./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/ldv-linux-3.12-rc1/linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i --full-output --architecture 64bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version cf1a7837 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/config/AutomizerReach.xml -i ../../sv-benchmarks/c/ldv-linux-3.12-rc1/linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/config/svcomp-Reach-64bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 64bit --witnessprinter.graph.data.programhash 9f2fac8642c25f1335350a2814ff7cf3c4ea0fb7f4feaed63baec564397e8f24 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-cf1a783 [2023-11-12 02:27:49,271 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-12 02:27:49,405 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/config/svcomp-Reach-64bit-Automizer_Default.epf [2023-11-12 02:27:49,419 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-12 02:27:49,420 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-12 02:27:49,476 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-12 02:27:49,480 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-12 02:27:49,481 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-12 02:27:49,482 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-12 02:27:49,488 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-12 02:27:49,490 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-12 02:27:49,491 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-12 02:27:49,491 INFO L153 SettingsManager]: * Use SBE=true [2023-11-12 02:27:49,494 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-12 02:27:49,494 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-12 02:27:49,495 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-12 02:27:49,495 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-12 02:27:49,496 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-12 02:27:49,496 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-12 02:27:49,497 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-12 02:27:49,498 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-12 02:27:49,498 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-12 02:27:49,499 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-12 02:27:49,500 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-12 02:27:49,501 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-12 02:27:49,503 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-12 02:27:49,504 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-12 02:27:49,504 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-12 02:27:49,505 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-12 02:27:49,505 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-12 02:27:49,507 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-12 02:27:49,507 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-12 02:27:49,508 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-12 02:27:49,508 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-12 02:27:49,508 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-12 02:27:49,509 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-12 02:27:49,509 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 64bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 9f2fac8642c25f1335350a2814ff7cf3c4ea0fb7f4feaed63baec564397e8f24 [2023-11-12 02:27:49,874 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-12 02:27:49,918 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-12 02:27:49,921 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-12 02:27:49,923 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-12 02:27:49,924 INFO L274 PluginConnector]: CDTParser initialized [2023-11-12 02:27:49,926 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/../../sv-benchmarks/c/ldv-linux-3.12-rc1/linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i [2023-11-12 02:27:53,365 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-12 02:27:54,016 INFO L384 CDTParser]: Found 1 translation units. [2023-11-12 02:27:54,017 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/sv-benchmarks/c/ldv-linux-3.12-rc1/linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i [2023-11-12 02:27:54,076 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/data/f250ab06f/3ea1f441593e45ccb8616398677a6bdd/FLAG2d7dae098 [2023-11-12 02:27:54,095 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/data/f250ab06f/3ea1f441593e45ccb8616398677a6bdd [2023-11-12 02:27:54,100 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-12 02:27:54,103 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-12 02:27:54,109 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-12 02:27:54,110 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-12 02:27:54,115 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-12 02:27:54,118 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.11 02:27:54" (1/1) ... [2023-11-12 02:27:54,119 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6cb17ff3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:54, skipping insertion in model container [2023-11-12 02:27:54,120 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.11 02:27:54" (1/1) ... [2023-11-12 02:27:54,270 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-12 02:27:55,567 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/sv-benchmarks/c/ldv-linux-3.12-rc1/linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i[202214,202227] [2023-11-12 02:27:56,225 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-12 02:27:56,308 INFO L202 MainTranslator]: Completed pre-run [2023-11-12 02:27:56,490 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring inline assembler instruction C: __asm__ volatile (".pushsection .smp_locks,\"a\"\n.balign 4\n.long 671f - .\n.popsection\n671:\n\tlock; incl %0": "+m" (v->counter)); [6865] [2023-11-12 02:27:56,494 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring inline assembler instruction C: __asm__ volatile (".pushsection .smp_locks,\"a\"\n.balign 4\n.long 671f - .\n.popsection\n671:\n\tlock; decl %0": "+m" (v->counter)); [6872] [2023-11-12 02:27:56,506 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/sv-benchmarks/c/ldv-linux-3.12-rc1/linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i[202214,202227] [2023-11-12 02:27:56,676 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-12 02:27:56,907 WARN L672 CHandler]: The function __VERIFIER_nondet_u8 is called, but not defined or handled by StandardFunctionHandler. [2023-11-12 02:27:56,916 INFO L206 MainTranslator]: Completed translation [2023-11-12 02:27:56,917 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56 WrapperNode [2023-11-12 02:27:56,918 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-12 02:27:56,919 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-12 02:27:56,920 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-12 02:27:56,920 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-12 02:27:56,930 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,036 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,244 INFO L138 Inliner]: procedures = 163, calls = 1241, calls flagged for inlining = 76, calls inlined = 76, statements flattened = 3223 [2023-11-12 02:27:57,245 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-12 02:27:57,246 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-12 02:27:57,246 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-12 02:27:57,246 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-12 02:27:57,260 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,260 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,298 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,299 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,414 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,445 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,463 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,480 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,556 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-12 02:27:57,557 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-12 02:27:57,558 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-12 02:27:57,558 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-12 02:27:57,559 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (1/1) ... [2023-11-12 02:27:57,565 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-12 02:27:57,576 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/z3 [2023-11-12 02:27:57,589 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-12 02:27:57,617 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_176862e2-48e9-4852-8a10-2ef345c753bc/bin/uautomizer-verify-uTZkv6EMXl/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-12 02:27:57,638 INFO L130 BoogieDeclarations]: Found specification of procedure atomic_set [2023-11-12 02:27:57,638 INFO L138 BoogieDeclarations]: Found implementation of procedure atomic_set [2023-11-12 02:27:57,638 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_unregister_dev [2023-11-12 02:27:57,639 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_unregister_dev [2023-11-12 02:27:57,639 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_usb_fill_bulk_urb_2 [2023-11-12 02:27:57,639 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_usb_fill_bulk_urb_2 [2023-11-12 02:27:57,639 INFO L130 BoogieDeclarations]: Found specification of procedure skb_copy_from_linear_data [2023-11-12 02:27:57,639 INFO L138 BoogieDeclarations]: Found implementation of procedure skb_copy_from_linear_data [2023-11-12 02:27:57,639 INFO L130 BoogieDeclarations]: Found specification of procedure write~unchecked~int [2023-11-12 02:27:57,640 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_usb_submit_urb_3 [2023-11-12 02:27:57,640 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_usb_submit_urb_3 [2023-11-12 02:27:57,640 INFO L130 BoogieDeclarations]: Found specification of procedure read~unchecked~$Pointer$ [2023-11-12 02:27:57,640 INFO L130 BoogieDeclarations]: Found specification of procedure write~unchecked~$Pointer$ [2023-11-12 02:27:57,640 INFO L130 BoogieDeclarations]: Found specification of procedure usb_bulk_msg [2023-11-12 02:27:57,641 INFO L138 BoogieDeclarations]: Found implementation of procedure usb_bulk_msg [2023-11-12 02:27:57,641 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_stop [2023-11-12 02:27:57,641 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_stop [2023-11-12 02:27:57,641 INFO L130 BoogieDeclarations]: Found specification of procedure read~int [2023-11-12 02:27:57,641 INFO L130 BoogieDeclarations]: Found specification of procedure usb_endpoint_xfer_bulk [2023-11-12 02:27:57,641 INFO L138 BoogieDeclarations]: Found implementation of procedure usb_endpoint_xfer_bulk [2023-11-12 02:27:57,642 INFO L130 BoogieDeclarations]: Found specification of procedure skb_push [2023-11-12 02:27:57,642 INFO L138 BoogieDeclarations]: Found implementation of procedure skb_push [2023-11-12 02:27:57,642 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_submit_urb [2023-11-12 02:27:57,642 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_submit_urb [2023-11-12 02:27:57,642 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.C_memcpy [2023-11-12 02:27:57,643 INFO L138 BoogieDeclarations]: Found implementation of procedure #Ultimate.C_memcpy [2023-11-12 02:27:57,643 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_usb_disconnect [2023-11-12 02:27:57,643 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_usb_disconnect [2023-11-12 02:27:57,643 INFO L130 BoogieDeclarations]: Found specification of procedure __create_pipe [2023-11-12 02:27:57,643 INFO L138 BoogieDeclarations]: Found implementation of procedure __create_pipe [2023-11-12 02:27:57,643 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_malloc [2023-11-12 02:27:57,644 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_malloc [2023-11-12 02:27:57,644 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_alloc_urb [2023-11-12 02:27:57,644 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_alloc_urb [2023-11-12 02:27:57,644 INFO L130 BoogieDeclarations]: Found specification of procedure usb_kill_urb [2023-11-12 02:27:57,644 INFO L138 BoogieDeclarations]: Found implementation of procedure usb_kill_urb [2023-11-12 02:27:57,645 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_get_priv [2023-11-12 02:27:57,645 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_get_priv [2023-11-12 02:27:57,645 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_usb_submit_rx_urb [2023-11-12 02:27:57,645 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_usb_submit_rx_urb [2023-11-12 02:27:57,645 INFO L130 BoogieDeclarations]: Found specification of procedure kfree [2023-11-12 02:27:57,645 INFO L138 BoogieDeclarations]: Found implementation of procedure kfree [2023-11-12 02:27:57,645 INFO L130 BoogieDeclarations]: Found specification of procedure write~int [2023-11-12 02:27:57,646 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_error [2023-11-12 02:27:57,646 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_error [2023-11-12 02:27:57,646 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_usb_rx_complete [2023-11-12 02:27:57,646 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_usb_rx_complete [2023-11-12 02:27:57,646 INFO L130 BoogieDeclarations]: Found specification of procedure __dynamic_dev_dbg [2023-11-12 02:27:57,646 INFO L138 BoogieDeclarations]: Found implementation of procedure __dynamic_dev_dbg [2023-11-12 02:27:57,647 INFO L130 BoogieDeclarations]: Found specification of procedure __dynamic_pr_debug [2023-11-12 02:27:57,647 INFO L138 BoogieDeclarations]: Found implementation of procedure __dynamic_pr_debug [2023-11-12 02:27:57,647 INFO L130 BoogieDeclarations]: Found specification of procedure usb_endpoint_dir_in [2023-11-12 02:27:57,647 INFO L138 BoogieDeclarations]: Found implementation of procedure usb_endpoint_dir_in [2023-11-12 02:27:57,647 INFO L130 BoogieDeclarations]: Found specification of procedure dev_alloc_skb [2023-11-12 02:27:57,647 INFO L138 BoogieDeclarations]: Found implementation of procedure dev_alloc_skb [2023-11-12 02:27:57,648 INFO L130 BoogieDeclarations]: Found specification of procedure ldv__builtin_expect [2023-11-12 02:27:57,648 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv__builtin_expect [2023-11-12 02:27:57,648 INFO L130 BoogieDeclarations]: Found specification of procedure atomic_read [2023-11-12 02:27:57,648 INFO L138 BoogieDeclarations]: Found implementation of procedure atomic_read [2023-11-12 02:27:57,648 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.C_memset [2023-11-12 02:27:57,648 INFO L138 BoogieDeclarations]: Found implementation of procedure #Ultimate.C_memset [2023-11-12 02:27:57,649 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2023-11-12 02:27:57,649 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2023-11-12 02:27:57,649 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnHeap [2023-11-12 02:27:57,649 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_stop___0 [2023-11-12 02:27:57,649 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_stop___0 [2023-11-12 02:27:57,649 INFO L130 BoogieDeclarations]: Found specification of procedure dev_kfree_skb_any [2023-11-12 02:27:57,650 INFO L138 BoogieDeclarations]: Found implementation of procedure dev_kfree_skb_any [2023-11-12 02:27:57,650 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-12 02:27:57,650 INFO L130 BoogieDeclarations]: Found specification of procedure atomic_inc [2023-11-12 02:27:57,650 INFO L138 BoogieDeclarations]: Found implementation of procedure atomic_inc [2023-11-12 02:27:57,650 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_undef_int [2023-11-12 02:27:57,650 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_undef_int [2023-11-12 02:27:57,651 INFO L130 BoogieDeclarations]: Found specification of procedure write~$Pointer$ [2023-11-12 02:27:57,651 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2023-11-12 02:27:57,651 INFO L130 BoogieDeclarations]: Found specification of procedure ##fun~$Pointer$~TO~VOID [2023-11-12 02:27:57,651 INFO L138 BoogieDeclarations]: Found implementation of procedure ##fun~$Pointer$~TO~VOID [2023-11-12 02:27:57,651 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_usb_cmd_event_complete [2023-11-12 02:27:57,651 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_usb_cmd_event_complete [2023-11-12 02:27:57,652 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_usb_set_intfdata_8 [2023-11-12 02:27:57,652 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_usb_set_intfdata_8 [2023-11-12 02:27:57,652 INFO L130 BoogieDeclarations]: Found specification of procedure read~$Pointer$ [2023-11-12 02:27:57,652 INFO L130 BoogieDeclarations]: Found specification of procedure atomic_dec [2023-11-12 02:27:57,652 INFO L138 BoogieDeclarations]: Found implementation of procedure atomic_dec [2023-11-12 02:27:57,652 INFO L130 BoogieDeclarations]: Found specification of procedure usb_endpoint_num [2023-11-12 02:27:57,653 INFO L138 BoogieDeclarations]: Found implementation of procedure usb_endpoint_num [2023-11-12 02:27:57,653 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2023-11-12 02:27:57,653 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~$Pointer$ [2023-11-12 02:27:57,653 INFO L130 BoogieDeclarations]: Found specification of procedure printk [2023-11-12 02:27:57,653 INFO L138 BoogieDeclarations]: Found implementation of procedure printk [2023-11-12 02:27:57,653 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_usb_get_intfdata_10 [2023-11-12 02:27:57,653 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_usb_get_intfdata_10 [2023-11-12 02:27:57,654 INFO L130 BoogieDeclarations]: Found specification of procedure dev_err [2023-11-12 02:27:57,654 INFO L138 BoogieDeclarations]: Found implementation of procedure dev_err [2023-11-12 02:27:57,654 INFO L130 BoogieDeclarations]: Found specification of procedure kzalloc [2023-11-12 02:27:57,654 INFO L138 BoogieDeclarations]: Found implementation of procedure kzalloc [2023-11-12 02:27:57,654 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_free_urb [2023-11-12 02:27:57,654 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_free_urb [2023-11-12 02:27:57,655 INFO L130 BoogieDeclarations]: Found specification of procedure dev_warn [2023-11-12 02:27:57,655 INFO L138 BoogieDeclarations]: Found implementation of procedure dev_warn [2023-11-12 02:27:57,655 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-12 02:27:57,655 INFO L130 BoogieDeclarations]: Found specification of procedure mwifiex_usb_resume [2023-11-12 02:27:57,655 INFO L138 BoogieDeclarations]: Found implementation of procedure mwifiex_usb_resume [2023-11-12 02:27:57,655 INFO L130 BoogieDeclarations]: Found specification of procedure queue_work [2023-11-12 02:27:57,656 INFO L138 BoogieDeclarations]: Found implementation of procedure queue_work [2023-11-12 02:27:57,656 INFO L130 BoogieDeclarations]: Found specification of procedure interface_to_usbdev [2023-11-12 02:27:57,656 INFO L138 BoogieDeclarations]: Found implementation of procedure interface_to_usbdev [2023-11-12 02:27:57,656 INFO L130 BoogieDeclarations]: Found specification of procedure read~unchecked~int [2023-11-12 02:27:57,656 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_u8 [2023-11-12 02:27:57,656 INFO L130 BoogieDeclarations]: Found specification of procedure ldv_zalloc [2023-11-12 02:27:57,657 INFO L138 BoogieDeclarations]: Found implementation of procedure ldv_zalloc [2023-11-12 02:27:57,657 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-12 02:27:57,657 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-12 02:27:57,657 INFO L130 BoogieDeclarations]: Found specification of procedure usb_endpoint_dir_out [2023-11-12 02:27:57,657 INFO L138 BoogieDeclarations]: Found implementation of procedure usb_endpoint_dir_out [2023-11-12 02:27:58,203 INFO L236 CfgBuilder]: Building ICFG [2023-11-12 02:27:58,207 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-12 02:27:58,755 INFO L770 $ProcedureCfgBuilder]: dead code at ProgramPoint ldv_stopFINAL: assume true; [2023-11-12 02:27:59,810 INFO L770 $ProcedureCfgBuilder]: dead code at ProgramPoint ldv_stop___0FINAL: assume true; [2023-11-12 02:28:04,014 INFO L277 CfgBuilder]: Performing block encoding [2023-11-12 02:28:04,038 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-12 02:28:04,039 INFO L302 CfgBuilder]: Removed 1 assume(true) statements. [2023-11-12 02:28:04,043 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.11 02:28:04 BoogieIcfgContainer [2023-11-12 02:28:04,043 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-12 02:28:04,047 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-12 02:28:04,047 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-12 02:28:04,051 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-12 02:28:04,051 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 12.11 02:27:54" (1/3) ... [2023-11-12 02:28:04,052 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@351b915e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.11 02:28:04, skipping insertion in model container [2023-11-12 02:28:04,052 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 02:27:56" (2/3) ... [2023-11-12 02:28:04,054 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@351b915e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.11 02:28:04, skipping insertion in model container [2023-11-12 02:28:04,054 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.11 02:28:04" (3/3) ... [2023-11-12 02:28:04,056 INFO L112 eAbstractionObserver]: Analyzing ICFG linux-3.12-rc1.tar.xz-144_2a-drivers--net--wireless--mwifiex--mwifiex_usb.ko-entry_point.cil.out.i [2023-11-12 02:28:04,078 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-12 02:28:04,078 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-12 02:28:04,180 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-12 02:28:04,187 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@321cbbda, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-12 02:28:04,188 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-12 02:28:04,200 INFO L276 IsEmpty]: Start isEmpty. Operand has 993 states, 709 states have (on average 1.3554301833568405) internal successors, (961), 735 states have internal predecessors, (961), 235 states have call successors, (235), 49 states have call predecessors, (235), 47 states have return successors, (229), 221 states have call predecessors, (229), 229 states have call successors, (229) [2023-11-12 02:28:04,232 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2023-11-12 02:28:04,233 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 02:28:04,235 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-12 02:28:04,236 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting ldv_errorErr0ASSERT_VIOLATIONERROR_FUNCTION === [ldv_errorErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-12 02:28:04,244 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 02:28:04,245 INFO L85 PathProgramCache]: Analyzing trace with hash -956792265, now seen corresponding path program 1 times [2023-11-12 02:28:04,256 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-12 02:28:04,258 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1826403038] [2023-11-12 02:28:04,258 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 02:28:04,259 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 02:28:04,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:05,103 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-12 02:28:05,108 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:05,127 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-12 02:28:05,144 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:05,157 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-12 02:28:05,161 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:05,192 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-12 02:28:05,196 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:05,219 INFO L134 CoverageAnalysis]: Checked inductivity of 12 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-12 02:28:05,221 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-12 02:28:05,222 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1826403038] [2023-11-12 02:28:05,223 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1826403038] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 02:28:05,229 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 02:28:05,229 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-12 02:28:05,231 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [800316979] [2023-11-12 02:28:05,232 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 02:28:05,238 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-12 02:28:05,238 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-12 02:28:05,280 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-12 02:28:05,283 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-12 02:28:05,288 INFO L87 Difference]: Start difference. First operand has 993 states, 709 states have (on average 1.3554301833568405) internal successors, (961), 735 states have internal predecessors, (961), 235 states have call successors, (235), 49 states have call predecessors, (235), 47 states have return successors, (229), 221 states have call predecessors, (229), 229 states have call successors, (229) Second operand has 5 states, 5 states have (on average 5.8) internal successors, (29), 3 states have internal predecessors, (29), 2 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2023-11-12 02:28:07,891 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:09,898 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:16,612 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 02:28:16,612 INFO L93 Difference]: Finished difference Result 3184 states and 4739 transitions. [2023-11-12 02:28:16,614 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-12 02:28:16,615 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.8) internal successors, (29), 3 states have internal predecessors, (29), 2 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) Word has length 44 [2023-11-12 02:28:16,616 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 02:28:16,662 INFO L225 Difference]: With dead ends: 3184 [2023-11-12 02:28:16,662 INFO L226 Difference]: Without dead ends: 2172 [2023-11-12 02:28:16,674 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-12 02:28:16,680 INFO L413 NwaCegarLoop]: 1192 mSDtfsCounter, 2197 mSDsluCounter, 2201 mSDsCounter, 0 mSdLazyCounter, 1549 mSolverCounterSat, 1238 mSolverCounterUnsat, 2 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 10.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2405 SdHoareTripleChecker+Valid, 3393 SdHoareTripleChecker+Invalid, 2789 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.1s SdHoareTripleChecker+Time, 1238 IncrementalHoareTripleChecker+Valid, 1549 IncrementalHoareTripleChecker+Invalid, 2 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 10.8s IncrementalHoareTripleChecker+Time [2023-11-12 02:28:16,681 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [2405 Valid, 3393 Invalid, 2789 Unknown, 0 Unchecked, 0.1s Time], IncrementalHoareTripleChecker [1238 Valid, 1549 Invalid, 2 Unknown, 0 Unchecked, 10.8s Time] [2023-11-12 02:28:16,706 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2172 states. [2023-11-12 02:28:16,907 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2172 to 1882. [2023-11-12 02:28:16,913 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1882 states, 1350 states have (on average 1.34) internal successors, (1809), 1382 states have internal predecessors, (1809), 439 states have call successors, (439), 93 states have call predecessors, (439), 92 states have return successors, (434), 418 states have call predecessors, (434), 434 states have call successors, (434) [2023-11-12 02:28:16,930 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1882 states to 1882 states and 2682 transitions. [2023-11-12 02:28:16,933 INFO L78 Accepts]: Start accepts. Automaton has 1882 states and 2682 transitions. Word has length 44 [2023-11-12 02:28:16,934 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 02:28:16,934 INFO L495 AbstractCegarLoop]: Abstraction has 1882 states and 2682 transitions. [2023-11-12 02:28:16,934 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.8) internal successors, (29), 3 states have internal predecessors, (29), 2 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2023-11-12 02:28:16,935 INFO L276 IsEmpty]: Start isEmpty. Operand 1882 states and 2682 transitions. [2023-11-12 02:28:16,945 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2023-11-12 02:28:16,945 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 02:28:16,946 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-12 02:28:16,946 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-12 02:28:16,946 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting ldv_errorErr0ASSERT_VIOLATIONERROR_FUNCTION === [ldv_errorErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-12 02:28:16,947 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 02:28:16,947 INFO L85 PathProgramCache]: Analyzing trace with hash -1916589074, now seen corresponding path program 1 times [2023-11-12 02:28:16,947 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-12 02:28:16,948 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1310401669] [2023-11-12 02:28:16,948 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 02:28:16,948 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 02:28:17,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:17,998 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-12 02:28:18,003 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,023 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-12 02:28:18,027 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,047 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-12 02:28:18,051 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,086 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-12 02:28:18,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,113 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-12 02:28:18,118 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,137 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-11-12 02:28:18,142 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,161 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2023-11-12 02:28:18,166 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:18,191 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2023-11-12 02:28:18,192 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-12 02:28:18,192 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1310401669] [2023-11-12 02:28:18,193 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1310401669] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 02:28:18,193 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 02:28:18,193 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-12 02:28:18,194 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [877017087] [2023-11-12 02:28:18,194 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 02:28:18,197 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-12 02:28:18,199 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-12 02:28:18,200 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-12 02:28:18,206 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-12 02:28:18,207 INFO L87 Difference]: Start difference. First operand 1882 states and 2682 transitions. Second operand has 5 states, 5 states have (on average 8.4) internal successors, (42), 3 states have internal predecessors, (42), 2 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 1 states have call successors, (7) [2023-11-12 02:28:20,697 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:22,707 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:26,468 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:28,476 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:34,063 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 02:28:34,063 INFO L93 Difference]: Finished difference Result 6203 states and 9140 transitions. [2023-11-12 02:28:34,064 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-12 02:28:34,064 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 3 states have internal predecessors, (42), 2 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 1 states have call successors, (7) Word has length 66 [2023-11-12 02:28:34,066 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 02:28:34,116 INFO L225 Difference]: With dead ends: 6203 [2023-11-12 02:28:34,116 INFO L226 Difference]: Without dead ends: 4332 [2023-11-12 02:28:34,130 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 15 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-12 02:28:34,132 INFO L413 NwaCegarLoop]: 1295 mSDtfsCounter, 2207 mSDsluCounter, 2254 mSDsCounter, 0 mSdLazyCounter, 1589 mSolverCounterSat, 1202 mSolverCounterUnsat, 4 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 14.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2391 SdHoareTripleChecker+Valid, 3549 SdHoareTripleChecker+Invalid, 2795 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.1s SdHoareTripleChecker+Time, 1202 IncrementalHoareTripleChecker+Valid, 1589 IncrementalHoareTripleChecker+Invalid, 4 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 15.3s IncrementalHoareTripleChecker+Time [2023-11-12 02:28:34,133 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [2391 Valid, 3549 Invalid, 2795 Unknown, 0 Unchecked, 0.1s Time], IncrementalHoareTripleChecker [1202 Valid, 1589 Invalid, 4 Unknown, 0 Unchecked, 15.3s Time] [2023-11-12 02:28:34,146 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 4332 states. [2023-11-12 02:28:34,566 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 4332 to 3832. [2023-11-12 02:28:34,575 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 3832 states, 2746 states have (on average 1.3357611070648217) internal successors, (3668), 2816 states have internal predecessors, (3668), 885 states have call successors, (885), 185 states have call predecessors, (885), 200 states have return successors, (976), 856 states have call predecessors, (976), 880 states have call successors, (976) [2023-11-12 02:28:34,610 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3832 states to 3832 states and 5529 transitions. [2023-11-12 02:28:34,612 INFO L78 Accepts]: Start accepts. Automaton has 3832 states and 5529 transitions. Word has length 66 [2023-11-12 02:28:34,613 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 02:28:34,613 INFO L495 AbstractCegarLoop]: Abstraction has 3832 states and 5529 transitions. [2023-11-12 02:28:34,614 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 3 states have internal predecessors, (42), 2 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 1 states have call successors, (7) [2023-11-12 02:28:34,614 INFO L276 IsEmpty]: Start isEmpty. Operand 3832 states and 5529 transitions. [2023-11-12 02:28:34,617 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2023-11-12 02:28:34,618 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 02:28:34,618 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-12 02:28:34,619 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-12 02:28:34,619 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting ldv_errorErr0ASSERT_VIOLATIONERROR_FUNCTION === [ldv_errorErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-12 02:28:34,619 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 02:28:34,620 INFO L85 PathProgramCache]: Analyzing trace with hash 714816137, now seen corresponding path program 1 times [2023-11-12 02:28:34,620 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-12 02:28:34,623 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1689723913] [2023-11-12 02:28:34,624 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 02:28:34,624 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 02:28:34,912 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,526 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-12 02:28:35,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,543 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-12 02:28:35,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,561 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-12 02:28:35,564 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,588 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-12 02:28:35,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,604 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-12 02:28:35,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,618 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-11-12 02:28:35,621 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,633 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2023-11-12 02:28:35,635 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 02:28:35,647 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2023-11-12 02:28:35,647 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-12 02:28:35,647 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1689723913] [2023-11-12 02:28:35,648 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1689723913] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 02:28:35,648 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 02:28:35,648 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-12 02:28:35,648 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [348180652] [2023-11-12 02:28:35,649 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 02:28:35,649 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-12 02:28:35,649 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-12 02:28:35,650 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-12 02:28:35,650 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-12 02:28:35,650 INFO L87 Difference]: Start difference. First operand 3832 states and 5529 transitions. Second operand has 5 states, 5 states have (on average 8.6) internal successors, (43), 3 states have internal predecessors, (43), 2 states have call successors, (8), 4 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 1 states have call successors, (7) [2023-11-12 02:28:38,029 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.01s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers [] [2023-11-12 02:28:40,045 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 2.02s for a HTC check with result UNKNOWN. Formula has sorts [Array, Bool, Int], hasArrays=true, hasNonlinArith=false, quantifiers []