File: main.c

package info (click to toggle)
cbmc 6.6.0-4
  • links: PTS
  • area: main
  • in suites: forky, sid, trixie
  • size: 153,852 kB
  • sloc: cpp: 386,459; ansic: 114,466; java: 28,405; python: 6,003; yacc: 4,552; makefile: 4,041; lex: 2,487; xml: 2,388; sh: 2,050; perl: 557; pascal: 184; javascript: 163; ada: 36
file content (43 lines) | stat: -rw-r--r-- 901 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
#include <assert.h>
#include <stdbool.h>

const int MIN = 0;
const int MAX = 10;

bool f_state_invariant();

bool f_state_transition(int old_state, int return_value)
{
  return;
}

int f()
  // clang-format off
__CPROVER_assigns()

// state invariant: state variable is in [MIN,MAX]
__CPROVER_requires(
  MIN <= __CPROVER_ID "f::1::a" && __CPROVER_ID "f::1::a" <= MAX)
__CPROVER_ensures(
  MIN <= __CPROVER_ID "f::1::a" && __CPROVER_ID "f::1::a" <= MAX)

// state tansition: state var is either incremented or stays the same
__CPROVER_ensures(
  (__CPROVER_ID "f::1::a" == __CPROVER_old(__CPROVER_ID "f::1::a") + 1) ||
  (__CPROVER_ID "f::1::a" == __CPROVER_old(__CPROVER_ID "f::1::a")))

// state var value is returned
__CPROVER_ensures(__CPROVER_ID "f::1::a" == __CPROVER_return_value)
// clang-format on
{
  static int a = 0;
  if(a < MAX)
    a++;
  return a;
}

int main()
{
  f();
  return 0;
}