[PATCH v3 1/4] tee: add restricted memory allocation