[PATCH v5 03/11] iommu/vt-d: Add helper for nested domain allocation