When in a critical section or spinlock call an installed fault handlerAs with other architectures when the TDP_NOFAULTING flag is set we
rather than panicing the kernelshouldn't panic when td_critnest is non-zero or if the witness check
fails.
The EFI runtime service functions will soon set this flag to handle
exceptions in the services.
Sponsored by: Arm Ltd