Trinity v3 DDOS spread by Themes?

Being one to put 2 and 2 together and getting 5, it occurs to me that
themes could be being used to spread the Trinity v3 DDOS trojan.  Is
the sawfish lisp interpreter properly sandboxed against idiots running
GNOME as root and trying out the "coolest new theme"?

