12,857 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:12,858 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 29 treesize of output 31 [2022-11-16 19:32:13,038 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:13,040 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:13,042 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:13,043 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:13,055 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:13,056 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 4 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 48 treesize of output 52 [2022-11-16 19:32:13,245 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-16 19:32:13,245 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-16 19:32:13,453 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-16 19:32:14,422 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '374#(and (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~src~0#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_cstrcpy_~src~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_cstrcpy_#in~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s2#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~dst~0#1.base|) (< (select |#length| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (+ |ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1)) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_cstrcpy_~dst~0#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.base|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstrcpy_#in~s2#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.offset|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.offset|) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.offset|))' at error location [2022-11-16 19:32:14,422 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-16 19:32:14,422 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-16 19:32:14,423 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 7, 7] total 18 [2022-11-16 19:32:14,423 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [160557711] [2022-11-16 19:32:14,423 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-16 19:32:14,423 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2022-11-16 19:32:14,423 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:14,424 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2022-11-16 19:32:14,424 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=86, Invalid=514, Unknown=0, NotChecked=0, Total=600 [2022-11-16 19:32:14,424 INFO L87 Difference]: Start difference. First operand 12 states and 12 transitions. Second operand has 19 states, 18 states have (on average 1.3333333333333333) internal successors, (24), 19 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:14,597 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:14,598 INFO L93 Difference]: Finished difference Result 18 states and 18 transitions. [2022-11-16 19:32:14,599 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-16 19:32:14,600 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 18 states have (on average 1.3333333333333333) internal successors, (24), 19 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 9 [2022-11-16 19:32:14,600 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:14,600 INFO L225 Difference]: With dead ends: 18 [2022-11-16 19:32:14,600 INFO L226 Difference]: Without dead ends: 18 [2022-11-16 19:32:14,601 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 34 GetRequests, 8 SyntacticMatches, 1 SemanticMatches, 25 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 144 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=102, Invalid=600, Unknown=0, NotChecked=0, Total=702 [2022-11-16 19:32:14,601 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 10 mSDsluCounter, 6 mSDsCounter, 0 mSdLazyCounter, 79 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 9 SdHoareTripleChecker+Invalid, 101 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 79 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 17 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:14,602 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 9 Invalid, 101 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 79 Invalid, 0 Unknown, 17 Unchecked, 0.1s Time] [2022-11-16 19:32:14,602 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 18 states. [2022-11-16 19:32:14,603 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 18 to 15. [2022-11-16 19:32:14,603 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 13 states have (on average 1.1538461538461537) internal successors, (15), 14 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:14,604 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 15 transitions. [2022-11-16 19:32:14,604 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 15 transitions. Word has length 9 [2022-11-16 19:32:14,604 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:14,604 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 15 transitions. [2022-11-16 19:32:14,604 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 18 states have (on average 1.3333333333333333) internal successors, (24), 19 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:14,604 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 15 transitions. [2022-11-16 19:32:14,605 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 11 [2022-11-16 19:32:14,605 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:14,605 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1] [2022-11-16 19:32:14,611 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-16 19:32:14,805 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable8 [2022-11-16 19:32:14,806 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:14,806 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:14,806 INFO L85 PathProgramCache]: Analyzing trace with hash -1464914783, now seen corresponding path program 1 times [2022-11-16 19:32:14,806 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:14,806 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [709943207] [2022-11-16 19:32:14,806 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:14,807 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:14,830 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:15,470 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:15,470 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:15,470 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [709943207] [2022-11-16 19:32:15,470 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [709943207] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:32:15,470 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1043589072] [2022-11-16 19:32:15,471 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:15,471 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:15,471 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:32:15,472 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:32:15,495 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-16 19:32:15,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:15,559 WARN L261 TraceCheckSpWp]: Trace formula consists of 135 conjuncts, 73 conjunts are in the unsatisfiable core [2022-11-16 19:32:15,563 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:32:15,626 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-16 19:32:15,633 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 13 [2022-11-16 19:32:15,755 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:15,998 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:32:15,998 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 15 [2022-11-16 19:32:16,302 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:16,303 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-16 19:32:16,650 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 11 [2022-11-16 19:32:16,655 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 12 [2022-11-16 19:32:16,741 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:16,794 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:16,794 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1043589072] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-16 19:32:16,795 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1123077181] [2022-11-16 19:32:16,803 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-16 19:32:16,803 INFO L166 IcfgInterpreter]: Building call graph [2022-11-16 19:32:16,803 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-16 19:32:16,804 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-16 19:32:16,804 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-16 19:32:16,861 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:16,867 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-16 19:32:16,917 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:17,044 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:17,048 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:17,056 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:17,056 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 29 treesize of output 31 [2022-11-16 19:32:17,220 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:17,221 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:17,223 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:17,223 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:17,226 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:17,227 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:17,238 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:17,238 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 4 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 48 treesize of output 52 [2022-11-16 19:32:17,397 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-16 19:32:17,398 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-16 19:32:17,526 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-16 19:32:18,647 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '497#(and (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (= (select |#valid| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) 1) (= |ULTIMATE.start_cstrcpy_#t~mem4#1| (select (select |#memory_int| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) |ULTIMATE.start_cstrcpy_#t~post3#1.offset|)) (<= 0 |ULTIMATE.start_cstrcpy_~src~0#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_cstrcpy_~src~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= (+ |ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1) (select |#length| |ULTIMATE.start_cstrcpy_#t~post3#1.base|)) (<= |ULTIMATE.start_cstrcpy_#in~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s2#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~dst~0#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_cstrcpy_~dst~0#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.base|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstrcpy_#in~s2#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (< (select |#length| |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (+ |ULTIMATE.start_cstrcpy_#t~post2#1.offset| 1)) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.offset|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.offset|) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.offset|))' at error location [2022-11-16 19:32:18,647 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-16 19:32:18,647 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-16 19:32:18,648 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 24 [2022-11-16 19:32:18,648 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1978773313] [2022-11-16 19:32:18,648 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-16 19:32:18,648 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 26 states [2022-11-16 19:32:18,649 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:18,649 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 26 interpolants. [2022-11-16 19:32:18,649 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=119, Invalid=873, Unknown=0, NotChecked=0, Total=992 [2022-11-16 19:32:18,650 INFO L87 Difference]: Start difference. First operand 15 states and 15 transitions. Second operand has 26 states, 25 states have (on average 1.2) internal successors, (30), 25 states have internal predecessors, (30), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:19,553 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:19,553 INFO L93 Difference]: Finished difference Result 16 states and 16 transitions. [2022-11-16 19:32:19,554 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2022-11-16 19:32:19,554 INFO L78 Accepts]: Start accepts. Automaton has has 26 states, 25 states have (on average 1.2) internal successors, (30), 25 states have internal predecessors, (30), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 10 [2022-11-16 19:32:19,554 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:19,554 INFO L225 Difference]: With dead ends: 16 [2022-11-16 19:32:19,554 INFO L226 Difference]: Without dead ends: 16 [2022-11-16 19:32:19,555 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 6 SyntacticMatches, 1 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 268 ImplicationChecksByTransitivity, 2.8s TimeCoverageRelationStatistics Valid=190, Invalid=1370, Unknown=0, NotChecked=0, Total=1560 [2022-11-16 19:32:19,555 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 27 mSDsluCounter, 7 mSDsCounter, 0 mSdLazyCounter, 88 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 27 SdHoareTripleChecker+Valid, 8 SdHoareTripleChecker+Invalid, 120 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 88 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 24 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:19,556 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [27 Valid, 8 Invalid, 120 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 88 Invalid, 0 Unknown, 24 Unchecked, 0.1s Time] [2022-11-16 19:32:19,556 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 16 states. [2022-11-16 19:32:19,557 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 16 to 14. [2022-11-16 19:32:19,558 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 14 states, 13 states have (on average 1.0769230769230769) internal successors, (14), 13 states have internal predecessors, (14), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:19,558 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 14 states to 14 states and 14 transitions. [2022-11-16 19:32:19,558 INFO L78 Accepts]: Start accepts. Automaton has 14 states and 14 transitions. Word has length 10 [2022-11-16 19:32:19,558 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:19,558 INFO L495 AbstractCegarLoop]: Abstraction has 14 states and 14 transitions. [2022-11-16 19:32:19,558 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 26 states, 25 states have (on average 1.2) internal successors, (30), 25 states have internal predecessors, (30), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:19,559 INFO L276 IsEmpty]: Start isEmpty. Operand 14 states and 14 transitions. [2022-11-16 19:32:19,559 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2022-11-16 19:32:19,559 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:19,559 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 1, 1, 1, 1] [2022-11-16 19:32:19,569 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-16 19:32:19,759 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:19,760 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:19,760 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:19,760 INFO L85 PathProgramCache]: Analyzing trace with hash -113626901, now seen corresponding path program 2 times [2022-11-16 19:32:19,760 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:19,760 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1015833952] [2022-11-16 19:32:19,760 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:19,761 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:19,796 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:20,585 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:20,585 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:20,585 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1015833952] [2022-11-16 19:32:20,585 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1015833952] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:32:20,586 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [593597132] [2022-11-16 19:32:20,586 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-16 19:32:20,586 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:20,586 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:32:20,587 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:32:20,594 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-16 19:32:20,686 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2022-11-16 19:32:20,686 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-16 19:32:20,688 INFO L263 TraceCheckSpWp]: Trace formula consists of 160 conjuncts, 68 conjunts are in the unsatisfiable core [2022-11-16 19:32:20,692 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:32:20,710 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2022-11-16 19:32:20,711 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 15 [2022-11-16 19:32:20,716 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-16 19:32:20,753 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-16 19:32:20,917 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-16 19:32:21,125 INFO L321 Elim1Store]: treesize reduction 4, result has 76.5 percent of original size [2022-11-16 19:32:21,125 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 1 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 2 case distinctions, treesize of input 25 treesize of output 23 [2022-11-16 19:32:21,249 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:21,250 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-16 19:32:21,779 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:32:21,780 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 37 treesize of output 36 [2022-11-16 19:32:21,803 INFO L321 Elim1Store]: treesize reduction 17, result has 54.1 percent of original size [2022-11-16 19:32:21,804 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 31 [2022-11-16 19:32:21,816 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:21,823 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:32:21,824 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 2 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 1 case distinctions, treesize of input 44 treesize of output 35 [2022-11-16 19:32:21,862 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:32:21,936 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:21,937 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [593597132] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-16 19:32:21,937 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [663426758] [2022-11-16 19:32:21,939 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-16 19:32:21,939 INFO L166 IcfgInterpreter]: Building call graph [2022-11-16 19:32:21,939 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-16 19:32:21,939 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-16 19:32:21,940 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-16 19:32:21,971 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:21,975 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-16 19:32:22,023 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:22,120 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:22,123 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:22,130 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:22,131 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 29 treesize of output 31 [2022-11-16 19:32:22,314 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:22,315 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:22,317 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:22,320 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:22,329 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:22,329 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 4 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 52 treesize of output 54 [2022-11-16 19:32:22,468 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-16 19:32:22,469 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-16 19:32:22,591 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-16 19:32:23,694 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '653#(and (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~src~0#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_cstrcpy_~src~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_cstrcpy_#in~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s2#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~dst~0#1.base|) (< (select |#length| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (+ |ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1)) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_cstrcpy_~dst~0#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.base|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstrcpy_#in~s2#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.offset|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.offset|) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.offset|))' at error location [2022-11-16 19:32:23,695 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-16 19:32:23,695 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-16 19:32:23,695 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 11, 11] total 30 [2022-11-16 19:32:23,695 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [982203942] [2022-11-16 19:32:23,696 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-16 19:32:23,696 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2022-11-16 19:32:23,696 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:23,697 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2022-11-16 19:32:23,697 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=130, Invalid=1200, Unknown=2, NotChecked=0, Total=1332 [2022-11-16 19:32:23,697 INFO L87 Difference]: Start difference. First operand 14 states and 14 transitions. Second operand has 31 states, 30 states have (on average 1.2333333333333334) internal successors, (37), 31 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:24,226 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:24,230 INFO L93 Difference]: Finished difference Result 20 states and 20 transitions. [2022-11-16 19:32:24,230 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2022-11-16 19:32:24,232 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 30 states have (on average 1.2333333333333334) internal successors, (37), 31 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2022-11-16 19:32:24,233 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:24,233 INFO L225 Difference]: With dead ends: 20 [2022-11-16 19:32:24,233 INFO L226 Difference]: Without dead ends: 20 [2022-11-16 19:32:24,234 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 52 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 366 ImplicationChecksByTransitivity, 2.5s TimeCoverageRelationStatistics Valid=175, Invalid=1545, Unknown=2, NotChecked=0, Total=1722 [2022-11-16 19:32:24,235 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 7 mSDsluCounter, 6 mSDsCounter, 0 mSdLazyCounter, 85 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 7 SdHoareTripleChecker+Valid, 9 SdHoareTripleChecker+Invalid, 155 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 85 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 67 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:24,235 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [7 Valid, 9 Invalid, 155 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 85 Invalid, 0 Unknown, 67 Unchecked, 0.1s Time] [2022-11-16 19:32:24,236 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 20 states. [2022-11-16 19:32:24,237 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 20 to 18. [2022-11-16 19:32:24,237 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 17 states have (on average 1.0588235294117647) internal successors, (18), 17 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:24,238 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 18 transitions. [2022-11-16 19:32:24,238 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 18 transitions. Word has length 13 [2022-11-16 19:32:24,238 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:24,238 INFO L495 AbstractCegarLoop]: Abstraction has 18 states and 18 transitions. [2022-11-16 19:32:24,238 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 30 states have (on average 1.2333333333333334) internal successors, (37), 31 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:24,239 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 18 transitions. [2022-11-16 19:32:24,239 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2022-11-16 19:32:24,239 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:24,239 INFO L195 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 1, 1, 1, 1] [2022-11-16 19:32:24,244 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-16 19:32:24,439 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:24,440 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:24,440 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:24,441 INFO L85 PathProgramCache]: Analyzing trace with hash 2105849395, now seen corresponding path program 3 times [2022-11-16 19:32:24,441 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:24,441 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [432591115] [2022-11-16 19:32:24,441 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:24,441 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:24,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:25,272 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:25,272 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:25,273 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [432591115] [2022-11-16 19:32:25,273 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [432591115] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:32:25,273 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1049818068] [2022-11-16 19:32:25,273 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-16 19:32:25,273 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:25,273 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:32:25,275 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:32:25,287 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2022-11-16 19:32:25,387 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-16 19:32:25,387 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-16 19:32:25,390 INFO L263 TraceCheckSpWp]: Trace formula consists of 191 conjuncts, 94 conjunts are in the unsatisfiable core [2022-11-16 19:32:25,394 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:32:25,410 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2022-11-16 19:32:25,410 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 15 [2022-11-16 19:32:25,446 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-16 19:32:25,690 INFO L321 Elim1Store]: treesize reduction 34, result has 49.3 percent of original size [2022-11-16 19:32:25,690 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 28 treesize of output 46 [2022-11-16 19:32:26,090 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:26,157 INFO L321 Elim1Store]: treesize reduction 56, result has 49.1 percent of original size [2022-11-16 19:32:26,157 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 3 select indices, 3 select index equivalence classes, 2 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 4 case distinctions, treesize of input 40 treesize of output 75 [2022-11-16 19:32:26,551 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:32:26,551 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 15 [2022-11-16 19:32:26,722 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:26,722 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-16 19:32:27,953 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 411 treesize of output 403 [2022-11-16 19:32:27,979 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 3 select indices, 3 select index equivalence classes, 3 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 0 case distinctions, treesize of input 360 treesize of output 346 [2022-11-16 19:32:28,524 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:28,525 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1049818068] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-16 19:32:28,525 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1833397257] [2022-11-16 19:32:28,527 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-16 19:32:28,527 INFO L166 IcfgInterpreter]: Building call graph [2022-11-16 19:32:28,527 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-16 19:32:28,528 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-16 19:32:28,528 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-16 19:32:28,573 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:28,579 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-16 19:32:28,615 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:28,710 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:28,712 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:28,719 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:28,720 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 29 treesize of output 31 [2022-11-16 19:32:28,836 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:28,837 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:28,839 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:28,840 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:28,849 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:28,849 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 4 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 52 treesize of output 54 [2022-11-16 19:32:28,951 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-16 19:32:28,952 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-16 19:32:29,060 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-16 19:32:30,187 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '845#(and (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~src~0#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_cstrcpy_~src~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_cstrcpy_#in~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s2#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~dst~0#1.base|) (< (select |#length| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (+ |ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1)) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_cstrcpy_~dst~0#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.base|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstrcpy_#in~s2#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.offset|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.offset|) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.offset|))' at error location [2022-11-16 19:32:30,187 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-16 19:32:30,187 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-16 19:32:30,187 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 15, 15] total 41 [2022-11-16 19:32:30,188 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [678348186] [2022-11-16 19:32:30,188 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-16 19:32:30,188 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 42 states [2022-11-16 19:32:30,188 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:30,189 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 42 interpolants. [2022-11-16 19:32:30,190 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=188, Invalid=2068, Unknown=0, NotChecked=0, Total=2256 [2022-11-16 19:32:30,190 INFO L87 Difference]: Start difference. First operand 18 states and 18 transitions. Second operand has 42 states, 41 states have (on average 1.1951219512195121) internal successors, (49), 42 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:31,907 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:32:31,907 INFO L93 Difference]: Finished difference Result 28 states and 28 transitions. [2022-11-16 19:32:31,908 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2022-11-16 19:32:31,908 INFO L78 Accepts]: Start accepts. Automaton has has 42 states, 41 states have (on average 1.1951219512195121) internal successors, (49), 42 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 17 [2022-11-16 19:32:31,908 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:32:31,909 INFO L225 Difference]: With dead ends: 28 [2022-11-16 19:32:31,909 INFO L226 Difference]: Without dead ends: 28 [2022-11-16 19:32:31,911 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 78 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 62 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 842 ImplicationChecksByTransitivity, 4.7s TimeCoverageRelationStatistics Valid=344, Invalid=3688, Unknown=0, NotChecked=0, Total=4032 [2022-11-16 19:32:31,911 INFO L413 NwaCegarLoop]: 2 mSDtfsCounter, 14 mSDsluCounter, 2 mSDsCounter, 0 mSdLazyCounter, 128 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 4 SdHoareTripleChecker+Invalid, 253 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 128 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 113 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:32:31,912 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 4 Invalid, 253 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 128 Invalid, 0 Unknown, 113 Unchecked, 0.1s Time] [2022-11-16 19:32:31,912 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 28 states. [2022-11-16 19:32:31,914 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 28 to 26. [2022-11-16 19:32:31,914 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 26 states, 25 states have (on average 1.04) internal successors, (26), 25 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:31,915 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 26 states to 26 states and 26 transitions. [2022-11-16 19:32:31,915 INFO L78 Accepts]: Start accepts. Automaton has 26 states and 26 transitions. Word has length 17 [2022-11-16 19:32:31,915 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:32:31,916 INFO L495 AbstractCegarLoop]: Abstraction has 26 states and 26 transitions. [2022-11-16 19:32:31,916 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 42 states, 41 states have (on average 1.1951219512195121) internal successors, (49), 42 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:31,916 INFO L276 IsEmpty]: Start isEmpty. Operand 26 states and 26 transitions. [2022-11-16 19:32:31,918 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-11-16 19:32:31,918 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:32:31,919 INFO L195 NwaCegarLoop]: trace histogram [6, 5, 5, 5, 1, 1, 1, 1] [2022-11-16 19:32:31,939 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2022-11-16 19:32:32,124 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2022-11-16 19:32:32,124 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:32:32,125 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:32:32,125 INFO L85 PathProgramCache]: Analyzing trace with hash -30403389, now seen corresponding path program 4 times [2022-11-16 19:32:32,125 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:32:32,125 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1424079609] [2022-11-16 19:32:32,125 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:32:32,125 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:32:32,185 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:33,535 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:33,535 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:32:33,535 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1424079609] [2022-11-16 19:32:33,535 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1424079609] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:32:33,536 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [338351791] [2022-11-16 19:32:33,536 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-16 19:32:33,536 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:32:33,536 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:32:33,537 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:32:33,560 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2022-11-16 19:32:33,715 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:32:33,719 INFO L263 TraceCheckSpWp]: Trace formula consists of 253 conjuncts, 117 conjunts are in the unsatisfiable core [2022-11-16 19:32:33,723 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:32:33,758 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-16 19:32:33,800 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-16 19:32:34,031 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-16 19:32:34,365 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 29 [2022-11-16 19:32:34,766 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 35 [2022-11-16 19:32:35,210 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 43 [2022-11-16 19:32:35,626 INFO L321 Elim1Store]: treesize reduction 16, result has 61.0 percent of original size [2022-11-16 19:32:35,626 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 6 select indices, 6 select index equivalence classes, 10 disjoint index pairs (out of 15 index pairs), introduced 6 new quantified variables, introduced 5 case distinctions, treesize of input 49 treesize of output 47 [2022-11-16 19:32:35,839 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:35,839 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-16 19:32:38,733 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-16 19:32:38,747 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:32:38,748 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 106 treesize of output 72 [2022-11-16 19:32:38,753 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 113 treesize of output 103 [2022-11-16 19:32:38,757 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:32:38,762 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:32:38,778 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 5 select indices, 5 select index equivalence classes, 10 disjoint index pairs (out of 10 index pairs), introduced 5 new quantified variables, introduced 0 case distinctions, treesize of input 98 treesize of output 80 [2022-11-16 19:32:38,801 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:32:38,806 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:32:38,955 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-16 19:32:38,997 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:32:38,997 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [338351791] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-16 19:32:38,997 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [927784984] [2022-11-16 19:32:39,001 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-16 19:32:39,001 INFO L166 IcfgInterpreter]: Building call graph [2022-11-16 19:32:39,001 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-16 19:32:39,002 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-16 19:32:39,002 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-16 19:32:39,038 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,045 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-16 19:32:39,100 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:32:39,177 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:39,179 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,186 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:39,186 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 29 treesize of output 31 [2022-11-16 19:32:39,297 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,298 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,300 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,300 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:32:39,303 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,305 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:32:39,312 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:32:39,313 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 4 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 50 treesize of output 54 [2022-11-16 19:32:39,418 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-16 19:32:39,418 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-16 19:32:39,520 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-16 19:32:41,040 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1146#(and (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~src~0#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_cstrcpy_~src~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_cstrcpy_#in~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s2#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~dst~0#1.base|) (< (select |#length| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (+ |ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1)) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_cstrcpy_~dst~0#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.base|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstrcpy_#in~s2#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.offset|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.offset|) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.offset|))' at error location [2022-11-16 19:32:41,040 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-16 19:32:41,040 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-16 19:32:41,040 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 23, 23] total 64 [2022-11-16 19:32:41,041 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [635522362] [2022-11-16 19:32:41,041 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-16 19:32:41,041 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 65 states [2022-11-16 19:32:41,041 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:32:41,042 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 65 interpolants. [2022-11-16 19:32:41,044 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=321, Invalid=4617, Unknown=32, NotChecked=0, Total=4970 [2022-11-16 19:32:41,044 INFO L87 Difference]: Start difference. First operand 26 states and 26 transitions. Second operand has 65 states, 64 states have (on average 1.15625) internal successors, (74), 65 states have internal predecessors, (74), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:32:52,172 WARN L233 SmtUtils]: Spent 8.75s on a formula simplification. DAG size of input: 118 DAG size of output: 108 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:33:05,321 WARN L233 SmtUtils]: Spent 12.98s on a formula simplification. DAG size of input: 113 DAG size of output: 105 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:33:24,152 WARN L233 SmtUtils]: Spent 18.66s on a formula simplification. DAG size of input: 92 DAG size of output: 76 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:33:45,209 WARN L233 SmtUtils]: Spent 16.54s on a formula simplification. DAG size of input: 92 DAG size of output: 86 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:33:47,687 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:33:47,687 INFO L93 Difference]: Finished difference Result 42 states and 42 transitions. [2022-11-16 19:33:47,688 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 37 states. [2022-11-16 19:33:47,688 INFO L78 Accepts]: Start accepts. Automaton has has 65 states, 64 states have (on average 1.15625) internal successors, (74), 65 states have internal predecessors, (74), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2022-11-16 19:33:47,688 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:33:47,689 INFO L225 Difference]: With dead ends: 42 [2022-11-16 19:33:47,689 INFO L226 Difference]: Without dead ends: 42 [2022-11-16 19:33:47,691 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 22 SyntacticMatches, 1 SemanticMatches, 100 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2087 ImplicationChecksByTransitivity, 72.7s TimeCoverageRelationStatistics Valid=770, Invalid=9476, Unknown=56, NotChecked=0, Total=10302 [2022-11-16 19:33:47,692 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 3 mSDsluCounter, 3 mSDsCounter, 0 mSdLazyCounter, 53 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 4 SdHoareTripleChecker+Invalid, 135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 53 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 81 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:33:47,692 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 4 Invalid, 135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 53 Invalid, 0 Unknown, 81 Unchecked, 0.1s Time] [2022-11-16 19:33:47,693 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 42 states. [2022-11-16 19:33:47,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 42 to 42. [2022-11-16 19:33:47,695 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 42 states, 41 states have (on average 1.024390243902439) internal successors, (42), 41 states have internal predecessors, (42), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:33:47,696 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 42 states to 42 states and 42 transitions. [2022-11-16 19:33:47,696 INFO L78 Accepts]: Start accepts. Automaton has 42 states and 42 transitions. Word has length 25 [2022-11-16 19:33:47,696 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:33:47,697 INFO L495 AbstractCegarLoop]: Abstraction has 42 states and 42 transitions. [2022-11-16 19:33:47,697 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 65 states, 64 states have (on average 1.15625) internal successors, (74), 65 states have internal predecessors, (74), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:33:47,697 INFO L276 IsEmpty]: Start isEmpty. Operand 42 states and 42 transitions. [2022-11-16 19:33:47,698 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2022-11-16 19:33:47,698 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:33:47,698 INFO L195 NwaCegarLoop]: trace histogram [10, 9, 9, 9, 1, 1, 1, 1] [2022-11-16 19:33:47,709 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2022-11-16 19:33:47,903 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:33:47,904 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:33:47,904 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:33:47,904 INFO L85 PathProgramCache]: Analyzing trace with hash -1260903965, now seen corresponding path program 5 times [2022-11-16 19:33:47,904 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:33:47,905 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [114993205] [2022-11-16 19:33:47,905 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:33:47,905 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:33:47,988 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:33:51,052 INFO L134 CoverageAnalysis]: Checked inductivity of 162 backedges. 0 proven. 162 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:33:51,052 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:33:51,052 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [114993205] [2022-11-16 19:33:51,052 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [114993205] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:33:51,053 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [573589040] [2022-11-16 19:33:51,053 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-16 19:33:51,053 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:33:51,053 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:33:51,054 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:33:51,059 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2022-11-16 19:33:51,425 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 10 check-sat command(s) [2022-11-16 19:33:51,425 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-16 19:33:51,431 WARN L261 TraceCheckSpWp]: Trace formula consists of 377 conjuncts, 229 conjunts are in the unsatisfiable core [2022-11-16 19:33:51,440 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:33:51,446 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-16 19:33:51,529 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-16 19:33:51,891 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-16 19:33:52,445 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 29 [2022-11-16 19:33:53,031 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 35 [2022-11-16 19:33:53,751 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 43 [2022-11-16 19:33:54,518 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 55 treesize of output 47 [2022-11-16 19:33:55,404 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 65 treesize of output 55 [2022-11-16 19:33:56,279 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 71 treesize of output 59 [2022-11-16 19:33:57,297 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 81 treesize of output 67 [2022-11-16 19:33:58,115 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,118 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,123 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,125 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,126 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,129 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,130 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,132 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,136 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,139 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,141 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,149 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,151 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,152 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:33:58,228 INFO L321 Elim1Store]: treesize reduction 32, result has 57.3 percent of original size [2022-11-16 19:33:58,228 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 10 select indices, 10 select index equivalence classes, 36 disjoint index pairs (out of 45 index pairs), introduced 10 new quantified variables, introduced 9 case distinctions, treesize of input 85 treesize of output 81 [2022-11-16 19:33:58,248 WARN L718 sPolynomialRelations]: Constructing 256(two to the power of 8 dual juncts. [2022-11-16 19:33:58,279 WARN L718 sPolynomialRelations]: Constructing 512(two to the power of 9 dual juncts. [2022-11-16 19:33:58,749 INFO L134 CoverageAnalysis]: Checked inductivity of 162 backedges. 0 proven. 162 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:33:58,749 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-16 19:34:59,648 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-16 19:34:59,649 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 198 treesize of output 120 [2022-11-16 19:34:59,674 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 213 treesize of output 195 [2022-11-16 19:34:59,681 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,689 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,693 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,699 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,704 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,738 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 9 select indices, 9 select index equivalence classes, 36 disjoint index pairs (out of 36 index pairs), introduced 9 new quantified variables, introduced 0 case distinctions, treesize of input 182 treesize of output 148 [2022-11-16 19:34:59,755 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-16 19:34:59,895 WARN L718 sPolynomialRelations]: Constructing 512(two to the power of 9 dual juncts. [2022-11-16 19:34:59,922 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,928 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:34:59,933 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-16 19:35:00,169 INFO L134 CoverageAnalysis]: Checked inductivity of 162 backedges. 0 proven. 162 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:35:00,170 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [573589040] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-16 19:35:00,170 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1615781220] [2022-11-16 19:35:00,172 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-16 19:35:00,172 INFO L166 IcfgInterpreter]: Building call graph [2022-11-16 19:35:00,172 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-16 19:35:00,173 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-16 19:35:00,173 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-16 19:35:00,212 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:35:00,219 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-16 19:35:00,257 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-16 19:35:00,334 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-16 19:35:00,338 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:35:00,345 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:35:00,346 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 29 treesize of output 31 [2022-11-16 19:35:00,457 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:35:00,459 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:35:00,460 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:35:00,465 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:35:00,473 INFO L321 Elim1Store]: treesize reduction 11, result has 8.3 percent of original size [2022-11-16 19:35:00,474 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 4 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 1 case distinctions, treesize of input 50 treesize of output 54 [2022-11-16 19:35:00,584 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-16 19:35:00,584 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-16 19:35:00,701 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-16 19:35:03,412 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1646#(and (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.base|) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~src~0#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_cstrcpy_~src~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_cstrcpy_#in~s1#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#t~post2#1.offset|) (<= |ULTIMATE.start_cstrcpy_~s2#1.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_~dst~0#1.base|) (< (select |#length| |ULTIMATE.start_cstrcpy_#t~post3#1.base|) (+ |ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1)) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_cstrcpy_~dst~0#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.base|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstrcpy_#in~s2#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= 0 |ULTIMATE.start_cstrcpy_#in~s2#1.offset|) (<= 0 |ULTIMATE.start_cstrcpy_#in~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_#t~post3#1.offset|) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0) (<= 0 |ULTIMATE.start_cstrcpy_~s1#1.base|) (<= 0 |ULTIMATE.start_cstrcpy_~s2#1.offset|))' at error location [2022-11-16 19:35:03,413 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-16 19:35:03,413 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-16 19:35:03,413 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [31, 39, 39] total 107 [2022-11-16 19:35:03,413 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [172203802] [2022-11-16 19:35:03,413 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-16 19:35:03,414 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 108 states [2022-11-16 19:35:03,414 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-16 19:35:03,415 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 108 interpolants. [2022-11-16 19:35:03,418 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=767, Invalid=11812, Unknown=303, NotChecked=0, Total=12882 [2022-11-16 19:35:03,418 INFO L87 Difference]: Start difference. First operand 42 states and 42 transitions. Second operand has 108 states, 107 states have (on average 1.1308411214953271) internal successors, (121), 108 states have internal predecessors, (121), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:35:14,293 WARN L855 $PredicateComparison]: unable to prove that (let ((.cse6 (select |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post3#1.base|))) (let ((.cse14 (+ 7 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse9 (+ 6 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse8 (+ 3 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse2 (+ 2 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse0 (+ 4 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse4 (+ 1 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse10 (+ 5 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse1 (select |c_#length| |c_ULTIMATE.start_cstrcpy_~src~0#1.base|)) (.cse5 (= (select .cse6 |c_ULTIMATE.start_cstrcpy_#t~post3#1.offset|) 0))) (and (or (<= .cse0 .cse1) (not (<= 0 .cse2)) (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse3 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_256))) (or (= (select (select (store .cse3 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select .cse3 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse3 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0)))) .cse5) (not (= (select .cse6 6) 0)) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse7 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_254))) (or (= (select (select (store .cse7 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0) (= (select (select .cse7 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse7 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0) (= (select (select (store .cse7 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select (store .cse7 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0)))) (<= .cse9 .cse1) .cse5 (not (<= 0 .cse0))) (= (+ |c_ULTIMATE.start_cstrcpy_#t~post3#1.offset| 1) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) (or (<= .cse10 .cse1) (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse11 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_255))) (or (= (select (select (store .cse11 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0) (= (select (select .cse11 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse11 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0) (= (select (select (store .cse11 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)))) .cse5 (not (<= 0 .cse8))) (exists ((|ULTIMATE.start_main_~length2~0#1| Int)) (and (<= 1 |ULTIMATE.start_main_~length2~0#1|) (= 0 (select .cse6 (+ (- 1) |ULTIMATE.start_main_~length2~0#1|))) (<= |ULTIMATE.start_main_~length2~0#1| (select |c_#length| |c_ULTIMATE.start_cstrcpy_#t~post3#1.base|)))) (not (= (select .cse6 5) 0)) (= |c_ULTIMATE.start_cstrcpy_#t~post3#1.base| |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse12 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_257))) (or (= (select (select .cse12 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0)))) (not (<= 0 .cse4)) (<= .cse8 .cse1) .cse5) (not (= (select .cse6 0) 0)) (= |c_ULTIMATE.start_cstrcpy_#t~post3#1.offset| 8) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_253 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse13 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_253))) (or (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0) (= (select (select .cse13 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse10) 0) (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0) (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0)))) (<= .cse14 .cse1) .cse5 (not (<= 0 .cse10))) (not (= (select .cse6 (+ (- 1) |c_ULTIMATE.start_cstrcpy_#t~post3#1.offset|)) 0)) (not (= 0 (select .cse6 1))) (or (not (<= 0 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (<= .cse2 .cse1) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0)) .cse5) (not (= 0 (select .cse6 4))) (not (= (select .cse6 2) 0)) (not (= (select .cse6 3) 0)) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_252 (Array Int Int)) (v_ArrVal_251 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_253 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse15 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_251))) (or (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse10) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0) (= (select (select .cse15 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_253) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= 0 (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_252) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4)) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse9) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse14) 0)))) (<= (+ 9 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) .cse1) (not (<= 0 .cse14)) .cse5) (or (not (<= 0 .cse9)) (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_252 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_253 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse16 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_252))) (or (= (select (select (store .cse16 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse9) 0) (= (select (select (store .cse16 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0) (= (select (select (store .cse16 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select (store .cse16 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0) (= (select (select (store .cse16 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_253) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0) (= (select (select .cse16 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse16 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse10) 0)))) (<= (+ 8 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) .cse1) .cse5)))) is different from true [2022-11-16 19:35:17,259 WARN L833 $PredicateComparison]: unable to prove that (let ((.cse6 (+ 7 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse10 (+ 6 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse1 (+ 3 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse2 (+ 2 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse4 (+ 4 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse5 (+ 1 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse3 (+ 5 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse7 (select |c_#length| |c_ULTIMATE.start_cstrcpy_~src~0#1.base|)) (.cse8 (= |c_ULTIMATE.start_cstrcpy_#t~mem4#1| 0))) (and (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_253 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse0 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_253))) (or (= (select (select (store .cse0 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse1) 0) (= (select (select .cse0 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse0 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select (store .cse0 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0) (= (select (select (store .cse0 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0) (= (select (select (store .cse0 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)))) (<= .cse6 .cse7) (not (<= 0 .cse3)) .cse8) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse9 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_254))) (or (= (select (select (store .cse9 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse1) 0) (= (select (select .cse9 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse9 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0) (= (select (select (store .cse9 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select (store .cse9 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)))) (<= .cse10 .cse7) .cse8 (not (<= 0 .cse4))) (or (<= .cse5 .cse7) (and (<= |c_ULTIMATE.start_cstrcpy_~src~0#1.offset| .cse7) .cse8)) (or (not (<= 0 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (<= .cse2 .cse7) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0)) .cse8) (= 9 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) (or (<= .cse4 .cse7) (not (<= 0 .cse2)) (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse11 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_256))) (or (= (select (select (store .cse11 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select .cse11 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse11 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)))) .cse8) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_252 (Array Int Int)) (v_ArrVal_251 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_253 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse12 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_251))) (or (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0) (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0) (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse1) 0) (= (select (select .cse12 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_253) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= 0 (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_252) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5)) (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse10) 0) (= (select (select (store .cse12 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse6) 0)))) (<= (+ 9 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) .cse7) (not (<= 0 .cse6)) .cse8) (or (<= .cse3 .cse7) (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse13 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_255))) (or (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse1) 0) (= (select (select .cse13 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0) (= (select (select (store .cse13 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)))) .cse8 (not (<= 0 .cse1))) (or (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse14 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_257))) (or (= (select (select .cse14 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse14 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)))) (not (<= 0 .cse5)) (<= .cse1 .cse7) .cse8) (or (not (<= 0 .cse10)) (forall ((v_ArrVal_259 (Array Int Int)) (v_ArrVal_252 (Array Int Int)) (v_ArrVal_254 (Array Int Int)) (v_ArrVal_253 (Array Int Int)) (v_ArrVal_256 (Array Int Int)) (v_ArrVal_255 (Array Int Int)) (v_ArrVal_257 (Array Int Int))) (let ((.cse15 (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_#t~post2#1.base| v_ArrVal_252))) (or (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse10) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse1) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse4) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_253) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0) (= (select (select .cse15 |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0) (= (select (select (store .cse15 |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0)))) (<= (+ 8 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) .cse7) .cse8))) is different from false [2022-11-16 19:35:18,776 WARN L833 $PredicateComparison]: unable to prove that (let ((.cse7 (+ 7 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse6 (+ 5 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse1 (= (select (select |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) 0)) (.cse5 (+ 3 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse3 (+ 4 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse8 (+ 6 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse4 (select |c_#length| |c_ULTIMATE.start_cstrcpy_~src~0#1.base|)) (.cse0 (+ 2 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (.cse2 (+ 1 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|))) (and (or (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0)) .cse1 (forall ((v_ArrVal_257 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)) (<= .cse3 .cse4) (not (<= 0 .cse0))) (or .cse1 (not (<= 0 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|)) (<= .cse0 .cse4)) (or (forall ((v_ArrVal_257 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0)) .cse1 (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)) (<= .cse6 .cse4) (forall ((v_ArrVal_256 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)) (not (<= 0 .cse5))) (or (forall ((v_ArrVal_257 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0)) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse6) 0)) (forall ((v_ArrVal_254 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)) .cse1 (forall ((v_ArrVal_255 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0)) (forall ((v_ArrVal_256 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)) (<= .cse7 .cse4) (not (<= 0 .cse6))) (= 9 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) (or .cse1 (<= .cse8 .cse4) (forall ((v_ArrVal_256 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0)) (forall ((v_ArrVal_255 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)) (forall ((v_ArrVal_257 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0)) (not (<= 0 .cse3))) (or (forall ((v_ArrVal_254 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)) .cse1 (forall ((v_ArrVal_252 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_252) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0)) (forall ((v_ArrVal_256 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse6) 0)) (<= (+ 9 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) .cse4) (forall ((v_ArrVal_253 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_253) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0)) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse7) 0)) (not (<= 0 .cse7)) (forall ((v_ArrVal_257 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0)) (forall ((v_ArrVal_255 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0))) (<= .cse2 .cse4) (or .cse1 (not (<= 0 .cse2)) (<= .cse5 .cse4) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0))) (or (forall ((v_ArrVal_257 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_257) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse6) 0)) .cse1 (forall ((v_ArrVal_255 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_255) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse5) 0)) (not (<= 0 .cse8)) (forall ((v_ArrVal_256 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_256) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse3) 0)) (forall ((v_ArrVal_259 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_259) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse8) 0)) (<= (+ 8 |c_ULTIMATE.start_cstrcpy_~src~0#1.offset|) .cse4) (forall ((v_ArrVal_254 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_254) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse0) 0)) (forall ((v_ArrVal_253 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstrcpy_~dst~0#1.base| v_ArrVal_253) |c_ULTIMATE.start_cstrcpy_~src~0#1.base|) .cse2) 0))))) is different from false [2022-11-16 19:37:22,720 WARN L233 SmtUtils]: Spent 1.74m on a formula simplification. DAG size of input: 200 DAG size of output: 185 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:39:23,380 WARN L233 SmtUtils]: Spent 1.63m on a formula simplification. DAG size of input: 190 DAG size of output: 177 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:40:13,555 WARN L233 SmtUtils]: Spent 40.97s on a formula simplification. DAG size of input: 161 DAG size of output: 149 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:40:59,791 WARN L233 SmtUtils]: Spent 35.24s on a formula simplification. DAG size of input: 153 DAG size of output: 142 (called from [L 360] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-16 19:41:35,015 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-16 19:41:35,015 INFO L93 Difference]: Finished difference Result 78 states and 78 transitions. [2022-11-16 19:41:35,015 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 72 states. [2022-11-16 19:41:35,016 INFO L78 Accepts]: Start accepts. Automaton has has 108 states, 107 states have (on average 1.1308411214953271) internal successors, (121), 108 states have internal predecessors, (121), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 41 [2022-11-16 19:41:35,016 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-16 19:41:35,017 INFO L225 Difference]: With dead ends: 78 [2022-11-16 19:41:35,017 INFO L226 Difference]: Without dead ends: 78 [2022-11-16 19:41:35,023 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 219 GetRequests, 40 SyntacticMatches, 0 SemanticMatches, 179 ConstructedPredicates, 3 IntricatePredicates, 0 DeprecatedPredicates, 5881 ImplicationChecksByTransitivity, 460.9s TimeCoverageRelationStatistics Valid=2519, Invalid=28504, Unknown=495, NotChecked=1062, Total=32580 [2022-11-16 19:41:35,024 INFO L413 NwaCegarLoop]: 2 mSDtfsCounter, 3 mSDsluCounter, 1 mSDsCounter, 0 mSdLazyCounter, 83 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 3 SdHoareTripleChecker+Invalid, 138 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 83 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 55 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-16 19:41:35,024 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 3 Invalid, 138 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 83 Invalid, 0 Unknown, 55 Unchecked, 0.1s Time] [2022-11-16 19:41:35,025 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2022-11-16 19:41:35,028 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 78. [2022-11-16 19:41:35,029 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 78 states, 77 states have (on average 1.0129870129870129) internal successors, (78), 77 states have internal predecessors, (78), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:41:35,030 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 78 states to 78 states and 78 transitions. [2022-11-16 19:41:35,030 INFO L78 Accepts]: Start accepts. Automaton has 78 states and 78 transitions. Word has length 41 [2022-11-16 19:41:35,030 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-16 19:41:35,030 INFO L495 AbstractCegarLoop]: Abstraction has 78 states and 78 transitions. [2022-11-16 19:41:35,031 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 108 states, 107 states have (on average 1.1308411214953271) internal successors, (121), 108 states have internal predecessors, (121), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-16 19:41:35,031 INFO L276 IsEmpty]: Start isEmpty. Operand 78 states and 78 transitions. [2022-11-16 19:41:35,032 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2022-11-16 19:41:35,033 INFO L187 NwaCegarLoop]: Found error trace [2022-11-16 19:41:35,033 INFO L195 NwaCegarLoop]: trace histogram [19, 18, 18, 18, 1, 1, 1, 1] [2022-11-16 19:41:35,039 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2022-11-16 19:41:35,235 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2022-11-16 19:41:35,235 INFO L420 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 4 more)] === [2022-11-16 19:41:35,235 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-16 19:41:35,236 INFO L85 PathProgramCache]: Analyzing trace with hash 233809259, now seen corresponding path program 6 times [2022-11-16 19:41:35,236 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-16 19:41:35,236 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1744612766] [2022-11-16 19:41:35,236 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-16 19:41:35,236 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-16 19:41:35,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-16 19:41:44,189 INFO L134 CoverageAnalysis]: Checked inductivity of 648 backedges. 0 proven. 648 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:41:44,189 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-16 19:41:44,189 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1744612766] [2022-11-16 19:41:44,189 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1744612766] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-16 19:41:44,189 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [786821687] [2022-11-16 19:41:44,189 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-16 19:41:44,190 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-16 19:41:44,190 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 [2022-11-16 19:41:44,195 INFO L229 MonitoredProcess]: Starting monitored process 8 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-16 19:41:44,198 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_449fea76-0dc3-4022-ac95-554b41d32a1f/bin/utaipan-Xvt2sAort0/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2022-11-16 19:41:46,695 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-16 19:41:46,695 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-16 19:41:46,707 WARN L261 TraceCheckSpWp]: Trace formula consists of 656 conjuncts, 391 conjunts are in the unsatisfiable core [2022-11-16 19:41:46,717 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-16 19:41:46,736 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2022-11-16 19:41:46,736 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 15 [2022-11-16 19:41:46,744 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-16 19:41:46,873 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-16 19:41:47,455 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-16 19:41:48,170 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 29 [2022-11-16 19:41:49,025 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 35 [2022-11-16 19:41:49,954 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 43 [2022-11-16 19:41:50,989 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 55 treesize of output 47 [2022-11-16 19:41:52,071 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 65 treesize of output 55 [2022-11-16 19:41:53,312 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 71 treesize of output 59 [2022-11-16 19:41:54,528 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 81 treesize of output 67 [2022-11-16 19:41:55,943 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 91 treesize of output 75 [2022-11-16 19:41:57,461 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 95 treesize of output 77 [2022-11-16 19:41:59,018 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 103 treesize of output 83 [2022-11-16 19:42:00,701 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 113 treesize of output 91 [2022-11-16 19:42:02,630 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 121 treesize of output 97 [2022-11-16 19:42:04,635 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 131 treesize of output 105 [2022-11-16 19:42:06,806 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 141 treesize of output 113 [2022-11-16 19:42:09,047 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 143 treesize of output 113 [2022-11-16 19:42:11,296 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 151 treesize of output 119 [2022-11-16 19:42:13,039 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,042 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,049 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,052 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,071 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,072 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,074 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,075 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,076 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,077 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,078 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,079 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,080 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,081 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,082 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,083 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,084 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-16 19:42:13,230 INFO L321 Elim1Store]: treesize reduction 68, result has 53.1 percent of original size [2022-11-16 19:42:13,230 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 19 select indices, 19 select index equivalence classes, 153 disjoint index pairs (out of 171 index pairs), introduced 19 new quantified variables, introduced 18 case distinctions, treesize of input 155 treesize of output 151 [2022-11-16 19:42:13,243 WARN L718 sPolynomialRelations]: Constructing 262144(two to the power of 18 dual juncts. [2022-11-16 19:42:24,849 WARN L718 sPolynomialRelations]: Constructing 131072(two to the power of 17 dual juncts. [2022-11-16 19:42:30,742 INFO L134 CoverageAnalysis]: Checked inductivity of 648 backedges. 0 proven. 648 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-16 19:42:30,742 INFO L328 TraceCheckSpWp]: Computing backward predicates...