I will go even farther:
Suppose someone write a malware that include code from e.g. glibc.
The antivirus vendor dutifully add that to the malware database,
and all the Linux box get DOSed when they update their malware
database.
TALPA is a poorly thought out thread model that create more threats.