Add CVE number to urllib/urllib2 news item.
diff --git a/Misc/NEWS b/Misc/NEWS
index 76aea17..551ecb7 100644
--- a/Misc/NEWS
+++ b/Misc/NEWS
@@ -13,7 +13,7 @@
 -------
 
 - Issue #11662: Make urllib and urllib2 ignore redirections if the
-  scheme is not HTTP, HTTPS or FTP.  This fixes a security hole.
+  scheme is not HTTP, HTTPS or FTP (CVE-2011-1521).
 
 - Issue #8674: Fixed a number of incorrect or undefined-behaviour-inducing
   overflow checks in the audioop module (CVE-2010-1634).