OpenSSL v1.0.2 introduced a regression in the ASN1_UTCTIME_cmp_time_t function. I've written more about this and included a patch on this GitHub pull request: https://github.com/openssl/openssl/pull/218 (direct link to patch: https://github.com/openssl/openssl/pull/218.patch)