At least for normal firewall rules using countries as a source or destination, I did not observe a similar (mis)behaviour of IPFire 2.25 - Core Update 148 (testing). Could you please open up a bug at https://bugzilla.ipfire.org/ (your login credentials work there as well) and give some additional technical details such as log messages, so we can track down this further?