-
Notifications
You must be signed in to change notification settings - Fork 29
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request #68 from boogie-org/PropInstMatchFix
Prop instrumentation match fix for Ref type
- Loading branch information
Showing
5 changed files
with
88 additions
and
52 deletions.
There are no files selected for viewing
105 changes: 55 additions & 50 deletions
105
AddOns/AngelicVerifierNull/test/propinst-regressions/Answer
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,50 +1,55 @@ | ||
|
||
-------------------- uaf0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
|
||
-------------------- uaf1.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf1_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
|
||
-------------------- df0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing df0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
|
||
-------------------- uaf2.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf2_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1 + 1]) | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_2: int :: unknownTrigger_1(x_2) ==> validFree[x_2]) | ||
|
||
-------------------- uaf3.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf3_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1 + 1]) | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_2: int :: unknownTrigger_1(x_2) ==> validFree[x_2]) | ||
|
||
-------------------- irql0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing irql0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> x_1 <= 2) | ||
|
||
-------------------- irql1.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing irql1_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> x_1 <= 1) | ||
|
||
-------------------- irql2.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing irql2_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int, x_2: int :: unknownTrigger_0(x_1) && unknownTrigger_1(x_2) ==> x_1 <= x_2) | ||
|
||
-------------------- null0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing null0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace0 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr !(ax == NULL) | ||
|
||
-------------------- uaf0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
|
||
-------------------- uaf1.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf1_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
|
||
-------------------- df0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing df0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
|
||
-------------------- uaf2.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf2_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1 + 1]) | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_2: int :: unknownTrigger_1(x_2) ==> validFree[x_2]) | ||
|
||
-------------------- uaf3.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing uaf3_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1]) | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace1 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr validFree[p] || p == 0 | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_3(x_1) ==> validFree[x_1 + 1]) | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_2: int :: unknownTrigger_1(x_2) ==> validFree[x_2]) | ||
|
||
-------------------- irql0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing irql0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> x_1 <= 2) | ||
|
||
-------------------- irql1.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing irql1_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int :: unknownTrigger_0(x_1) ==> x_1 <= 1) | ||
|
||
-------------------- irql2.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing irql2_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] EXPLAINERROR-BLOCK :: (forall x_1: int, x_2: int :: unknownTrigger_0(x_1) && unknownTrigger_1(x_2) ==> x_1 <= x_2) | ||
|
||
-------------------- null0.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing null0_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace0 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc foo with expr !(ax == NULL) | ||
|
||
-------------------- rodrigo_refnull.bpl -------------------- | ||
[TAG: AV_OUTPUT] ----- Analyzing rodrigo_refnull_pinst_hinst.bpl ------ | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Failing traces {Trace0 } | ||
[TAG: AV_OUTPUT] ANGELIC_VERIFIER_WARNING: Assertion failed in proc Foo with expr r != null |
9 changes: 9 additions & 0 deletions
9
AddOns/AngelicVerifierNull/test/propinst-regressions/rodrigo_refnull.bpl
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,9 @@ | ||
type Ref; | ||
|
||
const unique null : Ref; | ||
var r: Ref; | ||
|
||
procedure Foo() { | ||
r := null; | ||
assume {:nonnull} r != null; | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
21 changes: 21 additions & 0 deletions
21
AddOns/PropInst/PropInst/ExampleProperties/nullcheck-csharp.avp
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,21 @@ | ||
GlobalDeclarations | ||
{ | ||
function {:inline} {:aliasingQuery} {:mkUniqueFn} aliasQ(p:Ref, q:Ref) returns (bool) { p == q } | ||
} | ||
|
||
|
||
TemplateVariables | ||
{ | ||
var p : Ref; | ||
} | ||
|
||
|
||
//Check every dereference | ||
CmdRule | ||
{ | ||
assume {:nonnull} p != null; | ||
} | ||
--> | ||
{ | ||
assert p != null; | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters