./Ultimate.py --spec ../../sv-benchmarks/c/properties/valid-memsafety.prp --file ../../sv-benchmarks/c/array-memsafety/openbsd_cmemrchr-alloca-2.i --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for memory safety (deref-memtrack) Using default analysis Version cf1a7837 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/config/TaipanMemDerefMemtrack.xml -i ../../sv-benchmarks/c/array-memsafety/openbsd_cmemrchr-alloca-2.i -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/config/svcomp-DerefFreeMemtrack-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 3a34687129125cc08371e7bb78f7bdb7a4f5274a9b22928fd388f593b6db6995 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-cf1a783 [2023-11-12 00:54:07,312 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-12 00:54:07,389 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/config/svcomp-DerefFreeMemtrack-32bit-Taipan_Default.epf [2023-11-12 00:54:07,394 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-12 00:54:07,395 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-12 00:54:07,439 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-12 00:54:07,440 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-12 00:54:07,441 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-12 00:54:07,442 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-12 00:54:07,442 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-12 00:54:07,457 INFO L153 SettingsManager]: * User list type=DISABLED [2023-11-12 00:54:07,458 INFO L151 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2023-11-12 00:54:07,458 INFO L153 SettingsManager]: * Explicit value domain=true [2023-11-12 00:54:07,459 INFO L153 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2023-11-12 00:54:07,460 INFO L153 SettingsManager]: * Octagon Domain=false [2023-11-12 00:54:07,461 INFO L153 SettingsManager]: * Abstract domain=CompoundDomain [2023-11-12 00:54:07,461 INFO L153 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2023-11-12 00:54:07,462 INFO L153 SettingsManager]: * Use the RCFG-of-the-future interface=true [2023-11-12 00:54:07,463 INFO L153 SettingsManager]: * Interval Domain=false [2023-11-12 00:54:07,463 INFO L151 SettingsManager]: Preferences of Sifa differ from their defaults: [2023-11-12 00:54:07,464 INFO L153 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2023-11-12 00:54:07,465 INFO L153 SettingsManager]: * Simplification Technique=POLY_PAC [2023-11-12 00:54:07,465 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-12 00:54:07,466 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-12 00:54:07,467 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-12 00:54:07,467 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-12 00:54:07,467 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-12 00:54:07,468 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-12 00:54:07,468 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-12 00:54:07,469 INFO L153 SettingsManager]: * Check for the main procedure if all allocated memory was freed=true [2023-11-12 00:54:07,469 INFO L153 SettingsManager]: * Bitprecise bitfields=true [2023-11-12 00:54:07,470 INFO L153 SettingsManager]: * SV-COMP memtrack compatibility mode=true [2023-11-12 00:54:07,470 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-12 00:54:07,470 INFO L153 SettingsManager]: * Adapt memory model on pointer casts if necessary=true [2023-11-12 00:54:07,471 INFO L153 SettingsManager]: * Check unreachability of reach_error function=false [2023-11-12 00:54:07,471 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-12 00:54:07,471 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-12 00:54:07,471 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-12 00:54:07,472 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-12 00:54:07,472 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-12 00:54:07,472 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-12 00:54:07,473 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-12 00:54:07,473 INFO L153 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2023-11-12 00:54:07,473 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-12 00:54:07,474 INFO L153 SettingsManager]: * Trace refinement exception blacklist=NONE [2023-11-12 00:54:07,474 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-12 00:54:07,474 INFO L153 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G valid-free) ) CHECK( init(main()), LTL(G valid-deref) ) CHECK( init(main()), LTL(G valid-memtrack) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 3a34687129125cc08371e7bb78f7bdb7a4f5274a9b22928fd388f593b6db6995 [2023-11-12 00:54:07,746 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-12 00:54:07,770 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-12 00:54:07,773 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-12 00:54:07,774 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-12 00:54:07,775 INFO L274 PluginConnector]: CDTParser initialized [2023-11-12 00:54:07,776 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/../../sv-benchmarks/c/array-memsafety/openbsd_cmemrchr-alloca-2.i [2023-11-12 00:54:10,888 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-12 00:54:11,189 INFO L384 CDTParser]: Found 1 translation units. [2023-11-12 00:54:11,190 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/sv-benchmarks/c/array-memsafety/openbsd_cmemrchr-alloca-2.i [2023-11-12 00:54:11,205 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/data/f79154c21/e65c4e624a2344be89bc1b99c3096f6a/FLAGc64b0f157 [2023-11-12 00:54:11,221 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/data/f79154c21/e65c4e624a2344be89bc1b99c3096f6a [2023-11-12 00:54:11,224 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-12 00:54:11,225 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-12 00:54:11,227 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-12 00:54:11,227 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-12 00:54:11,233 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-12 00:54:11,234 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,236 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@72d061ac and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11, skipping insertion in model container [2023-11-12 00:54:11,236 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,298 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-12 00:54:11,616 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-12 00:54:11,630 INFO L202 MainTranslator]: Completed pre-run [2023-11-12 00:54:11,690 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-12 00:54:11,726 INFO L206 MainTranslator]: Completed translation [2023-11-12 00:54:11,726 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11 WrapperNode [2023-11-12 00:54:11,726 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-12 00:54:11,727 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-12 00:54:11,728 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-12 00:54:11,728 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-12 00:54:11,736 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,750 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,772 INFO L138 Inliner]: procedures = 117, calls = 8, calls flagged for inlining = 3, calls inlined = 3, statements flattened = 70 [2023-11-12 00:54:11,773 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-12 00:54:11,773 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-12 00:54:11,774 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-12 00:54:11,774 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-12 00:54:11,783 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,783 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,787 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,787 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,794 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,798 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,799 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,801 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,804 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-12 00:54:11,804 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-12 00:54:11,805 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-12 00:54:11,805 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-12 00:54:11,806 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (1/1) ... [2023-11-12 00:54:11,812 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-12 00:54:11,826 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:11,839 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-12 00:54:11,851 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-12 00:54:11,878 INFO L130 BoogieDeclarations]: Found specification of procedure read~int [2023-11-12 00:54:11,879 INFO L130 BoogieDeclarations]: Found specification of procedure write~int [2023-11-12 00:54:11,879 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2023-11-12 00:54:11,879 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.dealloc [2023-11-12 00:54:11,879 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-12 00:54:11,880 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-12 00:54:11,993 INFO L236 CfgBuilder]: Building ICFG [2023-11-12 00:54:11,995 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-12 00:54:12,191 INFO L277 CfgBuilder]: Performing block encoding [2023-11-12 00:54:12,271 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-12 00:54:12,271 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-12 00:54:12,274 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.11 12:54:12 BoogieIcfgContainer [2023-11-12 00:54:12,274 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-12 00:54:12,277 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-12 00:54:12,277 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-12 00:54:12,280 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-12 00:54:12,280 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 12.11 12:54:11" (1/3) ... [2023-11-12 00:54:12,281 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@253e0f17 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.11 12:54:12, skipping insertion in model container [2023-11-12 00:54:12,281 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.11 12:54:11" (2/3) ... [2023-11-12 00:54:12,282 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@253e0f17 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.11 12:54:12, skipping insertion in model container [2023-11-12 00:54:12,282 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.11 12:54:12" (3/3) ... [2023-11-12 00:54:12,283 INFO L112 eAbstractionObserver]: Analyzing ICFG openbsd_cmemrchr-alloca-2.i [2023-11-12 00:54:12,303 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:false NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-12 00:54:12,303 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 5 error locations. [2023-11-12 00:54:12,347 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-12 00:54:12,354 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=false, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@26086975, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-12 00:54:12,355 INFO L358 AbstractCegarLoop]: Starting to check reachability of 5 error locations. [2023-11-12 00:54:12,359 INFO L276 IsEmpty]: Start isEmpty. Operand has 17 states, 11 states have (on average 1.9090909090909092) internal successors, (21), 16 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:12,366 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 4 [2023-11-12 00:54:12,366 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:12,367 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1] [2023-11-12 00:54:12,367 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:12,376 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:12,377 INFO L85 PathProgramCache]: Analyzing trace with hash 107409, now seen corresponding path program 1 times [2023-11-12 00:54:12,390 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:12,390 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [699725881] [2023-11-12 00:54:12,391 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:12,395 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:12,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:12,749 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:12,750 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:12,750 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [699725881] [2023-11-12 00:54:12,751 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [699725881] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 00:54:12,751 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 00:54:12,751 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [1] imperfect sequences [] total 1 [2023-11-12 00:54:12,753 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1756046094] [2023-11-12 00:54:12,754 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 00:54:12,758 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-12 00:54:12,758 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:12,787 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-12 00:54:12,788 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-12 00:54:12,790 INFO L87 Difference]: Start difference. First operand has 17 states, 11 states have (on average 1.9090909090909092) internal successors, (21), 16 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:12,825 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:12,826 INFO L93 Difference]: Finished difference Result 16 states and 19 transitions. [2023-11-12 00:54:12,827 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-12 00:54:12,828 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 3 [2023-11-12 00:54:12,829 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:12,835 INFO L225 Difference]: With dead ends: 16 [2023-11-12 00:54:12,836 INFO L226 Difference]: Without dead ends: 15 [2023-11-12 00:54:12,837 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 1 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-12 00:54:12,841 INFO L413 NwaCegarLoop]: 10 mSDtfsCounter, 14 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 10 SdHoareTripleChecker+Invalid, 12 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:12,842 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 10 Invalid, 12 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-12 00:54:12,860 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 15 states. [2023-11-12 00:54:12,870 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 15 to 15. [2023-11-12 00:54:12,872 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 11 states have (on average 1.6363636363636365) internal successors, (18), 14 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:12,872 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 18 transitions. [2023-11-12 00:54:12,874 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 18 transitions. Word has length 3 [2023-11-12 00:54:12,874 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:12,874 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 18 transitions. [2023-11-12 00:54:12,874 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 2 states have (on average 1.5) internal successors, (3), 2 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:12,875 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 18 transitions. [2023-11-12 00:54:12,875 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 4 [2023-11-12 00:54:12,875 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:12,875 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1] [2023-11-12 00:54:12,876 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-12 00:54:12,876 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:12,877 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:12,877 INFO L85 PathProgramCache]: Analyzing trace with hash 107410, now seen corresponding path program 1 times [2023-11-12 00:54:12,877 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:12,878 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1654185744] [2023-11-12 00:54:12,878 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:12,878 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:12,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:13,294 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:13,294 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:13,295 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1654185744] [2023-11-12 00:54:13,295 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1654185744] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 00:54:13,295 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 00:54:13,295 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-12 00:54:13,296 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [785374459] [2023-11-12 00:54:13,296 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 00:54:13,297 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-12 00:54:13,298 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:13,298 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-12 00:54:13,299 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-12 00:54:13,299 INFO L87 Difference]: Start difference. First operand 15 states and 18 transitions. Second operand has 4 states, 3 states have (on average 1.0) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:13,352 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:13,352 INFO L93 Difference]: Finished difference Result 17 states and 21 transitions. [2023-11-12 00:54:13,353 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-12 00:54:13,353 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 1.0) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 3 [2023-11-12 00:54:13,353 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:13,354 INFO L225 Difference]: With dead ends: 17 [2023-11-12 00:54:13,354 INFO L226 Difference]: Without dead ends: 17 [2023-11-12 00:54:13,355 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-12 00:54:13,356 INFO L413 NwaCegarLoop]: 13 mSDtfsCounter, 1 mSDsluCounter, 20 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 33 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:13,357 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 33 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-12 00:54:13,358 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2023-11-12 00:54:13,360 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 17. [2023-11-12 00:54:13,361 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 13 states have (on average 1.6153846153846154) internal successors, (21), 16 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:13,362 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 21 transitions. [2023-11-12 00:54:13,362 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 21 transitions. Word has length 3 [2023-11-12 00:54:13,362 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:13,362 INFO L495 AbstractCegarLoop]: Abstraction has 17 states and 21 transitions. [2023-11-12 00:54:13,363 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 1.0) internal successors, (3), 3 states have internal predecessors, (3), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:13,363 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 21 transitions. [2023-11-12 00:54:13,363 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 6 [2023-11-12 00:54:13,363 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:13,364 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1] [2023-11-12 00:54:13,364 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-12 00:54:13,364 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:13,365 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:13,365 INFO L85 PathProgramCache]: Analyzing trace with hash 103264033, now seen corresponding path program 1 times [2023-11-12 00:54:13,365 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:13,366 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1705380674] [2023-11-12 00:54:13,366 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:13,366 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:13,385 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:13,782 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:13,782 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:13,782 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1705380674] [2023-11-12 00:54:13,783 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1705380674] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:13,784 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [987100549] [2023-11-12 00:54:13,784 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:13,784 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:13,784 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:13,791 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:13,811 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-12 00:54:13,877 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:13,880 INFO L262 TraceCheckSpWp]: Trace formula consists of 51 conjuncts, 16 conjunts are in the unsatisfiable core [2023-11-12 00:54:13,888 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:14,092 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 7 [2023-11-12 00:54:14,294 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:14,294 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:14,472 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:14,473 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [987100549] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:14,477 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [333761552] [2023-11-12 00:54:14,499 INFO L159 IcfgInterpreter]: Started Sifa with 4 locations of interest [2023-11-12 00:54:14,500 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:14,505 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:14,512 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:14,512 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:15,567 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:15,868 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '129#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_main_#t~nondet10#1| 127) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (<= (select |#length| |ULTIMATE.start_main_~nondetArea~0#1.base|) |ULTIMATE.start_main_~i~0#1|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (<= 0 |ULTIMATE.start_main_~i~0#1|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (<= 1 |ULTIMATE.start_main_~n~0#1|) (<= 0 (+ 128 |ULTIMATE.start_main_#t~nondet10#1|)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)))' at error location [2023-11-12 00:54:15,869 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:15,869 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:15,869 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [3, 3, 3] total 9 [2023-11-12 00:54:15,869 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [748824311] [2023-11-12 00:54:15,870 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:15,870 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2023-11-12 00:54:15,870 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:15,871 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2023-11-12 00:54:15,872 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=137, Unknown=0, NotChecked=0, Total=182 [2023-11-12 00:54:15,872 INFO L87 Difference]: Start difference. First operand 17 states and 21 transitions. Second operand has 11 states, 10 states have (on average 1.5) internal successors, (15), 10 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:16,028 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:16,028 INFO L93 Difference]: Finished difference Result 16 states and 19 transitions. [2023-11-12 00:54:16,030 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-12 00:54:16,030 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 10 states have (on average 1.5) internal successors, (15), 10 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 5 [2023-11-12 00:54:16,030 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:16,031 INFO L225 Difference]: With dead ends: 16 [2023-11-12 00:54:16,031 INFO L226 Difference]: Without dead ends: 16 [2023-11-12 00:54:16,032 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 35 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=62, Invalid=178, Unknown=0, NotChecked=0, Total=240 [2023-11-12 00:54:16,034 INFO L413 NwaCegarLoop]: 12 mSDtfsCounter, 1 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 56 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 92 SdHoareTripleChecker+Invalid, 58 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 56 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:16,034 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 92 Invalid, 58 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 56 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-12 00:54:16,035 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 16 states. [2023-11-12 00:54:16,036 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 16 to 15. [2023-11-12 00:54:16,037 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 15 states, 12 states have (on average 1.5) internal successors, (18), 14 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:16,037 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 15 states to 15 states and 18 transitions. [2023-11-12 00:54:16,037 INFO L78 Accepts]: Start accepts. Automaton has 15 states and 18 transitions. Word has length 5 [2023-11-12 00:54:16,037 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:16,037 INFO L495 AbstractCegarLoop]: Abstraction has 15 states and 18 transitions. [2023-11-12 00:54:16,038 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 10 states have (on average 1.5) internal successors, (15), 10 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:16,038 INFO L276 IsEmpty]: Start isEmpty. Operand 15 states and 18 transitions. [2023-11-12 00:54:16,038 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 8 [2023-11-12 00:54:16,038 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:16,038 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1] [2023-11-12 00:54:16,050 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2023-11-12 00:54:16,239 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable2 [2023-11-12 00:54:16,240 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:16,240 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:16,240 INFO L85 PathProgramCache]: Analyzing trace with hash 454107511, now seen corresponding path program 1 times [2023-11-12 00:54:16,241 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:16,241 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2110573819] [2023-11-12 00:54:16,241 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:16,242 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:16,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:16,352 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:16,352 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:16,355 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2110573819] [2023-11-12 00:54:16,355 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2110573819] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 00:54:16,355 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 00:54:16,355 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-12 00:54:16,358 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [115487127] [2023-11-12 00:54:16,358 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 00:54:16,358 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-12 00:54:16,362 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:16,363 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-12 00:54:16,363 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-12 00:54:16,363 INFO L87 Difference]: Start difference. First operand 15 states and 18 transitions. Second operand has 6 states, 5 states have (on average 1.4) internal successors, (7), 6 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:16,444 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:16,444 INFO L93 Difference]: Finished difference Result 16 states and 19 transitions. [2023-11-12 00:54:16,444 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-12 00:54:16,445 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 1.4) internal successors, (7), 6 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 7 [2023-11-12 00:54:16,445 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:16,446 INFO L225 Difference]: With dead ends: 16 [2023-11-12 00:54:16,446 INFO L226 Difference]: Without dead ends: 16 [2023-11-12 00:54:16,446 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-12 00:54:16,448 INFO L413 NwaCegarLoop]: 7 mSDtfsCounter, 31 mSDsluCounter, 10 mSDsCounter, 0 mSdLazyCounter, 34 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 31 SdHoareTripleChecker+Valid, 17 SdHoareTripleChecker+Invalid, 36 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 34 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:16,450 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [31 Valid, 17 Invalid, 36 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 34 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-12 00:54:16,453 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 16 states. [2023-11-12 00:54:16,457 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 16 to 14. [2023-11-12 00:54:16,457 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 14 states, 12 states have (on average 1.4166666666666667) internal successors, (17), 13 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:16,458 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 14 states to 14 states and 17 transitions. [2023-11-12 00:54:16,458 INFO L78 Accepts]: Start accepts. Automaton has 14 states and 17 transitions. Word has length 7 [2023-11-12 00:54:16,459 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:16,461 INFO L495 AbstractCegarLoop]: Abstraction has 14 states and 17 transitions. [2023-11-12 00:54:16,461 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 1.4) internal successors, (7), 6 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:16,461 INFO L276 IsEmpty]: Start isEmpty. Operand 14 states and 17 transitions. [2023-11-12 00:54:16,462 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 8 [2023-11-12 00:54:16,462 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:16,463 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1] [2023-11-12 00:54:16,463 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-12 00:54:16,463 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:16,464 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:16,464 INFO L85 PathProgramCache]: Analyzing trace with hash 454107512, now seen corresponding path program 1 times [2023-11-12 00:54:16,464 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:16,464 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1627601415] [2023-11-12 00:54:16,464 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:16,465 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:16,501 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:16,904 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:16,904 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:16,904 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1627601415] [2023-11-12 00:54:16,905 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1627601415] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:16,905 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1685858087] [2023-11-12 00:54:16,905 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:16,905 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:16,906 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:16,908 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:16,955 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-12 00:54:17,012 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:17,014 INFO L262 TraceCheckSpWp]: Trace formula consists of 78 conjuncts, 36 conjunts are in the unsatisfiable core [2023-11-12 00:54:17,017 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:17,029 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 7 [2023-11-12 00:54:17,236 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:17,237 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:17,653 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:17,653 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1685858087] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:17,654 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1137075741] [2023-11-12 00:54:17,656 INFO L159 IcfgInterpreter]: Started Sifa with 7 locations of interest [2023-11-12 00:54:17,656 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:17,657 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:17,657 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:17,657 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:18,354 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:19,051 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '263#(and (or (and (= (+ |ULTIMATE.start_cmemrchr_~cp~0#1.offset| 1) (mod |ULTIMATE.start_cmemrchr_~n#1| 4294967296)) (<= (mod |ULTIMATE.start_cmemrchr_~n#1| 4294967296) 2147483647)) (and (= (+ |ULTIMATE.start_cmemrchr_~cp~0#1.offset| 4294967297) (mod |ULTIMATE.start_cmemrchr_~n#1| 4294967296)) (<= 2147483648 (mod |ULTIMATE.start_cmemrchr_~n#1| 4294967296)))) (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (not (= (mod |ULTIMATE.start_cmemrchr_~n#1| 4294967296) 0)) (= |ULTIMATE.start_cmemrchr_~n#1| |ULTIMATE.start_cmemrchr_#in~n#1|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_cmemrchr_~c#1| |ULTIMATE.start_cmemrchr_#in~c#1|) (= |ULTIMATE.start_cmemrchr_~cp~0#1.offset| |ULTIMATE.start_cmemrchr_#t~pre3#1.offset|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (= |ULTIMATE.start_cmemrchr_~cp~0#1.base| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_#t~pre3#1.base| |ULTIMATE.start_cmemrchr_~s#1.base|) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (= |ULTIMATE.start_main_~n~0#1| |ULTIMATE.start_cmemrchr_#in~n#1|) (= |ULTIMATE.start_main_~c~0#1| |ULTIMATE.start_cmemrchr_#in~c#1|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.base| |ULTIMATE.start_cmemrchr_~s#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (= |ULTIMATE.start_cmemrchr_#in~s#1.base| |ULTIMATE.start_main_~nondetArea~0#1.base|))' at error location [2023-11-12 00:54:19,051 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:19,051 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:19,051 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 6, 6] total 16 [2023-11-12 00:54:19,052 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1065120839] [2023-11-12 00:54:19,052 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:19,052 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2023-11-12 00:54:19,052 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:19,053 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2023-11-12 00:54:19,053 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=475, Unknown=0, NotChecked=0, Total=552 [2023-11-12 00:54:19,054 INFO L87 Difference]: Start difference. First operand 14 states and 17 transitions. Second operand has 18 states, 17 states have (on average 1.1176470588235294) internal successors, (19), 17 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:20,002 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:20,003 INFO L93 Difference]: Finished difference Result 56 states and 69 transitions. [2023-11-12 00:54:20,003 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2023-11-12 00:54:20,004 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 17 states have (on average 1.1176470588235294) internal successors, (19), 17 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 7 [2023-11-12 00:54:20,004 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:20,005 INFO L225 Difference]: With dead ends: 56 [2023-11-12 00:54:20,005 INFO L226 Difference]: Without dead ends: 56 [2023-11-12 00:54:20,006 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 37 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 304 ImplicationChecksByTransitivity, 1.8s TimeCoverageRelationStatistics Valid=207, Invalid=1053, Unknown=0, NotChecked=0, Total=1260 [2023-11-12 00:54:20,006 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 125 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 122 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 125 SdHoareTripleChecker+Valid, 93 SdHoareTripleChecker+Invalid, 139 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 122 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:20,007 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [125 Valid, 93 Invalid, 139 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 122 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-12 00:54:20,007 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 56 states. [2023-11-12 00:54:20,010 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 56 to 24. [2023-11-12 00:54:20,011 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 24 states, 22 states have (on average 1.4090909090909092) internal successors, (31), 23 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:20,012 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 24 states to 24 states and 31 transitions. [2023-11-12 00:54:20,012 INFO L78 Accepts]: Start accepts. Automaton has 24 states and 31 transitions. Word has length 7 [2023-11-12 00:54:20,013 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:20,013 INFO L495 AbstractCegarLoop]: Abstraction has 24 states and 31 transitions. [2023-11-12 00:54:20,013 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 17 states have (on average 1.1176470588235294) internal successors, (19), 17 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:20,013 INFO L276 IsEmpty]: Start isEmpty. Operand 24 states and 31 transitions. [2023-11-12 00:54:20,014 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 11 [2023-11-12 00:54:20,014 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:20,015 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1] [2023-11-12 00:54:20,025 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:20,220 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:20,220 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr4ASSERT_VIOLATIONMEMORY_LEAK === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:20,220 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:20,221 INFO L85 PathProgramCache]: Analyzing trace with hash -502521436, now seen corresponding path program 1 times [2023-11-12 00:54:20,221 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:20,221 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [858302950] [2023-11-12 00:54:20,221 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:20,221 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:20,242 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:20,300 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-11-12 00:54:20,300 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:20,300 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [858302950] [2023-11-12 00:54:20,301 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [858302950] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 00:54:20,301 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-12 00:54:20,301 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-12 00:54:20,301 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [830107430] [2023-11-12 00:54:20,301 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 00:54:20,302 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-12 00:54:20,302 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:20,302 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-12 00:54:20,303 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-12 00:54:20,303 INFO L87 Difference]: Start difference. First operand 24 states and 31 transitions. Second operand has 4 states, 3 states have (on average 2.6666666666666665) internal successors, (8), 3 states have internal predecessors, (8), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:20,320 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:20,320 INFO L93 Difference]: Finished difference Result 23 states and 30 transitions. [2023-11-12 00:54:20,320 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-12 00:54:20,321 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 2.6666666666666665) internal successors, (8), 3 states have internal predecessors, (8), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 10 [2023-11-12 00:54:20,321 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:20,323 INFO L225 Difference]: With dead ends: 23 [2023-11-12 00:54:20,323 INFO L226 Difference]: Without dead ends: 20 [2023-11-12 00:54:20,323 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 0 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-12 00:54:20,324 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 8 mSDsluCounter, 9 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 8 SdHoareTripleChecker+Valid, 18 SdHoareTripleChecker+Invalid, 12 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:20,325 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [8 Valid, 18 Invalid, 12 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-12 00:54:20,326 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 20 states. [2023-11-12 00:54:20,330 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 20 to 19. [2023-11-12 00:54:20,330 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 19 states, 18 states have (on average 1.2777777777777777) internal successors, (23), 18 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:20,330 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 19 states to 19 states and 23 transitions. [2023-11-12 00:54:20,331 INFO L78 Accepts]: Start accepts. Automaton has 19 states and 23 transitions. Word has length 10 [2023-11-12 00:54:20,331 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:20,331 INFO L495 AbstractCegarLoop]: Abstraction has 19 states and 23 transitions. [2023-11-12 00:54:20,331 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 2.6666666666666665) internal successors, (8), 3 states have internal predecessors, (8), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:20,332 INFO L276 IsEmpty]: Start isEmpty. Operand 19 states and 23 transitions. [2023-11-12 00:54:20,332 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 12 [2023-11-12 00:54:20,332 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:20,332 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-12 00:54:20,333 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-12 00:54:20,333 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:20,333 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:20,333 INFO L85 PathProgramCache]: Analyzing trace with hash 37291176, now seen corresponding path program 1 times [2023-11-12 00:54:20,334 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:20,334 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1410848158] [2023-11-12 00:54:20,334 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:20,334 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:20,366 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:20,494 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:20,494 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:20,495 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1410848158] [2023-11-12 00:54:20,495 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1410848158] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:20,495 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1777596776] [2023-11-12 00:54:20,495 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:20,495 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:20,496 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:20,497 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:20,511 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-12 00:54:20,586 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:20,587 INFO L262 TraceCheckSpWp]: Trace formula consists of 98 conjuncts, 12 conjunts are in the unsatisfiable core [2023-11-12 00:54:20,589 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:20,624 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:20,624 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:20,725 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:20,725 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1777596776] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:20,726 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [26892130] [2023-11-12 00:54:20,728 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:20,728 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:20,728 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:20,729 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:20,729 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:21,547 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:22,242 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '492#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:22,242 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:22,243 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:22,243 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 6, 6] total 12 [2023-11-12 00:54:22,243 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [722390765] [2023-11-12 00:54:22,243 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:22,243 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2023-11-12 00:54:22,244 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:22,244 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2023-11-12 00:54:22,244 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=362, Unknown=0, NotChecked=0, Total=420 [2023-11-12 00:54:22,245 INFO L87 Difference]: Start difference. First operand 19 states and 23 transitions. Second operand has 13 states, 13 states have (on average 1.6923076923076923) internal successors, (22), 12 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:22,336 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:22,336 INFO L93 Difference]: Finished difference Result 24 states and 27 transitions. [2023-11-12 00:54:22,337 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-12 00:54:22,338 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 13 states have (on average 1.6923076923076923) internal successors, (22), 12 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 11 [2023-11-12 00:54:22,338 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:22,338 INFO L225 Difference]: With dead ends: 24 [2023-11-12 00:54:22,338 INFO L226 Difference]: Without dead ends: 19 [2023-11-12 00:54:22,339 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 39 GetRequests, 18 SyntacticMatches, 0 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 125 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=71, Invalid=435, Unknown=0, NotChecked=0, Total=506 [2023-11-12 00:54:22,339 INFO L413 NwaCegarLoop]: 4 mSDtfsCounter, 6 mSDsluCounter, 30 mSDsCounter, 0 mSdLazyCounter, 48 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 6 SdHoareTripleChecker+Valid, 34 SdHoareTripleChecker+Invalid, 53 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 48 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:22,340 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [6 Valid, 34 Invalid, 53 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 48 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-12 00:54:22,340 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 19 states. [2023-11-12 00:54:22,342 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 19 to 19. [2023-11-12 00:54:22,342 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 19 states, 18 states have (on average 1.2222222222222223) internal successors, (22), 18 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:22,342 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 19 states to 19 states and 22 transitions. [2023-11-12 00:54:22,342 INFO L78 Accepts]: Start accepts. Automaton has 19 states and 22 transitions. Word has length 11 [2023-11-12 00:54:22,343 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:22,343 INFO L495 AbstractCegarLoop]: Abstraction has 19 states and 22 transitions. [2023-11-12 00:54:22,343 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 13 states have (on average 1.6923076923076923) internal successors, (22), 12 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:22,343 INFO L276 IsEmpty]: Start isEmpty. Operand 19 states and 22 transitions. [2023-11-12 00:54:22,343 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2023-11-12 00:54:22,343 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:22,343 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 1, 1, 1, 1, 1] [2023-11-12 00:54:22,360 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:22,560 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2023-11-12 00:54:22,560 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:22,561 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:22,561 INFO L85 PathProgramCache]: Analyzing trace with hash 1191886437, now seen corresponding path program 2 times [2023-11-12 00:54:22,561 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:22,561 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1437330682] [2023-11-12 00:54:22,561 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:22,562 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:22,587 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:23,123 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:23,124 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:23,124 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1437330682] [2023-11-12 00:54:23,124 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1437330682] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:23,124 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [14283280] [2023-11-12 00:54:23,124 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2023-11-12 00:54:23,124 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:23,124 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:23,126 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:23,151 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-12 00:54:23,207 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 1 check-sat command(s) [2023-11-12 00:54:23,207 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-12 00:54:23,208 INFO L262 TraceCheckSpWp]: Trace formula consists of 65 conjuncts, 32 conjunts are in the unsatisfiable core [2023-11-12 00:54:23,211 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:23,243 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 1 [2023-11-12 00:54:23,573 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2023-11-12 00:54:23,574 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-12 00:54:23,575 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [14283280] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-12 00:54:23,575 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-12 00:54:23,575 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [9] total 13 [2023-11-12 00:54:23,576 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [517572221] [2023-11-12 00:54:23,576 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-12 00:54:23,577 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-12 00:54:23,577 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:23,578 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-12 00:54:23,578 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=29, Invalid=181, Unknown=0, NotChecked=0, Total=210 [2023-11-12 00:54:23,578 INFO L87 Difference]: Start difference. First operand 19 states and 22 transitions. Second operand has 6 states, 5 states have (on average 1.4) internal successors, (7), 5 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:23,779 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:23,779 INFO L93 Difference]: Finished difference Result 22 states and 25 transitions. [2023-11-12 00:54:23,779 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-12 00:54:23,779 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 1.4) internal successors, (7), 5 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2023-11-12 00:54:23,780 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:23,780 INFO L225 Difference]: With dead ends: 22 [2023-11-12 00:54:23,780 INFO L226 Difference]: Without dead ends: 22 [2023-11-12 00:54:23,781 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=47, Invalid=259, Unknown=0, NotChecked=0, Total=306 [2023-11-12 00:54:23,781 INFO L413 NwaCegarLoop]: 1 mSDtfsCounter, 14 mSDsluCounter, 4 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 5 SdHoareTripleChecker+Invalid, 32 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:23,782 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 5 Invalid, 32 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-12 00:54:23,782 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 22 states. [2023-11-12 00:54:23,784 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 22 to 14. [2023-11-12 00:54:23,784 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 14 states, 13 states have (on average 1.1538461538461537) internal successors, (15), 13 states have internal predecessors, (15), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:23,785 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 14 states to 14 states and 15 transitions. [2023-11-12 00:54:23,785 INFO L78 Accepts]: Start accepts. Automaton has 14 states and 15 transitions. Word has length 13 [2023-11-12 00:54:23,785 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:23,785 INFO L495 AbstractCegarLoop]: Abstraction has 14 states and 15 transitions. [2023-11-12 00:54:23,785 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 1.4) internal successors, (7), 5 states have internal predecessors, (7), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:23,785 INFO L276 IsEmpty]: Start isEmpty. Operand 14 states and 15 transitions. [2023-11-12 00:54:23,786 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2023-11-12 00:54:23,786 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:23,786 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1] [2023-11-12 00:54:23,792 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2023-11-12 00:54:23,987 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable7 [2023-11-12 00:54:23,987 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:23,988 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:23,988 INFO L85 PathProgramCache]: Analyzing trace with hash 1163792695, now seen corresponding path program 2 times [2023-11-12 00:54:23,988 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:23,988 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2107207491] [2023-11-12 00:54:23,988 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:23,988 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:24,026 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:24,499 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 6 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:24,499 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:24,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2107207491] [2023-11-12 00:54:24,499 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2107207491] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:24,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [561109731] [2023-11-12 00:54:24,500 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2023-11-12 00:54:24,500 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:24,500 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:24,501 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:24,503 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-11-12 00:54:24,582 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2023-11-12 00:54:24,583 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-12 00:54:24,585 INFO L262 TraceCheckSpWp]: Trace formula consists of 98 conjuncts, 45 conjunts are in the unsatisfiable core [2023-11-12 00:54:24,589 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:24,602 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 7 [2023-11-12 00:54:25,377 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 1 proven. 4 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-12 00:54:25,377 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:26,490 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 1 proven. 4 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-12 00:54:26,491 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [561109731] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:26,491 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [927599398] [2023-11-12 00:54:26,493 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:26,493 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:26,494 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:26,494 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:26,494 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:27,249 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:28,254 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '744#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:28,254 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:28,254 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:28,254 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 30 [2023-11-12 00:54:28,255 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [338318249] [2023-11-12 00:54:28,255 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:28,255 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2023-11-12 00:54:28,255 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:28,256 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2023-11-12 00:54:28,257 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=135, Invalid=1425, Unknown=0, NotChecked=0, Total=1560 [2023-11-12 00:54:28,258 INFO L87 Difference]: Start difference. First operand 14 states and 15 transitions. Second operand has 32 states, 31 states have (on average 1.2580645161290323) internal successors, (39), 31 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:30,310 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:30,311 INFO L93 Difference]: Finished difference Result 31 states and 33 transitions. [2023-11-12 00:54:30,311 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2023-11-12 00:54:30,312 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 31 states have (on average 1.2580645161290323) internal successors, (39), 31 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2023-11-12 00:54:30,312 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:30,312 INFO L225 Difference]: With dead ends: 31 [2023-11-12 00:54:30,312 INFO L226 Difference]: Without dead ends: 31 [2023-11-12 00:54:30,314 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 67 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 58 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 604 ImplicationChecksByTransitivity, 4.0s TimeCoverageRelationStatistics Valid=390, Invalid=3150, Unknown=0, NotChecked=0, Total=3540 [2023-11-12 00:54:30,315 INFO L413 NwaCegarLoop]: 0 mSDtfsCounter, 102 mSDsluCounter, 1 mSDsCounter, 0 mSdLazyCounter, 237 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 102 SdHoareTripleChecker+Valid, 1 SdHoareTripleChecker+Invalid, 252 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 237 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:30,315 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [102 Valid, 1 Invalid, 252 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 237 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-12 00:54:30,316 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 31 states. [2023-11-12 00:54:30,317 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 31 to 22. [2023-11-12 00:54:30,318 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 22 states, 21 states have (on average 1.0952380952380953) internal successors, (23), 21 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:30,318 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 22 states to 22 states and 23 transitions. [2023-11-12 00:54:30,318 INFO L78 Accepts]: Start accepts. Automaton has 22 states and 23 transitions. Word has length 13 [2023-11-12 00:54:30,318 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:30,319 INFO L495 AbstractCegarLoop]: Abstraction has 22 states and 23 transitions. [2023-11-12 00:54:30,319 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 31 states have (on average 1.2580645161290323) internal successors, (39), 31 states have internal predecessors, (39), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:30,319 INFO L276 IsEmpty]: Start isEmpty. Operand 22 states and 23 transitions. [2023-11-12 00:54:30,320 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-11-12 00:54:30,320 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:30,320 INFO L195 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 2, 2, 1, 1, 1, 1] [2023-11-12 00:54:30,326 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:30,520 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable8 [2023-11-12 00:54:30,521 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:30,521 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:30,521 INFO L85 PathProgramCache]: Analyzing trace with hash 542675095, now seen corresponding path program 3 times [2023-11-12 00:54:30,521 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:30,521 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [748654299] [2023-11-12 00:54:30,522 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:30,522 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:30,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:30,709 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 12 proven. 8 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-12 00:54:30,709 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:30,709 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [748654299] [2023-11-12 00:54:30,709 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [748654299] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:30,710 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1843477740] [2023-11-12 00:54:30,710 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2023-11-12 00:54:30,710 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:30,710 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:30,711 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:30,721 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2023-11-12 00:54:30,825 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2023-11-12 00:54:30,826 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-12 00:54:30,827 INFO L262 TraceCheckSpWp]: Trace formula consists of 151 conjuncts, 29 conjunts are in the unsatisfiable core [2023-11-12 00:54:30,830 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:30,840 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 1 [2023-11-12 00:54:30,992 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2023-11-12 00:54:31,054 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 13 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:31,054 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:31,280 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 14 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:31,281 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1843477740] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:31,281 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1818845065] [2023-11-12 00:54:31,283 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:31,283 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:31,284 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:31,284 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:31,284 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:31,990 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:32,780 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '989#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:32,780 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:32,780 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:32,780 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 11, 11] total 23 [2023-11-12 00:54:32,781 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [74104312] [2023-11-12 00:54:32,781 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:32,781 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2023-11-12 00:54:32,781 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:32,782 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2023-11-12 00:54:32,783 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=91, Invalid=901, Unknown=0, NotChecked=0, Total=992 [2023-11-12 00:54:32,783 INFO L87 Difference]: Start difference. First operand 22 states and 23 transitions. Second operand has 24 states, 24 states have (on average 1.875) internal successors, (45), 23 states have internal predecessors, (45), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:33,269 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:33,269 INFO L93 Difference]: Finished difference Result 34 states and 35 transitions. [2023-11-12 00:54:33,269 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2023-11-12 00:54:33,269 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 1.875) internal successors, (45), 23 states have internal predecessors, (45), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 21 [2023-11-12 00:54:33,270 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:33,270 INFO L225 Difference]: With dead ends: 34 [2023-11-12 00:54:33,270 INFO L226 Difference]: Without dead ends: 25 [2023-11-12 00:54:33,273 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 78 GetRequests, 34 SyntacticMatches, 5 SemanticMatches, 39 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 345 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=190, Invalid=1450, Unknown=0, NotChecked=0, Total=1640 [2023-11-12 00:54:33,274 INFO L413 NwaCegarLoop]: 2 mSDtfsCounter, 34 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 190 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 37 SdHoareTripleChecker+Invalid, 197 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 190 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:33,274 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 37 Invalid, 197 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 190 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-12 00:54:33,275 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 25 states. [2023-11-12 00:54:33,276 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 25 to 24. [2023-11-12 00:54:33,277 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 24 states, 23 states have (on average 1.0869565217391304) internal successors, (25), 23 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:33,277 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 24 states to 24 states and 25 transitions. [2023-11-12 00:54:33,278 INFO L78 Accepts]: Start accepts. Automaton has 24 states and 25 transitions. Word has length 21 [2023-11-12 00:54:33,278 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:33,278 INFO L495 AbstractCegarLoop]: Abstraction has 24 states and 25 transitions. [2023-11-12 00:54:33,278 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 1.875) internal successors, (45), 23 states have internal predecessors, (45), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:33,278 INFO L276 IsEmpty]: Start isEmpty. Operand 24 states and 25 transitions. [2023-11-12 00:54:33,279 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-11-12 00:54:33,279 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:33,279 INFO L195 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 1, 1, 1, 1] [2023-11-12 00:54:33,295 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:33,487 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-12 00:54:33,488 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:33,488 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:33,488 INFO L85 PathProgramCache]: Analyzing trace with hash 1566471782, now seen corresponding path program 4 times [2023-11-12 00:54:33,488 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:33,489 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [106403197] [2023-11-12 00:54:33,489 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:33,489 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:33,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:33,737 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 6 proven. 21 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:33,737 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:33,737 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [106403197] [2023-11-12 00:54:33,738 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [106403197] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:33,738 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2114661829] [2023-11-12 00:54:33,738 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2023-11-12 00:54:33,738 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:33,739 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:33,740 INFO L229 MonitoredProcess]: Starting monitored process 8 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:33,748 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2023-11-12 00:54:33,837 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:33,838 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 20 conjunts are in the unsatisfiable core [2023-11-12 00:54:33,840 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:33,916 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 6 proven. 21 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:33,916 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:34,163 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 6 proven. 21 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:34,164 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2114661829] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:34,164 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [2097197097] [2023-11-12 00:54:34,172 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:34,172 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:34,173 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:34,173 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:34,173 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:34,992 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:35,743 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1227#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:35,743 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:35,744 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:35,744 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 21 [2023-11-12 00:54:35,744 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1919833606] [2023-11-12 00:54:35,744 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:35,745 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2023-11-12 00:54:35,745 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:35,746 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2023-11-12 00:54:35,746 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=84, Invalid=786, Unknown=0, NotChecked=0, Total=870 [2023-11-12 00:54:35,746 INFO L87 Difference]: Start difference. First operand 24 states and 25 transitions. Second operand has 22 states, 22 states have (on average 2.1818181818181817) internal successors, (48), 21 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:36,032 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:36,032 INFO L93 Difference]: Finished difference Result 40 states and 41 transitions. [2023-11-12 00:54:36,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2023-11-12 00:54:36,033 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 2.1818181818181817) internal successors, (48), 21 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 23 [2023-11-12 00:54:36,033 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:36,033 INFO L225 Difference]: With dead ends: 40 [2023-11-12 00:54:36,033 INFO L226 Difference]: Without dead ends: 27 [2023-11-12 00:54:36,034 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 83 GetRequests, 49 SyntacticMatches, 0 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 240 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=119, Invalid=1141, Unknown=0, NotChecked=0, Total=1260 [2023-11-12 00:54:36,035 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 15 mSDsluCounter, 99 mSDsCounter, 0 mSdLazyCounter, 158 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 108 SdHoareTripleChecker+Invalid, 162 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 158 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:36,035 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 108 Invalid, 162 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 158 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-12 00:54:36,036 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 27 states. [2023-11-12 00:54:36,038 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 27 to 26. [2023-11-12 00:54:36,038 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 26 states, 25 states have (on average 1.08) internal successors, (27), 25 states have internal predecessors, (27), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:36,038 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 26 states to 26 states and 27 transitions. [2023-11-12 00:54:36,038 INFO L78 Accepts]: Start accepts. Automaton has 26 states and 27 transitions. Word has length 23 [2023-11-12 00:54:36,039 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:36,039 INFO L495 AbstractCegarLoop]: Abstraction has 26 states and 27 transitions. [2023-11-12 00:54:36,039 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 2.1818181818181817) internal successors, (48), 21 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:36,039 INFO L276 IsEmpty]: Start isEmpty. Operand 26 states and 27 transitions. [2023-11-12 00:54:36,040 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2023-11-12 00:54:36,040 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:36,040 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 3, 3, 3, 1, 1, 1, 1] [2023-11-12 00:54:36,047 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:36,246 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 8 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2023-11-12 00:54:36,247 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:36,247 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:36,247 INFO L85 PathProgramCache]: Analyzing trace with hash 1887577205, now seen corresponding path program 5 times [2023-11-12 00:54:36,248 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:36,248 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [365616762] [2023-11-12 00:54:36,248 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:36,248 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:36,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:37,149 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 0 proven. 34 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:37,149 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:37,149 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [365616762] [2023-11-12 00:54:37,149 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [365616762] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:37,149 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1186273835] [2023-11-12 00:54:37,149 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2023-11-12 00:54:37,150 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:37,150 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:37,151 INFO L229 MonitoredProcess]: Starting monitored process 9 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:37,183 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2023-11-12 00:54:37,367 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 4 check-sat command(s) [2023-11-12 00:54:37,367 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-12 00:54:37,369 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 66 conjunts are in the unsatisfiable core [2023-11-12 00:54:37,372 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:37,395 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 1 [2023-11-12 00:54:38,732 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 5 proven. 25 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-11-12 00:54:38,732 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:40,528 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 3 proven. 25 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-11-12 00:54:40,528 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1186273835] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:40,528 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [993010716] [2023-11-12 00:54:40,530 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:40,530 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:40,531 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:40,531 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:40,531 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:41,133 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:42,425 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1506#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:42,426 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:42,426 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:42,426 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 16, 16] total 47 [2023-11-12 00:54:42,426 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [26518537] [2023-11-12 00:54:42,426 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:42,427 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 49 states [2023-11-12 00:54:42,427 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:42,428 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 49 interpolants. [2023-11-12 00:54:42,429 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=279, Invalid=2913, Unknown=0, NotChecked=0, Total=3192 [2023-11-12 00:54:42,430 INFO L87 Difference]: Start difference. First operand 26 states and 27 transitions. Second operand has 49 states, 48 states have (on average 1.4583333333333333) internal successors, (70), 48 states have internal predecessors, (70), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:47,738 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:47,739 INFO L93 Difference]: Finished difference Result 58 states and 60 transitions. [2023-11-12 00:54:47,739 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 43 states. [2023-11-12 00:54:47,739 INFO L78 Accepts]: Start accepts. Automaton has has 49 states, 48 states have (on average 1.4583333333333333) internal successors, (70), 48 states have internal predecessors, (70), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2023-11-12 00:54:47,740 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:47,740 INFO L225 Difference]: With dead ends: 58 [2023-11-12 00:54:47,740 INFO L226 Difference]: Without dead ends: 58 [2023-11-12 00:54:47,744 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 127 GetRequests, 33 SyntacticMatches, 0 SemanticMatches, 94 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1697 ImplicationChecksByTransitivity, 8.3s TimeCoverageRelationStatistics Valid=929, Invalid=8191, Unknown=0, NotChecked=0, Total=9120 [2023-11-12 00:54:47,745 INFO L413 NwaCegarLoop]: 2 mSDtfsCounter, 140 mSDsluCounter, 49 mSDsCounter, 0 mSdLazyCounter, 726 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 140 SdHoareTripleChecker+Valid, 51 SdHoareTripleChecker+Invalid, 751 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 726 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:47,745 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [140 Valid, 51 Invalid, 751 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 726 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2023-11-12 00:54:47,746 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2023-11-12 00:54:47,748 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 42. [2023-11-12 00:54:47,751 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 42 states, 41 states have (on average 1.048780487804878) internal successors, (43), 41 states have internal predecessors, (43), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:47,751 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 42 states to 42 states and 43 transitions. [2023-11-12 00:54:47,752 INFO L78 Accepts]: Start accepts. Automaton has 42 states and 43 transitions. Word has length 25 [2023-11-12 00:54:47,752 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:47,752 INFO L495 AbstractCegarLoop]: Abstraction has 42 states and 43 transitions. [2023-11-12 00:54:47,752 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 49 states, 48 states have (on average 1.4583333333333333) internal successors, (70), 48 states have internal predecessors, (70), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:47,753 INFO L276 IsEmpty]: Start isEmpty. Operand 42 states and 43 transitions. [2023-11-12 00:54:47,754 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2023-11-12 00:54:47,754 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:47,754 INFO L195 NwaCegarLoop]: trace histogram [8, 7, 7, 7, 4, 4, 1, 1, 1, 1] [2023-11-12 00:54:47,764 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:47,959 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 9 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-11-12 00:54:47,959 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:47,960 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:47,960 INFO L85 PathProgramCache]: Analyzing trace with hash 1976534837, now seen corresponding path program 6 times [2023-11-12 00:54:47,960 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:47,960 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2122939359] [2023-11-12 00:54:47,960 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:47,960 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:48,001 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:48,332 INFO L134 CoverageAnalysis]: Checked inductivity of 114 backedges. 56 proven. 40 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2023-11-12 00:54:48,332 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:48,332 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2122939359] [2023-11-12 00:54:48,332 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2122939359] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:48,332 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1235830385] [2023-11-12 00:54:48,332 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2023-11-12 00:54:48,333 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:48,333 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:48,334 INFO L229 MonitoredProcess]: Starting monitored process 10 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:48,359 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2023-11-12 00:54:48,463 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2023-11-12 00:54:48,464 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-12 00:54:48,466 INFO L262 TraceCheckSpWp]: Trace formula consists of 257 conjuncts, 39 conjunts are in the unsatisfiable core [2023-11-12 00:54:48,470 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:48,481 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 1 [2023-11-12 00:54:48,740 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 0 stores, 1 select indices, 1 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 1 new quantified variables, introduced 0 case distinctions, treesize of input 13 treesize of output 9 [2023-11-12 00:54:48,920 INFO L134 CoverageAnalysis]: Checked inductivity of 114 backedges. 81 proven. 33 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:48,920 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:49,422 INFO L134 CoverageAnalysis]: Checked inductivity of 114 backedges. 86 proven. 28 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:49,422 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1235830385] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:49,422 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [2133332835] [2023-11-12 00:54:49,424 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:49,425 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:49,425 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:49,425 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:49,425 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:49,956 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:50,999 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '1973#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:51,000 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:51,000 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:51,000 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 17, 17] total 40 [2023-11-12 00:54:51,001 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [188742707] [2023-11-12 00:54:51,001 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:51,002 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 41 states [2023-11-12 00:54:51,002 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:51,004 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 41 interpolants. [2023-11-12 00:54:51,005 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=180, Invalid=2172, Unknown=0, NotChecked=0, Total=2352 [2023-11-12 00:54:51,005 INFO L87 Difference]: Start difference. First operand 42 states and 43 transitions. Second operand has 41 states, 41 states have (on average 2.2439024390243905) internal successors, (92), 40 states have internal predecessors, (92), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:52,840 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:52,840 INFO L93 Difference]: Finished difference Result 92 states and 94 transitions. [2023-11-12 00:54:52,840 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 31 states. [2023-11-12 00:54:52,840 INFO L78 Accepts]: Start accepts. Automaton has has 41 states, 41 states have (on average 2.2439024390243905) internal successors, (92), 40 states have internal predecessors, (92), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 41 [2023-11-12 00:54:52,841 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:52,841 INFO L225 Difference]: With dead ends: 92 [2023-11-12 00:54:52,841 INFO L226 Difference]: Without dead ends: 48 [2023-11-12 00:54:52,843 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 158 GetRequests, 82 SyntacticMatches, 4 SemanticMatches, 72 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1165 ImplicationChecksByTransitivity, 3.2s TimeCoverageRelationStatistics Valid=667, Invalid=4735, Unknown=0, NotChecked=0, Total=5402 [2023-11-12 00:54:52,844 INFO L413 NwaCegarLoop]: 5 mSDtfsCounter, 86 mSDsluCounter, 115 mSDsCounter, 0 mSdLazyCounter, 617 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 86 SdHoareTripleChecker+Valid, 120 SdHoareTripleChecker+Invalid, 640 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 617 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:52,845 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [86 Valid, 120 Invalid, 640 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 617 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-12 00:54:52,846 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 48 states. [2023-11-12 00:54:52,848 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 48 to 48. [2023-11-12 00:54:52,849 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 48 states, 47 states have (on average 1.0425531914893618) internal successors, (49), 47 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:52,849 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 48 states to 48 states and 49 transitions. [2023-11-12 00:54:52,849 INFO L78 Accepts]: Start accepts. Automaton has 48 states and 49 transitions. Word has length 41 [2023-11-12 00:54:52,850 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:52,850 INFO L495 AbstractCegarLoop]: Abstraction has 48 states and 49 transitions. [2023-11-12 00:54:52,850 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 41 states, 41 states have (on average 2.2439024390243905) internal successors, (92), 40 states have internal predecessors, (92), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:52,850 INFO L276 IsEmpty]: Start isEmpty. Operand 48 states and 49 transitions. [2023-11-12 00:54:52,852 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2023-11-12 00:54:52,852 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:52,852 INFO L195 NwaCegarLoop]: trace histogram [8, 7, 7, 7, 7, 7, 1, 1, 1, 1] [2023-11-12 00:54:52,864 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:53,058 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2023-11-12 00:54:53,058 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:53,059 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:53,059 INFO L85 PathProgramCache]: Analyzing trace with hash -1358190366, now seen corresponding path program 7 times [2023-11-12 00:54:53,059 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:53,059 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1405252122] [2023-11-12 00:54:53,060 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:53,060 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:53,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:53,650 INFO L134 CoverageAnalysis]: Checked inductivity of 147 backedges. 14 proven. 133 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:53,651 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:53,651 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1405252122] [2023-11-12 00:54:53,651 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1405252122] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:53,651 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [918702842] [2023-11-12 00:54:53,651 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2023-11-12 00:54:53,652 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:53,652 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:53,653 INFO L229 MonitoredProcess]: Starting monitored process 11 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:53,687 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2023-11-12 00:54:53,836 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:53,838 INFO L262 TraceCheckSpWp]: Trace formula consists of 296 conjuncts, 36 conjunts are in the unsatisfiable core [2023-11-12 00:54:53,841 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:53,947 INFO L134 CoverageAnalysis]: Checked inductivity of 147 backedges. 14 proven. 133 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:53,948 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-12 00:54:54,541 INFO L134 CoverageAnalysis]: Checked inductivity of 147 backedges. 14 proven. 133 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:54,541 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [918702842] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-12 00:54:54,541 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1551039695] [2023-11-12 00:54:54,543 INFO L159 IcfgInterpreter]: Started Sifa with 9 locations of interest [2023-11-12 00:54:54,543 INFO L166 IcfgInterpreter]: Building call graph [2023-11-12 00:54:54,543 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-12 00:54:54,544 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-12 00:54:54,544 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-12 00:54:55,067 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-12 00:54:55,933 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '2485#(and (= |ULTIMATE.start_main_#t~malloc8#1.offset| 0) (<= 1 |#StackHeapBarrier|) (<= |ULTIMATE.start_cmemrchr_#in~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (= ~MAX~0 100000) (<= 2 |ULTIMATE.start_main_~nondetArea~0#1.base|) (= |ULTIMATE.start_main_~nondetArea~0#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_~s#1.base|) (<= |ULTIMATE.start_main_~c~0#1| 2147483647) (or (< |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 0) (< (select |#length| |ULTIMATE.start_cmemrchr_#t~pre3#1.base|) (+ |ULTIMATE.start_cmemrchr_#t~pre3#1.offset| 1))) (= |ULTIMATE.start_cmemrchr_~s#1.offset| 0) (<= 2 |ULTIMATE.start_cmemrchr_#in~s#1.base|) (<= 2 |ULTIMATE.start_main_#t~malloc8#1.base|) (= |ULTIMATE.start_cmemrchr_#in~s#1.offset| 0) (<= 0 (+ |ULTIMATE.start_cmemrchr_~c#1| 2147483648)) (<= 0 (+ |ULTIMATE.start_main_~c~0#1| 2147483648)) (<= |ULTIMATE.start_cmemrchr_~c#1| 2147483647) (<= 2 |ULTIMATE.start_cmemrchr_~cp~0#1.base|) (<= 0 (+ |ULTIMATE.start_cmemrchr_#in~c#1| 2147483648)))' at error location [2023-11-12 00:54:55,934 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-12 00:54:55,934 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-12 00:54:55,934 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 18, 18] total 37 [2023-11-12 00:54:55,934 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1227770575] [2023-11-12 00:54:55,934 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-12 00:54:55,935 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 38 states [2023-11-12 00:54:55,935 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-12 00:54:55,936 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 38 interpolants. [2023-11-12 00:54:55,937 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=124, Invalid=1946, Unknown=0, NotChecked=0, Total=2070 [2023-11-12 00:54:55,937 INFO L87 Difference]: Start difference. First operand 48 states and 49 transitions. Second operand has 38 states, 38 states have (on average 2.526315789473684) internal successors, (96), 37 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:56,821 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-12 00:54:56,821 INFO L93 Difference]: Finished difference Result 80 states and 81 transitions. [2023-11-12 00:54:56,821 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2023-11-12 00:54:56,821 INFO L78 Accepts]: Start accepts. Automaton has has 38 states, 38 states have (on average 2.526315789473684) internal successors, (96), 37 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 47 [2023-11-12 00:54:56,822 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-12 00:54:56,822 INFO L225 Difference]: With dead ends: 80 [2023-11-12 00:54:56,822 INFO L226 Difference]: Without dead ends: 51 [2023-11-12 00:54:56,823 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 171 GetRequests, 113 SyntacticMatches, 0 SemanticMatches, 58 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 560 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=203, Invalid=3337, Unknown=0, NotChecked=0, Total=3540 [2023-11-12 00:54:56,824 INFO L413 NwaCegarLoop]: 21 mSDtfsCounter, 59 mSDsluCounter, 517 mSDsCounter, 0 mSdLazyCounter, 651 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 59 SdHoareTripleChecker+Valid, 538 SdHoareTripleChecker+Invalid, 660 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 651 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-12 00:54:56,825 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [59 Valid, 538 Invalid, 660 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 651 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-12 00:54:56,825 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 51 states. [2023-11-12 00:54:56,827 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 51 to 50. [2023-11-12 00:54:56,828 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 50 states, 49 states have (on average 1.0408163265306123) internal successors, (51), 49 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:56,828 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 50 states to 50 states and 51 transitions. [2023-11-12 00:54:56,828 INFO L78 Accepts]: Start accepts. Automaton has 50 states and 51 transitions. Word has length 47 [2023-11-12 00:54:56,828 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-12 00:54:56,829 INFO L495 AbstractCegarLoop]: Abstraction has 50 states and 51 transitions. [2023-11-12 00:54:56,829 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 38 states, 38 states have (on average 2.526315789473684) internal successors, (96), 37 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-12 00:54:56,829 INFO L276 IsEmpty]: Start isEmpty. Operand 50 states and 51 transitions. [2023-11-12 00:54:56,830 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2023-11-12 00:54:56,831 INFO L187 NwaCegarLoop]: Found error trace [2023-11-12 00:54:56,831 INFO L195 NwaCegarLoop]: trace histogram [8, 8, 8, 7, 7, 7, 1, 1, 1, 1] [2023-11-12 00:54:56,837 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2023-11-12 00:54:57,035 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2023-11-12 00:54:57,035 INFO L420 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr3REQUIRES_VIOLATIONMEMORY_DEREFERENCE === [ULTIMATE.startErr0REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr1REQUIRES_VIOLATIONMEMORY_DEREFERENCE, ULTIMATE.startErr2REQUIRES_VIOLATIONMEMORY_DEREFERENCE (and 2 more)] === [2023-11-12 00:54:57,036 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-12 00:54:57,036 INFO L85 PathProgramCache]: Analyzing trace with hash -598091279, now seen corresponding path program 8 times [2023-11-12 00:54:57,036 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-12 00:54:57,036 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1198801693] [2023-11-12 00:54:57,036 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-12 00:54:57,037 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-12 00:54:57,078 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-12 00:54:58,602 INFO L134 CoverageAnalysis]: Checked inductivity of 162 backedges. 0 proven. 162 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-12 00:54:58,603 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-12 00:54:58,603 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1198801693] [2023-11-12 00:54:58,603 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1198801693] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-12 00:54:58,603 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1733340868] [2023-11-12 00:54:58,603 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2023-11-12 00:54:58,603 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-12 00:54:58,603 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 [2023-11-12 00:54:58,608 INFO L229 MonitoredProcess]: Starting monitored process 12 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-12 00:54:58,619 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c179dd63-feaf-42c7-86d3-1443f7d16f47/bin/utaipan-verify-NcY6lQBIFX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2023-11-12 00:54:59,407 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 8 check-sat command(s) [2023-11-12 00:54:59,407 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-12 00:54:59,411 INFO L262 TraceCheckSpWp]: Trace formula consists of 296 conjuncts, 89 conjunts are in the unsatisfiable core [2023-11-12 00:54:59,417 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-12 00:54:59,424 INFO L351 Elim1Store]: Elim1 eliminated variable of array dimension 1, 1 stores, 0 select indices, 0 select index equivalence classes, 0 disjoint index pairs (out of 0 index pairs), introduced 0 new quantified variables, introduced 0 case distinctions, treesize of input 8 treesize of output 7