[PATCH 3/5] KVM: x86: Add nested state validation for pfncache support