/export/starexec/sandbox/solver/bin/starexec_run_c /export/starexec/sandbox/benchmark/theBenchmark.c /export/starexec/sandbox/output/output_files -------------------------------------------------------------------------------- YES proof of /export/starexec/sandbox/benchmark/theBenchmark.c # AProVE Commit ID: 48fb2092695e11cc9f56e44b17a92a5f88ffb256 marcel 20180622 unpublished dirty Termination of the given C Problem could be proven: (0) C Problem (1) CToLLVMProof [EQUIVALENT, 174 ms] (2) LLVM problem (3) LLVMToTerminationGraphProof [EQUIVALENT, 2882 ms] (4) LLVM Symbolic Execution Graph (5) SymbolicExecutionGraphToSCCProof [SOUND, 0 ms] (6) LLVM Symbolic Execution SCC (7) SCC2IRS [SOUND, 129 ms] (8) IntTRS (9) IntTRSCompressionProof [EQUIVALENT, 0 ms] (10) IntTRS (11) IntTRSUnneededArgumentFilterProof [EQUIVALENT, 0 ms] (12) IntTRS (13) PolynomialOrderProcessor [EQUIVALENT, 14 ms] (14) YES ---------------------------------------- (0) Obligation: c file /export/starexec/sandbox/benchmark/theBenchmark.c ---------------------------------------- (1) CToLLVMProof (EQUIVALENT) Compiled c-file /export/starexec/sandbox/benchmark/theBenchmark.c to LLVM. ---------------------------------------- (2) Obligation: LLVM Problem Aliases: Data layout: "e-p:64:64:64-i1:8:8-i8:8:8-i16:16:16-i32:32:32-i64:64:64-f32:32:32-f64:64:64-v64:64:64-v128:128:128-a0:0:64-s0:64:64-f80:128:128-n8:16:32:64-S128" Machine: "x86_64-pc-linux-gnu" Type definitions: Global variables: Function declarations and definitions: *BasicFunctionTypename: "__VERIFIER_nondet_int" returnParam: i32 parameters: () variableLength: false visibilityType: DEFAULT callingConvention: ccc *BasicFunctionTypename: "cstrchr" linkageType: EXTERNALLY_VISIBLE returnParam: *i8 parameters: (s *i8, c i32) variableLength: false visibilityType: DEFAULT callingConvention: ccc 0: %1 = alloca *i8, align 8 %2 = alloca i32, align 4 store %s, %1 store %c, %2 br %3 3: %4 = load %1 %5 = load %4 %6 = sext i8 %5 to i32 %7 = icmp ne %6 0 br %7, %8, %16 8: %9 = load %1 %10 = load %9 %11 = sext i8 %10 to i32 %12 = load %2 %13 = trunc i32 %12 to i8 %14 = sext i8 %13 to i32 %15 = icmp ne %11 %14 br %16 16: %17 = phi [0, %3], [%15, %8] br %17, %18, %21 18: %19 = load %1 %20 = getelementptr %19, 1 store %20, %1 br %3 21: %22 = load %1 %23 = load %22 %24 = sext i8 %23 to i32 %25 = load %2 %26 = icmp eq %24 %25 br %26, %27, %29 27: %28 = load %1 br %30 29: br %30 30: %31 = phi [%28, %27], [null, %29] ret %31 *BasicFunctionTypename: "main" linkageType: EXTERNALLY_VISIBLE returnParam: i32 parameters: () variableLength: false visibilityType: DEFAULT callingConvention: ccc 0: %1 = alloca i32, align 4 %length = alloca i32, align 4 %nondetString = alloca *i8, align 8 store 0, %1 %2 = call i32 @__VERIFIER_nondet_int() store %2, %length %3 = load %length %4 = icmp slt %3 1 br %4, %5, %6 5: store 1, %length br %6 6: %7 = load %length %8 = sext i32 %7 to i64 %9 = mul %8 1 %10 = alloca i8, numElementsLit: %9 store %10, %nondetString %11 = load %length %12 = sub %11 1 %13 = sext i32 %12 to i64 %14 = load %nondetString %15 = getelementptr %14, %13 store 0, %15 %16 = load %nondetString %17 = call i32 @__VERIFIER_nondet_int() %18 = call *i8 @cstrchr(*i8 %16, i32 %17) ret 0 Analyze Termination of all function calls matching the pattern: main() ---------------------------------------- (3) LLVMToTerminationGraphProof (EQUIVALENT) Constructed symbolic execution graph for LLVM program and proved memory safety. ---------------------------------------- (4) Obligation: SE Graph ---------------------------------------- (5) SymbolicExecutionGraphToSCCProof (SOUND) Splitted symbolic execution graph to 1 SCC. ---------------------------------------- (6) Obligation: SCC ---------------------------------------- (7) SCC2IRS (SOUND) Transformed LLVM symbolic execution graph SCC into a rewrite problem. Log: Generated rules. Obtained 21 rulesP rules: f_470(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_472(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_472(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_474(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_474(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_476(v582, v583, v584, v585, v662, v673, 1, v587, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_476(v582, v583, v584, v585, v662, v673, 1, v587, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_477(v582, v583, v584, v585, v662, v673, 1, v587, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_477(v582, v583, v584, v585, v662, v673, 1, v587, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_478(v582, v583, v584, v585, v662, v673, 1, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_478(v582, v583, v584, v585, v662, v673, 1, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_479(v582, v583, v584, v585, v662, v673, 1, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_479(v582, v583, v584, v585, v662, v673, 1, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_480(v582, v583, v584, v585, v662, v673, 1, v734, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_480(v582, v583, v584, v585, v662, v673, 1, v734, v589, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_481(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_481(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_482(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: v673 != v734 f_482(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_484(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_484(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_486(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_486(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_456(v582, v583, v584, v585, v662, v673, 1, v734, v586, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v587, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_456(v582, v583, v584, v585, v586, v587, 1, v589, v590, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_459(v582, v583, v584, v585, v586, v587, 1, v589, v590, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_459(v582, v583, v584, v585, v586, v587, 1, v589, v590, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_462(v582, v583, v584, v585, v586, v587, 1, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_462(v582, v583, v584, v585, v586, v587, 1, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_464(v582, v583, v584, v585, v586, v587, 1, v589, v662, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: v662 = 1 + v586 && 3 <= v662 f_464(v582, v583, v584, v585, v586, v587, 1, v589, v662, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_465(v582, v583, v584, v585, v586, v587, 1, v589, v662, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_465(v582, v583, v584, v585, v586, v587, 1, v589, v662, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_466(v582, v583, v584, v585, v586, v587, 1, v589, v662, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_466(v582, v583, v584, v585, v586, v587, 1, v589, v662, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_467(v582, v583, v584, v585, v662, v587, 1, v586, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_467(v582, v583, v584, v585, v662, v587, 1, v586, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_468(v582, v583, v584, v585, v662, v673, v587, 1, v586, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: TRUE f_468(v582, v583, v584, v585, v662, v673, v587, 1, v586, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_469(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: 0 = 0 f_469(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) -> f_470(v582, v583, v584, v585, v662, v673, 1, v586, v587, v589, v591, v598, v592, v599, v593, v600, v597, v601, v602, v603, v590, v604, 0, v594, v596, 3, 7, 2, 4, 8) :|: v673 != 0 && v662 < v597 && 4 <= v597 Combined rules. Obtained 4 rulesP rules: f_470(v582:0, v583:0, v584:0, v585:0, v662:0, v673:0, 1, v586:0, v587:0, v589:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v590:0, v604:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) -> f_470(v582:0, v583:0, v584:0, v585:0, 1 + v662:0, v673:1, 1, v662:0, v673:0, v734:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v586:0, v587:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) :|: v734:0 > v673:0 && v662:0 > 1 && v597:0 > 1 + v662:0 && v597:0 > 3 && v673:1 < 0 f_470(v582:0, v583:0, v584:0, v585:0, v662:0, v673:0, 1, v586:0, v587:0, v589:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v590:0, v604:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) -> f_470(v582:0, v583:0, v584:0, v585:0, 1 + v662:0, v673:1, 1, v662:0, v673:0, v734:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v586:0, v587:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) :|: v734:0 > v673:0 && v662:0 > 1 && v597:0 > 1 + v662:0 && v597:0 > 3 && v673:1 > 0 f_470(v582:0, v583:0, v584:0, v585:0, v662:0, v673:0, 1, v586:0, v587:0, v589:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v590:0, v604:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) -> f_470(v582:0, v583:0, v584:0, v585:0, 1 + v662:0, v673:1, 1, v662:0, v673:0, v734:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v586:0, v587:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) :|: v734:0 < v673:0 && v662:0 > 1 && v597:0 > 1 + v662:0 && v597:0 > 3 && v673:1 < 0 f_470(v582:0, v583:0, v584:0, v585:0, v662:0, v673:0, 1, v586:0, v587:0, v589:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v590:0, v604:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) -> f_470(v582:0, v583:0, v584:0, v585:0, 1 + v662:0, v673:1, 1, v662:0, v673:0, v734:0, v591:0, v598:0, v592:0, v599:0, v593:0, v600:0, v597:0, v601:0, v602:0, v603:0, v586:0, v587:0, 0, v594:0, v596:0, 3, 7, 2, 4, 8) :|: v734:0 < v673:0 && v662:0 > 1 && v597:0 > 1 + v662:0 && v597:0 > 3 && v673:1 > 0 Filtered unneeded arguments: f_470(x1, x2, x3, x4, x5, x6, x7, x8, x9, x10, x11, x12, x13, x14, x15, x16, x17, x18, x19, x20, x21, x22, x23, x24, x25, x26, x27, x28, x29, x30) -> f_470(x5, x6, x17) Removed division, modulo operations, cleaned up constraints. Obtained 2 rules.P rules: f_470(v662:0, v673:0, v597:0) -> f_470(1 + v662:0, v673:1, v597:0) :|: v597:0 > 1 + v662:0 && v662:0 > 1 && v673:1 < 0 && v597:0 > 3 f_470(v662:0, v673:0, v597:0) -> f_470(1 + v662:0, v673:1, v597:0) :|: v597:0 > 1 + v662:0 && v662:0 > 1 && v673:1 > 0 && v597:0 > 3 ---------------------------------------- (8) Obligation: Rules: f_470(v662:0, v673:0, v597:0) -> f_470(1 + v662:0, v673:1, v597:0) :|: v597:0 > 1 + v662:0 && v662:0 > 1 && v673:1 < 0 && v597:0 > 3 f_470(x, x1, x2) -> f_470(1 + x, x3, x2) :|: x2 > 1 + x && x > 1 && x3 > 0 && x2 > 3 ---------------------------------------- (9) IntTRSCompressionProof (EQUIVALENT) Compressed rules. ---------------------------------------- (10) Obligation: Rules: f_470(x:0, x1:0, x2:0) -> f_470(1 + x:0, x3:0, x2:0) :|: x3:0 > 0 && x2:0 > 3 && x:0 > 1 && x2:0 > 1 + x:0 f_470(v662:0:0, v673:0:0, v597:0:0) -> f_470(1 + v662:0:0, v673:1:0, v597:0:0) :|: v673:1:0 < 0 && v597:0:0 > 3 && v662:0:0 > 1 && v597:0:0 > 1 + v662:0:0 ---------------------------------------- (11) IntTRSUnneededArgumentFilterProof (EQUIVALENT) Some arguments are removed because they cannot influence termination. We removed arguments according to the following replacements: f_470(x1, x2, x3) -> f_470(x1, x3) ---------------------------------------- (12) Obligation: Rules: f_470(x:0, x2:0) -> f_470(1 + x:0, x2:0) :|: x3:0 > 0 && x2:0 > 3 && x:0 > 1 && x2:0 > 1 + x:0 f_470(v662:0:0, v597:0:0) -> f_470(1 + v662:0:0, v597:0:0) :|: v673:1:0 < 0 && v597:0:0 > 3 && v662:0:0 > 1 && v597:0:0 > 1 + v662:0:0 ---------------------------------------- (13) PolynomialOrderProcessor (EQUIVALENT) Found the following polynomial interpretation: [f_470(x, x1)] = -2 - x + x1 The following rules are decreasing: f_470(x:0, x2:0) -> f_470(1 + x:0, x2:0) :|: x3:0 > 0 && x2:0 > 3 && x:0 > 1 && x2:0 > 1 + x:0 f_470(v662:0:0, v597:0:0) -> f_470(1 + v662:0:0, v597:0:0) :|: v673:1:0 < 0 && v597:0:0 > 3 && v662:0:0 > 1 && v597:0:0 > 1 + v662:0:0 The following rules are bounded: f_470(x:0, x2:0) -> f_470(1 + x:0, x2:0) :|: x3:0 > 0 && x2:0 > 3 && x:0 > 1 && x2:0 > 1 + x:0 f_470(v662:0:0, v597:0:0) -> f_470(1 + v662:0:0, v597:0:0) :|: v673:1:0 < 0 && v597:0:0 > 3 && v662:0:0 > 1 && v597:0:0 > 1 + v662:0:0 ---------------------------------------- (14) YES