• Top
    • Documentation
    • Books
    • Boolean-reasoning
    • Projects
    • Debugging
    • Community
    • Std
    • Proof-automation
    • Macro-libraries
    • ACL2
    • Interfacing-tools
    • Hardware-verification
    • Software-verification
      • Kestrel-books
        • Crypto-hdwallet
        • Apt
        • Error-checking
        • Fty-extensions
        • Isar
        • Kestrel-utilities
        • Set
        • C
          • Syntax-for-tools
          • Atc
          • Transformation-tools
          • Language
            • Abstract-syntax
            • Integer-ranges
            • Implementation-environments
              • Integer-format-templates
              • Ienv
              • Integer-formats
                • Integer-format-llong-wfp
                • Integer-format-short-wfp
                  • Integer-format-long-wfp
                  • Integer-format-int-wfp
                  • Char+short+int+long+llong+bool-format
                  • Char+short+int+long+llong+bool-format-wfp
                  • Llong-format-64tcnt
                  • Short-format-16tcnt
                  • Long-format-32tcnt
                  • Int-format-16tcnt
                  • Integer-format-short/int/long/llong-wfp-of-inc-sign-tcnpnt
                  • Char8+short16+int16+long32+llong64+bool0-tcnt
                • Ienv-ushort-rangep
                • Ienv-ulong-rangep
                • Ienv-ullong-rangep
                • Ienv-uint-rangep
                • Ienv-uchar-rangep
                • Ienv-sshort-rangep
                • Ienv-slong-rangep
                • Ienv-sllong-rangep
                • Ienv-sint-rangep
                • Ienv-schar-rangep
                • Ienv-char-rangep
                • Ienv->schar-min
                • Ienv->schar-max
                • Ienv->char-size
                • Ienv->char-min
                • Ienv->char-max
                • Ienv->uchar-max
                • Ienv->short-bit-size
                • Ienv->long-bit-size
                • Ienv->llong-bit-size
                • Ienv->int-bit-size
                • Ienv->short-byte-size
                • Ienv->long-byte-size
                • Ienv->llong-byte-size
                • Ienv->int-byte-size
                • Versions
                • Ienv->ushort-max
                • Ienv->ullong-max
                • Ienv->sshort-min
                • Ienv->sllong-min
                • Ienv->sllong-max
                • Ienv->bool-byte-size
                • Ienv->bool-bit-size
                • Ienv->ulong-max
                • Ienv->uint-max
                • Ienv->sshort-max
                • Ienv->slong-min
                • Ienv->slong-max
                • Ienv->sint-min
                • Ienv->sint-max
                • Schar-formats
                • Char-formats
                • Uchar-formats
                • Signed-formats
                • Bool-formats
              • Dynamic-semantics
              • Static-semantics
              • Grammar
              • Types
              • Integer-formats-definitions
              • Computation-states
              • Portable-ascii-identifiers
              • Values
              • Integer-operations
              • Object-designators
              • Operations
              • Errors
              • Tag-environments
              • Function-environments
              • Character-sets
              • Flexible-array-member-removal
              • Arithmetic-operations
              • Pointer-operations
              • Real-operations
              • Array-operations
              • Scalar-operations
              • Structure-operations
            • Representation
            • Insertion-sort
            • Pack
          • Soft
          • Bv
          • Imp-language
          • Ethereum
          • Event-macros
          • Java
          • Riscv
          • Bitcoin
          • Zcash
          • Yul
          • ACL2-programming-language
          • Prime-fields
          • Json
          • Syntheto
          • File-io-light
          • Cryptography
          • Number-theory
          • Axe
          • Lists-light
          • Builtins
          • Solidity
          • Helpers
          • Htclient
          • Typed-lists-light
          • Arithmetic-light
        • X86isa
        • Axe
        • Execloader
      • Math
      • Testing-utilities
    • Integer-formats

    Integer-format-short-wfp

    Check if an integer format is well-formed when used for (signed and unsigned) short.

    Signature
    (integer-format-short-wfp short-format uchar-format schar-format) 
      → 
    yes/no
    Arguments
    short-format — Guard (integer-formatp short-format).
    uchar-format — Guard (uchar-formatp uchar-format).
    schar-format — Guard (schar-formatp schar-format).
    Returns
    yes/no — Type (booleanp yes/no).

    The number of bits must be a multiple of CHAR_BIT [C17:6.2.6.1/4].

    The possible signed values must cover at least the range from -32767 to +32767 (both inclusive) [C17:5.2.4.2.1/1]. The possible unsigned values must cover at least the range from 0 to 65535 (both inclusive) [C17:5.2.4.2.1/1].

    The possible signed values must at least include those of signed char, and the possible unsigned values must at least include those of unsigned char [C17:6.2.5/8].

    Definitions and Theorems

    Function: integer-format-short-wfp

    (defun integer-format-short-wfp
           (short-format uchar-format schar-format)
      (declare (xargs :guard (and (integer-formatp short-format)
                                  (uchar-formatp uchar-format)
                                  (schar-formatp schar-format))))
      (b*
       ((bit-size (integer-format->bit-size short-format))
        (signed-short-min (integer-format->signed-min short-format))
        (signed-short-max (integer-format->signed-max short-format))
        (unsigned-short-max (integer-format->unsigned-max short-format))
        (signed-char-min (schar-format->min schar-format uchar-format))
        (signed-char-max (schar-format->max schar-format uchar-format))
        (unsigned-char-max (uchar-format->max uchar-format)))
       (and (integerp (/ bit-size
                         (uchar-format->size uchar-format)))
            (<= signed-short-min -32767)
            (<= 32767 signed-short-max)
            (<= 65535 unsigned-short-max)
            (<= signed-short-min signed-char-min)
            (<= signed-char-max signed-short-max)
            (<= unsigned-char-max unsigned-short-max))))

    Theorem: booleanp-of-integer-format-short-wfp

    (defthm booleanp-of-integer-format-short-wfp
     (b* ((yes/no (integer-format-short-wfp short-format
                                            uchar-format schar-format)))
       (booleanp yes/no))
     :rule-classes :rewrite)

    Theorem: integer-format-short-wf-bit-size-lower-bound

    (defthm integer-format-short-wf-bit-size-lower-bound
     (implies
        (integer-format-short-wfp short-format uchar-format schar-fomat)
        (>= (integer-format->bit-size short-format)
            16))
     :rule-classes :linear)

    Theorem: integer-format-short-wfp-of-integer-format-fix-short-format

    (defthm integer-format-short-wfp-of-integer-format-fix-short-format
      (equal (integer-format-short-wfp (integer-format-fix short-format)
                                       uchar-format schar-format)
             (integer-format-short-wfp short-format
                                       uchar-format schar-format)))

    Theorem: integer-format-short-wfp-integer-format-equiv-congruence-on-short-format

    (defthm
     integer-format-short-wfp-integer-format-equiv-congruence-on-short-format
     (implies
      (integer-format-equiv short-format short-format-equiv)
      (equal
       (integer-format-short-wfp short-format uchar-format schar-format)
       (integer-format-short-wfp short-format-equiv
                                 uchar-format schar-format)))
     :rule-classes :congruence)

    Theorem: integer-format-short-wfp-of-uchar-format-fix-uchar-format

    (defthm integer-format-short-wfp-of-uchar-format-fix-uchar-format
      (equal (integer-format-short-wfp short-format
                                       (uchar-format-fix uchar-format)
                                       schar-format)
             (integer-format-short-wfp short-format
                                       uchar-format schar-format)))

    Theorem: integer-format-short-wfp-uchar-format-equiv-congruence-on-uchar-format

    (defthm
     integer-format-short-wfp-uchar-format-equiv-congruence-on-uchar-format
     (implies
      (uchar-format-equiv uchar-format uchar-format-equiv)
      (equal
       (integer-format-short-wfp short-format uchar-format schar-format)
       (integer-format-short-wfp short-format
                                 uchar-format-equiv schar-format)))
     :rule-classes :congruence)

    Theorem: integer-format-short-wfp-of-schar-format-fix-schar-format

    (defthm integer-format-short-wfp-of-schar-format-fix-schar-format
      (equal (integer-format-short-wfp short-format uchar-format
                                       (schar-format-fix schar-format))
             (integer-format-short-wfp short-format
                                       uchar-format schar-format)))

    Theorem: integer-format-short-wfp-schar-format-equiv-congruence-on-schar-format

    (defthm
     integer-format-short-wfp-schar-format-equiv-congruence-on-schar-format
     (implies
      (schar-format-equiv schar-format schar-format-equiv)
      (equal
       (integer-format-short-wfp short-format uchar-format schar-format)
       (integer-format-short-wfp short-format
                                 uchar-format schar-format-equiv)))
     :rule-classes :congruence)