Given that DLL injection on Windows is implemented by "calling a function that is in process B VA space, by process A," it seems you already know the solution to the problem.

I won't describe how...