./Ultimate.py --spec ../../sv-benchmarks/c/properties/valid-memsafety.prp --file ../../sv-benchmarks/c/array-memsafety/openbsd_cstpcpy-alloca-1.i --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for memory safety (deref-memtrack) Using default analysis Version 4e7fbc69 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/config/TaipanMemDerefMemtrack.xml -i ../../sv-benchmarks/c/array-memsafety/openbsd_cstpcpy-alloca-1.i -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/config/svcomp-DerefFreeMemtrack-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash f22afdea3888c472e42c0b4bee511704d4ceb9c1e2d9f4db0ce5ffbd6de758f0 --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-4e7fbc6 [2022-11-23 16:10:15,917 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-23 16:10:15,919 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-23 16:10:15,959 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-23 16:10:15,959 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-23 16:10:15,961 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-23 16:10:15,962 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-23 16:10:15,969 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-23 16:10:15,972 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-23 16:10:15,975 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-23 16:10:15,976 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-23 16:10:15,977 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-23 16:10:15,977 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-23 16:10:15,978 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-23 16:10:15,979 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-23 16:10:15,981 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-23 16:10:15,981 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-23 16:10:15,982 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-23 16:10:15,984 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-23 16:10:15,986 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-23 16:10:15,987 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-23 16:10:15,988 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-23 16:10:15,990 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-23 16:10:15,992 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-23 16:10:15,996 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-23 16:10:15,996 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-23 16:10:15,996 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-23 16:10:15,997 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-23 16:10:16,000 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-23 16:10:16,001 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-23 16:10:16,002 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-23 16:10:16,002 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-23 16:10:16,003 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-23 16:10:16,004 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-23 16:10:16,005 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-23 16:10:16,006 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-23 16:10:16,006 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-23 16:10:16,007 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-23 16:10:16,007 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-23 16:10:16,008 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-23 16:10:16,009 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-23 16:10:16,012 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/config/svcomp-DerefFreeMemtrack-32bit-Taipan_Default.epf [2022-11-23 16:10:16,059 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-23 16:10:16,059 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-23 16:10:16,060 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-23 16:10:16,060 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-23 16:10:16,061 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-23 16:10:16,061 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-23 16:10:16,061 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-23 16:10:16,062 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-23 16:10:16,062 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-23 16:10:16,062 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-23 16:10:16,062 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-23 16:10:16,062 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-23 16:10:16,062 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-23 16:10:16,063 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-23 16:10:16,063 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-23 16:10:16,063 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-23 16:10:16,063 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-23 16:10:16,063 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-23 16:10:16,064 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-11-23 16:10:16,064 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-11-23 16:10:16,065 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-23 16:10:16,065 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-23 16:10:16,065 INFO L138 SettingsManager]: * Check unreachability of error function in SV-COMP mode=false [2022-11-23 16:10:16,065 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-23 16:10:16,065 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-23 16:10:16,065 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-23 16:10:16,066 INFO L138 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2022-11-23 16:10:16,066 INFO L138 SettingsManager]: * Bitprecise bitfields=true [2022-11-23 16:10:16,066 INFO L138 SettingsManager]: * SV-COMP memtrack compatibility mode=true [2022-11-23 16:10:16,066 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-23 16:10:16,066 INFO L138 SettingsManager]: * Adapt memory model on pointer casts if necessary=true [2022-11-23 16:10:16,066 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-23 16:10:16,067 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-23 16:10:16,067 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-23 16:10:16,067 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-23 16:10:16,067 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-23 16:10:16,067 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-23 16:10:16,068 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-23 16:10:16,068 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-23 16:10:16,068 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-23 16:10:16,068 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-23 16:10:16,068 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-23 16:10:16,069 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> f22afdea3888c472e42c0b4bee511704d4ceb9c1e2d9f4db0ce5ffbd6de758f0 [2022-11-23 16:10:16,372 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-23 16:10:16,406 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-23 16:10:16,408 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-23 16:10:16,409 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-23 16:10:16,410 INFO L275 PluginConnector]: CDTParser initialized [2022-11-23 16:10:16,411 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/../../sv-benchmarks/c/array-memsafety/openbsd_cstpcpy-alloca-1.i [2022-11-23 16:10:19,500 INFO L500 CDTParser]: Created temporary CDT project at NULL [2022-11-23 16:10:19,715 INFO L351 CDTParser]: Found 1 translation units. [2022-11-23 16:10:19,716 INFO L172 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/sv-benchmarks/c/array-memsafety/openbsd_cstpcpy-alloca-1.i [2022-11-23 16:10:19,728 INFO L394 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/data/1e97a4f5e/7ba28b49c79341e9b606fd16c75857de/FLAG07dc4ebfe [2022-11-23 16:10:19,742 INFO L402 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/data/1e97a4f5e/7ba28b49c79341e9b606fd16c75857de [2022-11-23 16:10:19,745 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-23 16:10:19,746 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-23 16:10:19,748 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-23 16:10:19,748 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-23 16:10:19,752 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-23 16:10:19,752 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 04:10:19" (1/1) ... [2022-11-23 16:10:19,754 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@756dcdb and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:19, skipping insertion in model container [2022-11-23 16:10:19,754 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 04:10:19" (1/1) ... [2022-11-23 16:10:19,761 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-23 16:10:19,793 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-23 16:10:20,075 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-23 16:10:20,093 INFO L203 MainTranslator]: Completed pre-run [2022-11-23 16:10:20,149 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-23 16:10:20,176 INFO L208 MainTranslator]: Completed translation [2022-11-23 16:10:20,177 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20 WrapperNode [2022-11-23 16:10:20,177 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-23 16:10:20,178 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-23 16:10:20,178 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-23 16:10:20,179 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-23 16:10:20,186 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,197 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,218 INFO L138 Inliner]: procedures = 117, calls = 13, calls flagged for inlining = 3, calls inlined = 3, statements flattened = 64 [2022-11-23 16:10:20,218 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-23 16:10:20,219 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-23 16:10:20,219 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-23 16:10:20,219 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-23 16:10:20,227 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,227 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,230 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,231 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,236 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,240 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,241 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,243 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,244 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-23 16:10:20,245 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-23 16:10:20,246 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-23 16:10:20,246 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-23 16:10:20,247 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (1/1) ... [2022-11-23 16:10:20,253 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-23 16:10:20,264 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:20,278 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-23 16:10:20,310 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-23 16:10:20,337 INFO L130 BoogieDeclarations]: Found specification of procedure read~int [2022-11-23 16:10:20,338 INFO L130 BoogieDeclarations]: Found specification of procedure write~int [2022-11-23 16:10:20,338 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2022-11-23 16:10:20,338 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2022-11-23 16:10:20,339 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-23 16:10:20,339 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-23 16:10:20,515 INFO L235 CfgBuilder]: Building ICFG [2022-11-23 16:10:20,517 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-23 16:10:20,751 INFO L276 CfgBuilder]: Performing block encoding [2022-11-23 16:10:20,795 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-23 16:10:20,795 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-23 16:10:20,798 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 04:10:20 BoogieIcfgContainer [2022-11-23 16:10:20,798 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-23 16:10:20,801 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-23 16:10:20,801 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-23 16:10:20,804 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-23 16:10:20,805 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 23.11 04:10:19" (1/3) ... [2022-11-23 16:10:20,806 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@57e8f790 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 04:10:20, skipping insertion in model container [2022-11-23 16:10:20,806 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 04:10:20" (2/3) ... [2022-11-23 16:10:20,806 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@57e8f790 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 04:10:20, skipping insertion in model container [2022-11-23 16:10:20,806 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 04:10:20" (3/3) ... [2022-11-23 16:10:20,808 INFO L112 eAbstractionObserver]: Analyzing ICFG openbsd_cstpcpy-alloca-1.i [2022-11-23 16:10:20,828 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:false NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-23 16:10:20,829 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 9 error locations. [2022-11-23 16:10:20,874 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-23 16:10:20,880 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=false, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@24d46188, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-23 16:10:20,880 INFO L358 AbstractCegarLoop]: Starting to check reachability of 9 error locations. [2022-11-23 16:10:20,885 INFO L276 IsEmpty]: Start isEmpty. Operand has 20 states, 10 states have (on average 2.3) internal successors, (23), 19 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:20,891 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 4 [2022-11-23 16:10:20,891 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:20,892 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1] [2022-11-23 16:10:20,893 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr8ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:20,898 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:20,899 INFO L85 PathProgramCache]: Analyzing trace with hash 105340, now seen corresponding path program 1 times [2022-11-23 16:10:20,909 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:20,910 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1051391050] [2022-11-23 16:10:20,910 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:20,911 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:21,010 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:21,122 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:21,122 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:21,123 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1051391050] [2022-11-23 16:10:21,124 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1051391050] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:21,127 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:21,127 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [1] imperfect sequences [] total 1 [2022-11-23 16:10:21,129 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [621183786] [2022-11-23 16:10:21,130 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:21,135 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-23 16:10:21,135 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:21,161 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-23 16:10:21,162 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-23 16:10:21,164 INFO L87 Difference]: Start difference. First operand has 20 states, 10 states have (on average 2.3) internal successors, (23), 19 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,211 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:21,212 INFO L93 Difference]: Finished difference Result 21 states and 23 transitions. [2022-11-23 16:10:21,213 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-23 16:10:21,214 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 3 [2022-11-23 16:10:21,215 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:21,222 INFO L225 Difference]: With dead ends: 21 [2022-11-23 16:10:21,222 INFO L226 Difference]: Without dead ends: 19 [2022-11-23 16:10:21,224 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 1 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-23 16:10:21,227 INFO L413 NwaCegarLoop]: 14 mSDtfsCounter, 1 mSDsluCounter, 6 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 20 SdHoareTripleChecker+Invalid, 22 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:21,229 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 20 Invalid, 22 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:21,247 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 19 states. [2022-11-23 16:10:21,257 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 19 to 19. [2022-11-23 16:10:21,258 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 19 states, 10 states have (on average 2.0) internal successors, (20), 18 states have internal predecessors, (20), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,259 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 19 states to 19 states and 20 transitions. [2022-11-23 16:10:21,260 INFO L78 Accepts]: Start accepts. Automaton has 19 states and 20 transitions. Word has length 3 [2022-11-23 16:10:21,260 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:21,261 INFO L495 AbstractCegarLoop]: Abstraction has 19 states and 20 transitions. [2022-11-23 16:10:21,261 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,261 INFO L276 IsEmpty]: Start isEmpty. Operand 19 states and 20 transitions. [2022-11-23 16:10:21,261 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 5 [2022-11-23 16:10:21,261 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:21,262 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1] [2022-11-23 16:10:21,262 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-23 16:10:21,262 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:21,263 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:21,263 INFO L85 PathProgramCache]: Analyzing trace with hash 3267810, now seen corresponding path program 1 times [2022-11-23 16:10:21,263 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:21,264 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1102795652] [2022-11-23 16:10:21,264 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:21,264 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:21,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:21,394 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:21,394 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:21,395 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1102795652] [2022-11-23 16:10:21,395 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1102795652] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:21,395 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:21,395 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-23 16:10:21,395 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [842441513] [2022-11-23 16:10:21,396 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:21,397 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-23 16:10:21,397 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:21,397 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-23 16:10:21,398 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-23 16:10:21,398 INFO L87 Difference]: Start difference. First operand 19 states and 20 transitions. Second operand has 3 states, 2 states have (on average 2.0) internal successors, (4), 3 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,441 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:21,442 INFO L93 Difference]: Finished difference Result 17 states and 18 transitions. [2022-11-23 16:10:21,442 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-23 16:10:21,442 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 2.0) internal successors, (4), 3 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 4 [2022-11-23 16:10:21,442 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:21,443 INFO L225 Difference]: With dead ends: 17 [2022-11-23 16:10:21,443 INFO L226 Difference]: Without dead ends: 17 [2022-11-23 16:10:21,443 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-23 16:10:21,445 INFO L413 NwaCegarLoop]: 6 mSDtfsCounter, 13 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 13 SdHoareTripleChecker+Valid, 6 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:21,445 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [13 Valid, 6 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:21,446 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2022-11-23 16:10:21,447 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 17. [2022-11-23 16:10:21,448 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 10 states have (on average 1.8) internal successors, (18), 16 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,448 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 18 transitions. [2022-11-23 16:10:21,449 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 18 transitions. Word has length 4 [2022-11-23 16:10:21,449 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:21,449 INFO L495 AbstractCegarLoop]: Abstraction has 17 states and 18 transitions. [2022-11-23 16:10:21,449 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 2.0) internal successors, (4), 3 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,449 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 18 transitions. [2022-11-23 16:10:21,450 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 5 [2022-11-23 16:10:21,450 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:21,450 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1] [2022-11-23 16:10:21,450 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-23 16:10:21,451 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:21,451 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:21,451 INFO L85 PathProgramCache]: Analyzing trace with hash 3267811, now seen corresponding path program 1 times [2022-11-23 16:10:21,452 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:21,452 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [340123920] [2022-11-23 16:10:21,452 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:21,452 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:21,504 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:21,688 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:21,688 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:21,689 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [340123920] [2022-11-23 16:10:21,689 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [340123920] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:21,689 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:21,689 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-23 16:10:21,690 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1217625623] [2022-11-23 16:10:21,690 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:21,690 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-23 16:10:21,690 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:21,691 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-23 16:10:21,691 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2022-11-23 16:10:21,691 INFO L87 Difference]: Start difference. First operand 17 states and 18 transitions. Second operand has 4 states, 4 states have (on average 1.0) internal successors, (4), 3 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,739 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:21,740 INFO L93 Difference]: Finished difference Result 20 states and 21 transitions. [2022-11-23 16:10:21,740 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-23 16:10:21,741 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 1.0) internal successors, (4), 3 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 4 [2022-11-23 16:10:21,741 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:21,741 INFO L225 Difference]: With dead ends: 20 [2022-11-23 16:10:21,741 INFO L226 Difference]: Without dead ends: 20 [2022-11-23 16:10:21,742 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2022-11-23 16:10:21,743 INFO L413 NwaCegarLoop]: 8 mSDtfsCounter, 20 mSDsluCounter, 8 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 16 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:21,744 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 16 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:21,745 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 20 states. [2022-11-23 16:10:21,760 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 20 to 18. [2022-11-23 16:10:21,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 11 states have (on average 1.7272727272727273) internal successors, (19), 17 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,761 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 19 transitions. [2022-11-23 16:10:21,761 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 19 transitions. Word has length 4 [2022-11-23 16:10:21,761 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:21,761 INFO L495 AbstractCegarLoop]: Abstraction has 18 states and 19 transitions. [2022-11-23 16:10:21,761 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 1.0) internal successors, (4), 3 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:21,762 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 19 transitions. [2022-11-23 16:10:21,762 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 5 [2022-11-23 16:10:21,762 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:21,762 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1] [2022-11-23 16:10:21,762 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-23 16:10:21,763 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:21,763 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:21,764 INFO L85 PathProgramCache]: Analyzing trace with hash 3266345, now seen corresponding path program 1 times [2022-11-23 16:10:21,764 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:21,764 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [361432522] [2022-11-23 16:10:21,764 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:21,765 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:21,815 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:22,206 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:22,206 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:22,206 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [361432522] [2022-11-23 16:10:22,207 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [361432522] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:22,207 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:22,207 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-23 16:10:22,207 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1134750816] [2022-11-23 16:10:22,207 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:22,208 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-23 16:10:22,208 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:22,209 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-23 16:10:22,209 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2022-11-23 16:10:22,209 INFO L87 Difference]: Start difference. First operand 18 states and 19 transitions. Second operand has 5 states, 4 states have (on average 1.0) internal successors, (4), 4 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:22,271 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:22,271 INFO L93 Difference]: Finished difference Result 19 states and 20 transitions. [2022-11-23 16:10:22,272 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-23 16:10:22,272 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 1.0) internal successors, (4), 4 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 4 [2022-11-23 16:10:22,272 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:22,274 INFO L225 Difference]: With dead ends: 19 [2022-11-23 16:10:22,274 INFO L226 Difference]: Without dead ends: 19 [2022-11-23 16:10:22,275 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=17, Unknown=0, NotChecked=0, Total=30 [2022-11-23 16:10:22,284 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 20 mSDsluCounter, 8 mSDsCounter, 0 mSdLazyCounter, 36 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 17 SdHoareTripleChecker+Invalid, 36 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 36 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:22,286 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 17 Invalid, 36 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 36 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:22,286 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 19 states. [2022-11-23 16:10:22,288 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 19 to 19. [2022-11-23 16:10:22,288 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 19 states, 12 states have (on average 1.6666666666666667) internal successors, (20), 18 states have internal predecessors, (20), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:22,289 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 19 states to 19 states and 20 transitions. [2022-11-23 16:10:22,289 INFO L78 Accepts]: Start accepts. Automaton has 19 states and 20 transitions. Word has length 4 [2022-11-23 16:10:22,289 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:22,289 INFO L495 AbstractCegarLoop]: Abstraction has 19 states and 20 transitions. [2022-11-23 16:10:22,290 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 1.0) internal successors, (4), 4 states have internal predecessors, (4), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:22,290 INFO L276 IsEmpty]: Start isEmpty. Operand 19 states and 20 transitions. [2022-11-23 16:10:22,290 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 7 [2022-11-23 16:10:22,290 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:22,291 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1] [2022-11-23 16:10:22,291 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-23 16:10:22,291 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:22,292 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:22,292 INFO L85 PathProgramCache]: Analyzing trace with hash -1155966095, now seen corresponding path program 1 times [2022-11-23 16:10:22,292 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:22,292 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2044695321] [2022-11-23 16:10:22,292 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:22,293 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:22,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:22,475 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:22,475 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:22,476 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2044695321] [2022-11-23 16:10:22,476 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2044695321] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:22,476 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [722697355] [2022-11-23 16:10:22,476 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:22,477 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:22,477 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:22,490 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:22,509 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-23 16:10:22,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:22,580 INFO L263 TraceCheckSpWp]: Trace formula consists of 66 conjuncts, 8 conjunts are in the unsatisfiable core [2022-11-23 16:10:22,585 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:22,741 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:22,741 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:22,859 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 19 [2022-11-23 16:10:22,935 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:22,935 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [722697355] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:22,936 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [2042992614] [2022-11-23 16:10:22,964 INFO L159 IcfgInterpreter]: Started Sifa with 6 locations of interest [2022-11-23 16:10:22,965 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:22,970 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:22,978 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:22,982 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:23,112 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:23,121 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:23,203 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:23,341 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:23,375 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:23,435 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:24,027 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '234#(and (not (< |ULTIMATE.start_main_~i~0#1| |ULTIMATE.start_main_~length2~0#1|)) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |#NULL.offset| 0) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.offset|) (<= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (not (<= (+ |ULTIMATE.start_main_~length2~0#1| |ULTIMATE.start_main_~nondetString~0#1.offset|) (select |#length| |ULTIMATE.start_main_~nondetString~0#1.base|))) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#NULL.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:24,027 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:24,027 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:24,027 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 13 [2022-11-23 16:10:24,028 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [279379410] [2022-11-23 16:10:24,028 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:24,028 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2022-11-23 16:10:24,028 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:24,029 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2022-11-23 16:10:24,029 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2022-11-23 16:10:24,029 INFO L87 Difference]: Start difference. First operand 19 states and 20 transitions. Second operand has 14 states, 13 states have (on average 1.2307692307692308) internal successors, (16), 14 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:24,202 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:24,202 INFO L93 Difference]: Finished difference Result 18 states and 19 transitions. [2022-11-23 16:10:24,202 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-23 16:10:24,202 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 13 states have (on average 1.2307692307692308) internal successors, (16), 14 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 6 [2022-11-23 16:10:24,203 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:24,203 INFO L225 Difference]: With dead ends: 18 [2022-11-23 16:10:24,203 INFO L226 Difference]: Without dead ends: 18 [2022-11-23 16:10:24,204 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 89 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=107, Invalid=355, Unknown=0, NotChecked=0, Total=462 [2022-11-23 16:10:24,204 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 78 mSDsluCounter, 12 mSDsCounter, 0 mSdLazyCounter, 78 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 78 SdHoareTripleChecker+Valid, 17 SdHoareTripleChecker+Invalid, 85 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 78 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:24,205 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [78 Valid, 17 Invalid, 85 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 78 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:24,205 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 18 states. [2022-11-23 16:10:24,207 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 18 to 18. [2022-11-23 16:10:24,207 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 12 states have (on average 1.5833333333333333) internal successors, (19), 17 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:24,207 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 19 transitions. [2022-11-23 16:10:24,207 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 19 transitions. Word has length 6 [2022-11-23 16:10:24,208 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:24,208 INFO L495 AbstractCegarLoop]: Abstraction has 18 states and 19 transitions. [2022-11-23 16:10:24,208 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 13 states have (on average 1.2307692307692308) internal successors, (16), 14 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:24,208 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 19 transitions. [2022-11-23 16:10:24,208 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 7 [2022-11-23 16:10:24,208 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:24,209 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1] [2022-11-23 16:10:24,219 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:24,409 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:24,410 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:24,410 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:24,410 INFO L85 PathProgramCache]: Analyzing trace with hash -1155967561, now seen corresponding path program 1 times [2022-11-23 16:10:24,410 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:24,410 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1029874585] [2022-11-23 16:10:24,411 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:24,411 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:24,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:24,669 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:24,669 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:24,669 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1029874585] [2022-11-23 16:10:24,670 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1029874585] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:24,670 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [775018072] [2022-11-23 16:10:24,670 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:24,670 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:24,670 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:24,671 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:24,695 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-23 16:10:24,736 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:24,737 INFO L263 TraceCheckSpWp]: Trace formula consists of 68 conjuncts, 17 conjunts are in the unsatisfiable core [2022-11-23 16:10:24,739 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:24,791 INFO L321 Elim1Store]: treesize reduction 13, result has 40.9 percent of original size [2022-11-23 16:10:24,791 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 11 treesize of output 17 [2022-11-23 16:10:24,952 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:24,952 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:25,125 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:25,126 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [775018072] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:25,126 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1620405425] [2022-11-23 16:10:25,129 INFO L159 IcfgInterpreter]: Started Sifa with 5 locations of interest [2022-11-23 16:10:25,129 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:25,131 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:25,131 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:25,131 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:25,186 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:25,191 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:25,238 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:25,293 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:25,332 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:25,347 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:25,732 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '325#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= |ULTIMATE.start_main_#t~nondet10#1| 127) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 (+ 128 |ULTIMATE.start_main_#t~nondet10#1|)) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (not (<= (+ |ULTIMATE.start_main_~i~0#1| |ULTIMATE.start_main_~nondetString~0#1.offset| 1) (select |#length| |ULTIMATE.start_main_~nondetString~0#1.base|))) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:25,732 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:25,732 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:25,732 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 4, 4] total 12 [2022-11-23 16:10:25,733 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [141626660] [2022-11-23 16:10:25,733 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:25,733 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2022-11-23 16:10:25,733 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:25,733 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2022-11-23 16:10:25,734 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=69, Invalid=237, Unknown=0, NotChecked=0, Total=306 [2022-11-23 16:10:25,734 INFO L87 Difference]: Start difference. First operand 18 states and 19 transitions. Second operand has 14 states, 13 states have (on average 1.3846153846153846) internal successors, (18), 13 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:25,982 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:25,982 INFO L93 Difference]: Finished difference Result 17 states and 18 transitions. [2022-11-23 16:10:25,983 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-23 16:10:25,983 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 13 states have (on average 1.3846153846153846) internal successors, (18), 13 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 6 [2022-11-23 16:10:25,983 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:25,983 INFO L225 Difference]: With dead ends: 17 [2022-11-23 16:10:25,984 INFO L226 Difference]: Without dead ends: 17 [2022-11-23 16:10:25,984 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 80 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=126, Invalid=380, Unknown=0, NotChecked=0, Total=506 [2022-11-23 16:10:25,985 INFO L413 NwaCegarLoop]: 4 mSDtfsCounter, 89 mSDsluCounter, 8 mSDsCounter, 0 mSdLazyCounter, 44 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 89 SdHoareTripleChecker+Valid, 12 SdHoareTripleChecker+Invalid, 50 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 44 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:25,985 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [89 Valid, 12 Invalid, 50 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 44 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:25,986 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2022-11-23 16:10:25,989 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 16. [2022-11-23 16:10:25,989 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 16 states, 11 states have (on average 1.5454545454545454) internal successors, (17), 15 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:25,989 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 16 states to 16 states and 17 transitions. [2022-11-23 16:10:25,990 INFO L78 Accepts]: Start accepts. Automaton has 16 states and 17 transitions. Word has length 6 [2022-11-23 16:10:25,991 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:25,991 INFO L495 AbstractCegarLoop]: Abstraction has 16 states and 17 transitions. [2022-11-23 16:10:25,992 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 13 states have (on average 1.3846153846153846) internal successors, (18), 13 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:25,992 INFO L276 IsEmpty]: Start isEmpty. Operand 16 states and 17 transitions. [2022-11-23 16:10:25,992 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 8 [2022-11-23 16:10:25,992 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:25,992 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:26,004 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:26,198 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:26,198 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr4REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:26,199 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:26,199 INFO L85 PathProgramCache]: Analyzing trace with hash -1475209664, now seen corresponding path program 1 times [2022-11-23 16:10:26,199 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:26,199 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1881741853] [2022-11-23 16:10:26,200 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:26,200 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:26,213 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:26,247 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:26,248 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:26,248 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1881741853] [2022-11-23 16:10:26,248 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1881741853] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:26,248 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:26,248 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-23 16:10:26,249 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [600063743] [2022-11-23 16:10:26,249 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:26,249 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-23 16:10:26,249 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:26,250 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-23 16:10:26,250 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-23 16:10:26,250 INFO L87 Difference]: Start difference. First operand 16 states and 17 transitions. Second operand has 4 states, 3 states have (on average 2.3333333333333335) internal successors, (7), 4 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:26,286 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:26,286 INFO L93 Difference]: Finished difference Result 15 states and 16 transitions. [2022-11-23 16:10:26,287 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-23 16:10:26,287 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 2.3333333333333335) internal successors, (7), 4 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 7 [2022-11-23 16:10:26,287 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:26,288 INFO L225 Difference]: With dead ends: 15 [2022-11-23 16:10:26,288 INFO L226 Difference]: Without dead ends: 15 [2022-11-23 16:10:26,288 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-23 16:10:26,289 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 15 mSDsluCounter, 1 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 6 SdHoareTripleChecker+Invalid, 21 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:26,289 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 6 Invalid, 21 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:26,290 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 15 states. [2022-11-23 16:10:26,291 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 15 to 15. [2022-11-23 16:10:26,292 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 11 states have (on average 1.4545454545454546) internal successors, (16), 14 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:26,292 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 16 transitions. [2022-11-23 16:10:26,292 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 16 transitions. Word has length 7 [2022-11-23 16:10:26,292 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:26,293 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 16 transitions. [2022-11-23 16:10:26,293 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 2.3333333333333335) internal successors, (7), 4 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:26,293 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 16 transitions. [2022-11-23 16:10:26,293 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 8 [2022-11-23 16:10:26,294 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:26,294 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:26,294 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-23 16:10:26,294 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:26,295 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:26,295 INFO L85 PathProgramCache]: Analyzing trace with hash -1475209663, now seen corresponding path program 1 times [2022-11-23 16:10:26,295 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:26,295 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [620912699] [2022-11-23 16:10:26,296 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:26,296 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:26,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:26,520 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:26,521 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:26,521 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [620912699] [2022-11-23 16:10:26,521 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [620912699] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:26,521 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1190083627] [2022-11-23 16:10:26,521 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:26,522 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:26,522 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:26,523 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:26,551 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-23 16:10:26,611 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:26,612 INFO L263 TraceCheckSpWp]: Trace formula consists of 90 conjuncts, 15 conjunts are in the unsatisfiable core [2022-11-23 16:10:26,614 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:26,672 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:26,672 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:26,693 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 17 [2022-11-23 16:10:26,712 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:26,712 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1190083627] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:26,712 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [560578899] [2022-11-23 16:10:26,714 INFO L159 IcfgInterpreter]: Started Sifa with 7 locations of interest [2022-11-23 16:10:26,714 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:26,715 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:26,715 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:26,715 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:26,752 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:26,756 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:26,792 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:10:26,844 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:26,866 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:26,924 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:26,944 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:27,546 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSifa [560578899] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:27,546 INFO L184 FreeRefinementEngine]: Found 1 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:27,546 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [5, 4, 4] total 13 [2022-11-23 16:10:27,547 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1418432219] [2022-11-23 16:10:27,547 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:27,547 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-11-23 16:10:27,547 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:27,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-11-23 16:10:27,548 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=41, Invalid=141, Unknown=0, NotChecked=0, Total=182 [2022-11-23 16:10:27,548 INFO L87 Difference]: Start difference. First operand 15 states and 16 transitions. Second operand has 7 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:27,621 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:27,621 INFO L93 Difference]: Finished difference Result 19 states and 20 transitions. [2022-11-23 16:10:27,622 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-23 16:10:27,622 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 7 [2022-11-23 16:10:27,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:27,623 INFO L225 Difference]: With dead ends: 19 [2022-11-23 16:10:27,623 INFO L226 Difference]: Without dead ends: 19 [2022-11-23 16:10:27,623 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 10 SyntacticMatches, 2 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 35 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=41, Invalid=141, Unknown=0, NotChecked=0, Total=182 [2022-11-23 16:10:27,624 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 17 mSDsluCounter, 8 mSDsCounter, 0 mSdLazyCounter, 49 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 11 SdHoareTripleChecker+Invalid, 49 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 49 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:27,624 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 11 Invalid, 49 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 49 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:27,624 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 19 states. [2022-11-23 16:10:27,626 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 19 to 16. [2022-11-23 16:10:27,626 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 16 states, 12 states have (on average 1.4166666666666667) internal successors, (17), 15 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:27,626 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 16 states to 16 states and 17 transitions. [2022-11-23 16:10:27,626 INFO L78 Accepts]: Start accepts. Automaton has 16 states and 17 transitions. Word has length 7 [2022-11-23 16:10:27,626 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:27,626 INFO L495 AbstractCegarLoop]: Abstraction has 16 states and 17 transitions. [2022-11-23 16:10:27,627 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 6 states have (on average 1.1666666666666667) internal successors, (7), 6 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:27,627 INFO L276 IsEmpty]: Start isEmpty. Operand 16 states and 17 transitions. [2022-11-23 16:10:27,627 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 9 [2022-11-23 16:10:27,627 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:27,627 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:27,637 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:27,827 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable7 [2022-11-23 16:10:27,828 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr6REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:27,828 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:27,828 INFO L85 PathProgramCache]: Analyzing trace with hash 1513140689, now seen corresponding path program 1 times [2022-11-23 16:10:27,828 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:27,828 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1432624672] [2022-11-23 16:10:27,828 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:27,829 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:27,850 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:27,947 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-23 16:10:27,948 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:27,948 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1432624672] [2022-11-23 16:10:27,948 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1432624672] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:27,948 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:27,948 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-23 16:10:27,949 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1462968728] [2022-11-23 16:10:27,949 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:27,950 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-23 16:10:27,950 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:27,950 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-23 16:10:27,950 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2022-11-23 16:10:27,951 INFO L87 Difference]: Start difference. First operand 16 states and 17 transitions. Second operand has 5 states, 4 states have (on average 2.0) internal successors, (8), 5 states have internal predecessors, (8), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:27,983 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:27,983 INFO L93 Difference]: Finished difference Result 15 states and 16 transitions. [2022-11-23 16:10:27,984 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-23 16:10:27,986 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 2.0) internal successors, (8), 5 states have internal predecessors, (8), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 8 [2022-11-23 16:10:27,986 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:27,987 INFO L225 Difference]: With dead ends: 15 [2022-11-23 16:10:27,987 INFO L226 Difference]: Without dead ends: 15 [2022-11-23 16:10:27,987 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=17, Unknown=0, NotChecked=0, Total=30 [2022-11-23 16:10:27,989 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 12 mSDsluCounter, 2 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 12 SdHoareTripleChecker+Valid, 7 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:27,990 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [12 Valid, 7 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:27,991 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 15 states. [2022-11-23 16:10:27,993 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 15 to 15. [2022-11-23 16:10:27,993 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 12 states have (on average 1.3333333333333333) internal successors, (16), 14 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:27,993 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 16 transitions. [2022-11-23 16:10:27,994 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 16 transitions. Word has length 8 [2022-11-23 16:10:27,994 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:27,994 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 16 transitions. [2022-11-23 16:10:27,995 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 2.0) internal successors, (8), 5 states have internal predecessors, (8), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:27,995 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 16 transitions. [2022-11-23 16:10:27,995 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 9 [2022-11-23 16:10:27,995 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:27,995 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:27,995 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-11-23 16:10:27,996 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:27,996 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:27,996 INFO L85 PathProgramCache]: Analyzing trace with hash 1513140690, now seen corresponding path program 1 times [2022-11-23 16:10:27,996 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:27,997 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1578678376] [2022-11-23 16:10:27,997 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:27,997 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:28,012 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:28,214 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:28,214 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:28,215 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1578678376] [2022-11-23 16:10:28,215 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1578678376] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:28,215 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [773720128] [2022-11-23 16:10:28,215 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:28,215 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:28,216 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:28,219 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:28,254 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2022-11-23 16:10:28,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:28,302 INFO L263 TraceCheckSpWp]: Trace formula consists of 96 conjuncts, 43 conjunts are in the unsatisfiable core [2022-11-23 16:10:28,304 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:28,349 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:10:28,358 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:28,878 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:28,878 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:29,100 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:29,132 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:29,132 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [773720128] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:29,133 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [97596515] [2022-11-23 16:10:29,135 INFO L159 IcfgInterpreter]: Started Sifa with 8 locations of interest [2022-11-23 16:10:29,136 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:29,136 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:29,136 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:29,136 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:29,180 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:29,186 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:29,220 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:29,271 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:29,293 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:29,344 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:29,389 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:30,689 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '593#(and (not (< |ULTIMATE.start_main_~i~0#1| |ULTIMATE.start_main_~length2~0#1|)) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (= (select (select |#memory_int| |ULTIMATE.start_main_~nondetString~0#1.base|) (+ (- 1) |ULTIMATE.start_main_~length2~0#1| |ULTIMATE.start_main_~nondetString~0#1.offset|)) 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.base| |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= (+ |ULTIMATE.start_main_~length2~0#1| |ULTIMATE.start_main_~nondetString~0#1.offset|) (select |#length| |ULTIMATE.start_main_~nondetString~0#1.base|)) (= |ULTIMATE.start_cstpcpy_#in~from#1.offset| |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |#NULL.offset| 0) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (= |ULTIMATE.start_cstpcpy_#in~to#1.offset| |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.offset|) (<= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= 1 (+ |ULTIMATE.start_main_~length2~0#1| |ULTIMATE.start_main_~nondetString~0#1.offset|)) (= |ULTIMATE.start_cstpcpy_#in~from#1.offset| |ULTIMATE.start_cstpcpy_~from#1.offset|) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (= |ULTIMATE.start_cstpcpy_#in~to#1.offset| |ULTIMATE.start_main_~nondetArea~0#1.offset|) (= |ULTIMATE.start_cstpcpy_~to#1.base| |ULTIMATE.start_cstpcpy_#in~to#1.base|) (= |ULTIMATE.start_cstpcpy_#in~from#1.base| |ULTIMATE.start_main_~nondetString~0#1.base|) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |#NULL.offset|) (= |ULTIMATE.start_cstpcpy_~from#1.base| |ULTIMATE.start_cstpcpy_#in~from#1.base|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:30,689 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:30,690 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:30,690 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 7, 7] total 19 [2022-11-23 16:10:30,690 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [651250807] [2022-11-23 16:10:30,690 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:30,691 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2022-11-23 16:10:30,691 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:30,691 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2022-11-23 16:10:30,692 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=138, Invalid=618, Unknown=0, NotChecked=0, Total=756 [2022-11-23 16:10:30,692 INFO L87 Difference]: Start difference. First operand 15 states and 16 transitions. Second operand has 21 states, 20 states have (on average 1.2) internal successors, (24), 20 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:31,385 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:31,386 INFO L93 Difference]: Finished difference Result 38 states and 40 transitions. [2022-11-23 16:10:31,386 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2022-11-23 16:10:31,386 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 20 states have (on average 1.2) internal successors, (24), 20 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 8 [2022-11-23 16:10:31,386 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:31,387 INFO L225 Difference]: With dead ends: 38 [2022-11-23 16:10:31,387 INFO L226 Difference]: Without dead ends: 38 [2022-11-23 16:10:31,388 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 36 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 330 ImplicationChecksByTransitivity, 2.3s TimeCoverageRelationStatistics Valid=275, Invalid=1057, Unknown=0, NotChecked=0, Total=1332 [2022-11-23 16:10:31,388 INFO L413 NwaCegarLoop]: 2 mSDtfsCounter, 142 mSDsluCounter, 20 mSDsCounter, 0 mSdLazyCounter, 106 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 142 SdHoareTripleChecker+Valid, 22 SdHoareTripleChecker+Invalid, 117 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 106 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:31,389 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [142 Valid, 22 Invalid, 117 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 106 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-23 16:10:31,389 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 38 states. [2022-11-23 16:10:31,391 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 38 to 16. [2022-11-23 16:10:31,391 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 16 states, 13 states have (on average 1.3076923076923077) internal successors, (17), 15 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:31,391 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 16 states to 16 states and 17 transitions. [2022-11-23 16:10:31,391 INFO L78 Accepts]: Start accepts. Automaton has 16 states and 17 transitions. Word has length 8 [2022-11-23 16:10:31,392 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:31,392 INFO L495 AbstractCegarLoop]: Abstraction has 16 states and 17 transitions. [2022-11-23 16:10:31,392 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 20 states have (on average 1.2) internal successors, (24), 20 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:31,392 INFO L276 IsEmpty]: Start isEmpty. Operand 16 states and 17 transitions. [2022-11-23 16:10:31,392 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 11 [2022-11-23 16:10:31,393 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:31,393 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:31,403 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:31,598 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2022-11-23 16:10:31,599 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:31,599 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:31,599 INFO L85 PathProgramCache]: Analyzing trace with hash -1865709960, now seen corresponding path program 1 times [2022-11-23 16:10:31,599 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:31,600 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1433207180] [2022-11-23 16:10:31,600 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:31,600 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:31,616 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:31,865 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:31,866 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:31,866 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1433207180] [2022-11-23 16:10:31,866 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1433207180] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:31,866 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [792877279] [2022-11-23 16:10:31,866 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:31,866 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:31,867 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:31,868 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:31,891 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2022-11-23 16:10:31,970 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:31,972 INFO L263 TraceCheckSpWp]: Trace formula consists of 113 conjuncts, 23 conjunts are in the unsatisfiable core [2022-11-23 16:10:31,973 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:32,054 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:32,095 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:32,097 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:10:32,098 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 10 [2022-11-23 16:10:32,104 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:32,105 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:32,150 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 11 [2022-11-23 16:10:32,162 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 22 treesize of output 20 [2022-11-23 16:10:32,323 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:32,323 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [792877279] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:32,324 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1138333737] [2022-11-23 16:10:32,326 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:10:32,326 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:32,326 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:32,327 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:32,327 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:32,383 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:32,387 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:32,426 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:10:32,479 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:32,506 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:32,566 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:32,613 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:32,648 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:10:32,649 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:10:32,764 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:32,765 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:32,769 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:32,771 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:32,800 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:10:32,800 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:10:32,873 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:10:32,873 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:10:32,965 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:34,535 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '743#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:34,535 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:34,535 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:34,535 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 8, 8] total 17 [2022-11-23 16:10:34,535 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1958573538] [2022-11-23 16:10:34,535 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:34,536 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 17 states [2022-11-23 16:10:34,536 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:34,536 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 17 interpolants. [2022-11-23 16:10:34,537 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=75, Invalid=525, Unknown=0, NotChecked=0, Total=600 [2022-11-23 16:10:34,537 INFO L87 Difference]: Start difference. First operand 16 states and 17 transitions. Second operand has 17 states, 17 states have (on average 1.2941176470588236) internal successors, (22), 17 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:34,841 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:34,841 INFO L93 Difference]: Finished difference Result 26 states and 27 transitions. [2022-11-23 16:10:34,842 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-23 16:10:34,842 INFO L78 Accepts]: Start accepts. Automaton has has 17 states, 17 states have (on average 1.2941176470588236) internal successors, (22), 17 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 10 [2022-11-23 16:10:34,842 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:34,842 INFO L225 Difference]: With dead ends: 26 [2022-11-23 16:10:34,842 INFO L226 Difference]: Without dead ends: 26 [2022-11-23 16:10:34,843 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 41 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 176 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=141, Invalid=789, Unknown=0, NotChecked=0, Total=930 [2022-11-23 16:10:34,843 INFO L413 NwaCegarLoop]: 4 mSDtfsCounter, 57 mSDsluCounter, 29 mSDsCounter, 0 mSdLazyCounter, 75 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 57 SdHoareTripleChecker+Valid, 33 SdHoareTripleChecker+Invalid, 84 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 75 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:34,844 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [57 Valid, 33 Invalid, 84 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 75 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:34,844 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 26 states. [2022-11-23 16:10:34,845 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 26 to 22. [2022-11-23 16:10:34,845 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 22 states, 19 states have (on average 1.263157894736842) internal successors, (24), 21 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:34,846 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 22 states to 22 states and 24 transitions. [2022-11-23 16:10:34,846 INFO L78 Accepts]: Start accepts. Automaton has 22 states and 24 transitions. Word has length 10 [2022-11-23 16:10:34,846 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:34,846 INFO L495 AbstractCegarLoop]: Abstraction has 22 states and 24 transitions. [2022-11-23 16:10:34,846 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 17 states, 17 states have (on average 1.2941176470588236) internal successors, (22), 17 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:34,846 INFO L276 IsEmpty]: Start isEmpty. Operand 22 states and 24 transitions. [2022-11-23 16:10:34,846 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2022-11-23 16:10:34,846 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:34,847 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:34,858 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:35,053 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2022-11-23 16:10:35,053 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr8ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:35,054 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:35,054 INFO L85 PathProgramCache]: Analyzing trace with hash -2002450371, now seen corresponding path program 1 times [2022-11-23 16:10:35,054 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:35,054 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [46858256] [2022-11-23 16:10:35,054 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:35,054 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:35,066 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:35,179 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-23 16:10:35,179 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:35,179 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [46858256] [2022-11-23 16:10:35,179 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [46858256] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 16:10:35,180 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 16:10:35,180 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-23 16:10:35,180 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1770993191] [2022-11-23 16:10:35,180 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 16:10:35,181 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-23 16:10:35,181 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:35,182 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-23 16:10:35,182 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-23 16:10:35,182 INFO L87 Difference]: Start difference. First operand 22 states and 24 transitions. Second operand has 4 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:35,204 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:35,204 INFO L93 Difference]: Finished difference Result 21 states and 23 transitions. [2022-11-23 16:10:35,204 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-23 16:10:35,205 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 11 [2022-11-23 16:10:35,205 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:35,207 INFO L225 Difference]: With dead ends: 21 [2022-11-23 16:10:35,207 INFO L226 Difference]: Without dead ends: 15 [2022-11-23 16:10:35,207 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-23 16:10:35,208 INFO L413 NwaCegarLoop]: 4 mSDtfsCounter, 3 mSDsluCounter, 4 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 8 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:35,208 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 8 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 16:10:35,209 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 15 states. [2022-11-23 16:10:35,212 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 15 to 15. [2022-11-23 16:10:35,213 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 13 states have (on average 1.2307692307692308) internal successors, (16), 14 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:35,213 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 16 transitions. [2022-11-23 16:10:35,213 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 16 transitions. Word has length 11 [2022-11-23 16:10:35,213 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:35,213 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 16 transitions. [2022-11-23 16:10:35,214 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:35,214 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 16 transitions. [2022-11-23 16:10:35,214 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2022-11-23 16:10:35,215 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:35,215 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:35,215 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2022-11-23 16:10:35,215 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:35,215 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:35,216 INFO L85 PathProgramCache]: Analyzing trace with hash -346987898, now seen corresponding path program 2 times [2022-11-23 16:10:35,216 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:35,216 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1264341456] [2022-11-23 16:10:35,216 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:35,216 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:35,242 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:35,487 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:35,487 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:35,488 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1264341456] [2022-11-23 16:10:35,488 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1264341456] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:35,488 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [34690710] [2022-11-23 16:10:35,488 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:10:35,488 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:35,488 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:35,490 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:35,515 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2022-11-23 16:10:35,574 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2022-11-23 16:10:35,574 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:10:35,575 INFO L263 TraceCheckSpWp]: Trace formula consists of 113 conjuncts, 25 conjunts are in the unsatisfiable core [2022-11-23 16:10:35,579 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:35,630 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:35,678 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:10:35,678 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 19 [2022-11-23 16:10:35,765 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-23 16:10:35,765 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:35,876 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 11 [2022-11-23 16:10:35,884 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 22 treesize of output 20 [2022-11-23 16:10:35,891 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 23 [2022-11-23 16:10:35,926 INFO L134 CoverageAnalysis]: Checked inductivity of 5 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-23 16:10:35,926 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [34690710] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:35,926 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [985008856] [2022-11-23 16:10:35,929 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:10:35,929 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:35,929 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:35,930 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:35,930 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:35,967 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:35,971 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:36,013 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:10:36,061 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:36,085 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:36,140 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:36,196 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:36,219 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:10:36,220 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:10:36,292 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:36,296 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:36,297 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:36,298 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:36,327 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:10:36,327 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:10:36,401 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:10:36,402 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:10:36,520 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:38,054 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '931#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:38,054 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:38,054 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:38,054 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 5, 5] total 13 [2022-11-23 16:10:38,054 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1633656768] [2022-11-23 16:10:38,055 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:38,055 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2022-11-23 16:10:38,055 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:38,055 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2022-11-23 16:10:38,056 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=73, Invalid=389, Unknown=0, NotChecked=0, Total=462 [2022-11-23 16:10:38,056 INFO L87 Difference]: Start difference. First operand 15 states and 16 transitions. Second operand has 14 states, 13 states have (on average 2.0) internal successors, (26), 14 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:38,287 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:38,287 INFO L93 Difference]: Finished difference Result 21 states and 22 transitions. [2022-11-23 16:10:38,287 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-23 16:10:38,288 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 13 states have (on average 2.0) internal successors, (26), 14 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 12 [2022-11-23 16:10:38,288 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:38,288 INFO L225 Difference]: With dead ends: 21 [2022-11-23 16:10:38,288 INFO L226 Difference]: Without dead ends: 21 [2022-11-23 16:10:38,289 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 19 SyntacticMatches, 1 SemanticMatches, 25 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 109 ImplicationChecksByTransitivity, 1.8s TimeCoverageRelationStatistics Valid=121, Invalid=581, Unknown=0, NotChecked=0, Total=702 [2022-11-23 16:10:38,289 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 53 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 90 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 53 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 95 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 90 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:38,289 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [53 Valid, 1 Invalid, 95 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 90 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:38,290 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 21 states. [2022-11-23 16:10:38,291 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 21 to 17. [2022-11-23 16:10:38,291 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 15 states have (on average 1.2) internal successors, (18), 16 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:38,292 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 18 transitions. [2022-11-23 16:10:38,292 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 18 transitions. Word has length 12 [2022-11-23 16:10:38,292 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:38,292 INFO L495 AbstractCegarLoop]: Abstraction has 17 states and 18 transitions. [2022-11-23 16:10:38,292 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 13 states have (on average 2.0) internal successors, (26), 14 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:38,292 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 18 transitions. [2022-11-23 16:10:38,292 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2022-11-23 16:10:38,293 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:38,293 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 16:10:38,303 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:38,498 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2022-11-23 16:10:38,498 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:38,499 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:38,499 INFO L85 PathProgramCache]: Analyzing trace with hash 2128277037, now seen corresponding path program 1 times [2022-11-23 16:10:38,499 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:38,499 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [716902901] [2022-11-23 16:10:38,499 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:38,499 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:38,518 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:38,882 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 6 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:38,882 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:38,883 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [716902901] [2022-11-23 16:10:38,883 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [716902901] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:38,883 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1780793869] [2022-11-23 16:10:38,883 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:38,883 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:38,883 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:38,887 INFO L229 MonitoredProcess]: Starting monitored process 8 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:38,891 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2022-11-23 16:10:38,969 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:38,970 INFO L263 TraceCheckSpWp]: Trace formula consists of 132 conjuncts, 32 conjunts are in the unsatisfiable core [2022-11-23 16:10:38,972 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:39,015 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:39,016 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 11 [2022-11-23 16:10:39,019 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:10:39,179 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 1 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:39,179 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:39,412 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:39,443 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:39,443 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1780793869] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:39,444 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1768123409] [2022-11-23 16:10:39,446 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:10:39,446 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:39,446 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:39,446 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:39,447 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:39,478 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:39,483 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:39,526 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:39,566 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:39,590 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:39,648 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:39,727 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:39,759 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:10:39,759 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:10:39,851 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:39,852 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:39,854 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:39,856 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:39,889 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:10:39,890 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:10:39,964 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:10:39,964 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:10:40,043 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:41,819 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1081#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:41,820 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:41,820 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:41,820 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 7, 7] total 20 [2022-11-23 16:10:41,820 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1675630298] [2022-11-23 16:10:41,820 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:41,820 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2022-11-23 16:10:41,820 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:41,821 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2022-11-23 16:10:41,821 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=119, Invalid=751, Unknown=0, NotChecked=0, Total=870 [2022-11-23 16:10:41,822 INFO L87 Difference]: Start difference. First operand 17 states and 18 transitions. Second operand has 22 states, 21 states have (on average 1.8571428571428572) internal successors, (39), 21 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:42,282 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:42,282 INFO L93 Difference]: Finished difference Result 19 states and 20 transitions. [2022-11-23 16:10:42,282 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-23 16:10:42,283 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 21 states have (on average 1.8571428571428572) internal successors, (39), 21 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2022-11-23 16:10:42,283 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:42,283 INFO L225 Difference]: With dead ends: 19 [2022-11-23 16:10:42,287 INFO L226 Difference]: Without dead ends: 19 [2022-11-23 16:10:42,288 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 50 GetRequests, 15 SyntacticMatches, 1 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 222 ImplicationChecksByTransitivity, 2.4s TimeCoverageRelationStatistics Valid=208, Invalid=1052, Unknown=0, NotChecked=0, Total=1260 [2022-11-23 16:10:42,288 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 91 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 145 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 91 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 152 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 145 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:42,290 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [91 Valid, 0 Invalid, 152 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 145 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:42,290 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 19 states. [2022-11-23 16:10:42,294 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 19 to 18. [2022-11-23 16:10:42,294 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 16 states have (on average 1.1875) internal successors, (19), 17 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:42,297 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 19 transitions. [2022-11-23 16:10:42,298 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 19 transitions. Word has length 13 [2022-11-23 16:10:42,298 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:42,298 INFO L495 AbstractCegarLoop]: Abstraction has 18 states and 19 transitions. [2022-11-23 16:10:42,298 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 21 states have (on average 1.8571428571428572) internal successors, (39), 21 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:42,299 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 19 transitions. [2022-11-23 16:10:42,299 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2022-11-23 16:10:42,299 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:42,299 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 1, 1, 1, 1, 1] [2022-11-23 16:10:42,311 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:42,504 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 8 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2022-11-23 16:10:42,505 INFO L420 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:42,505 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:42,505 INFO L85 PathProgramCache]: Analyzing trace with hash 869799955, now seen corresponding path program 3 times [2022-11-23 16:10:42,505 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:42,505 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1484425633] [2022-11-23 16:10:42,505 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:42,505 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:42,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:43,031 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:43,031 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:43,032 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1484425633] [2022-11-23 16:10:43,032 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1484425633] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:43,032 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [961616157] [2022-11-23 16:10:43,032 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:10:43,032 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:43,032 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:43,035 INFO L229 MonitoredProcess]: Starting monitored process 9 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:43,059 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2022-11-23 16:10:43,136 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:10:43,136 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:10:43,138 INFO L263 TraceCheckSpWp]: Trace formula consists of 149 conjuncts, 48 conjunts are in the unsatisfiable core [2022-11-23 16:10:43,140 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:43,305 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:10:43,413 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:43,422 INFO L321 Elim1Store]: treesize reduction 17, result has 29.2 percent of original size [2022-11-23 16:10:43,422 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 25 treesize of output 27 [2022-11-23 16:10:43,584 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:43,586 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:10:43,586 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:10:43,590 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:43,590 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:43,741 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 174 treesize of output 162 [2022-11-23 16:10:43,751 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:10:43,751 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 163 treesize of output 147 [2022-11-23 16:10:43,988 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:43,988 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [961616157] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:43,989 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1716144436] [2022-11-23 16:10:43,990 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:10:43,990 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:43,991 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:43,991 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:43,991 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:44,026 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:44,031 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:44,068 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:10:44,110 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:44,131 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:44,174 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:44,235 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:44,257 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:10:44,257 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:10:44,340 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:44,341 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:44,343 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:44,346 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:44,374 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:10:44,375 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:10:44,451 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:10:44,451 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:10:44,543 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:46,157 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1250#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:46,158 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:46,158 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:46,158 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 12, 12] total 28 [2022-11-23 16:10:46,158 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1060972534] [2022-11-23 16:10:46,158 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:46,158 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2022-11-23 16:10:46,159 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:46,159 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2022-11-23 16:10:46,160 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=118, Invalid=1142, Unknown=0, NotChecked=0, Total=1260 [2022-11-23 16:10:46,160 INFO L87 Difference]: Start difference. First operand 18 states and 19 transitions. Second operand has 28 states, 28 states have (on average 1.2857142857142858) internal successors, (36), 28 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:46,922 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:46,922 INFO L93 Difference]: Finished difference Result 28 states and 29 transitions. [2022-11-23 16:10:46,923 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2022-11-23 16:10:46,923 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 28 states have (on average 1.2857142857142858) internal successors, (36), 28 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 15 [2022-11-23 16:10:46,923 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:46,923 INFO L225 Difference]: With dead ends: 28 [2022-11-23 16:10:46,923 INFO L226 Difference]: Without dead ends: 21 [2022-11-23 16:10:46,924 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 20 SyntacticMatches, 0 SemanticMatches, 46 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 552 ImplicationChecksByTransitivity, 2.7s TimeCoverageRelationStatistics Valid=271, Invalid=1985, Unknown=0, NotChecked=0, Total=2256 [2022-11-23 16:10:46,925 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 40 mSDsluCounter, 42 mSDsCounter, 0 mSdLazyCounter, 226 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 40 SdHoareTripleChecker+Valid, 45 SdHoareTripleChecker+Invalid, 244 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 226 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:46,925 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [40 Valid, 45 Invalid, 244 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 226 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-23 16:10:46,925 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 21 states. [2022-11-23 16:10:46,926 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 21 to 20. [2022-11-23 16:10:46,927 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 20 states, 18 states have (on average 1.1666666666666667) internal successors, (21), 19 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:46,927 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 20 states to 20 states and 21 transitions. [2022-11-23 16:10:46,927 INFO L78 Accepts]: Start accepts. Automaton has 20 states and 21 transitions. Word has length 15 [2022-11-23 16:10:46,927 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:46,927 INFO L495 AbstractCegarLoop]: Abstraction has 20 states and 21 transitions. [2022-11-23 16:10:46,927 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 28 states have (on average 1.2857142857142858) internal successors, (36), 28 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:46,927 INFO L276 IsEmpty]: Start isEmpty. Operand 20 states and 21 transitions. [2022-11-23 16:10:46,928 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2022-11-23 16:10:46,928 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:46,928 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 1, 1, 1, 1, 1] [2022-11-23 16:10:46,940 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:47,133 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14,9 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:47,134 INFO L420 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:47,134 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:47,134 INFO L85 PathProgramCache]: Analyzing trace with hash 645895365, now seen corresponding path program 4 times [2022-11-23 16:10:47,134 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:47,134 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1908427789] [2022-11-23 16:10:47,135 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:47,135 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:47,150 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:47,439 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 12 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:47,440 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:47,440 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1908427789] [2022-11-23 16:10:47,440 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1908427789] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:47,440 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1274241397] [2022-11-23 16:10:47,440 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:10:47,440 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:47,440 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:47,441 INFO L229 MonitoredProcess]: Starting monitored process 10 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:47,445 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2022-11-23 16:10:47,532 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:47,533 INFO L263 TraceCheckSpWp]: Trace formula consists of 162 conjuncts, 22 conjunts are in the unsatisfiable core [2022-11-23 16:10:47,534 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:47,642 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 6 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:47,642 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:47,772 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 5 [2022-11-23 16:10:47,812 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 6 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:47,815 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1274241397] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:47,815 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1138045535] [2022-11-23 16:10:47,818 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:10:47,818 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:47,818 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:47,818 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:47,818 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:47,853 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:47,858 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:47,893 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:10:47,931 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:47,957 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:48,015 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:48,065 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:48,094 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:10:48,094 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:10:48,167 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:48,170 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:48,171 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:48,172 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:48,203 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:10:48,203 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:10:48,288 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:10:48,289 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:10:48,371 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:49,968 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1446#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:49,968 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:49,968 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:49,968 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 9, 9] total 19 [2022-11-23 16:10:49,969 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [70656136] [2022-11-23 16:10:49,969 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:49,969 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2022-11-23 16:10:49,969 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:49,970 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2022-11-23 16:10:49,970 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=107, Invalid=649, Unknown=0, NotChecked=0, Total=756 [2022-11-23 16:10:49,970 INFO L87 Difference]: Start difference. First operand 20 states and 21 transitions. Second operand has 20 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 20 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:50,219 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:50,219 INFO L93 Difference]: Finished difference Result 26 states and 27 transitions. [2022-11-23 16:10:50,220 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2022-11-23 16:10:50,220 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 20 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 17 [2022-11-23 16:10:50,220 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:50,220 INFO L225 Difference]: With dead ends: 26 [2022-11-23 16:10:50,220 INFO L226 Difference]: Without dead ends: 26 [2022-11-23 16:10:50,221 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 62 GetRequests, 28 SyntacticMatches, 3 SemanticMatches, 31 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 284 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=177, Invalid=879, Unknown=0, NotChecked=0, Total=1056 [2022-11-23 16:10:50,221 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 116 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 154 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 116 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 162 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 154 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:50,221 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [116 Valid, 1 Invalid, 162 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 154 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:10:50,222 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 26 states. [2022-11-23 16:10:50,223 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 26 to 22. [2022-11-23 16:10:50,223 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 22 states, 20 states have (on average 1.15) internal successors, (23), 21 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:50,223 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 22 states to 22 states and 23 transitions. [2022-11-23 16:10:50,223 INFO L78 Accepts]: Start accepts. Automaton has 22 states and 23 transitions. Word has length 17 [2022-11-23 16:10:50,224 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:50,224 INFO L495 AbstractCegarLoop]: Abstraction has 22 states and 23 transitions. [2022-11-23 16:10:50,224 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 20 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:50,224 INFO L276 IsEmpty]: Start isEmpty. Operand 22 states and 23 transitions. [2022-11-23 16:10:50,224 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2022-11-23 16:10:50,224 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:50,224 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 2, 2, 1, 1, 1, 1, 1] [2022-11-23 16:10:50,239 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2022-11-23 16:10:50,430 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2022-11-23 16:10:50,430 INFO L420 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:50,430 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:50,430 INFO L85 PathProgramCache]: Analyzing trace with hash -1452080178, now seen corresponding path program 2 times [2022-11-23 16:10:50,431 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:50,431 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1304701399] [2022-11-23 16:10:50,431 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:50,431 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:50,448 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:50,866 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 1 proven. 15 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:50,867 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:50,867 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1304701399] [2022-11-23 16:10:50,867 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1304701399] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:50,867 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1756305754] [2022-11-23 16:10:50,867 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:10:50,867 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:50,867 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:50,868 INFO L229 MonitoredProcess]: Starting monitored process 11 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:50,877 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2022-11-23 16:10:50,974 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2022-11-23 16:10:50,974 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:10:50,976 INFO L263 TraceCheckSpWp]: Trace formula consists of 155 conjuncts, 66 conjunts are in the unsatisfiable core [2022-11-23 16:10:50,978 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:51,036 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:10:51,044 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 11 [2022-11-23 16:10:51,230 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-23 16:10:51,411 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 26 treesize of output 26 [2022-11-23 16:10:51,538 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:51,557 INFO L321 Elim1Store]: treesize reduction 4, result has 85.2 percent of original size [2022-11-23 16:10:51,557 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 2 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 2 case distinctions, treesize of input 30 treesize of output 33 [2022-11-23 16:10:51,922 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2022-11-23 16:10:51,922 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:10:52,436 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:10:52,437 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 2 new quantified variables, introduced 2 case distinctions, treesize of input 37 treesize of output 36 [2022-11-23 16:10:52,467 INFO L321 Elim1Store]: treesize reduction 17, result has 54.1 percent of original size [2022-11-23 16:10:52,468 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 2 case distinctions, treesize of input 26 treesize of output 31 [2022-11-23 16:10:52,481 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:52,487 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:10:52,488 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 3 select indices, 3 select index equivalence classes, 2 disjoint index pairs (out of 3 index pairs), introduced 3 new quantified variables, introduced 1 case distinctions, treesize of input 44 treesize of output 35 [2022-11-23 16:10:52,493 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:10:52,764 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:52,773 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:10:52,824 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2022-11-23 16:10:52,824 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1756305754] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:10:52,824 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [258133220] [2022-11-23 16:10:52,827 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:10:52,827 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:10:52,828 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:10:52,828 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:10:52,828 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:10:52,862 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:52,865 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:10:52,906 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:10:52,948 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:52,970 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:53,025 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:10:53,068 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:53,091 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:10:53,091 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:10:53,162 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:53,165 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:53,167 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:10:53,168 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:53,169 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:10:53,199 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:10:53,199 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:10:53,293 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:10:53,294 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:10:53,368 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:10:55,293 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1644#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:10:55,293 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:10:55,293 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:10:55,294 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 9, 10] total 28 [2022-11-23 16:10:55,294 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1291148771] [2022-11-23 16:10:55,294 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:10:55,294 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2022-11-23 16:10:55,294 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:10:55,295 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2022-11-23 16:10:55,295 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=166, Invalid=1240, Unknown=0, NotChecked=0, Total=1406 [2022-11-23 16:10:55,295 INFO L87 Difference]: Start difference. First operand 22 states and 23 transitions. Second operand has 30 states, 29 states have (on average 1.5862068965517242) internal successors, (46), 29 states have internal predecessors, (46), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:59,059 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:10:59,059 INFO L93 Difference]: Finished difference Result 35 states and 36 transitions. [2022-11-23 16:10:59,060 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2022-11-23 16:10:59,060 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 29 states have (on average 1.5862068965517242) internal successors, (46), 29 states have internal predecessors, (46), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2022-11-23 16:10:59,060 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:10:59,060 INFO L225 Difference]: With dead ends: 35 [2022-11-23 16:10:59,060 INFO L226 Difference]: Without dead ends: 35 [2022-11-23 16:10:59,061 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 77 GetRequests, 25 SyntacticMatches, 0 SemanticMatches, 52 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 502 ImplicationChecksByTransitivity, 6.3s TimeCoverageRelationStatistics Valid=500, Invalid=2362, Unknown=0, NotChecked=0, Total=2862 [2022-11-23 16:10:59,062 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 245 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 246 mSolverCounterSat, 33 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 245 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 281 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 246 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-23 16:10:59,062 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [245 Valid, 0 Invalid, 281 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 246 Invalid, 2 Unknown, 0 Unchecked, 0.3s Time] [2022-11-23 16:10:59,062 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 35 states. [2022-11-23 16:10:59,064 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 35 to 32. [2022-11-23 16:10:59,064 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 32 states, 30 states have (on average 1.2) internal successors, (36), 31 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:59,065 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 32 states to 32 states and 36 transitions. [2022-11-23 16:10:59,065 INFO L78 Accepts]: Start accepts. Automaton has 32 states and 36 transitions. Word has length 18 [2022-11-23 16:10:59,065 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:10:59,065 INFO L495 AbstractCegarLoop]: Abstraction has 32 states and 36 transitions. [2022-11-23 16:10:59,065 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 29 states have (on average 1.5862068965517242) internal successors, (46), 29 states have internal predecessors, (46), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:10:59,065 INFO L276 IsEmpty]: Start isEmpty. Operand 32 states and 36 transitions. [2022-11-23 16:10:59,066 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2022-11-23 16:10:59,066 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:10:59,066 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 1, 1, 1, 1, 1] [2022-11-23 16:10:59,076 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2022-11-23 16:10:59,267 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2022-11-23 16:10:59,267 INFO L420 AbstractCegarLoop]: === Iteration 18 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:10:59,267 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:10:59,267 INFO L85 PathProgramCache]: Analyzing trace with hash 415320436, now seen corresponding path program 5 times [2022-11-23 16:10:59,268 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:10:59,268 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [308306426] [2022-11-23 16:10:59,268 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:10:59,268 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:10:59,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:10:59,765 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 3 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:10:59,765 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:10:59,766 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [308306426] [2022-11-23 16:10:59,766 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [308306426] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:10:59,766 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [976488320] [2022-11-23 16:10:59,766 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:10:59,766 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:10:59,766 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:10:59,771 INFO L229 MonitoredProcess]: Starting monitored process 12 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:10:59,791 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2022-11-23 16:10:59,907 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2022-11-23 16:10:59,908 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:10:59,910 INFO L263 TraceCheckSpWp]: Trace formula consists of 185 conjuncts, 56 conjunts are in the unsatisfiable core [2022-11-23 16:10:59,913 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:10:59,921 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:11:00,055 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:11:00,072 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:11:00,116 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:11:00,160 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2022-11-23 16:11:00,164 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 3 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:00,164 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:11:00,192 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_350 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_350) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:11:00,248 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:00,249 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:11:00,256 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:00,256 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:11:00,264 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:11:00,452 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 3 proven. 14 refuted. 0 times theorem prover too weak. 0 trivial. 4 not checked. [2022-11-23 16:11:00,452 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [976488320] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:11:00,452 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [175868199] [2022-11-23 16:11:00,454 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:11:00,454 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:11:00,454 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:11:00,454 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:11:00,454 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:11:00,485 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:00,491 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:11:00,517 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:11:00,560 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:00,588 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:00,642 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:00,688 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:00,719 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:11:00,719 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:11:00,794 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:00,797 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:00,798 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:00,800 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:00,831 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:11:00,832 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:11:00,904 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:11:00,904 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:11:01,010 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:11:02,698 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1892#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:11:02,698 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:11:02,699 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:11:02,699 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 13, 13] total 27 [2022-11-23 16:11:02,699 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1096323085] [2022-11-23 16:11:02,699 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:11:02,699 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2022-11-23 16:11:02,699 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:11:02,700 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2022-11-23 16:11:02,700 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=112, Invalid=1006, Unknown=8, NotChecked=64, Total=1190 [2022-11-23 16:11:02,701 INFO L87 Difference]: Start difference. First operand 32 states and 36 transitions. Second operand has 27 states, 27 states have (on average 1.6296296296296295) internal successors, (44), 27 states have internal predecessors, (44), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:03,242 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:11:03,242 INFO L93 Difference]: Finished difference Result 45 states and 49 transitions. [2022-11-23 16:11:03,243 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2022-11-23 16:11:03,243 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 27 states have (on average 1.6296296296296295) internal successors, (44), 27 states have internal predecessors, (44), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2022-11-23 16:11:03,243 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:11:03,245 INFO L225 Difference]: With dead ends: 45 [2022-11-23 16:11:03,245 INFO L226 Difference]: Without dead ends: 35 [2022-11-23 16:11:03,245 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 80 GetRequests, 37 SyntacticMatches, 2 SemanticMatches, 41 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 399 ImplicationChecksByTransitivity, 2.4s TimeCoverageRelationStatistics Valid=200, Invalid=1516, Unknown=10, NotChecked=80, Total=1806 [2022-11-23 16:11:03,246 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 34 mSDsluCounter, 42 mSDsCounter, 0 mSdLazyCounter, 283 mSolverCounterSat, 10 mSolverCounterUnsat, 4 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 45 SdHoareTripleChecker+Invalid, 316 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 283 IncrementalHoareTripleChecker+Invalid, 4 IncrementalHoareTripleChecker+Unknown, 19 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-23 16:11:03,246 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 45 Invalid, 316 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 283 Invalid, 4 Unknown, 19 Unchecked, 0.3s Time] [2022-11-23 16:11:03,247 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 35 states. [2022-11-23 16:11:03,249 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 35 to 34. [2022-11-23 16:11:03,249 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 34 states, 32 states have (on average 1.1875) internal successors, (38), 33 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:03,249 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 34 states to 34 states and 38 transitions. [2022-11-23 16:11:03,250 INFO L78 Accepts]: Start accepts. Automaton has 34 states and 38 transitions. Word has length 20 [2022-11-23 16:11:03,250 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:11:03,250 INFO L495 AbstractCegarLoop]: Abstraction has 34 states and 38 transitions. [2022-11-23 16:11:03,250 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 27 states have (on average 1.6296296296296295) internal successors, (44), 27 states have internal predecessors, (44), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:03,250 INFO L276 IsEmpty]: Start isEmpty. Operand 34 states and 38 transitions. [2022-11-23 16:11:03,251 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2022-11-23 16:11:03,251 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:11:03,251 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 1, 1, 1, 1, 1] [2022-11-23 16:11:03,257 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2022-11-23 16:11:03,457 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable17 [2022-11-23 16:11:03,457 INFO L420 AbstractCegarLoop]: === Iteration 19 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:11:03,457 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:11:03,457 INFO L85 PathProgramCache]: Analyzing trace with hash 2133191682, now seen corresponding path program 6 times [2022-11-23 16:11:03,458 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:11:03,458 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [982475892] [2022-11-23 16:11:03,458 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:11:03,458 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:11:03,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:11:03,842 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 6 proven. 22 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:03,842 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:11:03,843 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [982475892] [2022-11-23 16:11:03,843 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [982475892] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:11:03,843 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [783490871] [2022-11-23 16:11:03,843 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:11:03,843 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:11:03,843 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:11:03,844 INFO L229 MonitoredProcess]: Starting monitored process 13 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:11:03,846 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2022-11-23 16:11:03,963 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:11:03,964 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:11:03,965 INFO L263 TraceCheckSpWp]: Trace formula consists of 198 conjuncts, 28 conjunts are in the unsatisfiable core [2022-11-23 16:11:03,967 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:11:03,986 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2022-11-23 16:11:03,986 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 15 [2022-11-23 16:11:04,126 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 12 proven. 16 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:04,126 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:11:04,424 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 12 proven. 16 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:04,425 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [783490871] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:11:04,425 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1118492204] [2022-11-23 16:11:04,426 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:11:04,426 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:11:04,426 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:11:04,426 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:11:04,427 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:11:04,453 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:04,456 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:11:04,493 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:11:04,534 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:04,555 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:04,606 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:04,653 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:04,675 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:11:04,676 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:11:04,739 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:04,743 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:04,744 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:04,745 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:04,774 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:11:04,775 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:11:04,838 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:11:04,839 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:11:04,922 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:11:06,598 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '2149#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:11:06,598 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:11:06,598 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:11:06,599 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 11, 11] total 27 [2022-11-23 16:11:06,599 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [222912756] [2022-11-23 16:11:06,599 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:11:06,599 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2022-11-23 16:11:06,599 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:11:06,600 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2022-11-23 16:11:06,600 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=175, Invalid=1085, Unknown=0, NotChecked=0, Total=1260 [2022-11-23 16:11:06,600 INFO L87 Difference]: Start difference. First operand 34 states and 38 transitions. Second operand has 28 states, 27 states have (on average 2.111111111111111) internal successors, (57), 28 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:06,895 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:11:06,895 INFO L93 Difference]: Finished difference Result 35 states and 38 transitions. [2022-11-23 16:11:06,895 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2022-11-23 16:11:06,895 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 27 states have (on average 2.111111111111111) internal successors, (57), 28 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 22 [2022-11-23 16:11:06,896 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:11:06,896 INFO L225 Difference]: With dead ends: 35 [2022-11-23 16:11:06,896 INFO L226 Difference]: Without dead ends: 35 [2022-11-23 16:11:06,897 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 80 GetRequests, 40 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 474 ImplicationChecksByTransitivity, 2.2s TimeCoverageRelationStatistics Valid=298, Invalid=1424, Unknown=0, NotChecked=0, Total=1722 [2022-11-23 16:11:06,898 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 130 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 184 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 130 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 191 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 184 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:11:06,898 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [130 Valid, 1 Invalid, 191 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 184 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 16:11:06,898 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 35 states. [2022-11-23 16:11:06,900 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 35 to 34. [2022-11-23 16:11:06,900 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 34 states, 32 states have (on average 1.15625) internal successors, (37), 33 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:06,901 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 34 states to 34 states and 37 transitions. [2022-11-23 16:11:06,901 INFO L78 Accepts]: Start accepts. Automaton has 34 states and 37 transitions. Word has length 22 [2022-11-23 16:11:06,901 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:11:06,901 INFO L495 AbstractCegarLoop]: Abstraction has 34 states and 37 transitions. [2022-11-23 16:11:06,901 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 27 states have (on average 2.111111111111111) internal successors, (57), 28 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:06,902 INFO L276 IsEmpty]: Start isEmpty. Operand 34 states and 37 transitions. [2022-11-23 16:11:06,902 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-11-23 16:11:06,902 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:11:06,902 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 1, 1, 1, 1, 1] [2022-11-23 16:11:06,908 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Ended with exit code 0 [2022-11-23 16:11:07,108 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,13 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:11:07,108 INFO L420 AbstractCegarLoop]: === Iteration 20 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:11:07,108 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:11:07,109 INFO L85 PathProgramCache]: Analyzing trace with hash 1577274647, now seen corresponding path program 7 times [2022-11-23 16:11:07,109 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:11:07,109 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1174437972] [2022-11-23 16:11:07,109 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:11:07,109 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:11:07,133 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:11:07,738 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 4 proven. 34 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:07,738 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:11:07,738 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1174437972] [2022-11-23 16:11:07,738 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1174437972] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:11:07,738 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1754991163] [2022-11-23 16:11:07,738 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:11:07,739 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:11:07,739 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:11:07,743 INFO L229 MonitoredProcess]: Starting monitored process 14 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:11:07,767 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2022-11-23 16:11:07,859 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:11:07,861 INFO L263 TraceCheckSpWp]: Trace formula consists of 221 conjuncts, 59 conjunts are in the unsatisfiable core [2022-11-23 16:11:07,864 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:11:07,870 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:11:08,051 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:08,121 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:11:08,168 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:11:08,186 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:11:08,216 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2022-11-23 16:11:08,219 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 4 proven. 34 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:08,220 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:11:08,231 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_448 (Array Int Int))) (= 0 (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_448) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)))) is different from false [2022-11-23 16:11:08,347 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:08,347 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:11:08,354 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:08,354 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:11:08,511 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 4 proven. 28 refuted. 0 times theorem prover too weak. 0 trivial. 6 not checked. [2022-11-23 16:11:08,512 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1754991163] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:11:08,512 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [991447189] [2022-11-23 16:11:08,513 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:11:08,514 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:11:08,514 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:11:08,514 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:11:08,514 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:11:08,542 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:08,546 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:11:08,583 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:11:08,627 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:08,647 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:08,701 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:08,752 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:08,776 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:11:08,777 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:11:08,837 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:08,841 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:08,842 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:08,846 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:08,878 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:11:08,878 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:11:08,950 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:11:08,950 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:11:09,028 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:11:10,696 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '2410#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:11:10,696 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:11:10,696 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:11:10,696 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 15, 15] total 28 [2022-11-23 16:11:10,696 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1080412683] [2022-11-23 16:11:10,696 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:11:10,697 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2022-11-23 16:11:10,697 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:11:10,697 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2022-11-23 16:11:10,697 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=106, Invalid=1066, Unknown=22, NotChecked=66, Total=1260 [2022-11-23 16:11:10,697 INFO L87 Difference]: Start difference. First operand 34 states and 37 transitions. Second operand has 28 states, 28 states have (on average 1.8928571428571428) internal successors, (53), 28 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:11,334 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:11:11,334 INFO L93 Difference]: Finished difference Result 50 states and 53 transitions. [2022-11-23 16:11:11,334 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2022-11-23 16:11:11,334 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 28 states have (on average 1.8928571428571428) internal successors, (53), 28 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2022-11-23 16:11:11,334 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:11:11,335 INFO L225 Difference]: With dead ends: 50 [2022-11-23 16:11:11,335 INFO L226 Difference]: Without dead ends: 37 [2022-11-23 16:11:11,336 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 102 GetRequests, 53 SyntacticMatches, 4 SemanticMatches, 45 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 419 ImplicationChecksByTransitivity, 2.6s TimeCoverageRelationStatistics Valid=199, Invalid=1849, Unknown=26, NotChecked=88, Total=2162 [2022-11-23 16:11:11,336 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 42 mSDsluCounter, 42 mSDsCounter, 0 mSdLazyCounter, 430 mSolverCounterSat, 10 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 45 SdHoareTripleChecker+Invalid, 468 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 430 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 27 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-23 16:11:11,337 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 45 Invalid, 468 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 430 Invalid, 1 Unknown, 27 Unchecked, 0.3s Time] [2022-11-23 16:11:11,337 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 37 states. [2022-11-23 16:11:11,339 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 37 to 36. [2022-11-23 16:11:11,339 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 36 states, 34 states have (on average 1.1470588235294117) internal successors, (39), 35 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:11,339 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 36 states to 36 states and 39 transitions. [2022-11-23 16:11:11,339 INFO L78 Accepts]: Start accepts. Automaton has 36 states and 39 transitions. Word has length 25 [2022-11-23 16:11:11,340 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:11:11,340 INFO L495 AbstractCegarLoop]: Abstraction has 36 states and 39 transitions. [2022-11-23 16:11:11,340 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 28 states have (on average 1.8928571428571428) internal successors, (53), 28 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:11,340 INFO L276 IsEmpty]: Start isEmpty. Operand 36 states and 39 transitions. [2022-11-23 16:11:11,341 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2022-11-23 16:11:11,341 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:11:11,341 INFO L195 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 1, 1, 1, 1, 1] [2022-11-23 16:11:11,346 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Forceful destruction successful, exit code 0 [2022-11-23 16:11:11,543 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,14 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:11:11,543 INFO L420 AbstractCegarLoop]: === Iteration 21 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:11:11,543 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:11:11,544 INFO L85 PathProgramCache]: Analyzing trace with hash -1182526647, now seen corresponding path program 8 times [2022-11-23 16:11:11,544 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:11:11,544 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [15201888] [2022-11-23 16:11:11,544 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:11:11,544 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:11:11,571 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:11:11,955 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 12 proven. 35 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:11,955 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:11:11,955 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [15201888] [2022-11-23 16:11:11,955 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [15201888] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:11:11,955 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2041585847] [2022-11-23 16:11:11,955 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:11:11,955 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:11:11,956 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:11:11,957 INFO L229 MonitoredProcess]: Starting monitored process 15 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:11:11,985 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2022-11-23 16:11:12,114 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2022-11-23 16:11:12,114 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:11:12,116 INFO L263 TraceCheckSpWp]: Trace formula consists of 221 conjuncts, 85 conjunts are in the unsatisfiable core [2022-11-23 16:11:12,120 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:11:12,129 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:11:12,383 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:11:12,452 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:11:12,585 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-23 16:11:12,763 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 31 [2022-11-23 16:11:12,909 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:12,911 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:12,931 INFO L321 Elim1Store]: treesize reduction 8, result has 72.4 percent of original size [2022-11-23 16:11:12,931 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 4 select indices, 4 select index equivalence classes, 3 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 3 case distinctions, treesize of input 37 treesize of output 35 [2022-11-23 16:11:13,031 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 7 proven. 34 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2022-11-23 16:11:13,032 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:11:13,854 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:13,855 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 70 treesize of output 48 [2022-11-23 16:11:13,877 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:13,878 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 4 select indices, 4 select index equivalence classes, 3 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 3 case distinctions, treesize of input 87 treesize of output 86 [2022-11-23 16:11:13,883 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:11:13,907 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:11:13,913 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:11:14,114 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 13 [2022-11-23 16:11:14,564 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 1 proven. 40 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2022-11-23 16:11:14,564 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2041585847] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:11:14,564 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1284706724] [2022-11-23 16:11:14,566 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:11:14,566 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:11:14,566 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:11:14,567 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:11:14,567 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:11:14,602 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:14,606 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:11:14,639 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:11:14,682 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:14,703 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:14,745 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:11:14,798 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:14,825 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:11:14,825 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:11:14,895 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:14,898 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:14,900 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:14,901 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:14,902 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:14,934 INFO L321 Elim1Store]: treesize reduction 99, result has 15.4 percent of original size [2022-11-23 16:11:14,934 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 48 treesize of output 52 [2022-11-23 16:11:15,001 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:11:15,002 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:11:15,075 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:11:17,056 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '2728#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:11:17,057 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:11:17,057 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:11:17,057 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 16, 18] total 44 [2022-11-23 16:11:17,057 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1575602424] [2022-11-23 16:11:17,057 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:11:17,057 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 45 states [2022-11-23 16:11:17,057 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:11:17,058 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 45 interpolants. [2022-11-23 16:11:17,058 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=235, Invalid=2504, Unknown=17, NotChecked=0, Total=2756 [2022-11-23 16:11:17,059 INFO L87 Difference]: Start difference. First operand 36 states and 39 transitions. Second operand has 45 states, 44 states have (on average 1.6590909090909092) internal successors, (73), 45 states have internal predecessors, (73), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:20,460 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:11:20,460 INFO L93 Difference]: Finished difference Result 42 states and 43 transitions. [2022-11-23 16:11:20,461 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2022-11-23 16:11:20,461 INFO L78 Accepts]: Start accepts. Automaton has has 45 states, 44 states have (on average 1.6590909090909092) internal successors, (73), 45 states have internal predecessors, (73), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 27 [2022-11-23 16:11:20,461 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:11:20,461 INFO L225 Difference]: With dead ends: 42 [2022-11-23 16:11:20,462 INFO L226 Difference]: Without dead ends: 42 [2022-11-23 16:11:20,463 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 118 GetRequests, 40 SyntacticMatches, 0 SemanticMatches, 78 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1153 ImplicationChecksByTransitivity, 6.5s TimeCoverageRelationStatistics Valid=917, Invalid=5383, Unknown=20, NotChecked=0, Total=6320 [2022-11-23 16:11:20,464 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 243 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 561 mSolverCounterSat, 55 mSolverCounterUnsat, 10 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 243 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 626 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 55 IncrementalHoareTripleChecker+Valid, 561 IncrementalHoareTripleChecker+Invalid, 10 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2022-11-23 16:11:20,464 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [243 Valid, 1 Invalid, 626 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [55 Valid, 561 Invalid, 10 Unknown, 0 Unchecked, 0.5s Time] [2022-11-23 16:11:20,464 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 42 states. [2022-11-23 16:11:20,466 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 42 to 38. [2022-11-23 16:11:20,466 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 38 states, 36 states have (on average 1.0833333333333333) internal successors, (39), 37 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:20,466 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 38 states to 38 states and 39 transitions. [2022-11-23 16:11:20,467 INFO L78 Accepts]: Start accepts. Automaton has 38 states and 39 transitions. Word has length 27 [2022-11-23 16:11:20,467 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:11:20,467 INFO L495 AbstractCegarLoop]: Abstraction has 38 states and 39 transitions. [2022-11-23 16:11:20,467 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 45 states, 44 states have (on average 1.6590909090909092) internal successors, (73), 45 states have internal predecessors, (73), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:11:20,467 INFO L276 IsEmpty]: Start isEmpty. Operand 38 states and 39 transitions. [2022-11-23 16:11:20,468 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2022-11-23 16:11:20,468 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:11:20,468 INFO L195 NwaCegarLoop]: trace histogram [7, 6, 6, 5, 5, 1, 1, 1, 1, 1] [2022-11-23 16:11:20,479 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Forceful destruction successful, exit code 0 [2022-11-23 16:11:20,674 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable20 [2022-11-23 16:11:20,675 INFO L420 AbstractCegarLoop]: === Iteration 22 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:11:20,675 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:11:20,675 INFO L85 PathProgramCache]: Analyzing trace with hash -94422, now seen corresponding path program 3 times [2022-11-23 16:11:20,675 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:11:20,675 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1016177057] [2022-11-23 16:11:20,676 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:11:20,676 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:11:20,718 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:11:21,394 INFO L134 CoverageAnalysis]: Checked inductivity of 82 backedges. 41 proven. 41 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:11:21,394 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:11:21,394 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1016177057] [2022-11-23 16:11:21,395 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1016177057] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:11:21,395 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [523775750] [2022-11-23 16:11:21,395 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:11:21,395 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:11:21,395 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:11:21,396 INFO L229 MonitoredProcess]: Starting monitored process 16 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:11:21,423 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2022-11-23 16:11:21,679 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:11:21,679 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:11:21,683 INFO L263 TraceCheckSpWp]: Trace formula consists of 286 conjuncts, 84 conjunts are in the unsatisfiable core [2022-11-23 16:11:21,688 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:11:22,011 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:11:22,095 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:22,096 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:11:22,186 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:22,187 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:11:22,277 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:22,277 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:11:22,377 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:11:22,378 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:11:22,458 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:11:22,460 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:11:22,460 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:11:22,500 INFO L134 CoverageAnalysis]: Checked inductivity of 82 backedges. 25 proven. 55 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 16:11:22,500 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:11:23,314 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 12770 treesize of output 12674 [2022-11-23 16:15:05,003 INFO L134 CoverageAnalysis]: Checked inductivity of 82 backedges. 25 proven. 55 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 16:15:05,003 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [523775750] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:05,003 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [527329392] [2022-11-23 16:15:05,005 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:05,005 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:05,005 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:05,005 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:05,006 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:05,033 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:05,039 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:05,073 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:05,116 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:05,137 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:05,186 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:05,232 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:05,257 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:05,257 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:05,332 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:05,336 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:05,337 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:05,338 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:05,374 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:15:05,375 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:15:05,442 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:05,442 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:05,498 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:15:07,618 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '3116#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:15:07,618 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:15:07,618 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:15:07,618 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 16, 20] total 48 [2022-11-23 16:15:07,618 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [770782744] [2022-11-23 16:15:07,618 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:15:07,619 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 48 states [2022-11-23 16:15:07,619 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:15:07,619 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 48 interpolants. [2022-11-23 16:15:07,620 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=168, Invalid=2912, Unknown=0, NotChecked=0, Total=3080 [2022-11-23 16:15:07,620 INFO L87 Difference]: Start difference. First operand 38 states and 39 transitions. Second operand has 48 states, 48 states have (on average 1.8958333333333333) internal successors, (91), 48 states have internal predecessors, (91), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:09,839 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:15:09,840 INFO L93 Difference]: Finished difference Result 57 states and 58 transitions. [2022-11-23 16:15:09,842 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2022-11-23 16:15:09,843 INFO L78 Accepts]: Start accepts. Automaton has has 48 states, 48 states have (on average 1.8958333333333333) internal successors, (91), 48 states have internal predecessors, (91), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2022-11-23 16:15:09,843 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:15:09,843 INFO L225 Difference]: With dead ends: 57 [2022-11-23 16:15:09,843 INFO L226 Difference]: Without dead ends: 41 [2022-11-23 16:15:09,845 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 135 GetRequests, 63 SyntacticMatches, 0 SemanticMatches, 72 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1110 ImplicationChecksByTransitivity, 5.6s TimeCoverageRelationStatistics Valid=380, Invalid=5022, Unknown=0, NotChecked=0, Total=5402 [2022-11-23 16:15:09,846 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 79 mSDsluCounter, 42 mSDsCounter, 0 mSdLazyCounter, 834 mSolverCounterSat, 29 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 79 SdHoareTripleChecker+Valid, 45 SdHoareTripleChecker+Invalid, 863 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 834 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2022-11-23 16:15:09,846 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [79 Valid, 45 Invalid, 863 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 834 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2022-11-23 16:15:09,847 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 41 states. [2022-11-23 16:15:09,848 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 41 to 40. [2022-11-23 16:15:09,849 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 40 states, 38 states have (on average 1.0789473684210527) internal successors, (41), 39 states have internal predecessors, (41), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:09,849 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 40 states to 40 states and 41 transitions. [2022-11-23 16:15:09,849 INFO L78 Accepts]: Start accepts. Automaton has 40 states and 41 transitions. Word has length 34 [2022-11-23 16:15:09,849 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:15:09,849 INFO L495 AbstractCegarLoop]: Abstraction has 40 states and 41 transitions. [2022-11-23 16:15:09,850 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 48 states, 48 states have (on average 1.8958333333333333) internal successors, (91), 48 states have internal predecessors, (91), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:09,850 INFO L276 IsEmpty]: Start isEmpty. Operand 40 states and 41 transitions. [2022-11-23 16:15:09,851 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2022-11-23 16:15:09,851 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:15:09,851 INFO L195 NwaCegarLoop]: trace histogram [7, 6, 6, 6, 6, 1, 1, 1, 1, 1] [2022-11-23 16:15:09,863 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Forceful destruction successful, exit code 0 [2022-11-23 16:15:10,057 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable21,16 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:10,058 INFO L420 AbstractCegarLoop]: === Iteration 23 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:15:10,058 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:15:10,058 INFO L85 PathProgramCache]: Analyzing trace with hash 408199480, now seen corresponding path program 4 times [2022-11-23 16:15:10,058 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:15:10,058 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [684710657] [2022-11-23 16:15:10,058 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:15:10,058 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:15:10,111 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:10,877 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 41 proven. 52 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:10,877 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:15:10,877 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [684710657] [2022-11-23 16:15:10,877 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [684710657] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:15:10,877 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [667188971] [2022-11-23 16:15:10,877 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:15:10,877 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:10,878 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:15:10,879 INFO L229 MonitoredProcess]: Starting monitored process 17 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:15:10,911 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2022-11-23 16:15:11,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:11,039 INFO L263 TraceCheckSpWp]: Trace formula consists of 299 conjuncts, 75 conjunts are in the unsatisfiable core [2022-11-23 16:15:11,042 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:15:11,050 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:15:11,401 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:11,480 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:15:11,583 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:15:11,684 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:15:11,781 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:15:11,880 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:15:12,035 INFO L321 Elim1Store]: treesize reduction 5, result has 37.5 percent of original size [2022-11-23 16:15:12,036 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 10 [2022-11-23 16:15:12,076 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 12 proven. 81 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:12,076 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:15:12,168 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_643 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_643) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:15:12,176 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_643 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_643) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:15:12,447 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:12,447 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:15:12,455 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:12,455 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:15:12,692 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 12 proven. 58 refuted. 0 times theorem prover too weak. 0 trivial. 23 not checked. [2022-11-23 16:15:12,692 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [667188971] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:12,692 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [165439357] [2022-11-23 16:15:12,693 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:12,694 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:12,694 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:12,694 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:12,694 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:12,724 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:12,732 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:12,770 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:12,807 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:12,827 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:12,874 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:12,914 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:12,939 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:12,939 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:12,995 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:12,999 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:13,003 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:13,005 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:13,044 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:15:13,044 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:15:13,106 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:13,107 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:13,173 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:15:15,335 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '3511#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:15:15,335 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:15:15,335 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:15:15,335 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 19, 19] total 44 [2022-11-23 16:15:15,335 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1881567493] [2022-11-23 16:15:15,335 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:15:15,336 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 44 states [2022-11-23 16:15:15,336 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:15:15,336 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 44 interpolants. [2022-11-23 16:15:15,339 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=147, Invalid=2276, Unknown=35, NotChecked=194, Total=2652 [2022-11-23 16:15:15,340 INFO L87 Difference]: Start difference. First operand 40 states and 41 transitions. Second operand has 44 states, 44 states have (on average 2.0454545454545454) internal successors, (90), 44 states have internal predecessors, (90), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:17,809 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:15:17,809 INFO L93 Difference]: Finished difference Result 62 states and 63 transitions. [2022-11-23 16:15:17,809 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2022-11-23 16:15:17,809 INFO L78 Accepts]: Start accepts. Automaton has has 44 states, 44 states have (on average 2.0454545454545454) internal successors, (90), 44 states have internal predecessors, (90), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2022-11-23 16:15:17,809 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:15:17,810 INFO L225 Difference]: With dead ends: 62 [2022-11-23 16:15:17,810 INFO L226 Difference]: Without dead ends: 43 [2022-11-23 16:15:17,812 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 147 GetRequests, 73 SyntacticMatches, 2 SemanticMatches, 72 ConstructedPredicates, 2 IntricatePredicates, 2 DeprecatedPredicates, 928 ImplicationChecksByTransitivity, 5.4s TimeCoverageRelationStatistics Valid=361, Invalid=4723, Unknown=36, NotChecked=282, Total=5402 [2022-11-23 16:15:17,812 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 58 mSDsluCounter, 42 mSDsCounter, 0 mSdLazyCounter, 968 mSolverCounterSat, 26 mSolverCounterUnsat, 40 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 45 SdHoareTripleChecker+Invalid, 1104 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 26 IncrementalHoareTripleChecker+Valid, 968 IncrementalHoareTripleChecker+Invalid, 40 IncrementalHoareTripleChecker+Unknown, 70 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2022-11-23 16:15:17,813 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [58 Valid, 45 Invalid, 1104 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [26 Valid, 968 Invalid, 40 Unknown, 70 Unchecked, 0.8s Time] [2022-11-23 16:15:17,813 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 43 states. [2022-11-23 16:15:17,815 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 43 to 42. [2022-11-23 16:15:17,815 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 42 states, 40 states have (on average 1.075) internal successors, (43), 41 states have internal predecessors, (43), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:17,815 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 42 states to 42 states and 43 transitions. [2022-11-23 16:15:17,815 INFO L78 Accepts]: Start accepts. Automaton has 42 states and 43 transitions. Word has length 36 [2022-11-23 16:15:17,816 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:15:17,816 INFO L495 AbstractCegarLoop]: Abstraction has 42 states and 43 transitions. [2022-11-23 16:15:17,816 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 44 states, 44 states have (on average 2.0454545454545454) internal successors, (90), 44 states have internal predecessors, (90), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:17,816 INFO L276 IsEmpty]: Start isEmpty. Operand 42 states and 43 transitions. [2022-11-23 16:15:17,817 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2022-11-23 16:15:17,817 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:15:17,817 INFO L195 NwaCegarLoop]: trace histogram [7, 7, 7, 6, 6, 1, 1, 1, 1, 1] [2022-11-23 16:15:17,824 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Forceful destruction successful, exit code 0 [2022-11-23 16:15:18,023 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 17 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable22 [2022-11-23 16:15:18,024 INFO L420 AbstractCegarLoop]: === Iteration 24 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:15:18,024 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:15:18,024 INFO L85 PathProgramCache]: Analyzing trace with hash 1936615366, now seen corresponding path program 5 times [2022-11-23 16:15:18,024 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:15:18,024 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1100310477] [2022-11-23 16:15:18,024 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:15:18,024 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:15:18,052 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:18,939 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 25 proven. 81 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:18,939 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:15:18,939 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1100310477] [2022-11-23 16:15:18,940 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1100310477] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:15:18,940 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [543731054] [2022-11-23 16:15:18,940 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:15:18,940 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:18,940 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:15:18,951 INFO L229 MonitoredProcess]: Starting monitored process 18 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:15:18,971 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2022-11-23 16:15:19,189 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 7 check-sat command(s) [2022-11-23 16:15:19,189 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:15:19,193 INFO L263 TraceCheckSpWp]: Trace formula consists of 299 conjuncts, 120 conjunts are in the unsatisfiable core [2022-11-23 16:15:19,199 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:15:19,256 INFO L321 Elim1Store]: treesize reduction 11, result has 50.0 percent of original size [2022-11-23 16:15:19,256 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 11 treesize of output 17 [2022-11-23 16:15:19,290 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:15:20,018 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:15:20,134 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:20,273 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:20,506 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-23 16:15:20,781 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 31 [2022-11-23 16:15:21,087 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 43 treesize of output 39 [2022-11-23 16:15:21,298 INFO L321 Elim1Store]: treesize reduction 12, result has 63.6 percent of original size [2022-11-23 16:15:21,298 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 5 select indices, 5 select index equivalence classes, 7 disjoint index pairs (out of 10 index pairs), introduced 5 new quantified variables, introduced 4 case distinctions, treesize of input 41 treesize of output 39 [2022-11-23 16:15:21,586 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 12 proven. 82 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-23 16:15:21,586 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:15:23,423 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:23,424 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 93 treesize of output 60 [2022-11-23 16:15:23,448 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:23,449 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 5 select indices, 5 select index equivalence classes, 0 disjoint index pairs (out of 10 index pairs), introduced 5 new quantified variables, introduced 10 case distinctions, treesize of input 112 treesize of output 113 [2022-11-23 16:15:23,455 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:15:23,460 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:15:23,489 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:15:23,499 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:15:25,081 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:25,099 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:15:25,202 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 16 proven. 86 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-23 16:15:25,203 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [543731054] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:25,203 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [211605846] [2022-11-23 16:15:25,204 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:25,204 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:25,204 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:25,204 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:25,204 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:25,228 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:25,231 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:25,261 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:15:25,296 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:25,318 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:25,371 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:25,401 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:25,432 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:25,432 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:25,491 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:25,492 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:25,495 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:25,496 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:25,533 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:15:25,534 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:15:25,591 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:25,591 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:25,660 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:15:28,098 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '3953#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:15:28,098 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:15:28,098 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:15:28,098 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 19, 25] total 61 [2022-11-23 16:15:28,098 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [598100663] [2022-11-23 16:15:28,098 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:15:28,099 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 63 states [2022-11-23 16:15:28,099 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:15:28,099 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 63 interpolants. [2022-11-23 16:15:28,100 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=453, Invalid=4512, Unknown=5, NotChecked=0, Total=4970 [2022-11-23 16:15:28,101 INFO L87 Difference]: Start difference. First operand 42 states and 43 transitions. Second operand has 63 states, 62 states have (on average 1.7258064516129032) internal successors, (107), 62 states have internal predecessors, (107), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:35,992 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:15:35,992 INFO L93 Difference]: Finished difference Result 56 states and 57 transitions. [2022-11-23 16:15:35,992 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2022-11-23 16:15:35,992 INFO L78 Accepts]: Start accepts. Automaton has has 63 states, 62 states have (on average 1.7258064516129032) internal successors, (107), 62 states have internal predecessors, (107), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 38 [2022-11-23 16:15:35,993 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:15:35,993 INFO L225 Difference]: With dead ends: 56 [2022-11-23 16:15:35,993 INFO L226 Difference]: Without dead ends: 56 [2022-11-23 16:15:35,995 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 165 GetRequests, 58 SyntacticMatches, 2 SemanticMatches, 105 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2346 ImplicationChecksByTransitivity, 13.5s TimeCoverageRelationStatistics Valid=1739, Invalid=9593, Unknown=10, NotChecked=0, Total=11342 [2022-11-23 16:15:35,996 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 439 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 923 mSolverCounterSat, 107 mSolverCounterUnsat, 5 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 439 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 1035 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 107 IncrementalHoareTripleChecker+Valid, 923 IncrementalHoareTripleChecker+Invalid, 5 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:15:35,996 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [439 Valid, 0 Invalid, 1035 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [107 Valid, 923 Invalid, 5 Unknown, 0 Unchecked, 1.1s Time] [2022-11-23 16:15:35,997 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 56 states. [2022-11-23 16:15:35,998 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 56 to 52. [2022-11-23 16:15:35,998 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 50 states have (on average 1.12) internal successors, (56), 51 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:35,999 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 56 transitions. [2022-11-23 16:15:35,999 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 56 transitions. Word has length 38 [2022-11-23 16:15:35,999 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:15:35,999 INFO L495 AbstractCegarLoop]: Abstraction has 52 states and 56 transitions. [2022-11-23 16:15:36,000 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 63 states, 62 states have (on average 1.7258064516129032) internal successors, (107), 62 states have internal predecessors, (107), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:36,000 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 56 transitions. [2022-11-23 16:15:36,001 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-11-23 16:15:36,001 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:15:36,001 INFO L195 NwaCegarLoop]: trace histogram [7, 7, 7, 7, 7, 1, 1, 1, 1, 1] [2022-11-23 16:15:36,016 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Forceful destruction successful, exit code 0 [2022-11-23 16:15:36,207 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable23,18 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:36,208 INFO L420 AbstractCegarLoop]: === Iteration 25 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:15:36,208 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:15:36,208 INFO L85 PathProgramCache]: Analyzing trace with hash 1366527852, now seen corresponding path program 9 times [2022-11-23 16:15:36,208 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:15:36,208 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1476122316] [2022-11-23 16:15:36,208 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:15:36,208 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:15:36,267 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:37,295 INFO L134 CoverageAnalysis]: Checked inductivity of 119 backedges. 7 proven. 112 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:37,295 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:15:37,296 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1476122316] [2022-11-23 16:15:37,296 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1476122316] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:15:37,296 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1871672446] [2022-11-23 16:15:37,296 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:15:37,296 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:37,296 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:15:37,297 INFO L229 MonitoredProcess]: Starting monitored process 19 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:15:37,299 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2022-11-23 16:15:37,582 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:15:37,583 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:15:37,586 INFO L263 TraceCheckSpWp]: Trace formula consists of 329 conjuncts, 90 conjunts are in the unsatisfiable core [2022-11-23 16:15:37,589 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:15:37,596 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:15:37,811 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:15:37,824 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:15:37,871 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:15:37,917 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:15:37,966 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:15:38,015 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:15:38,063 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 16 [2022-11-23 16:15:38,127 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2022-11-23 16:15:38,130 INFO L134 CoverageAnalysis]: Checked inductivity of 119 backedges. 7 proven. 112 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:38,130 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:15:38,166 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_800 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_800) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:15:38,233 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_800 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_800) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 3)) 0)) is different from false [2022-11-23 16:15:38,249 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_800 (Array Int Int))) (= 0 (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_800) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 4)))) is different from false [2022-11-23 16:15:38,318 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_800 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_800) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)) 0)) is different from false [2022-11-23 16:15:38,332 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:38,332 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:15:38,340 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:38,341 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:15:38,349 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:15:38,787 INFO L134 CoverageAnalysis]: Checked inductivity of 119 backedges. 7 proven. 61 refuted. 0 times theorem prover too weak. 0 trivial. 51 not checked. [2022-11-23 16:15:38,787 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1871672446] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:38,787 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [362399293] [2022-11-23 16:15:38,789 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:38,789 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:38,789 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:38,789 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:38,789 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:38,827 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:38,831 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:38,866 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:15:38,906 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:38,928 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:38,968 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:39,025 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:39,049 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:39,049 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:39,096 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:39,098 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:39,100 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:39,102 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:39,136 INFO L321 Elim1Store]: treesize reduction 99, result has 15.4 percent of original size [2022-11-23 16:15:39,137 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 48 treesize of output 52 [2022-11-23 16:15:39,203 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:39,203 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:39,275 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:15:41,161 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '4422#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:15:41,161 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:15:41,162 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:15:41,162 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 21, 21] total 47 [2022-11-23 16:15:41,162 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [850800477] [2022-11-23 16:15:41,162 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:15:41,163 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 47 states [2022-11-23 16:15:41,163 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:15:41,163 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 47 interpolants. [2022-11-23 16:15:41,164 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=163, Invalid=2385, Unknown=18, NotChecked=404, Total=2970 [2022-11-23 16:15:41,167 INFO L87 Difference]: Start difference. First operand 52 states and 56 transitions. Second operand has 47 states, 47 states have (on average 2.0425531914893615) internal successors, (96), 47 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:42,750 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:15:42,750 INFO L93 Difference]: Finished difference Result 77 states and 81 transitions. [2022-11-23 16:15:42,750 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2022-11-23 16:15:42,751 INFO L78 Accepts]: Start accepts. Automaton has has 47 states, 47 states have (on average 2.0425531914893615) internal successors, (96), 47 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 40 [2022-11-23 16:15:42,751 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:15:42,751 INFO L225 Difference]: With dead ends: 77 [2022-11-23 16:15:42,752 INFO L226 Difference]: Without dead ends: 55 [2022-11-23 16:15:42,752 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 160 GetRequests, 89 SyntacticMatches, 2 SemanticMatches, 69 ConstructedPredicates, 4 IntricatePredicates, 1 DeprecatedPredicates, 910 ImplicationChecksByTransitivity, 3.8s TimeCoverageRelationStatistics Valid=325, Invalid=4093, Unknown=20, NotChecked=532, Total=4970 [2022-11-23 16:15:42,753 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 48 mSDsluCounter, 78 mSDsCounter, 0 mSdLazyCounter, 1059 mSolverCounterSat, 13 mSolverCounterUnsat, 32 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 81 SdHoareTripleChecker+Invalid, 1266 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 1059 IncrementalHoareTripleChecker+Invalid, 32 IncrementalHoareTripleChecker+Unknown, 162 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2022-11-23 16:15:42,753 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 81 Invalid, 1266 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 1059 Invalid, 32 Unknown, 162 Unchecked, 0.7s Time] [2022-11-23 16:15:42,754 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2022-11-23 16:15:42,755 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 54. [2022-11-23 16:15:42,755 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 54 states, 52 states have (on average 1.1153846153846154) internal successors, (58), 53 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:42,756 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 54 states to 54 states and 58 transitions. [2022-11-23 16:15:42,756 INFO L78 Accepts]: Start accepts. Automaton has 54 states and 58 transitions. Word has length 40 [2022-11-23 16:15:42,756 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:15:42,756 INFO L495 AbstractCegarLoop]: Abstraction has 54 states and 58 transitions. [2022-11-23 16:15:42,757 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 47 states, 47 states have (on average 2.0425531914893615) internal successors, (96), 47 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:42,757 INFO L276 IsEmpty]: Start isEmpty. Operand 54 states and 58 transitions. [2022-11-23 16:15:42,760 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2022-11-23 16:15:42,760 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:15:42,760 INFO L195 NwaCegarLoop]: trace histogram [8, 8, 7, 7, 7, 1, 1, 1, 1, 1] [2022-11-23 16:15:42,767 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Ended with exit code 0 [2022-11-23 16:15:42,963 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable24,19 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:42,963 INFO L420 AbstractCegarLoop]: === Iteration 26 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:15:42,963 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:15:42,963 INFO L85 PathProgramCache]: Analyzing trace with hash 1712021242, now seen corresponding path program 10 times [2022-11-23 16:15:42,964 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:15:42,964 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1398732074] [2022-11-23 16:15:42,964 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:15:42,964 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:15:42,989 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:43,611 INFO L134 CoverageAnalysis]: Checked inductivity of 134 backedges. 42 proven. 92 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:43,611 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:15:43,611 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1398732074] [2022-11-23 16:15:43,611 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1398732074] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:15:43,611 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [673792277] [2022-11-23 16:15:43,611 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:15:43,612 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:43,612 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:15:43,613 INFO L229 MonitoredProcess]: Starting monitored process 20 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:15:43,639 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2022-11-23 16:15:43,780 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:43,783 INFO L263 TraceCheckSpWp]: Trace formula consists of 342 conjuncts, 47 conjunts are in the unsatisfiable core [2022-11-23 16:15:43,784 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:15:44,092 INFO L134 CoverageAnalysis]: Checked inductivity of 134 backedges. 56 proven. 78 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:44,092 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:15:44,453 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 5 [2022-11-23 16:15:44,591 INFO L134 CoverageAnalysis]: Checked inductivity of 134 backedges. 56 proven. 78 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:44,592 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [673792277] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:44,592 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1990092319] [2022-11-23 16:15:44,593 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:44,593 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:44,593 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:44,594 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:44,594 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:44,626 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:44,630 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:44,657 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:44,693 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:44,714 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:44,748 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:44,790 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:44,833 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:44,833 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:44,889 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:44,892 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:44,893 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:44,899 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:44,935 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:15:44,935 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:15:44,992 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:44,992 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:45,049 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:15:46,728 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '4879#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:15:46,728 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:15:46,728 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:15:46,728 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 19, 19] total 39 [2022-11-23 16:15:46,728 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [266019872] [2022-11-23 16:15:46,729 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:15:46,729 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 40 states [2022-11-23 16:15:46,729 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:15:46,729 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 40 interpolants. [2022-11-23 16:15:46,730 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=262, Invalid=1994, Unknown=0, NotChecked=0, Total=2256 [2022-11-23 16:15:46,730 INFO L87 Difference]: Start difference. First operand 54 states and 58 transitions. Second operand has 40 states, 39 states have (on average 2.282051282051282) internal successors, (89), 40 states have internal predecessors, (89), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:47,322 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:15:47,322 INFO L93 Difference]: Finished difference Result 55 states and 58 transitions. [2022-11-23 16:15:47,327 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2022-11-23 16:15:47,327 INFO L78 Accepts]: Start accepts. Automaton has has 40 states, 39 states have (on average 2.282051282051282) internal successors, (89), 40 states have internal predecessors, (89), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 42 [2022-11-23 16:15:47,327 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:15:47,329 INFO L225 Difference]: With dead ends: 55 [2022-11-23 16:15:47,329 INFO L226 Difference]: Without dead ends: 55 [2022-11-23 16:15:47,329 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 152 GetRequests, 88 SyntacticMatches, 8 SemanticMatches, 56 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1129 ImplicationChecksByTransitivity, 2.7s TimeCoverageRelationStatistics Valid=527, Invalid=2779, Unknown=0, NotChecked=0, Total=3306 [2022-11-23 16:15:47,330 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 210 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 640 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 210 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 644 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 640 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2022-11-23 16:15:47,330 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [210 Valid, 1 Invalid, 644 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 640 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2022-11-23 16:15:47,331 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2022-11-23 16:15:47,340 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 54. [2022-11-23 16:15:47,341 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 54 states, 52 states have (on average 1.0961538461538463) internal successors, (57), 53 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:47,341 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 54 states to 54 states and 57 transitions. [2022-11-23 16:15:47,341 INFO L78 Accepts]: Start accepts. Automaton has 54 states and 57 transitions. Word has length 42 [2022-11-23 16:15:47,341 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:15:47,342 INFO L495 AbstractCegarLoop]: Abstraction has 54 states and 57 transitions. [2022-11-23 16:15:47,342 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 40 states, 39 states have (on average 2.282051282051282) internal successors, (89), 40 states have internal predecessors, (89), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:47,342 INFO L276 IsEmpty]: Start isEmpty. Operand 54 states and 57 transitions. [2022-11-23 16:15:47,343 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-11-23 16:15:47,343 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:15:47,343 INFO L195 NwaCegarLoop]: trace histogram [8, 8, 8, 8, 8, 1, 1, 1, 1, 1] [2022-11-23 16:15:47,350 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Forceful destruction successful, exit code 0 [2022-11-23 16:15:47,547 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable25,20 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:47,547 INFO L420 AbstractCegarLoop]: === Iteration 27 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:15:47,547 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:15:47,547 INFO L85 PathProgramCache]: Analyzing trace with hash 88168223, now seen corresponding path program 11 times [2022-11-23 16:15:47,547 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:15:47,548 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1796375491] [2022-11-23 16:15:47,548 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:15:47,548 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:15:47,579 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:48,774 INFO L134 CoverageAnalysis]: Checked inductivity of 156 backedges. 8 proven. 148 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:48,774 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:15:48,774 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1796375491] [2022-11-23 16:15:48,774 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1796375491] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:15:48,775 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [20747584] [2022-11-23 16:15:48,775 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:15:48,775 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:48,775 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:15:48,777 INFO L229 MonitoredProcess]: Starting monitored process 21 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:15:48,799 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2022-11-23 16:15:49,182 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 9 check-sat command(s) [2022-11-23 16:15:49,182 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:15:49,186 INFO L263 TraceCheckSpWp]: Trace formula consists of 365 conjuncts, 123 conjunts are in the unsatisfiable core [2022-11-23 16:15:49,189 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:15:49,194 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:15:49,685 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:15:49,761 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:49,853 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:49,943 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:50,039 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:50,142 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:50,240 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:50,342 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:15:50,425 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:50,427 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:50,427 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:15:50,431 INFO L134 CoverageAnalysis]: Checked inductivity of 156 backedges. 8 proven. 148 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:50,431 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:15:50,548 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_962 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_962) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:15:50,780 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_962 (Array Int Int))) (= 0 (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_962) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)))) is different from false [2022-11-23 16:15:50,874 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:50,874 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:15:50,902 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:15:50,903 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:15:50,911 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:15:51,475 INFO L134 CoverageAnalysis]: Checked inductivity of 156 backedges. 8 proven. 109 refuted. 0 times theorem prover too weak. 0 trivial. 39 not checked. [2022-11-23 16:15:51,475 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [20747584] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:51,475 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1254402098] [2022-11-23 16:15:51,477 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:51,477 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:51,477 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:51,478 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:51,478 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:51,505 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:51,509 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:51,539 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:15:51,580 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:51,602 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:51,637 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:51,676 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:51,707 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:51,707 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:51,762 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:51,766 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:51,767 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:51,768 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:51,796 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:15:51,796 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:15:51,858 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:51,859 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:51,917 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:15:54,004 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '5340#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:15:54,004 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:15:54,004 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:15:54,004 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22, 22, 23] total 60 [2022-11-23 16:15:54,004 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [3118875] [2022-11-23 16:15:54,004 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:15:54,005 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 60 states [2022-11-23 16:15:54,005 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:15:54,005 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 60 interpolants. [2022-11-23 16:15:54,006 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=216, Invalid=4028, Unknown=54, NotChecked=258, Total=4556 [2022-11-23 16:15:54,006 INFO L87 Difference]: Start difference. First operand 54 states and 57 transitions. Second operand has 60 states, 60 states have (on average 2.1) internal successors, (126), 60 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:55,741 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:15:55,741 INFO L93 Difference]: Finished difference Result 82 states and 85 transitions. [2022-11-23 16:15:55,742 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2022-11-23 16:15:55,742 INFO L78 Accepts]: Start accepts. Automaton has has 60 states, 60 states have (on average 2.1) internal successors, (126), 60 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 45 [2022-11-23 16:15:55,743 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:15:55,743 INFO L225 Difference]: With dead ends: 82 [2022-11-23 16:15:55,743 INFO L226 Difference]: Without dead ends: 57 [2022-11-23 16:15:55,743 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 179 GetRequests, 96 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 2 IntricatePredicates, 0 DeprecatedPredicates, 1605 ImplicationChecksByTransitivity, 4.9s TimeCoverageRelationStatistics Valid=400, Invalid=6355, Unknown=59, NotChecked=326, Total=7140 [2022-11-23 16:15:55,744 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 77 mSDsluCounter, 68 mSDsCounter, 0 mSdLazyCounter, 1399 mSolverCounterSat, 21 mSolverCounterUnsat, 9 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 77 SdHoareTripleChecker+Valid, 71 SdHoareTripleChecker+Invalid, 1521 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 21 IncrementalHoareTripleChecker+Valid, 1399 IncrementalHoareTripleChecker+Invalid, 9 IncrementalHoareTripleChecker+Unknown, 92 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2022-11-23 16:15:55,744 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [77 Valid, 71 Invalid, 1521 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [21 Valid, 1399 Invalid, 9 Unknown, 92 Unchecked, 0.8s Time] [2022-11-23 16:15:55,744 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2022-11-23 16:15:55,746 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 56. [2022-11-23 16:15:55,746 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 54 states have (on average 1.0925925925925926) internal successors, (59), 55 states have internal predecessors, (59), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:55,746 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 59 transitions. [2022-11-23 16:15:55,746 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 59 transitions. Word has length 45 [2022-11-23 16:15:55,747 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:15:55,747 INFO L495 AbstractCegarLoop]: Abstraction has 56 states and 59 transitions. [2022-11-23 16:15:55,747 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 60 states, 60 states have (on average 2.1) internal successors, (126), 60 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:15:55,747 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 59 transitions. [2022-11-23 16:15:55,748 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2022-11-23 16:15:55,748 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:15:55,748 INFO L195 NwaCegarLoop]: trace histogram [9, 9, 8, 8, 8, 1, 1, 1, 1, 1] [2022-11-23 16:15:55,755 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Ended with exit code 0 [2022-11-23 16:15:55,951 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2022-11-23 16:15:55,951 INFO L420 AbstractCegarLoop]: === Iteration 28 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:15:55,951 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:15:55,951 INFO L85 PathProgramCache]: Analyzing trace with hash 1686310993, now seen corresponding path program 12 times [2022-11-23 16:15:55,951 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:15:55,952 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1254401937] [2022-11-23 16:15:55,952 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:15:55,952 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:15:55,991 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:15:56,672 INFO L134 CoverageAnalysis]: Checked inductivity of 173 backedges. 56 proven. 117 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:56,672 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:15:56,672 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1254401937] [2022-11-23 16:15:56,672 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1254401937] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:15:56,672 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [642601395] [2022-11-23 16:15:56,672 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:15:56,672 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:15:56,672 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:15:56,674 INFO L229 MonitoredProcess]: Starting monitored process 22 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:15:56,711 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2022-11-23 16:15:57,113 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:15:57,113 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:15:57,117 INFO L263 TraceCheckSpWp]: Trace formula consists of 378 conjuncts, 53 conjunts are in the unsatisfiable core [2022-11-23 16:15:57,118 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:15:57,131 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2022-11-23 16:15:57,131 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 15 [2022-11-23 16:15:57,454 INFO L134 CoverageAnalysis]: Checked inductivity of 173 backedges. 72 proven. 101 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:57,454 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:15:58,230 INFO L134 CoverageAnalysis]: Checked inductivity of 173 backedges. 72 proven. 101 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:15:58,231 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [642601395] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:15:58,231 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [343394784] [2022-11-23 16:15:58,232 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:15:58,232 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:15:58,232 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:15:58,233 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:15:58,233 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:15:58,262 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:58,266 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:15:58,299 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:58,332 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:58,350 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:58,396 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:15:58,425 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:58,448 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:15:58,449 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:15:58,509 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:58,513 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:15:58,514 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:58,515 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:15:58,551 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:15:58,551 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:15:58,609 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:15:58,609 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:15:58,676 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:16:00,517 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '5849#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:16:00,518 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:16:00,518 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:16:00,518 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 21, 21] total 52 [2022-11-23 16:16:00,518 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [993729060] [2022-11-23 16:16:00,518 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:16:00,518 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 53 states [2022-11-23 16:16:00,519 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:16:00,519 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 53 interpolants. [2022-11-23 16:16:00,519 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=460, Invalid=3200, Unknown=0, NotChecked=0, Total=3660 [2022-11-23 16:16:00,519 INFO L87 Difference]: Start difference. First operand 56 states and 59 transitions. Second operand has 53 states, 52 states have (on average 2.25) internal successors, (117), 53 states have internal predecessors, (117), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:01,179 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:16:01,179 INFO L93 Difference]: Finished difference Result 57 states and 59 transitions. [2022-11-23 16:16:01,179 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2022-11-23 16:16:01,179 INFO L78 Accepts]: Start accepts. Automaton has has 53 states, 52 states have (on average 2.25) internal successors, (117), 53 states have internal predecessors, (117), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 47 [2022-11-23 16:16:01,179 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:16:01,180 INFO L225 Difference]: With dead ends: 57 [2022-11-23 16:16:01,180 INFO L226 Difference]: Without dead ends: 57 [2022-11-23 16:16:01,181 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 170 GetRequests, 100 SyntacticMatches, 0 SemanticMatches, 70 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1534 ImplicationChecksByTransitivity, 3.2s TimeCoverageRelationStatistics Valid=878, Invalid=4234, Unknown=0, NotChecked=0, Total=5112 [2022-11-23 16:16:01,181 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 194 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 695 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 194 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 703 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 695 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2022-11-23 16:16:01,181 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [194 Valid, 1 Invalid, 703 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 695 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2022-11-23 16:16:01,182 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2022-11-23 16:16:01,183 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 56. [2022-11-23 16:16:01,183 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 54 states have (on average 1.0740740740740742) internal successors, (58), 55 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:01,184 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 58 transitions. [2022-11-23 16:16:01,184 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 58 transitions. Word has length 47 [2022-11-23 16:16:01,184 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:16:01,184 INFO L495 AbstractCegarLoop]: Abstraction has 56 states and 58 transitions. [2022-11-23 16:16:01,184 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 53 states, 52 states have (on average 2.25) internal successors, (117), 53 states have internal predecessors, (117), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:01,185 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 58 transitions. [2022-11-23 16:16:01,185 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2022-11-23 16:16:01,185 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:16:01,185 INFO L195 NwaCegarLoop]: trace histogram [9, 9, 9, 9, 9, 1, 1, 1, 1, 1] [2022-11-23 16:16:01,195 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Ended with exit code 0 [2022-11-23 16:16:01,392 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 22 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable27 [2022-11-23 16:16:01,393 INFO L420 AbstractCegarLoop]: === Iteration 29 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:16:01,393 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:16:01,393 INFO L85 PathProgramCache]: Analyzing trace with hash -1341681048, now seen corresponding path program 13 times [2022-11-23 16:16:01,393 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:16:01,393 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2086872544] [2022-11-23 16:16:01,393 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:16:01,393 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:16:01,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:16:02,732 INFO L134 CoverageAnalysis]: Checked inductivity of 198 backedges. 9 proven. 189 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:02,733 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:16:02,733 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2086872544] [2022-11-23 16:16:02,733 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2086872544] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:16:02,733 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1143189345] [2022-11-23 16:16:02,733 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:16:02,733 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:16:02,733 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:16:02,734 INFO L229 MonitoredProcess]: Starting monitored process 23 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:16:02,736 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2022-11-23 16:16:02,912 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:16:02,915 INFO L263 TraceCheckSpWp]: Trace formula consists of 401 conjuncts, 102 conjunts are in the unsatisfiable core [2022-11-23 16:16:02,919 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:16:02,927 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:16:03,362 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:03,436 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:16:03,483 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,497 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,517 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,531 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,548 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,562 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,575 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:03,616 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2022-11-23 16:16:03,621 INFO L134 CoverageAnalysis]: Checked inductivity of 198 backedges. 9 proven. 189 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:03,621 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:16:03,790 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1144 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1144) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 3)) 0)) is different from false [2022-11-23 16:16:03,878 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1144 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1144) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 5 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:16:04,129 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 13 [2022-11-23 16:16:04,132 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-23 16:16:04,391 INFO L134 CoverageAnalysis]: Checked inductivity of 198 backedges. 9 proven. 144 refuted. 0 times theorem prover too weak. 0 trivial. 45 not checked. [2022-11-23 16:16:04,391 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1143189345] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:16:04,391 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1166692194] [2022-11-23 16:16:04,393 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:16:04,393 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:16:04,393 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:16:04,394 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:16:04,394 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:16:04,423 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:04,426 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:16:04,464 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:04,497 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:04,519 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:04,561 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:04,607 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:04,638 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:16:04,638 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:16:04,704 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:04,708 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:04,709 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:04,709 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:04,737 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:16:04,738 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:16:04,790 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:16:04,790 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:16:04,849 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:16:06,820 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '6332#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:16:06,821 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:16:06,821 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:16:06,821 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24, 25, 25] total 46 [2022-11-23 16:16:06,821 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [846688632] [2022-11-23 16:16:06,821 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:16:06,822 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 46 states [2022-11-23 16:16:06,822 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:16:06,822 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 46 interpolants. [2022-11-23 16:16:06,823 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=150, Invalid=2464, Unknown=46, NotChecked=202, Total=2862 [2022-11-23 16:16:06,823 INFO L87 Difference]: Start difference. First operand 56 states and 58 transitions. Second operand has 46 states, 46 states have (on average 2.130434782608696) internal successors, (98), 46 states have internal predecessors, (98), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:08,887 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:16:08,887 INFO L93 Difference]: Finished difference Result 87 states and 89 transitions. [2022-11-23 16:16:08,887 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2022-11-23 16:16:08,887 INFO L78 Accepts]: Start accepts. Automaton has has 46 states, 46 states have (on average 2.130434782608696) internal successors, (98), 46 states have internal predecessors, (98), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 50 [2022-11-23 16:16:08,888 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:16:08,888 INFO L225 Difference]: With dead ends: 87 [2022-11-23 16:16:08,888 INFO L226 Difference]: Without dead ends: 59 [2022-11-23 16:16:08,889 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 202 GetRequests, 121 SyntacticMatches, 7 SemanticMatches, 74 ConstructedPredicates, 2 IntricatePredicates, 1 DeprecatedPredicates, 952 ImplicationChecksByTransitivity, 4.5s TimeCoverageRelationStatistics Valid=357, Invalid=5003, Unknown=50, NotChecked=290, Total=5700 [2022-11-23 16:16:08,890 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 116 mSDsluCounter, 69 mSDsCounter, 0 mSdLazyCounter, 1436 mSolverCounterSat, 24 mSolverCounterUnsat, 46 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 116 SdHoareTripleChecker+Valid, 72 SdHoareTripleChecker+Invalid, 1570 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 24 IncrementalHoareTripleChecker+Valid, 1436 IncrementalHoareTripleChecker+Invalid, 46 IncrementalHoareTripleChecker+Unknown, 64 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2022-11-23 16:16:08,890 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [116 Valid, 72 Invalid, 1570 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [24 Valid, 1436 Invalid, 46 Unknown, 64 Unchecked, 0.9s Time] [2022-11-23 16:16:08,891 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2022-11-23 16:16:08,892 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 58. [2022-11-23 16:16:08,892 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 56 states have (on average 1.0714285714285714) internal successors, (60), 57 states have internal predecessors, (60), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:08,892 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 60 transitions. [2022-11-23 16:16:08,893 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 60 transitions. Word has length 50 [2022-11-23 16:16:08,893 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:16:08,893 INFO L495 AbstractCegarLoop]: Abstraction has 58 states and 60 transitions. [2022-11-23 16:16:08,893 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 46 states, 46 states have (on average 2.130434782608696) internal successors, (98), 46 states have internal predecessors, (98), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:08,893 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 60 transitions. [2022-11-23 16:16:08,894 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2022-11-23 16:16:08,894 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:16:08,894 INFO L195 NwaCegarLoop]: trace histogram [10, 10, 9, 9, 9, 1, 1, 1, 1, 1] [2022-11-23 16:16:08,911 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Forceful destruction successful, exit code 0 [2022-11-23 16:16:09,101 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable28 [2022-11-23 16:16:09,101 INFO L420 AbstractCegarLoop]: === Iteration 30 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:16:09,101 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:16:09,101 INFO L85 PathProgramCache]: Analyzing trace with hash -1220294538, now seen corresponding path program 14 times [2022-11-23 16:16:09,101 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:16:09,101 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1858833989] [2022-11-23 16:16:09,101 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:16:09,101 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:16:09,151 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:16:10,084 INFO L134 CoverageAnalysis]: Checked inductivity of 217 backedges. 72 proven. 145 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:10,085 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:16:10,085 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1858833989] [2022-11-23 16:16:10,085 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1858833989] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:16:10,085 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [607377757] [2022-11-23 16:16:10,085 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:16:10,085 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:16:10,085 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:16:10,099 INFO L229 MonitoredProcess]: Starting monitored process 24 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:16:10,123 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2022-11-23 16:16:10,936 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 10 check-sat command(s) [2022-11-23 16:16:10,936 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:16:10,941 INFO L263 TraceCheckSpWp]: Trace formula consists of 401 conjuncts, 152 conjunts are in the unsatisfiable core [2022-11-23 16:16:10,945 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:16:10,954 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:16:11,416 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:16:11,499 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:11,605 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:11,709 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:11,816 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:11,998 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-23 16:16:12,232 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 31 treesize of output 29 [2022-11-23 16:16:12,466 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 35 [2022-11-23 16:16:12,727 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 43 [2022-11-23 16:16:12,896 INFO L321 Elim1Store]: treesize reduction 16, result has 62.8 percent of original size [2022-11-23 16:16:12,896 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 6 select indices, 6 select index equivalence classes, 10 disjoint index pairs (out of 15 index pairs), introduced 6 new quantified variables, introduced 5 case distinctions, treesize of input 49 treesize of output 49 [2022-11-23 16:16:13,039 INFO L134 CoverageAnalysis]: Checked inductivity of 217 backedges. 11 proven. 186 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2022-11-23 16:16:13,040 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:16:15,966 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-23 16:16:15,974 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:16:15,974 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 116 treesize of output 72 [2022-11-23 16:16:16,004 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:16:16,004 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 6 select indices, 6 select index equivalence classes, 10 disjoint index pairs (out of 15 index pairs), introduced 6 new quantified variables, introduced 15 case distinctions, treesize of input 137 treesize of output 140 [2022-11-23 16:16:16,038 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:16:16,042 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:16:16,047 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:16:16,051 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:16:16,056 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:16:17,918 INFO L134 CoverageAnalysis]: Checked inductivity of 217 backedges. 16 proven. 197 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-23 16:16:17,918 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [607377757] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:16:17,918 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1607586348] [2022-11-23 16:16:17,919 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:16:17,919 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:16:17,920 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:16:17,920 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:16:17,920 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:16:17,945 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:17,949 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:16:17,984 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:16:18,040 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:18,061 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:18,096 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:18,149 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:18,181 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:16:18,181 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:16:18,229 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:18,233 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:18,234 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:18,235 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:18,236 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:18,273 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:16:18,274 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:16:18,338 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:16:18,338 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:16:18,401 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:16:20,964 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '6912#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:16:20,964 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:16:20,964 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:16:20,964 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22, 24, 32] total 76 [2022-11-23 16:16:20,964 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [523480054] [2022-11-23 16:16:20,964 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:16:20,965 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 77 states [2022-11-23 16:16:20,965 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:16:20,966 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 77 interpolants. [2022-11-23 16:16:20,966 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=593, Invalid=6461, Unknown=86, NotChecked=0, Total=7140 [2022-11-23 16:16:20,966 INFO L87 Difference]: Start difference. First operand 58 states and 60 transitions. Second operand has 77 states, 76 states have (on average 1.9078947368421053) internal successors, (145), 77 states have internal predecessors, (145), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:31,942 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:16:31,942 INFO L93 Difference]: Finished difference Result 76 states and 77 transitions. [2022-11-23 16:16:31,942 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 53 states. [2022-11-23 16:16:31,942 INFO L78 Accepts]: Start accepts. Automaton has has 77 states, 76 states have (on average 1.9078947368421053) internal successors, (145), 77 states have internal predecessors, (145), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 52 [2022-11-23 16:16:31,943 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:16:31,943 INFO L225 Difference]: With dead ends: 76 [2022-11-23 16:16:31,943 INFO L226 Difference]: Without dead ends: 76 [2022-11-23 16:16:31,944 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 227 GetRequests, 93 SyntacticMatches, 0 SemanticMatches, 134 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3330 ImplicationChecksByTransitivity, 16.9s TimeCoverageRelationStatistics Valid=2512, Invalid=15746, Unknown=102, NotChecked=0, Total=18360 [2022-11-23 16:16:31,944 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 477 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1684 mSolverCounterSat, 183 mSolverCounterUnsat, 26 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 477 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 1893 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 183 IncrementalHoareTripleChecker+Valid, 1684 IncrementalHoareTripleChecker+Invalid, 26 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:16:31,945 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [477 Valid, 1 Invalid, 1893 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [183 Valid, 1684 Invalid, 26 Unknown, 0 Unchecked, 2.0s Time] [2022-11-23 16:16:31,945 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2022-11-23 16:16:31,947 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 69. [2022-11-23 16:16:31,947 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 67 states have (on average 1.0895522388059702) internal successors, (73), 68 states have internal predecessors, (73), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:31,947 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 73 transitions. [2022-11-23 16:16:31,948 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 73 transitions. Word has length 52 [2022-11-23 16:16:31,948 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:16:31,948 INFO L495 AbstractCegarLoop]: Abstraction has 69 states and 73 transitions. [2022-11-23 16:16:31,948 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 77 states, 76 states have (on average 1.9078947368421053) internal successors, (145), 77 states have internal predecessors, (145), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:31,948 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 73 transitions. [2022-11-23 16:16:31,949 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2022-11-23 16:16:31,949 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:16:31,949 INFO L195 NwaCegarLoop]: trace histogram [11, 10, 10, 10, 10, 1, 1, 1, 1, 1] [2022-11-23 16:16:31,959 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Ended with exit code 0 [2022-11-23 16:16:32,159 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable29,24 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:16:32,159 INFO L420 AbstractCegarLoop]: === Iteration 31 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:16:32,160 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:16:32,160 INFO L85 PathProgramCache]: Analyzing trace with hash 1721292848, now seen corresponding path program 6 times [2022-11-23 16:16:32,160 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:16:32,160 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1566124458] [2022-11-23 16:16:32,160 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:16:32,160 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:16:32,196 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:16:33,607 INFO L134 CoverageAnalysis]: Checked inductivity of 255 backedges. 127 proven. 128 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:33,607 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:16:33,607 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1566124458] [2022-11-23 16:16:33,608 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1566124458] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:16:33,608 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1439595991] [2022-11-23 16:16:33,608 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:16:33,608 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:16:33,608 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:16:33,611 INFO L229 MonitoredProcess]: Starting monitored process 25 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:16:33,646 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2022-11-23 16:16:34,503 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:16:34,503 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:16:34,510 INFO L263 TraceCheckSpWp]: Trace formula consists of 443 conjuncts, 127 conjunts are in the unsatisfiable core [2022-11-23 16:16:34,514 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:16:34,525 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:16:35,332 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:16:35,422 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:35,529 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:35,637 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:35,746 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:35,858 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:35,970 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:36,082 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:36,200 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:36,317 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:16:36,492 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:36,494 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:16:36,494 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:16:36,554 INFO L134 CoverageAnalysis]: Checked inductivity of 255 backedges. 20 proven. 235 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:36,554 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:16:37,414 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1354 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1354) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 7 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:16:37,424 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1354 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1354) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 8)) 0)) is different from false [2022-11-23 16:16:37,434 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1354 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1354) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 9)) 0)) is different from false [2022-11-23 16:16:37,447 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:16:37,447 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:16:37,453 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:16:37,453 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:16:37,461 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:16:38,545 INFO L134 CoverageAnalysis]: Checked inductivity of 255 backedges. 20 proven. 163 refuted. 0 times theorem prover too weak. 0 trivial. 72 not checked. [2022-11-23 16:16:38,546 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1439595991] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:16:38,546 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [448866975] [2022-11-23 16:16:38,547 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:16:38,547 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:16:38,547 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:16:38,547 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:16:38,548 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:16:38,573 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:38,583 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:16:38,613 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:16:38,647 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:38,670 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:38,716 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:38,774 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:38,798 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:16:38,799 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:16:38,853 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:38,854 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:38,856 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:38,858 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:38,894 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:16:38,894 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:16:38,949 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:16:38,949 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:16:39,001 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:16:41,620 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '7572#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:16:41,620 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:16:41,620 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:16:41,620 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [26, 27, 27] total 75 [2022-11-23 16:16:41,621 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1352116886] [2022-11-23 16:16:41,621 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:16:41,621 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 75 states [2022-11-23 16:16:41,621 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:16:41,621 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 75 interpolants. [2022-11-23 16:16:41,622 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=254, Invalid=5979, Unknown=99, NotChecked=474, Total=6806 [2022-11-23 16:16:41,622 INFO L87 Difference]: Start difference. First operand 69 states and 73 transitions. Second operand has 75 states, 75 states have (on average 2.1466666666666665) internal successors, (161), 75 states have internal predecessors, (161), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:47,249 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:16:47,249 INFO L93 Difference]: Finished difference Result 103 states and 107 transitions. [2022-11-23 16:16:47,249 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 36 states. [2022-11-23 16:16:47,249 INFO L78 Accepts]: Start accepts. Automaton has has 75 states, 75 states have (on average 2.1466666666666665) internal successors, (161), 75 states have internal predecessors, (161), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2022-11-23 16:16:47,250 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:16:47,250 INFO L225 Difference]: With dead ends: 103 [2022-11-23 16:16:47,250 INFO L226 Difference]: Without dead ends: 72 [2022-11-23 16:16:47,251 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 226 GetRequests, 112 SyntacticMatches, 0 SemanticMatches, 114 ConstructedPredicates, 3 IntricatePredicates, 0 DeprecatedPredicates, 2106 ImplicationChecksByTransitivity, 10.3s TimeCoverageRelationStatistics Valid=630, Invalid=11936, Unknown=102, NotChecked=672, Total=13340 [2022-11-23 16:16:47,251 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 56 mSDsluCounter, 69 mSDsCounter, 0 mSdLazyCounter, 2612 mSolverCounterSat, 42 mSolverCounterUnsat, 39 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 56 SdHoareTripleChecker+Valid, 72 SdHoareTripleChecker+Invalid, 2846 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 2612 IncrementalHoareTripleChecker+Invalid, 39 IncrementalHoareTripleChecker+Unknown, 153 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2022-11-23 16:16:47,251 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [56 Valid, 72 Invalid, 2846 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 2612 Invalid, 39 Unknown, 153 Unchecked, 1.9s Time] [2022-11-23 16:16:47,252 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 72 states. [2022-11-23 16:16:47,252 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 72 to 71. [2022-11-23 16:16:47,253 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 69 states have (on average 1.0869565217391304) internal successors, (75), 70 states have internal predecessors, (75), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:47,253 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 75 transitions. [2022-11-23 16:16:47,253 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 75 transitions. Word has length 56 [2022-11-23 16:16:47,253 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:16:47,253 INFO L495 AbstractCegarLoop]: Abstraction has 71 states and 75 transitions. [2022-11-23 16:16:47,254 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 75 states, 75 states have (on average 2.1466666666666665) internal successors, (161), 75 states have internal predecessors, (161), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:47,262 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 75 transitions. [2022-11-23 16:16:47,262 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2022-11-23 16:16:47,262 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:16:47,262 INFO L195 NwaCegarLoop]: trace histogram [11, 11, 11, 10, 10, 1, 1, 1, 1, 1] [2022-11-23 16:16:47,271 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Forceful destruction successful, exit code 0 [2022-11-23 16:16:47,467 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable30,25 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:16:47,467 INFO L420 AbstractCegarLoop]: === Iteration 32 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:16:47,468 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:16:47,468 INFO L85 PathProgramCache]: Analyzing trace with hash -2048144450, now seen corresponding path program 7 times [2022-11-23 16:16:47,468 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:16:47,468 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1804191302] [2022-11-23 16:16:47,468 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:16:47,469 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:16:47,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:16:48,919 INFO L134 CoverageAnalysis]: Checked inductivity of 276 backedges. 81 proven. 195 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:48,919 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:16:48,919 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1804191302] [2022-11-23 16:16:48,919 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1804191302] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:16:48,919 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [654124487] [2022-11-23 16:16:48,919 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:16:48,919 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:16:48,920 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:16:48,922 INFO L229 MonitoredProcess]: Starting monitored process 26 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:16:48,924 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2022-11-23 16:16:49,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:16:49,148 INFO L263 TraceCheckSpWp]: Trace formula consists of 456 conjuncts, 75 conjunts are in the unsatisfiable core [2022-11-23 16:16:49,153 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:16:49,212 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:49,212 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 11 [2022-11-23 16:16:49,220 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:16:50,675 INFO L134 CoverageAnalysis]: Checked inductivity of 276 backedges. 100 proven. 176 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:50,675 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:16:52,366 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:52,452 INFO L134 CoverageAnalysis]: Checked inductivity of 276 backedges. 121 proven. 155 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:16:52,453 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [654124487] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:16:52,453 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1813137233] [2022-11-23 16:16:52,454 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:16:52,454 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:16:52,455 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:16:52,455 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:16:52,455 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:16:52,483 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:52,486 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:16:52,511 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:52,556 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:52,575 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:52,622 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:16:52,686 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:52,710 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:16:52,711 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:16:52,778 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:52,779 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:16:52,781 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:52,783 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:16:52,822 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:16:52,823 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:16:52,885 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:16:52,885 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:16:52,948 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:16:55,384 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '8240#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:16:55,384 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:16:55,384 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:16:55,384 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [25, 25, 25] total 75 [2022-11-23 16:16:55,384 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [914416834] [2022-11-23 16:16:55,384 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:16:55,385 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 77 states [2022-11-23 16:16:55,385 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:16:55,385 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 77 interpolants. [2022-11-23 16:16:55,386 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=548, Invalid=6592, Unknown=0, NotChecked=0, Total=7140 [2022-11-23 16:16:55,386 INFO L87 Difference]: Start difference. First operand 71 states and 75 transitions. Second operand has 77 states, 76 states have (on average 2.289473684210526) internal successors, (174), 76 states have internal predecessors, (174), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:58,303 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:16:58,304 INFO L93 Difference]: Finished difference Result 71 states and 74 transitions. [2022-11-23 16:16:58,304 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2022-11-23 16:16:58,304 INFO L78 Accepts]: Start accepts. Automaton has has 77 states, 76 states have (on average 2.289473684210526) internal successors, (174), 76 states have internal predecessors, (174), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 58 [2022-11-23 16:16:58,304 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:16:58,305 INFO L225 Difference]: With dead ends: 71 [2022-11-23 16:16:58,305 INFO L226 Difference]: Without dead ends: 71 [2022-11-23 16:16:58,306 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 221 GetRequests, 114 SyntacticMatches, 0 SemanticMatches, 107 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2716 ImplicationChecksByTransitivity, 7.6s TimeCoverageRelationStatistics Valid=1601, Invalid=10171, Unknown=0, NotChecked=0, Total=11772 [2022-11-23 16:16:58,306 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 423 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1546 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 423 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 1554 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 1546 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2022-11-23 16:16:58,307 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [423 Valid, 0 Invalid, 1554 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 1546 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2022-11-23 16:16:58,307 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2022-11-23 16:16:58,308 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2022-11-23 16:16:58,309 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 69 states have (on average 1.0724637681159421) internal successors, (74), 70 states have internal predecessors, (74), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:58,309 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 74 transitions. [2022-11-23 16:16:58,309 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 74 transitions. Word has length 58 [2022-11-23 16:16:58,309 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:16:58,310 INFO L495 AbstractCegarLoop]: Abstraction has 71 states and 74 transitions. [2022-11-23 16:16:58,310 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 77 states, 76 states have (on average 2.289473684210526) internal successors, (174), 76 states have internal predecessors, (174), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:16:58,310 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 74 transitions. [2022-11-23 16:16:58,310 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2022-11-23 16:16:58,311 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:16:58,311 INFO L195 NwaCegarLoop]: trace histogram [12, 11, 11, 11, 11, 1, 1, 1, 1, 1] [2022-11-23 16:16:58,317 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Forceful destruction successful, exit code 0 [2022-11-23 16:16:58,515 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable31 [2022-11-23 16:16:58,515 INFO L420 AbstractCegarLoop]: === Iteration 33 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:16:58,515 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:16:58,515 INFO L85 PathProgramCache]: Analyzing trace with hash -1965893873, now seen corresponding path program 8 times [2022-11-23 16:16:58,515 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:16:58,516 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [231049841] [2022-11-23 16:16:58,516 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:16:58,516 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:16:58,558 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:17:00,037 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 156 proven. 152 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:00,038 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:17:00,038 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [231049841] [2022-11-23 16:17:00,038 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [231049841] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:17:00,038 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1620967897] [2022-11-23 16:17:00,038 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:17:00,038 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:17:00,038 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:17:00,039 INFO L229 MonitoredProcess]: Starting monitored process 27 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:17:00,041 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2022-11-23 16:17:01,174 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 12 check-sat command(s) [2022-11-23 16:17:01,174 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:17:01,180 INFO L263 TraceCheckSpWp]: Trace formula consists of 479 conjuncts, 128 conjunts are in the unsatisfiable core [2022-11-23 16:17:01,184 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:17:01,191 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:17:01,950 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:17:02,047 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,156 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,270 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,398 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,521 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,640 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,759 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:02,881 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:03,005 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:03,129 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:03,233 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:03,235 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:03,235 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:17:03,297 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 22 proven. 286 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:03,298 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:17:03,689 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1571 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1571) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 3)) 0)) is different from false [2022-11-23 16:17:03,699 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1571 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1571) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 4)) 0)) is different from false [2022-11-23 16:17:03,838 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1571 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1571) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)) 0)) is different from false [2022-11-23 16:17:03,848 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1571 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1571) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 7 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:17:04,297 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:04,297 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:17:04,303 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:04,303 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:17:04,306 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:05,531 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 22 proven. 184 refuted. 0 times theorem prover too weak. 0 trivial. 102 not checked. [2022-11-23 16:17:05,531 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1620967897] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:17:05,532 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1806028381] [2022-11-23 16:17:05,532 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:17:05,532 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:17:05,533 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:17:05,533 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:17:05,533 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:17:05,560 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:05,566 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:17:05,590 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:05,629 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:05,648 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:05,700 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:05,733 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:05,764 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:17:05,764 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:17:05,826 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:05,830 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:05,831 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:05,832 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:05,832 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:05,871 INFO L321 Elim1Store]: treesize reduction 99, result has 15.4 percent of original size [2022-11-23 16:17:05,872 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 48 treesize of output 52 [2022-11-23 16:17:05,931 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:17:05,931 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:17:05,982 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:17:08,688 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '8878#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:17:08,688 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:17:08,688 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:17:08,688 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [28, 28, 29] total 80 [2022-11-23 16:17:08,688 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [462536665] [2022-11-23 16:17:08,688 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:17:08,689 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 80 states [2022-11-23 16:17:08,689 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:17:08,690 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 80 interpolants. [2022-11-23 16:17:08,690 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=273, Invalid=6600, Unknown=115, NotChecked=668, Total=7656 [2022-11-23 16:17:08,690 INFO L87 Difference]: Start difference. First operand 71 states and 74 transitions. Second operand has 80 states, 80 states have (on average 2.2) internal successors, (176), 80 states have internal predecessors, (176), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:15,194 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:17:15,194 INFO L93 Difference]: Finished difference Result 108 states and 111 transitions. [2022-11-23 16:17:15,194 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2022-11-23 16:17:15,195 INFO L78 Accepts]: Start accepts. Automaton has has 80 states, 80 states have (on average 2.2) internal successors, (176), 80 states have internal predecessors, (176), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 61 [2022-11-23 16:17:15,195 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:17:15,199 INFO L225 Difference]: With dead ends: 108 [2022-11-23 16:17:15,199 INFO L226 Difference]: Without dead ends: 74 [2022-11-23 16:17:15,200 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 246 GetRequests, 124 SyntacticMatches, 0 SemanticMatches, 122 ConstructedPredicates, 4 IntricatePredicates, 0 DeprecatedPredicates, 2348 ImplicationChecksByTransitivity, 11.4s TimeCoverageRelationStatistics Valid=724, Invalid=13454, Unknown=118, NotChecked=956, Total=15252 [2022-11-23 16:17:15,201 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 106 mSDsluCounter, 60 mSDsCounter, 0 mSdLazyCounter, 2631 mSolverCounterSat, 46 mSolverCounterUnsat, 90 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 106 SdHoareTripleChecker+Valid, 63 SdHoareTripleChecker+Invalid, 2967 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 46 IncrementalHoareTripleChecker+Valid, 2631 IncrementalHoareTripleChecker+Invalid, 90 IncrementalHoareTripleChecker+Unknown, 200 IncrementalHoareTripleChecker+Unchecked, 2.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:17:15,201 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [106 Valid, 63 Invalid, 2967 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [46 Valid, 2631 Invalid, 90 Unknown, 200 Unchecked, 2.1s Time] [2022-11-23 16:17:15,201 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 74 states. [2022-11-23 16:17:15,203 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 73. [2022-11-23 16:17:15,203 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 73 states, 71 states have (on average 1.0704225352112675) internal successors, (76), 72 states have internal predecessors, (76), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:15,203 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 73 states to 73 states and 76 transitions. [2022-11-23 16:17:15,204 INFO L78 Accepts]: Start accepts. Automaton has 73 states and 76 transitions. Word has length 61 [2022-11-23 16:17:15,204 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:17:15,204 INFO L495 AbstractCegarLoop]: Abstraction has 73 states and 76 transitions. [2022-11-23 16:17:15,204 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 80 states, 80 states have (on average 2.2) internal successors, (176), 80 states have internal predecessors, (176), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:15,204 INFO L276 IsEmpty]: Start isEmpty. Operand 73 states and 76 transitions. [2022-11-23 16:17:15,205 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2022-11-23 16:17:15,205 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:17:15,205 INFO L195 NwaCegarLoop]: trace histogram [12, 12, 12, 11, 11, 1, 1, 1, 1, 1] [2022-11-23 16:17:15,212 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Forceful destruction successful, exit code 0 [2022-11-23 16:17:15,405 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable32,27 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:17:15,406 INFO L420 AbstractCegarLoop]: === Iteration 34 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:17:15,406 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:17:15,406 INFO L85 PathProgramCache]: Analyzing trace with hash -894440383, now seen corresponding path program 9 times [2022-11-23 16:17:15,406 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:17:15,406 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [53317042] [2022-11-23 16:17:15,406 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:17:15,406 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:17:15,446 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:17:17,095 INFO L134 CoverageAnalysis]: Checked inductivity of 331 backedges. 100 proven. 231 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:17,096 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:17:17,096 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [53317042] [2022-11-23 16:17:17,096 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [53317042] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:17:17,096 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2144962479] [2022-11-23 16:17:17,096 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:17:17,096 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:17:17,096 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:17:17,098 INFO L229 MonitoredProcess]: Starting monitored process 28 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:17:17,119 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2022-11-23 16:17:18,422 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:17:18,422 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:17:18,429 INFO L263 TraceCheckSpWp]: Trace formula consists of 492 conjuncts, 98 conjunts are in the unsatisfiable core [2022-11-23 16:17:18,432 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:17:18,499 INFO L321 Elim1Store]: treesize reduction 11, result has 45.0 percent of original size [2022-11-23 16:17:18,499 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 1 case distinctions, treesize of input 9 treesize of output 15 [2022-11-23 16:17:18,514 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:17:20,382 INFO L134 CoverageAnalysis]: Checked inductivity of 331 backedges. 121 proven. 210 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:20,382 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:17:22,317 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:22,398 INFO L134 CoverageAnalysis]: Checked inductivity of 331 backedges. 144 proven. 187 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:22,398 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2144962479] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:17:22,398 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [382539941] [2022-11-23 16:17:22,399 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:17:22,399 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:17:22,400 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:17:22,400 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:17:22,400 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:17:22,423 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:22,435 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:17:22,467 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:22,508 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:22,532 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:22,569 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:22,624 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:22,655 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:17:22,655 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:17:22,717 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:22,718 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:22,720 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:22,722 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:22,760 INFO L321 Elim1Store]: treesize reduction 99, result has 15.4 percent of original size [2022-11-23 16:17:22,761 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 48 treesize of output 52 [2022-11-23 16:17:22,817 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:17:22,818 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:17:22,871 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:17:25,383 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '9595#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:17:25,384 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:17:25,384 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:17:25,384 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [27, 27, 27] total 81 [2022-11-23 16:17:25,384 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [668594163] [2022-11-23 16:17:25,384 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:17:25,384 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 83 states [2022-11-23 16:17:25,385 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:17:25,385 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 83 interpolants. [2022-11-23 16:17:25,386 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=620, Invalid=7570, Unknown=0, NotChecked=0, Total=8190 [2022-11-23 16:17:25,386 INFO L87 Difference]: Start difference. First operand 73 states and 76 transitions. Second operand has 83 states, 82 states have (on average 2.3048780487804876) internal successors, (189), 82 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:28,670 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:17:28,670 INFO L93 Difference]: Finished difference Result 73 states and 75 transitions. [2022-11-23 16:17:28,670 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2022-11-23 16:17:28,670 INFO L78 Accepts]: Start accepts. Automaton has has 83 states, 82 states have (on average 2.3048780487804876) internal successors, (189), 82 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 63 [2022-11-23 16:17:28,671 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:17:28,671 INFO L225 Difference]: With dead ends: 73 [2022-11-23 16:17:28,671 INFO L226 Difference]: Without dead ends: 73 [2022-11-23 16:17:28,672 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 240 GetRequests, 125 SyntacticMatches, 0 SemanticMatches, 115 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3152 ImplicationChecksByTransitivity, 8.5s TimeCoverageRelationStatistics Valid=1845, Invalid=11727, Unknown=0, NotChecked=0, Total=13572 [2022-11-23 16:17:28,673 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 452 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1870 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 452 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 1885 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 1870 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2022-11-23 16:17:28,673 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [452 Valid, 0 Invalid, 1885 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 1870 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2022-11-23 16:17:28,673 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 73 states. [2022-11-23 16:17:28,674 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 73 to 73. [2022-11-23 16:17:28,675 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 73 states, 71 states have (on average 1.056338028169014) internal successors, (75), 72 states have internal predecessors, (75), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:28,675 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 73 states to 73 states and 75 transitions. [2022-11-23 16:17:28,675 INFO L78 Accepts]: Start accepts. Automaton has 73 states and 75 transitions. Word has length 63 [2022-11-23 16:17:28,676 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:17:28,676 INFO L495 AbstractCegarLoop]: Abstraction has 73 states and 75 transitions. [2022-11-23 16:17:28,676 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 83 states, 82 states have (on average 2.3048780487804876) internal successors, (189), 82 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:28,676 INFO L276 IsEmpty]: Start isEmpty. Operand 73 states and 75 transitions. [2022-11-23 16:17:28,677 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2022-11-23 16:17:28,677 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:17:28,677 INFO L195 NwaCegarLoop]: trace histogram [13, 12, 12, 12, 12, 1, 1, 1, 1, 1] [2022-11-23 16:17:28,690 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Ended with exit code 0 [2022-11-23 16:17:28,885 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 28 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable33 [2022-11-23 16:17:28,886 INFO L420 AbstractCegarLoop]: === Iteration 35 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:17:28,886 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:17:28,886 INFO L85 PathProgramCache]: Analyzing trace with hash -296336468, now seen corresponding path program 10 times [2022-11-23 16:17:28,886 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:17:28,886 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1043853363] [2022-11-23 16:17:28,887 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:17:28,887 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:17:28,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:17:30,617 INFO L134 CoverageAnalysis]: Checked inductivity of 366 backedges. 188 proven. 178 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:30,617 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:17:30,617 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1043853363] [2022-11-23 16:17:30,617 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1043853363] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:17:30,618 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [690931447] [2022-11-23 16:17:30,618 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:17:30,618 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:17:30,618 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:17:30,619 INFO L229 MonitoredProcess]: Starting monitored process 29 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:17:30,621 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Waiting until timeout for monitored process [2022-11-23 16:17:30,861 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:17:30,865 INFO L263 TraceCheckSpWp]: Trace formula consists of 515 conjuncts, 131 conjunts are in the unsatisfiable core [2022-11-23 16:17:30,869 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:17:30,875 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:17:31,643 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:31,737 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:31,847 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:31,974 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,099 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,220 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,343 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,471 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,616 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,750 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:32,888 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:33,033 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:17:33,282 INFO L321 Elim1Store]: treesize reduction 5, result has 37.5 percent of original size [2022-11-23 16:17:33,282 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 10 [2022-11-23 16:17:33,360 INFO L134 CoverageAnalysis]: Checked inductivity of 366 backedges. 24 proven. 342 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:33,360 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:17:33,647 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1805 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1805) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:17:33,656 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1805 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1805) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 3)) 0)) is different from false [2022-11-23 16:17:33,802 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1805 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1805) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 5 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:17:33,947 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1805 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1805) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 7 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:17:33,957 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1805 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1805) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 8)) 0)) is different from false [2022-11-23 16:17:34,243 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_1805 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_1805) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 11)) 0)) is different from false [2022-11-23 16:17:34,254 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:34,254 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:17:34,260 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:34,260 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:17:34,638 INFO L134 CoverageAnalysis]: Checked inductivity of 366 backedges. 24 proven. 189 refuted. 0 times theorem prover too weak. 0 trivial. 153 not checked. [2022-11-23 16:17:34,638 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [690931447] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:17:34,638 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1874538877] [2022-11-23 16:17:34,639 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:17:34,639 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:17:34,639 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:17:34,639 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:17:34,639 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:17:34,672 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:34,676 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:17:34,712 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:34,747 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:34,767 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:34,805 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:17:34,843 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:34,874 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:17:34,874 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:17:34,922 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:34,926 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:34,927 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:17:34,928 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:34,929 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:17:34,966 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:17:34,967 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 52 treesize of output 54 [2022-11-23 16:17:35,031 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:17:35,032 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:17:35,083 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:17:37,744 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '10265#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:17:37,744 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:17:37,744 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:17:37,744 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [30, 31, 31] total 74 [2022-11-23 16:17:37,744 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1299565964] [2022-11-23 16:17:37,745 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:17:37,745 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 74 states [2022-11-23 16:17:37,745 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:17:37,746 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 74 interpolants. [2022-11-23 16:17:37,746 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=260, Invalid=5360, Unknown=104, NotChecked=918, Total=6642 [2022-11-23 16:17:37,746 INFO L87 Difference]: Start difference. First operand 73 states and 75 transitions. Second operand has 74 states, 74 states have (on average 2.27027027027027) internal successors, (168), 74 states have internal predecessors, (168), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:44,208 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:17:44,209 INFO L93 Difference]: Finished difference Result 113 states and 115 transitions. [2022-11-23 16:17:44,209 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 43 states. [2022-11-23 16:17:44,209 INFO L78 Accepts]: Start accepts. Automaton has has 74 states, 74 states have (on average 2.27027027027027) internal successors, (168), 74 states have internal predecessors, (168), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 66 [2022-11-23 16:17:44,209 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:17:44,210 INFO L225 Difference]: With dead ends: 113 [2022-11-23 16:17:44,210 INFO L226 Difference]: Without dead ends: 76 [2022-11-23 16:17:44,211 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 268 GetRequests, 146 SyntacticMatches, 2 SemanticMatches, 120 ConstructedPredicates, 6 IntricatePredicates, 2 DeprecatedPredicates, 2364 ImplicationChecksByTransitivity, 10.9s TimeCoverageRelationStatistics Valid=702, Invalid=12555, Unknown=107, NotChecked=1398, Total=14762 [2022-11-23 16:17:44,211 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 32 mSDsluCounter, 67 mSDsCounter, 0 mSdLazyCounter, 2274 mSolverCounterSat, 48 mSolverCounterUnsat, 141 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 32 SdHoareTripleChecker+Valid, 70 SdHoareTripleChecker+Invalid, 2687 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 2274 IncrementalHoareTripleChecker+Invalid, 141 IncrementalHoareTripleChecker+Unknown, 224 IncrementalHoareTripleChecker+Unchecked, 2.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:17:44,211 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [32 Valid, 70 Invalid, 2687 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 2274 Invalid, 141 Unknown, 224 Unchecked, 2.1s Time] [2022-11-23 16:17:44,212 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2022-11-23 16:17:44,213 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 75. [2022-11-23 16:17:44,213 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 73 states have (on average 1.0547945205479452) internal successors, (77), 74 states have internal predecessors, (77), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:44,214 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 77 transitions. [2022-11-23 16:17:44,214 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 77 transitions. Word has length 66 [2022-11-23 16:17:44,214 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:17:44,214 INFO L495 AbstractCegarLoop]: Abstraction has 75 states and 77 transitions. [2022-11-23 16:17:44,214 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 74 states, 74 states have (on average 2.27027027027027) internal successors, (168), 74 states have internal predecessors, (168), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:17:44,215 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 77 transitions. [2022-11-23 16:17:44,215 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 69 [2022-11-23 16:17:44,215 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:17:44,215 INFO L195 NwaCegarLoop]: trace histogram [13, 13, 13, 12, 12, 1, 1, 1, 1, 1] [2022-11-23 16:17:44,228 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Forceful destruction successful, exit code 0 [2022-11-23 16:17:44,423 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable34,29 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:17:44,423 INFO L420 AbstractCegarLoop]: === Iteration 36 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:17:44,423 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:17:44,423 INFO L85 PathProgramCache]: Analyzing trace with hash 1001430458, now seen corresponding path program 11 times [2022-11-23 16:17:44,423 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:17:44,423 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1245800373] [2022-11-23 16:17:44,424 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:17:44,424 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:17:44,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:17:46,242 INFO L134 CoverageAnalysis]: Checked inductivity of 391 backedges. 121 proven. 270 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:17:46,242 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:17:46,242 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1245800373] [2022-11-23 16:17:46,242 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1245800373] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:17:46,242 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [215050566] [2022-11-23 16:17:46,242 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:17:46,243 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:17:46,243 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:17:46,243 INFO L229 MonitoredProcess]: Starting monitored process 30 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:17:46,257 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (30)] Waiting until timeout for monitored process [2022-11-23 16:17:48,912 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 13 check-sat command(s) [2022-11-23 16:17:48,912 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:17:48,921 INFO L263 TraceCheckSpWp]: Trace formula consists of 515 conjuncts, 189 conjunts are in the unsatisfiable core [2022-11-23 16:17:48,927 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:17:48,991 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:17:48,999 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 9 treesize of output 11 [2022-11-23 16:17:50,092 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:17:50,196 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:50,324 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:50,448 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:50,577 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:50,715 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:17:50,946 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-23 16:17:51,207 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 31 [2022-11-23 16:17:51,487 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 35 [2022-11-23 16:17:51,807 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 43 [2022-11-23 16:17:52,171 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 59 treesize of output 51 [2022-11-23 16:17:52,531 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 63 treesize of output 53 [2022-11-23 16:17:52,784 INFO L321 Elim1Store]: treesize reduction 24, result has 57.9 percent of original size [2022-11-23 16:17:52,785 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 8 select indices, 8 select index equivalence classes, 22 disjoint index pairs (out of 28 index pairs), introduced 8 new quantified variables, introduced 7 case distinctions, treesize of input 65 treesize of output 63 [2022-11-23 16:17:52,791 WARN L718 sPolynomialRelations]: Constructing 64(two to the power of 6 dual juncts. [2022-11-23 16:17:52,795 WARN L718 sPolynomialRelations]: Constructing 128(two to the power of 7 dual juncts. [2022-11-23 16:17:52,969 INFO L134 CoverageAnalysis]: Checked inductivity of 391 backedges. 86 proven. 275 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2022-11-23 16:17:52,970 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:17:59,370 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:59,370 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 162 treesize of output 96 [2022-11-23 16:17:59,405 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:17:59,406 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 8 select indices, 8 select index equivalence classes, 21 disjoint index pairs (out of 28 index pairs), introduced 8 new quantified variables, introduced 28 case distinctions, treesize of input 187 treesize of output 194 [2022-11-23 16:17:59,413 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:59,418 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:59,422 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:59,427 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:59,431 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:59,437 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:17:59,441 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:18:03,850 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:03,858 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:18:03,861 WARN L718 sPolynomialRelations]: Constructing 128(two to the power of 7 dual juncts. [2022-11-23 16:18:04,016 INFO L134 CoverageAnalysis]: Checked inductivity of 391 backedges. 20 proven. 335 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2022-11-23 16:18:04,016 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [215050566] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:18:04,016 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [204476113] [2022-11-23 16:18:04,017 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:18:04,017 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:18:04,018 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:18:04,018 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:18:04,018 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:18:04,045 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:04,048 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:18:04,084 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:18:04,121 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:18:04,148 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:18:04,194 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:18:04,234 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:04,258 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:18:04,258 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:18:04,307 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:04,310 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:04,311 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:04,312 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:04,342 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:18:04,342 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:18:04,415 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:18:04,415 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:18:04,466 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:18:07,578 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '11050#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:18:07,579 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:18:07,579 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:18:07,579 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [29, 33, 41] total 103 [2022-11-23 16:18:07,579 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [319412841] [2022-11-23 16:18:07,579 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:18:07,580 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 105 states [2022-11-23 16:18:07,580 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:18:07,580 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 105 interpolants. [2022-11-23 16:18:07,581 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=831, Invalid=11649, Unknown=176, NotChecked=0, Total=12656 [2022-11-23 16:18:07,581 INFO L87 Difference]: Start difference. First operand 75 states and 77 transitions. Second operand has 105 states, 104 states have (on average 1.7788461538461537) internal successors, (185), 104 states have internal predecessors, (185), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:18:27,050 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [1] [2022-11-23 16:18:33,117 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:18:33,117 INFO L93 Difference]: Finished difference Result 97 states and 98 transitions. [2022-11-23 16:18:33,118 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 68 states. [2022-11-23 16:18:33,118 INFO L78 Accepts]: Start accepts. Automaton has has 105 states, 104 states have (on average 1.7788461538461537) internal successors, (185), 104 states have internal predecessors, (185), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 68 [2022-11-23 16:18:33,118 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:18:33,118 INFO L225 Difference]: With dead ends: 97 [2022-11-23 16:18:33,119 INFO L226 Difference]: Without dead ends: 97 [2022-11-23 16:18:33,120 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 296 GetRequests, 120 SyntacticMatches, 0 SemanticMatches, 176 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6251 ImplicationChecksByTransitivity, 34.2s TimeCoverageRelationStatistics Valid=4458, Invalid=26846, Unknown=202, NotChecked=0, Total=31506 [2022-11-23 16:18:33,120 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 1208 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 3062 mSolverCounterSat, 336 mSolverCounterUnsat, 36 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1208 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 3434 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 336 IncrementalHoareTripleChecker+Valid, 3062 IncrementalHoareTripleChecker+Invalid, 36 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.9s IncrementalHoareTripleChecker+Time [2022-11-23 16:18:33,120 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1208 Valid, 0 Invalid, 3434 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [336 Valid, 3062 Invalid, 36 Unknown, 0 Unchecked, 5.9s Time] [2022-11-23 16:18:33,121 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 97 states. [2022-11-23 16:18:33,121 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 97 to 91. [2022-11-23 16:18:33,122 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 89 states have (on average 1.0898876404494382) internal successors, (97), 90 states have internal predecessors, (97), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:18:33,122 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 97 transitions. [2022-11-23 16:18:33,122 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 97 transitions. Word has length 68 [2022-11-23 16:18:33,122 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:18:33,122 INFO L495 AbstractCegarLoop]: Abstraction has 91 states and 97 transitions. [2022-11-23 16:18:33,122 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 105 states, 104 states have (on average 1.7788461538461537) internal successors, (185), 104 states have internal predecessors, (185), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:18:33,122 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 97 transitions. [2022-11-23 16:18:33,123 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 74 [2022-11-23 16:18:33,123 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:18:33,123 INFO L195 NwaCegarLoop]: trace histogram [14, 14, 14, 13, 13, 1, 1, 1, 1, 1] [2022-11-23 16:18:33,135 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (30)] Ended with exit code 0 [2022-11-23 16:18:33,332 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 30 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable35 [2022-11-23 16:18:33,333 INFO L420 AbstractCegarLoop]: === Iteration 37 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:18:33,333 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:18:33,333 INFO L85 PathProgramCache]: Analyzing trace with hash -1189848071, now seen corresponding path program 15 times [2022-11-23 16:18:33,333 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:18:33,333 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2008856098] [2022-11-23 16:18:33,333 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:18:33,333 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:18:33,383 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:18:35,749 INFO L134 CoverageAnalysis]: Checked inductivity of 456 backedges. 0 proven. 456 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:18:35,749 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:18:35,749 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2008856098] [2022-11-23 16:18:35,750 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2008856098] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:18:35,750 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2081111819] [2022-11-23 16:18:35,750 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:18:35,750 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:18:35,750 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:18:35,751 INFO L229 MonitoredProcess]: Starting monitored process 31 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:18:35,754 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (31)] Waiting until timeout for monitored process [2022-11-23 16:18:36,611 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:18:36,612 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:18:36,619 INFO L263 TraceCheckSpWp]: Trace formula consists of 568 conjuncts, 174 conjunts are in the unsatisfiable core [2022-11-23 16:18:36,624 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:18:37,805 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:18:37,929 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:37,929 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,077 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,078 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,221 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,222 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,367 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,368 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,512 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,512 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,664 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,664 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,814 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,815 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:38,967 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:38,968 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:39,123 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:39,124 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:39,297 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:39,298 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:39,456 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:39,456 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:39,615 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:39,616 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 21 treesize of output 20 [2022-11-23 16:18:39,872 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:39,874 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:18:39,874 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:18:39,963 INFO L134 CoverageAnalysis]: Checked inductivity of 456 backedges. 52 proven. 403 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-23 16:18:39,963 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:18:46,057 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 167 treesize of output 161 [2022-11-23 16:18:48,207 INFO L134 CoverageAnalysis]: Checked inductivity of 456 backedges. 52 proven. 403 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-23 16:18:48,207 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2081111819] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:18:48,207 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [96036702] [2022-11-23 16:18:48,208 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:18:48,208 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:18:48,208 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:18:48,209 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:18:48,209 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:18:48,233 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:48,243 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:18:48,279 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:18:48,318 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:18:48,339 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:18:48,380 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:18:48,424 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:48,449 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:18:48,450 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:18:48,499 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:48,503 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:18:48,504 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:48,505 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:18:48,537 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:18:48,538 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:18:48,611 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:18:48,611 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:18:48,688 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:18:51,969 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '11904#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:18:51,969 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:18:51,969 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:18:51,969 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [33, 33, 34] total 96 [2022-11-23 16:18:51,969 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1302643851] [2022-11-23 16:18:51,969 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:18:51,970 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 96 states [2022-11-23 16:18:51,970 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:18:51,971 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 96 interpolants. [2022-11-23 16:18:51,971 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=262, Invalid=10450, Unknown=0, NotChecked=0, Total=10712 [2022-11-23 16:18:51,971 INFO L87 Difference]: Start difference. First operand 91 states and 97 transitions. Second operand has 96 states, 96 states have (on average 2.1979166666666665) internal successors, (211), 96 states have internal predecessors, (211), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:19:04,054 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:19:04,054 INFO L93 Difference]: Finished difference Result 134 states and 140 transitions. [2022-11-23 16:19:04,054 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 45 states. [2022-11-23 16:19:04,054 INFO L78 Accepts]: Start accepts. Automaton has has 96 states, 96 states have (on average 2.1979166666666665) internal successors, (211), 96 states have internal predecessors, (211), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 73 [2022-11-23 16:19:04,055 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:19:04,055 INFO L225 Difference]: With dead ends: 134 [2022-11-23 16:19:04,055 INFO L226 Difference]: Without dead ends: 94 [2022-11-23 16:19:04,056 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 292 GetRequests, 138 SyntacticMatches, 10 SemanticMatches, 144 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2443 ImplicationChecksByTransitivity, 23.4s TimeCoverageRelationStatistics Valid=832, Invalid=20338, Unknown=0, NotChecked=0, Total=21170 [2022-11-23 16:19:04,056 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 192 mSDsluCounter, 73 mSDsCounter, 0 mSdLazyCounter, 4772 mSolverCounterSat, 50 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 192 SdHoareTripleChecker+Valid, 76 SdHoareTripleChecker+Invalid, 4822 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 50 IncrementalHoareTripleChecker+Valid, 4772 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.6s IncrementalHoareTripleChecker+Time [2022-11-23 16:19:04,056 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [192 Valid, 76 Invalid, 4822 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [50 Valid, 4772 Invalid, 0 Unknown, 0 Unchecked, 3.6s Time] [2022-11-23 16:19:04,056 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 94 states. [2022-11-23 16:19:04,057 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 94 to 93. [2022-11-23 16:19:04,057 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 93 states, 91 states have (on average 1.0879120879120878) internal successors, (99), 92 states have internal predecessors, (99), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:19:04,058 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 93 states to 93 states and 99 transitions. [2022-11-23 16:19:04,058 INFO L78 Accepts]: Start accepts. Automaton has 93 states and 99 transitions. Word has length 73 [2022-11-23 16:19:04,058 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:19:04,058 INFO L495 AbstractCegarLoop]: Abstraction has 93 states and 99 transitions. [2022-11-23 16:19:04,059 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 96 states, 96 states have (on average 2.1979166666666665) internal successors, (211), 96 states have internal predecessors, (211), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:19:04,059 INFO L276 IsEmpty]: Start isEmpty. Operand 93 states and 99 transitions. [2022-11-23 16:19:04,059 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 76 [2022-11-23 16:19:04,060 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:19:04,060 INFO L195 NwaCegarLoop]: trace histogram [14, 14, 14, 14, 14, 1, 1, 1, 1, 1] [2022-11-23 16:19:04,079 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (31)] Forceful destruction successful, exit code 0 [2022-11-23 16:19:04,268 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable36,31 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:19:04,269 INFO L420 AbstractCegarLoop]: === Iteration 38 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:19:04,269 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:19:04,269 INFO L85 PathProgramCache]: Analyzing trace with hash 1787901483, now seen corresponding path program 16 times [2022-11-23 16:19:04,269 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:19:04,269 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1551111514] [2022-11-23 16:19:04,269 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:19:04,269 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:19:04,321 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:19:06,701 INFO L134 CoverageAnalysis]: Checked inductivity of 483 backedges. 14 proven. 469 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:19:06,701 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:19:06,703 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1551111514] [2022-11-23 16:19:06,703 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1551111514] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:19:06,703 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1134847389] [2022-11-23 16:19:06,703 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:19:06,703 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:19:06,704 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:19:06,705 INFO L229 MonitoredProcess]: Starting monitored process 32 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:19:06,719 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (32)] Waiting until timeout for monitored process [2022-11-23 16:19:06,978 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:19:06,982 INFO L263 TraceCheckSpWp]: Trace formula consists of 581 conjuncts, 149 conjunts are in the unsatisfiable core [2022-11-23 16:19:06,987 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:19:06,992 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:19:07,858 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:07,965 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:19:08,026 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,043 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,072 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,091 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,117 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,135 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,156 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,174 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,193 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,214 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,233 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,250 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:08,317 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 7 [2022-11-23 16:19:08,322 INFO L134 CoverageAnalysis]: Checked inductivity of 483 backedges. 14 proven. 469 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:19:08,322 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:19:08,334 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2227 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2227) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:19:08,343 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2227 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2227) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:19:08,618 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2227 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2227) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 5 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:19:08,628 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2227 (Array Int Int))) (= 0 (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2227) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)))) is different from false [2022-11-23 16:19:09,274 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 15 treesize of output 13 [2022-11-23 16:19:09,276 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-23 16:19:09,636 INFO L134 CoverageAnalysis]: Checked inductivity of 483 backedges. 14 proven. 341 refuted. 0 times theorem prover too weak. 0 trivial. 128 not checked. [2022-11-23 16:19:09,637 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1134847389] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:19:09,637 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1116192347] [2022-11-23 16:19:09,638 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:19:09,638 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:19:09,638 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:19:09,638 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:19:09,638 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:19:09,661 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:09,664 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:19:09,715 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:19:09,752 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:09,773 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:09,818 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:09,862 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:19:09,895 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:19:09,896 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:19:09,940 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:09,944 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:09,945 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:19:09,946 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:19:09,986 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:19:09,986 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:19:10,050 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:19:10,050 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:19:10,114 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:19:12,623 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '12729#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:19:12,623 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:19:12,623 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:19:12,623 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [34, 35, 35] total 62 [2022-11-23 16:19:12,623 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [744351927] [2022-11-23 16:19:12,623 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:19:12,624 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 62 states [2022-11-23 16:19:12,624 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:19:12,624 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 62 interpolants. [2022-11-23 16:19:12,625 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=186, Invalid=4082, Unknown=38, NotChecked=524, Total=4830 [2022-11-23 16:19:12,625 INFO L87 Difference]: Start difference. First operand 93 states and 99 transitions. Second operand has 62 states, 62 states have (on average 2.193548387096774) internal successors, (136), 62 states have internal predecessors, (136), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:19:16,759 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:19:16,759 INFO L93 Difference]: Finished difference Result 139 states and 145 transitions. [2022-11-23 16:19:16,760 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 49 states. [2022-11-23 16:19:16,760 INFO L78 Accepts]: Start accepts. Automaton has has 62 states, 62 states have (on average 2.193548387096774) internal successors, (136), 62 states have internal predecessors, (136), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 75 [2022-11-23 16:19:16,760 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:19:16,761 INFO L225 Difference]: With dead ends: 139 [2022-11-23 16:19:16,761 INFO L226 Difference]: Without dead ends: 96 [2022-11-23 16:19:16,762 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 304 GetRequests, 192 SyntacticMatches, 11 SemanticMatches, 101 ConstructedPredicates, 4 IntricatePredicates, 1 DeprecatedPredicates, 1576 ImplicationChecksByTransitivity, 7.5s TimeCoverageRelationStatistics Valid=496, Invalid=9181, Unknown=41, NotChecked=788, Total=10506 [2022-11-23 16:19:16,762 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 176 mSDsluCounter, 86 mSDsCounter, 0 mSdLazyCounter, 2891 mSolverCounterSat, 19 mSolverCounterUnsat, 43 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 176 SdHoareTripleChecker+Valid, 89 SdHoareTripleChecker+Invalid, 3149 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 19 IncrementalHoareTripleChecker+Valid, 2891 IncrementalHoareTripleChecker+Invalid, 43 IncrementalHoareTripleChecker+Unknown, 196 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2022-11-23 16:19:16,762 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [176 Valid, 89 Invalid, 3149 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [19 Valid, 2891 Invalid, 43 Unknown, 196 Unchecked, 1.9s Time] [2022-11-23 16:19:16,763 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 96 states. [2022-11-23 16:19:16,764 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 96 to 95. [2022-11-23 16:19:16,764 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 95 states, 93 states have (on average 1.086021505376344) internal successors, (101), 94 states have internal predecessors, (101), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:19:16,765 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 95 states to 95 states and 101 transitions. [2022-11-23 16:19:16,765 INFO L78 Accepts]: Start accepts. Automaton has 95 states and 101 transitions. Word has length 75 [2022-11-23 16:19:16,765 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:19:16,765 INFO L495 AbstractCegarLoop]: Abstraction has 95 states and 101 transitions. [2022-11-23 16:19:16,765 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 62 states, 62 states have (on average 2.193548387096774) internal successors, (136), 62 states have internal predecessors, (136), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:19:16,766 INFO L276 IsEmpty]: Start isEmpty. Operand 95 states and 101 transitions. [2022-11-23 16:19:16,766 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2022-11-23 16:19:16,766 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:19:16,766 INFO L195 NwaCegarLoop]: trace histogram [15, 15, 14, 14, 14, 1, 1, 1, 1, 1] [2022-11-23 16:19:16,783 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (32)] Forceful destruction successful, exit code 0 [2022-11-23 16:19:16,974 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 32 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable37 [2022-11-23 16:19:16,974 INFO L420 AbstractCegarLoop]: === Iteration 39 === Targeting ULTIMATE.startErr5REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:19:16,974 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:19:16,974 INFO L85 PathProgramCache]: Analyzing trace with hash -1337963555, now seen corresponding path program 17 times [2022-11-23 16:19:16,974 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:19:16,974 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [182224893] [2022-11-23 16:19:16,974 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:19:16,975 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:19:17,006 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:19:18,540 INFO L134 CoverageAnalysis]: Checked inductivity of 512 backedges. 182 proven. 330 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:19:18,540 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:19:18,541 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [182224893] [2022-11-23 16:19:18,541 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [182224893] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:19:18,541 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [928534400] [2022-11-23 16:19:18,541 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:19:18,541 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:19:18,542 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:19:18,542 INFO L229 MonitoredProcess]: Starting monitored process 33 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:19:18,545 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (33)] Waiting until timeout for monitored process [2022-11-23 16:19:21,781 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 15 check-sat command(s) [2022-11-23 16:19:21,781 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:19:21,791 INFO L263 TraceCheckSpWp]: Trace formula consists of 581 conjuncts, 209 conjunts are in the unsatisfiable core [2022-11-23 16:19:21,796 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:19:21,806 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:19:22,790 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:19:22,897 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:23,023 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:23,148 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:23,286 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:23,434 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:23,574 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:19:23,815 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 23 treesize of output 23 [2022-11-23 16:19:24,087 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 33 treesize of output 31 [2022-11-23 16:19:24,378 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 39 treesize of output 35 [2022-11-23 16:19:24,709 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 49 treesize of output 43 [2022-11-23 16:19:25,065 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 55 treesize of output 47 [2022-11-23 16:19:25,455 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 65 treesize of output 55 [2022-11-23 16:19:25,895 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 71 treesize of output 59 [2022-11-23 16:19:26,280 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,281 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,282 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,283 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,284 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,285 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,286 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:26,335 INFO L321 Elim1Store]: treesize reduction 28, result has 58.2 percent of original size [2022-11-23 16:19:26,336 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 9 select indices, 9 select index equivalence classes, 28 disjoint index pairs (out of 36 index pairs), introduced 9 new quantified variables, introduced 8 case distinctions, treesize of input 75 treesize of output 73 [2022-11-23 16:19:26,340 WARN L718 sPolynomialRelations]: Constructing 256(two to the power of 8 dual juncts. [2022-11-23 16:19:26,355 WARN L718 sPolynomialRelations]: Constructing 128(two to the power of 7 dual juncts. [2022-11-23 16:19:26,581 INFO L134 CoverageAnalysis]: Checked inductivity of 512 backedges. 95 proven. 397 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2022-11-23 16:19:26,581 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:19:34,699 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 12 [2022-11-23 16:19:34,713 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:19:34,713 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 185 treesize of output 108 [2022-11-23 16:19:34,764 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:19:34,765 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 9 select indices, 9 select index equivalence classes, 28 disjoint index pairs (out of 36 index pairs), introduced 9 new quantified variables, introduced 36 case distinctions, treesize of input 212 treesize of output 221 [2022-11-23 16:19:34,826 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,831 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,836 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,841 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,848 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,852 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,857 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:34,861 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:19:35,775 WARN L718 sPolynomialRelations]: Constructing 256(two to the power of 8 dual juncts. [2022-11-23 16:19:35,787 WARN L718 sPolynomialRelations]: Constructing 128(two to the power of 7 dual juncts. [2022-11-23 16:19:35,798 WARN L718 sPolynomialRelations]: Constructing 64(two to the power of 6 dual juncts. [2022-11-23 16:19:37,069 INFO L134 CoverageAnalysis]: Checked inductivity of 512 backedges. 25 proven. 415 refuted. 0 times theorem prover too weak. 72 trivial. 0 not checked. [2022-11-23 16:19:37,069 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [928534400] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:19:37,069 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [952349893] [2022-11-23 16:19:37,070 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:19:37,070 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:19:37,070 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:19:37,071 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:19:37,071 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:19:37,102 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:37,107 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:19:37,141 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:19:37,176 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:37,197 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:37,236 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:19:37,280 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:19:37,313 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:19:37,313 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:19:37,355 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:37,359 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:19:37,360 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:19:37,361 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:19:37,400 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:19:37,400 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:19:37,466 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:19:37,466 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:19:37,544 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:19:40,869 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '13606#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:19:40,869 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:19:40,869 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:19:40,869 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [32, 39, 42] total 111 [2022-11-23 16:19:40,869 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2038975424] [2022-11-23 16:19:40,869 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:19:40,870 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 112 states [2022-11-23 16:19:40,870 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:19:40,871 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 112 interpolants. [2022-11-23 16:19:40,871 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1179, Invalid=12848, Unknown=253, NotChecked=0, Total=14280 [2022-11-23 16:19:40,872 INFO L87 Difference]: Start difference. First operand 95 states and 101 transitions. Second operand has 112 states, 111 states have (on average 1.864864864864865) internal successors, (207), 112 states have internal predecessors, (207), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:20:04,568 WARN L233 SmtUtils]: Spent 10.01s on a formula simplification. DAG size of input: 229 DAG size of output: 205 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-23 16:20:10,231 WARN L233 SmtUtils]: Spent 5.02s on a formula simplification. DAG size of input: 240 DAG size of output: 213 (called from [L 361] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2022-11-23 16:20:26,018 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:20:26,018 INFO L93 Difference]: Finished difference Result 106 states and 107 transitions. [2022-11-23 16:20:26,019 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 80 states. [2022-11-23 16:20:26,019 INFO L78 Accepts]: Start accepts. Automaton has has 112 states, 111 states have (on average 1.864864864864865) internal successors, (207), 112 states have internal predecessors, (207), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 77 [2022-11-23 16:20:26,019 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:20:26,020 INFO L225 Difference]: With dead ends: 106 [2022-11-23 16:20:26,020 INFO L226 Difference]: Without dead ends: 106 [2022-11-23 16:20:26,021 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 337 GetRequests, 143 SyntacticMatches, 0 SemanticMatches, 194 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8577 ImplicationChecksByTransitivity, 55.8s TimeCoverageRelationStatistics Valid=4782, Invalid=33112, Unknown=326, NotChecked=0, Total=38220 [2022-11-23 16:20:26,022 INFO L413 NwaCegarLoop]: 2 mSDtfsCounter, 660 mSDsluCounter, 6 mSDsCounter, 0 mSdLazyCounter, 3403 mSolverCounterSat, 402 mSolverCounterUnsat, 68 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 660 SdHoareTripleChecker+Valid, 8 SdHoareTripleChecker+Invalid, 3873 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 402 IncrementalHoareTripleChecker+Valid, 3403 IncrementalHoareTripleChecker+Invalid, 68 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.4s IncrementalHoareTripleChecker+Time [2022-11-23 16:20:26,023 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [660 Valid, 8 Invalid, 3873 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [402 Valid, 3403 Invalid, 68 Unknown, 0 Unchecked, 5.4s Time] [2022-11-23 16:20:26,023 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 106 states. [2022-11-23 16:20:26,025 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 106 to 103. [2022-11-23 16:20:26,025 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 101 states have (on average 1.0495049504950495) internal successors, (106), 102 states have internal predecessors, (106), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:20:26,025 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 106 transitions. [2022-11-23 16:20:26,026 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 106 transitions. Word has length 77 [2022-11-23 16:20:26,026 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:20:26,026 INFO L495 AbstractCegarLoop]: Abstraction has 103 states and 106 transitions. [2022-11-23 16:20:26,026 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 112 states, 111 states have (on average 1.864864864864865) internal successors, (207), 112 states have internal predecessors, (207), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:20:26,026 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 106 transitions. [2022-11-23 16:20:26,027 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 94 [2022-11-23 16:20:26,027 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:20:26,027 INFO L195 NwaCegarLoop]: trace histogram [20, 19, 19, 15, 15, 1, 1, 1, 1, 1] [2022-11-23 16:20:26,037 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (33)] Forceful destruction successful, exit code 0 [2022-11-23 16:20:26,237 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 33 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable38 [2022-11-23 16:20:26,237 INFO L420 AbstractCegarLoop]: === Iteration 40 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:20:26,237 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:20:26,237 INFO L85 PathProgramCache]: Analyzing trace with hash -1366216873, now seen corresponding path program 12 times [2022-11-23 16:20:26,238 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:20:26,238 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [774526211] [2022-11-23 16:20:26,238 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:20:26,238 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:20:26,308 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:20:29,492 INFO L134 CoverageAnalysis]: Checked inductivity of 776 backedges. 496 proven. 280 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:20:29,493 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:20:29,493 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [774526211] [2022-11-23 16:20:29,493 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [774526211] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:20:29,493 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [469598300] [2022-11-23 16:20:29,493 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:20:29,493 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:20:29,494 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:20:29,499 INFO L229 MonitoredProcess]: Starting monitored process 34 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:20:29,507 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (34)] Waiting until timeout for monitored process [2022-11-23 16:20:33,143 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:20:33,144 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:20:33,152 INFO L263 TraceCheckSpWp]: Trace formula consists of 715 conjuncts, 162 conjunts are in the unsatisfiable core [2022-11-23 16:20:33,157 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:20:33,166 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:20:34,893 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:20:35,050 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:35,227 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:35,400 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:35,600 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:35,790 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:35,974 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:36,163 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:36,348 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:36,545 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:36,738 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:36,934 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:37,140 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:37,341 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:37,550 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:20:37,881 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:20:37,884 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:20:37,884 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:20:38,004 INFO L134 CoverageAnalysis]: Checked inductivity of 776 backedges. 210 proven. 540 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2022-11-23 16:20:38,004 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:20:38,269 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:20:38,283 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:20:38,296 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 3)) 0)) is different from false [2022-11-23 16:20:38,545 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 5 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:20:39,024 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 8)) 0)) is different from false [2022-11-23 16:20:39,279 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 10)) 0)) is different from false [2022-11-23 16:20:39,951 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2542 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2542) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 14)) 0)) is different from false [2022-11-23 16:20:39,965 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:20:39,965 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:20:39,973 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:20:39,973 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:20:39,983 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:20:42,712 INFO L134 CoverageAnalysis]: Checked inductivity of 776 backedges. 210 proven. 317 refuted. 0 times theorem prover too weak. 26 trivial. 223 not checked. [2022-11-23 16:20:42,712 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [469598300] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:20:42,712 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [299192216] [2022-11-23 16:20:42,713 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:20:42,713 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:20:42,713 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:20:42,713 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:20:42,714 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:20:42,741 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:20:42,744 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:20:42,771 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:20:42,808 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:20:42,828 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:20:42,869 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:20:42,906 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:20:42,937 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:20:42,937 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:20:42,999 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:20:43,001 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:20:43,003 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:20:43,006 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:20:43,052 INFO L321 Elim1Store]: treesize reduction 99, result has 15.4 percent of original size [2022-11-23 16:20:43,053 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 48 treesize of output 52 [2022-11-23 16:20:43,115 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:20:43,116 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:20:43,170 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:20:47,011 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '14636#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:20:47,011 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:20:47,011 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:20:47,011 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [40, 37, 37] total 109 [2022-11-23 16:20:47,011 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2048655545] [2022-11-23 16:20:47,011 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:20:47,012 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 109 states [2022-11-23 16:20:47,012 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:20:47,012 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 109 interpolants. [2022-11-23 16:20:47,012 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=454, Invalid=11397, Unknown=167, NotChecked=1554, Total=13572 [2022-11-23 16:20:47,013 INFO L87 Difference]: Start difference. First operand 103 states and 106 transitions. Second operand has 109 states, 109 states have (on average 2.293577981651376) internal successors, (250), 109 states have internal predecessors, (250), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:21:00,911 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:21:00,911 INFO L93 Difference]: Finished difference Result 152 states and 155 transitions. [2022-11-23 16:21:00,911 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 52 states. [2022-11-23 16:21:00,912 INFO L78 Accepts]: Start accepts. Automaton has has 109 states, 109 states have (on average 2.293577981651376) internal successors, (250), 109 states have internal predecessors, (250), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 93 [2022-11-23 16:21:00,912 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:21:00,913 INFO L225 Difference]: With dead ends: 152 [2022-11-23 16:21:00,913 INFO L226 Difference]: Without dead ends: 106 [2022-11-23 16:21:00,914 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 378 GetRequests, 214 SyntacticMatches, 0 SemanticMatches, 164 ConstructedPredicates, 7 IntricatePredicates, 0 DeprecatedPredicates, 4418 ImplicationChecksByTransitivity, 23.2s TimeCoverageRelationStatistics Valid=1116, Invalid=23864, Unknown=170, NotChecked=2240, Total=27390 [2022-11-23 16:21:00,914 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 52 mSDsluCounter, 91 mSDsCounter, 0 mSdLazyCounter, 3886 mSolverCounterSat, 48 mSolverCounterUnsat, 167 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 94 SdHoareTripleChecker+Invalid, 4543 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 3886 IncrementalHoareTripleChecker+Invalid, 167 IncrementalHoareTripleChecker+Unknown, 442 IncrementalHoareTripleChecker+Unchecked, 4.7s IncrementalHoareTripleChecker+Time [2022-11-23 16:21:00,914 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 94 Invalid, 4543 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 3886 Invalid, 167 Unknown, 442 Unchecked, 4.7s Time] [2022-11-23 16:21:00,915 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 106 states. [2022-11-23 16:21:00,924 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 106 to 105. [2022-11-23 16:21:00,924 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 105 states, 103 states have (on average 1.0485436893203883) internal successors, (108), 104 states have internal predecessors, (108), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:21:00,924 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 105 states to 105 states and 108 transitions. [2022-11-23 16:21:00,925 INFO L78 Accepts]: Start accepts. Automaton has 105 states and 108 transitions. Word has length 93 [2022-11-23 16:21:00,925 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:21:00,925 INFO L495 AbstractCegarLoop]: Abstraction has 105 states and 108 transitions. [2022-11-23 16:21:00,925 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 109 states, 109 states have (on average 2.293577981651376) internal successors, (250), 109 states have internal predecessors, (250), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:21:00,925 INFO L276 IsEmpty]: Start isEmpty. Operand 105 states and 108 transitions. [2022-11-23 16:21:00,926 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 96 [2022-11-23 16:21:00,926 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:21:00,926 INFO L195 NwaCegarLoop]: trace histogram [20, 19, 19, 16, 16, 1, 1, 1, 1, 1] [2022-11-23 16:21:00,936 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (34)] Forceful destruction successful, exit code 0 [2022-11-23 16:21:01,135 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 34 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable39 [2022-11-23 16:21:01,135 INFO L420 AbstractCegarLoop]: === Iteration 41 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:21:01,135 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:21:01,135 INFO L85 PathProgramCache]: Analyzing trace with hash -2130903927, now seen corresponding path program 13 times [2022-11-23 16:21:01,135 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:21:01,136 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1213680976] [2022-11-23 16:21:01,136 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:21:01,136 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:21:01,187 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:21:04,355 INFO L134 CoverageAnalysis]: Checked inductivity of 807 backedges. 496 proven. 311 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:21:04,356 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:21:04,356 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1213680976] [2022-11-23 16:21:04,356 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1213680976] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:21:04,356 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [430043839] [2022-11-23 16:21:04,356 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:21:04,356 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:21:04,356 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:21:04,357 INFO L229 MonitoredProcess]: Starting monitored process 35 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:21:04,360 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (35)] Waiting until timeout for monitored process [2022-11-23 16:21:04,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:21:04,685 INFO L263 TraceCheckSpWp]: Trace formula consists of 728 conjuncts, 165 conjunts are in the unsatisfiable core [2022-11-23 16:21:04,689 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:21:04,695 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:21:06,473 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:21:06,629 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:06,801 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:06,977 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:07,159 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:07,351 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:07,548 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:07,746 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:07,955 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:08,169 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:08,386 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:08,614 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:08,843 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:09,081 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:09,325 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:09,574 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:21:10,025 INFO L321 Elim1Store]: treesize reduction 5, result has 37.5 percent of original size [2022-11-23 16:21:10,025 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 10 [2022-11-23 16:21:10,150 INFO L134 CoverageAnalysis]: Checked inductivity of 807 backedges. 176 proven. 616 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2022-11-23 16:21:10,150 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:21:10,426 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:21:10,435 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:21:10,695 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 4)) 0)) is different from false [2022-11-23 16:21:10,949 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)) 0)) is different from false [2022-11-23 16:21:10,962 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 7 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:21:11,472 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 10)) 0)) is different from false [2022-11-23 16:21:11,487 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 11)) 0)) is different from false [2022-11-23 16:21:11,503 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 12)) 0)) is different from false [2022-11-23 16:21:11,518 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2714 (Array Int Int))) (= 0 (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2714) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 13)))) is different from false [2022-11-23 16:21:12,127 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:21:12,127 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:21:12,135 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:21:12,136 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:21:12,829 INFO L134 CoverageAnalysis]: Checked inductivity of 807 backedges. 176 proven. 326 refuted. 0 times theorem prover too weak. 15 trivial. 290 not checked. [2022-11-23 16:21:12,829 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [430043839] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:21:12,830 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [735767776] [2022-11-23 16:21:12,831 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:21:12,831 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:21:12,831 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:21:12,831 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:21:12,831 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:21:12,855 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:21:12,859 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:21:12,897 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:21:12,935 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:21:12,955 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:21:12,991 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:21:13,034 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:21:13,074 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:21:13,075 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:21:13,129 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:21:13,135 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:21:13,136 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:21:13,136 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:21:13,172 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:21:13,173 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:21:13,234 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:21:13,235 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:21:13,289 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:21:17,036 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '15672#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:21:17,036 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:21:17,036 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:21:17,036 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [41, 39, 39] total 97 [2022-11-23 16:21:17,037 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1230197504] [2022-11-23 16:21:17,037 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:21:17,037 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 97 states [2022-11-23 16:21:17,037 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:21:17,038 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 97 interpolants. [2022-11-23 16:21:17,039 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=412, Invalid=8515, Unknown=229, NotChecked=1764, Total=10920 [2022-11-23 16:21:17,039 INFO L87 Difference]: Start difference. First operand 105 states and 108 transitions. Second operand has 97 states, 97 states have (on average 2.381443298969072) internal successors, (231), 97 states have internal predecessors, (231), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:21:33,842 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:21:33,843 INFO L93 Difference]: Finished difference Result 157 states and 160 transitions. [2022-11-23 16:21:33,843 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 56 states. [2022-11-23 16:21:33,843 INFO L78 Accepts]: Start accepts. Automaton has has 97 states, 97 states have (on average 2.381443298969072) internal successors, (231), 97 states have internal predecessors, (231), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 95 [2022-11-23 16:21:33,844 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:21:33,844 INFO L225 Difference]: With dead ends: 157 [2022-11-23 16:21:33,844 INFO L226 Difference]: Without dead ends: 108 [2022-11-23 16:21:33,846 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 380 GetRequests, 222 SyntacticMatches, 2 SemanticMatches, 156 ConstructedPredicates, 9 IntricatePredicates, 2 DeprecatedPredicates, 4050 ImplicationChecksByTransitivity, 22.7s TimeCoverageRelationStatistics Valid=1150, Invalid=20706, Unknown=232, NotChecked=2718, Total=24806 [2022-11-23 16:21:33,846 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 102 mSDsluCounter, 71 mSDsCounter, 0 mSdLazyCounter, 3819 mSolverCounterSat, 63 mSolverCounterUnsat, 532 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 6.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 102 SdHoareTripleChecker+Valid, 74 SdHoareTripleChecker+Invalid, 5091 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 63 IncrementalHoareTripleChecker+Valid, 3819 IncrementalHoareTripleChecker+Invalid, 532 IncrementalHoareTripleChecker+Unknown, 677 IncrementalHoareTripleChecker+Unchecked, 6.8s IncrementalHoareTripleChecker+Time [2022-11-23 16:21:33,846 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [102 Valid, 74 Invalid, 5091 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [63 Valid, 3819 Invalid, 532 Unknown, 677 Unchecked, 6.8s Time] [2022-11-23 16:21:33,847 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 108 states. [2022-11-23 16:21:33,849 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 108 to 107. [2022-11-23 16:21:33,849 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 107 states, 105 states have (on average 1.0476190476190477) internal successors, (110), 106 states have internal predecessors, (110), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:21:33,850 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 107 states to 107 states and 110 transitions. [2022-11-23 16:21:33,850 INFO L78 Accepts]: Start accepts. Automaton has 107 states and 110 transitions. Word has length 95 [2022-11-23 16:21:33,850 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:21:33,850 INFO L495 AbstractCegarLoop]: Abstraction has 107 states and 110 transitions. [2022-11-23 16:21:33,850 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 97 states, 97 states have (on average 2.381443298969072) internal successors, (231), 97 states have internal predecessors, (231), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:21:33,851 INFO L276 IsEmpty]: Start isEmpty. Operand 107 states and 110 transitions. [2022-11-23 16:21:33,851 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2022-11-23 16:21:33,851 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:21:33,851 INFO L195 NwaCegarLoop]: trace histogram [20, 19, 19, 17, 17, 1, 1, 1, 1, 1] [2022-11-23 16:21:33,858 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (35)] Forceful destruction successful, exit code 0 [2022-11-23 16:21:34,055 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable40,35 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:21:34,055 INFO L420 AbstractCegarLoop]: === Iteration 42 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:21:34,055 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:21:34,056 INFO L85 PathProgramCache]: Analyzing trace with hash 1739212091, now seen corresponding path program 14 times [2022-11-23 16:21:34,056 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:21:34,056 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1331831963] [2022-11-23 16:21:34,056 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:21:34,056 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:21:34,114 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:21:37,948 INFO L134 CoverageAnalysis]: Checked inductivity of 840 backedges. 496 proven. 344 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:21:37,948 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:21:37,949 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1331831963] [2022-11-23 16:21:37,949 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1331831963] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:21:37,949 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [431853101] [2022-11-23 16:21:37,949 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-23 16:21:37,949 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:21:37,949 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:21:37,950 INFO L229 MonitoredProcess]: Starting monitored process 36 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:21:37,953 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (36)] Waiting until timeout for monitored process [2022-11-23 16:21:46,207 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 20 check-sat command(s) [2022-11-23 16:21:46,207 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:21:46,225 INFO L263 TraceCheckSpWp]: Trace formula consists of 741 conjuncts, 192 conjunts are in the unsatisfiable core [2022-11-23 16:21:46,237 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:21:46,247 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:21:48,687 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:21:48,874 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:49,081 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:49,319 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:49,549 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:49,755 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:49,969 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:50,191 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:50,436 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:50,661 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:50,883 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:51,118 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:51,376 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:51,616 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:51,849 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:52,101 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:52,371 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:21:52,605 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:21:52,605 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 1 disjoint index pairs (out of 1 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 7 [2022-11-23 16:21:52,761 INFO L134 CoverageAnalysis]: Checked inductivity of 840 backedges. 136 proven. 697 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2022-11-23 16:21:52,761 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:21:53,547 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:21:54,139 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 5 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:21:54,154 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)) 0)) is different from false [2022-11-23 16:21:54,480 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 8)) 0)) is different from false [2022-11-23 16:21:55,409 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 12)) 0)) is different from false [2022-11-23 16:21:55,742 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 14)) 0)) is different from false [2022-11-23 16:21:56,073 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_2892 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_2892) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 16 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:21:56,089 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:21:56,089 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:21:56,098 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:21:56,098 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:21:56,102 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:22:00,019 INFO L134 CoverageAnalysis]: Checked inductivity of 840 backedges. 136 proven. 424 refuted. 0 times theorem prover too weak. 7 trivial. 273 not checked. [2022-11-23 16:22:00,019 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [431853101] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:22:00,019 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [972443359] [2022-11-23 16:22:00,021 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:22:00,021 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:22:00,021 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:22:00,021 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:22:00,021 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:22:00,053 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:22:00,056 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:22:00,084 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:22:00,121 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:22:00,142 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:22:00,189 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:22:00,231 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:00,279 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:22:00,279 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:22:00,338 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:22:00,345 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:22:00,346 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:00,347 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:00,404 INFO L321 Elim1Store]: treesize reduction 95, result has 15.9 percent of original size [2022-11-23 16:22:00,404 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 54 treesize of output 56 [2022-11-23 16:22:00,484 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:22:00,485 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:22:00,573 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:22:05,203 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '16748#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:22:05,203 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:22:05,203 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:22:05,204 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [42, 40, 41] total 119 [2022-11-23 16:22:05,204 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1647064573] [2022-11-23 16:22:05,204 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:22:05,204 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 119 states [2022-11-23 16:22:05,205 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:22:05,205 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 119 interpolants. [2022-11-23 16:22:05,206 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=477, Invalid=13581, Unknown=250, NotChecked=1694, Total=16002 [2022-11-23 16:22:05,207 INFO L87 Difference]: Start difference. First operand 107 states and 110 transitions. Second operand has 119 states, 119 states have (on average 2.319327731092437) internal successors, (276), 119 states have internal predecessors, (276), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:22:27,589 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:22:27,589 INFO L93 Difference]: Finished difference Result 162 states and 165 transitions. [2022-11-23 16:22:27,590 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 58 states. [2022-11-23 16:22:27,590 INFO L78 Accepts]: Start accepts. Automaton has has 119 states, 119 states have (on average 2.319327731092437) internal successors, (276), 119 states have internal predecessors, (276), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 97 [2022-11-23 16:22:27,590 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:22:27,591 INFO L225 Difference]: With dead ends: 162 [2022-11-23 16:22:27,591 INFO L226 Difference]: Without dead ends: 110 [2022-11-23 16:22:27,593 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 387 GetRequests, 207 SyntacticMatches, 0 SemanticMatches, 180 ConstructedPredicates, 7 IntricatePredicates, 0 DeprecatedPredicates, 5150 ImplicationChecksByTransitivity, 33.2s TimeCoverageRelationStatistics Valid=1276, Invalid=28947, Unknown=255, NotChecked=2464, Total=32942 [2022-11-23 16:22:27,594 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 83 mSDsluCounter, 99 mSDsCounter, 0 mSdLazyCounter, 6254 mSolverCounterSat, 69 mSolverCounterUnsat, 168 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 7.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 83 SdHoareTripleChecker+Valid, 102 SdHoareTripleChecker+Invalid, 7079 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 69 IncrementalHoareTripleChecker+Valid, 6254 IncrementalHoareTripleChecker+Invalid, 168 IncrementalHoareTripleChecker+Unknown, 588 IncrementalHoareTripleChecker+Unchecked, 8.1s IncrementalHoareTripleChecker+Time [2022-11-23 16:22:27,594 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [83 Valid, 102 Invalid, 7079 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [69 Valid, 6254 Invalid, 168 Unknown, 588 Unchecked, 8.1s Time] [2022-11-23 16:22:27,594 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 110 states. [2022-11-23 16:22:27,596 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 110 to 109. [2022-11-23 16:22:27,597 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 109 states, 107 states have (on average 1.0467289719626167) internal successors, (112), 108 states have internal predecessors, (112), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:22:27,597 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 109 states to 109 states and 112 transitions. [2022-11-23 16:22:27,597 INFO L78 Accepts]: Start accepts. Automaton has 109 states and 112 transitions. Word has length 97 [2022-11-23 16:22:27,598 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:22:27,598 INFO L495 AbstractCegarLoop]: Abstraction has 109 states and 112 transitions. [2022-11-23 16:22:27,598 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 119 states, 119 states have (on average 2.319327731092437) internal successors, (276), 119 states have internal predecessors, (276), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:22:27,598 INFO L276 IsEmpty]: Start isEmpty. Operand 109 states and 112 transitions. [2022-11-23 16:22:27,599 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2022-11-23 16:22:27,599 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:22:27,599 INFO L195 NwaCegarLoop]: trace histogram [20, 19, 19, 18, 18, 1, 1, 1, 1, 1] [2022-11-23 16:22:27,611 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (36)] Ended with exit code 0 [2022-11-23 16:22:27,807 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable41,36 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:22:27,807 INFO L420 AbstractCegarLoop]: === Iteration 43 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:22:27,807 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:22:27,807 INFO L85 PathProgramCache]: Analyzing trace with hash 1479027053, now seen corresponding path program 15 times [2022-11-23 16:22:27,808 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:22:27,808 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [420950799] [2022-11-23 16:22:27,808 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:22:27,808 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:22:27,862 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:22:31,804 INFO L134 CoverageAnalysis]: Checked inductivity of 875 backedges. 496 proven. 379 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:22:31,804 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:22:31,804 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [420950799] [2022-11-23 16:22:31,804 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [420950799] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:22:31,805 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1046456619] [2022-11-23 16:22:31,805 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-23 16:22:31,805 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:22:31,805 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:22:31,806 INFO L229 MonitoredProcess]: Starting monitored process 37 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:22:31,811 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (37)] Waiting until timeout for monitored process [2022-11-23 16:22:34,362 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-23 16:22:34,362 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-23 16:22:34,374 INFO L263 TraceCheckSpWp]: Trace formula consists of 754 conjuncts, 189 conjunts are in the unsatisfiable core [2022-11-23 16:22:34,380 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:22:34,389 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:22:36,891 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2022-11-23 16:22:37,105 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:37,315 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:37,523 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:37,749 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:37,991 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:38,213 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:38,436 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:38,674 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:38,926 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:39,161 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:39,420 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:39,673 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:39,922 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:40,152 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:40,403 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:40,680 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:40,943 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 16 treesize of output 18 [2022-11-23 16:22:41,369 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:41,372 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:22:41,372 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 17 treesize of output 10 [2022-11-23 16:22:41,552 INFO L134 CoverageAnalysis]: Checked inductivity of 875 backedges. 90 proven. 783 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 16:22:41,552 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:22:42,553 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3074 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3074) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 3)) 0)) is different from false [2022-11-23 16:22:42,897 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3074 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3074) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 5 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:22:43,586 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3074 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3074) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 8)) 0)) is different from false [2022-11-23 16:22:44,234 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3074 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3074) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 11)) 0)) is different from false [2022-11-23 16:22:44,249 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3074 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3074) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 12)) 0)) is different from false [2022-11-23 16:22:45,622 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3074 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3074) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 17)) 0)) is different from false [2022-11-23 16:22:45,638 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:22:45,639 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:22:45,648 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:22:45,648 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:22:45,658 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 7 treesize of output 3 [2022-11-23 16:22:50,452 INFO L134 CoverageAnalysis]: Checked inductivity of 875 backedges. 90 proven. 522 refuted. 0 times theorem prover too weak. 2 trivial. 261 not checked. [2022-11-23 16:22:50,452 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1046456619] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:22:50,452 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1800449126] [2022-11-23 16:22:50,453 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:22:50,453 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:22:50,454 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:22:50,454 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:22:50,454 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:22:50,487 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:22:50,491 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:22:50,531 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:22:50,574 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:22:50,598 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:22:50,652 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:22:50,698 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:50,758 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:22:50,759 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:22:50,851 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:22:50,853 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:22:50,856 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:50,860 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:22:50,915 INFO L321 Elim1Store]: treesize reduction 97, result has 15.7 percent of original size [2022-11-23 16:22:50,915 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 2 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 50 treesize of output 54 [2022-11-23 16:22:51,004 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:22:51,004 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:22:51,073 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:22:56,133 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '17850#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:22:56,133 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:22:56,134 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:22:56,134 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [43, 43, 43] total 124 [2022-11-23 16:22:56,134 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1947022159] [2022-11-23 16:22:56,134 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:22:56,134 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 124 states [2022-11-23 16:22:56,134 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:22:56,135 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 124 interpolants. [2022-11-23 16:22:56,136 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=491, Invalid=14970, Unknown=313, NotChecked=1518, Total=17292 [2022-11-23 16:22:56,136 INFO L87 Difference]: Start difference. First operand 109 states and 112 transitions. Second operand has 124 states, 124 states have (on average 2.306451612903226) internal successors, (286), 124 states have internal predecessors, (286), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:23:16,451 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:23:16,451 INFO L93 Difference]: Finished difference Result 167 states and 170 transitions. [2022-11-23 16:23:16,451 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 61 states. [2022-11-23 16:23:16,451 INFO L78 Accepts]: Start accepts. Automaton has has 124 states, 124 states have (on average 2.306451612903226) internal successors, (286), 124 states have internal predecessors, (286), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 99 [2022-11-23 16:23:16,452 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:23:16,453 INFO L225 Difference]: With dead ends: 167 [2022-11-23 16:23:16,453 INFO L226 Difference]: Without dead ends: 112 [2022-11-23 16:23:16,455 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 412 GetRequests, 224 SyntacticMatches, 0 SemanticMatches, 188 ConstructedPredicates, 6 IntricatePredicates, 0 DeprecatedPredicates, 5626 ImplicationChecksByTransitivity, 36.8s TimeCoverageRelationStatistics Valid=1340, Invalid=32033, Unknown=323, NotChecked=2214, Total=35910 [2022-11-23 16:23:16,455 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 46 mSDsluCounter, 99 mSDsCounter, 0 mSdLazyCounter, 4462 mSolverCounterSat, 58 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 102 SdHoareTripleChecker+Invalid, 4854 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 58 IncrementalHoareTripleChecker+Valid, 4462 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 332 IncrementalHoareTripleChecker+Unchecked, 5.3s IncrementalHoareTripleChecker+Time [2022-11-23 16:23:16,456 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 102 Invalid, 4854 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [58 Valid, 4462 Invalid, 2 Unknown, 332 Unchecked, 5.3s Time] [2022-11-23 16:23:16,456 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 112 states. [2022-11-23 16:23:16,458 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 112 to 111. [2022-11-23 16:23:16,458 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 109 states have (on average 1.0458715596330275) internal successors, (114), 110 states have internal predecessors, (114), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:23:16,459 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 114 transitions. [2022-11-23 16:23:16,459 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 114 transitions. Word has length 99 [2022-11-23 16:23:16,459 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:23:16,459 INFO L495 AbstractCegarLoop]: Abstraction has 111 states and 114 transitions. [2022-11-23 16:23:16,459 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 124 states, 124 states have (on average 2.306451612903226) internal successors, (286), 124 states have internal predecessors, (286), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:23:16,460 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 114 transitions. [2022-11-23 16:23:16,460 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 102 [2022-11-23 16:23:16,460 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:23:16,461 INFO L195 NwaCegarLoop]: trace histogram [20, 19, 19, 19, 19, 1, 1, 1, 1, 1] [2022-11-23 16:23:16,470 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (37)] Ended with exit code 0 [2022-11-23 16:23:16,663 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 37 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable42 [2022-11-23 16:23:16,663 INFO L420 AbstractCegarLoop]: === Iteration 44 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:23:16,663 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:23:16,663 INFO L85 PathProgramCache]: Analyzing trace with hash 549308703, now seen corresponding path program 16 times [2022-11-23 16:23:16,664 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:23:16,664 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2062208317] [2022-11-23 16:23:16,664 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:23:16,664 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:23:16,714 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:23:20,813 INFO L134 CoverageAnalysis]: Checked inductivity of 912 backedges. 496 proven. 416 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:23:20,813 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 16:23:20,813 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2062208317] [2022-11-23 16:23:20,813 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2062208317] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 16:23:20,814 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1737744928] [2022-11-23 16:23:20,814 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-23 16:23:20,814 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:23:20,814 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 16:23:20,815 INFO L229 MonitoredProcess]: Starting monitored process 38 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 16:23:20,818 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (38)] Waiting until timeout for monitored process [2022-11-23 16:23:21,200 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 16:23:21,206 INFO L263 TraceCheckSpWp]: Trace formula consists of 767 conjuncts, 196 conjunts are in the unsatisfiable core [2022-11-23 16:23:21,211 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 16:23:21,217 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 10 treesize of output 8 [2022-11-23 16:23:23,709 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:23:23,890 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:24,099 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:24,337 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:24,563 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:24,778 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:25,018 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:25,281 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:25,531 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:25,784 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:26,062 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:26,342 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:26,602 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:26,890 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:27,190 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:27,463 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:27,766 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:28,089 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:28,383 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 1 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 17 treesize of output 19 [2022-11-23 16:23:28,982 INFO L321 Elim1Store]: treesize reduction 5, result has 37.5 percent of original size [2022-11-23 16:23:28,982 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 18 treesize of output 10 [2022-11-23 16:23:29,134 INFO L134 CoverageAnalysis]: Checked inductivity of 912 backedges. 38 proven. 874 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 16:23:29,135 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 16:23:29,498 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 1)) 0)) is different from false [2022-11-23 16:23:29,508 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 2 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:23:30,430 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 6)) 0)) is different from false [2022-11-23 16:23:30,444 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ 7 |c_ULTIMATE.start_cstpcpy_~from#1.offset|)) 0)) is different from false [2022-11-23 16:23:30,461 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 8)) 0)) is different from false [2022-11-23 16:23:31,090 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 11)) 0)) is different from false [2022-11-23 16:23:31,416 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 13)) 0)) is different from false [2022-11-23 16:23:31,430 WARN L837 $PredicateComparison]: unable to prove that (forall ((v_ArrVal_3262 (Array Int Int))) (= (select (select (store |c_#memory_int| |c_ULTIMATE.start_cstpcpy_~to#1.base| v_ArrVal_3262) |c_ULTIMATE.start_cstpcpy_~from#1.base|) (+ |c_ULTIMATE.start_cstpcpy_~from#1.offset| 14)) 0)) is different from false [2022-11-23 16:23:32,598 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:23:32,598 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 23 treesize of output 24 [2022-11-23 16:23:32,607 INFO L321 Elim1Store]: treesize reduction 0, result has 100.0 percent of original size [2022-11-23 16:23:32,607 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 0 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 1 case distinctions, treesize of input 37 treesize of output 32 [2022-11-23 16:23:33,443 INFO L134 CoverageAnalysis]: Checked inductivity of 912 backedges. 38 proven. 537 refuted. 0 times theorem prover too weak. 0 trivial. 337 not checked. [2022-11-23 16:23:33,443 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1737744928] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 16:23:33,444 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [617474306] [2022-11-23 16:23:33,444 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2022-11-23 16:23:33,444 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 16:23:33,445 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 16:23:33,445 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 16:23:33,445 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 16:23:33,468 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:23:33,471 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 3 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 15 [2022-11-23 16:23:33,506 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 11 treesize of output 7 [2022-11-23 16:23:33,540 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:23:33,559 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:23:33,595 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 14 treesize of output 10 [2022-11-23 16:23:33,635 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:23:33,664 INFO L321 Elim1Store]: treesize reduction 63, result has 22.2 percent of original size [2022-11-23 16:23:33,664 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 2 select indices, 2 select index equivalence classes, 0 disjoint index pairs (out of 1 index pairs), introduced 2 new quantified variables, introduced 3 case distinctions, treesize of input 29 treesize of output 31 [2022-11-23 16:23:33,729 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:23:33,731 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:23:33,735 INFO L190 IndexEqualityManager]: detected not equals via solver [2022-11-23 16:23:33,736 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:23:33,737 INFO L173 IndexEqualityManager]: detected equality via solver [2022-11-23 16:23:33,772 INFO L321 Elim1Store]: treesize reduction 99, result has 15.4 percent of original size [2022-11-23 16:23:33,772 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 4 select indices, 4 select index equivalence classes, 1 disjoint index pairs (out of 6 index pairs), introduced 4 new quantified variables, introduced 7 case distinctions, treesize of input 48 treesize of output 52 [2022-11-23 16:23:33,833 INFO L321 Elim1Store]: treesize reduction 25, result has 21.9 percent of original size [2022-11-23 16:23:33,833 INFO L350 Elim1Store]: Elim1 eliminated variable of array dimension 2, 1 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 1 case distinctions, treesize of input 19 treesize of output 18 [2022-11-23 16:23:33,886 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 16:23:38,346 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '18977#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.offset|) (or (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= |ULTIMATE.start_cstpcpy_~from#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= |ULTIMATE.start_cstpcpy_~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|)) (and (<= 0 |ULTIMATE.start_cstpcpy_~to#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.offset|) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.base|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.offset|) (<= 1 |ULTIMATE.start_main_~i~0#1|) (<= 0 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= 1 |ULTIMATE.start_cstpcpy_~to#1.offset|) (<= |ULTIMATE.start_main_~nondetString~0#1.offset| 0) (<= 1 |ULTIMATE.start_main_~length1~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.base|) (<= 0 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~length2~0#1|) (<= 0 |ULTIMATE.start_main_~nondetString~0#1.offset|) (<= |ULTIMATE.start_main_~length1~0#1| 2147483647) (<= |ULTIMATE.start_cstpcpy_#in~to#1.offset| 0) (<= 0 |ULTIMATE.start_main_#t~malloc7#1.base|) (<= 0 |ULTIMATE.start_cstpcpy_~from#1.base|) (<= |ULTIMATE.start_cstpcpy_#in~from#1.offset| 0) (<= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 0 |ULTIMATE.start_cstpcpy_#in~to#1.offset|) (<= 1 |ULTIMATE.start_cstpcpy_~from#1.offset|) (<= 0 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_~length2~0#1| 2147483647) (<= 0 |ULTIMATE.start_cstpcpy_#in~from#1.base|))) (= (select (select |#memory_int| |ULTIMATE.start_cstpcpy_~from#1.base|) |ULTIMATE.start_cstpcpy_~from#1.offset|) |ULTIMATE.start_cstpcpy_#t~mem4#1|) (<= (+ |ULTIMATE.start_cstpcpy_~from#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~from#1.base|)) (= (select |#valid| |ULTIMATE.start_cstpcpy_~from#1.base|) 1) (= |ULTIMATE.start_main_#t~malloc7#1.offset| 0) (= |#NULL.offset| 0) (not (<= (+ |ULTIMATE.start_cstpcpy_~to#1.offset| 1) (select |#length| |ULTIMATE.start_cstpcpy_~to#1.base|))) (= |#NULL.base| 0))' at error location [2022-11-23 16:23:38,346 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 16:23:38,346 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 16:23:38,346 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [44, 45, 45] total 109 [2022-11-23 16:23:38,346 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2036128399] [2022-11-23 16:23:38,346 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 16:23:38,347 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 109 states [2022-11-23 16:23:38,347 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 16:23:38,347 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 109 interpolants. [2022-11-23 16:23:38,348 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=440, Invalid=10936, Unknown=428, NotChecked=1768, Total=13572 [2022-11-23 16:23:38,348 INFO L87 Difference]: Start difference. First operand 111 states and 114 transitions. Second operand has 109 states, 109 states have (on average 2.376146788990826) internal successors, (259), 109 states have internal predecessors, (259), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:24:02,670 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 16:24:02,670 INFO L93 Difference]: Finished difference Result 172 states and 175 transitions. [2022-11-23 16:24:02,671 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 65 states. [2022-11-23 16:24:02,671 INFO L78 Accepts]: Start accepts. Automaton has has 109 states, 109 states have (on average 2.376146788990826) internal successors, (259), 109 states have internal predecessors, (259), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 101 [2022-11-23 16:24:02,672 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 16:24:02,672 INFO L225 Difference]: With dead ends: 172 [2022-11-23 16:24:02,672 INFO L226 Difference]: Without dead ends: 114 [2022-11-23 16:24:02,675 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 407 GetRequests, 228 SyntacticMatches, 2 SemanticMatches, 177 ConstructedPredicates, 8 IntricatePredicates, 2 DeprecatedPredicates, 5022 ImplicationChecksByTransitivity, 33.3s TimeCoverageRelationStatistics Valid=1488, Invalid=27180, Unknown=434, NotChecked=2760, Total=31862 [2022-11-23 16:24:02,676 INFO L413 NwaCegarLoop]: 3 mSDtfsCounter, 287 mSDsluCounter, 87 mSDsCounter, 0 mSdLazyCounter, 6117 mSolverCounterSat, 76 mSolverCounterUnsat, 303 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 8.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 287 SdHoareTripleChecker+Valid, 90 SdHoareTripleChecker+Invalid, 7258 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 76 IncrementalHoareTripleChecker+Valid, 6117 IncrementalHoareTripleChecker+Invalid, 303 IncrementalHoareTripleChecker+Unknown, 762 IncrementalHoareTripleChecker+Unchecked, 8.8s IncrementalHoareTripleChecker+Time [2022-11-23 16:24:02,676 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [287 Valid, 90 Invalid, 7258 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [76 Valid, 6117 Invalid, 303 Unknown, 762 Unchecked, 8.8s Time] [2022-11-23 16:24:02,676 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 114 states. [2022-11-23 16:24:02,678 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 114 to 113. [2022-11-23 16:24:02,679 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 113 states, 111 states have (on average 1.045045045045045) internal successors, (116), 112 states have internal predecessors, (116), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:24:02,679 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 113 states to 113 states and 116 transitions. [2022-11-23 16:24:02,680 INFO L78 Accepts]: Start accepts. Automaton has 113 states and 116 transitions. Word has length 101 [2022-11-23 16:24:02,680 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 16:24:02,680 INFO L495 AbstractCegarLoop]: Abstraction has 113 states and 116 transitions. [2022-11-23 16:24:02,680 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 109 states, 109 states have (on average 2.376146788990826) internal successors, (259), 109 states have internal predecessors, (259), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 16:24:02,681 INFO L276 IsEmpty]: Start isEmpty. Operand 113 states and 116 transitions. [2022-11-23 16:24:02,681 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 104 [2022-11-23 16:24:02,681 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 16:24:02,682 INFO L195 NwaCegarLoop]: trace histogram [20, 20, 20, 19, 19, 1, 1, 1, 1, 1] [2022-11-23 16:24:02,695 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (38)] Ended with exit code 0 [2022-11-23 16:24:02,890 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable43,38 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c11c2354-eca1-4ac4-8e1d-2d9c6c10709c/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 16:24:02,891 INFO L420 AbstractCegarLoop]: === Iteration 45 === Targeting ULTIMATE.startErr7REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 6 more)] === [2022-11-23 16:24:02,891 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 16:24:02,891 INFO L85 PathProgramCache]: Analyzing trace with hash 443171921, now seen corresponding path program 17 times [2022-11-23 16:24:02,891 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 16:24:02,891 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [57974189] [2022-11-23 16:24:02,891 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 16:24:02,891 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 16:24:02,969 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat