That sounds sane to me. It would be nice to get this into the
changelog. Perhaps:
This theoretically makes guest boot more fragile. If, for
instance, EER was set up incorrectly and a WRMSR was performed,
the resulting (unhandled) #VE would triple fault. However, this
is likely to trip up the guest BIOS long before control reaches
the kernel. In any case, these kinds of problems are unlikely
to occur in production environments, and developers have good
debug tools to fix them quickly.
That would put my mind at ease a bit.