One of kernel exploits maybe would do, even with a locked device. I see value in that for at least what we do only if RPMB is accessible or data that is read from there is accessible from the QSEE context
A
I remember we had a discussion here about it a week ago or so
Android Hackers
no need Kernel access
A
severity for such exploits can be determined by complexity/doability