bpf: Reject >8 byte return values on return-reading trampoline paths (CVE-2026-90359) | HOL Guard CVE