Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker with root access to modify the Recovery Partition (because of a lack of integrity protection).
https://www.entrust.com/use-case/why-use-an-hsm
https://github.com/google/security-research/security/advisories/GHSA-6q4x-m86j-gfwj