For a while, I was pretty excited about secure enclaves, as a tool before homomorphic encryption reaches practicality. If remote code execution on the PSP means broken remote attestation, that hope goes down the drain, quickly.
Maybe, the keys in the PSP are still protected by secure computing technology, like ARM TrustZone…