source: CIVL/examples/verifyThis/pairInsertSort.cvl@ ffc92a3

1.23 2.0 main test-branch
Last change on this file since ffc92a3 was 9ac73ac, checked in by Ziqing Luo <ziqing@…>, 9 years ago

add one verifyThis 2017 example: Challenge 1

git-svn-id: svn://vsl.cis.udel.edu/civl/trunk@4199 fb995dde-84ed-4084-dfe6-e5aef3e2452c

  • Property mode set to 100644
File size: 1.4 KB
RevLine 
[9ac73ac]1/* Challenge 1: original Java code.
2 * CIVL says there is array index out of bounds, as indicated below.
3 * Not sure if this is correct.
4 */
5
6#include <stdio.h>
7$input int N = 6; // upper bound on n
8$input int n; // size of array
9$assume(1<=n && n<=N);
10$input int A[n];
11$input int LEFT;
12$input int RIGHT;
13$assume(1<=LEFT && LEFT < RIGHT && RIGHT<n-1);
14
15int main() {
16 // assumption: a[LEFT-1] is less than every thing of right of LEFT:
17 $assume($forall (int j : LEFT .. RIGHT) A[j] >= A[LEFT-1]);
18
19 printf("n=%d\n", n);
20 int a[n];
21 for (int i=0; i<n; i++) a[i]=A[i];
22 int left = LEFT, right = RIGHT;
23 int k;
24 /*@ loop invariant left < right;
25 @ loop invariant LEFT <= k && k <= RIGHT+2;
26 @ loop invariant \forall int i; LEFT <= i && i <= RIGHT ==>
27 @ a[k] >= a[LEFT-1];
28 @ loop invariant \forall int j; LEFT <= j && j < left-1 ==>
29 @ a[j] <= a[j+1];
30 @
31 @*/
32 for (k = left; ++left <= right; k = ++left) {
33 int a1 = a[k], a2 = a[left];
34 if (a1 < a2) {
35 a2 = a1; a1 = a[left];
36 }
37 while (a1 < a[--k]) {
38 a[k + 2] = a[k];
39 }
40 a[++k + 1] = a1;
41 while (a2 < a[--k]) {
42 printf("k=%d, LEFT=%d, a2=%d, a[k-1]=%d\n", k, LEFT, a2, a[k-1]);
43 a[k + 1] = a[k]; // violated? CIVL says k can be LEFT-2, LEFT-3, ...
44 }
45 a[k + 1] = a2;
46 }
47 int last = a[right];
48 while (last < a[--right]) {
49 a[right + 1] = a[right];
50 }
51 a[right + 1] = last;
52}
Note: See TracBrowser for help on using the repository browser.