You're wrong. Computer "worms" as people think of them are not the problem here. They're actually well understood. And while propagation seems like it
could be so fast it's overwhelming, I think there are a lot of reasons to consider that exceedingly unlikely. These "worms" are the equivalent of catching a communicable illness that is *physically manipulating* the car (even if it's just software).
What's the bigger issue?
Adversarial manipulation of the sensor inputs. This can be equated to verbal or visual manipulation in humans, something that becomes much harder to detect. While most of these attacks would be against a local target, I could also see a widespread deployment that goes unnoticed and slowly degrades many neural networks, and those being erroneously propagated.
The latter is a much bigger problem than "worms" because it's effectively invisible. We can audit and identify malicious code, there's an entire industry built around that. But, neural networks are for the most part still a black box solution. How does one detect and solve manipulation in a black box solution?
Well, maybe my Tesla will meet your Tesla in therapy and they can talk about it.